Berlinerin | 03.08.2016 16:00 | Ich weiß gar nicht, was ein Lockscreen überhaupt ist....
Die Funde sind noch immer in der Quarantäne. Der PC ist auch nach Aufforderung neu gestartet worden. Möglicherweise hatte ich ein falsches Protokoll geschickt. Hier ist das "Schutzprotokoll" sowie das "Suchverlaufsprotokoll". Das FRST war neu! Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Protection, 03.08.2016 16:00, SYSTEM, MAMA, Protection, Malware Protection, Starting,
Protection, 03.08.2016 16:00, SYSTEM, MAMA, Protection, Malware Protection, Started,
Protection, 03.08.2016 16:00, SYSTEM, MAMA, Protection, Malicious Website Protection, Starting,
Protection, 03.08.2016 16:00, SYSTEM, MAMA, Protection, Malicious Website Protection, Started,
Update, 03.08.2016 16:01, SYSTEM, MAMA, Manual, IP Database, 2016.2.8.1, 2016.8.3.2,
Update, 03.08.2016 16:01, SYSTEM, MAMA, Manual, Remediation Database, 2016.2.12.1, 2016.8.2.1,
Update, 03.08.2016 16:01, SYSTEM, MAMA, Manual, Rootkit Database, 2016.2.8.1, 2016.5.27.1,
Update, 03.08.2016 16:01, SYSTEM, MAMA, Manual, Domain Database, 2016.2.16.8, 2016.8.3.5,
Update, 03.08.2016 16:01, SYSTEM, MAMA, Manual, Malware Database, 2016.2.16.6, 2016.8.3.7,
Protection, 03.08.2016 16:01, SYSTEM, MAMA, Protection, Refresh, Starting,
Protection, 03.08.2016 16:01, SYSTEM, MAMA, Protection, Malicious Website Protection, Stopping,
Protection, 03.08.2016 16:01, SYSTEM, MAMA, Protection, Malicious Website Protection, Stopped,
Protection, 03.08.2016 16:01, SYSTEM, MAMA, Protection, Refresh, Success,
Protection, 03.08.2016 16:01, SYSTEM, MAMA, Protection, Malicious Website Protection, Starting,
Protection, 03.08.2016 16:01, SYSTEM, MAMA, Protection, Malicious Website Protection, Started,
Scan, 03.08.2016 16:30, SYSTEM, MAMA, Manual, Start: 03.08.2016 16:02, Dauer: 25 Min. 48 Sek., Bedrohungssuchlauf, Abgeschlossen, 4 Malware-Erkennung, 138 Nicht-Malware-Erkennungen,
Detection, 03.08.2016 16:30, SYSTEM, MAMA, Protection, Malware-Schutz, Datei, PUP.Optional.CouponMarvel, C:\ProgramData\SecurityUtility\SecurityUtility.exe, Quarantine Failed, 5, Zugriff verweigert , [8a297cca2d6db482866a562cdf22649c]
Protection, 03.08.2016 16:31, SYSTEM, MAMA, Protection, Malware Protection, Starting,
Protection, 03.08.2016 16:31, SYSTEM, MAMA, Protection, Malware Protection, Started,
Protection, 03.08.2016 16:31, SYSTEM, MAMA, Protection, Malicious Website Protection, Starting,
Protection, 03.08.2016 16:31, SYSTEM, MAMA, Protection, Malicious Website Protection, Started,
(end) Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 03.08.2016
Suchlaufzeit: 16:02
Protokolldatei: Suchverlaufsprotokoll.txt
Administrator: Ja
Version: 2.2.1.1043
Malware-Datenbank: v2016.08.03.07
Rootkit-Datenbank: v2016.05.27.01
Lizenz: Testversion
Malware-Schutz: Aktiviert
Schutz vor bösartigen Websites: Aktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: Jana
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 319935
Abgelaufene Zeit: 25 Min., 48 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 2
PUP.Optional.CouponMarvel, C:\ProgramData\SecurityUtility\SecurityUtility.exe, 2864, Löschen bei Neustart, [585b1234d0ca46f09f51a3df56abcf31]
PUP.Optional.CouponMarvel, C:\ProgramData\SecurityUtility\SecurityUtility.exe, 5356, Löschen bei Neustart, [585b1234d0ca46f09f51a3df56abcf31]
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 27
PUP.Optional.Yontoo, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{10bac0f7-54f5-4d58-b06d-51ee96b664dd}, In Quarantäne, [872c22246b2faa8c93ea276db250ac54],
PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\TYPELIB\{67df26dd-5b1d-4331-88aa-59e609efb4af}, In Quarantäne, [872c22246b2faa8c93ea276db250ac54],
PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\INTERFACE\{B3F90BA3-3A1D-4F7A-90CC-B71CCCEADCD4}, In Quarantäne, [872c22246b2faa8c93ea276db250ac54],
PUP.Optional.Yontoo, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{B3F90BA3-3A1D-4F7A-90CC-B71CCCEADCD4}, In Quarantäne, [872c22246b2faa8c93ea276db250ac54],
PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{B3F90BA3-3A1D-4F7A-90CC-B71CCCEADCD4}, In Quarantäne, [872c22246b2faa8c93ea276db250ac54],
PUP.Optional.Yontoo, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{67df26dd-5b1d-4331-88aa-59e609efb4af}, In Quarantäne, [872c22246b2faa8c93ea276db250ac54],
PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{67df26dd-5b1d-4331-88aa-59e609efb4af}, In Quarantäne, [872c22246b2faa8c93ea276db250ac54],
PUP.Optional.Yontoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{10BAC0F7-54F5-4D58-B06D-51EE96B664DD}, In Quarantäne, [872c22246b2faa8c93ea276db250ac54],
PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{10BAC0F7-54F5-4D58-B06D-51EE96B664DD}, In Quarantäne, [872c22246b2faa8c93ea276db250ac54],
PUP.Optional.Yontoo, HKU\S-1-5-21-2634858075-1249657286-2356899316-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{10BAC0F7-54F5-4D58-B06D-51EE96B664DD}, In Quarantäne, [872c22246b2faa8c93ea276db250ac54],
PUP.Optional.Yontoo, HKU\S-1-5-21-2634858075-1249657286-2356899316-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{10BAC0F7-54F5-4D58-B06D-51EE96B664DD}, In Quarantäne, [872c22246b2faa8c93ea276db250ac54],
PUP.Optional.Yontoo, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}, In Quarantäne, [347f84c2cad0b6807dc8343d738fb64a],
PUP.Optional.Yontoo, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}, In Quarantäne, [347f84c2cad0b6807dc8343d738fb64a],
PUP.Optional.TaskRNDM, HKU\S-1-5-21-2634858075-1249657286-2356899316-1001\SOFTWARE\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}, In Quarantäne, [9e1547ff6e2ce94dc6bc4e46639f38c8],
PUP.Optional.TaskRNDM, HKU\S-1-5-21-2634858075-1249657286-2356899316-1001\SOFTWARE\APPDATALOW\SOFTWARE\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}, In Quarantäne, [9e1547ff6e2ce94dc6bc4e46639f38c8],
PUP.Optional.Yontoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [694a63e38f0b5cda6b75b20eaf547d83],
PUP.Optional.CouponMarvel, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\EITUCEOC1, Löschen bei Neustart, [eac9ee582773d2648ce9944aac572ad6],
PUP.Optional.CouponMarvel, HKLM\SOFTWARE\SECURITYUTILITY, In Quarantäne, [72414cfac9d13cfa56153f9e54afca36],
PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\mystartsearchSoftware, In Quarantäne, [a80ba4a25a4084b296f92ab6c939936d],
PUP.Optional.CouponMarvel, HKLM\SOFTWARE\WOW6432NODE\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}, In Quarantäne, [1d96fa4c3565171f0367a41e996a857b],
PUP.Optional.MySearch123, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}, In Quarantäne, [4b68271f5d3de84e6bc3805bc53eda26],
PUP.Optional.Tuto4PC, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS, In Quarantäne, [5b58b492ceccf73f2e862d8c50b337c9],
PUP.Optional.InstallCore, HKU\S-1-5-21-2634858075-1249657286-2356899316-1001\SOFTWARE\csastats, In Quarantäne, [8d26301613871422538c51a929da39c7],
PUP.Optional.Tuto4PC, HKU\S-1-5-21-2634858075-1249657286-2356899316-1001\SOFTWARE\TutoTag, In Quarantäne, [a60d74d2a5f57fb7e9c7c6f31ee5a35d],
PUP.Optional.BDYahoo, HKU\S-1-5-21-2634858075-1249657286-2356899316-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{4CA7BF63-097C-41E4-B963-8DA15248A5C8}, In Quarantäne, [9e15c185198141f50743fa9ec142e51b],
PUP.Optional.Yontoo, HKU\S-1-5-21-2634858075-1249657286-2356899316-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [d8dbb0966c2ef73f9a452a96e41f857b],
PUP.Optional.ProductSetup, HKU\S-1-5-21-2634858075-1249657286-2356899316-1001\SOFTWARE\PRODUCTSETUP, In Quarantäne, [8132bc8ae4b6b08666a0a50c7a897090],
Registrierungswerte: 9
Trojan.Nymaim, HKU\S-1-5-21-2634858075-1249657286-2356899316-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE|optics-3, C:\Users\Jana\AppData\Roaming\optics-6\optics-3.exe, In Quarantäne, [9c172224316975c1809d3d858c78df21]
PUP.Optional.Yontoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DoNotAskAgain, searchinterneat-a.akamaihd.net, In Quarantäne, [eac94bfb74265adcecbb477b1de6ae52]
PUP.Optional.Yontoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfVsPWFhFRFEUbQlcVQhcFVcUdRRaWF0VDFcTcFwNBVsUEAYUch9aFQQTSEcFME0FCFwEURNNfWtdEkwdVUZrNVs=&q={searchTerms}, In Quarantäne, [694a63e38f0b5cda6b75b20eaf547d83]
PUP.Optional.CouponMarvel, HKLM\SOFTWARE\SECURITYUTILITY|Install_Dir, C:\ProgramData\SecurityUtility, In Quarantäne, [72414cfac9d13cfa56153f9e54afca36]
PUP.Optional.Tuto4PC, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS|HostGUID, B1DD600E-2EFC-49C7-970A-77AFAA57CADD, In Quarantäne, [5b58b492ceccf73f2e862d8c50b337c9]
PUP.Optional.Yontoo, HKU\S-1-5-21-2634858075-1249657286-2356899316-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DoNotAskAgain, searchinterneat-a.akamaihd.net, In Quarantäne, [575ce95d8e0ce55110e2536e3dc651af]
PUP.Optional.BDYahoo, HKU\S-1-5-21-2634858075-1249657286-2356899316-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{4CA7BF63-097C-41E4-B963-8DA15248A5C8}|URL, hxxp://search.yahoo.com/yhs/search?hspart=ddc&hsimp=yhs-ddc_bd&type=bl-bir-dd__alt__ddc_dss_bd_com&p={searchTerms}, In Quarantäne, [9e15c185198141f50743fa9ec142e51b]
PUP.Optional.Yontoo, HKU\S-1-5-21-2634858075-1249657286-2356899316-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfVsPWFhFRFEUbQlcVQhcFVcUdRRaWF0VDFcTcFwNBVsUEAYUch9aFQQTSEcFME0FCFwEURNNfWtdEkwdVUZrNVs=&q={searchTerms}, In Quarantäne, [d8dbb0966c2ef73f9a452a96e41f857b]
PUP.Optional.ProductSetup, HKU\S-1-5-21-2634858075-1249657286-2356899316-1001\SOFTWARE\PRODUCTSETUP|tb, 0R0DtO0U1C1S1U1StR0J1Q2P1J1K1I2R, In Quarantäne, [8132bc8ae4b6b08666a0a50c7a897090]
Registrierungsdaten: 7
PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.mystartsearch.com/?type=hp&ts=1443463804&z=189f51c0bbf6e6884246dabg2z5zfc5z1q1c0b0e2z&from=cvs&uid=toshibaxmq01abd100_84erp11wtxx84erp11wt, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/?type=hp&ts=1443463804&z=189f51c0bbf6e6884246dabg2z5zfc5z1q1c0b0e2z&from=cvs&uid=toshibaxmq01abd100_84erp11wtxx84erp11wt),Ersetzt,[e3d0d571d4c6c76fbde54927b45003fd]
PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://www.mystartsearch.com/web/?type=ds&ts=1443463804&z=189f51c0bbf6e6884246dabg2z5zfc5z1q1c0b0e2z&from=cvs&uid=toshibaxmq01abd100_84erp11wtxx84erp11wt&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/web/?type=ds&ts=1443463804&z=189f51c0bbf6e6884246dabg2z5zfc5z1q1c0b0e2z&from=cvs&uid=toshibaxmq01abd100_84erp11wtxx84erp11wt&q={searchTerms}),Ersetzt,[a211d175b3e7f04679296b0523e19967]
PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://www.mystartsearch.com/web/?type=ds&ts=1443463804&z=189f51c0bbf6e6884246dabg2z5zfc5z1q1c0b0e2z&from=cvs&uid=toshibaxmq01abd100_84erp11wtxx84erp11wt&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/web/?type=ds&ts=1443463804&z=189f51c0bbf6e6884246dabg2z5zfc5z1q1c0b0e2z&from=cvs&uid=toshibaxmq01abd100_84erp11wtxx84erp11wt&q={searchTerms}),Ersetzt,[a0138bbbdcbeca6cddc5bdb3c73da858]
PUP.Optional.Yontoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRghBdwBZVVwVFhgTJA0JTA0TFgAOIgBcBRQTEQVGdV1aBAhCFgcFIk0FA1ADB0VXfVBdFElXTwhxJUpNDU0CaUBB, Gut: (www.google.com), Schlecht: (hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRghBdwBZVVwVFhgTJA0JTA0TFgAOIgBcBRQTEQVGdV1aBAhCFgcFIk0FA1ADB0VXfVBdFElXTwhxJUpNDU0CaUBB),Ersetzt,[10a30442d3c76cca598a3543bd477888]
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[9b184df9cecc3ef8111eadcaa06443bd]
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[fbb84402712969cd85aa1661b84c7a86]
PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-2634858075-1249657286-2356899316-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.mystartsearch.com/?type=hp&ts=1443463804&z=189f51c0bbf6e6884246dabg2z5zfc5z1q1c0b0e2z&from=cvs&uid=toshibaxmq01abd100_84erp11wtxx84erp11wt, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/?type=hp&ts=1443463804&z=189f51c0bbf6e6884246dabg2z5zfc5z1q1c0b0e2z&from=cvs&uid=toshibaxmq01abd100_84erp11wtxx84erp11wt),Ersetzt,[6152d571aeec2c0a5251007008fc3ac6]
Ordner: 8
PUP.Optional.DailyPCClean, C:\Users\Jana\Documents\DailyPCClean, In Quarantäne, [2d86a4a2f3a7e74f9ae7bde2fe050cf4],
PUP.Optional.PCSpeedMaximizer, C:\Users\Jana\Documents\PC Speed Maximizer, In Quarantäne, [c8eb9da92c6eda5c0348d7d87192eb15],
PUP.Optional.OpenCandy, C:\Users\Jana\AppData\Roaming\OpenCandy, In Quarantäne, [7e35b6904753ff37bf88e2c2709223dd],
PUP.Optional.OpenCandy, C:\Users\Jana\AppData\Roaming\OpenCandy\64C172683BC44B0CB4BBAC480CB7E184, In Quarantäne, [7e35b6904753ff37bf88e2c2709223dd],
PUP.Optional.OpenCandy, C:\Users\Jana\AppData\Roaming\OpenCandy\9C327E0B5DCF49E2A6080B37C4271A5E, In Quarantäne, [7e35b6904753ff37bf88e2c2709223dd],
PUP.Optional.OpenCandy, C:\Users\Jana\AppData\Roaming\OpenCandy\BB8FB1AC27B7481381061864FF7CDAFE, In Quarantäne, [7e35b6904753ff37bf88e2c2709223dd],
PUP.Optional.CouponMarvel, C:\ProgramData\SecurityUtility, Löschen bei Neustart, [644fe85ec9d14bebd15fe2e24fb3ed13],
PUP.Optional.ScreenSnapshot, C:\Users\Public\Documents\Guid\Common\I18N\IPCSUpdateCache\ScreenSnapshot, In Quarantäne, [f4bf8db94c4e241201d217afa75b0df3],
Dateien: 18
PUP.Optional.CouponMarvel, C:\ProgramData\SecurityUtility\SecurityUtility.exe, Löschen bei Neustart, [585b1234d0ca46f09f51a3df56abcf31],
Trojan.Nymaim, C:\Users\Jana\AppData\Roaming\optics-6\optics-3.exe, In Quarantäne, [9c172224316975c1809d3d858c78df21],
PUP.Optional.Yontoo, C:\Users\Jana\AppData\Roaming\OpenCandy\9C327E0B5DCF49E2A6080B37C4271A5E\setup.exe, In Quarantäne, [a80b341236640a2c480d34a2ca376a96],
PUP.Optional.Yontoo, C:\Users\Jana\AppData\Roaming\OpenCandy\BB8FB1AC27B7481381061864FF7CDAFE\setup.exe, In Quarantäne, [149f3016c7d37cba2796969eec15a45c],
PUP.Optional.Yontoo, C:\Users\Jana\AppData\Roaming\RPEng\1FC2E6444BA84C88B12DE65FCDDB232A\setup.exe, In Quarantäne, [4f64f3534e4c6ccadae33202b44d827e],
PUP.Optional.ChinAd, C:\Users\Jana\AppData\Roaming\RPEng\286C4D476D314C13BA3BBC75A5EDF835\openchannel2_ger.exe, In Quarantäne, [3083af97bfdb2016a6f1aeb752af9f61],
PUP.Optional.Tuto4PC, C:\Program Files (x86)\DailyPcClean Support\DailyPCClean.exe, In Quarantäne, [2d8682c41f7bf4427e6ff88d9a6a37c9],
PUP.Optional.Yontoo, C:\ods.exe, In Quarantäne, [e5ceff47a5f5ab8befcef63e7d8443bd],
PUP.Optional.CouponMarvel, C:\$RECYCLE.BIN\S-1-5-21-2634858075-1249657286-2356899316-1001\$RBB48OI.dll, In Quarantäne, [bcf7e95d21792e08d719265cde239e62],
PUP.Optional.CouponMarvel, C:\$RECYCLE.BIN\S-1-5-21-2634858075-1249657286-2356899316-1001\$RE69GWI.dll, In Quarantäne, [753ebe88544670c6ef016e14a65b629e],
PUP.Optional.CouponMarvel, C:\$RECYCLE.BIN\S-1-5-21-2634858075-1249657286-2356899316-1001\$RK6OFJY.exe, In Quarantäne, [4a69de68940672c4ad01b3a50af7d42c],
PUP.Optional.CouponMarvel, C:\$RECYCLE.BIN\S-1-5-21-2634858075-1249657286-2356899316-1001\$RQPAPDZ.dll, In Quarantäne, [466df056f4a6db5b816f443edd242cd4],
PUP.Optional.DailyPCClean, C:\Users\Jana\Documents\DailyPCClean\CookieExclusions.txt, In Quarantäne, [2d86a4a2f3a7e74f9ae7bde2fe050cf4],
PUP.Optional.PCSpeedMaximizer, C:\Users\Jana\Documents\PC Speed Maximizer\CookieExclusions.txt, In Quarantäne, [c8eb9da92c6eda5c0348d7d87192eb15],
PUP.Optional.CouponMarvel, C:\Windows\System32\Tasks\EITUCEOC1, In Quarantäne, [ecc78fb71585e84ecba85985d23154ac],
PUP.Optional.CouponMarvel, C:\Windows\Tasks\EITUCEOC1.job, In Quarantäne, [565d15312d6d082e0d6726b80ef55ca4],
PUP.Optional.Yontoo, C:\ods.exe.config, In Quarantäne, [981be75f83170a2c0462edf64db6aa56],
PUP.Optional.OpenCandy, C:\Users\Jana\AppData\Roaming\OpenCandy\64C172683BC44B0CB4BBAC480CB7E184\LenovoSHAREit812.exe, In Quarantäne, [7e35b6904753ff37bf88e2c2709223dd],
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) |