![]() |
|
Log-Analyse und Auswertung: SSL Verbindungen nicht möglich, Werbeeinblendungen etc..Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
![]() | ![]() SSL Verbindungen nicht möglich, Werbeeinblendungen etc.. Nabend, also bei ist neuerdings das Problem, dass ich keine SSL Seiten öffnen kann, also alles mit https. Habe nun eine Logdatei von Malwarebytes und Spybot gepostet, was kann man da denn draus erkennen? Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 13.11.2014 Scan Time: 22:55:44 Logfile: Administrator: Yes Version: 2.00.3.1025 Malware Database: v2014.11.13.09 Rootkit Database: v2014.11.12.01 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Disabled OS: Windows 8.1 CPU: x64 File System: NTFS User: Neo Scan Type: Threat Scan Result: Completed Objects Scanned: 369018 Time Elapsed: 16 min, 28 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 2 PUP.Optional.UniversalUpdater.A, C:\Program Files (x86)\Universal Updater\CrashMon.exe, 5616, , [8bc2cd6e007c2b0b42742d3eaa59f50b] PUP.Optional.UniversalUpdater.A, C:\Program Files (x86)\Universal Updater\UpdaterService.exe, 3836, , [8bc2cd6e007c2b0b42742d3eaa59f50b] Modules: 0 (No malicious items detected) Registry Keys: 14 PUP.Optional.Snapdo.T, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{006ee092-9658-4fd6-bd8e-a21a348e59f5}, , [440929126c10c670fcc133bf45bd728e], PUP.Optional.HDStreamer.A, HKLM\SOFTWARE\CLASSES\HD Streamer.ScriptHostObject, , [fb52cc6f96e6a690dca6437225ddb050], PUP.Optional.HDStreamer.A, HKLM\SOFTWARE\CLASSES\HD Streamer.ScriptHostObject.1, , [f65786b5522a60d6d6aca80d0ff3728e], PUP.Optional.HDStreamer.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\HD Streamer.ScriptHostObject, , [f65786b5522a60d6d6aca80d0ff3728e], PUP.Optional.HDStreamer.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\HD Streamer.ScriptHostObject.1, , [f65786b5522a60d6d6aca80d0ff3728e], PUP.Optional.UniversalUpdater.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\UniversalUpdater, , [8bc2cd6e007c2b0b42742d3eaa59f50b], PUP.Optional.Salus.A, HKLM\SOFTWARE\WOW6432NODE\Salus, , [b39a73c85e1eed49d87b40ff649f649c], PUP.Optional.SnapDo.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{FB385922-2E32-4462-A7DC-27159614A660}, , [113ceb50106c1c1a65b7e86e8c77c838], PUP.Optional.Salus.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Salus, , [2e1ffa41532952e42bceaf90a45f817f], PUP.Optional.ReMarkit.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Re_markit, , [19347bc00379f73fbaa41623fa09aa56], PUP.Optional.ReMarkit.A, HKU\S-1-5-21-4021730028-2611376806-967486672-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Re_markit, , [44092912bdbfe74f7de121182ad9669a], PUP.Optional.InstallCore.A, HKU\S-1-5-21-4021730028-2611376806-967486672-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, , [68e534071d5ffc3a30d3f8770af93ac6], PUP.Optional.InstallCore.A, HKU\S-1-5-21-4021730028-2611376806-967486672-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, , [9ab352e98fedc57174c77213e3213cc4], PUP.Optional.SuperFish.A, HKU\S-1-5-21-4021730028-2611376806-967486672-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\superfish.com, , [1f2e1e1dbbc163d3d7c2480323e06d93], Registry Values: 5 PUP.Optional.Bundle, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Salus CrashMon, "C:\Program Files (x86)\f552dd4c52e3\a7d12b5975b4.exe" "b786bdb3c67d.exe" "hxxp://log.data-url.com/salus/crash", , [8dc0d6652557da5cd2651822c63feb15] PUP.Optional.UniversalUpdater.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|CrashMon, "C:\Program Files (x86)\Universal Updater\CrashMon.exe" "UniversalUpdater", , [8bc2cd6e007c2b0b42742d3eaa59f50b] PUP.Optional.UniversalUpdater.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\UNIVERSALUPDATER|ImagePath, C:\Program Files (x86)\Universal Updater\UpdaterService.exe, , [39143308bebed75fddda82e94fb46f91] PUP.Optional.InstallCore.A, HKU\S-1-5-21-4021730028-2611376806-967486672-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, 0R2Y1I1P1N0J1U1C, , [9ab352e98fedc57174c77213e3213cc4] PUP.Optional.QuickStart.A, HKU\S-1-5-21-4021730028-2611376806-967486672-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\EXTENDS|appid, quick_start@gmail.com, , [2e1f52e9c0bc78bef1b426272fd4b64a] Registry Data: 8 PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Good: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Bad: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),,[81ccf348a2da0c2a9b61b195d2337987] PUP.Optional.SnapDo.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPBDDI6Pk-fpITtt_7-dx2uywuT-4gdlO-xkuKtzfsTQg0iHq479UdDx0gr_AOT-HMvba7NyKJEnmvKQ0GzMHvr-ySCO0-3Te0PbmfCNBQh6w3eba5_DiucFdLYTB9pFW2cL4NJdjxdt3hOhFUD8xYbZwZWIFyg5rrfRBjDSxIi8A,,, Good: (www.google.com), Bad: (hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPBDDI6Pk-fpITtt_7-dx2uywuT-4gdlO-xkuKtzfsTQg0iHq479UdDx0gr_AOT-HMvba7NyKJEnmvKQ0GzMHvr-ySCO0-3Te0PbmfCNBQh6w3eba5_DiucFdLYTB9pFW2cL4NJdjxdt3hOhFUD8xYbZwZWIFyg5rrfRBjDSxIi8A,,),,[014c1d1e126a53e3ca7ba3988d787b85] PUP.Optional.SnapDo.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Bar, hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPBDDI6Pk-fpITtt_7-dx2uywuT-4gdlO-xkuKtzfsTQg0iHq479UdDx0gr_AOT-HMvba7NyKJEnmvKQ0GzMHvr-ySCO0-3Te0PbmfCNBQh6w3SBKgxVQ_XSw4QbQNn23-VOI-0FmHGoBqkXyViEiSNV8p1-mjMgwtr9NBPgUZuHg,,&q={searchTerms}, Good: (www.google.com), Bad: (hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPBDDI6Pk-fpITtt_7-dx2uywuT-4gdlO-xkuKtzfsTQg0iHq479UdDx0gr_AOT-HMvba7NyKJEnmvKQ0GzMHvr-ySCO0-3Te0PbmfCNBQh6w3SBKgxVQ_XSw4QbQNn23-VOI-0FmHGoBqkXyViEiSNV8p1-mjMgwtr9NBPgUZuHg,,&q={searchTerms}),,[0b426ad10577af87340f2b1016ef07f9] PUP.Optional.SnapDo.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPBDDI6Pk-fpITtt_7-dx2uywuT-4gdlO-xkuKtzfsTQg0iHq479UdDx0gr_AOT-HMvba7NyKJEnmvKQ0GzMHvr-ySCO0-3Te0PbmfCNBQh6w3SBKgxVQ_XSw4QbQNn23-VOI-0FmHGoBqkXyViEiSNV8p1-mjMgwtr9NBPgUZuHg,,&q={searchTerms}, Good: (www.google.com), Bad: (hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPBDDI6Pk-fpITtt_7-dx2uywuT-4gdlO-xkuKtzfsTQg0iHq479UdDx0gr_AOT-HMvba7NyKJEnmvKQ0GzMHvr-ySCO0-3Te0PbmfCNBQh6w3SBKgxVQ_XSw4QbQNn23-VOI-0FmHGoBqkXyViEiSNV8p1-mjMgwtr9NBPgUZuHg,,&q={searchTerms}),,[b697f84378045cda75cf44f753b26c94] PUP.Optional.SnapDo.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Default_Search_URL, hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPBDDI6Pk-fpITtt_7-dx2uywuT-4gdlO-xkuKtzfsTQg0iHq479UdDx0gr_AOT-HMvba7NyKJEnmvKQ0GzMHvr-ySCO0-3Te0PbmfCNBQh6w3SBKgxVQ_XSw4QbQNn23-VOI-0FmHGoBqkXyViEiSNV8p1-mjMgwtr9NBPgUZuHg,,&q={searchTerms}, Good: (www.google.com), Bad: (hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPBDDI6Pk-fpITtt_7-dx2uywuT-4gdlO-xkuKtzfsTQg0iHq479UdDx0gr_AOT-HMvba7NyKJEnmvKQ0GzMHvr-ySCO0-3Te0PbmfCNBQh6w3SBKgxVQ_XSw4QbQNn23-VOI-0FmHGoBqkXyViEiSNV8p1-mjMgwtr9NBPgUZuHg,,&q={searchTerms}),,[e6676bd00e6e1422192d95a6f1148c74] PUP.Optional.SnapDo.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|SearchAssistant, hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPBDDI6Pk-fpITtt_7-dx2uywuT-4gdlO-xkuKtzfsTQg0iHq479UdDx0gr_AOT-HMvba7NyKJEnmvKQ0GzMHvr-ySCO0-3Te0PbmfCNBQh6w3SBKgxVQ_XSw4QbQNn23-VOI-0FmHGoBqkXyViEiSNV8p1-mjMgwtr9NBPgUZuHg,,&q={searchTerms}, Good: (www.google.com), Bad: (hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPBDDI6Pk-fpITtt_7-dx2uywuT-4gdlO-xkuKtzfsTQg0iHq479UdDx0gr_AOT-HMvba7NyKJEnmvKQ0GzMHvr-ySCO0-3Te0PbmfCNBQh6w3SBKgxVQ_XSw4QbQNn23-VOI-0FmHGoBqkXyViEiSNV8p1-mjMgwtr9NBPgUZuHg,,&q={searchTerms}),,[9cb128134a32ad8948ffe8538184fc04] PUP.Optional.SnapDo.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|Default, hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPBDDI6Pk-fpITtt_7-dx2uywuT-4gdlO-xkuKtzfsTQg0iHq479UdDx0gr_AOT-HMvba7NyKJEnmvKQ0GzMHvr-ySCO0-3Te0PbmfCNBQh6w3SBKgxVQ_XSw4QbQNn23-VOI-0FmHGoBqkXyViEiSNV8p1-mjMgwtr9NBPgUZuHg,,&q={searchTerms}, Good: (www.google.com), Bad: (hxxp://feed.snapdo.com/?p=mKO_AwFzXIpYRbPBDDI6Pk-fpITtt_7-dx2uywuT-4gdlO-xkuKtzfsTQg0iHq479UdDx0gr_AOT-HMvba7NyKJEnmvKQ0GzMHvr-ySCO0-3Te0PbmfCNBQh6w3SBKgxVQ_XSw4QbQNn23-VOI-0FmHGoBqkXyViEiSNV8p1-mjMgwtr9NBPgUZuHg,,&q={searchTerms}),,[8fbe77c40676270fdb67f546b550ab55] PUP.Optional.Spigot.A, HKU\S-1-5-21-4021730028-2611376806-967486672-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, https://de.search.yahoo.com/?type=501549&fr=spigot-yhp-ie, Good: (www.google.com), Bad: (https://de.search.yahoo.com/?type=501549&fr=spigot-yhp-ie),,[0647f14a611b8fa71b0c3ffd8f76ff01] Folders: 5 PUP.Optional.UniversalUpdater.A, C:\Program Files (x86)\Universal Updater, , [8bc2cd6e007c2b0b42742d3eaa59f50b], PUP.Optional.HDStreamer.A, C:\Users\Neo\AppData\Local\HD Streamer, , [e36ac6750e6e70c681f70c1133d0867a], PUP.Optional.HDStreamer, C:\Program Files (x86)\HD Streamer, , [b09df348621ac1758b4b66b837cc9d63], PUP.Optional.PriceFountain.A, C:\Users\Neo\AppData\Local\PriceFountain, , [2825211a295357df56295eca2bd8768a], PUP.Optional.PriceFountain.A, C:\Users\Neo\AppData\Local\PriceFountain\logs, , [2825211a295357df56295eca2bd8768a], Files: 14 PUP.Optional.Bundle, C:\Program Files (x86)\f552dd4c52e3\a7d12b5975b4.exe, , [8dc0d6652557da5cd2651822c63feb15], PUP.Optional.Salus.A, C:\Program Files (x86)\f552dd4c52e3\uninstall.exe, , [d07d8eadfe7ee551f0fb02b6fd045ea2], PUP.Optional.Salus.A, C:\Windows\Temp\5762.tmp, , [dd7044f76c101026ea36a724e61b2dd3], PUP.Optional.Salus.A, C:\Windows\Temp\8DCB.tmp, , [68e51526d5a7ed49be62705bf40d32ce], PUP.Optional.Softonic.A, C:\Users\Neo\Downloads\SoftonicDownloader_fuer_usenext-by-tangysoft.exe, , [0f3e9aa118643501b77880b90ef37d83], PUP.Optional.SnapDo.A, C:\Windows\Installer\3f13e2a.msi, , [103dee4d8af20f278e8d2d709c65f30d], PUP.Optional.SmartBar, C:\Windows\Installer\3f13e2f.msi, , [f657df5cfb8171c5e76c114c20e0b24e], PUP.Optional.SmartBar, C:\Windows\Installer\MSICE74.tmp, , [b19cd96218642c0ad47ce34b0ff16f91], PUP.Optional.UniversalUpdater.A, C:\Program Files (x86)\Universal Updater\settings.json, , [8bc2cd6e007c2b0b42742d3eaa59f50b], PUP.Optional.UniversalUpdater.A, C:\Program Files (x86)\Universal Updater\CrashMon.exe, , [8bc2cd6e007c2b0b42742d3eaa59f50b], PUP.Optional.UniversalUpdater.A, C:\Program Files (x86)\Universal Updater\CrashMon.log, , [8bc2cd6e007c2b0b42742d3eaa59f50b], PUP.Optional.UniversalUpdater.A, C:\Program Files (x86)\Universal Updater\UpdaterService.exe, , [8bc2cd6e007c2b0b42742d3eaa59f50b], PUP.Optional.UniversalUpdater.A, C:\Program Files (x86)\Universal Updater\UpdaterService.log, , [8bc2cd6e007c2b0b42742d3eaa59f50b], PUP.Optional.PriceFountain.A, C:\Users\Neo\AppData\Local\PriceFountain\logs\installation.log, , [2825211a295357df56295eca2bd8768a], Physical Sectors: 0 (No malicious items detected) (end) -------------------------------------------------------------------------------------- Search results from Spybot - Search & Destroy 13.11.2014 21:55:40 Scan took 00:54:27. 17 items found. Salus: [SBI $02CA90FA] Uninstall settings (Registry Key, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Salus Internet Explorer: [SBI $1E8157BE] Typed URL list (Registry Key, nothing done) HKEY_USERS\S-1-5-21-4021730028-2611376806-967486672-1001\Software\Microsoft\Internet Explorer\TypedURLs Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done) HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done) HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent MS DirectDraw: [SBI $EB49D5AF] Most recent application (Registry Change, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name Windows: [SBI $1E4E2003] Drivers installation paths (Registry Change, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources Windows: [SBI $1E4E2003] Drivers installation paths (Registry Change, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\Installation Sources Windows.OpenWith: [SBI $F7204896] Open with list - .AVI extension (Registry Key, nothing done) HKEY_USERS\S-1-5-21-4021730028-2611376806-967486672-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AVI\OpenWithList Windows.OpenWith: [SBI $A1C94E79] Open with list - .BMP extension (Registry Key, nothing done) HKEY_USERS\S-1-5-21-4021730028-2611376806-967486672-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BMP\OpenWithList Windows Explorer: [SBI $D20DA0AD] Recent file global history (Registry Key, nothing done) HKEY_USERS\S-1-5-21-4021730028-2611376806-967486672-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs Windows Explorer: [SBI $85C2C910] Last Copy/MoveTo folder (Registry Value, nothing done) HKEY_USERS\S-1-5-21-4021730028-2611376806-967486672-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\CopyMoveTo\LastFolder Windows Media SDK: [SBI $37AAEDE6] Computer name (Registry Change, nothing done) HKEY_USERS\S-1-5-21-4021730028-2611376806-967486672-1001\Software\Microsoft\Windows Media\WMSDK\General\ComputerName Windows Media SDK: [SBI $CAA58B6E] Unique ID (Registry Change, nothing done) HKEY_USERS\S-1-5-21-4021730028-2611376806-967486672-1001\Software\Microsoft\Windows Media\WMSDK\General\UniqueID Windows Media SDK: [SBI $BACCD0DA] Volume serial number (Registry Value, nothing done) HKEY_USERS\S-1-5-21-4021730028-2611376806-967486672-1001\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber Cookie: [SBI $49804B54] Browser: Cookie (71) (Browser: Cookie, nothing done) Cache: [SBI $49804B54] Browser: Cache (4348) (Browser: Cache, nothing done) Verlauf: [SBI $49804B54] Browser: History (595) (Browser: History, nothing done) --- Spybot - Search & Destroy version: 2.1.18.131 DLL (build: 20130516) --- 2013-09-20 blindman.exe (2.2.18.151) 2013-09-20 explorer.exe (2.2.18.177) 2013-09-20 SDBootCD.exe (2.2.18.109) 2013-09-20 SDCleaner.exe (2.2.18.110) 2013-09-20 SDDelFile.exe (2.2.18.94) 2013-06-18 SDDisableProxy.exe 2013-09-20 SDFiles.exe (2.2.18.135) 2013-09-20 SDFileScanHelper.exe (2.2.16.1) 2013-10-15 SDFSSvc.exe (2.2.25.211) 2013-10-10 SDHookHelper.exe (2.3.30.2) 2013-10-10 SDHookInst32.exe (2.3.30.2) 2013-10-10 SDHookInst64.exe (2.3.30.2) 2013-09-20 SDImmunize.exe (2.2.18.130) 2013-05-16 SDLogReport.exe (2.1.18.107) 2013-10-14 SDOnAccess.exe (2.2.25.4) 2013-09-20 SDPESetup.exe (2.2.18.3) 2013-09-20 SDPEStart.exe (2.2.18.86) 2013-09-20 SDPhoneScan.exe (2.2.18.28) 2013-09-20 SDPRE.exe (2.2.18.22) 2013-09-20 SDPrepPos.exe (2.2.18.10) 2013-09-20 SDQuarantine.exe (2.2.18.103) 2013-09-20 SDRootAlyzer.exe (2.2.18.116) 2013-09-20 SDSBIEdit.exe (2.2.18.39) 2013-09-20 SDScan.exe (2.2.18.177) 2013-09-20 SDScript.exe (2.2.18.53) 2013-10-15 SDSettings.exe (2.2.25.138) 2013-09-20 SDShell.exe (2.2.18.2) 2013-09-20 SDShred.exe (2.2.18.107) 2013-09-20 SDSysRepair.exe (2.2.18.101) 2013-09-20 SDTools.exe (2.2.18.150) 2013-07-25 SDTray.exe (2.1.21.129) 2013-09-20 SDUpdate.exe (2.2.18.91) 2013-09-20 SDUpdSvc.exe (2.2.18.76) 2013-09-20 SDWelcome.exe (2.2.21.129) 2013-09-13 SDWSCSvc.exe (2.2.22.2) 2014-05-20 spybotsd2-install-bdcore-update.exe (2.3.39.0) 2014-07-31 spybotsd2-translation-esx.exe 2013-06-19 spybotsd2-translation-frx.exe 2014-08-25 spybotsd2-translation-hux2.exe 2014-10-01 spybotsd2-translation-nlx2.exe 2014-11-05 spybotsd2-translation-ukx.exe 2014-03-18 unins000.exe (51.1052.0.0) 1999-12-02 xcacls.exe 2012-08-23 borlndmm.dll (10.0.2288.42451) 2012-09-05 DelZip190.dll (1.9.0.107) 2012-09-10 libeay32.dll (1.0.0.4) 2012-09-10 libssl32.dll (1.0.0.4) 2013-05-16 SDAdvancedCheckLibrary.dll (2.1.18.98) 2013-05-16 SDAV.dll 2013-05-16 SDECon32.dll (2.1.18.113) 2013-05-16 SDECon64.dll (2.1.18.113) 2013-04-05 SDEvents.dll (2.1.16.2) 2013-10-14 SDFileScanLibrary.dll (2.2.25.14) 2013-10-10 SDHook32.dll (2.3.30.2) 2013-10-10 SDHook64.dll (2.3.30.2) 2013-05-16 SDImmunizeLibrary.dll (2.1.18.2) 2013-05-16 SDLicense.dll (2.1.18.0) 2013-05-16 SDLists.dll (2.1.18.4) 2013-05-16 SDResources.dll (2.1.18.7) 2013-05-16 SDScanLibrary.dll (2.1.18.131) 2013-05-16 SDTasks.dll (2.1.18.15) 2013-05-16 SDWinLogon.dll (2.1.18.0) 2012-08-23 sqlite3.dll 2012-09-10 ssleay32.dll (1.0.0.4) 2013-05-16 Tools.dll (2.1.18.36) 2014-03-05 Includes\Adware-000.sbi (*) 2014-01-08 Includes\Adware-001.sbi (*) 2014-11-11 Includes\Adware-C.sbi (*) 2014-01-13 Includes\Adware.sbi (*) 2014-01-13 Includes\AdwareC.sbi (*) 2010-08-13 Includes\Cookies.sbi (*) 2014-01-08 Includes\Dialer-000.sbi (*) 2014-01-08 Includes\Dialer-001.sbi (*) 2014-01-08 Includes\Dialer-C.sbi (*) 2014-01-13 Includes\Dialer.sbi (*) 2014-01-13 Includes\DialerC.sbi (*) 2014-01-09 Includes\Fraud-000.sbi (*) 2014-01-09 Includes\Fraud-001.sbi (*) 2014-03-31 Includes\Fraud-002.sbi (*) 2014-01-09 Includes\Fraud-003.sbi (*) 2012-11-14 Includes\HeavyDuty.sbi (*) 2014-01-08 Includes\Hijackers-000.sbi (*) 2014-01-08 Includes\Hijackers-001.sbi (*) 2014-01-08 Includes\Hijackers-C.sbi (*) 2014-01-13 Includes\Hijackers.sbi (*) 2014-01-13 Includes\HijackersC.sbi (*) 2014-01-08 Includes\iPhone-000.sbi (*) 2014-01-08 Includes\iPhone.sbi (*) 2014-01-08 Includes\Keyloggers-000.sbi (*) 2014-09-24 Includes\Keyloggers-C.sbi (*) 2014-01-13 Includes\Keyloggers.sbi (*) 2014-01-13 Includes\KeyloggersC.sbi (*) 2014-10-07 Includes\Malware-000.sbi (*) 2014-01-09 Includes\Malware-001.sbi (*) 2014-01-09 Includes\Malware-002.sbi (*) 2014-02-05 Includes\Malware-003.sbi (*) 2014-01-28 Includes\Malware-004.sbi (*) 2014-04-15 Includes\Malware-005.sbi (*) 2014-02-26 Includes\Malware-006.sbi (*) 2014-01-09 Includes\Malware-007.sbi (*) 2014-11-05 Includes\Malware-C.sbi (*) 2014-01-13 Includes\Malware.sbi (*) 2013-12-23 Includes\MalwareC.sbi (*) 2014-01-15 Includes\PUPS-000.sbi (*) 2014-01-15 Includes\PUPS-001.sbi (*) 2014-01-15 Includes\PUPS-002.sbi (*) 2014-11-12 Includes\PUPS-C.sbi (*) 2012-11-14 Includes\PUPS.sbi (*) 2014-01-07 Includes\PUPSC.sbi (*) 2014-01-08 Includes\Security-000.sbi (*) 2014-01-08 Includes\Security-C.sbi (*) 2014-01-21 Includes\Security.sbi (*) 2014-01-21 Includes\SecurityC.sbi (*) 2014-01-08 Includes\Spyware-000.sbi (*) 2014-01-08 Includes\Spyware-001.sbi (*) 2014-10-29 Includes\Spyware-C.sbi (*) 2014-01-21 Includes\Spyware.sbi (*) 2014-01-21 Includes\SpywareC.sbi (*) 2011-06-07 Includes\Tracks.sbi (*) 2012-11-19 Includes\Tracks.uti (*) 2014-01-15 Includes\Trojans-000.sbi (*) 2014-01-15 Includes\Trojans-001.sbi (*) 2014-01-15 Includes\Trojans-002.sbi (*) 2014-01-15 Includes\Trojans-003.sbi (*) 2014-01-15 Includes\Trojans-004.sbi (*) 2014-03-19 Includes\Trojans-005.sbi (*) 2014-07-09 Includes\Trojans-006.sbi (*) 2014-01-15 Includes\Trojans-007.sbi (*) 2014-07-09 Includes\Trojans-008.sbi (*) 2014-07-09 Includes\Trojans-009.sbi (*) 2014-11-11 Includes\Trojans-C.sbi (*) 2014-01-15 Includes\Trojans-OG-000.sbi (*) 2014-01-15 Includes\Trojans-TD-000.sbi (*) 2014-01-15 Includes\Trojans-VM-000.sbi (*) 2014-01-15 Includes\Trojans-VM-001.sbi (*) 2014-01-15 Includes\Trojans-VM-002.sbi (*) 2014-01-15 Includes\Trojans-VM-003.sbi (*) 2014-01-15 Includes\Trojans-VM-004.sbi (*) 2014-01-15 Includes\Trojans-VM-005.sbi (*) 2014-01-15 Includes\Trojans-VM-006.sbi (*) 2014-01-15 Includes\Trojans-VM-007.sbi (*) 2014-01-15 Includes\Trojans-VM-008.sbi (*) 2014-01-15 Includes\Trojans-VM-009.sbi (*) 2014-01-15 Includes\Trojans-VM-010.sbi (*) 2014-01-15 Includes\Trojans-VM-011.sbi (*) 2014-01-15 Includes\Trojans-VM-012.sbi (*) 2014-01-15 Includes\Trojans-VM-013.sbi (*) 2014-01-15 Includes\Trojans-VM-014.sbi (*) 2014-01-15 Includes\Trojans-VM-015.sbi (*) 2014-01-15 Includes\Trojans-VM-016.sbi (*) 2014-01-15 Includes\Trojans-VM-017.sbi (*) 2014-01-15 Includes\Trojans-VM-018.sbi (*) 2014-01-15 Includes\Trojans-VM-019.sbi (*) 2014-01-15 Includes\Trojans-VM-020.sbi (*) 2014-01-15 Includes\Trojans-VM-021.sbi (*) 2014-01-15 Includes\Trojans-VM-022.sbi (*) 2014-01-15 Includes\Trojans-VM-023.sbi (*) 2014-01-15 Includes\Trojans-VM-024.sbi (*) 2014-01-15 Includes\Trojans-ZB-000.sbi (*) 2014-01-15 Includes\Trojans-ZL-000.sbi (*) 2014-01-09 Includes\Trojans.sbi (*) 2014-01-16 Includes\TrojansC-01.sbi (*) 2014-01-16 Includes\TrojansC-02.sbi (*) 2014-01-16 Includes\TrojansC-03.sbi (*) 2014-01-16 Includes\TrojansC-04.sbi (*) 2014-01-16 Includes\TrojansC-05.sbi (*) 2014-01-09 Includes\TrojansC.sbi (*) -------------------------------------------------------------------------------------- |