Und hier noch der Malwarebyte Scan Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 21.12.2015
Suchlaufzeit: 20:22
Protokolldatei: mbam-02.txt
Administrator: Ja
Version: 2.2.0.1024
Malware-Datenbank: v2015.12.21.05
Rootkit-Datenbank: v2015.12.18.01
Lizenz: Premium-Version
Malware-Schutz: Aktiviert
Schutz vor bösartigen Websites: Aktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 8.1
CPU: x64
Dateisystem: NTFS
Benutzer: Claudi
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 346586
Abgelaufene Zeit: 21 Min., 29 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 1
PUP.Optional.DNSBlock.BrwsrFlsh, C:\Windows\System32\DnsBlockUpdateSvc.exe, 1360, , [8c2d3176bad153e34155b0d6ef14d927]
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 72
PUP.Optional.BrowseFox.Generic, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\comyninu, , [c2f78126e4a7cf67cae3926e11ef926e],
PUP.Optional.BrowseFox.Generic, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\wezoryro, , [eacf6b3ced9e0f27525b0bf520e014ec],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\CLASSES\CLSID\{C654F3FE-8E84-4BB7-87CF-8D9171FC3C73}, , [b8014067ee9d10269dabd18919e92dd3],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\CLASSES\TYPELIB\{E7BF74EE-9106-4113-B216-2F980BA29141}, , [b8014067ee9d10269dabd18919e92dd3],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\CLASSES\INTERFACE\{F2DB3739-77FB-41EB-9ED3-ABF34DF2DBF7}, , [b8014067ee9d10269dabd18919e92dd3],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{F2DB3739-77FB-41EB-9ED3-ABF34DF2DBF7}, , [b8014067ee9d10269dabd18919e92dd3],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{F2DB3739-77FB-41EB-9ED3-ABF34DF2DBF7}, , [b8014067ee9d10269dabd18919e92dd3],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{E7BF74EE-9106-4113-B216-2F980BA29141}, , [b8014067ee9d10269dabd18919e92dd3],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{E7BF74EE-9106-4113-B216-2F980BA29141}, , [b8014067ee9d10269dabd18919e92dd3],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\CLASSES\DPBHO.DownloadProtect.1, , [b8014067ee9d10269dabd18919e92dd3],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\CLASSES\DPBHO.DownloadProtect, , [b8014067ee9d10269dabd18919e92dd3],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\WOW6432NODE\CLASSES\DPBHO.DownloadProtect, , [b8014067ee9d10269dabd18919e92dd3],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\CLASSES\WOW6432NODE\DPBHO.DownloadProtect, , [b8014067ee9d10269dabd18919e92dd3],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\WOW6432NODE\CLASSES\DPBHO.DownloadProtect.1, , [b8014067ee9d10269dabd18919e92dd3],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\CLASSES\WOW6432NODE\DPBHO.DownloadProtect.1, , [b8014067ee9d10269dabd18919e92dd3],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{C654F3FE-8E84-4BB7-87CF-8D9171FC3C73}, , [b8014067ee9d10269dabd18919e92dd3],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{C654F3FE-8E84-4BB7-87CF-8D9171FC3C73}, , [b8014067ee9d10269dabd18919e92dd3],
PUP.Optional.SupTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{1F91A9A1-01BA-4c81-863D-3BA0751E1419}, , [efca1d8a2764df5724f7a4bc2bd7b14f],
PUP.Optional.SupTab, HKLM\SOFTWARE\CLASSES\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, , [efca1d8a2764df5724f7a4bc2bd7b14f],
PUP.Optional.SupTab, HKLM\SOFTWARE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, , [efca1d8a2764df5724f7a4bc2bd7b14f],
PUP.Optional.SupTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, , [efca1d8a2764df5724f7a4bc2bd7b14f],
PUP.Optional.SupTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, , [efca1d8a2764df5724f7a4bc2bd7b14f],
PUP.Optional.SupTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, , [efca1d8a2764df5724f7a4bc2bd7b14f],
PUP.Optional.SupTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, , [efca1d8a2764df5724f7a4bc2bd7b14f],
PUP.Optional.SupTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{1F91A9A1-01BA-4C81-863D-3BA0751E1419}, , [efca1d8a2764df5724f7a4bc2bd7b14f],
PUP.Optional.SupTab, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{1F91A9A1-01BA-4C81-863D-3BA0751E1419}, , [efca1d8a2764df5724f7a4bc2bd7b14f],
PUP.Optional.SupTab, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{1F91A9A1-01BA-4C81-863D-3BA0751E1419}, , [efca1d8a2764df5724f7a4bc2bd7b14f],
PUP.Optional.Yontoo, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}, , [fdbc089f0c7f1b1b3c218daaa2609e62],
PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}, , [fdbc089f0c7f1b1b3c218daaa2609e62],
PUP.Optional.TaskRNDM, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}, , [c6f300a7c1cacb6b66a6075bd42e7a86],
PUP.Optional.DNSBlock.BrwsrFlsh, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\DnsBlockUpdateSvc, , [8c2d3176bad153e34155b0d6ef14d927],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\CLASSES\APPID\DPBHO.DLL, , [c4f5337499f287af347fe5263aca02fe],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\DPBHO.DLL, , [cbeed3d4e6a5a78f07ac0dfed62ec838],
PUP.Optional.MintCast, HKLM\SOFTWARE\MICROSOFT\TRACING\InstallationStatsUploder_RASAPI32, , [3e7be6c1117abd7905dbb65651b37b85],
PUP.Optional.MintCast, HKLM\SOFTWARE\MICROSOFT\TRACING\InstallationStatsUploder_RASMANCS, , [81384166107b7abc17c988849d6746ba],
PUP.Optional.CouponMarvel.AppFlsh, HKLM\SOFTWARE\SECURITYUTILITY, , [d5e4dbcc6b20a78f1022ae5743c1fb05],
PUP.Optional.CrossBrowse, HKLM\SOFTWARE\WOW6432NODE\Crossbrowse, , [3188edba5b308da9f875aaea1fe40ff1],
PUP.Optional.FFPluginHp, HKLM\SOFTWARE\WOW6432NODE\FFPluginHp, , [befbcaddbecde650398f9309e02312ee],
PUP.Optional.IHProtect, HKLM\SOFTWARE\WOW6432NODE\IHProtect, , [6c4d2285226975c12d645b48f40f718f],
PUP.Optional.IStartSurf.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\istartsurfSoftware, , [bbfe8d1ab5d681b5c5d255a11ee52ed2],
PUP.Optional.SupTab, HKLM\SOFTWARE\WOW6432NODE\supTab, , [b10836710b809e9808f9a1694abaa858],
PUP.Optional.WPM, HKLM\SOFTWARE\WOW6432NODE\supWindowsMangerProtect, , [c5f463446c1f7bbb6d838d3b2bd8d12f],
PUP.Optional.WordSurfer, HKLM\SOFTWARE\WOW6432NODE\WordSurfer_1.10.0.19, , [0dacc6e144478fa7b62beeda4ab99070],
PUP.Optional.SuperOptimizer, HKLM\SOFTWARE\WOW6432NODE\{1146AC44-2F03-4431-B4FD-889BC837521F}, , [e5d4c7e05239cf67aeffe2dd60a3d32d],
PUP.Optional.SuperOptimizer, HKLM\SOFTWARE\WOW6432NODE\{6791A2F3-FC80-475C-A002-C014AF797E9C}, , [ffbaabfc92f94fe7505e0db204ffb64a],
PUP.Optional.DownloadProtect, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\DPBHO.DLL, , [5069b3f4cac1f93d9a1926e50ff555ab],
PUP.Optional.Vitruvian, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\WordSurferAutoUpdateClient_RASAPI32, , [308997104b4044f26b0fbb3bf80be917],
PUP.Optional.Vitruvian, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\WordSurferAutoUpdateClient_RASMANCS, , [cfeaeeb9503b3105c3b7d422df24ce32],
PUP.Optional.VOPackage, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\VOPackage, , [72476f381873d0669b2ac6ff867d1fe1],
PUP.Optional.MultiPlug, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{1146AC44-2F03-4431-B4FD-889BC837521F}{144046c7}, , [a217e1c6bad18aac785cb0fd41c213ed],
PUP.Optional.MultiPlug, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{1146AC44-2F03-4431-B4FD-889BC837521F}{cae99edb}, , [0aaf1a8df794cf6772624d603ac918e8],
PUP.Optional.MySearch123, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}, , [79407b2c365564d25f7811f0e61e05fb],
PUP.Optional.CouponMarvel.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\SECURITYUTILITY, , [4d6cd4d37714b5815fd3e124cb39748c],
PUP.Optional.MiuiTab, HKLM\SOFTWARE\WOW6432NODE\SUPDP, , [06b3c7e08308da5c79721894fc0760a0],
PUP.Optional.Tuto4PC, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS, , [a118ced9e6a560d6b7f68a3923e08d73],
PUP.Optional.WordSurfer, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\wsafd_1_10_0_19, , [eccd3c6bbbd03303ae340ebaee15d52b],
PUP.Optional.WindowsMangerProtect, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, , [5366f2b5ef9cb6803719ae1ac63d6e92],
PUP.Optional.SuperOptimizer, HKU\S-1-5-18\SOFTWARE\APPDATALOW\{1146AC44-2F03-4431-B4FD-889BC837521F}, , [e1d82d7a830802348425f8c79d6614ec],
PUP.Optional.CrossBrowse, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\Crossbrowse, , [40799c0b1576b97d0d5b2371b053857b],
PUP.Optional.CrossBrowse, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\CrossBrowser, , [cbeec3e40289043286e2385cb74c837d],
PUP.Optional.InstallCore, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\ICSW1.11, , [1b9e4f5895f6e94db7f61a8a3ec5b44c],
PUP.Optional.SuperOptimizer, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\APPDATALOW\{1146AC44-2F03-4431-B4FD-889BC837521F}, , [15a43e693952d85ec6e3497617ec1ce4],
PUP.Optional.SmartWeb, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\APPDATALOW\SOFTWARE\SmartWeb, , [8633b6f11b70c472287ce228669e21df],
PUP.Optional.GamesDesktop, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\GAMESDESKTOP, , [f0c92e79fe8d999de1f5a0fed92ab64a],
PUP.Optional.Trovi, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}, , [3584e9be7e0d61d5b19306bd3bc85fa1],
PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, , [4277bbeca8e34beba686c2bc26ddd42c],
PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}, , [a217fdaa731884b2f03c433bfa09c63a],
PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, , [ceeb386ffb9039fdfa32720ceb18cf31],
PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{D7D1189B-32FC-4BB1-8E12-D6FCF05F0437}, , [4b6e3473e3a851e5e04cb2cc996abe42],
PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}, , [dedb4067e6a56cca41eb5826cb3839c7],
PUP.Optional.ProductSetup, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\PRODUCTSETUP, , [29909314424958de8224318338cb6b95],
PUP.Optional.SuperOptimizer, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\SUPER OPTIMIZER, , [e2d7b3f41a71c274595347780cf72cd4],
Registrierungswerte: 26
PUP.Optional.3DBubbleSound, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|3D BubbleSound, "C:\Program Files\BubbleSound\3D BubbleSound.exe", , [a1188a1d93f83402fd210d7b05fe2ad6]
PUP.Optional.CouponMarvel.AppFlsh, HKLM\SOFTWARE\SECURITYUTILITY|Install_Dir, C:\ProgramData\SecurityUtility, , [d5e4dbcc6b20a78f1022ae5743c1fb05]
PUP.Optional.GamesDesktop, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|gmsd_de_005010043, , [04b52681fb9083b317c3702e4cb79e62],
PUP.Optional.DefaultSearchProtected, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|defsearchp@gmail.com, C:\Users\Claudi\AppData\Roaming\Mozilla\Firefox\Profiles\khsuv2fr.default\extensions\defsearchp@gmail.com, , [45742384a9e214228bef4a4ea0635ba5]
PUP.Optional.DownloadProtectExtension, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|{C2DC084E-A476-4CF1-95C5-4CE9119DBF5A}, C:\Windows\Installer\{52158539-41A3-459C-8A78-55078316FAD9}\{C2DC084E-A476-4CF1-95C5-4CE9119DBF5A}.xpi, , [40791790e5a6a492697b5e3b44bf3dc3]
PUP.Optional.CouponMarvel.AppFlsh, HKLM\SOFTWARE\WOW6432NODE\SECURITYUTILITY|Install_Dir, C:\ProgramData\SecurityUtility, , [4d6cd4d37714b5815fd3e124cb39748c]
PUP.Optional.MiuiTab, HKLM\SOFTWARE\WOW6432NODE\SUPDP|dir, C:\Program Files (x86)\MiuiTab, , [06b3c7e08308da5c79721894fc0760a0]
PUP.Optional.SupTab, HKLM\SOFTWARE\WOW6432NODE\SUPTAB|ptid, cor, , [8c2de0c7068567cfd90005bae2218b75]
PUP.Optional.Tuto4PC, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS|HostGUID, 27DC23C4-1E7C-45FA-91EA-995545CAD638, , [a118ced9e6a560d6b7f68a3923e08d73]
PUP.Optional.MultiPlug, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\comyninu|ImagePath, C:\Program Files (x86)\34444335-1437857197-4E35-5833-3863BBAED735\hnscA6FD.tmp, , [dcdd1097e1aac472f4e56d4057ac5fa1]
PUP.Optional.MultiPlug, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\wezoryro|ImagePath, C:\Program Files (x86)\34444335-1437857197-4E35-5833-3863BBAED735\knsz97BC.tmpfs, , [dfda8c1b0c7ff2447d5c1598b74ce818]
PUP.Optional.GamesDesktop, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\GAMESDESKTOP|mj, 15.07.27.0, , [f0c92e79fe8d999de1f5a0fed92ab64a]
PUP.Optional.WebBar, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN\FEATURECONTROL\FEATURE_BROWSER_EMULATION|wb.exe, 11000, , [912834738cff74c20ead41ca26de8878]
PUP.Optional.Trovi, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|URL, hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3330130&octid=EB_ORIGINAL_CTID&ISID=M8BAAAD7C-8818-4689-A938-D73D3AAEB233&SearchSource=58&CUI=&UM=8&UP=SPF5D2393B-E80E-47A9-ABAC-5B1D1907F2F1&D=072715&q={searchTerms}&SSPV=SP30367TA_sp_ie, , [8a2faafdb9d276c0a1a25b68b84b867a]
PUP.Optional.Conduit, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|SuggestionsURL_JSON, hxxp://suggest.seccint.com/CSuggestJson.ashx?prefix={searchTerms}, , [09b01592d5b6ae887b47227051b2dc24]
PUP.Optional.Trovi, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|DisplayName, Trovi, , [b801dec90e7d2a0cb78cb0138d767987]
PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=HGSTXHTS541010A9E680_JD1008DMG3ZTVWG3ZTVWX&ts=1437852459&type=default&q={searchTerms}, , [4277bbeca8e34beba686c2bc26ddd42c]
PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|URL, hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=HGSTXHTS541010A9E680_JD1008DMG3ZTVWG3ZTVWX&ts=1437852459&type=default&q={searchTerms}, , [a217fdaa731884b2f03c433bfa09c63a]
PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|FaviconURL, hxxp://www.istartsurf.com//favicon.ico, , [05b4baed3d4e69cdf53794eaf80b47b9]
PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|DisplayName, istartsurf, , [ceeb386ffb9039fdfa32720ceb18cf31]
PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, hxxp://www.istartsurf.com/web/?type=dspp&ts=1437852445&z=f6aeab63f0e9cef73e2e890g7z4c1mab3w3o8z1g5z&from=cor&uid=HGSTXHTS541010A9E680_JD1008DMG3ZTVWG3ZTVWX&q={searchTerms}, , [efca0a9d791245f139f3a8d6768dac54]
PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{D7D1189B-32FC-4BB1-8E12-D6FCF05F0437}|URL, hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=HGSTXHTS541010A9E680_JD1008DMG3ZTVWG3ZTVWX&ts=1437852459&type=default&q={searchTerms}, , [4b6e3473e3a851e5e04cb2cc996abe42]
PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}|URL, hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=HGSTXHTS541010A9E680_JD1008DMG3ZTVWG3ZTVWX&ts=1437852459&type=default&q={searchTerms}, , [dedb4067e6a56cca41eb5826cb3839c7]
PUP.Optional.ProductSetup, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\PRODUCTSETUP|tb, 0N1L2O1N1M0A1I, , [29909314424958de8224318338cb6b95]
PUP.Optional.SuperOptimizer, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\SUPER OPTIMIZER|SetupName, C:\Users\Claudi\AppData\Local\Temp\is628679143\4FC80193_stp\SuperOptimizer.exe, , [e2d7b3f41a71c274595347780cf72cd4]
PUP.Optional.SuperOptimizer, HKU\S-1-5-21-3361543711-125785448-4142314985-1001\SOFTWARE\SUPER OPTIMIZER|AdsBuyNowURL, hxxp://supc4.superpctools.revenuewire.net/spu/register?221001849_40B9B6EE-AC2A-4A49-B7B1-4A5D0278DC30, , [f8c1c7e047447bbbbbf0a31cc83bd22e]
Registrierungsdaten: 4
PUP.Optional.IStartSurf.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://www.istartsurf.com/web/?type=ds&ts=1437852352&z=dd0dcfb9070be0578bc22c4gezcc4m3b8w6o3c8o9g&from=cor&uid=HGSTXHTS541010A9E680_JD1008DMG3ZTVWG3ZTVWX&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/web/?type=ds&ts=1437852352&z=dd0dcfb9070be0578bc22c4gezcc4m3b8w6o3c8o9g&from=cor&uid=HGSTXHTS541010A9E680_JD1008DMG3ZTVWG3ZTVWX&q={searchTerms}),,[3d7c089fe0ab6ec82b99b1d1e51f8080]
PUP.Optional.IStartSurf.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.istartsurf.com/?type=hppp&ts=1437852445&z=f6aeab63f0e9cef73e2e890g7z4c1mab3w3o8z1g5z&from=cor&uid=HGSTXHTS541010A9E680_JD1008DMG3ZTVWG3ZTVWX, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/?type=hppp&ts=1437852445&z=f6aeab63f0e9cef73e2e890g7z4c1mab3w3o8z1g5z&from=cor&uid=HGSTXHTS541010A9E680_JD1008DMG3ZTVWG3ZTVWX),,[2c8dd1d6dfac3ef8edd7b8caaf5560a0]
PUP.Optional.IStartSurf.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://www.istartsurf.com/?type=hppp&ts=1437852445&z=f6aeab63f0e9cef73e2e890g7z4c1mab3w3o8z1g5z&from=cor&uid=HGSTXHTS541010A9E680_JD1008DMG3ZTVWG3ZTVWX, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/?type=hppp&ts=1437852445&z=f6aeab63f0e9cef73e2e890g7z4c1mab3w3o8z1g5z&from=cor&uid=HGSTXHTS541010A9E680_JD1008DMG3ZTVWG3ZTVWX),,[8f2a1b8cdab1ac8a5a6a206262a256aa]
PUP.Optional.IStartSurf.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://www.istartsurf.com/web/?type=ds&ts=1437852352&z=dd0dcfb9070be0578bc22c4gezcc4m3b8w6o3c8o9g&from=cor&uid=HGSTXHTS541010A9E680_JD1008DMG3ZTVWG3ZTVWX&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/web/?type=ds&ts=1437852352&z=dd0dcfb9070be0578bc22c4gezcc4m3b8w6o3c8o9g&from=cor&uid=HGSTXHTS541010A9E680_JD1008DMG3ZTVWG3ZTVWX&q={searchTerms}),,[5b5eeeb97a112d092a9ad5ad2cd8ac54]
Ordner: 11
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.DownloadProtect, C:\Windows\Installer\{4B5BAC7E-829C-4EEA-8425-49CC2B22C677}, , [9d1c3f688803ff37d2fec4d5b35006fa],
PUP.Optional.DownloadProtect, C:\Windows\Installer\{9575CBCD-6B68-450F-8559-34215DC69826}, , [6b4e6344454640f6e9e79bfe35ceab55],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\Local\SmartWeb, , [a019ced95437e452a4c52399fa094eb2],
PUP.Optional.WebBar, C:\Windows\System32\config\systemprofile\AppData\Local\WebBar, , [3485089f91fa6bcbb2dc04c29271b14f],
PUP.Optional.DNSBlock.BrwsrFlsh, C:\Users\Claudi\AppData\Local\DnsBlock, , [66530c9b5734a1953e76c3bc0cf6d828],
PUP.Optional.DownloadProtect, C:\Program Files (x86)\{107711E4-7E9B-447F-8347-5667F3939469}, , [5069bdea7a119e98919c595ed232a25e],
PUP.Optional.DownloadProtect, C:\Program Files (x86)\{ADB02D46-9BC0-4670-B856-1B5E920141EA}, , [4f6a6641b5d678be73ba793e12f2d52b],
PUP.Optional.DownloadProtect, C:\Program Files\{0778E627-5941-4803-AC27-16240AC314C9}, , [e1d803a4c6c5cc6a9697b106fc08c937],
PUP.Optional.DownloadProtect, C:\Program Files\{BCA1BFBA-4A99-414B-B033-58D4164ECEDD}, , [af0a0a9db5d69b9b5cd153644db7ad53],
Dateien: 62
PUP.Optional.BrowseFox.Generic, C:\Program Files (x86)\34444335-1437857197-4E35-5833-3863BBAED735\hnscA6FD.tmp, , [c2f78126e4a7cf67cae3926e11ef926e],
PUP.Optional.BrowseFox.Generic, C:\Program Files (x86)\34444335-1437857197-4E35-5833-3863BBAED735\knsz97BC.tmpfs, , [eacf6b3ced9e0f27525b0bf520e014ec],
PUP.Optional.CheckOffer, C:\Users\Claudi\AppData\Local\Temp\nscE571.tmp\nsCBHTML5.dll, , [e2d7fea9bbd057df1e2354b441c0be42],
PUP.Optional.IStartSurf.ShrtCln, C:\Users\Claudi\AppData\Roaming\Mozilla\Firefox\Profiles\khsuv2fr.default\searchplugins\istartsurf.xml, , [9c1d8d1a1873d95d8298f9bb49b9d52b],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\wlu.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\1.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\16881.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\2229.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\2260.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\2501.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\25615.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\41.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\a.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\b.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\c.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\d.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\e.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\f.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\g.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\h.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\i.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\j.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\k.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\l.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\m.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\n.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\o.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\p.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\q.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\r.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\s.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\t.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\u.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\v.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\w.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\x.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\y.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\LocalLow\SmartWeb\Data\z.txt, , [33866344bbd054e2d7ac344f44bfe11f],
PUP.Optional.DNSBlock.BrwsrFlsh, C:\Windows\System32\DnsBlockUpdateSvc.exe, , [8c2d3176bad153e34155b0d6ef14d927],
PUP.Optional.DNSBlocker.BrwsrFlsh, C:\Windows\System32\dns.block, , [dbde297e5f2ca5919efcceb8669dab55],
PUP.Optional.DNSBlocker.BrwsrFlsh, C:\Windows\SysWOW64\dns.block, , [b702b9ee29621d19ddbdc9bd20e3ad53],
PUP.Optional.DownloadProtect, C:\Windows\Installer\{4B5BAC7E-829C-4EEA-8425-49CC2B22C677}\ccgknalmffncgopfhbgjbfnakbimfkbomrx, , [9d1c3f688803ff37d2fec4d5b35006fa],
PUP.Optional.DownloadProtect, C:\Windows\Installer\{4B5BAC7E-829C-4EEA-8425-49CC2B22C677}\xcgknalmffncgopfhbgjbfnakbimfkbomml, , [9d1c3f688803ff37d2fec4d5b35006fa],
PUP.Optional.DownloadProtect, C:\Windows\Installer\{9575CBCD-6B68-450F-8559-34215DC69826}\ccdcegkhogmillleicjdeecmplnilkamcrx, , [6b4e6344454640f6e9e79bfe35ceab55],
PUP.Optional.DownloadProtect, C:\Windows\Installer\{9575CBCD-6B68-450F-8559-34215DC69826}\xcdcegkhogmillleicjdeecmplnilkamcml, , [6b4e6344454640f6e9e79bfe35ceab55],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\Local\SmartWeb\uninst.lnk, , [a019ced95437e452a4c52399fa094eb2],
PUP.Optional.SmartWeb, C:\Users\Claudi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartWeb.lnk, , [d5e48225434843f3b6b4c8f4a261b749],
PUP.Optional.Trovi, C:\Users\Claudi\AppData\Roaming\Mozilla\Firefox\Profiles\khsuv2fr.default\searchplugins\trovi.xml, , [08b18324583387afa39ba32006fd2dd3],
PUP.Optional.Vitruvian, C:\Users\Claudi\AppData\Local\Temp\vitruvian-installer-hardwareprofile-v0001, , [ad0cd0d71477b086b1eea124c73c59a7],
PUP.Optional.Vitruvian, C:\Users\Claudi\AppData\Local\Temp\vitruvian-installer-install-v0003, , [0dac5d4a3259ca6c4c53c00519eaf50b],
PUP.Optional.Vitruvian, C:\Users\Claudi\AppData\Local\Temp\vitruvian-installer-processes-v0002, , [4772624592f9a2948b14e6df22e11be5],
PUP.Optional.Vitruvian, C:\Users\Claudi\AppData\Local\Temp\vitruvian-installer-scheduledtasks-v0001, , [6356bceb06854ee89a05ecd98d76af51],
PUP.Optional.Vitruvian, C:\Users\Claudi\AppData\Local\Temp\vitruvian-installer-uninstall-v0002, , [a811d0d7cbc068ce8e11af162fd48e72],
PUP.Optional.WebBar, C:\Windows\System32\config\systemprofile\AppData\Local\WebBar\wb.log, , [3485089f91fa6bcbb2dc04c29271b14f],
PUP.Optional.DownloadProtect, C:\Program Files (x86)\{107711E4-7E9B-447F-8347-5667F3939469}\config.json, , [5069bdea7a119e98919c595ed232a25e],
PUP.Optional.DownloadProtect, C:\Program Files (x86)\{107711E4-7E9B-447F-8347-5667F3939469}\def.bin, , [5069bdea7a119e98919c595ed232a25e],
PUP.Optional.DownloadProtect, C:\Program Files (x86)\{ADB02D46-9BC0-4670-B856-1B5E920141EA}\config.json, , [4f6a6641b5d678be73ba793e12f2d52b],
PUP.Optional.DownloadProtect, C:\Program Files (x86)\{ADB02D46-9BC0-4670-B856-1B5E920141EA}\def.bin, , [4f6a6641b5d678be73ba793e12f2d52b],
PUP.Optional.DownloadProtect, C:\Program Files\{0778E627-5941-4803-AC27-16240AC314C9}\config.json, , [e1d803a4c6c5cc6a9697b106fc08c937],
PUP.Optional.DownloadProtect, C:\Program Files\{0778E627-5941-4803-AC27-16240AC314C9}\def.bin, , [e1d803a4c6c5cc6a9697b106fc08c937],
PUP.Optional.DownloadProtect, C:\Program Files\{BCA1BFBA-4A99-414B-B033-58D4164ECEDD}\config.json, , [af0a0a9db5d69b9b5cd153644db7ad53],
PUP.Optional.DownloadProtect, C:\Program Files\{BCA1BFBA-4A99-414B-B033-58D4164ECEDD}\def.bin, , [af0a0a9db5d69b9b5cd153644db7ad53],
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) Das war erst einmal was ich bieten kann :o)
und
Hallo Dennis, bevor ich das vergesse, schon mal Danke fürs Drüberschauen !!
Gruss Karl-Heinz |