Code:
Alles auswählen Aufklappen ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 04-01-2015
Ran by PierreG at 2015-01-05 15:51:35 Run:1
Running from C:\Users\PierreG\Downloads\FRST-OlderVersion\FRST-OlderVersion\FRST-OlderVersion
Loaded Profile: PierreG (Available profiles: PierreG)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about :blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about :blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about :blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about :blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about :blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about :blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about :blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about :blank
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: AppputoU -> {9344fecf-05f8-4377-99a4-8c235d0aa461} -> C:\ProgramData\AppputoU\PXD1w8coDSxFPy.x64.dll No File
BHO: savingtoyou -> {af966d1e-eac5-4572-bade-6f2228a64f79} -> C:\ProgramData\savingtoyou\357JVFIbndN1IK.x64.dll No File
C:\ProgramData\savingtoyou
C:\ProgramData\AppputoU
EmptyTemp:
Hosts:
*****************
"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9344fecf-05f8-4377-99a4-8c235d0aa461}" => Key deleted successfully.
"HKCR\CLSID\{9344fecf-05f8-4377-99a4-8c235d0aa461}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{af966d1e-eac5-4572-bade-6f2228a64f79}" => Key deleted successfully.
"HKCR\CLSID\{af966d1e-eac5-4572-bade-6f2228a64f79}" => Key deleted successfully.
"C:\ProgramData\savingtoyou" => File/Directory not found.
"C:\ProgramData\AppputoU" => File/Directory not found.
"C:\Windows\System32\Drivers\etc\hosts" => Could not move.
Could not reset Hosts.
EmptyTemp: => Removed 1.1 GB temporary data.
The system needed a reboot.
==== End of Fixlog 15:51:50 ====
Tut mir leid hatte es dann gelesen als ich nochmal clickte... War noch nicht aktualisiert.
Zudem muss ich noch erwähnen das Avira irgendwas geblockt hat mit HOSTS. Beim dem Fix-Durchlauf.