Code:
# AdwCleaner v3.216 - Bericht erstellt am 19/07/2014 um 14:18:04
# Aktualisiert 17/07/2014 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Steffi-Frank - LAPTOP
# Gestartet von : C:\Users\Steffi-Frank\Desktop\adwcleaner_3.216.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
***** [ Verknüpfungen ] *****
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
Verknüpfung Desinfiziert : C:\Users\Steffi-Frank\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
Verknüpfung Desinfiziert : C:\Users\Steffi-Frank\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Verknüpfung Desinfiziert : C:\Users\Steffi-Frank\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk
Verknüpfung Desinfiziert : C:\Users\Steffi-Frank\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk
***** [ Registrierungsdatenbank ] *****
Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [faststartff@gmail.com]
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.bandobjectattribute
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.bho
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.dockingpanel
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbar
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbarbandobject
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.smartbardisplaystate
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.smartbarmenuform
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\NewPlayer_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\NewPlayer_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [LManager]
Schlüssel Gelöscht : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Schlüssel Gelöscht : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0059568.BHO
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0059568.BHO.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0059568.Sandbox
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0059568.Sandbox.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DFEFCDEE-CF1A-4FC8-88AD-129872198372}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110511951168}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220522952268}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555955568}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566956668}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440544954468}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511951168}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DFEFCDEE-CF1A-4FC8-88AD-129872198372}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511951168}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DFEFCDEE-CF1A-4FC8-88AD-129872198372}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{DFEFCDEE-CF1A-4FC8-88AD-129872198372}]
Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{DFEFCDEE-CF1A-4FC8-88AD-129872198372}]
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110511951168}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220522952268}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550555955568}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660566956668}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511951168}
Wert Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Daten Wiederhergestellt : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Schlüssel Gelöscht : HKCU\Software\GlobalUpdate
Schlüssel Gelöscht : HKCU\Software\Myfree Codec
Schlüssel Gelöscht : HKCU\Software\SmartBar
Schlüssel Gelöscht : HKCU\Software\smartbarbackup
Schlüssel Gelöscht : HKCU\Software\smartbarlog
Schlüssel Gelöscht : HKCU\Software\TutoTag
Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider
Schlüssel Gelöscht : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Schlüssel Gelöscht : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Schlüssel Gelöscht : HKLM\Software\FreeSoftToday
Schlüssel Gelöscht : HKLM\Software\GlobalUpdate
Schlüssel Gelöscht : HKLM\Software\installedbrowserextensions
Schlüssel Gelöscht : HKLM\Software\Myfree Codec
Schlüssel Gelöscht : HKLM\Software\SupDp
Schlüssel Gelöscht : HKLM\Software\SupTab
Schlüssel Gelöscht : HKLM\Software\supWindowsMangerProtect
Schlüssel Gelöscht : HKLM\Software\supWPM
Schlüssel Gelöscht : HKLM\Software\Tutorials
Schlüssel Gelöscht : HKLM\Software\webssearchesSoftware
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DMUninstaller
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\loadtbs-3.0
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\installedbrowserextensions
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\InstalledThirdPartyPrograms
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup
Daten Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SupTab\SEARCH~1.DLL
Daten Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SupTab\SEARCH~2.DLL
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.17207
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
-\\ Mozilla Firefox v30.0 (de)
[ Datei : C:\Users\Steffi\AppData\Roaming\Mozilla\Firefox\Profiles\er0hrl4q.default-1405686912614\prefs.js ]
Zeile gelöscht : user_pref("extensions.crossrider.bic", "147497febd33f7886f4a29d1a4c793b7");
[ Datei : C:\Users\Steffi-Frank\AppData\Roaming\Mozilla\Firefox\Profiles\261w8aqg.default\prefs.js ]
Zeile gelöscht : user_pref("browser.search.defaultenginename", "Web Search");
Zeile gelöscht : user_pref("browser.search.selectedEngine", "Web Search");
Zeile gelöscht : user_pref("browser.startup.homepage", "hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbQlzfY23FxTb9PwZyXtcFeYy1mal1P-M21kz-X_OGcbFbBIx1uDjJ9me_TWSnhUo4YbmpNpmmHxxncrHZLeWvCHtBBObPJ_5xJvETgYHXGdA2eHqvnCu1b_q8e[...]
Zeile gelöscht : user_pref("browser.uiCustomization.state", "{\"placements\":{\"PanelUI-contents\":[\"edit-controls\",\"zoom-controls\",\"new-window-button\",\"privatebrowsing-button\",\"save-page-button\",\"print-but[...]
Zeile gelöscht : user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssf[...]
Zeile gelöscht : user_pref("extensions.crossrider.bic", "1474a03804d16c845f230f7b51ad2eac");
Zeile gelöscht : user_pref("keyword.URL", "hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbQlzfY23FxTb9PwZyXtcFeYy1mal1P-M21kz-X_OGcbFbBIx1uDjJ9me_TWSnhUo4YbmpNpmmHxxncrHZLeWvCHtBBObPJ_5xJvETgYHXGdD9IoGTUS02dbOD2U0qv4cTHrDCcc[...]
*************************
AdwCleaner[R0].txt - [23348 octets] - [19/07/2014 14:14:42]
AdwCleaner[R1].txt - [18936 octets] - [19/07/2014 14:17:03]
AdwCleaner[S0].txt - [4698 octets] - [19/07/2014 14:15:50]
AdwCleaner[S1].txt - [13946 octets] - [19/07/2014 14:18:04]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [14007 octets] ########## Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 19.07.2014
Suchlauf-Zeit: 14:36:24
Logdatei: mbam.txt
Administrator: Ja
Version: 2.00.2.1012
Malware Datenbank: v2014.07.19.03
Rootkit Datenbank: v2014.07.17.01
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Self-protection: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Steffi-Frank
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 367904
Verstrichene Zeit: 12 Min, 55 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristics: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 17
PUP.Optional.Snapdo.T, HKU\S-1-5-21-3353102587-1010034850-1855053600-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{006ee092-9658-4fd6-bd8e-a21a348e59f5}, In Quarantäne, [ff60abf607749d99d279345f0002df21],
PUP.Optional.Snapdo.T, HKU\S-1-5-21-3353102587-1010034850-1855053600-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{006EE092-9658-4FD6-BD8E-A21A348E59F5}, In Quarantäne, [ff60abf607749d99d279345f0002df21],
PUP.Optional.QuickShare.A, HKU\S-1-5-21-3353102587-1010034850-1855053600-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}, In Quarantäne, [7ee16f32fa818babe879f39ced1530d0],
PUP.Optional.QuickShare.A, HKU\S-1-5-21-3353102587-1010034850-1855053600-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}, In Quarantäne, [7ee16f32fa818babe879f39ced1530d0],
PUP.Optional.HQVideo.A, HKLM\SOFTWARE\WOW6432NODE\HQ-V1.8, In Quarantäne, [06595948a2d937ffefacc90032d022de],
PUP.Optional.Snapdo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{6EA563AD-DF38-4A1E-9437-3EA6EDA7B784}, In Quarantäne, [b8a7f3ae5e1d65d18eff0bb657ab43bd],
PUP.Optional.HQVideo.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\HQ-V1.8, In Quarantäne, [5609544d5724d85ed3ca4683778b6997],
PUP.Optional.Lyrics.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\SuperLyrics-16, In Quarantäne, [005f3d64f5861b1bbcd87763ac56f30d],
PUP.Optional.HQVideo.A, HKU\S-1-5-21-3353102587-1010034850-1855053600-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\HQ-V1.8, In Quarantäne, [56090c951c5f082ec6d7f4d560a228d8],
PUP.Optional.Lyrics.A, HKU\S-1-5-21-3353102587-1010034850-1855053600-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\SuperLyrics-16, In Quarantäne, [c59a663b9dde2b0ba0f433a7719144bc],
PUP.Optional.Ciuvo.A, HKU\S-1-5-21-3353102587-1010034850-1855053600-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\ciuvo.com, In Quarantäne, [88d76a37b0cbc76f32dfae182dd5e31d],
PUP.Optional.SuperFish.A, HKU\S-1-5-21-3353102587-1010034850-1855053600-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\superfish.com, In Quarantäne, [dd826938c4b787af6ea2388e08fa7e82],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3353102587-1010034850-1855053600-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, In Quarantäne, [4916049db9c28da93f1551c3ed178d73],
PUP.Optional.HQVideo.A, HKU\S-1-5-21-3353102587-1010034850-1855053600-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\HQ-V1.8, In Quarantäne, [6df2802194e71521900dac1df50d738d],
PUP.Optional.Lyrics.A, HKU\S-1-5-21-3353102587-1010034850-1855053600-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\SuperLyrics-16, In Quarantäne, [322d1d8475066ec880141cbe26dc817f],
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [1e414d5474072610450c9a23b949bf41],
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [1e414d5474072610450c9a23b949bf41],
Registrierungswerte: 3
PUP.Optional.FirstSeenToday.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|fst_de_100, In Quarantäne, [421da6fbc6b579bdc3cf4591f21025db],
PUP.Optional.FastStart.A, HKU\S-1-5-21-3353102587-1010034850-1855053600-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\EXTENDS|appid, faststartff@gmail.com, In Quarantäne, [aab5940d6f0c04327dd8f6cf48ba3dc3]
PUP.Optional.Snapdo.T, HKU\S-1-5-21-3353102587-1010034850-1855053600-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {006ee092-9658-4fd6-bd8e-a21a348e59f5}, In Quarantäne, [93cc158ce19a2e0894a2c002ae54827e]
Registrierungsdaten: 13
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[94cb158cea91162077991c8d5ea6c53b]
PUP.Optional.Snapdo, HKU\S-1-5-21-3353102587-1010034850-1855053600-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013),Ersetzt,[c49bd8c9b8c31026116f921632d2728e]
PUP.Optional.Snapdo, HKU\S-1-5-21-3353102587-1010034850-1855053600-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=hp&installDate=09/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=hp&installDate=09/11/2013),Ersetzt,[c996b4edd7a4e6509de43f6974907e82]
PUP.Optional.Snapdo, HKU\S-1-5-21-3353102587-1010034850-1855053600-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Bar, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013),Ersetzt,[f669277ad0abb5813d4202a660a40df3]
PUP.Optional.Snapdo, HKU\S-1-5-21-3353102587-1010034850-1855053600-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Default_Search_URL, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013),Ersetzt,[acb3c4dd601bbf775e24b0f8ce362cd4]
PUP.Optional.Snapdo, HKU\S-1-5-21-3353102587-1010034850-1855053600-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|SearchAssistant, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013),Ersetzt,[4916930e8cef9e98562dddcba361c63a]
PUP.Optional.SnapDo.A, HKU\S-1-5-21-3353102587-1010034850-1855053600-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|Default, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013),Ersetzt,[89d64b566c0f3cfab86349569c6853ad]
PUP.Optional.Snapdo, HKU\S-1-5-21-3353102587-1010034850-1855053600-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=hp&installDate=09/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=hp&installDate=09/11/2013),Ersetzt,[8fd0376ac7b440f6473a4e5a62a2ce32]
PUP.Optional.Snapdo, HKU\S-1-5-21-3353102587-1010034850-1855053600-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Bar, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013),Ersetzt,[0c53722fea91a195c7b8c9df9e668080]
PUP.Optional.Snapdo, HKU\S-1-5-21-3353102587-1010034850-1855053600-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013),Ersetzt,[64fb9a079be042f41967dcccc63e28d8]
PUP.Optional.Snapdo, HKU\S-1-5-21-3353102587-1010034850-1855053600-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Default_Search_URL, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013),Ersetzt,[de81722fbdbeb284cfb39a0e07fd17e9]
PUP.Optional.Snapdo, HKU\S-1-5-21-3353102587-1010034850-1855053600-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|SearchAssistant, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013),Ersetzt,[98c7257cb2c967cfe49f4f59857f59a7]
PUP.Optional.SnapDo.A, HKU\S-1-5-21-3353102587-1010034850-1855053600-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|Default, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=cae2aca3-c77d-b871-8b2a-b950ad899b22&searchtype=ds&q={searchTerms}&installDate=09/11/2013),Ersetzt,[4f10742db0cbf93d918abae5699b0af6]
Ordner: 16
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\Dealply, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\exe, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\HDplus, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\MyBackupPc, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\OptimizerPro, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\Pricepeep2, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\SaltarSmart, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\Snapdo, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\Superlyrics, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.CrossRider.A, C:\Users\Steffi\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cdihkdldaicijakhchgojcokhpamkibi, In Quarantäne, [ed720e932457f244ffe7e5d525dd3fc1],
PUP.Optional.CrossRider.A, C:\Users\Steffi\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_cdihkdldaicijakhchgojcokhpamkibi_0, In Quarantäne, [144b1889b2c994a227c0e2d818eaa957],
PUP.Optional.GlobalUpdate.A, C:\Users\Steffi-Frank\AppData\Local\Temp\comh.346679, In Quarantäne, [1e414d5474072610450c9a23b949bf41],
Dateien: 158
PUP.Optional.YourFileDownloader, C:\$Recycle.Bin\S-1-5-21-3353102587-1010034850-1855053600-1004\$RI1GL9F.exe, In Quarantäne, [65faf3ae7704ba7ca283120c56aaff01],
PUP.Optional.OptimumInstaller.A, C:\$Recycle.Bin\S-1-5-21-3353102587-1010034850-1855053600-1004\$RU0NTEZ.exe, In Quarantäne, [d78800a12d4e46f00c967fd6ae5357a9],
PUP.Optional.OptimizePro.A, C:\Users\Steffi-Frank\AppData\Local\Temp\OptimizerPro.exe, In Quarantäne, [2e31237e83f865d1440ab96551af5ea2],
PUP.Optional.Babylon.A, C:\Users\Steffi-Frank\AppData\Local\Temp\MyBabylonTB_google_20120807.exe, In Quarantäne, [2e31bbe6aecd9a9ccd0e908e59a7bf41],
PUP.Optional.OpenCandy, C:\Users\Steffi-Frank\AppData\Local\Temp\FreemakeVideoConverter_4.1.2.1.exe, In Quarantäne, [f7688f12196216208917e62f47ba11ef],
PUP.Optional.NewPlayer.A, C:\Users\Steffi-Frank\AppData\Local\Temp\1AC2tmp\newvideoplayersetup.exe, In Quarantäne, [aab5970aa3d86accf3a7493d27da0cf4],
PUP.Optional.Linkury.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\software\Installer.exe, In Quarantäne, [144bd3ce7dfe00367c7ab5b6b4508b75],
PUP.Optional.PricePeep.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\software\PricePeep.exe, In Quarantäne, [114e3b66b7c4f83e773355cc37ca37c9],
PUP.Optional.ScramblePacker.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\software\Superlyrics.exe, In Quarantäne, [e57a9e03126984b2f9e9780b18e906fa],
PUP.Optional.NewPlayer.A, C:\Users\Steffi-Frank\AppData\Local\Temp\E9B4tmp\newvideoplayersetup.exe, In Quarantäne, [6bf4e8b90378a393eeacb0d622dfe020],
PUP.Optional.CrossRider.A, C:\Users\Steffi-Frank\AppData\Local\Temp\EA05tmp\setup.exe, In Quarantäne, [c699bfe2a9d288ae6e898cc051af7789],
PUP.Optional.SearchHijacker.A, C:\Users\Steffi-Frank\AppData\Local\Temp\EA45tmp\lly_webssearches.exe, In Quarantäne, [db842f726912bd79c90d6338bc4545bb],
PUP.Optional.CrossRider.A, C:\Users\Steffi-Frank\AppData\Local\Temp\1B32tmp\setup.exe, In Quarantäne, [e37cf5ac324946f0ee0959f3cc3451af],
PUP.Optional.SearchHijacker.A, C:\Users\Steffi-Frank\AppData\Local\Temp\1B72tmp\lly_webssearches.exe, In Quarantäne, [d08f554c5922082e04d223789a67c838],
PUP.Optional.SmartBar, C:\Users\Steffi-Frank\AppData\Local\Temp\MSIA1F4.tmp-\Smartbar.Installer.CustomActions.dll, In Quarantäne, [64fb673ad0ab9d9962d1c16dea166d93],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\1tH6YX9u.exe.part, In Quarantäne, [d48b0a97eb90a98dac7798a08f71b947],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\3IXort5K.exe.part, In Quarantäne, [4d12acf594e75ed8f42f4debc13ffb05],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\AFIQoDSW.exe.part, In Quarantäne, [213ed1d088f39f9750d379bfd828966a],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\Rgq3O6yd.exe.part, In Quarantäne, [84db475a96e56cca2af9a98fce323ec2],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\W1a5yeK5.exe.part, In Quarantäne, [c49b1190c7b4a6902df6a791b050cc34],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\HSR2gjqu.exe.part, In Quarantäne, [322dbbe6700bc3733fe44fe9f20e7d83],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\Z6rnTXZ7.exe.part, In Quarantäne, [76e9cfd2e497033328fb142408f8b947],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\ZRfAsyZT.exe.part, In Quarantäne, [8cd3554cdba083b371b2c078639de719],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\_DvAwVt1.exe.part, In Quarantäne, [0a55a5fcf883a4929e85d761768af709],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\e0nHg1uN.exe.part, In Quarantäne, [84db247dbbc023138f94b1876f918e72],
PUP.Optional.Somoto, C:\Users\Steffi\AppData\Local\Temp\EzPrHPZ1.exe.part, In Quarantäne, [540b7c252b503006b13be1eb0bf9f010],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\7YZy+yMj.exe.part, In Quarantäne, [203fe2bfee8ddb5bc261f642f50b1ce4],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\8DvcUIr5.exe.part, In Quarantäne, [afb08b16265530066fb4f24654aceb15],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\kjhvbaXD.exe.part, In Quarantäne, [b9a631700477d066190af4441fe18a76],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\aZOLW_sM.exe.part, In Quarantäne, [bca3eeb3de9d64d20f144eea2ed21fe1],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\VETsKUVq.exe.part, In Quarantäne, [5e01c0e1e6956ec87ea5a0985da3f010],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\mAOCvv5S.exe.part, In Quarantäne, [431c752cbebdab8b72b104348f71946c],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\mPXSpVDH.exe.part, In Quarantäne, [84dbf7aac7b4e452ef343800fb0537c9],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\mqhh31G8.exe.part, In Quarantäne, [f966178a6a1195a1f82bc6722ed247b9],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\gRnOc2vT.exe.part, In Quarantäne, [d38c4859483371c5b96aa494e41c639d],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\PubyfUwH.exe.part, In Quarantäne, [66f9e8b9bbc088aeff24380055ab50b0],
PUP.Optional.Somoto.A, C:\Users\Steffi\AppData\Local\Temp\qDP36rSk.exe.part, In Quarantäne, [f966e7baf784fc3a131098a0b14ffc04],
PUP.Optional.OpenCandy, C:\Users\Steffi\Diverses aus Download\FreemakeVideoConverterSetup.exe, In Quarantäne, [154a366b413a93a33c648293c63bab55],
PUP.LoadTubes, C:\Users\Steffi\Downloads\flashplayer_update_11_de.exe, In Quarantäne, [dc83e7baf08b1c1a37ee9b12f20e29d7],
PUP.Optional.Somoto, C:\Users\Steffi\Downloads\InstallRARFileOpenKnife.exe, In Quarantäne, [4f10d2cff5863afcec001bb1d82c758b],
PUP.Optional.Somoto.A, C:\Users\Steffi\Downloads\burn4free_setup.exe, In Quarantäne, [cb940c95027974c2d0f7908f4db446ba],
PUP.Optional.Somoto.A, C:\Users\Steffi-Frank\AppData\Local\TempDIR\BetterInstaller.exe, In Quarantäne, [4619d9c8463531056632aa7bbc4508f8],
PUP.Optional.SnapDo.A, C:\Windows\Installer\12d222.msi, In Quarantäne, [8dd2bae727546dc9fa93b4d7778ae11f],
PUP.Optional.CrossRider.A, C:\Users\Steffi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cdihkdldaicijakhchgojcokhpamkibi_0.localstorage, In Quarantäne, [39260f92304bcd69d5e26c59d131d32d],
PUP.Optional.CrossRider.A, C:\Users\Steffi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cdihkdldaicijakhchgojcokhpamkibi_0.localstorage-journal, In Quarantäne, [ee719a071c5f53e32097ffc6fb07cb35],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\base.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\dealply.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\hdplus.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\mypcbackup.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\optimizerpro.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\position1A.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\position2A.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\position2B.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\position2C.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\position3A.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\position3B.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\position3C.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\position3D.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\position4A.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\pricepeep.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\saltarsmart.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\snapdo.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\style.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\superlyrics.css, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\bg_app.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\boton.jpg, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\boton_xl.jpg, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\bullet-short.gif, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\bullet-shortw.gif, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\bullet.gif, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\butpause.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\butplay.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\check-close.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\check.jpg, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\check.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\cross.jpg, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\dealply-logo-gris.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\dealply-logo.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\dealply-logo2.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\hide.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\less.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\logo-win.jpg, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\more.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\mypcbackup.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\optimizerpro-img.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\optimizerpro-logo-big.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\optimizerpro-logo.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\percentage-bg.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\progress.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\progress_small.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\progress_small_bg.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\screen-geaudioconverter.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\screen-gevideoconverter.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\screen-olivebrowser.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\screen-vafplayer.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\screen-zipper.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\show.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\snapdo-logo.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\snapdo-logow.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\snapdo-toolbar.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\css\images\superlyrics-logo.png, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\Dealply\info.html, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\exe\box.html, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\exe\close.html, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\exe\finish.html, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\exe\group.html, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\exe\instalando.html, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\exe\options.html, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\exe\welcome.html, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\HDplus\info.html, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\MyBackupPc\info.html, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\OptimizerPro\info.html, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\Pricepeep2\info.html, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\SaltarSmart\info.html, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\Snapdo\info.html, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.BundleInstaller.A, C:\Users\Steffi-Frank\AppData\Local\Temp\DM\bin\Superlyrics\info.html, In Quarantäne, [9ec1b5ec34473006ddd0495b34cef808],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\1293297481.mxaddon, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\13953b91-e700-4471-87d5-fad9877e4a97.crx, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\2294e73f-1a10-477e-bf68-cb463a5a292b-10.exe, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\2294e73f-1a10-477e-bf68-cb463a5a292b-11.exe, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\2294e73f-1a10-477e-bf68-cb463a5a292b-2.exe, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\2294e73f-1a10-477e-bf68-cb463a5a292b-3.exe, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\2294e73f-1a10-477e-bf68-cb463a5a292b-4.exe, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\2294e73f-1a10-477e-bf68-cb463a5a292b-5.exe, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\2294e73f-1a10-477e-bf68-cb463a5a292b.crx, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\2294e73f-1a10-477e-bf68-cb463a5a292b.xpi, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\Interop.IWshRuntimeLibrary.dll, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\Newtonsoft.Json.dll, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\SuperSocket.ClientEngine.Common.dll, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\SuperSocket.ClientEngine.Core.dll, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\SuperSocket.ClientEngine.Protocol.dll, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\WebSocket4Net.dll, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\ae7b6194-5a8d-4fca-8316-65071e1ed020.crx, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\background.html, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\bgNova.html, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\HQ-V1.8-bg.exe, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\HQ-V1.8-bho.dll, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\HQ-V1.8-bho64.dll, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\HQ-V1.8-codedownloader.exe, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\HQ-V1.8-nova.dll, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\HQ-V1.8-novainstaller.exe, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.HQVideo.A, C:\Program Files (x86)\HQ-V1.8\HQ-V1.8.ico, In Quarantäne, [1f408819d2a9c472727f269232d05ca4],
PUP.Optional.CrossRider.A, C:\Users\Steffi\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cdihkdldaicijakhchgojcokhpamkibi\000003.log, In Quarantäne, [ed720e932457f244ffe7e5d525dd3fc1],
PUP.Optional.CrossRider.A, C:\Users\Steffi\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cdihkdldaicijakhchgojcokhpamkibi\CURRENT, In Quarantäne, [ed720e932457f244ffe7e5d525dd3fc1],
PUP.Optional.CrossRider.A, C:\Users\Steffi\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cdihkdldaicijakhchgojcokhpamkibi\LOCK, In Quarantäne, [ed720e932457f244ffe7e5d525dd3fc1],
PUP.Optional.CrossRider.A, C:\Users\Steffi\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cdihkdldaicijakhchgojcokhpamkibi\LOG, In Quarantäne, [ed720e932457f244ffe7e5d525dd3fc1],
PUP.Optional.CrossRider.A, C:\Users\Steffi\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cdihkdldaicijakhchgojcokhpamkibi\MANIFEST-000002, In Quarantäne, [ed720e932457f244ffe7e5d525dd3fc1],
PUP.Optional.CrossRider.A, C:\Users\Steffi\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_cdihkdldaicijakhchgojcokhpamkibi_0\1, In Quarantäne, [144b1889b2c994a227c0e2d818eaa957],
PUP.Optional.GlobalUpdate.A, C:\Users\Steffi-Frank\AppData\Local\Temp\comh.346679\GoogleCrashHandler.exe, In Quarantäne, [1e414d5474072610450c9a23b949bf41],
PUP.Optional.GlobalUpdate.A, C:\Users\Steffi-Frank\AppData\Local\Temp\comh.346679\GoogleUpdate.exe, In Quarantäne, [1e414d5474072610450c9a23b949bf41],
PUP.Optional.GlobalUpdate.A, C:\Users\Steffi-Frank\AppData\Local\Temp\comh.346679\GoogleUpdateBroker.exe, In Quarantäne, [1e414d5474072610450c9a23b949bf41],
PUP.Optional.GlobalUpdate.A, C:\Users\Steffi-Frank\AppData\Local\Temp\comh.346679\GoogleUpdateHelper.msi, In Quarantäne, [1e414d5474072610450c9a23b949bf41],
PUP.Optional.GlobalUpdate.A, C:\Users\Steffi-Frank\AppData\Local\Temp\comh.346679\GoogleUpdateOnDemand.exe, In Quarantäne, [1e414d5474072610450c9a23b949bf41],
PUP.Optional.GlobalUpdate.A, C:\Users\Steffi-Frank\AppData\Local\Temp\comh.346679\goopdate.dll, In Quarantäne, [1e414d5474072610450c9a23b949bf41],
PUP.Optional.GlobalUpdate.A, C:\Users\Steffi-Frank\AppData\Local\Temp\comh.346679\goopdateres_en.dll, In Quarantäne, [1e414d5474072610450c9a23b949bf41],
PUP.Optional.GlobalUpdate.A, C:\Users\Steffi-Frank\AppData\Local\Temp\comh.346679\npGoogleUpdate4.dll, In Quarantäne, [1e414d5474072610450c9a23b949bf41],
PUP.Optional.GlobalUpdate.A, C:\Users\Steffi-Frank\AppData\Local\Temp\comh.346679\psmachine.dll, In Quarantäne, [1e414d5474072610450c9a23b949bf41],
PUP.Optional.GlobalUpdate.A, C:\Users\Steffi-Frank\AppData\Local\Temp\comh.346679\psuser.dll, In Quarantäne, [1e414d5474072610450c9a23b949bf41],
Physische Sektoren: 0
(No malicious items detected)
(end) Code:
Zoek.exe v5.0.0.0 Updated 16-07-2014
Tool run by Steffi-Frank on 19.07.2014 at 14:59:43,04.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Steffi-Frank\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
19.07.2014 15:03:58 Zoek.exe System Restore Point Created Succesfully.
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
HKEY_USERS\S-1-5-21-3353102587-1010034850-1855053600-1005\Software\Microsoft\Internet Explorer\Approved Extensions\{DFEFCDEE-CF1A-4FC8-88AD-129872198372} deleted successfully
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\Steffi\AppData\Roaming\Mozilla\Firefox\Profiles\er0hrl4q.default-1405686912614\prefs.js:
Added to C:\Users\Steffi\AppData\Roaming\Mozilla\Firefox\Profiles\er0hrl4q.default-1405686912614\prefs.js:
user_pref("browser.startup.homepage", "hxxp://www.google.com");
user_pref("browser.search.defaulturl", "hxxp://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "hxxp://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "hxxp://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
Deleted from C:\Users\Steffi\AppData\Roaming\Thunderbird\Profiles\ygpziamq.default\prefs.js:
Added to C:\Users\Steffi\AppData\Roaming\Thunderbird\Profiles\ygpziamq.default\prefs.js:
user_pref("browser.startup.homepage", "hxxp://www.google.com");
user_pref("browser.search.defaulturl", "hxxp://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "hxxp://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "hxxp://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
Deleted from C:\Users\Steffi\AppData\Roaming\TomTom\HOME\Profiles\w7qjprrn.default\prefs.js:
Added to C:\Users\Steffi\AppData\Roaming\TomTom\HOME\Profiles\w7qjprrn.default\prefs.js:
Deleted from C:\Users\STEFFI~1\AppData\Roaming\Mozilla\Firefox\Profiles\261w8aqg.default\prefs.js:
user_pref("browser.newtab.url", "chrome://quick_start/content/index.html");
Added to C:\Users\STEFFI~1\AppData\Roaming\Mozilla\Firefox\Profiles\261w8aqg.default\prefs.js:
user_pref("browser.startup.homepage", "hxxp://www.google.com");
user_pref("browser.search.defaulturl", "hxxp://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "hxxp://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "hxxp://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
ProfilePath: C:\Users\Steffi\AppData\Roaming\Mozilla\Firefox\Profiles\er0hrl4q.default-1405686912614
user.js not found
---- FireFox user.js and prefs.js backups ----
prefs__1515_.backup
ProfilePath: C:\Users\Steffi\AppData\Roaming\Thunderbird\Profiles\ygpziamq.default
user.js not found
---- FireFox user.js and prefs.js backups ----
prefs__1515_.backup
ProfilePath: C:\Users\Steffi\AppData\Roaming\TomTom\HOME\Profiles\w7qjprrn.default
user.js not found
---- FireFox user.js and prefs.js backups ----
prefs__1515_.backup
ProfilePath: C:\Users\STEFFI~1\AppData\Roaming\Mozilla\Firefox\Profiles\261w8aqg.default
user.js not found
---- Lines smartbar removed from prefs.js ----
user_pref("browser.uiCustomization.state", "{\"placements\":{\"PanelUI-contents\":[\"edit-controls\",\"zoom-controls\",\"new-window-button\",\"private
---- Lines af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568 removed from prefs.js ----
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.active", true);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.addressbar", "NA");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.addressbarenhanced", "");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.af80af4ec42b9429d99b04078ec7cf86444882d2088654b1
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.af80af4ec42b9429d99b04078ec7cf86444882d2088654b1
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.asyncdb.was_copied", "true");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.asyncdb_dbWasSet", true);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.asyncdb_dbWasSet_FF25_FIX", true);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.asyncinternaldb.was_copied", "true");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.asyncinternaldb_dbWasSet", true);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.asyncinternaldb_dbWasSet_FF25_FIX", true);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.backgroundver", 1);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.certdomaininstaller", "");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.changeprevious", false);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.cookie.InstallationTime.expiration", "Fri Feb 01
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.cookie.InstallationTime.value", "%221405538759%2
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.cookie.InstallerParams.expiration", "Fri Feb 01
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.cookie.InstallerParams.value", "%7B%22source_id%
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.description", "Turn YouTube videos to High Defin
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.domain", "");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.enablesearch", false);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.homepage", "");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.iframe", false);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.InstallationThankYouPage", false);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.InstallationTime", 1405538759);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.__defualt_browser__.expiration", "Fri
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.__defualt_browser__.value", "%22ff%22
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb._installer_additional_info.expiration
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb._installer_additional_info.value", "%
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.installer.expiration", "Fri Feb 01 20
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.installer.value", "%7B%22InstallerIde
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.InstallerIdentifiers.expiration", "Fr
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.InstallerIdentifiers.value", "%7B%22i
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.InstallerParams.expiration", "Fri Feb
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.InstallerParams.value", "%7B%22source
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.InstallerParamsCache.expiration", "Fr
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.InstallerParamsCache.value", "%7B%22s
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.InstallerUserIdentifiersCache.expirat
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.InstallerUserIdentifiersCache.value",
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.monetization_plugin_bundledUrls.expir
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.monetization_plugin_bundledWithHash.e
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.monetization_plugin_bundledWithHash.v
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.monetization_plugin_last_executable_r
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.monetization_plugin_last_executable_r
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.monetization_plugin_notBundledArr_.ex
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.monetization_plugin_notBundledArr_.va
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.monetization_plugin_regBundledWithSof
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.monetization_plugin_regBundledWithSof
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.Resources_appVer.expiration", "Fri Fe
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.Resources_appVer.value", "60");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.Resources_lastVersion.expiration", "F
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.Resources_lastVersion.value", "1");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.Resources_meta.expiration", "Fri Feb
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.Resources_meta.value", "%7B%7D");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.Resources_nextCheck.expiration", "Sat
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.Resources_nextCheck.value", "true");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.Resources_queue.expiration", "Fri Feb
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.Resources_queue.value", "%7B%7D");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.Resources_remote_resources.expiration
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.internaldb.Resources_remote_resources.value", "%
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.lastDailyReport", "1405771196373");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.lastUpdate", "1405771197050");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.manifesturl", "");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.name", "Plus-HD-V1.8");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.newtab", "");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.opensearch", "");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.pluginsurl", "hxxp://js.genstatsnet.com/plugin/a
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.pluginsversion", 53);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.publisher", "Plus HD");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.searchstatus", 0);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.setnewtab", false);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.thankyou", "");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.updateinterval", 360);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.59568.ver", 60);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.apps", "59568");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.bic", "1474a03804d16c845f230f7b51ad2eac");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.cid", 59568);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.firstrun", false);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.hadappinstalled", true);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.installationdate", 1405696049);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.installerAdditionalInfo", "{\"asw\":[0, 5, 16777216]}"
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.modetype", "production");
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.reportInstall", true);
user_pref("extensions.af80af4ec42b9429d99b04078ec7cf86444882d2088654b13b79eae8470d9a955com59568.statsDailyCounter", 2);
---- FireFox user.js and prefs.js backups ----
prefs__1515_.backup
==== Deleting Files \ Folders ======================
C:\PROGRA~2\Probit Software deleted
C:\PROGRA~2\MyFree Codec deleted
C:\found.000 deleted
C:\Users\Steffi\AppData\Roaming\Aspex Research & Technology deleted
C:\PROGRA~3\boost_interprocess deleted
C:\Users\Steffi\AppData\Local\cache deleted
C:\Users\Steffi-Frank\AppData\Local\TempDIR deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec deleted
C:\Users\Steffi-Frank\Searches deleted
C:\Windows\wininit.ini deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\Users\STEFFI~1\AppData\Roaming\Mozilla\Firefox\Profiles\261w8aqg.default\extensions\staged deleted
"C:\Windows\Installer\118c592.msi" deleted
"C:\Users\Steffi-Frank\AppData\Roaming\Piano Med" deleted
"C:\Users\Steffi-Frank\AppData\Roaming\Pick Bass" deleted
"C:\Users\Steffi-Frank\AppData\Roaming\Printer Icons" deleted
"C:\ProgramData\Piano Hard" deleted
"C:\ProgramData\Profiles" deleted
"C:\Users\Steffi-Frank\AppData\Roaming\convert\convert.exe" deleted
"C:\Users\Steffi-Frank\AppData\Roaming\convert" deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"fmconverter@gmail.com"="C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox" [09.01.2014 21:28]
==== Firefox Extensions ======================
ProfilePath: C:\Users\Steffi\AppData\Roaming\TomTom\HOME\Profiles\w7qjprrn.default
- Map status indicator - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com
- TomTom HOME default theme - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\baseTheme@tomtom.com
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\Steffi-Frank\AppData\Roaming\Mozilla\Firefox\Profiles\261w8aqg.default
4390CCD3790F8D9C427C0C29590C62D7 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll - Shockwave Flash
2C82D753EF779945977C82A3908DA20A - C:\Windows\SysWOW64\npDeployJava1.dll - Java Deployment Toolkit 7.0.90.5
15E298B5EC5B89C5994A59863969D9FF - C:\Windows\SysWOW64\npmproxy.dll - Microsoft® Windows® Operating System
==== Chrome Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
mkfokfffehpeedafpekjeddnmnjhmcmk - C:\Program Files (x86)\Norton Internet Security\Engine\20.2.0.19\Exts\Chrome.crx[18.10.2012 19:57]
Norton Identity Protection - Steffi\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk
==== Chrome Fix ======================
C:\Users\Steffi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage deleted successfully
C:\Users\Steffi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage-journal deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="hxxp://www.google.com"
"Default_Page_URL"="hxxp://www.google.com"
"Search Page"="hxxp://www.google.com"
"Search Bar"="hxxp://www.google.com"
"Use Search Asst"="yes"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="hxxp://www.google.com"
"Default_Page_URL"="hxxp://www.google.com"
"Start Page"="hxxp://www.google.com"
"Search Page"="hxxp://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="hxxp://www.google.com"
"Default_Page_URL"="hxxp://www.google.com"
"Start Page"="hxxp://www.google.com"
"Search Page"="hxxp://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="hxxp://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]
"Default"="hxxp://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="hxxp://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="hxxp://www.google.com"
"SearchAssistant"="hxxp://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="hxxp://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="hxxp://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="hxxp://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="hxxp://www.google.com"
"Use Search Asst"="no"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="hxxp://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="hxxp://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="hxxp://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="hxxp://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="hxxp://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="hxxp://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="hxxp://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="hxxp://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="hxxp://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="hxxp://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="hxxp://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="hxxp://go.microsoft.com/fwlink/?LinkId=54896"
"SearchAssistant"="hxxp://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="hxxp://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
==== Reset Google Chrome ======================
C:\Users\Steffi\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Steffi\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Reset IE Proxy ======================
Value(s) before fix:
"ProxyEnable"=dword:00000000
Value(s) after fix:
"ProxyEnable"=dword:00000000
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F60730A4A66673047777F5728467D401 deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EE171732-BEB4-4576-887D-CB62727F01CA} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4A03706F-666A-4037-7777-5F2748764D10} deleted successfully
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\{995d6723-f7d1-498a-80e3-c28b263fcdf6} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\F60730A4A66673047777F5728467D401 deleted successfully
HKEY_CURRENT_USER\Software\Microsoft\Installer\Products\DA365AE683FDE1A44973E36ADE7A7B48 deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Browser Infrastructure Helper deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesAirMessage deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Steffi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Steffi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\Steffi\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Steffi\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Steffi-Frank\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Steffi-Frank\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
C:\Users\Steffi\AppData\Local\Mozilla\Firefox\Profiles\er0hrl4q.default-1405686912614\Cache emptied successfully
C:\Users\Steffi-Frank\AppData\Local\Mozilla\Firefox\Profiles\261w8aqg.default\Cache emptied successfully
==== Empty Chrome Cache ======================
C:\Users\Steffi\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=258 folders=22 30682801 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Steffi\AppData\Local\Temp emptied successfully
C:\Users\Steffi-Frank\AppData\Local\Temp will be emptied at reboot
C:\Users\UpdatusUser\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\STEFFI~1\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on 19.07.2014 at 15:25:38,34 ====================== |