![]() |
Antivir wird durch eine Gruppenrichtlinie blockiert. Liebes Board. Antivir wird auf meinem Rechner blockiert mit dem Hinweis: "Dieses Programm wird durch eine Gruppenrichtlinie blockiert. Bitte wenden Sie sich an Ihren Systemadministrator." Ich habe vor einigen Tagen bei einem Pop up mit den Worten: Führen Sie das Update xy durch" aus Versehen auf OK geklickt und seitdem gehen immer automatisch Browserfenster auf und führen mich auf seltsame Seiten. Beim Versuch mit Antivr und Maleware dagegen vorzugehen werden diese nur noch geblockt. Ich wäre euch sehr für eure Hilfe dankbar. Viele Grüße |
Hi, Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: ![]() (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
|
FRST FRST Logfile: FRST Logfile: Code: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-07-2014 --- --- --- |
FRST Additions Logfile: Code: Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-07-2014 |
Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code: HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Malwarebytes <====== ATTENTION Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Adware & Co. deinstallieren
Scan mit Combofix
|
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-07-2014 Ran by SieverM at 2014-07-30 16:48:20 Run:1 Running from C:\Users\SieverM\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Malwarebytes <====== ATTENTION HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Symantec <====== ATTENTION HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\McAfee <====== ATTENTION HKLM Group Policy restriction on software: C:\Program Files (x86)\Avira <====== ATTENTION HKLM Group Policy restriction on software: C:\Program Files (x86)\Common Files\Symantec Shared <====== ATTENTION HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Avira <====== ATTENTION HKLM Group Policy restriction on software: C:\Program Files (x86)\Malwarebytes' Anti-Malware <====== ATTENTION ***************** HKLM => Group Policy Restriction on software restored successfully. HKLM => Group Policy Restriction on software restored successfully. HKLM => Group Policy Restriction on software restored successfully. HKLM => Group Policy Restriction on software restored successfully. HKLM => Group Policy Restriction on software restored successfully. HKLM => Group Policy Restriction on software restored successfully. HKLM => Group Policy Restriction on software restored successfully. ==== End of Fixlog ==== Combofix Logfile: Code: ComboFix 14-07-29.01 - SieverM 30.07.2014 17:24:26.1.4 - x64 Konnte bei Uninstaller nicht alle mit Attention aufgezeigten Programme finden z.B. Amazon Bar... Habe Antivir deinstalliert für Combofix und dennoch die Meldung bekommen, dass Antivir auf dem Desktop liegt?! Hoffe, es hat dennoch soweit alles funktioniert und uns dem gewünschten Ergebnis näher gebracht...?! Vielen Dank schon jetzt! Grüße, maeuschen |
Downloade Dir bitte ![]()
Downloade Dir bitte ![]()
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte. |
Malwarebytes Anti-Malware Malwarebytes | Free Anti-Malware & Internet Security Software Suchlauf Datum: 31.07.2014 Suchlauf-Zeit: 21:49:13 Logdatei: mbam.txt Administrator: Ja Version: 2.00.2.1012 Malware Datenbank: v2014.07.31.07 Rootkit Datenbank: v2014.07.17.01 Lizenz: Testversion Malware Schutz: Aktiviert Bösartiger Webseiten Schutz: Aktiviert Self-protection: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: SieverM Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 334251 Verstrichene Zeit: 25 Min, 0 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Aktiviert Heuristics: Aktiviert PUP: Warnen PUM: Aktiviert Prozesse: 3 PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe, 1288, Löschen bei Neustart, [d8c95d436e0d5adc4075434f926f718f] PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\updateToggleMark.exe, 2276, Löschen bei Neustart, [b9e8237dbcbf3df9f3e295df5aa7d927] PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\utilToggleMark.exe, 2380, Löschen bei Neustart, [950c8719e398a393488d6b09e61bf709] Module: 0 (No malicious items detected) Registrierungsschlüssel: 77 PUP.Optional.WPM.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WindowsMangerProtect, In Quarantäne, [d8c95d436e0d5adc4075434f926f718f], PUP.Optional.WPM.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\WindowsMangerProtect, In Quarantäne, [d8c95d436e0d5adc4075434f926f718f], PUP.Optional.ToggleMark.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Update ToggleMark, In Quarantäne, [b9e8237dbcbf3df9f3e295df5aa7d927], PUP.Optional.ToggleMark.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Util ToggleMark, In Quarantäne, [950c8719e398a393488d6b09e61bf709], PUP.Optional.BrowseFox.A, HKLM\SOFTWARE\CLASSES\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}, In Quarantäne, [4958b1ef85f6c96d508befa97989cb35], PUP.Optional.BrowseFox.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}, In Quarantäne, [4958b1ef85f6c96d508befa97989cb35], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7}, In Quarantäne, [2b76544cafccb3838d521a7ef012c040], PUP.Optional.AmazonTB.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{EA582743-9076-4178-9AA6-7393FDF4D5CE}, In Quarantäne, [abf6a2fe225904328b962c6e09f9a45c], PUP.Optional.AmazonTB.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{008f6853-9cb4-41c5-a950-39d55e5e06ba}, In Quarantäne, [abf6a2fe225904328b962c6e09f9a45c], PUP.Optional.AmazonTB.A, HKLM\SOFTWARE\CLASSES\AlxTB2.TBLayoutBHO.1, In Quarantäne, [abf6a2fe225904328b962c6e09f9a45c], PUP.Optional.AmazonTB.A, HKLM\SOFTWARE\CLASSES\AlxTB2.TBLayoutBHO, In Quarantäne, [abf6a2fe225904328b962c6e09f9a45c], PUP.Optional.AmazonTB.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\AlxTB2.TBLayoutBHO, In Quarantäne, [abf6a2fe225904328b962c6e09f9a45c], PUP.Optional.AmazonTB.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\AlxTB2.TBLayoutBHO.1, In Quarantäne, [abf6a2fe225904328b962c6e09f9a45c], PUP.Optional.AmazonTB.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{69A72A8A-84ED-4a75-8CE7-263DBEF3E5D3}, In Quarantäne, [abf6a2fe225904328b962c6e09f9a45c], PUP.Optional.AmazonTB.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{B3EAD50C-ECB0-459A-9EDA-F505AB99675B}, In Quarantäne, [abf6a2fe225904328b962c6e09f9a45c], PUP.Optional.AmazonTB.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{B3EAD50C-ECB0-459A-9EDA-F505AB99675B}, In Quarantäne, [abf6a2fe225904328b962c6e09f9a45c], PUP.Optional.AmazonTB.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{B3EAD50C-ECB0-459A-9EDA-F505AB99675B}, In Quarantäne, [abf6a2fe225904328b962c6e09f9a45c], PUP.Optional.AmazonTB.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{F443A627-5009-4323-9C1D-7FD598D0D712}, In Quarantäne, [abf6a2fe225904328b962c6e09f9a45c], PUP.Optional.AmazonTB.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{F443A627-5009-4323-9C1D-7FD598D0D712}, In Quarantäne, [abf6a2fe225904328b962c6e09f9a45c], PUP.Optional.Snapdo.T, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{006ee092-9658-4fd6-bd8e-a21a348e59f5}, In Quarantäne, [4c552977abd0a88e40f473291ae857a9], PUP.Optional.Snapdo.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{006EE092-9658-4FD6-BD8E-A21A348E59F5}, In Quarantäne, [4c552977abd0a88e40f473291ae857a9], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{0af350d9-3916-454b-ac53-0b0b65f41301}, In Quarantäne, [d5cc376987f468ce39c729708a7839c7], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{68B81CCD-A80C-4060-8947-5AE69ED01199}, In Quarantäne, [eeb3b2eeaad152e422dfc9d046bcaa56], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E6B969FB-6D33-48d2-9061-8BBD4899EB08}, In Quarantäne, [edb4752b03783600a65c6930d230956b], PUP.Optional.Sanbreel.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{55dce8ba-9dec-4013-937e-adbf9317d990}Gw64, In Quarantäne, [f6ab138d6912f83ebc32ab23ca386d93], PUP.Optional.Sanbreel.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{9a9157bb-003e-4fef-8bd1-c09bc4586a28}Gw64, In Quarantäne, [c4dd831de695b18530bee5e95aa827d9], PUP.Optional.ToggleMark.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\ToggleMark, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.Sanbreel.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{9a9157bb-003e-4fef-8bd1-c09bc4586a28}w64, In Quarantäne, [495847590675da5cd225ae8036ce51af], PUP.Optional.AmazonTB.A, HKLM\SOFTWARE\Amazon Browser Bar, In Quarantäne, [4e5338682b5011256e240213a65eab55], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\iminent, In Quarantäne, [5c45e8b81b600333b661e044ea1a8878], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Business.Tinyfying.DownloadArgs, In Quarantäne, [544d039d592274c2b554ea26758f946c], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Business.Tinyfying.LinkToPromoteArgs, In Quarantäne, [732e6f31b2c959dde02990800df77987], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Business.Tinyfying.RawDataArgs, In Quarantäne, [653cebb5f586ce6833d6bb55ec1847b9], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Business.Tinyfying.TinyUrlArgs, In Quarantäne, [0f9279273e3d63d334d511ffde26cb35], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Business.Tinyfying.ViralLinkArgs, In Quarantäne, [7829d1cf700b9f9778911ef2fd07b24e], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.ScriptExtender, In Quarantäne, [049d841c3b4091a548c0030d0004718f], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.ScriptExtender.1, In Quarantäne, [c9d8c9d7017a50e64cbcf11fac580af6], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.TinyUrlHandler, In Quarantäne, [ced39f0183f89e984cbcc54b9074a45c], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.TinyUrlHandler.1, In Quarantäne, [f0b15050e09b91a54eba7f911ee62ad6], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\APPID\Iminent.WebBooster.InternetExplorer.DLL, In Quarantäne, [138e5e427efd092db14318fffb097a86], PUP.Optional.DataMangr.A, HKLM\SOFTWARE\WOW6432NODE\DataMngr, In Quarantäne, [3d64faa65724b581b453dc00fe04748c], Adware.EoRezo, HKLM\SOFTWARE\WOW6432NODE\FREESOFTTODAY, In Quarantäne, [2081623e1f5c0e284eb6be57b3516e92], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\Iminent, In Quarantäne, [f7aa2a76b5c6f442d10afcfd9b67f40c], PUP.Optional.WPM.A, HKLM\SOFTWARE\WOW6432NODE\supWindowsMangerProtect, In Quarantäne, [e3be633d6912b77f8eac38f7f50fb050], PUP.Optional.SweetPage.A, HKLM\SOFTWARE\WOW6432NODE\sweet-pageSoftware, In Quarantäne, [752c3e62b4c7c175158b68bb699b738d], PUP.Optional.ToggleMark.A, HKLM\SOFTWARE\WOW6432NODE\ToggleMark, In Quarantäne, [425fbbe597e44ee8f0fc85665da5de22], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\iminent, In Quarantäne, [c0e11a86a2d9e155fd1a73b120e4e41c], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Business.Tinyfying.DownloadArgs, In Quarantäne, [c9d8970994e7270f29e0cf41c0442dd3], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Business.Tinyfying.LinkToPromoteArgs, In Quarantäne, [adf4e7b93b4049ed0dfc47c94aba09f7], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Business.Tinyfying.RawDataArgs, In Quarantäne, [7f220e92abd0a78f5cad48c860a4f40c], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Business.Tinyfying.TinyUrlArgs, In Quarantäne, [e5bc683813681a1c0306c24e08fcdb25], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Business.Tinyfying.ViralLinkArgs, In Quarantäne, [6e330a960a71c0763ecbcf412cd8f10f], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.ScriptExtender, In Quarantäne, [554c6739f38882b4d335e22e0bf9827e], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.ScriptExtender.1, In Quarantäne, [2a77267a700b1d1929dfa36deb19847c], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.TinyUrlHandler, In Quarantäne, [aef32a76c2b92214cd3ba07027ddb14f], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.TinyUrlHandler.1, In Quarantäne, [3d64e0c03d3ea6900dfbb95751b3aa56], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\Iminent.WebBooster.InternetExplorer.DLL, In Quarantäne, [9a07b2eea1dac96d0be933e4e42030d0], PUP.Optional.AmazonBrowserBar.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\pbjikboenpfhbbejgkoklgkhjpfogcam, In Quarantäne, [a4fdc5dbe3984cea678bac816b997090], PUP.Optional.Umbrella.A, HKLM\SOFTWARE\WOW6432NODE\UMBRELLA, In Quarantäne, [c4dd346ca9d26cca8c139d7372928c74], PUP.Optional.BabylonToolBar.A, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\BabylonToolbar, In Quarantäne, [6f32049c83f8ab8b5d57ab676a9ac040], PUP.Optional.DataMngr.A, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\DataMngr_Toolbar, In Quarantäne, [6a37e6ba86f5cb6bd0167a9451b39c64], PUP.Optional.FreeSoftToday.A, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\freesofttoday, In Quarantäne, [158c247ca2d98fa7122dd95834d034cc], PUP.Optional.Iminent.A, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Iminent, In Quarantäne, [0998ced228533402f0ecc7323cc6a759], PUP.Optional.ToggleMark.A, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\ToggleMark, In Quarantäne, [5b462a76b1ca1125c528cb2035cda15f], PUP.Optional.SimplyTech.A, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\SIMPLYTECH\Toolbar, In Quarantäne, [d2cfe8b8304bbe78f4642bb17e8455ab], PUP.Optional.InstallCore.A, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, In Quarantäne, [d9c8f5abf08bca6c0dd96890956d4db3], PUP.Optional.InstallCore.A, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, In Quarantäne, [78293f6182f90f27d03aab64df2525db], PUP.Optional.BProtector.A, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\bProtectSettings, In Quarantäne, [534e8a16e19ad264fc3c19f960a452ae], PUP.Optional.Softonic.A, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Universal Downloader, In Quarantäne, [eab71e82d0ab50e6ed125691a75b3fc1], PUP.Optional.AmazonBrowserBar.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Amazon Browser Bundle, In Quarantäne, [c6db5b457407063030cbf5cc778bd32d], Registrierungswerte: 9 PUP.Optional.AmazonTB.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{EA582743-9076-4178-9AA6-7393FDF4D5CE}, In Quarantäne, [abf6a2fe225904328b962c6e09f9a45c], PUP.Optional.AmazonTB.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\{EA582743-9076-4178-9AA6-7393FDF4D5CE}, In Quarantäne, [2b762e7296e53204fa274f4b2dd5ad53], Hijacker.Application, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\ASSOCIATIONS|bak_application, File extension redirect, In Quarantäne, [adf488181764bd79d2156816ce3559a7] PUP.Optional.Umbrella.A, HKLM\SOFTWARE\WOW6432NODE\UMBRELLA|MUpdBlock, { "MASSUPDATE" : { "CHROME_MBAR" : { "Checked" : 1, "RetryIdx" : 0, "Version" : 1 } } } , In Quarantäne, [c4dd346ca9d26cca8c139d7372928c74] PUP.Optional.InstallCore.A, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, 0F1S1Q1K0I1S1U2X, In Quarantäne, [78293f6182f90f27d03aab64df2525db] PUP.BProtector, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|bProtector Start Page, Hola Search, In Quarantäne, [722fadf34e2d80b6eefa35d99272a55b] PUP.Optional.Snapdo.T, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {006ee092-9658-4fd6-bd8e-a21a348e59f5}, In Quarantäne, [a7fab1ef1f5cc86e74ce5c75f40ee31d] PUP.BProtector, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|bProtectorDefaultScope, {0633EE93-D776-472f-A0FF-E1416B8B2E3A}, In Quarantäne, [c3de663a12698caad118c8466e961ae6] PUP.Optional.SpeedTest, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|speedtest4354@BestOffers, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers, In Quarantäne, [9c051789463580b65c517a54d9299f61] Registrierungsdaten: 7 Hijacker.Application, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\ASSOCIATIONS|Application, Bitberry Software - producer of premium free software and ZIP compression software, Gut: (hxxp://shell.windows.com/fileassoc/Schlecht: (Bitberry Software - producer of premium free software and ZIP compression software,[0b96b4ec38439b9bcdf90bad14f0c23e]x/xml/redir.asp?Ext=%s), %5 PUP.Optional.SweetPage.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://www.sweet-page.com/web/?type=ds&ts=1405882606&from=cor&uid=TOSHIBAXMK5055GSX_Z92KS04USXXZ92KS04US&q={searchTerms}, Gut: (Google), Schlecht: (hxxp://www.sweet-page.com/web/?type=ds&ts=1405882606&from=cor&uid=TOSHIBAXMK5055GSX_Z92KS04USXXZ92KS04US&q={searchTerms}),Ersetzt,[6140c1df314abc7a6a4e6259659f44bc] PUP.Optional.SweetPage.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://www.sweet-page.com/web/?type=ds&ts=1405882606&from=cor&uid=TOSHIBAXMK5055GSX_Z92KS04USXXZ92KS04US&q={searchTerms}, Gut: (Google), Schlecht: (hxxp://www.sweet-page.com/web/?type=ds&ts=1405882606&from=cor&uid=TOSHIBAXMK5055GSX_Z92KS04USXXZ92KS04US&q={searchTerms}),Ersetzt,[c7daa8f85b203105b8de654b42c239c7] PUP.Optional.SnapDo.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|Default, hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3eDgJ_Xmyr4DsGS5n78vMqPWzn-RsCeYyXOJn7xB1zZGdtzbEOpUXJKzCtJsVIcmqKA-MZ6wPyiJctV_ZhfmeQvud3wrMiIMAQbwsyFZuMvAlMJJP_D5rD7dV6REvVYyzWBxRQkZUxyI21vVLiRv3MvvegusK0A,,&q={searchTerms}, Gut: (Google), Schlecht: (hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3eDgJ_Xmyr4DsGS5n78vMqPWzn-RsCeYyXOJn7xB1zZGdtzbEOpUXJKzCtJsVIcmqKA-MZ6wPyiJctV_ZhfmeQvud3wrMiIMAQbwsyFZuMvAlMJJP_D5rD7dV6REvVYyzWBxRQkZUxyI21vVLiRv3MvvegusK0A,,&q={searchTerms}),Ersetzt,[dcc59b0591ea88ae510a822f966ec739] PUP.Optional.Snapdo, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Default_Search_URL, hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3eDgJ_Xmyr4DsGS5n78vMqPWzn-RsCeYyXOJn7xB1zZGdtzbEOpUXJKzCtJsVIcmqKA-MZ6wPyiJctV_ZhfmeQvud3wrMiIMAQbwsyFZuMvAlMJJP_D5rD7dV6REvVYyzWBxRQkZUxyI21vVLiRv3MvvegusK1w,,&q={searchTerms}, Gut: (Google), Schlecht: (hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3eDgJ_Xmyr4DsGS5n78vMqPWzn-RsCeYyXOJn7xB1zZGdtzbEOpUXJKzCtJsVIcmqKA-MZ6wPyiJctV_ZhfmeQvud3wrMiIMAQbwsyFZuMvAlMJJP_D5rD7dV6REvVYyzWBxRQkZUxyI21vVLiRv3MvvegusK1w,,&q={searchTerms}),Ersetzt,[742d3070de9d5bdbe3e03585ef1517e9] PUP.Optional.Snapdo, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|SearchAssistant, hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3eDgJ_Xmyr4DsGS5n78vMqPWzn-RsCeYyXOJn7xB1zZGdtzbEOpUXJKzCtJsVIcmqKA-MZ6wPyiJctV_ZhfmeQvud3wrMiIMAQbwsyFZuMvAlMJJP_D5rD7dV6REvVYyzWBxRQkZUxyI21vVLiRv3MvvegusK1w,,&q={searchTerms}, Gut: (Google), Schlecht: (hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3eDgJ_Xmyr4DsGS5n78vMqPWzn-RsCeYyXOJn7xB1zZGdtzbEOpUXJKzCtJsVIcmqKA-MZ6wPyiJctV_ZhfmeQvud3wrMiIMAQbwsyFZuMvAlMJJP_D5rD7dV6REvVYyzWBxRQkZUxyI21vVLiRv3MvvegusK1w,,&q={searchTerms}),Ersetzt,[8021bee2accf84b234904f6b669e55ab] PUP.Optional.SnapDo.A, HKU\S-1-5-21-3089439268-1993996784-950571131-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|Default, hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3eDgJ_Xmyr4DsGS5n78vMqPWzn-RsCeYyXOJn7xB1zZGdtzbEOpUXJKzCtJsVIcmqKA-MZ6wPyiJctV_ZhfmeQvud3wrMiIMAQbwsyFZuMvAlMJJP_D5rD7dV6REvVYyzWBxRQkZUxyI21vVLiRv3MvvegusK1w,,&q={searchTerms}, Gut: (Google), Schlecht: (hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPGr6JN_C9Okvk3V9BHMT-IkVs3eDgJ_Xmyr4DsGS5n78vMqPWzn-RsCeYyXOJn7xB1zZGdtzbEOpUXJKzCtJsVIcmqKA-MZ6wPyiJctV_ZhfmeQvud3wrMiIMAQbwsyFZuMvAlMJJP_D5rD7dV6REvVYyzWBxRQkZUxyI21vVLiRv3MvvegusK1w,,&q={searchTerms}),Ersetzt,[01a06739de9d33036bf1545db64e0cf4] Ordner: 29 PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark, Löschen bei Neustart, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin, Löschen bei Neustart, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\plugins, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\TEMP, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.Iminent.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent, In Quarantäne, [633e2e72532830068c227c92f80ca35d], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\speedtest4354, In Quarantäne, [c7da7f212259e94dc519e4c9e51dc33d], PUP.Optional.IePluginServices.A, C:\ProgramData\IePluginServices, In Quarantäne, [f7aaf9a769121026f7e9635ecc36cc34], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\images, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\lib, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\lib\bit, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\lib\md5, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\lib\requirejs, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\lib\underscore, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\components, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\components\campaign-attribution, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\storage, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\util, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Program Files (x86)\Amazon\ABB, In Quarantäne, [c6db5b457407063030cbf5cc778bd32d], PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect, Löschen bei Neustart, [9e03336d2a511224ec680eb6c240c937], PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\log, In Quarantäne, [9e03336d2a511224ec680eb6c240c937], PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update, In Quarantäne, [9e03336d2a511224ec680eb6c240c937], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\mz, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\skin, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], Dateien: 121 PUP.Optional.Sanbreel.A, C:\Windows\System32\drivers\{55dce8ba-9dec-4013-937e-adbf9317d990}Gw64.sys, Löschen bei Neustart, [8fcae39a4959f802c05a565d2ed84bda], PUP.Optional.Sanbreel.A, C:\Windows\System32\drivers\{9a9157bb-003e-4fef-8bd1-c09bc4586a28}Gw64.sys, Löschen bei Neustart, [2723d005221d12956c8728744f2c5c03], PUP.Optional.Sanbreel.A, C:\Windows\System32\drivers\{9a9157bb-003e-4fef-8bd1-c09bc4586a28}w64.sys, Löschen bei Neustart, [b7a013c8e29f6177dcfda99bd966fcaa], PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe, Löschen bei Neustart, [d8c95d436e0d5adc4075434f926f718f], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\updateToggleMark.exe, Löschen bei Neustart, [b9e8237dbcbf3df9f3e295df5aa7d927], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\utilToggleMark.exe, Löschen bei Neustart, [950c8719e398a393488d6b09e61bf709], PUP.Optional.AmazonTB.A, C:\Program Files (x86)\Amazon Browser Bar\AmazonBrowserBar.3.0.dll, In Quarantäne, [abf6a2fe225904328b962c6e09f9a45c], Trojan.BProtector, C:\Users\SieverM\AppData\Roaming\speedtest4354\install_helper.exe, In Quarantäne, [3d64c9d706750e281f1ea2e0ec1840c0], PUP.Optional.PCPerformer.A, C:\Windows\System32\roboot64.exe, In Quarantäne, [bde4aaf653289c9a56981c046898b24e], PUP.Optional.InstallBrain, C:\Users\SieverM\Downloads\SoftangoDownloader_VlcMediaPlayer.exe, In Quarantäne, [6e335e42dba05dd915c843f142be9769], PUP.Optional.Iminent.A, C:\Windows\Installer\c7fc12.msi, In Quarantäne, [940ddac6a9d2a78f619eca6cba470af6], PUP.Optional.Babylon.A, C:\Windows\System32\Tasks\EPUpdater, In Quarantäne, [0f921f814e2d2a0c1edfd8fde61c35cb], PUP.Optional.Iminent.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igdhbblpcellaljokkpfhcjlagemhgjl_0.localstorage, In Quarantäne, [a3fe208003780135662137ab8f731de3], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\ToggleMark.ico, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\0, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\7za.exe, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\ToggleMarkUninstall.exe, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\updateToggleMark.InstallState, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\7za.exe, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\BrowserAdapterS.7z, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\ToggleMark.BrowserAdapter.exe, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\ToggleMark.PurBrowse.zip, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\ToggleMark.PurBrowse64.exe, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\ToggleMarkBAApp.dll, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\utilToggleMark.InstallState, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\{9a9157bb-003e-4fef-8bd1-c09bc4586a28}.dll, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\plugins\ToggleMark.Bromon.dll, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\plugins\ToggleMark.BroStats.dll, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\plugins\ToggleMark.BrowserAdapterS.dll, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\plugins\ToggleMark.CompatibilityChecker.dll, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.ToggleMark.A, C:\Program Files (x86)\ToggleMark\bin\plugins\ToggleMark.PurBrowse.dll, In Quarantäne, [069b8e129ae1181e44a79754808258a8], PUP.Optional.Iminent.A, C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe, In Quarantäne, [663b4d53cfac132398599b50e41e4fb1], PUP.Optional.Iminent.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\SearchTheWeb.lnk, In Quarantäne, [633e2e72532830068c227c92f80ca35d], PUP.Optional.Iminent.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\Blog.lnk, In Quarantäne, [633e2e72532830068c227c92f80ca35d], PUP.Optional.Iminent.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\FAQ.lnk, In Quarantäne, [633e2e72532830068c227c92f80ca35d], PUP.Optional.Iminent.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\Help.lnk, In Quarantäne, [633e2e72532830068c227c92f80ca35d], PUP.Optional.Iminent.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\Iminent.lnk, In Quarantäne, [633e2e72532830068c227c92f80ca35d], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pbjikboenpfhbbejgkoklgkhjpfogcam_0.localstorage, In Quarantäne, [3a67633d3e3d73c3df15e34ae61ed22e], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pbjikboenpfhbbejgkoklgkhjpfogcam_0.localstorage-journal, In Quarantäne, [9b06158b7a01e94d4aaab4798381f40c], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\speedtest4354\install_helper.exe, In Quarantäne, [c7da7f212259e94dc519e4c9e51dc33d], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\speedtest4354\speedtest4354.crx, In Quarantäne, [c7da7f212259e94dc519e4c9e51dc33d], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\speedtest4354\speedtest4354.xpi, In Quarantäne, [c7da7f212259e94dc519e4c9e51dc33d], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\speedtest4354\speedtest4354DeskTopIcon.ico, In Quarantäne, [c7da7f212259e94dc519e4c9e51dc33d], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\injectedmessagelistener.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\main.html, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\manifest.json, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\options.html, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\options_messaging.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\page_messaging.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\panel_messaging.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\popup.html, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\ubpmessage.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\images\asmile_128.png, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\images\asmile_16.png, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\images\asmile_162.png, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\images\asmile_19.png, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\images\asmile_48.png, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\lib\bit\update-event-interceptor.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\lib\md5\md5.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\lib\requirejs\require.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\lib\requirejs\requirejs-config.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\lib\underscore\underscore-min.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\config.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\main.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\underscore.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\components\application-state.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\components\attribution-manager.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\components\campaign-attribution-agent.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\components\product-comparison-manager.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\components\session-state-tracker.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\components\update-event-interceptor.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\components\campaign-attribution\README, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\components\campaign-attribution\ubp-feature-campaign-attribution.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\storage\native-storage.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\storage\simple-storage.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\util\ajax.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\util\events.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\util\flow.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\util\immutable-future.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\util\lang.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\util\log.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\util\options.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\util\ready-gate.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\util\simple-future.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\util\state-latch.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Users\SieverM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\4.2013.1203.0_0\native-src\util\windowed-stack.js, In Quarantäne, [356c19871e5d1f1721d7e1e058aa6799], PUP.Optional.AmazonBrowserBar.A, C:\Program Files (x86)\Amazon\ABB\abb-bundler-uninstall.exe, In Quarantäne, [c6db5b457407063030cbf5cc778bd32d], PUP.Optional.AmazonBrowserBar.A, C:\Program Files (x86)\Amazon\ABB\AmazonChrome.crx, In Quarantäne, [c6db5b457407063030cbf5cc778bd32d], PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\log\ProtectWindowsManager_2014-07-20[20-57-29-455].log, In Quarantäne, [9e03336d2a511224ec680eb6c240c937], PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update\conf, In Quarantäne, [9e03336d2a511224ec680eb6c240c937], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome.manifest, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\icon.png, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\install.rdf, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\background.html, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\bg.js, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\button.xml, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\config.js, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\content.js, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\framework.js, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\framework.png, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\framework.xul, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\icon128.ico, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\icon128.png, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\icon16.ico, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\icon16.png, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\icon18.ico, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\icon18.png, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\icon24.ico, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\icon24.png, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\icon32.ico, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\icon32.png, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\icon48.ico, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\icon48.png, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\icon64.ico, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\icon64.png, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\jquery-1.9.1.min.js, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\options.xul, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\settings.json, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\mz\background.js, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\content\mz\content.js, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], PUP.Optional.SpeedTest.A, C:\Users\SieverM\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers\chrome\skin\framework.css, In Quarantäne, [346d9a06d5a692a4444c764eac5660a0], Physische Sektoren: 0 (No malicious items detected) (end) AdwCleaner Logfile: Code: # AdwCleaner v3.302 - Bericht erstellt am 31/07/2014 um 22:32:21 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 7 Home Premium x64 Ran by SieverM on 31.07.2014 at 22:45:31,29 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-3089439268-1993996784-950571131-1001\Software\sweetim Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\DealKeeper_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\DealKeeper_RASMANCS Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\updateDealKeeper_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\updateDealKeeper_RASMANCS Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\utilDealKeeper_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\utilDealKeeper_RASMANCS Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\DealKeeper_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\DealKeeper_RASMANCS Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\updateDealKeeper_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\updateDealKeeper_RASMANCS Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\utilDealKeeper_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\utilDealKeeper_RASMANCS ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 31.07.2014 at 22:52:31,58 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
FRST Logfile: Code: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 31-07-2014 01 |
ESET Online Scanner
Downloade Dir bitte ![]()
und ein frisches FRST log bitte. Noch Probleme? :) |
ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7623 # api_version=3.0.2 # EOSSerial=a8b82732d481e248930e02c8c2c299ac # engine=19473 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=true # antistealth_checked=true # utc_time=2014-08-03 10:02:14 # local_time=2014-08-03 12:02:14 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 224070 158689984 0 0 # scanned=264134 # found=8 # cleaned=0 # scan_time=9645 sh=CED05266ECDC6547AFB0B18E7AB4DBCCA5535FB9 ft=1 fh=2791e6518558f99b vn="Variante von Win32/SpeedingUpMyPC Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\PC Speed Maximizer\PCSpeedMaximizer.exe.vir" sh=464B487DF99F9BD717665B986C3EB70AEA50C7BE ft=0 fh=0000000000000000 vn="Win32/Reveton.R Trojaner" ac=I fn="C:\ProgramData\eq3wb.js" sh=357A0D4B3AF386C16A38519B2FF4F230B384E5B0 ft=0 fh=0000000000000000 vn="Win32/Reveton.M Trojaner" ac=I fn="C:\ProgramData\sdaksda.txt" sh=464B487DF99F9BD717665B986C3EB70AEA50C7BE ft=0 fh=0000000000000000 vn="Win32/Reveton.R Trojaner" ac=I fn="C:\Users\All Users\eq3wb.js" sh=357A0D4B3AF386C16A38519B2FF4F230B384E5B0 ft=0 fh=0000000000000000 vn="Win32/Reveton.M Trojaner" ac=I fn="C:\Users\All Users\sdaksda.txt" sh=4804700FC64472C487CC66A32A7A73E19B8106D6 ft=0 fh=0000000000000000 vn="Mehrere Bedrohungen" ac=I fn="C:\Users\SieverM\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\40\1baac5e8-1221599a" sh=40E49124AD0B55A25F947333CA88E9D0BC30A7E3 ft=1 fh=e26ad988592b2af9 vn="Variante von Win32/Bundled.Toolbar.Ask potenziell unsichere Anwendung" ac=I fn="C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\83DJETJ6\ApnIC[1].0" sh=40E49124AD0B55A25F947333CA88E9D0BC30A7E3 ft=1 fh=e26ad988592b2af9 vn="Variante von Win32/Bundled.Toolbar.Ask potenziell unsichere Anwendung" ac=I fn="C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\83DJETJ6\ApnIC[1].0" ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7623 # api_version=3.0.2 # EOSSerial=a8b82732d481e248930e02c8c2c299ac # engine=19473 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=true # antistealth_checked=true # utc_time=2014-08-03 10:02:14 # local_time=2014-08-03 12:02:14 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 224070 158689984 0 0 # scanned=264134 # found=8 # cleaned=0 # scan_time=9645 sh=CED05266ECDC6547AFB0B18E7AB4DBCCA5535FB9 ft=1 fh=2791e6518558f99b vn="Variante von Win32/SpeedingUpMyPC Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\PC Speed Maximizer\PCSpeedMaximizer.exe.vir" sh=464B487DF99F9BD717665B986C3EB70AEA50C7BE ft=0 fh=0000000000000000 vn="Win32/Reveton.R Trojaner" ac=I fn="C:\ProgramData\eq3wb.js" sh=357A0D4B3AF386C16A38519B2FF4F230B384E5B0 ft=0 fh=0000000000000000 vn="Win32/Reveton.M Trojaner" ac=I fn="C:\ProgramData\sdaksda.txt" sh=464B487DF99F9BD717665B986C3EB70AEA50C7BE ft=0 fh=0000000000000000 vn="Win32/Reveton.R Trojaner" ac=I fn="C:\Users\All Users\eq3wb.js" sh=357A0D4B3AF386C16A38519B2FF4F230B384E5B0 ft=0 fh=0000000000000000 vn="Win32/Reveton.M Trojaner" ac=I fn="C:\Users\All Users\sdaksda.txt" sh=4804700FC64472C487CC66A32A7A73E19B8106D6 ft=0 fh=0000000000000000 vn="Mehrere Bedrohungen" ac=I fn="C:\Users\SieverM\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\40\1baac5e8-1221599a" sh=40E49124AD0B55A25F947333CA88E9D0BC30A7E3 ft=1 fh=e26ad988592b2af9 vn="Variante von Win32/Bundled.Toolbar.Ask potenziell unsichere Anwendung" ac=I fn="C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\83DJETJ6\ApnIC[1].0" sh=40E49124AD0B55A25F947333CA88E9D0BC30A7E3 ft=1 fh=e26ad988592b2af9 vn="Variante von Win32/Bundled.Toolbar.Ask potenziell unsichere Anwendung" ac=I fn="C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\83DJETJ6\ApnIC[1].0" Unsupported operating system! Aborted! Der Security Check scheint nicht zu funktionieren. Als Checkup kommt: UNSUPPORTED OPERATING SYSTEM! ABORTED! PC läuft aber schon wieder deutlich stabiler. FRST Logfile: FRST Logfile: Code: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 31-07-2014 01 --- --- --- |
Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code: C:\ProgramData\eq3wb.js Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Fertig :) Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun :) Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann. |
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 31-07-2014 01 Ran by SieverM at 2014-08-06 10:07:13 Run:2 Running from C:\Users\SieverM\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** C:\ProgramData\eq3wb.js C:\ProgramData\sdaksda.txt GroupPolicy: Group Policy on Chrome detected <======= ATTENTION C:\ProgramData\eq3wb.js C:\ProgramData\eq3wb.reg ***************** C:\ProgramData\eq3wb.js => Moved successfully. C:\ProgramData\sdaksda.txt => Moved successfully. C:\Windows\system32\GroupPolicy\Machine => Moved successfully. C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully. "C:\ProgramData\eq3wb.js" => File/Directory not found. C:\ProgramData\eq3wb.reg => Moved successfully. The system needed a reboot. ==== End of Fixlog ==== Hallo Schrauber, riesengroßen Dank dir. Jetzt läuft alles wieder einwandfrei! Großes Lob an dich und das Team, wie professionel, vertrauenswürdig und einfach ihr uns Laien helft. Weiter so - meine Spende ist auf dem Weg zu euch! :) |
Gern Geschehen :) |
Alle Zeitangaben in WEZ +1. Es ist jetzt 02:43 Uhr. |
Copyright ©2000-2025, Trojaner-Board