Hi,
vielen Dank für die schnell Antwort. Malewarebytes hat was gefunden, das hab ich heute morgen in Quarantäne gesteckt, hat aber nicht geholfen. Dann hat mir ne Freundin geraten mich an euch zu wenden :)
Hier die Log von Malewarebytes Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 07.04.2014
Suchlauf-Zeit: 09:22:15
Logdatei: Malware-log.txt
Administrator: Ja
Version: 2.00.1.1004
Malware Datenbank: v2014.04.07.05
Rootkit Datenbank: v2014.03.27.01
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Chameleon: Deaktiviert
Betriebssystem: Windows 8
CPU: x64
Dateisystem: NTFS
Benutzer: Coco
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 273051
Verstrichene Zeit: 10 Min, 53 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Shuriken: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 1
PUP.Optional.IePluginService.A, C:\ProgramData\IePluginService\PluginService.exe, 1476, Löschen bei Neustart, [1f6257d07209b086c141d27de819fb05]
Module: 2
PUP.Optional.CrossRider.M, C:\Program Files (x86)\HQVid8.1b\HQVid8.1b-bho.dll, Löschen bei Neustart, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, C:\Program Files (x86)\HQVid8.1b\HQVid8.1b-bho.dll, Löschen bei Neustart, [93eef136c2b961d5cb4c36e38a7abd43],
Registrierungsschlüssel: 40
PUP.Optional.IePluginService.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IePluginService, In Quarantäne, [1f6257d07209b086c141d27de819fb05],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [d1b09394097221150779c04dc33f758b],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, In Quarantäne, [d1b09394097221150779c04dc33f758b],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [d1b09394097221150779c04dc33f758b],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [d1b09394097221150779c04dc33f758b],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, In Quarantäne, [d1b09394097221150779c04dc33f758b],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [d1b09394097221150779c04dc33f758b],
PUP.Optional.SupTab.A, HKU\S-1-5-21-4172602817-1105754241-2977795870-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Löschen bei Neustart, [d1b09394097221150779c04dc33f758b],
PUP.Optional.SupTab.A, HKU\S-1-5-21-4172602817-1105754241-2977795870-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, Löschen bei Neustart, [d1b09394097221150779c04dc33f758b],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [d1b09394097221150779c04dc33f758b],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\CLASSES\CrossriderApp0053172.BHO, In Quarantäne, [6021d84f4d2e42f42623e89ede253dc3],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\CLASSES\CrossriderApp0053172.BHO.1, In Quarantäne, [067b66c163180a2c07422f57ff04c33d],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\CLASSES\CrossriderApp0053172.Sandbox, In Quarantäne, [4f322ff880fba3936cdd6224cf34916f],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\CLASSES\CrossriderApp0053172.Sandbox.1, In Quarantäne, [b4cd1116e29991a5f356711553b0ea16],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\27058, In Quarantäne, [265bdb4cd7a4ee48d953acb6ce340ef2],
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\webssearchesSoftware, In Quarantäne, [a4ddb37475065bdb010c89d9cd35a65a],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CrossriderApp0053172.BHO, In Quarantäne, [463bcd5ac2b9b6800b3e196d6d9606fa],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CrossriderApp0053172.BHO.1, In Quarantäne, [6819c760accf89ad50f91b6b52b1e41c],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CrossriderApp0053172.Sandbox, In Quarantäne, [b9c8c463f487d95d80c9c6c0e221dd23],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CrossriderApp0053172.Sandbox.1, In Quarantäne, [621fb77016650d292e1b0e78f310fe02],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\27058, In Quarantäne, [e39e60c7b1ca999dca62da88f40e847c],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-4172602817-1105754241-2977795870-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, Löschen bei Neustart, [b8c9e1460378f73f946468317d86b14f],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-4172602817-1105754241-2977795870-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\27058, Löschen bei Neustart, [3d44f82f89f286b0be6fd68c31d1b54b],
PUP.Optional.Qone8, HKU\S-1-5-21-4172602817-1105754241-2977795870-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, Löschen bei Neustart, [a5dccc5b582322143bf3038e689b31cf],
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\webssearches uninstaller, In Quarantäne, [69182bfc1566b5812403b3a94cb6e31d],
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{11111111-1111-1111-1111-110511311172}, In Quarantäne, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\CLASSES\CLSID\{11111111-1111-1111-1111-110511311172}, In Quarantäne, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\CLASSES\CLSID\{22222222-2222-2222-2222-220522312272}, In Quarantäne, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{11111111-1111-1111-1111-110511311172}, In Quarantäne, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\CLASSES\TYPELIB\{44444444-4444-4444-4444-440544314472}, In Quarantäne, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\CLASSES\INTERFACE\{55555555-5555-5555-5555-550555315572}, In Quarantäne, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\CLASSES\INTERFACE\{66666666-6666-6666-6666-660566316672}, In Quarantäne, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{55555555-5555-5555-5555-550555315572}, In Quarantäne, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{66666666-6666-6666-6666-660566316672}, In Quarantäne, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{44444444-4444-4444-4444-440544314472}, In Quarantäne, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{11111111-1111-1111-1111-110511311172}, In Quarantäne, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, HKU\S-1-5-21-4172602817-1105754241-2977795870-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{11111111-1111-1111-1111-110511311172}, Löschen bei Neustart, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, HKU\S-1-5-21-4172602817-1105754241-2977795870-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{11111111-1111-1111-1111-110511311172}, Löschen bei Neustart, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{22222222-2222-2222-2222-220522312272}, In Quarantäne, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, HKLM\SOFTWARE\CLASSES\CLSID\{11111111-1111-1111-1111-110511311172}\INPROCSERVER32, In Quarantäne, [93eef136c2b961d5cb4c36e38a7abd43],
Registrierungswerte: 0
(No malicious items detected)
Registrierungsdaten: 9
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files\Internet Explorer\iexplore.exe hxxp://istart.webssearches.com/?type=sc&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95, Gut: (iexplore.exe), Schlecht: (C:\Program Files\Internet Explorer\iexplore.exe hxxp://istart.webssearches.com/?type=sc&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95),Ersetzt,[6819f334e09b79bdf85d6f9d976d9e62]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://istart.webssearches.com/web/?type=ds&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/web/?type=ds&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95&q={searchTerms}),Ersetzt,[1a6749ded5a60234de7a3cd0976d20e0]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://istart.webssearches.com/?type=hp&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95),Ersetzt,[0d74a582b8c3aa8ce96ebd4f1ee6718f]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://istart.webssearches.com/?type=hp&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95),Ersetzt,[8af72dfaa6d5979fba9f14f8c83cb44c]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files\Internet Explorer\iexplore.exe hxxp://istart.webssearches.com/?type=sc&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95, Gut: (iexplore.exe), Schlecht: (C:\Program Files\Internet Explorer\iexplore.exe hxxp://istart.webssearches.com/?type=sc&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95),Ersetzt,[d0b1e5424c2f65d1cc89ff0d28dcc33d]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://istart.webssearches.com/web/?type=ds&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/web/?type=ds&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95&q={searchTerms}),Ersetzt,[ef92ee396b10ea4c84d4c04cd034a15f]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://istart.webssearches.com/?type=hp&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95),Ersetzt,[5031ab7c314ac96d84d319f3f21219e7]
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://istart.webssearches.com/?type=hp&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95),Ersetzt,[8ef313140c6ffc3ae673f21a32d2827e]
PUP.Optional.WebsSearches.A, HKU\S-1-5-21-4172602817-1105754241-2977795870-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://istart.webssearches.com/?type=hp&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95),Löschen bei Neustart,[91f0e740ec8f6dc9db43f621a262c43c]
Ordner: 41
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\weather, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\en-US, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-419, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-ES, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-BE, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CA, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CH, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-FR, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-LU, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-CH, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-IT, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pl, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pt-BR, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru-MO, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\tr-TR, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\vi-VI, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-CN, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-TW, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.IePluginService.A, C:\ProgramData\IePluginService, Löschen bei Neustart, [fc85180f403b5bdb21cbb0a7cd35d729],
PUP.Optional.IePluginService.A, C:\ProgramData\IePluginService\update, In Quarantäne, [fc85180f403b5bdb21cbb0a7cd35d729],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\defaults, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\defaults\preferences, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\userCode, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\locale, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\locale\en-US, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\skin, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.WebsSearches.A, C:\Users\Coco\AppData\Roaming\webssearches, In Quarantäne, [69182bfc1566b5812403b3a94cb6e31d],
PUP.Optional.WebsSearches.A, C:\Users\Coco\AppData\Roaming\webssearches\images, In Quarantäne, [69182bfc1566b5812403b3a94cb6e31d],
Dateien: 180
PUP.Optional.IePluginService.A, C:\ProgramData\IePluginService\PluginService.exe, Löschen bei Neustart, [1f6257d07209b086c141d27de819fb05],
PUP.Optional.SupTab.A, C:\Users\Coco\AppData\Roaming\SupTab\SupTab.dll, In Quarantäne, [c0c12106adcefb3be06a9c99a7595da3],
PUP.Optional.Conduit.A, C:\Users\Coco\AppData\Local\Temp\40b83c05-4456-410f-94da-0b475f9ddbe1\spidentifierimpl.exe, In Quarantäne, [a2df58cfd0abf83e00ec7e98bc457e82],
PUP.Optional.SkyTech.A, C:\Users\Coco\AppData\Local\Temp\40b83c05-4456-410f-94da-0b475f9ddbe1\software\lly_webssearches.exe, In Quarantäne, [1a67de49453639fdffe3202e7190ea16],
PUP.Optional.SkyTech.A, C:\Users\Coco\AppData\Local\Temp\fullpackage_temp1396764494\alilog.dll, In Quarantäne, [750c91963a41bc7a888ac76b4cb46b95],
PUP.Optional.SkyTech.A, C:\Users\Coco\AppData\Local\Temp\fullpackage_temp1396764494\package1.zip, In Quarantäne, [daa7ec3b344779bdec264ce6ae52f30d],
PUP.Optional.IePluginService.A, C:\Users\Coco\AppData\Local\Temp\fullpackage_temp1396764494\tmp\SupTab.exe, In Quarantäne, [a4dd1215681377bfca38a6a925dc3ec2],
PUP.Optional.WpManager, C:\Users\Coco\AppData\Local\Temp\fullpackage_temp1396764494\tmp\wpm.exe, In Quarantäne, [7d04f7308eed58de6ad85bfe54adc937],
PUP.Optional.CrossRider.A, C:\Windows\Tasks\74d52b3c-be80-4a90-bd6c-4b7266540f32-1.job, In Quarantäne, [b1d059cede9d9a9cecb473edf80a867a],
PUP.Optional.CrossRider.A, C:\Windows\Tasks\74d52b3c-be80-4a90-bd6c-4b7266540f32-2.job, In Quarantäne, [5d2478af8cefc07699079ac615ede917],
PUP.Optional.CrossRider.A, C:\Windows\Tasks\74d52b3c-be80-4a90-bd6c-4b7266540f32-3.job, In Quarantäne, [1d64af780a7176c0940cd68a9171c838],
PUP.Optional.CrossRider.A, C:\Windows\Tasks\74d52b3c-be80-4a90-bd6c-4b7266540f32-4.job, In Quarantäne, [5031b4738cef7db9d6cadd83689aee12],
PUP.Optional.CrossRider.A, C:\Windows\Tasks\74d52b3c-be80-4a90-bd6c-4b7266540f32-5.job, In Quarantäne, [f988a483cfac8fa75947c8988d75867a],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\install.data, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\uninstall.exe, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\WebDataJs, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\data.html, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\indexIE.html, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\indexIE8.html, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\main.css, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\ver.txt, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\arrow.png, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\default_add_logo.png, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\default_add_logo_hover.png, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\default_logo.png, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\googlelogo.png, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\googlelogo2.png, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\google_trends.png, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\icon128.png, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\icon16.png, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\icon48.png, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\loading.gif, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\logo32.ico, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\search.png, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\sliders.png, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\weather\0.png, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\common.js, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\ga.js, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\ie8.js, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\jquery-1.11.0.min.js, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\jquery.autocomplete.js, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\js.js, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\library.js, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\xagainit.js, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\en-US\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-419\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-ES\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-BE\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CA\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CH\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-FR\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-LU\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-CH\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-IT\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pl\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pt-BR\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru-MO\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\tr-TR\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\vi-VI\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-CN\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-TW\messages.json, In Quarantäne, [2d5495920972ae887660c4a77e84b34d],
PUP.Optional.IePluginService.A, C:\ProgramData\IePluginService\update\conf, In Quarantäne, [fc85180f403b5bdb21cbb0a7cd35d729],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome.manifest, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\install.rdf, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\background.html, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\baseObject.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\browser.xul, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\dialog.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\ffCoreFilesIndex.txt, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\main.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\options.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\options.xul, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\platformVersion.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\search_dialog.xul, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\asyncDB.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\background.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\browserAction.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\contextMenu.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\dbManager.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\dom_bg.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\fileManager.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\firefox.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\firefoxNotifications.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\firefoxOmnibox.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\message.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\pageAction.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\request.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\tabs.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\webRequest.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\api\windowsMessagingHandler.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\addressBarChangeObserver.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\console.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\consts.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\delegate.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\extensionDataStore.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\folderIOWrapper.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\httpObserver.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\IDBWrapper.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\installer.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\logFile.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\prefs.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\progressListenerObserver.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\registry.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\reloadObserver.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\reports.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\requestObject.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\searchSettings.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\uninstallObserver.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\updateManager.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\utils.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\chrome\content\core\xhr.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\defaults\preferences\prefs.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\manifest.xml, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins.json, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\1.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\102.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\103.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\104.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\119.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\13.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\14.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\16.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\17.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\177.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\178.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\179.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\180.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\182.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\183.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\184.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\191.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\207.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\21.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\22.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\223.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\231.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\232.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\242.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\246.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\28.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\4.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\47.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\64.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\72.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\78.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\91.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\93.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\plugins\98.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\userCode\background.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\extensionData\userCode\extension.js, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\locale\en-US\translations.dtd, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\skin\button1.png, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\skin\button2.png, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\skin\button3.png, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\skin\button4.png, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\skin\button5.png, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\skin\crossrider_statusbar.png, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\skin\icon128.png, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\skin\icon16.png, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\skin\icon24.png, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\skin\icon48.png, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\skin\panelarrow-up.png, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\skin\popup.html, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\skin\skin.css, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\extensions\ee5ad154-f909-4cc0-aa51-d7e94e3fb0af@36204afd-f43e-4917-9c71-8384e2e4d3ad.com\skin\update.css, In Quarantäne, [6e13fb2c8cefaa8c6b89e8720ff319e7],
PUP.Optional.WebsSearches.A, C:\Users\Coco\AppData\Roaming\webssearches\92.json, In Quarantäne, [69182bfc1566b5812403b3a94cb6e31d],
PUP.Optional.WebsSearches.A, C:\Users\Coco\AppData\Roaming\webssearches\uninstallDlg.xml, In Quarantäne, [69182bfc1566b5812403b3a94cb6e31d],
PUP.Optional.WebsSearches.A, C:\Users\Coco\AppData\Roaming\webssearches\UninstallManager.exe, In Quarantäne, [69182bfc1566b5812403b3a94cb6e31d],
PUP.Optional.WebsSearches.A, C:\Users\Coco\AppData\Roaming\webssearches\images\bg1.png, In Quarantäne, [69182bfc1566b5812403b3a94cb6e31d],
PUP.Optional.WebsSearches.A, C:\Users\Coco\AppData\Roaming\webssearches\images\button1.png, In Quarantäne, [69182bfc1566b5812403b3a94cb6e31d],
PUP.Optional.WebsSearches.A, C:\Users\Coco\AppData\Roaming\webssearches\images\checked.png, In Quarantäne, [69182bfc1566b5812403b3a94cb6e31d],
PUP.Optional.WebsSearches.A, C:\Users\Coco\AppData\Roaming\webssearches\images\close.png, In Quarantäne, [69182bfc1566b5812403b3a94cb6e31d],
PUP.Optional.WebsSearches.A, C:\Users\Coco\AppData\Roaming\webssearches\images\min.png, In Quarantäne, [69182bfc1566b5812403b3a94cb6e31d],
PUP.Optional.WebsSearches.A, C:\Users\Coco\AppData\Roaming\webssearches\images\Thumbs.db, In Quarantäne, [69182bfc1566b5812403b3a94cb6e31d],
PUP.Optional.WebsSearches.A, C:\Users\Coco\AppData\Roaming\webssearches\images\unchecked.png, In Quarantäne, [69182bfc1566b5812403b3a94cb6e31d],
PUP.Optional.CrossRider.M, C:\Program Files (x86)\HQVid8.1b\HQVid8.1b-bho64.dll, In Quarantäne, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.M, C:\Program Files (x86)\HQVid8.1b\HQVid8.1b-bho.dll, Löschen bei Neustart, [93eef136c2b961d5cb4c36e38a7abd43],
PUP.Optional.CrossRider.A, C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.crossrider.bic", "145369d64c7ebd356b65c53a4fd750a4");), Ersetzt,[651ce93ea1da7fb75063ca7630d4ce32]
Physische Sektoren: 0
(No malicious items detected)
(end) Hier die FRST.
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014
Ran by Coco (administrator) on VAIO on 07-04-2014 12:46:17
Running from C:\Users\Coco\Downloads
Windows 8 Pro (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Anvisoft) C:\Program Files (x86)\Anvisoft\Slim Toolbar\ToolBarService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
(McAfee, Inc.) C:\Windows\system32\mfevtps.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.EXE
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Formosan) C:\Users\Coco\AppData\Local\Genesis\Genesis.exe
(Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(McAfee, Inc.) C:\Program Files\McAfeeEx\MOCP\core\OcpTray.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe
(Sony Corporation) C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\Platform\McUICnt.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Windows\system32\dashost.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
() C:\Program Files\Sony\VAIO Care\VCPerfService.exe
() C:\Program Files\Sony\VAIO Care\listener.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe
(Microsoft Corporation) C:\Windows\System32\vds.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1214608 2012-08-03] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1214608 2012-08-03] (Realtek Semiconductor)
HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [11554688 2012-08-08] (Motorola Solutions, Inc.)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-21] (Synaptics Incorporated)
HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [ISBMgr.exe] - C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [68776 2012-08-18] (Sony Corporation)
HKLM-x32\...\Run: [PMBVolumeWatcher] - C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [724576 2012-07-27] (Sony Corporation)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - c:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [35736 2010-11-15] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] - c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-11-15] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Intel AT Service signup] - c:\Program Files (x86)\Intel Corporation\Intel AT Service signup\IntelATServiceSignup.exe [382976 2012-02-15] (Intel Corporation)
HKLM-x32\...\Run: [Intel AppUp(SM) center] - C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [152896 2012-06-25] (Intel Corporation)
HKLM-x32\...\Run: [mcpltui_exe] - C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe [644656 2013-08-17] (McAfee, Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-21] (Apple Inc.)
HKLM-x32\...\Run: [Avira Systray] - C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [173136 2014-03-25] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-25] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-4172602817-1105754241-2977795870-1002\...\Run: [genesis] - c:\users\coco\appdata\local\genesis\genesis.exe [2830336 2014-04-06] (Formosan)
HKU\S-1-5-21-4172602817-1105754241-2977795870-1002\...\Run: [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6563608 2014-01-06] (SUPERAntiSpyware)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [247144 2012-08-29] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [202600 2012-08-29] (NVIDIA Corporation)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://istart.webssearches.com/web/?type=ds&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95&q={searchTerms}
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://istart.webssearches.com/?type=hp&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://vaioportal.sony.eu
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://vaioportal.sony.eu
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://istart.webssearches.com/web/?type=ds&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://istart.webssearches.com/web/?type=ds&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://istart.webssearches.com/web/?type=ds&ts=1396764514&from=tugs&uid=WDCXWD10JPVT-55A1YT0_WD-WX31EA1ASH95ASH95&q={searchTerms}
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {FA05A302-AD18-4859-9E4E-CD84E89DD6C3} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASEJS
SearchScopes: HKCU - {D7C0CDEF-3515-411B-950F-10048ADA6973} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-Q312&_nkw={searchTerms}
SearchScopes: HKCU - {FA05A302-AD18-4859-9E4E-CD84E89DD6C3} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASEJS
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: No Name - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No File
BHO-x32: No Name - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll ()
FF Plugin: @java.com/DTPlugin,version=10.5.0 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.5.0 - C:\Windows\SysWOW64\npDeployJava1.dll ()
FF Plugin-x32: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Adblock Plus - C:\Users\Coco\AppData\Roaming\Mozilla\Firefox\Profiles\p0yecuk7.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-04-07]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
==================== Services (Whitelisted) =================
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [144152 2013-10-11] (SUPERAntiSpyware.com)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-25] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-25] (Avira Operations GmbH & Co. KG)
R2 astsvr; C:\Program Files (x86)\Anvisoft\Slim Toolbar\ToolBarService.exe [119504 2014-03-03] (Anvisoft)
S2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [121424 2014-03-25] (Avira Operations GmbH & Co. KG)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-24] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-24] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-04-03] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [857912 2014-04-03] (Malwarebytes Corporation)
S2 McOobeSv2; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McSchedulerSvc; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219272 2013-11-15] (McAfee, Inc.)
S3 mfeicfcoreocp; C:\Program Files\McAfeeEx\MOCP\core\mfeicfcore.exe [2782392 2013-12-31] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [182752 2013-11-15] (McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272176 2012-07-18] ()
S3 NetworkSupport; C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [623784 2012-08-18] (Sony Corporation)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [474208 2012-07-27] (Sony Corporation)
R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [156672 2012-08-06] ()
R3 VUAgent; C:\Program Files\Sony\VAIO Update\VUAgent.exe [1368624 2013-08-01] (Sony Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [15440 2012-07-26] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2699568 2012-07-18] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2014-02-25] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [131576 2014-02-25] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2014-02-25] (Avira Operations GmbH & Co. KG)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-04-03] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2014-04-07] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63192 2014-04-03] (Malwarebytes Corporation)
S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179792 2013-11-15] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311120 2013-11-15] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [519576 2013-11-15] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [782360 2013-11-15] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [343696 2013-11-15] (McAfee, Inc.)
R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [4273192 2012-08-07] (Intel Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-21] (Synaptics Incorporated)
R3 SOWS; C:\Windows\System32\drivers\sows.sys [24280 2012-06-11] (Sony Corporation)
S3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [48096 2012-08-09] (Windows (R) Win 7 DDK provider)
S3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188384 2012-08-09] (Windows (R) Win 7 DDK provider)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-04-07 12:46 - 2014-04-07 12:46 - 00018413 _____ () C:\Users\Coco\Downloads\FRST.txt
2014-04-07 12:46 - 2014-04-07 12:46 - 00000000 ____D () C:\FRST
2014-04-07 12:44 - 2014-04-07 12:44 - 02157056 _____ (Farbar) C:\Users\Coco\Downloads\FRST64.exe
2014-04-07 11:33 - 2014-04-07 11:34 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-07 11:33 - 2014-03-02 14:05 - 90015360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-04-07 10:54 - 2014-04-07 10:54 - 00000117 _____ () C:\Windows\system32\netcfg-202140.txt
2014-04-07 10:50 - 2014-04-07 10:50 - 00000117 _____ () C:\Windows\system32\netcfg-652062.txt
2014-04-07 10:38 - 2014-04-07 10:38 - 00000117 _____ () C:\Windows\system32\netcfg-126609.txt
2014-04-07 10:36 - 2014-04-07 10:36 - 00000117 _____ () C:\Windows\system32\netcfg-75537812.txt
2014-04-07 09:55 - 2014-04-07 10:37 - 00000518 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task dd25d916-f8b1-4199-a25e-43b9cb6fed5f.job
2014-04-07 09:55 - 2014-04-07 10:37 - 00000518 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task d707e9fb-f344-4de0-a5ff-414c12b0d091.job
2014-04-07 09:55 - 2014-04-07 09:55 - 00003562 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task dd25d916-f8b1-4199-a25e-43b9cb6fed5f
2014-04-07 09:55 - 2014-04-07 09:55 - 00003480 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task d707e9fb-f344-4de0-a5ff-414c12b0d091
2014-04-07 09:55 - 2014-04-07 09:55 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\SUPERAntiSpyware.com
2014-04-07 09:54 - 2014-04-07 09:55 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-04-07 09:54 - 2014-04-07 09:54 - 18577712 _____ (SUPERAntiSpyware) C:\Users\Coco\Downloads\SUPERAntiSpyware.exe
2014-04-07 09:54 - 2014-04-07 09:54 - 00001808 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Professional.lnk
2014-04-07 09:54 - 2014-04-07 09:54 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-04-07 09:25 - 2014-04-07 09:25 - 00001185 _____ () C:\Users\Public\Desktop\Slim Toolbar.lnk
2014-04-07 09:25 - 2014-04-07 09:25 - 00000000 ____D () C:\Users\Coco\AppData\Local\Anvisoft
2014-04-07 09:25 - 2014-04-07 09:25 - 00000000 ____D () C:\Program Files (x86)\Anvisoft
2014-04-07 09:24 - 2014-04-07 09:24 - 10039608 _____ () C:\Users\Coco\Downloads\astsetup.exe
2014-04-07 09:10 - 2014-04-07 10:54 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-04-07 09:09 - 2014-04-07 09:10 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-04-07 09:09 - 2014-04-07 09:10 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-04-07 09:09 - 2014-04-07 09:09 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-04-07 09:09 - 2014-04-03 09:51 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-04-07 09:09 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-04-07 09:09 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-04-07 09:08 - 2014-04-07 09:08 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\Coco\Downloads\mbam-setup-2.0.0.1000.exe
2014-04-07 09:07 - 2014-04-07 09:07 - 00709352 _____ ( ) C:\Users\Coco\Downloads\COMPUTER_BILD-Download-Manager_fuer_mbam-setup-2.0.0.1000.exe
2014-04-07 09:02 - 2014-04-07 09:02 - 00000000 ____D () C:\Users\Coco\Downloads\adblockplus-2.5.1
2014-04-07 09:00 - 2014-04-07 09:00 - 01915176 _____ () C:\Users\Coco\Downloads\winrar-x64-51b2.exe
2014-04-07 09:00 - 2014-04-07 09:00 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\WinRAR
2014-04-07 09:00 - 2014-04-07 09:00 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-04-07 09:00 - 2014-04-07 09:00 - 00000000 ____D () C:\Program Files\WinRAR
2014-04-07 08:58 - 2014-04-07 08:58 - 00907018 _____ () C:\Users\Coco\Downloads\adblockplus-2.5.1.zip
2014-04-07 08:52 - 2014-04-07 10:54 - 00000000 ____D () C:\Update
2014-04-07 08:45 - 2014-04-07 08:45 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2014-04-07 08:42 - 2014-04-07 08:42 - 00000117 _____ () C:\Windows\system32\netcfg-68723359.txt
2014-04-07 08:42 - 2014-04-07 08:42 - 00000117 _____ () C:\Windows\system32\netcfg-68722531.txt
2014-04-06 21:01 - 2014-04-06 21:01 - 00000117 _____ () C:\Windows\system32\netcfg-26644406.txt
2014-04-06 21:01 - 2014-04-06 21:01 - 00000117 _____ () C:\Windows\system32\netcfg-26640859.txt
2014-04-06 19:02 - 2014-04-06 19:02 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-04-06 18:55 - 2014-04-06 18:55 - 00000117 _____ () C:\Windows\system32\netcfg-19094468.txt
2014-04-06 18:55 - 2014-04-06 18:55 - 00000117 _____ () C:\Windows\system32\netcfg-19094343.txt
2014-04-06 18:55 - 2014-04-06 18:55 - 00000117 _____ () C:\Windows\system32\netcfg-19069296.txt
2014-04-06 18:55 - 2014-04-06 18:55 - 00000117 _____ () C:\Windows\system32\netcfg-19067828.txt
2014-04-06 17:44 - 2014-04-06 17:44 - 00000117 _____ () C:\Windows\system32\netcfg-14815234.txt
2014-04-06 17:44 - 2014-04-06 17:44 - 00000117 _____ () C:\Windows\system32\netcfg-14812234.txt
2014-04-06 16:52 - 2014-04-06 16:52 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2014-04-06 15:49 - 2014-04-06 15:49 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Avira
2014-04-06 15:47 - 2014-02-25 11:41 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-04-06 15:47 - 2014-02-25 11:41 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-04-06 15:47 - 2014-02-25 11:41 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2014-04-06 15:44 - 2014-04-06 15:47 - 00000000 ____D () C:\ProgramData\Avira
2014-04-06 15:44 - 2014-04-06 15:47 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-04-06 15:44 - 2014-04-06 15:44 - 00001137 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-04-06 15:44 - 2014-04-06 15:44 - 00000000 ____D () C:\ProgramData\Package Cache
2014-04-06 15:43 - 2014-04-06 15:44 - 04413904 _____ (Avira Operations GmbH & Co. KG) C:\Users\Coco\Downloads\avira_de_av___ws.exe
2014-04-06 15:30 - 2014-04-06 15:30 - 00000117 _____ () C:\Windows\system32\netcfg-6831265.txt
2014-04-06 15:30 - 2014-04-06 15:30 - 00000117 _____ () C:\Windows\system32\netcfg-6823703.txt
2014-04-06 14:21 - 2014-04-06 14:21 - 00000117 _____ () C:\Windows\system32\netcfg-2677812.txt
2014-04-06 13:41 - 2014-04-06 13:41 - 00000117 _____ () C:\Windows\system32\netcfg-254484.txt
2014-04-06 13:38 - 2014-04-06 13:38 - 00000117 _____ () C:\Windows\system32\netcfg-105859.txt
2014-04-06 13:26 - 2014-04-06 13:26 - 00000117 _____ () C:\Windows\system32\netcfg-20999296.txt
2014-04-06 13:11 - 2013-11-01 07:38 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2014-04-06 13:11 - 2013-11-01 05:49 - 00273408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2014-04-06 13:10 - 2012-12-13 06:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-04-06 13:10 - 2012-12-13 05:59 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-04-06 12:52 - 2014-04-06 12:52 - 00000000 ____D () C:\Users\Coco\AppData\Local\Macromedia
2014-04-06 12:50 - 2014-04-07 11:52 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-04-06 12:50 - 2014-04-06 12:50 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-04-06 12:26 - 2014-04-06 12:26 - 00000117 _____ () C:\Windows\system32\netcfg-17382328.txt
2014-04-06 12:26 - 2014-04-06 12:26 - 00000117 _____ () C:\Windows\system32\netcfg-17380703.txt
2014-04-06 08:40 - 2014-04-06 08:40 - 00000117 _____ () C:\Windows\system32\netcfg-256125.txt
2014-04-06 08:40 - 2014-04-06 08:40 - 00000117 _____ () C:\Windows\system32\netcfg-250250.txt
2014-04-06 08:40 - 2014-04-06 07:40 - 00000117 _____ () C:\Windows\system32\netcfg-256171.txt
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Programme
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Dokumente und Einstellungen
2014-04-06 08:30 - 2014-04-06 08:30 - 00000117 _____ () C:\Windows\system32\netcfg-3257312.txt
2014-04-06 08:30 - 2014-04-06 08:30 - 00000117 _____ () C:\Windows\system32\netcfg-3254890.txt
2014-04-06 08:20 - 2014-04-06 16:52 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Apple Computer
2014-04-06 08:20 - 2014-04-06 08:20 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Windows\System32\Tasks\Apple
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Users\Coco\AppData\Local\Apple Computer
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Users\Coco\AppData\Local\Apple
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\ProgramData\Apple
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Program Files\iTunes
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Program Files\iPod
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Program Files\Bonjour
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Program Files (x86)\Bonjour
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update
2014-04-06 08:20 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2014-04-06 08:12 - 2014-04-07 09:26 - 00001153 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-04-06 08:12 - 2014-04-06 13:37 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-04-06 08:12 - 2014-04-06 08:23 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Mozilla
2014-04-06 08:12 - 2014-04-06 08:23 - 00000000 ____D () C:\Users\Coco\AppData\Local\Mozilla
2014-04-06 08:12 - 2014-04-06 08:12 - 00000000 ____D () C:\ProgramData\Mozilla
2014-04-06 08:12 - 2014-04-06 08:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-04-06 08:09 - 2014-04-06 18:59 - 00000000 ____D () C:\ProgramData\WPM
2014-04-06 08:08 - 2014-04-07 12:44 - 00000000 ____D () C:\Users\Coco\AppData\Local\Genesis
2014-04-06 08:08 - 2014-04-07 10:36 - 00000000 ____D () C:\Program Files (x86)\HQVid8.1b
2014-04-06 08:08 - 2014-04-06 19:01 - 00000444 __RSH () C:\ProgramData\ntuser.pol
2014-04-06 08:07 - 2014-04-06 08:07 - 00000000 _____ () C:\END
2014-04-06 07:51 - 2014-04-07 11:31 - 00003600 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4172602817-1105754241-2977795870-1002
2014-04-06 07:50 - 2014-04-06 07:50 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Macromedia
2014-04-06 07:48 - 2014-04-06 07:48 - 00000000 ____D () C:\Users\Coco\AppData\Local\Sony Corporation
2014-04-06 07:47 - 2014-04-06 07:47 - 00000000 ____D () C:\Users\Coco\AppData\Local\Intel_Corporation
2014-04-06 07:45 - 2014-04-06 08:08 - 00001674 _____ () C:\Users\Coco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-04-06 07:45 - 2014-04-06 07:45 - 00000000 ___RD () C:\Users\Coco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-04-06 07:45 - 2014-04-06 07:45 - 00000000 ___RD () C:\Users\Coco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-04-06 07:45 - 2014-04-06 07:45 - 00000000 ____D () C:\Windows\System32\Tasks\WPD
2014-04-06 07:45 - 2014-04-06 07:45 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Adobe
2014-04-06 07:44 - 2014-04-06 07:50 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Sony Corporation
2014-04-06 07:44 - 2014-04-06 07:44 - 00000000 ____D () C:\Windows\SysWOW64\VAIO Startup Setting Tool
2014-04-06 07:44 - 2014-04-06 07:44 - 00000000 ____D () C:\Windows\pss
2014-04-06 07:44 - 2014-04-06 07:44 - 00000000 ____D () C:\Users\Coco\AppData\Local\Power2Go8
2014-04-06 07:43 - 2014-04-06 07:45 - 00000000 ____D () C:\Users\Coco\AppData\Local\Packages
2014-04-06 07:43 - 2014-04-06 07:45 - 00000000 ____D () C:\Users\Coco
2014-04-06 07:43 - 2014-04-06 07:43 - 00000020 ___SH () C:\Users\Coco\ntuser.ini
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Vorlagen
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Startmenü
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Netzwerkumgebung
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Lokale Einstellungen
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Eigene Dateien
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Druckumgebung
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Documents\Eigene Musik
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Documents\Eigene Bilder
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\AppData\Local\Verlauf
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\AppData\Local\Anwendungsdaten
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Anwendungsdaten
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Intel
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 ____D () C:\Users\Coco\AppData\Local\VirtualStore
2014-04-06 07:43 - 2012-07-26 10:13 - 00000000 ___RD () C:\Users\Coco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-04-06 07:43 - 2012-07-26 10:13 - 00000000 ___RD () C:\Users\Coco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-04-06 07:43 - 2012-07-26 10:13 - 00000000 ___RD () C:\Users\Coco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-04-06 07:43 - 2012-07-26 10:13 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-04-06 07:41 - 2014-04-06 07:41 - 00000117 _____ () C:\Windows\system32\netcfg-335250.txt
2014-04-06 07:41 - 2014-04-06 07:41 - 00000117 _____ () C:\Windows\system32\netcfg-334609.txt
2014-04-06 07:41 - 2014-04-06 07:41 - 00000000 ____D () C:\Windows\CSC
2014-04-06 07:40 - 2014-04-06 07:40 - 00000117 _____ () C:\Windows\system32\netcfg-259187.txt
==================== One Month Modified Files and Folders =======
2014-04-07 12:46 - 2014-04-07 12:46 - 00018413 _____ () C:\Users\Coco\Downloads\FRST.txt
2014-04-07 12:46 - 2014-04-07 12:46 - 00000000 ____D () C:\FRST
2014-04-07 12:45 - 2012-12-18 14:12 - 00000000 ____D () C:\ProgramData\MOCP
2014-04-07 12:44 - 2014-04-07 12:44 - 02157056 _____ (Farbar) C:\Users\Coco\Downloads\FRST64.exe
2014-04-07 12:44 - 2014-04-06 08:08 - 00000000 ____D () C:\Users\Coco\AppData\Local\Genesis
2014-04-07 12:26 - 2012-12-18 13:53 - 01909607 _____ () C:\Windows\WindowsUpdate.log
2014-04-07 12:00 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\system32\sru
2014-04-07 11:52 - 2014-04-06 12:50 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-04-07 11:42 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\rescache
2014-04-07 11:34 - 2014-04-07 11:33 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-07 11:33 - 2012-07-26 07:26 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2014-04-07 11:32 - 2012-07-26 07:38 - 00000000 ____D () C:\Windows\system32\oobe
2014-04-07 11:31 - 2014-04-06 07:51 - 00003600 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4172602817-1105754241-2977795870-1002
2014-04-07 10:54 - 2014-04-07 10:54 - 00000117 _____ () C:\Windows\system32\netcfg-202140.txt
2014-04-07 10:54 - 2014-04-07 09:10 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-04-07 10:54 - 2014-04-07 08:52 - 00000000 ____D () C:\Update
2014-04-07 10:51 - 2012-12-18 13:54 - 00000000 ____D () C:\ProgramData\McAfee
2014-04-07 10:51 - 2012-12-18 13:54 - 00000000 ____D () C:\Program Files\Common Files\mcafee
2014-04-07 10:51 - 2012-08-03 04:22 - 00133916 _____ () C:\Windows\PFRO.log
2014-04-07 10:51 - 2012-07-26 09:22 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-04-07 10:50 - 2014-04-07 10:50 - 00000117 _____ () C:\Windows\system32\netcfg-652062.txt
2014-04-07 10:50 - 2012-07-26 10:12 - 00000000 ___HD () C:\Windows\ELAMBKUP
2014-04-07 10:47 - 2012-12-18 13:42 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-04-07 10:38 - 2014-04-07 10:38 - 00000117 _____ () C:\Windows\system32\netcfg-126609.txt
2014-04-07 10:37 - 2014-04-07 09:55 - 00000518 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task dd25d916-f8b1-4199-a25e-43b9cb6fed5f.job
2014-04-07 10:37 - 2014-04-07 09:55 - 00000518 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task d707e9fb-f344-4de0-a5ff-414c12b0d091.job
2014-04-07 10:36 - 2014-04-07 10:36 - 00000117 _____ () C:\Windows\system32\netcfg-75537812.txt
2014-04-07 10:36 - 2014-04-06 08:08 - 00000000 ____D () C:\Program Files (x86)\HQVid8.1b
2014-04-07 10:36 - 2012-07-26 07:26 - 00262144 ___SH () C:\Windows\system32\config\BBI
2014-04-07 09:55 - 2014-04-07 09:55 - 00003562 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task dd25d916-f8b1-4199-a25e-43b9cb6fed5f
2014-04-07 09:55 - 2014-04-07 09:55 - 00003480 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task d707e9fb-f344-4de0-a5ff-414c12b0d091
2014-04-07 09:55 - 2014-04-07 09:55 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\SUPERAntiSpyware.com
2014-04-07 09:55 - 2014-04-07 09:54 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-04-07 09:54 - 2014-04-07 09:54 - 18577712 _____ (SUPERAntiSpyware) C:\Users\Coco\Downloads\SUPERAntiSpyware.exe
2014-04-07 09:54 - 2014-04-07 09:54 - 00001808 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Professional.lnk
2014-04-07 09:54 - 2014-04-07 09:54 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-04-07 09:27 - 2012-12-18 13:53 - 00000000 ____R () C:\Windows\SysWOW64\npDeployJava1.dll
2014-04-07 09:26 - 2014-04-06 08:12 - 00001153 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-04-07 09:25 - 2014-04-07 09:25 - 00001185 _____ () C:\Users\Public\Desktop\Slim Toolbar.lnk
2014-04-07 09:25 - 2014-04-07 09:25 - 00000000 ____D () C:\Users\Coco\AppData\Local\Anvisoft
2014-04-07 09:25 - 2014-04-07 09:25 - 00000000 ____D () C:\Program Files (x86)\Anvisoft
2014-04-07 09:24 - 2014-04-07 09:24 - 10039608 _____ () C:\Users\Coco\Downloads\astsetup.exe
2014-04-07 09:10 - 2014-04-07 09:09 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-04-07 09:10 - 2014-04-07 09:09 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-04-07 09:09 - 2014-04-07 09:09 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-04-07 09:08 - 2014-04-07 09:08 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\Coco\Downloads\mbam-setup-2.0.0.1000.exe
2014-04-07 09:07 - 2014-04-07 09:07 - 00709352 _____ ( ) C:\Users\Coco\Downloads\COMPUTER_BILD-Download-Manager_fuer_mbam-setup-2.0.0.1000.exe
2014-04-07 09:02 - 2014-04-07 09:02 - 00000000 ____D () C:\Users\Coco\Downloads\adblockplus-2.5.1
2014-04-07 09:00 - 2014-04-07 09:00 - 01915176 _____ () C:\Users\Coco\Downloads\winrar-x64-51b2.exe
2014-04-07 09:00 - 2014-04-07 09:00 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\WinRAR
2014-04-07 09:00 - 2014-04-07 09:00 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-04-07 09:00 - 2014-04-07 09:00 - 00000000 ____D () C:\Program Files\WinRAR
2014-04-07 08:58 - 2014-04-07 08:58 - 00907018 _____ () C:\Users\Coco\Downloads\adblockplus-2.5.1.zip
2014-04-07 08:53 - 2012-12-18 13:33 - 00000000 ____D () C:\ProgramData\Sony Corporation
2014-04-07 08:45 - 2014-04-07 08:45 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2014-04-07 08:42 - 2014-04-07 08:42 - 00000117 _____ () C:\Windows\system32\netcfg-68723359.txt
2014-04-07 08:42 - 2014-04-07 08:42 - 00000117 _____ () C:\Windows\system32\netcfg-68722531.txt
2014-04-06 21:01 - 2014-04-06 21:01 - 00000117 _____ () C:\Windows\system32\netcfg-26644406.txt
2014-04-06 21:01 - 2014-04-06 21:01 - 00000117 _____ () C:\Windows\system32\netcfg-26640859.txt
2014-04-06 19:02 - 2014-04-06 19:02 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-04-06 19:01 - 2014-04-06 08:08 - 00000444 __RSH () C:\ProgramData\ntuser.pol
2014-04-06 19:01 - 2012-12-18 14:24 - 00000000 ____D () C:\Program Files (x86)\WildGames
2014-04-06 19:00 - 2012-12-18 14:24 - 00000000 ____D () C:\ProgramData\WildTangent
2014-04-06 18:59 - 2014-04-06 08:09 - 00000000 ____D () C:\ProgramData\WPM
2014-04-06 18:55 - 2014-04-06 18:55 - 00000117 _____ () C:\Windows\system32\netcfg-19094468.txt
2014-04-06 18:55 - 2014-04-06 18:55 - 00000117 _____ () C:\Windows\system32\netcfg-19094343.txt
2014-04-06 18:55 - 2014-04-06 18:55 - 00000117 _____ () C:\Windows\system32\netcfg-19069296.txt
2014-04-06 18:55 - 2014-04-06 18:55 - 00000117 _____ () C:\Windows\system32\netcfg-19067828.txt
2014-04-06 17:44 - 2014-04-06 17:44 - 00000117 _____ () C:\Windows\system32\netcfg-14815234.txt
2014-04-06 17:44 - 2014-04-06 17:44 - 00000117 _____ () C:\Windows\system32\netcfg-14812234.txt
2014-04-06 16:52 - 2014-04-06 16:52 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2014-04-06 16:52 - 2014-04-06 08:20 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Apple Computer
2014-04-06 16:52 - 2012-07-26 09:21 - 00027564 _____ () C:\Windows\setupact.log
2014-04-06 15:49 - 2014-04-06 15:49 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Avira
2014-04-06 15:47 - 2014-04-06 15:44 - 00000000 ____D () C:\ProgramData\Avira
2014-04-06 15:47 - 2014-04-06 15:44 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-04-06 15:44 - 2014-04-06 15:44 - 00001137 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-04-06 15:44 - 2014-04-06 15:44 - 00000000 ____D () C:\ProgramData\Package Cache
2014-04-06 15:44 - 2014-04-06 15:43 - 04413904 _____ (Avira Operations GmbH & Co. KG) C:\Users\Coco\Downloads\avira_de_av___ws.exe
2014-04-06 15:30 - 2014-04-06 15:30 - 00000117 _____ () C:\Windows\system32\netcfg-6831265.txt
2014-04-06 15:30 - 2014-04-06 15:30 - 00000117 _____ () C:\Windows\system32\netcfg-6823703.txt
2014-04-06 14:24 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\AUInstallAgent
2014-04-06 14:21 - 2014-04-06 14:21 - 00000117 _____ () C:\Windows\system32\netcfg-2677812.txt
2014-04-06 13:43 - 2012-12-18 13:32 - 00753134 _____ () C:\Windows\system32\perfh007.dat
2014-04-06 13:43 - 2012-12-18 13:32 - 00155826 _____ () C:\Windows\system32\perfc007.dat
2014-04-06 13:43 - 2012-07-26 09:28 - 01745416 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-04-06 13:41 - 2014-04-06 13:41 - 00000117 _____ () C:\Windows\system32\netcfg-254484.txt
2014-04-06 13:38 - 2014-04-06 13:38 - 00000117 _____ () C:\Windows\system32\netcfg-105859.txt
2014-04-06 13:37 - 2014-04-06 08:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-04-06 13:26 - 2014-04-06 13:26 - 00000117 _____ () C:\Windows\system32\netcfg-20999296.txt
2014-04-06 12:52 - 2014-04-06 12:52 - 00000000 ____D () C:\Users\Coco\AppData\Local\Macromedia
2014-04-06 12:50 - 2014-04-06 12:50 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-04-06 12:26 - 2014-04-06 12:26 - 00000117 _____ () C:\Windows\system32\netcfg-17382328.txt
2014-04-06 12:26 - 2014-04-06 12:26 - 00000117 _____ () C:\Windows\system32\netcfg-17380703.txt
2014-04-06 08:40 - 2014-04-06 08:40 - 00000117 _____ () C:\Windows\system32\netcfg-256125.txt
2014-04-06 08:40 - 2014-04-06 08:40 - 00000117 _____ () C:\Windows\system32\netcfg-250250.txt
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Programme
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-04-06 08:37 - 2014-04-06 08:37 - 00000000 _SHDL () C:\Dokumente und Einstellungen
2014-04-06 08:37 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Windows NT
2014-04-06 08:37 - 2012-07-26 07:37 - 00000000 __RHD () C:\Users\Default
2014-04-06 08:33 - 2012-07-26 10:13 - 00262144 _____ () C:\Windows\system32\config\BCD-Template
2014-04-06 08:30 - 2014-04-06 08:30 - 00000117 _____ () C:\Windows\system32\netcfg-3257312.txt
2014-04-06 08:30 - 2014-04-06 08:30 - 00000117 _____ () C:\Windows\system32\netcfg-3254890.txt
2014-04-06 08:23 - 2014-04-06 08:12 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Mozilla
2014-04-06 08:23 - 2014-04-06 08:12 - 00000000 ____D () C:\Users\Coco\AppData\Local\Mozilla
2014-04-06 08:20 - 2014-04-06 08:20 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Windows\System32\Tasks\Apple
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Users\Coco\AppData\Local\Apple Computer
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Users\Coco\AppData\Local\Apple
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\ProgramData\Apple
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Program Files\iTunes
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Program Files\iPod
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Program Files\Bonjour
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Program Files (x86)\Bonjour
2014-04-06 08:20 - 2014-04-06 08:20 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update
2014-04-06 08:12 - 2014-04-06 08:12 - 00000000 ____D () C:\ProgramData\Mozilla
2014-04-06 08:12 - 2014-04-06 08:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-04-06 08:08 - 2014-04-06 07:45 - 00001674 _____ () C:\Users\Coco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-04-06 08:08 - 2012-07-26 10:12 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-04-06 08:08 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy
2014-04-06 08:07 - 2014-04-06 08:07 - 00000000 _____ () C:\END
2014-04-06 07:50 - 2014-04-06 07:50 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Macromedia
2014-04-06 07:50 - 2014-04-06 07:44 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Sony Corporation
2014-04-06 07:48 - 2014-04-06 07:48 - 00000000 ____D () C:\Users\Coco\AppData\Local\Sony Corporation
2014-04-06 07:47 - 2014-04-06 07:47 - 00000000 ____D () C:\Users\Coco\AppData\Local\Intel_Corporation
2014-04-06 07:45 - 2014-04-06 07:45 - 00000000 ___RD () C:\Users\Coco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-04-06 07:45 - 2014-04-06 07:45 - 00000000 ___RD () C:\Users\Coco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-04-06 07:45 - 2014-04-06 07:45 - 00000000 ____D () C:\Windows\System32\Tasks\WPD
2014-04-06 07:45 - 2014-04-06 07:45 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Adobe
2014-04-06 07:45 - 2014-04-06 07:43 - 00000000 ____D () C:\Users\Coco\AppData\Local\Packages
2014-04-06 07:45 - 2014-04-06 07:43 - 00000000 ____D () C:\Users\Coco
2014-04-06 07:45 - 2012-12-18 13:56 - 00000000 ____D () C:\Windows\System32\Tasks\Sony Corporation
2014-04-06 07:45 - 2012-12-18 13:33 - 00000000 ____D () C:\Program Files\Sony
2014-04-06 07:44 - 2014-04-06 07:44 - 00000000 ____D () C:\Windows\SysWOW64\VAIO Startup Setting Tool
2014-04-06 07:44 - 2014-04-06 07:44 - 00000000 ____D () C:\Windows\pss
2014-04-06 07:44 - 2014-04-06 07:44 - 00000000 ____D () C:\Users\Coco\AppData\Local\Power2Go8
2014-04-06 07:44 - 2012-12-18 14:09 - 00000000 ____D () C:\Windows\System32\Tasks\SONY
2014-04-06 07:43 - 2014-04-06 07:43 - 00000020 ___SH () C:\Users\Coco\ntuser.ini
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Vorlagen
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Startmenü
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Netzwerkumgebung
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Lokale Einstellungen
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Eigene Dateien
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Druckumgebung
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Documents\Eigene Musik
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Documents\Eigene Bilder
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\AppData\Local\Verlauf
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\AppData\Local\Anwendungsdaten
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 _SHDL () C:\Users\Coco\Anwendungsdaten
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 ____D () C:\Users\Coco\AppData\Roaming\Intel
2014-04-06 07:43 - 2014-04-06 07:43 - 00000000 ____D () C:\Users\Coco\AppData\Local\VirtualStore
2014-04-06 07:43 - 2012-07-26 10:12 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2014-04-06 07:43 - 2012-07-26 10:12 - 00000000 ____D () C:\Windows\WinStore
2014-04-06 07:41 - 2014-04-06 07:41 - 00000117 _____ () C:\Windows\system32\netcfg-335250.txt
2014-04-06 07:41 - 2014-04-06 07:41 - 00000117 _____ () C:\Windows\system32\netcfg-334609.txt
2014-04-06 07:41 - 2014-04-06 07:41 - 00000000 ____D () C:\Windows\CSC
2014-04-06 07:40 - 2014-04-06 08:40 - 00000117 _____ () C:\Windows\system32\netcfg-256171.txt
2014-04-06 07:40 - 2014-04-06 07:40 - 00000117 _____ () C:\Windows\system32\netcfg-259187.txt
2014-04-03 09:51 - 2014-04-07 09:09 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-04-03 09:51 - 2014-04-07 09:09 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-04-03 09:50 - 2014-04-07 09:09 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
Some content of TEMP:
====================
C:\Users\Coco\AppData\Local\Temp\0240061396860597mcinst.exe
C:\Users\Coco\AppData\Local\Temp\avgnt.exe
C:\Users\Coco\AppData\Local\Temp\ICReinstall_COMPUTER_BILD-Download-Manager_fuer_mbam-setup-2.0.0.1000.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2012-08-03 04:22
==================== End Of Log ============================ --- --- ---
--- --- --- |