|
Plagegeister aller Art und deren Bekämpfung: Unerwünschte Werbung in Steam sowie Firefox komme nicht weiter was tun :(Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
31.08.2014, 23:10 | #1 |
| Unerwünschte Werbung in Steam sowie Firefox komme nicht weiter was tun :( Hey, Habe folgendes Problem wollte in dem Spiel Euro Truck Simulator 2 etwas modden und hab verschiedene Programme dafür gebraucht die ich auch runtergeladen hab, jedoch hab ich vermutlich mir ein Malware/Adware oder sowas mit gezogen. Habe nun jedesmal unerwünschte Werbung im Firefox Browser sowie im Steam selbst auch ! Lasse gerade Malwarebyte Anti-Malware durchlaufen wenn es fertig ist poste ich die Logfiles. Wäre nett wenn mir jemand helfen könnte <?xml version="1.0" encoding="UTF-16" ?> <mbam-log> <header> <date>2014/08/31 23:38:10 +0200</date> <logfile>mbam-log-2014-08-31 (23-38-09).xml</logfile> <isadmin>yes</isadmin> </header> <engine> <version>2.00.2.1012</version> <malware-database>v2014.08.31.06</malware-database> <rootkit-database>v2014.08.21.01</rootkit-database> <license>free</license> <file-protection>disabled</file-protection> <web-protection>disabled</web-protection> <self-protection>disabled</self-protection> </engine> <system> <osversion>Windows 7 Service Pack 1</osversion> <arch>x64</arch> <username>Arni</username> <filesys>NTFS</filesys> </system> <summary> <type>threat</type> <result>completed</result> <objects>307052</objects> <time>1151</time> <processes>1</processes> <modules>0</modules> <keys>17</keys> <values>5</values> <datas>2</datas> <folders>8</folders> <files>117</files> <sectors>0</sectors> </summary> <options> <memory>enabled</memory> <startup>enabled</startup> <filesystem>enabled</filesystem> <archives>enabled</archives> <rootkits>disabled</rootkits> <deeprootkit>disabled</deeprootkit> <heuristics>enabled</heuristics> <pup>warn</pup> <pum>enabled</pum> </options> <items> <process><path>C:\Windows\Microsoft\sogr\WindowsUpdater.exe</path><vendor>PUP.Optional.WindowsUpdater.A</vendor><action></action><pid>2660</pid><hash>5ac8f6d73546a3931899ad40679bd12f</hash></process> <key><path>HKLM\SOFTWARE\CLASSES\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}</path><vendor>PUP.Optional.QuickShare.A</vendor><action></action><hash>9e844f7e3249e84e56eb9719b74ba65a</hash></key> <key><path>HKLM\SOFTWARE\CLASSES\IESmartBar.BHO</path><vendor>PUP.Optional.QuickShare.A</vendor><action></action><hash>9e844f7e3249e84e56eb9719b74ba65a</hash></key> <key><path>HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}</path><vendor>PUP.Optional.QuickShare.A</vendor><action></action><hash>9e844f7e3249e84e56eb9719b74ba65a</hash></key> <key><path>HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}</path><vendor>PUP.Optional.QuickShare.A</vendor><action></action><hash>9e844f7e3249e84e56eb9719b74ba65a</hash></key> <key><path>HKLM\SOFTWARE\WOW6432NODE\CLASSES\IESmartBar.BHO</path><vendor>PUP.Optional.QuickShare.A</vendor><action></action><hash>9e844f7e3249e84e56eb9719b74ba65a</hash></key> <key><path>HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}</path><vendor>PUP.Optional.QuickShare.A</vendor><action></action><hash>9e844f7e3249e84e56eb9719b74ba65a</hash></key> <key><path>HKU\S-1-5-21-1195060510-2096880510-1033783037-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{006ee092-9658-4fd6-bd8e-a21a348e59f5}</path><vendor>PUP.Optional.Snapdo.T</vendor><action></action><hash>22007b52bac177bfff2c516361a17090</hash></key> <key><path>HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{006EE092-9658-4FD6-BD8E-A21A348E59F5}</path><vendor>PUP.Optional.Snapdo.T</vendor><action></action><hash>22007b52bac177bfff2c516361a17090</hash></key> <key><path>HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\sogr</path><vendor>PUP.Optional.WindowsUpdater.A</vendor><action></action><hash>5ac8f6d73546a3931899ad40679bd12f</hash></key> <key><path>HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{AEB719FD-EDB0-43E9-B524-90F97C1E6499}</path><vendor>PUP.Optional.Amonetize</vendor><action></action><hash>a979d8f5d2a9f3438c6c718039c940c0</hash></key> <key><path>HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\SmartSaver+ 15</path><vendor>PUP.Optional.SmartSaver.A</vendor><action></action><hash>0e145b720972b77f559df81f5ca7ff01</hash></key> <key><path>HKU\S-1-5-21-1195060510-2096880510-1033783037-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SmartbarBackup</path><vendor>PUP.Optional.SmartBar</vendor><action></action><hash>24fe3f8e56250630fc76e06c867ed927</hash></key> <key><path>HKU\S-1-5-21-1195060510-2096880510-1033783037-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SmartbarLog</path><vendor>PUP.Optional.SmartBar</vendor><action></action><hash>4ed4e1ec710a6ccad9982a22e123847c</hash></key> <key><path>HKU\S-1-5-21-1195060510-2096880510-1033783037-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider</path><vendor>PUP.Optional.CrossRider.A</vendor><action></action><hash>0022f3da017ac86ec2bf1b2df70dc937</hash></key> <key><path>HKU\S-1-5-21-1195060510-2096880510-1033783037-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SMARTBAR</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879baa2381fa0630d3eb29c6669cef11</hash></key> <key><path>HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE</path><vendor>PUP.Optional.GlobalUpdate.A</vendor><action></action><hash>92907d509ddef343bf7d9f3fa16150b0</hash></key> <key><path>HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE</path><vendor>PUP.Optional.GlobalUpdate.A</vendor><action></action><hash>92907d509ddef343bf7d9f3fa16150b0</hash></key> <value><path>HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR</path><valuename>{ae07101b-46d4-4a98-af68-0333ea26e113}</valuename><vendor>PUP.Optional.SmartBar</vendor><action></action><valuedata>Smartbar</valuedata><hash>061c1db04734a2949fe122ca9e649868</hash></value> <value><path>HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR</path><valuename>{ae07101b-46d4-4a98-af68-0333ea26e113}</valuename><vendor>PUP.Optional.SmartBar</vendor><action></action><valuedata>Smartbar</valuedata><hash>da481faea7d4c472b3cd638903ff31cf</hash></value> <value><path>HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SOGR</path><valuename>ImagePath</valuename><vendor>PUP.Optional.WindowsUpdater.A</vendor><action></action><valuedata>"C:\Windows\Microsoft\sogr\WindowsUpdater.exe"</valuedata><hash>61c1884587f453e3f6bc816cf50d42be</hash></value> <value><path>HKU\S-1-5-21-1195060510-2096880510-1033783037-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN</path><valuename>Browser Infrastructure Helper</valuename><vendor>PUP.Optional.SmartBar.A</vendor><action></action><valuedata>C:\Users\Arni\AppData\Local\Smartbar\Application\Smartbar.exe startup</valuedata><hash>62c0bb12235895a15192da589f6504fc</hash></value> <value><path>HKU\S-1-5-21-1195060510-2096880510-1033783037-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SMARTBAR</path><valuename>Publisher</valuename><vendor>PUP.Optional.Linkury.A</vendor><action></action><valuedata>YahooSM</valuedata><hash>879baa2381fa0630d3eb29c6669cef11</hash></value> <data><path>HKU\S-1-5-21-1195060510-2096880510-1033783037-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH</path><valuename>Default_Search_URL</valuename><vendor>PUP.Optional.HelperBar.A</vendor><action></action><valuedata>hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StLKYZZHUxozG7WbG8M4ZbpPFmdMdnxsM5TEzN82Kso2FnDVDlINIqz7PjaO9IXllPXezzsIaCyRcPaTmBJjxU_uG9uSZcKZqq5OMoLLxhp9JIE8mtHZRpzBkaIAe_8cX CY3AdPjw-6U0zAO8xGwKBYKBg6Rw5n-jraUFKl4HUaeRb4nBGCbh-wcva8mGeyF_LrrvMp1lz7A,,&q={searchTerms}</valuedata><baddata>hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StLKYZZHUxozG7WbG8M4ZbpPFmdMdnxsM5TEzN82Kso2FnDVDlINIqz7PjaO9IXllPXezzsIaCyRcPaTmBJjxU_uG9uSZcKZqq5OMoLLxhp9JIE8mtHZRpzBkaIAe_8cX CY3AdPjw-6U0zAO8xGwKBYKBg6Rw5n-jraUFKl4HUaeRb4nBGCbh-wcva8mGeyF_LrrvMp1lz7A,,&q={searchTerms}</baddata><gooddata>www.google.com</gooddata><hash>ec366b6298e391a5959d22bb6b9925db</hash></data> <data><path>HKU\S-1-5-21-1195060510-2096880510-1033783037-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH</path><valuename>SearchAssistant</valuename><vendor>PUP.Optional.HelperBar.A</vendor><action></action><valuedata>hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StLKYZZHUxozG7WbG8M4ZbpPFmdMdnxsM5TEzN82Kso2FnDVDlINIqz7PjaO9IXllPXezzsIaCyRcPaTmBJjxU_uG9uSZcKZqq5OMoLLxhp9JIE8mtHZRpzBkaIAe_8cX CY3AdPjw-6U0zAO8xGwKBYKBg6Rw5n-jraUFKl4HUaeRb4nBGCbh-wcva8mGeyF_LrrvMp1lz7A,,&q={searchTerms}</valuedata><baddata>hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StLKYZZHUxozG7WbG8M4ZbpPFmdMdnxsM5TEzN82Kso2FnDVDlINIqz7PjaO9IXllPXezzsIaCyRcPaTmBJjxU_uG9uSZcKZqq5OMoLLxhp9JIE8mtHZRpzBkaIAe_8cX CY3AdPjw-6U0zAO8xGwKBYKBg6Rw5n-jraUFKl4HUaeRb4nBGCbh-wcva8mGeyF_LrrvMp1lz7A,,&q={searchTerms}</baddata><gooddata>www.google.com</gooddata><hash>24fe09c43546cf67d65d05d8699bc040</hash></data> <folder><path>C:\Users\Arni\AppData\Local\LPT</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></folder> <folder><path>C:\Users\Arni\AppData\Local\LPT\Configs</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></folder> <folder><path>C:\Users\Arni\AppData\Local\LPT\Resources</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></folder> <folder><path>C:\Program Files (x86)\LPT</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></folder> <folder><path>C:\Program Files (x86)\LPT\Configs</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></folder> <folder><path>C:\Program Files (x86)\LPT\Resources</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></folder> <folder><path>C:\ProgramData\374311380</path><vendor>Rogue.Multiple</vendor><action></action><hash>1111785586f565d1a4c9f9bbff0343bd</hash></folder> <folder><path>C:\Users\Arni\AppData\Local\Temp\comh.171948</path><vendor>PUP.Optional.GlobalUpdate.A</vendor><action></action><hash>92907d509ddef343bf7d9f3fa16150b0</hash></folder> <file><path>C:\Users\Arni\AppData\Local\Temp\s4s15.exe</path><vendor>PUP.Optional.NSXgen</vendor><action></action><hash>60c21eaf1368b6809857eec6986947b9</hash></file> <file><path>C:\Users\Arni\AppData\Local\Temp\MSI8DE.tmp-\Smartbar.Installer.CustomActions.dll</path><vendor>PUP.Optional.SmartBar</vendor><action></action><hash>869c21ac235894a21b3081ad07f953ad</hash></file> <file><path>C:\Windows\Installer\40998fe.msi</path><vendor>PUP.Optional.SnapDo.A</vendor><action></action><hash>1111fdd0c8b3e74fa171f29fd829f808</hash></file> <file><path>C:\Windows\Microsoft\sogr\WindowsUpdater.exe</path><vendor>PUP.Optional.WindowsUpdater.A</vendor><action></action><hash>5ac8f6d73546a3931899ad40679bd12f</hash></file> <file><path>C:\Users\Arni\AppData\Roaming\Mozilla\Firefox\Profiles\u79naryi.default\extensions\59D317DB041748fdB89B47E6F96058F3@jetpack.xpi</path><vendor>PUP.Optional.Tuvaro</vendor><action></action><hash>5bc7d4f99edd91a5c06c0fdf38cac33d</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\PublisherSettings.xml</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Community.CsharpSqlite.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Community.CsharpSqlite.SQLiteClient.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\linmsl.exe</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\linmsl.exe.config</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\LPTInstaller.msi</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\lrrot.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\NewConfig.txt</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Newtonsoft.Json.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Proxy.Lib.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\ProxySettings.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Smartbar.Common.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Smartbar.Communication.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Smartbar.Communication.NamedPipe.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Smartbar.Infrastructure.Utilities.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Smartbar.Monetization.Proxy.ProxyRemover.exe</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Smartbar.Monetization.Proxy.ProxyService.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Smartbar.Personalization.Common.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Smartbar.Resources.HistoryAndStatsWrapper.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\smia.exe</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\smia.exe.config</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\smia64.exe</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\smia64.exe.config</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\sppsm.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\spusm.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\srbs.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\srbu.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\sreu.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\srpdm.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\srprl.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\srpt.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\srptc.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\srptm.exe</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\srptm.exe.config</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\srptsl.exe</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\srptsl.exe.config</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\srut.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\UserSettings.xml</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\XMLOperations.xml</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Configs\BrowserSettings.xml</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Configs\LPTMapping.xml</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Configs\Timers.xml</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Resources\crdli.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Resources\crdli64.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Resources\crdlil.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Resources\crdlil64.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Resources\LPT.xml</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Resources\ntdis_32.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Users\Arni\AppData\Local\LPT\Resources\ntdis_64.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>879b02cbfe7df93d2ae4e236d52e2bd5</hash></file> <file><path>C:\Program Files (x86)\LPT\PublisherSettings.xml</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Community.CsharpSqlite.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Community.CsharpSqlite.SQLiteClient.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\linmsl.exe</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\linmsl.exe.config</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\LPTInstaller.msi</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\lrrot.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\NewConfig.txt</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Newtonsoft.Json.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Proxy.Lib.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\ProxySettings.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Smartbar.Common.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Smartbar.Communication.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Smartbar.Communication.NamedPipe.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Smartbar.Infrastructure.Utilities.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Smartbar.Monetization.Proxy.ProxyRemover.exe</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Smartbar.Monetization.Proxy.ProxyService.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Smartbar.Personalization.Common.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Smartbar.Resources.HistoryAndStatsWrapper.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\smia.exe</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\smia.exe.config</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\smia64.exe</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\smia64.exe.config</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\sppsm.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\spusm.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\srbs.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\srbu.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\sreu.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\srpdm.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\srprl.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\srpt.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\srptc.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\srptm.exe</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\srptm.exe.config</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\srpts.exe</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\srpts.exe.config</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\srptsl.exe</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\srptsl.exe.config</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\srut.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\UserSettings.xml</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\XMLOperations.xml</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Configs\BrowserSettings.xml</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Configs\LPTMapping.xml</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Configs\Timers.xml</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Resources\crdli.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Resources\crdli64.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Resources\crdliL.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Resources\crdliL64.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Resources\LPT.xml</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Resources\ntdis_32.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\Program Files (x86)\LPT\Resources\ntdis_64.dll</path><vendor>PUP.Optional.Linkury.A</vendor><action></action><hash>ba68a924d0ab88ae36d93edaa95a5aa6</hash></file> <file><path>C:\ProgramData\374311380\BITE419.tmp</path><vendor>Rogue.Multiple</vendor><action></action><hash>1111785586f565d1a4c9f9bbff0343bd</hash></file> <file><path>C:\Users\Arni\AppData\Local\Temp\comh.171948\GoogleCrashHandler.exe</path><vendor>PUP.Optional.GlobalUpdate.A</vendor><action></action><hash>92907d509ddef343bf7d9f3fa16150b0</hash></file> <file><path>C:\Users\Arni\AppData\Local\Temp\comh.171948\GoogleUpdate.exe</path><vendor>PUP.Optional.GlobalUpdate.A</vendor><action></action><hash>92907d509ddef343bf7d9f3fa16150b0</hash></file> <file><path>C:\Users\Arni\AppData\Local\Temp\comh.171948\GoogleUpdateBroker.exe</path><vendor>PUP.Optional.GlobalUpdate.A</vendor><action></action><hash>92907d509ddef343bf7d9f3fa16150b0</hash></file> <file><path>C:\Users\Arni\AppData\Local\Temp\comh.171948\GoogleUpdateHelper.msi</path><vendor>PUP.Optional.GlobalUpdate.A</vendor><action></action><hash>92907d509ddef343bf7d9f3fa16150b0</hash></file> <file><path>C:\Users\Arni\AppData\Local\Temp\comh.171948\GoogleUpdateOnDemand.exe</path><vendor>PUP.Optional.GlobalUpdate.A</vendor><action></action><hash>92907d509ddef343bf7d9f3fa16150b0</hash></file> <file><path>C:\Users\Arni\AppData\Local\Temp\comh.171948\goopdate.dll</path><vendor>PUP.Optional.GlobalUpdate.A</vendor><action></action><hash>92907d509ddef343bf7d9f3fa16150b0</hash></file> <file><path>C:\Users\Arni\AppData\Local\Temp\comh.171948\goopdateres_en.dll</path><vendor>PUP.Optional.GlobalUpdate.A</vendor><action></action><hash>92907d509ddef343bf7d9f3fa16150b0</hash></file> <file><path>C:\Users\Arni\AppData\Local\Temp\comh.171948\npGoogleUpdate4.dll</path><vendor>PUP.Optional.GlobalUpdate.A</vendor><action></action><hash>92907d509ddef343bf7d9f3fa16150b0</hash></file> <file><path>C:\Users\Arni\AppData\Local\Temp\comh.171948\psmachine.dll</path><vendor>PUP.Optional.GlobalUpdate.A</vendor><action></action><hash>92907d509ddef343bf7d9f3fa16150b0</hash></file> <file><path>C:\Users\Arni\AppData\Local\Temp\comh.171948\psuser.dll</path><vendor>PUP.Optional.GlobalUpdate.A</vendor><action></action><hash>92907d509ddef343bf7d9f3fa16150b0</hash></file> <file><path>C:\Users\Arni\AppData\Local\Google\Chrome\User Data\Default\Preferences</path><vendor>PUP.Optional.HelperBar.A</vendor><action></action><baddata> "homepage": "hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StLKYZZHUxozG7WbG8M4ZbpPFmdMdnxsM5TEzN82Kso2FnDVDlINIqz7PjaO9IXllPXezzsIaCyRcPaTmBJjxU_uG9uSZcKZqq5OMoLLxtKaKTCFD4Pnp_QTus-BloCKggYNBh32_wFV4xIkZtkz95QvxT9etapsn48iQGtmswz421eERvT46GPM25MQNxKkdOoyvteeMCSw,,",</baddata><gooddata></gooddata><hash>b36f7b523f3c1a1c0c73e534689dbf41</hash></file> </items> </mbam-log> Folgendes mein Anti Virus schreibt schonmal nichtmehr rum das Steam eine bedrohung sei Wo finde ich die anderen Logfiles? Hab es beendet und PC Neugestartet |
31.08.2014, 23:31 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Unerwünschte Werbung in Steam sowie Firefox komme nicht weiter was tun :( Hallo und
__________________Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden? Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520 Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten! Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht! Zudem bitte auch ein Log mit Farbars Tool machen: Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
Themen zu Unerwünschte Werbung in Steam sowie Firefox komme nicht weiter was tun :( |
anti-malware, browser, euro, fertig, firefox, folge, folgendes, gebrauch, gebraucht, jedesmal, malwarebyte, poste, problem, programme, pup.optional.nsxgen, pup.optional.tuvaro, runtergeladen, spiel, srptm.exe, steam, unerwünschte, unerwünschte werbung, vermutlich, verschiedene, was tun, werbung |