Roboterfreun | 21.06.2017 09:45 | diese Files hatte ich in Quarantäne Verschoben, aber das Problem blieb Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Scan-Datum: 20.06.17
Scan-Zeit: 22:59
Protokolldatei:
Administrator: Nein
-Softwaredaten-
Version: 3.1.2.1733
Komponentenversion: 1.0.139
Version des Aktualisierungspakets: 1.0.2194
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: BJOERN-PC\Bjoern
-Scan-Übersicht-
Scan-Typ: Bedrohungs-Scan
Ergebnis: Abgeschlossen
Gescannte Objekte: 446788
Erkannte Bedrohungen: 107
In die Quarantäne verschobene Bedrohungen: 107
Abgelaufene Zeit: 3 Min., 59 Sek.
-Scan-Optionen-
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
-Scan-Details-
Prozess: 0
(keine bösartigen Elemente erkannt)
Modul: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 34
PUP.Optional.AmazonBrowserSettings, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Amazon Assistant, In Quarantäne, [14], [312594],1.0.2194
PUP.Optional.InstallCore, HKU\S-1-5-21-564169924-83152284-3685802786-500\SOFTWARE\csastats, In Quarantäne, [3], [260986],1.0.2194
PUP.Optional.Distromatic, HKU\S-1-5-21-564169924-83152284-3685802786-500\SOFTWARE\Distromatic, In Quarantäne, [2666], [359638],1.0.2194
PUP.Optional.AmazonBrowserSettings, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\DistromaticSearchProtect-hourly, In Quarantäne, [14], [312599],1.0.2194
PUP.Optional.AmazonBrowserSettings, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\DistromaticSearchProtect-logon, In Quarantäne, [14], [312599],1.0.2194
PUP.Optional.AmazonBrowserSettings, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\DistromaticUpdater-logon, In Quarantäne, [14], [312599],1.0.2194
PUP.Optional.AmazonBrowserSettings, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\DistromaticUpdater-periodic, In Quarantäne, [14], [312599],1.0.2194
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Sparta D1, In Quarantäne, [60], [185027],1.0.2194
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Sparta N, In Quarantäne, [60], [261737],1.0.2194
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Sparta W1, In Quarantäne, [60], [185027],1.0.2194
PUP.Optional.StartPage, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Sparta W2, In Quarantäne, [60], [185027],1.0.2194
PUP.Optional.PSScriptLoad.EncJob, HKU\S-1-5-21-564169924-83152284-3685802786-500\CONSOLE\%SYSTEMROOT%_SYSTEM32_SVCHOST.EXE, In Quarantäne, [9416], [408200],1.0.2194
PUP.Optional.Amazon1Button, HKCR\\Amazon1ButtonBrowserHelper.Amazon1ButtonBHO, Löschen bei Neustart, [1485], [386607],1.0.2194
PUP.Optional.Amazon1Button, HKCR\\Amazon1ButtonRuntime.Amazon1ButtonRuntime, Löschen bei Neustart, [1485], [386607],1.0.2194
PUP.Optional.Amazon1Button, HKCR\\Amazon1ButtonRuntime.AmazonRuntimeServer, Löschen bei Neustart, [1485], [386607],1.0.2194
PUP.Optional.WinYahoo, HKU\S-1-5-21-564169924-83152284-3685802786-500\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\BFREPORT, In Quarantäne, [91], [262014],1.0.2194
PUP.Optional.SystemHealer, HKU\S-1-5-21-564169924-83152284-3685802786-500\SOFTWARE\SYSTEM HEALER, In Quarantäne, [997], [252826],1.0.2194
PUP.Optional.ProductSetup, HKU\S-1-5-21-564169924-83152284-3685802786-500\SOFTWARE\PRODUCTSETUP, In Quarantäne, [14997], [242047],1.0.2194
PUP.Optional.WinYahoo, HKU\S-1-5-21-564169924-83152284-3685802786-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, In Quarantäne, [91], [182758],1.0.2194
PUP.Optional.WinYahoo, HKU\S-1-5-21-564169924-83152284-3685802786-500\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, In Quarantäne, [91], [182758],1.0.2194
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, In Quarantäne, [91], [182758],1.0.2194
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}, In Quarantäne, [91], [182758],1.0.2194
PUP.Optional.WinYahoo, HKU\S-1-5-21-564169924-83152284-3685802786-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2F23AB71-4AC6-41F2-A955-EA576E553146}, In Quarantäne, [91], [182758],1.0.2194
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2F23AB71-4AC6-41F2-A955-EA576E553146}, In Quarantäne, [91], [182758],1.0.2194
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2f23ab71-4ac6-41f2-a955-ea576e553146}, In Quarantäne, [91], [182758],1.0.2194
PUP.Optional.AmazonBrowserSettings, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{39549E87-D669-4FB1-AF89-EBAC534C99CB}, In Quarantäne, [14], [312598],1.0.2194
PUP.Optional.AmazonBrowserSettings, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4F8CF194-161F-4412-9596-C3C977CFC06B}, In Quarantäne, [14], [312598],1.0.2194
PUP.Optional.AmazonBrowserSettings, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7BCF20EE-6BB1-47BA-B6D8-D4DB2B94E630}, In Quarantäne, [14], [312598],1.0.2194
PUP.Optional.AmazonBrowserSettings, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{DAE3748F-5030-4577-9586-772A5E969BD8}, In Quarantäne, [14], [312598],1.0.2194
PUP.Optional.WinZipMalwareProtector, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WinZip Malware Protector, In Quarantäne, [2339], [255428],1.0.2194
PUP.Optional.PSScriptLoad.EncJob, HKU\S-1-5-21-564169924-83152284-3685802786-500\CONSOLE\TASKENG.EXE, In Quarantäne, [9416], [408199],1.0.2194
PUP.Optional.SystemHealer, HKU\S-1-5-21-564169924-83152284-3685802786-1000\SOFTWARE\SYSTEM HEALER, In Quarantäne, [997], [252826],1.0.2194
Adware.DNSUnlocker, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\11598763487076930564, In Quarantäne, [407], [405303],1.0.2194
PUP.Optional.ProductSetup, HKU\S-1-5-21-564169924-83152284-3685802786-1000\SOFTWARE\PRODUCTSETUP, In Quarantäne, [14997], [242047],1.0.2194
Registrierungswert: 21
PUP.Optional.PSScriptLoad.EncJob, HKU\S-1-5-21-564169924-83152284-3685802786-500\CONSOLE\%SYSTEMROOT%_SYSTEM32_SVCHOST.EXE|WINDOWPOSITION, In Quarantäne, [9416], [408200],1.0.2194
PUP.Optional.PSScriptLoad.EncJob, HKU\S-1-5-21-564169924-83152284-3685802786-500\CONSOLE\%SYSTEMROOT%_SYSTEM32_WINDOWSPOWERSHELL_V1.0_POWERSHELL.EXE|WINDOWPOSITION, In Quarantäne, [9416], [408201],1.0.2194
PUP.Optional.WinYahoo, HKU\S-1-5-21-564169924-83152284-3685802786-500\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\BFREPORT|FILENAME, In Quarantäne, [91], [262014],1.0.2194
PUP.Optional.SystemHealer, HKU\S-1-5-21-564169924-83152284-3685802786-500\SOFTWARE\SYSTEM HEALER|HOMEPAGE, In Quarantäne, [997], [252826],1.0.2194
PUP.Optional.SystemHealer, HKU\S-1-5-21-564169924-83152284-3685802786-500\SOFTWARE\SYSTEM HEALER|CARTURL, In Quarantäne, [997], [261796],1.0.2194
PUP.Optional.SystemHealer, HKU\S-1-5-21-564169924-83152284-3685802786-500\SOFTWARE\SYSTEM HEALER|SUPPORTPAGE, In Quarantäne, [997], [252826],1.0.2194
PUP.Optional.ProductSetup, HKU\S-1-5-21-564169924-83152284-3685802786-500\SOFTWARE\PRODUCTSETUP|TB, In Quarantäne, [14997], [242047],1.0.2194
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, In Quarantäne, [91], [182758],1.0.2194
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|TOPRESULTURLFALLBACK, In Quarantäne, [91], [182758],1.0.2194
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2f23ab71-4ac6-41f2-a955-ea576e553146}|URL, In Quarantäne, [91], [182758],1.0.2194
PUP.Optional.AmazonBrowserSettings, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{39549E87-D669-4FB1-AF89-EBAC534C99CB}|PATH, In Quarantäne, [14], [312598],1.0.2194
PUP.Optional.AmazonBrowserSettings, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{4F8CF194-161F-4412-9596-C3C977CFC06B}|PATH, In Quarantäne, [14], [312598],1.0.2194
PUP.Optional.AmazonBrowserSettings, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7BCF20EE-6BB1-47BA-B6D8-D4DB2B94E630}|PATH, In Quarantäne, [14], [312598],1.0.2194
PUP.Optional.AmazonBrowserSettings, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{DAE3748F-5030-4577-9586-772A5E969BD8}|PATH, In Quarantäne, [14], [312598],1.0.2194
PUP.Optional.PSScriptLoad.EncJob, HKU\S-1-5-21-564169924-83152284-3685802786-500\CONSOLE\TASKENG.EXE|WINDOWPOSITION, In Quarantäne, [9416], [408199],1.0.2194
PUP.Optional.WinYahoo, HKU\S-1-5-21-564169924-83152284-3685802786-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|TOPRESULTURLFALLBACK, In Quarantäne, [91], [182757],1.0.2194
PUP.Optional.SystemHealer, HKU\S-1-5-21-564169924-83152284-3685802786-1000\SOFTWARE\SYSTEM HEALER|HOMEPAGE, In Quarantäne, [997], [252826],1.0.2194
PUP.Optional.SystemHealer, HKU\S-1-5-21-564169924-83152284-3685802786-1000\SOFTWARE\SYSTEM HEALER|CARTURL, In Quarantäne, [997], [261796],1.0.2194
PUP.Optional.SystemHealer, HKU\S-1-5-21-564169924-83152284-3685802786-1000\SOFTWARE\SYSTEM HEALER|SUPPORTPAGE, In Quarantäne, [997], [252826],1.0.2194
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, In Quarantäne, [91], [182758],1.0.2194
PUP.Optional.ProductSetup, HKU\S-1-5-21-564169924-83152284-3685802786-1000\SOFTWARE\PRODUCTSETUP|TB, In Quarantäne, [14997], [242047],1.0.2194
Registrierungsdaten: 2
PUP.Optional.WinYahoo, HKU\S-1-5-18\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Ersetzt, [91], [293449],1.0.2194
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Ersetzt, [91], [293451],1.0.2194
Daten-Stream: 0
(keine bösartigen Elemente erkannt)
Ordner: 7
PUP.Optional.BitsInstall.BITSRST, C:\PROGRAMDATA\e2fbb66d-2403-0, In Quarantäne, [9252], [407181],1.0.2194
PUP.Optional.BitsInstall.BITSRST, C:\PROGRAMDATA\e2fbb66d-4f91-1, In Quarantäne, [9252], [407181],1.0.2194
PUP.Optional.AmazonBrowserSettings, C:\PROGRAM FILES (X86)\Amazon Browser Settings, In Quarantäne, [14], [312594],1.0.2194
PUP.Optional.AmazonBrowserSettings, C:\USERS\ADMINISTRATOR\APPDATA\LOCAL\Amazon Browser Settings, In Quarantäne, [14], [312595],1.0.2194
Adware.ChinAd, C:\USERS\BJOERN\APPDATA\LOCAL\TEMP\DMR, In Quarantäne, [1157], [375557],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\HowToRemove, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\USERS\ADMINISTRATOR\APPDATA\LOCAL\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}, In Quarantäne, [91], [302717],1.0.2194
Datei: 43
PUP.Optional.BitsInstall.BITSRST, C:\PROGRAMDATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR0.DAT, In Quarantäne, [9252], [-1],0.0.0
PUP.Optional.BitsInstall.BITSRST, C:\PROGRAMDATA\MICROSOFT\NETWORK\DOWNLOADER\QMGR1.DAT, In Quarantäne, [9252], [-1],0.0.0
PUP.Optional.AmazonBrowserSettings, C:\Program Files (x86)\Amazon Browser Settings\AmznSearchProtect.exe, In Quarantäne, [14], [312594],1.0.2194
PUP.Optional.AmazonBrowserSettings, C:\Program Files (x86)\Amazon Browser Settings\installer.json, In Quarantäne, [14], [312594],1.0.2194
PUP.Optional.AmazonBrowserSettings, C:\Program Files (x86)\Amazon Browser Settings\uninstall.ico, In Quarantäne, [14], [312594],1.0.2194
PUP.Optional.AmazonBrowserSettings, C:\Program Files (x86)\Amazon Browser Settings\uninstall.json, In Quarantäne, [14], [312594],1.0.2194
PUP.Optional.AmazonBrowserSettings, C:\Program Files (x86)\Amazon Browser Settings\uninstaller.exe, In Quarantäne, [14], [312594],1.0.2194
PUP.Optional.AmazonBrowserSettings, C:\Program Files (x86)\Amazon Browser Settings\updater.exe, In Quarantäne, [14], [312594],1.0.2194
PUP.Optional.AmazonBrowserSettings, C:\Users\Administrator\AppData\Local\Amazon Browser Settings\protect.json, In Quarantäne, [14], [312595],1.0.2194
PUP.Optional.WinYahoo, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\HOWTOREMOVE.HTML.LNK, In Quarantäne, [91], [254335],1.0.2194
Adware.ChinAd, C:\USERS\BJOERN\APPDATA\LOCAL\TEMP\DMR\YJILKYFDRYSQYQUM.DAT, In Quarantäne, [1157], [375557],1.0.2194
Adware.ChinAd, C:\Users\Bjoern\AppData\Local\Temp\DMR\digwzsgtgakripnt.dat, In Quarantäne, [1157], [375557],1.0.2194
Adware.ChinAd, C:\Users\Bjoern\AppData\Local\Temp\DMR\dmr_72.exe, In Quarantäne, [1157], [375557],1.0.2194
Adware.ChinAd, C:\Users\Bjoern\AppData\Local\Temp\DMR\dmr_79.exe, In Quarantäne, [1157], [375557],1.0.2194
Adware.ChinAd, C:\Users\Bjoern\AppData\Local\Temp\DMR\vdwcmenrvdqrirgq.dat, In Quarantäne, [1157], [375557],1.0.2194
PUP.Optional.InstallCore, C:\USERS\BJOERN\DOWNLOADS\JAVASETUP(1).EXE, In Quarantäne, [3], [122268],1.0.2194
PUP.Optional.InstallCore, C:\USERS\BJOERN\DOWNLOADS\JAVASETUP.EXE, In Quarantäne, [3], [122268],1.0.2194
PUP.Optional.WinYahoo, C:\USERS\ADMINISTRATOR\APPDATA\LOCAL\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\HOWTOREMOVE\HOWTOREMOVE.HTML, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\HowToRemove\chromium-min.jpg, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\HowToRemove\control panel-min-min.JPG, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\HowToRemove\down.png, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\HowToRemove\ff menu.JPG, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\HowToRemove\ff search engine-min.png, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\HowToRemove\hp-min ff.png, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\HowToRemove\hp-min ie.png, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\HowToRemove\search engine.gif, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\HowToRemove\setup pages.gif, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\HowToRemove\sp-min.png, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\HowToRemove\start-min.jpg, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\HowToRemove\up.png, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\bapi.dat, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\dife, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\fore, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\info.dat, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\install.log, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\Sqlite3.dll, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.WinYahoo, C:\Users\Administrator\AppData\Local\{8932BF6E-AD9A-D3D6-C002-F63EE46A0AA6}\uninst.dat, In Quarantäne, [91], [302717],1.0.2194
PUP.Optional.InstallCore, C:\USERS\BJOERN\DOWNLOADS\TEAMVIEWER.EXE, In Quarantäne, [3], [111484],1.0.2194
PUP.Optional.WinYahoo, C:\USERS\BJOERN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S3DKB1ZC.DEFAULT\SEARCHPLUGINS\SEARCH PROVIDED BY YAHOO.XML, In Quarantäne, [91], [302449],1.0.2194
PUP.Optional.AmazonBrowserSettings, C:\WINDOWS\SYSTEM32\TASKS\DistromaticSearchProtect-hourly, In Quarantäne, [14], [312600],1.0.2194
PUP.Optional.AmazonBrowserSettings, C:\WINDOWS\SYSTEM32\TASKS\DistromaticSearchProtect-logon, In Quarantäne, [14], [312600],1.0.2194
PUP.Optional.AmazonBrowserSettings, C:\WINDOWS\SYSTEM32\TASKS\DistromaticUpdater-logon, In Quarantäne, [14], [312600],1.0.2194
PUP.Optional.AmazonBrowserSettings, C:\WINDOWS\SYSTEM32\TASKS\DistromaticUpdater-periodic, In Quarantäne, [14], [312600],1.0.2194
Physischer Sektor: 0
(keine bösartigen Elemente erkannt)
(end) Zitat:
Außerdem fehlt das andere FRST-Logs.
| welche meinst du damit genau? FRST als Admin laufen lassen? |