Habe heute mal wieder
Malwarebytes durchlaufen lassen, leider mit diesem Ergebnis : (s. Anhang)
Bitte um Hilfe, Danke im voraus
PUP.Optional.SearchDonkey.AC:\ProgramData\RHelpers\ChromeHelper\ChromeHelper.exe
C:\ProgramData\RHelpers\FirefoxHelper\FirefoxHelper.exe
C:\ProgramData\RHelpers\IeHelper\IeHelper.exe
PUP.Optional.InternetUpdater.AC:\ProgramData\InternetUpdater\InternetUpdaterService.exe
HKLM\SYSTEM\CurrentControlSet\Services\InternetUpdater
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InternetUpdater
HKLM\SYSTEM\CurrentControlSet\Services\InternetUpdater|ImagePath
C:\ProgramData\InternetUpdater
C:\ProgramData\InternetUpdater\InternetUpdater.ico
C:\ProgramData\InternetUpdater\app.dat
C:\ProgramData\InternetUpdater\data.dat
C:\ProgramData\InternetUpdater\InternetUpdaterService.exe.config
C:\ProgramData\InternetUpdater\Uninstall.exe
Trojan.AgentC:\ProgramData\Updater\updater.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run|Updater
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Updater
PUP.Optional.Conduit.AHKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows|AppInit_DLLs
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page
C:\Users\***\AppData\Local\Temp\CT3314932
C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe
C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32.dll
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
C:\Users\***\Downloads\VideoSpin_2_0_Setup.exe
C:\Users\***\AppData\Local\Temp\CT3314932\ddt.csf
PUP.Optional.DynConIE.AHKCR\AppID\{384997EE-E3BE-49C4-9ECA-C62B7C08128A}
HKCR\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}
HKLM\SOFTWARE\Classes\AppID\DynConIE.DLL
PUP.Optional.Delta.AHKCR\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
HKCU\Software\delta LTD
C:\Users\***\AppData\Local\Temp\mt_ffx\Delta
C:\Users\***\AppData\Local\Temp\mt_ffx\Delta\delta
C:\Users\***\AppData\Local\Temp\mt_ffx\Delta\delta\1.8.22.0
C:\Users\***\AppData\Local\Temp\64DFBD0E-BAB0-7891-B0F5-0A713A958946\MyDeltaTB.exe
PUP.Optional.WebSteroids.AHKCR\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}
PUP.Optional.SafeMonitor.AHKCR\CLSID\{44ed99e2-16a6-4b89-80d6-5b21cf42e78b}
HKCR\TypeLib\{781CA792-9B6E-400B-B36F-15C097D2CA54}
HKCR\Interface\{2830488C-079B-45C2-88B6-AFE4EAA2DF85}
HKCR\DynConIE.DynConIEObject.1
HKCR\DynConIE.DynConIEObject
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{44ED99E2-16A6-4B89-80D6-5B21CF42E78B}
C:\ProgramData\Websteroids\IE\common.dll
PUP.Optional.Websteroids.AHKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Websteroids
C:\ProgramData\Websteroids
C:\ProgramData\Websteroids\Chrome
C:\ProgramData\Websteroids\Chrome\unzip
C:\ProgramData\Websteroids\Firefox
C:\ProgramData\Websteroids\Firefox\chrome
C:\ProgramData\Websteroids\Firefox\chrome\content
C:\ProgramData\Websteroids\IE
C:\ProgramData\Websteroids\app.dat
C:\ProgramData\Websteroids\Uninstall.exe
C:\ProgramData\Websteroids\Websteroids.ico
C:\ProgramData\Websteroids\Chrome\common.crx
C:\ProgramData\Websteroids\Chrome\unzip\announce.js
C:\ProgramData\Websteroids\Chrome\unzip\background.html
C:\ProgramData\Websteroids\Chrome\unzip\common.js
C:\ProgramData\Websteroids\Chrome\unzip\contentscript.js
C:\ProgramData\Websteroids\Chrome\unzip\icon.png
C:\ProgramData\Websteroids\Chrome\unzip\icon128.png
C:\ProgramData\Websteroids\Chrome\unzip\icon16.png
C:\ProgramData\Websteroids\Chrome\unzip\icon48.png
C:\ProgramData\Websteroids\Chrome\unzip\iframecontentscript.js
C:\ProgramData\Websteroids\Chrome\unzip\manifest.json
C:\ProgramData\Websteroids\Firefox\chrome.manifest
C:\ProgramData\Websteroids\Firefox\install.rdf
C:\ProgramData\Websteroids\Firefox\chrome\content\main.js
C:\ProgramData\Websteroids\Firefox\chrome\content\overlay.xul
PUP.Optional.SearchProtect.AHKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
C:\Program Files (x86)\SearchProtect
C:\Program Files (x86)\SearchProtect\Main
C:\Program Files (x86)\SearchProtect\Main\bin
C:\Program Files (x86)\SearchProtect\Main\Logs
C:\Program Files (x86)\SearchProtect\Main\rep
C:\Program Files (x86)\SearchProtect\SearchProtect
C:\Program Files (x86)\SearchProtect\SearchProtect\bin
C:\Program Files (x86)\SearchProtect\SearchProtect\rep
C:\Program Files (x86)\SearchProtect\UI
C:\Program Files (x86)\SearchProtect\UI\bin
C:\Program Files (x86)\SearchProtect\UI\dialogs
C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs
C:\Program Files (x86)\SearchProtect\UI\dialogs\protection
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings
C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall
C:\Program Files (x86)\SearchProtect\UI\rep
C:\Users\***\AppData\Local\Temp\nse61C0.exe
C:\Users\***\AppData\Local\Temp\nsj6A1A.exe
C:\Users\***\AppData\Local\Temp\nsoFB00.exe
C:\Users\***\AppData\Local\Temp\nstE971.exe
C:\Users\***\AppData\Local\Temp\nsz5966.exe
C:\Users\***\AppData\Local\Temp\nszF2B6.exe
C:\Program Files (x86)\SearchProtect\EULA.txt
C:\Program Files (x86)\SearchProtect\Main\bin\SPTool.dll
C:\Program Files (x86)\SearchProtect\Main\bin\uninstall.exe
C:\Program Files (x86)\SearchProtect\Main\rep\SystemRepository.dat
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPTool64.exe
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64.dll
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64Loader.dll
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings.html
C:\Program Files (x86)\SearchProtect\UI\dialogs\style.css
C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\bubble.css
C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\bubble.html
C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\bubble.js
C:\Program Files (x86)\SearchProtect\UI\dialogs\bubble\defaults.js
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Apply-default.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Apply-onclick.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Apply-Rollover.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bg-with-logo.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bg.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgNotif.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgSettings.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\bgUninstall.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\btnBlue.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\btnClose.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\btnSilver.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\checkbox.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\checkbox_checked.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\checkbox_def.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\close-win-def.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\close-win-over-click.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\gray-bg.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez-def.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez-selected.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\hez.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\icon-win.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\info-icon.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\menu-rollover.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\menu-selected.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button-def.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button-selected.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\radio-button2.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\Settings-icon.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\text-field.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\v.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\Images\x.png
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\defaults.js
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\dialogUtils.js
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\jquery.1.7.1.min.js
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\json2.min.js
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\main.js
C:\Program Files (x86)\SearchProtect\UI\dialogs\libs\SPDialogAPI.js
C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\defaults.js
C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\protection.css
C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\protection.html
C:\Program Files (x86)\SearchProtect\UI\dialogs\protection\protection.js
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\defaults.js
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\settings.css
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\settings.html
C:\Program Files (x86)\SearchProtect\UI\dialogs\settings\settings.js
C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\defaults.js
C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\uninstall.css
C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\uninstall.html
C:\Program Files (x86)\SearchProtect\UI\dialogs\uninstall\uninstall.js
PUP.Optional.DataMngr.AHKCU\SOFTWARE\DataMngr_Toolbar
HKCU\Software\DataMngr
PUP.Optional.Babylon.AHKCU\Software\BabSolution\Updater
C:\Users\***\AppData\Local\Temp\64DFBD0E-BAB0-7891-B0F5-0A713A958946\BabMaint.exe
C:\Users\***\AppData\Local\Temp\64DFBD0E-BAB0-7891-B0F5-0A713A958946\ccp.exe
C:\Users\***\AppData\Local\Temp\64DFBD0E-BAB0-7891-B0F5-0A713A958946\CrxInstaller.dll
C:\Users\***\AppData\Local\Temp\64DFBD0E-BAB0-7891-B0F5-0A713A958946\MntrDLLInstall.dll
C:\Users\***\AppData\Local\Temp\64DFBD0E-BAB0-7891-B0F5-0A713A958946\NTRedirect.dll
C:\Users\***\AppData\Local\Temp\64DFBD0E-BAB0-7891-B0F5-0A713A958946\Setup.exe
PUP.Optional.InstallCore.AHKCU\SOFTWARE\INSTALLCORE
HKCU\Software\InstallCore|tb
PUP.Optional.SearchagentC:\ProgramData\RHelpers\ChromeHelper
C:\ProgramData\RHelpers\FirefoxHelper
C:\ProgramData\RHelpers\IeHelper
PUP.Optional.MultiIEC:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb
C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb\2.6.53_0
C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb\2.6.53_0\announce.js
C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb\2.6.53_0\background.html
C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb\2.6.53_0\common.js
C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb\2.6.53_0\common.js.old
C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb\2.6.53_0\contentscript.js
C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb\2.6.53_0\icon.png
C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb\2.6.53_0\icon128.png
C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb\2.6.53_0\icon16.png
C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb\2.6.53_0\icon48.png
C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb\2.6.53_0\iframecontentscript.js
C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\igjjkeeamkpihpncmmbgdkhdnjpcfmfb\2.6.53_0\manifest.json
PUP.Optional.BabSolution.AC:\Users\***\AppData\Local\Temp\64DFBD0E-BAB0-7891-B0F5-0A713A958946\BUSolution.dll
PUP.Optional.OpenCandyC:\Users\***\Downloads\Free31213YouTubeDownload.exe
C:\Users\***\Downloads\FreeYouTubeToMP3Converter(2).exe
PUP.Optional.ChipXonioC:\Users\***\Downloads\OpenOffice - CHIP-Downloader.exe
PUP.Optional.Softonic.AC:\Users\***\Downloads\SoftonicDownloader_fuer_minecraft-skinedit.exe