Isabella-KB | 10.01.2017 01:30 | AdwCleaner Logfile: Code:
# AdwCleaner v6.042 - Bericht erstellt am 09/01/2017 um 22:34:50
# Aktualisiert am 06/01/2017 von Malwarebytes
# Datenbank : 2017-01-09.3 [Server]
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (X64)
# Benutzername : Ingrid Drawe - TEST
# Gestartet von : e:\Users\Ingrid Drawe\Desktop\AdwCleaner\adwcleaner_6.042.exe
# Modus: Löschen
# Unterstützung : https://www.malwarebytes.com/support
***** [ Dienste ] *****
***** [ Ordner ] *****
***** [ Dateien ] *****
[-] Datei gelöscht: C:\Users\INGRID~1\AppData\Local\Temp\reimage.log
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Verknüpfungen ] *****
***** [ Aufgabenplanung ] *****
***** [ Registrierungsdatenbank ] *****
***** [ Browser ] *****
[-] [C:\Users\Ingrid Drawe\AppData\Local\Google\Chrome\User Data\Profile 1] [extension] Gelöscht: aeljlhkkoipjimklndofjoafhpccdfjo
[-] [C:\Users\Ingrid Drawe\AppData\Local\Google\Chrome\User Data\Profile 1] [extension] Gelöscht: pelmeidfhdlhlbjimpabfcbnnojbboma
[-] [C:\Users\Ingrid Drawe\AppData\Local\Google\Chrome\User Data\Profile 1] [homepage] Gelöscht: hxxp://www.trovi.com/?gd=&ctid=CT3314932&octid=EB_ORIGINAL_CTID&ISID=0aa369f4-a9dc-47f4-b286-f72f8bea48f8&SearchSource=55&CUI=&UM=6&UP=SP7FB21578-78F5-4B96-9CBE-08DE95A71C9F&SSPV=
*************************
:: "Tracing" Schlüssel gelöscht
:: Winsock Einstellungen zurückgesetzt
:: "Prefetch" Dateien gelöscht
:: Proxy Einstellungen zurückgesetzt
:: Internet Explorer Richtlinien gelöscht
:: Chrome Richtlinien gelöscht
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [1617 Bytes] - [09/01/2017 22:34:50]
C:\AdwCleaner\AdwCleaner[S0].txt - [1866 Bytes] - [09/01/2017 22:29:42]
########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [1763 Bytes] ########## --- --- ---
ich bitte um Entschuldigung, ich habe von solchen Dingen keine Ahnung.
Mir qualmt der Schädel aber Nr. 1 habe ich jetzt wohl überstanden. Mache sofort weiter. Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Scan-Datum: 09.01.17
Scan-Zeit: 23:02
Protokolldatei: mbam.txt
Administrator: Ja
-Softwaredaten-
Version: 3.0.5.1299
Komponentenversion: 1.0.43
Version des Aktualisierungspakets: 1.0.735
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: TEST\Ingrid Drawe
-Scan-Übersicht-
Scan-Typ: Bedrohungs-Scan
Ergebnis: Abgeschlossen
Gescannte Objekte: 370042
Abgelaufene Zeit: 9 Min., 54 Sek.
-Scan-Optionen-
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
-Scan-Details-
Prozess: 0
(keine bösartigen Elemente erkannt)
Modul: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 43
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-1, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-10, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-11, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-2, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-3, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-4, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-5, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-5_user, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-6, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-7, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-1, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-10, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-11, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-2, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-3, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-4, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-5, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-5_user, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-6, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-7, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.SlimCleanerPlus, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SlimCleaner Plus (Scheduled Scan - Ingrid Drawe), Löschen bei Neustart, [1657], [334109],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{17AD97C9-786A-43D2-BCD2-8087DF7652DE}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{2DEAF12C-A589-4530-AABD-EB5FEAB986A9}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{2F0F181C-CD13-418C-BD3C-8980BCE04E85}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{35ED2BC5-2760-44FA-B813-717CE178C263}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4172CB8A-0A72-4741-9CD7-87D219F15FB0}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4B1706D7-37B0-48F8-9A70-32564CC073C2}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{522FAEEE-FFCB-48CC-8170-E4E2CE19E3A6}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{58D82EFC-E906-4252-BDE8-8D35B3B38854}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{5D32A591-3F75-4E59-9BB3-367F3AA38389}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{621E38DF-E594-49C7-9F19-704B5971B4E3}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{67502F01-43FB-485E-B40F-D5A8AFC9EB2D}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{6A6E608C-D0FB-4650-9F63-C24A01EF801D}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7BF8D7D3-5843-4811-8FB4-2905781E2896}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7E08D573-C697-40DB-B03D-CCDAED4EDA4F}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.SlimCleanerPlus, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7F2933C1-C023-4A33-A12E-396ED7435C0F}, Löschen bei Neustart, [1657], [334102],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{90C4B222-006F-4479-9488-BFA56D6329AC}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9550CA18-E22A-4C70-BD56-9F9CD790FD84}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9CDA3F5D-FD48-4369-8651-E84AC6137F31}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{A09777C0-A696-4941-B9D6-B4069BD98146}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F12FD086-857C-4962-B582-1BC0D2EE7002}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F8BBD295-3EDE-43E7-B905-50361A475BF0}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.WombatUpdater, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\Service7597.exe, Löschen bei Neustart, [8682], [245072],1.0.735
Registrierungswert: 22
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{17AD97C9-786A-43D2-BCD2-8087DF7652DE}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{2DEAF12C-A589-4530-AABD-EB5FEAB986A9}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{2F0F181C-CD13-418C-BD3C-8980BCE04E85}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{35ED2BC5-2760-44FA-B813-717CE178C263}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4172CB8A-0A72-4741-9CD7-87D219F15FB0}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4B1706D7-37B0-48F8-9A70-32564CC073C2}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{522FAEEE-FFCB-48CC-8170-E4E2CE19E3A6}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{58D82EFC-E906-4252-BDE8-8D35B3B38854}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{5D32A591-3F75-4E59-9BB3-367F3AA38389}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{621E38DF-E594-49C7-9F19-704B5971B4E3}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{67502F01-43FB-485E-B40F-D5A8AFC9EB2D}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{6A6E608C-D0FB-4650-9F63-C24A01EF801D}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7BF8D7D3-5843-4811-8FB4-2905781E2896}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7E08D573-C697-40DB-B03D-CCDAED4EDA4F}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.SlimCleanerPlus, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7F2933C1-C023-4A33-A12E-396ED7435C0F}|PATH, In Quarantäne, [1657], [334102],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{90C4B222-006F-4479-9488-BFA56D6329AC}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9550CA18-E22A-4C70-BD56-9F9CD790FD84}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9CDA3F5D-FD48-4369-8651-E84AC6137F31}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{A09777C0-A696-4941-B9D6-B4069BD98146}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F12FD086-857C-4962-B582-1BC0D2EE7002}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F8BBD295-3EDE-43E7-B905-50361A475BF0}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.WombatUpdater, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\Service7597.exe|{A53DD3E5-0283-4AB3-B77C-7BD1BC7550C6}.SDB, In Quarantäne, [8682], [245072],1.0.735
Daten-Stream: 0
(keine bösartigen Elemente erkannt)
Ordner: 5
PUP.Optional.WinYahoo.Generic, C:\PROGRAMDATA\{29B6ECD5-A3F4-6613-2532-F851BF70739F}, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\{40F476A8-645C-1A10-09C4-3FF82DACC360}, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.VBates, C:\Users\Ingrid Drawe\AppData\LocalLow\Company\Product\1.0, In Quarantäne, [155], [247040],1.0.735
PUP.Optional.VBates, C:\USERS\INGRID DRAWE\APPDATA\LOCALLOW\COMPANY\PRODUCT, In Quarantäne, [155], [247040],1.0.735
Datei: 49
PUP.Optional.WinYahoo.Generic, C:\PROGRAMDATA\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\RASE, Keine Aktion durch Benutzer, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\aowLC, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\fami.txt, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\hdat1, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\hdat2, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\qTqTq, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\senati, In Quarantäne, [2049], [343986],1.0.735
Trojan.Downloader, C:\USERS\INGRID DRAWE\APPDATA\ROAMING\DESKTOPICONAMAZON\DESKTOPICON-AMAZON.EXE, In Quarantäne, [24], [358361],1.0.735
PUP.Optional.FusionCore, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\IS-I8M14.TMP\FUSION.DLL, In Quarantäne, [1468], [344794],1.0.735
PUP.Optional.FusionCore, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\IS-POG5S.TMP\FUSION.DLL, In Quarantäne, [1468], [344794],1.0.735
PUP.Optional.BundleInstaller, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\BINSIS142.XML, In Quarantäne, [38], [260807],1.0.735
PUP.Optional.Amonetize, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\AFF.CONF, In Quarantäne, [13], [302527],1.0.735
PUP.Optional.BundleInstaller, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\BINSISCHECK654.XML, In Quarantäne, [38], [260808],1.0.735
PUP.Optional.FusionCore, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\IS-5GE2C.TMP\FUSION.DLL, In Quarantäne, [1468], [344794],1.0.735
PUP.Optional.FusionCore, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\IS-U9FRV.TMP\FUSION.DLL, In Quarantäne, [1468], [344794],1.0.735
PUP.Optional.FusionCore, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\IS-MVDKU.TMP\FUSION.DLL, In Quarantäne, [1468], [344794],1.0.735
PUP.Optional.Reimage, C:\WINDOWS\TEMP\REIMAGE.LOG, In Quarantäne, [1317], [334717],1.0.735
PUP.Optional.WinYahoo, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\{40F476A8-645C-1A10-09C4-3FF82DACC360}\NADO, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\chromium-min.jpg, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\control panel-min-min.JPG, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\down.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\ff menu.JPG, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\ff search engine-min.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\HowToRemove.html, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\hp-min ff.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\hp-min ie.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\search engine.gif, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\setup pages.gif, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\sp-min.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\start-min.jpg, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\up.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\bapi_chmm.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\bapi_ff.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\bapi_ie.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\diri, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\fafi.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\install.log, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\nano.cfg, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\reso, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\Sqlite3.dll, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\tili, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\uninst.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\uninstp.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WombatUpdater, C:\WINDOWS\APPPATCH\CUSTOM\{A53DD3E5-0283-4AB3-B77C-7BD1BC7550C6}.SDB, In Quarantäne, [8682], [245071],1.0.735
PUP.Optional.Linkey, C:\WINDOWS\SYSWOW64\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\INTERNET EXPLORER\QUICK LAUNCH\USER PINNED\TASKBAR\BROWSE AND SEARCH THE INTERNET.LNK, In Quarantäne, [8502], [190090],1.0.735
PUP.Optional.VBates, C:\USERS\INGRID DRAWE\APPDATA\LOCALLOW\COMPANY\PRODUCT\1.0\LOCALSTORAGEIE.TXT, In Quarantäne, [155], [247040],1.0.735
PUP.Optional.VBates, C:\Users\Ingrid Drawe\AppData\LocalLow\Company\Product\1.0\localStorageIE_backup.txt, In Quarantäne, [155], [247040],1.0.735
PUP.Optional.SlimCleanerPlus, C:\WINDOWS\TASKS\SlimCleaner Plus (Scheduled Scan - Ingrid Drawe).job, In Quarantäne, [1657], [331621],1.0.735
PUP.Optional.SlimCleanerPlus, C:\WINDOWS\SYSTEM32\TASKS\SlimCleaner Plus (Scheduled Scan - Ingrid Drawe), In Quarantäne, [1657], [334098],1.0.735
Physischer Sektor: 0
(keine bösartigen Elemente erkannt)
(end)Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Scan-Datum: 09.01.17
Scan-Zeit: 23:02
Protokolldatei: mbam.txt
Administrator: Ja
-Softwaredaten-
Version: 3.0.5.1299
Komponentenversion: 1.0.43
Version des Aktualisierungspakets: 1.0.735
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: TEST\Ingrid Drawe
-Scan-Übersicht-
Scan-Typ: Bedrohungs-Scan
Ergebnis: Abgeschlossen
Gescannte Objekte: 370042
Abgelaufene Zeit: 9 Min., 54 Sek.
-Scan-Optionen-
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
-Scan-Details-
Prozess: 0
(keine bösartigen Elemente erkannt)
Modul: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 43
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-1, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-10, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-11, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-2, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-3, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-4, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-5, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-5_user, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-6, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-7, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-1, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-10, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-11, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-2, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-3, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-4, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-5, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-5_user, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-6, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-7, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.SlimCleanerPlus, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SlimCleaner Plus (Scheduled Scan - Ingrid Drawe), Löschen bei Neustart, [1657], [334109],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{17AD97C9-786A-43D2-BCD2-8087DF7652DE}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{2DEAF12C-A589-4530-AABD-EB5FEAB986A9}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{2F0F181C-CD13-418C-BD3C-8980BCE04E85}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{35ED2BC5-2760-44FA-B813-717CE178C263}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4172CB8A-0A72-4741-9CD7-87D219F15FB0}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4B1706D7-37B0-48F8-9A70-32564CC073C2}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{522FAEEE-FFCB-48CC-8170-E4E2CE19E3A6}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{58D82EFC-E906-4252-BDE8-8D35B3B38854}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{5D32A591-3F75-4E59-9BB3-367F3AA38389}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{621E38DF-E594-49C7-9F19-704B5971B4E3}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{67502F01-43FB-485E-B40F-D5A8AFC9EB2D}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{6A6E608C-D0FB-4650-9F63-C24A01EF801D}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7BF8D7D3-5843-4811-8FB4-2905781E2896}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7E08D573-C697-40DB-B03D-CCDAED4EDA4F}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.SlimCleanerPlus, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7F2933C1-C023-4A33-A12E-396ED7435C0F}, Löschen bei Neustart, [1657], [334102],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{90C4B222-006F-4479-9488-BFA56D6329AC}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9550CA18-E22A-4C70-BD56-9F9CD790FD84}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9CDA3F5D-FD48-4369-8651-E84AC6137F31}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{A09777C0-A696-4941-B9D6-B4069BD98146}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F12FD086-857C-4962-B582-1BC0D2EE7002}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F8BBD295-3EDE-43E7-B905-50361A475BF0}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.WombatUpdater, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\Service7597.exe, Löschen bei Neustart, [8682], [245072],1.0.735
Registrierungswert: 22
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{17AD97C9-786A-43D2-BCD2-8087DF7652DE}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{2DEAF12C-A589-4530-AABD-EB5FEAB986A9}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{2F0F181C-CD13-418C-BD3C-8980BCE04E85}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{35ED2BC5-2760-44FA-B813-717CE178C263}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4172CB8A-0A72-4741-9CD7-87D219F15FB0}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4B1706D7-37B0-48F8-9A70-32564CC073C2}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{522FAEEE-FFCB-48CC-8170-E4E2CE19E3A6}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{58D82EFC-E906-4252-BDE8-8D35B3B38854}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{5D32A591-3F75-4E59-9BB3-367F3AA38389}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{621E38DF-E594-49C7-9F19-704B5971B4E3}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{67502F01-43FB-485E-B40F-D5A8AFC9EB2D}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{6A6E608C-D0FB-4650-9F63-C24A01EF801D}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7BF8D7D3-5843-4811-8FB4-2905781E2896}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7E08D573-C697-40DB-B03D-CCDAED4EDA4F}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.SlimCleanerPlus, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7F2933C1-C023-4A33-A12E-396ED7435C0F}|PATH, In Quarantäne, [1657], [334102],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{90C4B222-006F-4479-9488-BFA56D6329AC}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9550CA18-E22A-4C70-BD56-9F9CD790FD84}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9CDA3F5D-FD48-4369-8651-E84AC6137F31}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{A09777C0-A696-4941-B9D6-B4069BD98146}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F12FD086-857C-4962-B582-1BC0D2EE7002}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F8BBD295-3EDE-43E7-B905-50361A475BF0}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.WombatUpdater, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\Service7597.exe|{A53DD3E5-0283-4AB3-B77C-7BD1BC7550C6}.SDB, In Quarantäne, [8682], [245072],1.0.735
Daten-Stream: 0
(keine bösartigen Elemente erkannt)
Ordner: 5
PUP.Optional.WinYahoo.Generic, C:\PROGRAMDATA\{29B6ECD5-A3F4-6613-2532-F851BF70739F}, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\{40F476A8-645C-1A10-09C4-3FF82DACC360}, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.VBates, C:\Users\Ingrid Drawe\AppData\LocalLow\Company\Product\1.0, In Quarantäne, [155], [247040],1.0.735
PUP.Optional.VBates, C:\USERS\INGRID DRAWE\APPDATA\LOCALLOW\COMPANY\PRODUCT, In Quarantäne, [155], [247040],1.0.735
Datei: 49
PUP.Optional.WinYahoo.Generic, C:\PROGRAMDATA\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\RASE, Keine Aktion durch Benutzer, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\aowLC, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\fami.txt, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\hdat1, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\hdat2, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\qTqTq, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\senati, In Quarantäne, [2049], [343986],1.0.735
Trojan.Downloader, C:\USERS\INGRID DRAWE\APPDATA\ROAMING\DESKTOPICONAMAZON\DESKTOPICON-AMAZON.EXE, In Quarantäne, [24], [358361],1.0.735
PUP.Optional.FusionCore, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\IS-I8M14.TMP\FUSION.DLL, In Quarantäne, [1468], [344794],1.0.735
PUP.Optional.FusionCore, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\IS-POG5S.TMP\FUSION.DLL, In Quarantäne, [1468], [344794],1.0.735
PUP.Optional.BundleInstaller, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\BINSIS142.XML, In Quarantäne, [38], [260807],1.0.735
PUP.Optional.Amonetize, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\AFF.CONF, In Quarantäne, [13], [302527],1.0.735
PUP.Optional.BundleInstaller, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\BINSISCHECK654.XML, In Quarantäne, [38], [260808],1.0.735
PUP.Optional.FusionCore, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\IS-5GE2C.TMP\FUSION.DLL, In Quarantäne, [1468], [344794],1.0.735
PUP.Optional.FusionCore, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\IS-U9FRV.TMP\FUSION.DLL, In Quarantäne, [1468], [344794],1.0.735
PUP.Optional.FusionCore, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\IS-MVDKU.TMP\FUSION.DLL, In Quarantäne, [1468], [344794],1.0.735
PUP.Optional.Reimage, C:\WINDOWS\TEMP\REIMAGE.LOG, In Quarantäne, [1317], [334717],1.0.735
PUP.Optional.WinYahoo, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\{40F476A8-645C-1A10-09C4-3FF82DACC360}\NADO, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\chromium-min.jpg, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\control panel-min-min.JPG, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\down.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\ff menu.JPG, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\ff search engine-min.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\HowToRemove.html, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\hp-min ff.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\hp-min ie.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\search engine.gif, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\setup pages.gif, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\sp-min.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\start-min.jpg, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\up.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\bapi_chmm.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\bapi_ff.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\bapi_ie.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\diri, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\fafi.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\install.log, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\nano.cfg, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\reso, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\Sqlite3.dll, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\tili, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\uninst.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\uninstp.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WombatUpdater, C:\WINDOWS\APPPATCH\CUSTOM\{A53DD3E5-0283-4AB3-B77C-7BD1BC7550C6}.SDB, In Quarantäne, [8682], [245071],1.0.735
PUP.Optional.Linkey, C:\WINDOWS\SYSWOW64\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\INTERNET EXPLORER\QUICK LAUNCH\USER PINNED\TASKBAR\BROWSE AND SEARCH THE INTERNET.LNK, In Quarantäne, [8502], [190090],1.0.735
PUP.Optional.VBates, C:\USERS\INGRID DRAWE\APPDATA\LOCALLOW\COMPANY\PRODUCT\1.0\LOCALSTORAGEIE.TXT, In Quarantäne, [155], [247040],1.0.735
PUP.Optional.VBates, C:\Users\Ingrid Drawe\AppData\LocalLow\Company\Product\1.0\localStorageIE_backup.txt, In Quarantäne, [155], [247040],1.0.735
PUP.Optional.SlimCleanerPlus, C:\WINDOWS\TASKS\SlimCleaner Plus (Scheduled Scan - Ingrid Drawe).job, In Quarantäne, [1657], [331621],1.0.735
PUP.Optional.SlimCleanerPlus, C:\WINDOWS\SYSTEM32\TASKS\SlimCleaner Plus (Scheduled Scan - Ingrid Drawe), In Quarantäne, [1657], [334098],1.0.735
Physischer Sektor: 0
(keine bösartigen Elemente erkannt)
(end)Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Scan-Datum: 09.01.17
Scan-Zeit: 23:02
Protokolldatei: mbam.txt
Administrator: Ja
-Softwaredaten-
Version: 3.0.5.1299
Komponentenversion: 1.0.43
Version des Aktualisierungspakets: 1.0.735
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: TEST\Ingrid Drawe
-Scan-Übersicht-
Scan-Typ: Bedrohungs-Scan
Ergebnis: Abgeschlossen
Gescannte Objekte: 370042
Abgelaufene Zeit: 9 Min., 54 Sek.
-Scan-Optionen-
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
-Scan-Details-
Prozess: 0
(keine bösartigen Elemente erkannt)
Modul: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 43
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-1, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-10, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-11, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-2, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-3, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-4, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-5, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-5_user, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-6, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\097390ed-3176-4a6a-bb02-ac2f840bb564-7, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-1, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-10, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-11, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-2, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-3, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-4, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-5, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-5_user, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-6, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\516f42de-79de-47eb-b3e8-38f8dccf70a4-7, Löschen bei Neustart, [306], [237511],1.0.735
PUP.Optional.SlimCleanerPlus, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SlimCleaner Plus (Scheduled Scan - Ingrid Drawe), Löschen bei Neustart, [1657], [334109],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{17AD97C9-786A-43D2-BCD2-8087DF7652DE}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{2DEAF12C-A589-4530-AABD-EB5FEAB986A9}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{2F0F181C-CD13-418C-BD3C-8980BCE04E85}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{35ED2BC5-2760-44FA-B813-717CE178C263}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4172CB8A-0A72-4741-9CD7-87D219F15FB0}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4B1706D7-37B0-48F8-9A70-32564CC073C2}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{522FAEEE-FFCB-48CC-8170-E4E2CE19E3A6}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{58D82EFC-E906-4252-BDE8-8D35B3B38854}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{5D32A591-3F75-4E59-9BB3-367F3AA38389}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{621E38DF-E594-49C7-9F19-704B5971B4E3}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{67502F01-43FB-485E-B40F-D5A8AFC9EB2D}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{6A6E608C-D0FB-4650-9F63-C24A01EF801D}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7BF8D7D3-5843-4811-8FB4-2905781E2896}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7E08D573-C697-40DB-B03D-CCDAED4EDA4F}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.SlimCleanerPlus, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7F2933C1-C023-4A33-A12E-396ED7435C0F}, Löschen bei Neustart, [1657], [334102],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{90C4B222-006F-4479-9488-BFA56D6329AC}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9550CA18-E22A-4C70-BD56-9F9CD790FD84}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9CDA3F5D-FD48-4369-8651-E84AC6137F31}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{A09777C0-A696-4941-B9D6-B4069BD98146}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F12FD086-857C-4962-B582-1BC0D2EE7002}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F8BBD295-3EDE-43E7-B905-50361A475BF0}, Löschen bei Neustart, [306], [259199],1.0.735
PUP.Optional.WombatUpdater, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\Service7597.exe, Löschen bei Neustart, [8682], [245072],1.0.735
Registrierungswert: 22
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{17AD97C9-786A-43D2-BCD2-8087DF7652DE}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{2DEAF12C-A589-4530-AABD-EB5FEAB986A9}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{2F0F181C-CD13-418C-BD3C-8980BCE04E85}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{35ED2BC5-2760-44FA-B813-717CE178C263}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4172CB8A-0A72-4741-9CD7-87D219F15FB0}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4B1706D7-37B0-48F8-9A70-32564CC073C2}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{522FAEEE-FFCB-48CC-8170-E4E2CE19E3A6}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{58D82EFC-E906-4252-BDE8-8D35B3B38854}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{5D32A591-3F75-4E59-9BB3-367F3AA38389}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{621E38DF-E594-49C7-9F19-704B5971B4E3}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{67502F01-43FB-485E-B40F-D5A8AFC9EB2D}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{6A6E608C-D0FB-4650-9F63-C24A01EF801D}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7BF8D7D3-5843-4811-8FB4-2905781E2896}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7E08D573-C697-40DB-B03D-CCDAED4EDA4F}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.SlimCleanerPlus, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7F2933C1-C023-4A33-A12E-396ED7435C0F}|PATH, In Quarantäne, [1657], [334102],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{90C4B222-006F-4479-9488-BFA56D6329AC}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9550CA18-E22A-4C70-BD56-9F9CD790FD84}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{9CDA3F5D-FD48-4369-8651-E84AC6137F31}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{A09777C0-A696-4941-B9D6-B4069BD98146}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F12FD086-857C-4962-B582-1BC0D2EE7002}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F8BBD295-3EDE-43E7-B905-50361A475BF0}|PATH, In Quarantäne, [306], [259199],1.0.735
PUP.Optional.WombatUpdater, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\Service7597.exe|{A53DD3E5-0283-4AB3-B77C-7BD1BC7550C6}.SDB, In Quarantäne, [8682], [245072],1.0.735
Daten-Stream: 0
(keine bösartigen Elemente erkannt)
Ordner: 5
PUP.Optional.WinYahoo.Generic, C:\PROGRAMDATA\{29B6ECD5-A3F4-6613-2532-F851BF70739F}, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\{40F476A8-645C-1A10-09C4-3FF82DACC360}, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.VBates, C:\Users\Ingrid Drawe\AppData\LocalLow\Company\Product\1.0, In Quarantäne, [155], [247040],1.0.735
PUP.Optional.VBates, C:\USERS\INGRID DRAWE\APPDATA\LOCALLOW\COMPANY\PRODUCT, In Quarantäne, [155], [247040],1.0.735
Datei: 49
PUP.Optional.WinYahoo.Generic, C:\PROGRAMDATA\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\RASE, Keine Aktion durch Benutzer, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\aowLC, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\fami.txt, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\hdat1, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\hdat2, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\qTqTq, In Quarantäne, [2049], [343986],1.0.735
PUP.Optional.WinYahoo.Generic, C:\ProgramData\{29B6ECD5-A3F4-6613-2532-F851BF70739F}\senati, In Quarantäne, [2049], [343986],1.0.735
Trojan.Downloader, C:\USERS\INGRID DRAWE\APPDATA\ROAMING\DESKTOPICONAMAZON\DESKTOPICON-AMAZON.EXE, In Quarantäne, [24], [358361],1.0.735
PUP.Optional.FusionCore, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\IS-I8M14.TMP\FUSION.DLL, In Quarantäne, [1468], [344794],1.0.735
PUP.Optional.FusionCore, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\IS-POG5S.TMP\FUSION.DLL, In Quarantäne, [1468], [344794],1.0.735
PUP.Optional.BundleInstaller, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\BINSIS142.XML, In Quarantäne, [38], [260807],1.0.735
PUP.Optional.Amonetize, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\AFF.CONF, In Quarantäne, [13], [302527],1.0.735
PUP.Optional.BundleInstaller, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\BINSISCHECK654.XML, In Quarantäne, [38], [260808],1.0.735
PUP.Optional.FusionCore, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\IS-5GE2C.TMP\FUSION.DLL, In Quarantäne, [1468], [344794],1.0.735
PUP.Optional.FusionCore, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\IS-U9FRV.TMP\FUSION.DLL, In Quarantäne, [1468], [344794],1.0.735
PUP.Optional.FusionCore, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\TEMP\IS-MVDKU.TMP\FUSION.DLL, In Quarantäne, [1468], [344794],1.0.735
PUP.Optional.Reimage, C:\WINDOWS\TEMP\REIMAGE.LOG, In Quarantäne, [1317], [334717],1.0.735
PUP.Optional.WinYahoo, C:\USERS\INGRID DRAWE\APPDATA\LOCAL\{40F476A8-645C-1A10-09C4-3FF82DACC360}\NADO, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\chromium-min.jpg, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\control panel-min-min.JPG, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\down.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\ff menu.JPG, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\ff search engine-min.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\HowToRemove.html, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\hp-min ff.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\hp-min ie.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\search engine.gif, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\setup pages.gif, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\sp-min.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\start-min.jpg, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\HowToRemove\up.png, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\bapi_chmm.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\bapi_ff.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\bapi_ie.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\diri, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\fafi.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\install.log, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\nano.cfg, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\reso, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\Sqlite3.dll, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\tili, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\uninst.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WinYahoo, C:\Users\Ingrid Drawe\AppData\Local\{40F476A8-645C-1A10-09C4-3FF82DACC360}\uninstp.dat, In Quarantäne, [116], [246924],1.0.735
PUP.Optional.WombatUpdater, C:\WINDOWS\APPPATCH\CUSTOM\{A53DD3E5-0283-4AB3-B77C-7BD1BC7550C6}.SDB, In Quarantäne, [8682], [245071],1.0.735
PUP.Optional.Linkey, C:\WINDOWS\SYSWOW64\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\INTERNET EXPLORER\QUICK LAUNCH\USER PINNED\TASKBAR\BROWSE AND SEARCH THE INTERNET.LNK, In Quarantäne, [8502], [190090],1.0.735
PUP.Optional.VBates, C:\USERS\INGRID DRAWE\APPDATA\LOCALLOW\COMPANY\PRODUCT\1.0\LOCALSTORAGEIE.TXT, In Quarantäne, [155], [247040],1.0.735
PUP.Optional.VBates, C:\Users\Ingrid Drawe\AppData\LocalLow\Company\Product\1.0\localStorageIE_backup.txt, In Quarantäne, [155], [247040],1.0.735
PUP.Optional.SlimCleanerPlus, C:\WINDOWS\TASKS\SlimCleaner Plus (Scheduled Scan - Ingrid Drawe).job, In Quarantäne, [1657], [331621],1.0.735
PUP.Optional.SlimCleanerPlus, C:\WINDOWS\SYSTEM32\TASKS\SlimCleaner Plus (Scheduled Scan - Ingrid Drawe), In Quarantäne, [1657], [334098],1.0.735
Physischer Sektor: 0
(keine bösartigen Elemente erkannt)
(end)
Junkware Removal Toll Kann ich nicht runterladen
auch nicht wenn ich den Antivir ausgeschaltet habe.
Danke für Ihre Geduld |