|
Log-Analyse und Auswertung: Windows 8 & Windows 7 Laptop beide stark Adware verseuchtWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
08.07.2015, 18:33 | #1 |
| Windows 8 & Windows 7 Laptop beide stark Adware verseucht Moin, ich hab mal wieder 2 Laptops aus der Bekanntschaft bekommen. Beide sind extremst zugemüllt mit Adware, die ich soweit es ging mit Malwarebytes, Adwcleaner und JRT bearbeitet habe. Dennoch ist der Windows 7 Laptop super langsam obwohl der noch kein Jahr alt ist. Und der Windows 8 Laptop hat das Problem, dass sich das Sicherheitscenter nicht aktivieren lässt, da angeblich der Dienst nicht installiert ist. Ich würde wohl mit dem Windows 8 Laptop anfangen: Malwarebytes: Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 08.07.2015 Suchlaufzeit: 00:57 Protokolldatei: mbam1.txt Administrator: Ja Version: 2.1.8.1057 Malware-Datenbank: v2015.07.07.06 Rootkit-Datenbank: v2015.07.07.01 Lizenz: Kostenlose Version Malware-Schutz: Deaktiviert Schutz vor bösartigen Websites: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 8.1 CPU: x64 Dateisystem: NTFS Benutzer: Felix Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 395499 Abgelaufene Zeit: 47 Min., 0 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Aktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 12 PUP.Optional.HQCinemax.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954-6.exe, 3800, Löschen bei Neustart, [648e4698cbbf45f1685c8c0445c1738d] PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\gmsd_de_283\upgmsd_de_283.exe, 4980, Löschen bei Neustart, [767c13cbfe8cf046530c256f6f97f907] PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe, 5464, Löschen bei Neustart, [50a28856a1e957df690c642fe81e05fb] PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe, 3500, Löschen bei Neustart, [50a28856a1e957df690c642fe81e05fb] PUP.Optional.Tuto4PC.A, C:\Program Files (x86)\gmsd_de_283\gmsd_de_283.exe, 5616, Löschen bei Neustart, [48aabe207713d561c59ac7cdb4520bf5] PUP.Optional.OptimizerPro, C:\ProgramData\{29efd0f5-4e5f-1d8b-29ef-fd0f54e543d5}\hqghumeaylnlf.exe, 5756, Löschen bei Neustart, [8d6534aabdcd92a4c261a5a31de5a15f] PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProReminder.exe, 4752, Löschen bei Neustart, [36bc6975e1a98aac87b76afca65c3ac6] PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ProtectService.exe, 12084, Löschen bei Neustart, [df13607e0585b185cca6a37761a1bb45] PUP.Optional.MaintainerSvc.A, C:\ProgramData\06154ba7-7ceb-4959-a6bd-bf38bdec8cc6\maintainer.exe, 1828, Löschen bei Neustart, [d51d1ac46129bf773459609e847dc739] PUP.Optional.3DBubbleSound.A, C:\Program Files\BubbleSound\3D BubbleSound.exe, 5236, Löschen bei Neustart, [8969af2fd3b7d85ea81e9d63689ca65a] PUP.Optional.WindowsMangerProtect.A, C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe, 6352, Löschen bei Neustart, [8b677965f3972610beb95cb9b64e718f] PUP.Optional.Picexa.A, C:\Program Files (x86)\Picexa\picexasvc.exe, 5860, Löschen bei Neustart, [5a984e9090faf64035692971887d7c84] Module: 10 PUP.Optional.MultiPlug.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProMon.dll, Löschen bei Neustart, [6092fde109811f17903ffd5d50b29070], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome_elf.dll, Löschen bei Neustart, [f002c7171377d6603441395a07ff36ca], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome_elf.dll, Löschen bei Neustart, [f002c7171377d6603441395a07ff36ca], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, Löschen bei Neustart, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, Löschen bei Neustart, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome_child.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\d3dcompiler_46.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\libegl.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\libglesv2.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], Registrierungsschlüssel: 411 PUP.Optional.XTab.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IHProtect Service, In Quarantäne, [df13607e0585b185cca6a37761a1bb45], PUP.Optional.MaintainerSvc.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MaintainerSvc3.22.1827446, In Quarantäne, [d51d1ac46129bf773459609e847dc739], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\P776E9568_E541_4488_8316_1917BC65830C_.P776E9568_E541_4488_8316_1917BC65830C_, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\P776E9568_E541_4488_8316_1917BC65830C_.P776E9568_E541_4488_8316_1917BC65830C_.9, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P776E9568_E541_4488_8316_1917BC65830C_.P776E9568_E541_4488_8316_1917BC65830C_, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P776E9568_E541_4488_8316_1917BC65830C_.P776E9568_E541_4488_8316_1917BC65830C_.9, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\P776E9568_E541_4488_8316_1917BC65830C_.P776E9568_E541_4488_8316_1917BC65830C_, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\P776E9568_E541_4488_8316_1917BC65830C_.P776E9568_E541_4488_8316_1917BC65830C_.9, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{776E9568-E541-4488-8316-1917BC65830C}\INPROCSERVER32, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.P751FD1B9_9FF6_414A_9ED1_44BC2571886A_, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.9, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.P751FD1B9_9FF6_414A_9ED1_44BC2571886A_, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.9, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.P751FD1B9_9FF6_414A_9ED1_44BC2571886A_, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.9, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}\INPROCSERVER32, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\PDD7916DA_F237_46B3_9496_BF772CA330DC_.PDD7916DA_F237_46B3_9496_BF772CA330DC_, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\PDD7916DA_F237_46B3_9496_BF772CA330DC_.PDD7916DA_F237_46B3_9496_BF772CA330DC_.9, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PDD7916DA_F237_46B3_9496_BF772CA330DC_.PDD7916DA_F237_46B3_9496_BF772CA330DC_, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PDD7916DA_F237_46B3_9496_BF772CA330DC_.PDD7916DA_F237_46B3_9496_BF772CA330DC_.9, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\PDD7916DA_F237_46B3_9496_BF772CA330DC_.PDD7916DA_F237_46B3_9496_BF772CA330DC_, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\PDD7916DA_F237_46B3_9496_BF772CA330DC_.PDD7916DA_F237_46B3_9496_BF772CA330DC_.9, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{DD7916DA-F237-46B3-9496-BF772CA330DC}\INPROCSERVER32, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.PADEB3D1D_442D_4488_80DA_8C288D2B9C98_, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.9, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.PADEB3D1D_442D_4488_80DA_8C288D2B9C98_, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.9, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.PADEB3D1D_442D_4488_80DA_8C288D2B9C98_, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.9, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}\INPROCSERVER32, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\APPID\{01994268-3C10-4044-A1EA-7A9C1B739A11}, In Quarantäne, [36bc528cd1b99c9a747e7645808340c0], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{01994268-3C10-4044-A1EA-7A9C1B739A11}, In Quarantäne, [36bc528cd1b99c9a747e7645808340c0], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\{01994268-3C10-4044-A1EA-7A9C1B739A11}, In Quarantäne, [36bc528cd1b99c9a747e7645808340c0], PUP.Optional.WebSteroids.A, HKLM\SOFTWARE\CLASSES\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}, In Quarantäne, [a74bd509ee9ca591cd622161c93a31cf], PUP.Optional.WebSteroids.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}, In Quarantäne, [a74bd509ee9ca591cd622161c93a31cf], PUP.Optional.WebSteroids.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}, In Quarantäne, [a74bd509ee9ca591cd622161c93a31cf], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.BrowserHelperObject.1, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.BrowserHelperObject, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.BrowserHelperObject, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\IminentWebBooster.BrowserHelperObject, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], PUP.Optional.Iminent.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.BrowserHelperObject.1, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\IminentWebBooster.BrowserHelperObject.1, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], PUP.Optional.Iminent.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], PUP.Optional.Iminent.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], PUP.Optional.DynConIE.A, HKLM\SOFTWARE\CLASSES\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}, In Quarantäne, [14de12cc96f4d95d5ea0ef9224df4eb2], PUP.Optional.DynConIE.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}, In Quarantäne, [14de12cc96f4d95d5ea0ef9224df4eb2], PUP.Optional.DynConIE.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}, In Quarantäne, [14de12cc96f4d95d5ea0ef9224df4eb2], PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], PUP.Optional.LuckyTab.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], PUP.Optional.LuckyTab.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], PUP.Optional.DefaultSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}, In Quarantäne, [9161fbe349410f27eab994e948bbb54b], PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}, In Quarantäne, [9161fbe349410f27eab994e948bbb54b], PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}, In Quarantäne, [9161fbe349410f27eab994e948bbb54b], PUP.Optional.Multiplug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{FE139F4C-CE5B-121A-8A2D-191FA2226094}, In Quarantäne, [d61c31ad286259dd3659cb6ec24007f9], PUP.Optional.Multiplug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{0D566ABB-889B-AF39-7B6A-23D4C5D54542}, In Quarantäne, [b73bbb23d1b95cda711e3603b949738d], PUP.Optionlal.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\HQ Cinemax 1.9cV07.03, In Quarantäne, [3cb6cd1141499f97022a5816b94a9d63], PUP.Optional.Multiplug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{70BD2558-27DA-8B02-02D0-D8704ECD2EDF}, In Quarantäne, [7d754c922a6032048a05c871cb3712ee], PUP.Optionlal.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\System NotifierV07.03, In Quarantäne, [9f538658345648ee1517630b2ed58f71], PUP.Optional.Multiplug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{E370F69F-ED3F-925F-31FC-14D1329A713B}, In Quarantäne, [9959528cf694e84eaee13bfe976b5ea2], PUP.Optional.Multiplug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{23B82977-C816-92D2-66E7-BE67DD1E7786}, In Quarantäne, [fbf737a77f0b7eb899f64feaf21020e0], PUP.Optional.ModGoog, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [cb276b73c8c272c4e371024ce71b1ce4], PUP.Optional.ModGoog, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [cb276b73c8c272c4e371024ce71b1ce4], PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{96BB8E60-6EF9-47E0-9ED8-4AD477ECF427}, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{05273886-A138-4AAA-A965-9B728D8A2B32}, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{0C10CCDE-D834-4C2F-9700-86A1C54BCCBA}, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{11B41CF7-E9F6-4B87-85B1-287D261D30D9}, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{B32D668A-8CCE-43FD-BA94-9EDD5096587D}, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{05273886-A138-4AAA-A965-9B728D8A2B32}, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{0C10CCDE-D834-4C2F-9700-86A1C54BCCBA}, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{11B41CF7-E9F6-4B87-85B1-287D261D30D9}, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{B32D668A-8CCE-43FD-BA94-9EDD5096587D}, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{05273886-A138-4AAA-A965-9B728D8A2B32}, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{0C10CCDE-D834-4C2F-9700-86A1C54BCCBA}, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{11B41CF7-E9F6-4B87-85B1-287D261D30D9}, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{B32D668A-8CCE-43FD-BA94-9EDD5096587D}, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{96BB8E60-6EF9-47E0-9ED8-4AD477ECF427}, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{96BB8E60-6EF9-47E0-9ED8-4AD477ECF427}, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.Iminent.A, HKLM\SOFTWARE\Iminent, In Quarantäne, [9260cf0f464454e21076aba59c687789], PUP.Optional.LolliScan.A, HKLM\SOFTWARE\LolliScan, In Quarantäne, [8270b529c7c3e4528992a86518ecec14], PUP.Optional.Crossbrowse.C, HKLM\SOFTWARE\CLASSES\CRSBRWSHTML, In Quarantäne, [30c225b99cee21150c6c02029272d52b], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdate.OneClickCtrl.10, In Quarantäne, [d31fb12d5f2b0c2a66a2b3e1897c5da3], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdate.OneClickProcessLauncherMachine, In Quarantäne, [f002fbe38dfd03331eeab0e4cb3a6997], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdate.OneClickProcessLauncherMachine.1.0, In Quarantäne, [fff31cc2f694191d3ecac0d433d2ea16], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CoCreateAsync, In Quarantäne, [35bd6f6fb7d32115e623e8ac996ca45c], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CoCreateAsync.1.0, In Quarantäne, [688a8658fe8ccf67db2e3c583bca5da3], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CoreClass, In Quarantäne, [e40ed7071a70a98df8117321877ec43c], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CoreClass.1, In Quarantäne, [b53da13d7d0d8aacd039fb99828354ac], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CoreMachineClass, In Quarantäne, [4fa310ceef9b37ffc643336164a112ee], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CoreMachineClass.1, In Quarantäne, [7181607e5238b08626e3ace81ee78a76], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CredentialDialogMachine, In Quarantäne, [3db5e5f9cac09c9aa0699cf8b84d966a], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CredentialDialogMachine.1.0, In Quarantäne, [9b5756889eec50e64dbc524226df837d], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachine, In Quarantäne, [faf8f2ecddad96a040c9a2f2ee17847c], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachine.1.0, In Quarantäne, [e012cd115b2fa1954dbcb3e17392da26], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachineFallback, In Quarantäne, [2ac836a8becc76c012f7464ea56032ce], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0, In Quarantäne, [2fc3b22ca5e5072f57b26b2985808d73], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.OnDemandCOMClassSvc, In Quarantäne, [f200fde10f7b73c32adfd4c035d007f9], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.OnDemandCOMClassSvc.1.0, In Quarantäne, [06ec815d7e0cd4620aff256fb0552cd4], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.ProcessLauncher, In Quarantäne, [52a01bc358329a9caa5f5d3765a0916f], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.ProcessLauncher.1.0, In Quarantäne, [4da536a8d2b8171f7e8bd0c4f213d927], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3COMClassService, In Quarantäne, [43aff3eb7e0c85b1bf4a8e0661a49868], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3COMClassService.1.0, In Quarantäne, [be3469755b2f5fd763a63064dd281ee2], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3WebMachine, In Quarantäne, [975befeff991de580efbd0c47d88748c], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3WebMachine.1.0, In Quarantäne, [a84a5e80f59575c1ae5b7321c83d6c94], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3WebMachineFallback, In Quarantäne, [ec06bb23d8b291a5fd0cd7bd40c5936d], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3WebMachineFallback.1.0, In Quarantäne, [6191eef02b5ff34389804f4556af4bb5], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3WebSvc, In Quarantäne, [f7fb607eaedc46f0b0594d47e12411ef], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3WebSvc.1.0, In Quarantäne, [7d75f7e7a5e5171fbf4a42527b8add23], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.ScriptExtender, In Quarantäne, [89694d91d8b26dc976b1f472d530d729], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.ScriptExtender.1, In Quarantäne, [d22000dea9e1e65063c4db8b34d17987], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\APPID\Iminent.WebBooster.InternetExplorer.DLL, In Quarantäne, [4fa3ab33c4c6ab8b7b74204d45c0718f], PUP.Optional.MixVideoPlayer.A, HKLM\SOFTWARE\CLASSES\APPLICATIONS\MixVideoPlayer.exe, In Quarantäne, [4ba7f1ed28628da9b077bbdc21e4a15f], PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\Iminent.WebBooster.InternetExplorer.DLL, In Quarantäne, [46ac5f7f9af066d0bb34f6778a7bde22], PUP.Optional.MixVideoPlayer.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPLICATIONS\MixVideoPlayer.exe, In Quarantäne, [9161f5e9246693a3c760e2b5a362cf31], PUP.Optional.Crossbrowse.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\Crossbrowse, In Quarantäne, [ed05bc22f5954ee8a7fb6c981fe503fd], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\27058, In Quarantäne, [29c94698b6d472c47091162e3aca17e9], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\30935, In Quarantäne, [4ba7ce10b4d6de58fb062f1505ffbd43], PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\VC32LDR , In Quarantäne, [708214ca711968ce2d205e3e9f66fd03], PUP.Optional.SearchProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\INSTALLEDSDB\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}, In Quarantäne, [3eb46d71addd13232c676c1b14f17f81], PUP.Optional.SearchProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\INSTALLEDSDB\{cf2797aa-b7ec-e311-8ed9-005056c00008}, In Quarantäne, [a9498f4f038747ef6f23aaddee17e21e], PUP.Optional.Crossbrowse.C, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\crossbrowse.exe, In Quarantäne, [f002fae489011f177405f212bb490bf5], PUM.Security.Hijack.DisableChromeUpdates, HKLM\SOFTWARE\POLICIES\GOOGLE\UPDATE, In Quarantäne, [fff3e1fda0eaee486290b8e360a57a86], PUP.Optional.Crossbrowse.A, HKLM\SOFTWARE\WOW6432NODE\Crossbrowse, In Quarantäne, [04ee607ed4b6e3539b03f014bf457789], PUP.Optional.Delta.A, HKLM\SOFTWARE\WOW6432NODE\delta-homesSoftware, In Quarantäne, [06ec3aa47a102313b9e6f03ac3416e92], PUP.Optional.GamesDesktop.A, HKLM\SOFTWARE\WOW6432NODE\GAMESDESKTOP, In Quarantäne, [6f83409e8cfecf676f8ea07555af7888], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\HQ Cinemax 1.9cV07.03, In Quarantäne, [c32f5688305afa3cefcccc40ca3a38c8], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\HQ Cinemax 1.9cV07.03-nv, In Quarantäne, [678bad31f694290d1ba00efe758f659b], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\HQ Cinemax 1.9cV07.03-nv-ie, In Quarantäne, [b63caf2f424820163a81d636c341bd43], PUP.Optional.IHProtect.A, HKLM\SOFTWARE\WOW6432NODE\IHProtect, In Quarantäne, [b63c7d6145451c1afb3b29e92bd9629e], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\Iminent, In Quarantäne, [876b6e700d7d4de9b3d3e16f7c883ac6], PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\istartsurfSoftware, In Quarantäne, [8e649648127801356b1bb0773ec6758b], PUP.Optional.LolliScan.A, HKLM\SOFTWARE\WOW6432NODE\LolliScan, In Quarantäne, [2cc6a638345696a04bd0f41934d0867a], PUP.Optional.Picexa.A, HKLM\SOFTWARE\WOW6432NODE\Picexa, In Quarantäne, [3fb3a737266449edc0dccad0b451c53b], PUP.Optional.Picexa.A, HKLM\SOFTWARE\WOW6432NODE\PicexaSvc, In Quarantäne, [d91903dbb5d58caaf2abc4d600058c74], PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\SmdmF, In Quarantäne, [5e94bc22d5b548eeb7cd58cf9f656c94], PUP.Optional.WPM.A, HKLM\SOFTWARE\WOW6432NODE\supWindowsMangerProtect, In Quarantäne, [39b9746a701a2a0ca157295aaa5b7a86], PUP.Optional.SystemNotifier.A, HKLM\SOFTWARE\WOW6432NODE\System NotifierV07.03, In Quarantäne, [ad455787593150e62103818944c023dd], PUP.Optional.SuperOptimizer.C, HKLM\SOFTWARE\WOW6432NODE\{1146AC44-2F03-4431-B4FD-889BC837521F}, In Quarantäne, [6b87637bd4b6c571ba3066370ff6c23e], PUP.Optional.SuperOptimizer.C, HKLM\SOFTWARE\WOW6432NODE\{6791A2F3-FC80-475C-A002-C014AF797E9C}, In Quarantäne, [955dd10d7e0c310507e4aeeff31236ca], PUP.Optional.CrossRider.C, HKLM\SOFTWARE\WOW6432NODE\APPDATALOW\SOFTWARE\Crossrider, In Quarantäne, [8270e0fed4b6ff370d3b46bcda2a23dd], PUP.Optional.Crossbrowse.C, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CRSBRWSHTML, In Quarantäne, [d81afde1701afe38ccac4fb52ed654ac], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdate.OneClickCtrl.10, In Quarantäne, [7280d30b7c0ec0766f99098b3acba15f], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdate.OneClickProcessLauncherMachine, In Quarantäne, [f6fc518d24663cfaae5a058f50b5d52b], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdate.OneClickProcessLauncherMachine.1.0, In Quarantäne, [5c969b431a701620b256454f81843ec2], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CoCreateAsync, In Quarantäne, [61914f8ff1998fa71fea385c11f458a8], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CoCreateAsync.1.0, In Quarantäne, [ca284698aae088ae2edbf4a00cf9a55b], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CoreClass, In Quarantäne, [6f8316c883072313dd2c0d87679e48b8], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CoreClass.1, In Quarantäne, [5a98ce10662442f4e52434608283b24e], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CoreMachineClass, In Quarantäne, [82703ba3c3c7999d9b6ef3a19075af51], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CoreMachineClass.1, In Quarantäne, [e9096777ef9baa8c1aefcfc58e771ae6], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CredentialDialogMachine, In Quarantäne, [e80abe200b7f61d5a069068e74911fe1], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CredentialDialogMachine.1.0, In Quarantäne, [a34f0ad45e2c54e20801643016ef36ca], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachine, In Quarantäne, [688a5e80147671c5d831d0c4a95cc13f], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachine.1.0, In Quarantäne, [80720fcf93f7f93db059a0f4ee1716ea], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachineFallback, In Quarantäne, [e50d3aa473172610ec1d74201de80bf5], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0, In Quarantäne, [df137767c7c3ba7cd534d8bc48bd33cd], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.OnDemandCOMClassSvc, In Quarantäne, [4ea406d85e2ca88ea16899fbd72ea759], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.OnDemandCOMClassSvc.1.0, In Quarantäne, [26ccf1ed06842f07d2374f456d98619f], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.ProcessLauncher, In Quarantäne, [0ee4d20cdeacb482b851167eee17b14f], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.ProcessLauncher.1.0, In Quarantäne, [d81a726c6129a591dd2c8c08e52024dc], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3COMClassService, In Quarantäne, [df13f7e7068460d648c11e7692732cd4], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3COMClassService.1.0, In Quarantäne, [e70bd5090288e84e6a9fff9514f1af51], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3WebMachine, In Quarantäne, [06ec5d814248cf679e6b1282cd3822de], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3WebMachine.1.0, In Quarantäne, [31c1fee035554aec9b6ea0f4d1340ff1], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3WebMachineFallback, In Quarantäne, [00f2d608dfab16200900cec6d82d2bd5], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3WebMachineFallback.1.0, In Quarantäne, [e30f4599a6e48aacae5b4c48b05506fa], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3WebSvc, In Quarantäne, [a949f8e64545ff37db2ef89c9570c838], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3WebSvc.1.0, In Quarantäne, [a34f05d969212412e425f89c25e05ca4], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.ScriptExtender, In Quarantäne, [7d75f3ebc4c6dd59b37483e3c93c58a8], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.ScriptExtender.1, In Quarantäne, [ec06d608e7a35dd9ed3a5610e124a858], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\Iminent.WebBooster.InternetExplorer.DLL, In Quarantäne, [638feaf4fa9044f25e9194d944c1d32d], PUP.Optional.MixVideoPlayer.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPLICATIONS\MixVideoPlayer.exe, In Quarantäne, [27cb845a92f87eb876b190077d88f907], PUP.Optional.Crossbrowse.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\Crossbrowse, In Quarantäne, [5c96a13d0b7f6ec8ecb664a01de754ac], PUP.Optional.GlobalUpdate.C, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE\Clients, In Quarantäne, [4fa3e2fc44469b9beb289cfe7f86de22], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE, In Quarantäne, [30c27c627911181ee7412a03986c52ae], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\adpeheiliennogfclcgmchdfdmafjegc, In Quarantäne, [f7fb20be0d7d5cda67779ff6c540867a], PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\ehhlaekjfiiojlddgndcnefflngfmhen, In Quarantäne, [61916876177389addb33c75b50b4768a], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\27058, In Quarantäne, [f3ff38a6a5e584b2a160d470d0345aa6], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\30935, In Quarantäne, [a44e03dbaae0c175b74a390bb25248b8], PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [7c76dfff2763e5518775197813f2c739], PUP.Optional.Crossbrowse.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\MEDIAPLAYER\SHIMINCLUSIONLIST\crossbrowse.exe, In Quarantäne, [c1314d917614be78742c29db20e4857b], PUP.Optional.Crossbrowse.C, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\crossbrowse.exe, In Quarantäne, [12e0439b99f1fd395c1dcd37db2926da], PUP.Optional.Crossbrowse.C, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Crossbrowse, In Quarantäne, [36bc10cee6a42d09bac412f23fc556aa], PUP.Optional.GamesDesktop.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\gmsd_de_283_is1, In Quarantäne, [35bd6c72c5c5ee489dcdaa6c857f33cd], PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{1146AC44-2F03-4431-B4FD-889BC837521F}{a4b494b4}, In Quarantäne, [2ac8fbe3395183b31532dfbb3ec7718f], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=10, In Quarantäne, [15dd706ebad0f6409ce66125d3328c74], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=4, In Quarantäne, [a2506e705f2bbc7a60231a6c37ce1ce4], PUM.Security.Hijack.DisableChromeUpdates, HKLM\SOFTWARE\WOW6432NODE\POLICIES\GOOGLE\UPDATE, In Quarantäne, [b53d7c62f793fa3cea08f2a98b7a8d73], PUP.Optional.SearchProtect.A, HKLM\SOFTWARE\WOW6432NODE\SEARCHPROTECT, In Quarantäne, [ab4712cc8ffba98dd020df51ae564ab6], PUP.Optional.SearchProtect.A, HKLM\SOFTWARE\WOW6432NODE\SPPDCOM, In Quarantäne, [4ba78a54c5c563d3aa1befb013f2c937], PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB, In Quarantäne, [48aa706e8307be78708cf0351be925db], PUP.Optional.Tuto4Pc.A, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS, In Quarantäne, [ca28627c7f0b64d2a8008c0325e06c94], PUP.Optional.WindowsMangerProtect.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WindowsMangerProtect, In Quarantäne, [8b677965f3972610beb95cb9b64e718f], PUP.Optional.MixVideoPlayer.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\MixVideoPlayerUpdaterService, In Quarantäne, [ac469f3f97f346f02207118122e32bd5], PUP.Optional.WindowsMangerProtect.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, In Quarantäne, [cc2606d86a20b58133e4eb318a7a3dc3], PUP.Optional.Picexa.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PICEXASERVICE, In Quarantäne, [5a984e9090faf64035692971887d7c84], PUP.Optional.CrossRider.A, HKU\S-1-5-18\SOFTWARE\HQ Cinemax 1.9cV07.03-nv, In Quarantäne, [bc3606d833573ef8f3c940cca2623dc3], PUP.Optional.CrossRider.A, HKU\S-1-5-18\SOFTWARE\HQ Cinemax 1.9cV07.03-nv-ie, In Quarantäne, [16dc508ebecc9e9816a67993ae564fb1], PUP.Optional.SuperOptimizer.C, HKU\S-1-5-18\SOFTWARE\APPDATALOW\{1146AC44-2F03-4431-B4FD-889BC837521F}, In Quarantäne, [f101f4eaef9b4bebd7127f1e5ca948b8], PUP.Optional.PlusHD.A, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\Plus-HD-1.2, In Quarantäne, [5b976b738802c373b1056dd6a75dae52], PUP.Optional.Crossrider.C, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\_CrossriderRegNamePlaceHolder_, In Quarantäne, [eb07aa3458326fc75a52375f95707e82], PUP.Optional.Crossbrowse.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\Crossbrowse, In Quarantäne, [b43effdf731766d0fca19a6acc383cc4], PUP.Optional.Crossbrowse.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\CrossBrowser, In Quarantäne, [d220409ecebc92a434698d777193b34d], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\HQ Cinemax 1.9cV07.03, In Quarantäne, [da18dfff840696a08339c04c996bee12], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\HQ Cinemax 1.9cV07.03-nv, In Quarantäne, [23cf00dea3e7da5c3f7d21ebb64e0ef2], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\HQ Cinemax 1.9cV07.03-nv-ie, In Quarantäne, [22d0b32b6d1d83b3318bcc40798b5ca4], PUP.Optional.Iminent.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\Iminent, In Quarantäne, [d71befef2b5fbe781572cc84f70dca36], PUP.Optional.SystemNotifier.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\System NotifierV07.03, In Quarantäne, [20d269757c0e67cf1a0bc545a262e61a], PUP.Optional.Tuto4PC.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\TutoTag, In Quarantäne, [4ba7a13dbcce1224c6e297ef83826997], PUP.Optional.SuperOptimizer.C, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\APPDATALOW\{1146AC44-2F03-4431-B4FD-889BC837521F}, In Quarantäne, [9e54ab33bfcb102613d60b92fa0b9868], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, In Quarantäne, [20d2f9e58a0063d3aa7eed8ce71e06fa], PUP.Optional.MultiIE.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\APPDATALOW\SOFTWARE\DynConIE, In Quarantäne, [47aba6385a30ae88f3e5f1905fa6cb35], PUP.Optional.GamesDesktop.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\GAMESDESKTOP, In Quarantäne, [728021bdfa90979ffb959203fe073ac6], PUP.Optional.GlobalUpdate.C, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\GLOBALUPDATE\UPDATE\PROXY, In Quarantäne, [886a419d583216202744a75d0afa5da3], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\27058, In Quarantäne, [549e6b7334564ee8018bc75b64a02bd5], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\30935, In Quarantäne, [0ce6f9e55b2fe551315b5ec408fcbb45], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\HQ CinemaV07.03, In Quarantäne, [b63c736badddf73f31bf11066b99a957], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\System NotifierV07.03, In Quarantäne, [9959914dfc8ef343db151205758f40c0], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{120C7706-8D24-419F-8428-8E80B5AF8F1C}, In Quarantäne, [b14107d70387c96d88866d2cdb2a867a], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{151D5D08-EC99-4679-8C4B-C25BFF8ACE5F}, In Quarantäne, [a44e9f3f305a44f254bae0b9cd3834cc], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{15AFB26A-A278-4843-952E-B3B3751A3F5A}, In Quarantäne, [c72be9f50981b0869e701e7b25e040c0], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{17D0C98F-2F84-4C21-9DB7-9B27D6CF8AE9}, In Quarantäne, [db17b32b5c2e330336d88118c144728e], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1951AF66-27B6-45B8-897B-CD50C02586CE}, In Quarantäne, [47ab12cc2c5e53e3739bdabfb05510f0], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1988E4BB-FBF2-44AE-8CC8-EB943C661524}, In Quarantäne, [638f855949414fe7c8474554b84d7a86], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{19D05CF7-EB54-4B8C-9197-FEABF9905ED4}, In Quarantäne, [db178f4ff397b48278969cfd22e35fa1], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1AD5BAA1-F97C-46BD-A654-4A98DF6B1C3A}, In Quarantäne, [cc26edf19ded62d4c44a4d4c41c412ee], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1C0295F4-38D8-4811-8460-519EE57C7357}, In Quarantäne, [fbf71cc2f2986ccaf31c33666d98a35d], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1F0ACFF4-7F57-4B33-AC9E-B0E3F1DF1939}, In Quarantäne, [8171e3fb6228201629e50a8fb154f808], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1FB127CA-F6DF-49D0-9556-6458315256FC}, In Quarantäne, [e909b22c99f1350132dc7d1cca3b946c], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{232D318C-B4D7-4ACA-97AC-81F85CD02978}, In Quarantäne, [fff37c62c3c790a6f51a17828481e11f], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{26395586-468E-4FB8-A637-9E51A525C7DD}, In Quarantäne, [0de59c422367989e3fcf24750cf9d62a], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{27DD1430-5392-4C32-BF45-23C1D317D495}, In Quarantäne, [a74b38a64e3c3105c24dbddc1fe651af], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{29898DF6-F79C-441C-BBA8-358B60AD19EB}, In Quarantäne, [6b875a84ef9b53e37f8fb2e726dfa759], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2B7BA3EE-E891-4451-89BE-876F45251D22}, In Quarantäne, [965c2eb027631e1867a739600ef725db], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2D7AB619-5D1C-4B0A-AF19-332783387696}, In Quarantäne, [ca28419de7a3a195bd529bfe07fe28d8], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{302A03DC-76E3-4997-8766-AA1DBC831E75}, In Quarantäne, [2bc79c42a7e3e45228e6cbceb94c01ff], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{33AE80DD-AD21-4F7F-AC92-846BF8991275}, In Quarantäne, [b939a33bc8c2b680010d02979c6946ba], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{34B9C3F7-F50B-4618-B5EB-9444F0BC23FB}, In Quarantäne, [5e9410cec9c1c47255b9cdccf510639d], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{35725910-75C6-4F72-B055-30237C1FA659}, In Quarantäne, [fbf7be2079118da952bd6a2fe81d7090], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{35AC4F1F-CF03-49B9-B4DE-4AE4A7DDF012}, In Quarantäne, [60921ac41278280ed03fa4f5d82d58a8], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3714B802-BDB6-4782-92E0-D759773667C6}, In Quarantäne, [39b93ca2c8c2d85e8986fc9dfc097f81], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{385A3F69-4D5A-4F60-A7BA-F5B431F2DC71}, In Quarantäne, [d81a538b8a0093a30e01eaafd1347f81], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3AC63EE5-304B-4500-9727-35924F7388CE}, In Quarantäne, [c23086582169b5816ca2603963a257a9], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3B7E2BC3-D9AC-412F-94A9-DED7AEB4C9C4}, In Quarantäne, [975b10ce29613ff78d81e4b529dc966a], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{40B18416-86BD-4E23-8FF9-E725FB427345}, In Quarantäne, [e70b805ee6a4dc5a42cdcacf49bc37c9], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{40F8F7C4-5D9B-4DB9-ACF5-349F6DDA6B53}, In Quarantäne, [718109d58ffbfe3826e955440afb26da], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{46262A2B-24C0-4943-8DBE-CD9B1C3EBCC0}, In Quarantäne, [34bec51917731125000f524747be60a0], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{47D3C884-25EE-4481-9ACD-AC589CBA9494}, In Quarantäne, [05edf0eea0eab2840806c0d9be47fb05], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4B29E5E2-7647-41D6-B7C1-9685F3D2F524}, In Quarantäne, [ee04409e7812e6506da158417b8a936d], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4BC66859-5175-4813-9ABF-6CA6AD1E76FC}, In Quarantäne, [6a88e2fc038730069877d3c61aebb44c], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4C6CEE95-D2C2-49C6-AEE3-82C1E25B311F}, In Quarantäne, [856d38a67b0fea4c40ce7920f3120af6], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4FA4E792-5A05-4224-8F73-E8821D592338}, In Quarantäne, [13df6b736c1e75c10f00217816efa25e], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{51A2B661-7C71-44B0-947D-97756699A7D4}, In Quarantäne, [886ace1059317bbb1df166330afb7789], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{53685588-549E-482C-B0C4-AF913844F440}, In Quarantäne, [e80ad608365481b5f41babee24e1c43c], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{544EAC0B-4B3E-476C-BDA9-D9A532128CBD}, In Quarantäne, [6e844599f496072f050aafea3fc641bf], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{562405BF-7339-4EE7-AC36-FF75121BBF3B}, In Quarantäne, [965cd30b2f5bf244d23c9108ce3718e8], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{575104CE-636F-4A9C-BC9A-EF8F8E20C53E}, In Quarantäne, [a05266782367b77fe7285049cd386f91], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5B79C716-DA8F-465B-9C57-3C2910869038}, In Quarantäne, [28cacc1299f1be787f909108a75e6898], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5F612E2C-F5C4-45C4-92EF-D27CC21A28EF}, In Quarantäne, [d41e538bdeac94a2ad621683d1340ef2], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5FAAC928-B680-41A9-8A97-91E2B1F6DACE}, In Quarantäne, [2ec42ab421691026000e06931ee7a25e], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{627CC21D-115A-45F6-8CFE-56E4B33E7C65}, In Quarantäne, [737f1ec0187212243ed1d8c13bca2ad6], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{635AC835-E290-4FD7-9927-D3D12AB38CB3}, In Quarantäne, [9b5710ce3c4e42f46ba38e0b2fd63cc4], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{64A3F462-8B7D-4688-A473-885B7E2FC030}, In Quarantäne, [4fa3548ac8c273c3937bb6e32cd9dc24], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{664CFECB-417F-4CA0-90BF-E64358BD57D3}, In Quarantäne, [7979aa3472188caa927ddcbd8c79e61a], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{66D0193D-2516-4F4A-8EAA-B284A453224A}, In Quarantäne, [42b0c41a4149dc5ab05ed3c67d88d927], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{670A5F62-BC38-408B-B299-EC5C8551FA66}, In Quarantäne, [b63c65793a50cd69cd42b9e0be4746ba], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{67448F74-E369-430A-9DA7-3C4680554231}, In Quarantäne, [01f1439b5238241224eaecadbc492bd5], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6A46EA12-408D-4E3B-8357-26DB12D53A6F}, In Quarantäne, [d121f8e6c8c29b9bec238118cc3912ee], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6EF78F1A-1F5B-47C5-8CAA-1D92A7B3642B}, In Quarantäne, [4da5ad317812e5515cb3ddbc36cf6c94], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{71822294-E5E7-4940-8919-9E28CFF2FF24}, In Quarantäne, [ae448d51a4e664d2858a23762cd9f50b], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{735F6382-72A0-4534-8FA9-B59E608D2B51}, In Quarantäne, [11e14d9154368caa4dc2485120e5d12f], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{76C73A33-32B4-4F7F-8BAC-79EB2DBFCA32}, In Quarantäne, [9062fce2abdf94a222ec37624db8e917], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{78413689-64BC-4A54-B794-1D182AD5BA8F}, In Quarantäne, [559d20be89011422ac6356430ef72bd5], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{78665A63-8261-4FF9-A6EA-E0CB874B7179}, In Quarantäne, [90624d914248c175ef1fbfda80851ee2], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7923E6B8-BF32-4F33-91B1-99A370FF7AA1}, In Quarantäne, [23cfc7170882a78f62ad2a6ff11439c7], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7A98306D-53F1-468A-A69F-20C3B6BD71D7}, In Quarantäne, [1ed4b22c0f7b12249e7024756a9b6f91], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7AFAA990-ECCA-4EC9-8D5C-94F091E3B1E5}, In Quarantäne, [7c76fae47b0fa29466a8079241c4ba46], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7B813A0B-61F8-4D6B-8483-2D1CFEDDB094}, In Quarantäne, [f2005688cac0a98d848bdcbd27ded030], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7EBFB42C-8663-4280-B41C-403823C6A166}, In Quarantäne, [a84a24ba5f2b2e080e017d1ce421e020], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7FD83AB9-1126-4593-A18D-8E77D8A9CA14}, In Quarantäne, [44ae6b73cdbd54e2e42a8e0b669ff808], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{80A1E1EE-AC21-4B68-85E4-FA91E1256BDB}, In Quarantäne, [2fc37a644e3cc571fa158217ee176898], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{818CB061-ED89-4335-B483-5822379134EB}, In Quarantäne, [91613ca23d4de650759a81182adbea16], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8218ECBB-F519-41DD-95B0-C57F92F01790}, In Quarantäne, [71812bb3eaa0f046838c9504f70eed13], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{82851397-B08A-4169-BCDE-8F3551926716}, In Quarantäne, [3bb748964a406ccaeb2337625aab8a76], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{83C89F8F-98AD-4D7F-A3B4-8789A5FAB7E9}, In Quarantäne, [7181eaf4aae0a1955cb24a4feb1a936d], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8A4C91CD-C4E9-46B7-842F-8D7E9DDDAABD}, In Quarantäne, [3fb36b736a209c9a9876c5d442c37987], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8AD3CDE9-E98E-4B1B-A5A3-8F6AD0F8C47F}, In Quarantäne, [d81ac01eadddcd69b15d0198aa5b04fc], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8BD2E825-F6BD-460D-BC17-79DEDDE08FC9}, In Quarantäne, [e50d6a7495f5b97d0a0521788e77ed13], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8D4F7106-3004-4100-8DF3-FE21FBB2BF65}, In Quarantäne, [7c762eb04347dc5aef1fd8c1957048b8], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8D71F622-1419-46F6-8F48-37D788CEE6F8}, In Quarantäne, [d220c41a45452e08010e1089c540b64a], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8DBA8FEB-33D8-4209-8E88-2C806D51B882}, In Quarantäne, [6f83518db7d3a59161ad396027de9070], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8E4CB96C-F2AD-4399-B9FD-F1329665DEBA}, In Quarantäne, [bd355a845c2ede582ee0aeeb6f966898], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{94F86B77-952D-424C-BE6B-2622CB755425}, In Quarantäne, [12e08e50c0ca50e63fcf8415d62f926e], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9649F8DF-3BE7-440C-B5B0-C34CB0164727}, In Quarantäne, [e70b508eaae06acc4cc37623798c23dd], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9854AF5B-9B46-4018-AE2D-57DFA2B04079}, In Quarantäne, [b2408658c7c32412719ec5d4000508f8], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{98E20150-9C05-4C83-AAC4-6C66B0E740C6}, In Quarantäne, [8e64f3eb206a58dea966bbde74917987], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9B72A995-9224-4346-95AC-BD58A6818222}, In Quarantäne, [eb071ac492f82a0ce629c6d3ee17b050], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9DE1FBB8-7A27-42EC-9290-A9DB16C83D1E}, In Quarantäne, [9b57508e1c6ea492a06f9108d1344bb5], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9ED51A79-C024-4888-8F1D-46C14CADCACB}, In Quarantäne, [82700bd33456d66023ec6930d62f3ac6], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9FB89456-7837-4146-95C8-48BA14317E36}, In Quarantäne, [a54dd509dcaeb97def1f8d0cfb0ade22], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9FC7111A-41EE-4640-90FB-7DDFEC2CCB3E}, In Quarantäne, [12e0e3fbe0aa82b456b9a5f4798ccc34], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A4FC69E8-AA6C-4C18-A26D-B65BAAED6D35}, In Quarantäne, [c82a20bee6a464d22de2f2a7867f7e82], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A8673E4C-5D14-424C-BA8B-A8FC23DFDB7F}, In Quarantäne, [4ba707d7e0aa1026c54a9bfe5ea72dd3], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A967BF94-3C75-4437-A6EC-90C4D775CBC8}, In Quarantäne, [4ca64896e9a12b0bd43b2079897c51af], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B33A40FF-6988-47E8-A918-8A5886B4FC93}, In Quarantäne, [a151ebf3305afd39ea24a6f313f22ed2], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B41C15BA-B621-48E3-8A1B-82D52F1AAB9B}, In Quarantäne, [b33f09d5583259dd60af1c7d8b7a857b], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B44413C5-F186-4FC3-9E8A-F6D0F39C39D1}, In Quarantäne, [9a58e8f65a30191db15ea3f68d787a86], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B5670B1F-88E4-4AA8-90F9-8E5D645BCC17}, In Quarantäne, [47ab11cd127863d3ac63dabfeb1a2ed2], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B5B78573-701D-4187-A068-2792DD5E206D}, In Quarantäne, [d9195c82f59573c332dc7d1c17ee619f], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B71F987F-93E4-49C6-8F88-A42F68CD4F8A}, In Quarantäne, [c1318d51325862d42ae59405ca3beb15], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BB30B4FE-7B17-4C13-AC6E-4621AD21E6F3}, In Quarantäne, [8d6503db197165d1ac6203960ff6af51], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BBEBF451-9241-4F7F-8117-1B305111D4A7}, In Quarantäne, [04ee32ac21693bfbea24f8a17b8aba46], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C31DF421-6420-4B46-BEA9-AABBD2356988}, In Quarantäne, [45ad697539511125e82678215baa0df3], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C3CD43E7-FEFF-4B1B-B43F-277855FB3E22}, In Quarantäne, [638fab335b2fdd59020d8d0c21e426da], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C9667147-E299-4214-9D69-B728391058A1}, In Quarantäne, [0ae89c42a3e7191deb2347527e87a55b], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C9EB8F97-51D0-4704-9CA5-E6941E3AB9C8}, In Quarantäne, [48aa06d8e4a69f971cf2cecb63a2e61a], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CB4E1110-51E2-4A10-9A49-FDDF2C8B66CF}, In Quarantäne, [dc16d806abdf5ed8ec23fc9d65a0a25e], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CE42B815-A80A-4FCB-B2B2-8D3185344554}, In Quarantäne, [ac46c816c4c6ef4723ec2574f411758b], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D07489AC-5671-4123-A8B9-6186A1DBE039}, In Quarantäne, [8b67d60871197db97698435633d221df], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D8C6CE81-F564-4E8F-A849-E4D2BB3C8660}, In Quarantäne, [d022fae482087abc848b5643867f4cb4], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D8DBBEDF-2B96-47AF-8ABA-69DA2CD984BC}, In Quarantäne, [9e545a844842c274d33c6930ab5a7d83], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DB51D425-3360-4852-A4B7-2855228F32A4}, In Quarantäne, [28cafde13c4efb3b47c87425e520659b], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DB58F4BE-926C-4962-AB66-85673686F457}, In Quarantäne, [b43e2eb052388ea87a94dfbaff0615eb], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DC20B4D2-DBC3-448C-82EA-BE945AD94C42}, In Quarantäne, [797959854b3f8aac9d720693709531cf], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DCB2CAD8-E282-4EF4-9E74-C18AE5C1D04F}, In Quarantäne, [9f53805e6228e65017f853464abbca36], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DEA03147-B5B9-478D-B3A7-C7B281674021}, In Quarantäne, [955dd00e8dfd280e69a5cdcc08fdcd33], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DF595393-A625-4B52-8E92-5E9BD422F7E4}, In Quarantäne, [07eb934b96f439fd2ce37e1bb74ed22e], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DF6D3D6D-8746-4840-823F-C52B5E5E743E}, In Quarantäne, [db170ad47a103ef82ce284159d68a55b], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E02919C4-D133-4654-A076-1110D4F4FB91}, In Quarantäne, [f4fe4a943b4f80b61ef18118d82d7d83], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E052C91B-E55D-4D89-A87D-96F479731F29}, In Quarantäne, [33bf7e60d4b6350164aa5b3e5aabc739], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E094E5AF-E477-4180-A9AF-5490874EE583}, In Quarantäne, [6b87b32bd2b8c670c24cc6d3020344bc], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E0968AB0-23EE-4A99-A03A-E86D3D5A49FA}, In Quarantäne, [05eda43a4c3e58de4fc0f9a0f70e9868], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E0A33F9E-519F-4728-8C9B-A41CC6CE7978}, In Quarantäne, [ce24eef0bbcfa39329e5d3c659acda26], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E1033F2A-451D-4D71-815E-24DE2CC6955A}, In Quarantäne, [14de8955c0ca68cefe11debbd0358f71], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E23066B6-5E7F-4A63-B8A8-6E3FF16DDE10}, In Quarantäne, [2dc556882862f442fd12a6f331d46a96], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E438E0A9-D7F2-4114-B199-AA176A766141}, In Quarantäne, [856d19c55f2b082eeb23fa9f20e5a55b], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E5A2100E-9AF2-4A4E-89ED-9F49D1E573A7}, In Quarantäne, [bc362cb2652516207b93debbce37768a], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E8C5B6C8-FE74-4534-91EA-5374FD88596F}, In Quarantäne, [658dab330486d561010da8f159acd030], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{EEC8261E-8002-4C43-AF47-B544D13DFF27}, In Quarantäne, [ef03edf1a5e55ed8ac62c8d1e322cc34], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{EEF322DA-939E-4DAE-99A5-D9F2D948B21B}, In Quarantäne, [856d38a6d7b3ab8b808ec1d8e3222cd4], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F6CBF277-231D-456E-8735-A05D10F2B9AF}, In Quarantäne, [19d9edf1b0da3402b25cb8e164a125db], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F719304A-C3BC-4B64-8918-8F39BF40A05A}, In Quarantäne, [de14c618deac3df9df306e2b788d0bf5], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F81508F1-26BC-4296-8E4E-5EC736A75190}, In Quarantäne, [1fd35886d9b178be808ebedb08fdfa06], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F98658B4-446B-450F-97E2-87F8655EADB3}, In Quarantäne, [fdf5d6085c2e1125de308712897c57a9], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FB6003A4-F373-42B8-9178-E7718CC1C5EF}, In Quarantäne, [e60cebf32b5fe94deb243b5e4db87d83], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FC79CDA8-D221-4D42-8E22-E4EB38DC79BA}, In Quarantäne, [82701bc32763f343ae6180194abb9a66], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FD462B51-8E9D-419C-BFEE-BA5FE0A63498}, In Quarantäne, [24ce8f4f7e0c53e3f21dbfdade273ac6], PUP.Optional.Trovi.C, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}, In Quarantäne, [549e0bd35f2b41f525115345fe07b34d], PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, In Quarantäne, [1ad8cd11c5c51c1ad84c1aea8f75cf31], PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}, In Quarantäne, [e0124b937416ba7c9292e51fe32132ce], PUP.Optional.IStartSurf.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [7c7628b6008a49ed9665f29f7e87cb35], PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A2538774-7694-405F-8617-40F6CF9BD6C0}, In Quarantäne, [e50d3da1692185b1b470b54f8f759070], PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}, In Quarantäne, [569c7b632862ae88e4405ba9c044738d], PUP.Optional.QuickSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MOZILLA\EXTENDS, In Quarantäne, [737f0ed0abdf6ccae5d844bebb496799], PUP.Optional.OptimizerPro.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\OPTIMIZER PRO, In Quarantäne, [26cc8955cac08bab1f779ffc18edf20e], PUP.Optional.Tuto4PC.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\TUTORIALS\updatetutorialeshp, In Quarantäne, [747e825c4a409e982134010c0cf8817f], PUP.Optional.Tuto4PC.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\TUTORIALS\updatetutorialshp, In Quarantäne, [886a3ea013774ee88cca39d4bb497e82], PUP.Optional.Tuto4PC.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\TUTORIALS\updv, In Quarantäne, [668cd806a7e3f145c493d83547bdca36], PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\istartsurf uninstall, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.BubbleSound.A, HKLM\SOFTWARE\CLASSES\CLSID\{1386F2A3-FEB9-4C55-AD9A-B798EE57299B}, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], PUP.Optional.BubbleSound.A, HKLM\SOFTWARE\CLASSES\CLSID\{7FDF7A92-F901-4F93-9769-A8AC41C8E563}, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], PUP.Optional.BubbleSound.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\BubbleSound, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], PUP.Optional.OptimizerPro.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Optimizer Pro_is1, In Quarantäne, [a949b826c2c82c0a7d149865b053758b],
__________________ Beste Grüße, Kuhlambo12 |
08.07.2015, 18:36 | #2 |
| Windows 8 & Windows 7 Laptop beide stark Adware verseuchtCode:
ATTFilter Registrierungswerte: 192 PUP.Optional.Tuto4PC.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE|upgmsd_de_283.exe, C:\Users\Felix\AppData\Local\gmsd_de_283\upgmsd_de_283.exe -runonce, In Quarantäne, [767c13cbfe8cf046530c256f6f97f907] PUP.Optional.Crossbrowse.C, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|GoogleChromeAutoLaunch_C788171D294CB79FE0085AC50E127065, "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe" --no-startup-window, In Quarantäne, [50a28856a1e957df690c642fe81e05fb] PUP.Optional.Tuto4PC.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|gmsd_de_283, "C:\Program Files (x86)\gmsd_de_283\gmsd_de_283.exe", In Quarantäne, [48aabe207713d561c59ac7cdb4520bf5] PUP.Optional.OptimizerPro.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Optimizer Pro, C:\Program Files (x86)\Optimizer Pro 3.84\OptProLauncher.exe, In Quarantäne, [8e648c52e0aaab8b96a86ef860a2c040] PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\CLASSES\.HTML\OPENWITHPROGIDS|CRSBRWSHTML, In Quarantäne, [6b8725b9c1c980b68ec675235da847b9], PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\CLASSES\.HTM\OPENWITHPROGIDS|CRSBRWSHTML, In Quarantäne, [b240548a107a8caa83d0a0f823e2c13f], PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\CLASSES\WOW6432NODE\.HTML\OPENWITHPROGIDS|CRSBRWSHTML, In Quarantäne, [13dfecf2e3a79a9cf65ec6d21ce9bd43], PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\CLASSES\WOW6432NODE\.HTM\OPENWITHPROGIDS|CRSBRWSHTML, In Quarantäne, [1cd6bc22f199ed49afa427714cb97a86], PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|DisplayName, default-search.net, In Quarantäne, [2ec45c82c0caf64054116f23b253b34d] PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|URL, http://www.default-search.net/search?sid=498&aid=161&itype=n&ver=16064&tm=-15857&src=ds&p={searchTerms}, In Quarantäne, [22d03da17614ba7c81e4aee414f1e020] PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|SuggestionsURL_JSON, http://www.default-search.net?sid=498&aid=161&itype=n&ver=16064&tm=-15857&src=ds&p={searchTerms}&ft=json, In Quarantäne, [a84a904e4d3db97de481e7abcb3ae020] PUP.Optional.Bandoo.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|FaviconPath, C:\Program Files (x86)\Assets Manager\smdmf\favicon.ico, In Quarantäne, [02f09b434b3f7bbb0c43267346bf4eb2] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\chrome.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130766070527929005, In Quarantäne, [668c8955becccd69a2aa1e7ee61f0df3] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\explorer.xxx|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130766070527929005, In Quarantäne, [df13c41a39513cfa4a02138949bc837d] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\firefox.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130766070527929005, In Quarantäne, [8a688d519eecf640df6d7c20bb4aa45c] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\iexplore.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130766070527929005, In Quarantäne, [658d904e0d7d1323b49897057392e21e] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\software_removal_tool.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130766070527929005, In Quarantäne, [8f63409e0981a78f83c94359ae57e51b] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\software_reporter_tool.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130766070527929005, In Quarantäne, [1dd5ecf2236796a059f3405cbf4651af] PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\VC32Ldr |{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130766070527929005, In Quarantäne, [708214ca711968ce2d205e3e9f66fd03] PUP.Optional.3DBubbleSound.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|3D BubbleSound, "C:\Program Files\BubbleSound\3D BubbleSound.exe", In Quarantäne, [8969af2fd3b7d85ea81e9d63689ca65a] PUM.Security.Hijack.DisableChromeUpdates, HKLM\SOFTWARE\POLICIES\GOOGLE\UPDATE|DisableAutoUpdateChecksCheckboxValue, 1, In Quarantäne, [fff3e1fda0eaee486290b8e360a57a86] PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\REGISTEREDAPPLICATIONS|Crossbrowse, Software\Clients\StartMenuInternet\Crossbrowse\Capabilities, In Quarantäne, [3cb68a548307db5b69421e78f90c6c94] PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\WOW6432NODE\CLASSES\.HTML\OPENWITHPROGIDS|CRSBRWSHTML, In Quarantäne, [30c2ba24157587afaca8197fdf263ec2], PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\WOW6432NODE\CLASSES\.HTM\OPENWITHPROGIDS|CRSBRWSHTML, In Quarantäne, [3bb7d707305a41f51f34a1f71bea37c9], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE|path, C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe, In Quarantäne, [30c27c627911181ee7412a03986c52ae] PUP.Optional.GlobalUpdate.C, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATEDEV|AuCheckPeriodMs, 21600000, In Quarantäne, [f9f9786681098fa7ecec0ff48f7523dd] PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|DisplayName, istartsurf, In Quarantäne, [7c76dfff2763e5518775197813f2c739] PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, In Quarantäne, [896923bb107ab0866597c5ccc44154ac] PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|DisplayName, default-search.net, In Quarantäne, [e1117b630e7c67cf194c731f71947c84] PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|URL, http://www.default-search.net/search?sid=498&aid=161&itype=n&ver=16064&tm=-15857&src=ds&p={searchTerms}, In Quarantäne, [32c0c5198604f2441c4992004db80ff1] PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|SuggestionsURL_JSON, http://www.default-search.net?sid=498&aid=161&itype=n&ver=16064&tm=-15857&src=ds&p={searchTerms}&ft=json, In Quarantäne, [3eb4bc22b5d5102673f2870b6d98c43c] PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|FaviconPath, C:\Program Files (x86)\Assets Manager\smdmf\favicon.ico, In Quarantäne, [5e94d20ccac0a69061ee257446bfb64a] PUP.Optional.MixVideoPlayer.A, HKLM\SOFTWARE\WOW6432NODE\MIXVIDEOPLAYER\MIXVIDEOPLAYER|InstallDir, C:\Program Files (x86)\MixVideoPlayer, In Quarantäne, [846e8658d6b47abcb6e0e22109fb06fa] PUP.Optional.IStart.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|istart_ffnt@gmail.com, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com, In Quarantäne, [d61c528c810914229e093bcdd1334cb4] PUP.Optional.QuickSearch.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|quick_searchff@gmail.com, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\quick_searchff@gmail.com, In Quarantäne, [28caf4eaf496dc5ab0e554aeda2a04fc] PUM.Security.Hijack.DisableChromeUpdates, HKLM\SOFTWARE\WOW6432NODE\POLICIES\GOOGLE\UPDATE|DisableAutoUpdateChecksCheckboxValue, 1, In Quarantäne, [b53d7c62f793fa3cea08f2a98b7a8d73] PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\WOW6432NODE\REGISTEREDAPPLICATIONS|Crossbrowse, Software\Clients\StartMenuInternet\Crossbrowse\Capabilities, In Quarantäne, [b43e28b6ccbe4de94e5dc5d1db2a36ca] PUP.Optional.SearchProtect.A, HKLM\SOFTWARE\WOW6432NODE\SEARCHPROTECT|InstallDir, C:\PROGRA~2\SearchProtect, In Quarantäne, [ab4712cc8ffba98dd020df51ae564ab6] PUP.Optional.SearchProtect.A, HKLM\SOFTWARE\WOW6432NODE\SPPDCOM|TS, 2, In Quarantäne, [4ba78a54c5c563d3aa1befb013f2c937] PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB|ptid, wpm05203, In Quarantäne, [48aa706e8307be78708cf0351be925db] PUP.Optional.Tuto4Pc.A, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS|HostGUID, 97C3F633-8236-42B4-A376-623FDFCFBFBE, In Quarantäne, [ca28627c7f0b64d2a8008c0325e06c94] PUP.Optional.Picexa.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PICEXASERVICE|ImagePath, C:\Program Files (x86)\Picexa\PicexaSvc.exe, In Quarantäne, [5a984e9090faf64035692971887d7c84] PUP.Optional.GamesDesktop.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\GAMESDESKTOP|mj, 15.05.22.0, In Quarantäne, [728021bdfa90979ffb959203fe073ac6] PUP.Optional.GlobalUpdate.C, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\GLOBALUPDATE\UPDATE\PROXY|source, Firefox, In Quarantäne, [886a419d583216202744a75d0afa5da3] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{120C7706-8D24-419F-8428-8E80B5AF8F1C}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [b14107d70387c96d88866d2cdb2a867a] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{151D5D08-EC99-4679-8C4B-C25BFF8ACE5F}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [a44e9f3f305a44f254bae0b9cd3834cc] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{15AFB26A-A278-4843-952E-B3B3751A3F5A}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [c72be9f50981b0869e701e7b25e040c0] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{17D0C98F-2F84-4C21-9DB7-9B27D6CF8AE9}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [db17b32b5c2e330336d88118c144728e] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1951AF66-27B6-45B8-897B-CD50C02586CE}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [47ab12cc2c5e53e3739bdabfb05510f0] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1988E4BB-FBF2-44AE-8CC8-EB943C661524}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [638f855949414fe7c8474554b84d7a86] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{19D05CF7-EB54-4B8C-9197-FEABF9905ED4}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [db178f4ff397b48278969cfd22e35fa1] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1AD5BAA1-F97C-46BD-A654-4A98DF6B1C3A}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [cc26edf19ded62d4c44a4d4c41c412ee] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1C0295F4-38D8-4811-8460-519EE57C7357}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [fbf71cc2f2986ccaf31c33666d98a35d] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1F0ACFF4-7F57-4B33-AC9E-B0E3F1DF1939}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [8171e3fb6228201629e50a8fb154f808] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1FB127CA-F6DF-49D0-9556-6458315256FC}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [e909b22c99f1350132dc7d1cca3b946c] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{232D318C-B4D7-4ACA-97AC-81F85CD02978}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [fff37c62c3c790a6f51a17828481e11f] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{26395586-468E-4FB8-A637-9E51A525C7DD}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [0de59c422367989e3fcf24750cf9d62a] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{27DD1430-5392-4C32-BF45-23C1D317D495}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [a74b38a64e3c3105c24dbddc1fe651af] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{29898DF6-F79C-441C-BBA8-358B60AD19EB}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [6b875a84ef9b53e37f8fb2e726dfa759] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2B7BA3EE-E891-4451-89BE-876F45251D22}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [965c2eb027631e1867a739600ef725db] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2D7AB619-5D1C-4B0A-AF19-332783387696}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [ca28419de7a3a195bd529bfe07fe28d8] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{302A03DC-76E3-4997-8766-AA1DBC831E75}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [2bc79c42a7e3e45228e6cbceb94c01ff] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{33AE80DD-AD21-4F7F-AC92-846BF8991275}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [b939a33bc8c2b680010d02979c6946ba] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{34B9C3F7-F50B-4618-B5EB-9444F0BC23FB}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [5e9410cec9c1c47255b9cdccf510639d] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{35725910-75C6-4F72-B055-30237C1FA659}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [fbf7be2079118da952bd6a2fe81d7090] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{35AC4F1F-CF03-49B9-B4DE-4AE4A7DDF012}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [60921ac41278280ed03fa4f5d82d58a8] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3714B802-BDB6-4782-92E0-D759773667C6}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [39b93ca2c8c2d85e8986fc9dfc097f81] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{385A3F69-4D5A-4F60-A7BA-F5B431F2DC71}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [d81a538b8a0093a30e01eaafd1347f81] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3AC63EE5-304B-4500-9727-35924F7388CE}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [c23086582169b5816ca2603963a257a9] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3B7E2BC3-D9AC-412F-94A9-DED7AEB4C9C4}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [975b10ce29613ff78d81e4b529dc966a] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{40B18416-86BD-4E23-8FF9-E725FB427345}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [e70b805ee6a4dc5a42cdcacf49bc37c9] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{40F8F7C4-5D9B-4DB9-ACF5-349F6DDA6B53}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [718109d58ffbfe3826e955440afb26da] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{46262A2B-24C0-4943-8DBE-CD9B1C3EBCC0}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [34bec51917731125000f524747be60a0] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{47D3C884-25EE-4481-9ACD-AC589CBA9494}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [05edf0eea0eab2840806c0d9be47fb05] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4B29E5E2-7647-41D6-B7C1-9685F3D2F524}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [ee04409e7812e6506da158417b8a936d] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4BC66859-5175-4813-9ABF-6CA6AD1E76FC}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [6a88e2fc038730069877d3c61aebb44c] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4C6CEE95-D2C2-49C6-AEE3-82C1E25B311F}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [856d38a67b0fea4c40ce7920f3120af6] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4FA4E792-5A05-4224-8F73-E8821D592338}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [13df6b736c1e75c10f00217816efa25e] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{51A2B661-7C71-44B0-947D-97756699A7D4}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [886ace1059317bbb1df166330afb7789] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{53685588-549E-482C-B0C4-AF913844F440}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [e80ad608365481b5f41babee24e1c43c] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{544EAC0B-4B3E-476C-BDA9-D9A532128CBD}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [6e844599f496072f050aafea3fc641bf] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{562405BF-7339-4EE7-AC36-FF75121BBF3B}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [965cd30b2f5bf244d23c9108ce3718e8] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{575104CE-636F-4A9C-BC9A-EF8F8E20C53E}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [a05266782367b77fe7285049cd386f91] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5B79C716-DA8F-465B-9C57-3C2910869038}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [28cacc1299f1be787f909108a75e6898] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5F612E2C-F5C4-45C4-92EF-D27CC21A28EF}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [d41e538bdeac94a2ad621683d1340ef2] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5FAAC928-B680-41A9-8A97-91E2B1F6DACE}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [2ec42ab421691026000e06931ee7a25e] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{627CC21D-115A-45F6-8CFE-56E4B33E7C65}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [737f1ec0187212243ed1d8c13bca2ad6] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{635AC835-E290-4FD7-9927-D3D12AB38CB3}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [9b5710ce3c4e42f46ba38e0b2fd63cc4] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{64A3F462-8B7D-4688-A473-885B7E2FC030}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [4fa3548ac8c273c3937bb6e32cd9dc24] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{664CFECB-417F-4CA0-90BF-E64358BD57D3}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [7979aa3472188caa927ddcbd8c79e61a] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{66D0193D-2516-4F4A-8EAA-B284A453224A}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [42b0c41a4149dc5ab05ed3c67d88d927] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{670A5F62-BC38-408B-B299-EC5C8551FA66}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [b63c65793a50cd69cd42b9e0be4746ba] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{67448F74-E369-430A-9DA7-3C4680554231}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [01f1439b5238241224eaecadbc492bd5] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6A46EA12-408D-4E3B-8357-26DB12D53A6F}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [d121f8e6c8c29b9bec238118cc3912ee] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6EF78F1A-1F5B-47C5-8CAA-1D92A7B3642B}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [4da5ad317812e5515cb3ddbc36cf6c94] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{71822294-E5E7-4940-8919-9E28CFF2FF24}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [ae448d51a4e664d2858a23762cd9f50b] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{735F6382-72A0-4534-8FA9-B59E608D2B51}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [11e14d9154368caa4dc2485120e5d12f] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{76C73A33-32B4-4F7F-8BAC-79EB2DBFCA32}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [9062fce2abdf94a222ec37624db8e917] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{78413689-64BC-4A54-B794-1D182AD5BA8F}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [559d20be89011422ac6356430ef72bd5] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{78665A63-8261-4FF9-A6EA-E0CB874B7179}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [90624d914248c175ef1fbfda80851ee2] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7923E6B8-BF32-4F33-91B1-99A370FF7AA1}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [23cfc7170882a78f62ad2a6ff11439c7] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7A98306D-53F1-468A-A69F-20C3B6BD71D7}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [1ed4b22c0f7b12249e7024756a9b6f91] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7AFAA990-ECCA-4EC9-8D5C-94F091E3B1E5}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [7c76fae47b0fa29466a8079241c4ba46] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7B813A0B-61F8-4D6B-8483-2D1CFEDDB094}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [f2005688cac0a98d848bdcbd27ded030] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7EBFB42C-8663-4280-B41C-403823C6A166}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [a84a24ba5f2b2e080e017d1ce421e020] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7FD83AB9-1126-4593-A18D-8E77D8A9CA14}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [44ae6b73cdbd54e2e42a8e0b669ff808] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{80A1E1EE-AC21-4B68-85E4-FA91E1256BDB}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [2fc37a644e3cc571fa158217ee176898] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{818CB061-ED89-4335-B483-5822379134EB}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [91613ca23d4de650759a81182adbea16] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8218ECBB-F519-41DD-95B0-C57F92F01790}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [71812bb3eaa0f046838c9504f70eed13] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{82851397-B08A-4169-BCDE-8F3551926716}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [3bb748964a406ccaeb2337625aab8a76] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{83C89F8F-98AD-4D7F-A3B4-8789A5FAB7E9}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [7181eaf4aae0a1955cb24a4feb1a936d] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8A4C91CD-C4E9-46B7-842F-8D7E9DDDAABD}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [3fb36b736a209c9a9876c5d442c37987] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8AD3CDE9-E98E-4B1B-A5A3-8F6AD0F8C47F}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [d81ac01eadddcd69b15d0198aa5b04fc] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8BD2E825-F6BD-460D-BC17-79DEDDE08FC9}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [e50d6a7495f5b97d0a0521788e77ed13] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8D4F7106-3004-4100-8DF3-FE21FBB2BF65}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [7c762eb04347dc5aef1fd8c1957048b8] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8D71F622-1419-46F6-8F48-37D788CEE6F8}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [d220c41a45452e08010e1089c540b64a] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8DBA8FEB-33D8-4209-8E88-2C806D51B882}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [6f83518db7d3a59161ad396027de9070] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8E4CB96C-F2AD-4399-B9FD-F1329665DEBA}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [bd355a845c2ede582ee0aeeb6f966898] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{94F86B77-952D-424C-BE6B-2622CB755425}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [12e08e50c0ca50e63fcf8415d62f926e] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9649F8DF-3BE7-440C-B5B0-C34CB0164727}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [e70b508eaae06acc4cc37623798c23dd] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9854AF5B-9B46-4018-AE2D-57DFA2B04079}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [b2408658c7c32412719ec5d4000508f8] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{98E20150-9C05-4C83-AAC4-6C66B0E740C6}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [8e64f3eb206a58dea966bbde74917987] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9B72A995-9224-4346-95AC-BD58A6818222}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [eb071ac492f82a0ce629c6d3ee17b050] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9DE1FBB8-7A27-42EC-9290-A9DB16C83D1E}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [9b57508e1c6ea492a06f9108d1344bb5] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9ED51A79-C024-4888-8F1D-46C14CADCACB}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [82700bd33456d66023ec6930d62f3ac6] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9FB89456-7837-4146-95C8-48BA14317E36}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [a54dd509dcaeb97def1f8d0cfb0ade22] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9FC7111A-41EE-4640-90FB-7DDFEC2CCB3E}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [12e0e3fbe0aa82b456b9a5f4798ccc34] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A4FC69E8-AA6C-4C18-A26D-B65BAAED6D35}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [c82a20bee6a464d22de2f2a7867f7e82] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A8673E4C-5D14-424C-BA8B-A8FC23DFDB7F}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [4ba707d7e0aa1026c54a9bfe5ea72dd3] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A967BF94-3C75-4437-A6EC-90C4D775CBC8}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [4ca64896e9a12b0bd43b2079897c51af] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B33A40FF-6988-47E8-A918-8A5886B4FC93}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [a151ebf3305afd39ea24a6f313f22ed2] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B41C15BA-B621-48E3-8A1B-82D52F1AAB9B}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [b33f09d5583259dd60af1c7d8b7a857b] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B44413C5-F186-4FC3-9E8A-F6D0F39C39D1}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [9a58e8f65a30191db15ea3f68d787a86] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B5670B1F-88E4-4AA8-90F9-8E5D645BCC17}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [47ab11cd127863d3ac63dabfeb1a2ed2] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B5B78573-701D-4187-A068-2792DD5E206D}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [d9195c82f59573c332dc7d1c17ee619f] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B71F987F-93E4-49C6-8F88-A42F68CD4F8A}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [c1318d51325862d42ae59405ca3beb15] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BB30B4FE-7B17-4C13-AC6E-4621AD21E6F3}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [8d6503db197165d1ac6203960ff6af51] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BBEBF451-9241-4F7F-8117-1B305111D4A7}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [04ee32ac21693bfbea24f8a17b8aba46] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C31DF421-6420-4B46-BEA9-AABBD2356988}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [45ad697539511125e82678215baa0df3] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C3CD43E7-FEFF-4B1B-B43F-277855FB3E22}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [638fab335b2fdd59020d8d0c21e426da] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C9667147-E299-4214-9D69-B728391058A1}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [0ae89c42a3e7191deb2347527e87a55b] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C9EB8F97-51D0-4704-9CA5-E6941E3AB9C8}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [48aa06d8e4a69f971cf2cecb63a2e61a] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CB4E1110-51E2-4A10-9A49-FDDF2C8B66CF}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [dc16d806abdf5ed8ec23fc9d65a0a25e] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CE42B815-A80A-4FCB-B2B2-8D3185344554}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [ac46c816c4c6ef4723ec2574f411758b] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D07489AC-5671-4123-A8B9-6186A1DBE039}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [8b67d60871197db97698435633d221df] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D8C6CE81-F564-4E8F-A849-E4D2BB3C8660}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [d022fae482087abc848b5643867f4cb4] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D8DBBEDF-2B96-47AF-8ABA-69DA2CD984BC}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [9e545a844842c274d33c6930ab5a7d83] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DB51D425-3360-4852-A4B7-2855228F32A4}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [28cafde13c4efb3b47c87425e520659b] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DB58F4BE-926C-4962-AB66-85673686F457}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [b43e2eb052388ea87a94dfbaff0615eb] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DC20B4D2-DBC3-448C-82EA-BE945AD94C42}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [797959854b3f8aac9d720693709531cf] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DCB2CAD8-E282-4EF4-9E74-C18AE5C1D04F}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [9f53805e6228e65017f853464abbca36] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DEA03147-B5B9-478D-B3A7-C7B281674021}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [955dd00e8dfd280e69a5cdcc08fdcd33] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DF595393-A625-4B52-8E92-5E9BD422F7E4}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [07eb934b96f439fd2ce37e1bb74ed22e] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DF6D3D6D-8746-4840-823F-C52B5E5E743E}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [db170ad47a103ef82ce284159d68a55b] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E02919C4-D133-4654-A076-1110D4F4FB91}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [f4fe4a943b4f80b61ef18118d82d7d83] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E052C91B-E55D-4D89-A87D-96F479731F29}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [33bf7e60d4b6350164aa5b3e5aabc739] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E094E5AF-E477-4180-A9AF-5490874EE583}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [6b87b32bd2b8c670c24cc6d3020344bc] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E0968AB0-23EE-4A99-A03A-E86D3D5A49FA}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [05eda43a4c3e58de4fc0f9a0f70e9868] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E0A33F9E-519F-4728-8C9B-A41CC6CE7978}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [ce24eef0bbcfa39329e5d3c659acda26] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E1033F2A-451D-4D71-815E-24DE2CC6955A}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [14de8955c0ca68cefe11debbd0358f71] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E23066B6-5E7F-4A63-B8A8-6E3FF16DDE10}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [2dc556882862f442fd12a6f331d46a96] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E438E0A9-D7F2-4114-B199-AA176A766141}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [856d19c55f2b082eeb23fa9f20e5a55b] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E5A2100E-9AF2-4A4E-89ED-9F49D1E573A7}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [bc362cb2652516207b93debbce37768a] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E8C5B6C8-FE74-4534-91EA-5374FD88596F}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [658dab330486d561010da8f159acd030] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{EEC8261E-8002-4C43-AF47-B544D13DFF27}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [ef03edf1a5e55ed8ac62c8d1e322cc34] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{EEF322DA-939E-4DAE-99A5-D9F2D948B21B}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [856d38a6d7b3ab8b808ec1d8e3222cd4] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F6CBF277-231D-456E-8735-A05D10F2B9AF}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [19d9edf1b0da3402b25cb8e164a125db] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F719304A-C3BC-4B64-8918-8F39BF40A05A}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [de14c618deac3df9df306e2b788d0bf5] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F81508F1-26BC-4296-8E4E-5EC736A75190}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [1fd35886d9b178be808ebedb08fdfa06] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F98658B4-446B-450F-97E2-87F8655EADB3}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [fdf5d6085c2e1125de308712897c57a9] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FB6003A4-F373-42B8-9178-E7718CC1C5EF}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [e60cebf32b5fe94deb243b5e4db87d83] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FC79CDA8-D221-4D42-8E22-E4EB38DC79BA}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [82701bc32763f343ae6180194abb9a66] PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FD462B51-8E9D-419C-BFEE-BA5FE0A63498}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [24ce8f4f7e0c53e3f21dbfdade273ac6] PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, In Quarantäne, [ad45538b4b3f87afc064887c020244bc] PUP.Optional.Conduit.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|SuggestionsURL_JSON, http://suggest.seccint.com/CSuggestJson.ashx?prefix={searchTerms}, In Quarantäne, [4fa3bc22a4e60d29c2337e850bf9d12f] PUP.Optional.Trovi.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|DisplayName, Trovi, In Quarantäne, [a84a27b722686dc9002f375b3acbd828] PUP.Optional.Trovi.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|TopResultURL, http://www.trovi.com/Results.aspx?gd=&ctid=CT3330130&octid=EB_ORIGINAL_CTID&ISID=M72406C1C-94FC-4B75-BFD1-DCF538369C96&SearchSource=58&CUI=&UM=8&UP=SP23D2B5C9-FC57-4337-B50B-5A179B68F721&q={searchTerms}&D=042315&SSPV=SP22230TA_sp_ie, In Quarantäne, [ef0333ab07832f07f639dfb30203f907] PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, In Quarantäne, [1ad8cd11c5c51c1ad84c1aea8f75cf31] PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, In Quarantäne, [e0124b937416ba7c9292e51fe32132ce] PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|FaviconURL, http://do-search.com//favicon.ico, In Quarantäne, [d0221ac40387a19540e4ba4a9f65966a] PUP.Optional.IStartSurf.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|DisplayName, istartsurf, In Quarantäne, [7c7628b6008a49ed9665f29f7e87cb35] PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, In Quarantäne, [03efb826f2982f07bb6911f3d331ca36] PUP.Optional.IStartSurf.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|TopResultURL, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, In Quarantäne, [c82a944af79345f18675a2ef28dd9b65] PUP.Optional.DefaultSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|DisplayName, default-search.net, In Quarantäne, [7d7556884c3ea5912e36425006ff6b95] PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, In Quarantäne, [91614698f892b87ee341699bf90b827e] PUP.Optional.DefaultSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|SuggestionsURL_JSON, http://www.default-search.net?sid=498&aid=161&itype=n&ver=16064&tm=-15857&src=ds&p={searchTerms}&ft=json, In Quarantäne, [fdf5c21cc7c3d5616103702251b4ba46] PUP.Optional.Bandoo.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|FaviconPath, C:\Program Files (x86)\Assets Manager\smdmf\favicon.ico, In Quarantäne, [b63ce7f76b1fdf5725293e5bf41139c7] PUP.Optional.DefaultSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|TopResultURL, http://www.default-search.net/search?sid=498&aid=161&itype=n&ver=16064&tm=-15857&src=ds&p={searchTerms}, In Quarantäne, [40b24995c3c73bfbadb70f834cb9a65a] PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A2538774-7694-405F-8617-40F6CF9BD6C0}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, In Quarantäne, [e50d3da1692185b1b470b54f8f759070] PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, In Quarantäne, [569c7b632862ae88e4405ba9c044738d] PUP.Optional.QuickSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MOZILLA\EXTENDS|appid, quick_searchff@gmail.com, In Quarantäne, [737f0ed0abdf6ccae5d844bebb496799] PUP.Optional.OptimizerPro.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\OPTIMIZER PRO|AdsBuyNowURL, http://www.safeshopgate.com/r?s=121001939&g=3C2BA14E-CFE5-49E5-B9AC-9C6DAEAF509F, In Quarantäne, [26cc8955cac08bab1f779ffc18edf20e] Registrierungsdaten: 15 PUP.Optional.Delta.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\FIREFOX.EXE\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.delta-homes.com/?type=sc&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH, Gut: (firefox.exe), Schlecht: ("C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.delta-homes.com/?type=sc&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH),Ersetzt,[46ac0ad47a10ec4a946e86d33acc3ac6] PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH, Gut: (iexplore.exe), Schlecht: (C:\Program Files\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH),Ersetzt,[935ffce2f69479bd2c870d40df27f30d] PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, Gut: (www.google.com), Schlecht: (http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}),Ersetzt,[27cb47975d2d4ee848f7a0acb650c33d] PUP.Optional.Delta.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH, Gut: (www.google.com), Schlecht: (http://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH),Ersetzt,[0ce6f1ed5238ec4ad22cd1877a8c7987] PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, Gut: (www.google.com), Schlecht: (http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}),Ersetzt,[9c56d707b5d5a39349f6420adc2a25db] PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[6a883ca26624cc6a72b0a0b8877f19e7] PUP.Optional.Delta.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\FIREFOX.EXE\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.delta-homes.com/?type=sc&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH, Gut: (firefox.exe), Schlecht: ("C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.delta-homes.com/?type=sc&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH),Ersetzt,[31c1b32b4842d75f3ec479e046c0c937] PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH, Gut: (iexplore.exe), Schlecht: (C:\Program Files\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH),Ersetzt,[c42e39a52466c373e8cbd27beb1bc23e] PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, Gut: (www.google.com), Schlecht: (http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}),Ersetzt,[ea08a539f397112546f9ae9e25e1f907] PUP.Optional.Delta.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH, Gut: (www.google.com), Schlecht: (http://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH),Ersetzt,[539fde00a3e7f83ebf3fbb9d6b9b1de3] PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, Gut: (www.google.com), Schlecht: (http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}),Ersetzt,[cb2737a73d4d2511cc7379d3ac5a07f9] PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[f101627c6822979f54cef7617c8a55ab] PUP.Optional.IStartSurf.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, Gut: (www.google.com), Schlecht: (http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}),Ersetzt,[589ac01eacdebb7b310c0d3f010539c7] PUP.Optional.Delta.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH, Gut: (www.google.com), Schlecht: (http://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH),Ersetzt,[955d5b8385055dd9fa0585d37e880000] PUP.Optional.IStartSurf.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, Gut: (www.google.com), Schlecht: (http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}),Ersetzt,[47ab7d61dab041f5ac91d9730ef8837d] Ordner: 258 PUP.Optional.CrossRider.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03, Löschen bei Neustart, [aa48845a38522b0b173205fc36ce7090], PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\config, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\MixVideoPlayer.exe_Url_0uxwaewrhelcgghll0o5cintgfcbqdxr, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\MixVideoPlayer.exe_Url_0uxwaewrhelcgghll0o5cintgfcbqdxr\1.0.0.4, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\Playlists, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\Snap, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], PUP.Optional.MixVideoPlayer.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MixVideoPlayer, In Quarantäne, [8171b826a6e4ce68ddfa5dab927223dd], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\image, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\5es@IGB5CG.net\content, In Quarantäne, [737f8c528406c472a3d94a490203fe02], PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\5es@IGB5CG.net, In Quarantäne, [737f8c528406c472a3d94a490203fe02], PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\z@AvXLzV.org\content, In Quarantäne, [11e1a836bbcf3600ed8f910210f55ca4], PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\z@AvXLzV.org, In Quarantäne, [11e1a836bbcf3600ed8f910210f55ca4], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\defaults, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\defaults\preferences, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\userCode, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\locale, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\locale\en-US, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\defaults, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\defaults\preferences, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\userCode, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\locale, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\locale\en-US, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.PerfectCoupon.A, C:\Program Files (x86)\tpeRfecttcooUpon, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.SuperOptimizer.A, C:\ProgramData\{29efd0f5-4e5f-1d8b-29ef-fd0f54e543d5}, Löschen bei Neustart, [817104dab6d46ccaf62912877f866997], PUP.Optional.Picexa.A, C:\Users\Felix\AppData\Roaming\Picexa Viewer\log, In Quarantäne, [8e6404da95f5c76fafe90d8da0656e92], PUP.Optional.Picexa.A, C:\Users\Felix\AppData\Roaming\Picexa Viewer, In Quarantäne, [8e6404da95f5c76fafe90d8da0656e92], PUP.Optional.Picexa.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picexa, In Quarantäne, [39b99846eaa03afc98034e4c4cb9ad53], PUP.Optional.SaveInShop.A, C:\Program Files (x86)\Savinshhopp, In Quarantäne, [0ce6b22c1377cb6bbb79acf0ec19827e], PUP.Optional.BubbleSound.A, C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BubbleSound 1.0, In Quarantäne, [ca28c8168bff1d1911c9c5d7da2bc23e], PUP.Optional.Iminent.A, C:\Users\Felix\AppData\Local\Temp\Iminent, In Quarantäne, [a9491cc21b6fd264d2e2a72490735ba5], PUP.Optional.PlusHD.A, C:\Program Files (x86)\Plus-HD-1.2, In Quarantäne, [a949bc2219711a1c75035d745fa4da26], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\rep, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\STG, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\UI, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\UI\rep, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect, Löschen bei Neustart, [62903ba33d4d51e5f3ca9648e122cf31], PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update, In Quarantäne, [62903ba33d4d51e5f3ca9648e122cf31], PUP.Optional.GlobalUpdate.A, C:\Users\Felix\AppData\Local\Temp\comh.189875, In Quarantäne, [2ec4aa34f298171ff4062bb4976c06fa], PUP.Optional.GlobalUpdate.A, C:\Users\Felix\AppData\Local\Temp\comh.481717, In Quarantäne, [6b87e7f783071a1c36c4e4fbcc3758a8], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa, In Quarantäne, [ad4511cd850548eef09a55967d8651af], PUP.Optional.TicTaCoupon.A, C:\Program Files (x86)\TiCTaCoupon, In Quarantäne, [16dc5c827f0b26105ccb23ca976cec14], PUP.Optional.GamesDesktop.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP, In Quarantäne, [f7fb09d5cbbfaa8c2d94ec03e71c1fe1], PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283, Löschen bei Neustart, [5a98b727484246f02d9533bcf50e5ca4], PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\Download, In Quarantäne, [5a98b727484246f02d9533bcf50e5ca4], PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\gmsd_de_283, Löschen bei Neustart, [5a98b727484246f02d9533bcf50e5ca4], PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\gmsd_de_283\1.20, Löschen bei Neustart, [5a98b727484246f02d9533bcf50e5ca4], PUP.Optional.GamesDesktop.A, C:\Program Files (x86)\gmsd_de_283, Löschen bei Neustart, [1bd7a23cabdf96a04c77e906d03346ba], PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate, In Quarantäne, [e909d806f39774c215fbde160ff4d52b], PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update, In Quarantäne, [e909d806f39774c215fbde160ff4d52b], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\avabvbxvh, In Quarantäne, [b042508e3b4fe94d6662629505fe0ff1], PUP.Optional.SystemNotifier.A, C:\Program Files (x86)\System NotifierV07.03, In Quarantäne, [0ce6ba2487034de93f0c27d139ca7c84], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\include, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\include\tools, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\lib, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\module, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\pack, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\en, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\en-US, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\es, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\es-419, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-BE, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-CA, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-CH, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-LU, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\it, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\it-CH, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\pl, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\pt-BR, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\ru, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\ru-MO, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\tr, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\vi, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\zh-CN, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\zh-TW, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\defaults, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\defaults\preferences, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\Locales, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension Rules, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\css, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\html, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\bg, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ca, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\cs, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\da, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\de, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\el, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en_GB, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es_419, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\et, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fi, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fil, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fr, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hi, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hr, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hu, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\id, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\it, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ja, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ko, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lt, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lv, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nb, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nl, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pl, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_BR, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_PT, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ro, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ru, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sk, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sl, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sr, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sv, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\th, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\tr, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\uk, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\vi, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_CN, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_TW, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_metadata, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\css, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\html, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\bg, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ca, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\cs, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\da, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\de, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\el, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\en, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\en_GB, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\es, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\es_419, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\et, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\fi, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\fil, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\fr, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\hi, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\hr, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\hu, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\id, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\it, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ja, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ko, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\lt, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\lv, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\nb, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\nl, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\pl, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\pt_BR, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\pt_PT, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ro, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ru, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sk, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sl, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sr, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sv, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\th, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\tr, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\uk, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\vi, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\zh_CN, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\zh_TW, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_metadata, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\Temp, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\GPUCache, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\JumpListIcons, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\JumpListIconsOld, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse, In Quarantäne, [20d2c7174b3f082ef048a8520ff40ff1], PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound, Löschen bei Neustart, [856dad313d4d3bfb1e6da35a847f6c94], PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\config, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84, Löschen bei Neustart, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2, In Quarantäne, [9b57de00d7b33402c6ccb94448bb7789], PUP.Optional.OptimizerPro.A, C:\Users\Felix\AppData\Roaming\Optimizer Pro, In Quarantäne, [4da52faf2961ae889b0941bc669d43bd], PUP.Optional.OptimizerPro.A, C:\Users\Felix\AppData\Roaming\Optimizer Pro\Backup, In Quarantäne, [4da52faf2961ae889b0941bc669d43bd], PUP.Optional.OptimizerPro.A, C:\Users\Felix\AppData\Roaming\Optimizer Pro\Log, In Quarantäne, [4da52faf2961ae889b0941bc669d43bd], PUP.Optional.OptimizerPro.A, C:\Users\Felix\AppData\Roaming\Optimizer Pro\Undo, In Quarantäne, [4da52faf2961ae889b0941bc669d43bd],
__________________ |
08.07.2015, 18:42 | #3 |
| Windows 8 & Windows 7 Laptop beide stark Adware verseuchtCode:
ATTFilter Dateien: 936 PUP.Optional.MultiPlug.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProMon.dll, Löschen bei Neustart, [6092fde109811f17903ffd5d50b29070], PUP.Optional.HQCinemax.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954-6.exe, Löschen bei Neustart, [648e4698cbbf45f1685c8c0445c1738d], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\gmsd_de_283\upgmsd_de_283.exe, Löschen bei Neustart, [767c13cbfe8cf046530c256f6f97f907], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe, Löschen bei Neustart, [50a28856a1e957df690c642fe81e05fb], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome_elf.dll, Löschen bei Neustart, [f002c7171377d6603441395a07ff36ca], PUP.Optional.Tuto4PC.A, C:\Program Files (x86)\gmsd_de_283\gmsd_de_283.exe, Löschen bei Neustart, [48aabe207713d561c59ac7cdb4520bf5], PUP.Optional.OptimizerPro, C:\ProgramData\{29efd0f5-4e5f-1d8b-29ef-fd0f54e543d5}\hqghumeaylnlf.exe, Löschen bei Neustart, [8d6534aabdcd92a4c261a5a31de5a15f], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProReminder.exe, Löschen bei Neustart, [36bc6975e1a98aac87b76afca65c3ac6], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ProtectService.exe, In Quarantäne, [df13607e0585b185cca6a37761a1bb45], PUP.Optional.MaintainerSvc.A, C:\ProgramData\06154ba7-7ceb-4959-a6bd-bf38bdec8cc6\maintainer.exe, Löschen bei Neustart, [d51d1ac46129bf773459609e847dc739], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProLauncher.exe, In Quarantäne, [8e648c52e0aaab8b96a86ef860a2c040], PUP.Optional.MultiPlug.A, C:\Program Files (x86)\TicTaCoupone\IRoTD46NKB8E42.x64.dll, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, C:\Program Files (x86)\TicTaCoupone\IRoTD46NKB8E42.dll, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], PUP.Optional.MultiPlug.A, C:\Program Files (x86)\tpeRfecttcooUpon\4CR0qHPpAi6VbU.x64.dll, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, C:\Program Files (x86)\tpeRfecttcooUpon\4CR0qHPpAi6VbU.dll, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], PUP.Optional.MultiPlug.A, C:\Program Files (x86)\Savinshhopp\pRsTug3lO92q5x.x64.dll, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, C:\Program Files (x86)\Savinshhopp\pRsTug3lO92q5x.dll, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], PUP.Optional.MultiPlug.A, C:\Program Files (x86)\TiCTaCoupon\nQuLHdvmUIMBjs.x64.dll, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.MultiPlug.A, C:\Program Files (x86)\TiCTaCoupon\nQuLHdvmUIMBjs.dll, In Quarantäne, [8072a43a65250e2886c4493369999769], PUP.Optional.LuckyTab.A, C:\Program Files (x86)\XTab\SupTab.dll, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], Trojan.Ransom.ED, c:\programdata\7ea11e435.cpp, In Quarantäne, [faf83ba390fad363681e49dcec16e51b], PUP.Optional.BrowseFox, C:\ProgramData\06154ba7-7ceb-4959-a6bd-bf38bdec8cc6\maintainer.bak, In Quarantäne, [12e0e8f61b6fbe78e868272c46bce11f], PUP.Optional.Nova.A, C:\Program Files (x86)\a2920a80-9642-4724-9332-9526a24ee1d9\c9101767-4755-4718-9726-c8f1026beb0f.dll, In Quarantäne, [da1813cba1e9a78f5de404134bb7dc24], PUP.Optional.Nova.A, C:\Program Files (x86)\Cisco\b8138832-8596-407b-bc09-7ab8062f3e66.dll, In Quarantäne, [9d55cc120684f343ba870017a45e5ca4], PUP.Optional.Multiplug.A, C:\Program Files (x86)\Extreme User Agent Switcher\Extreme User Agent Switcher.exe, In Quarantäne, [d61c31ad286259dd3659cb6ec24007f9], PUP.Optional.Multiplug.A, C:\Program Files (x86)\FineDiealSoFt\FineDiealSoFt.exe, In Quarantäne, [b73bbb23d1b95cda711e3603b949738d], PUP.Optional.EORezo, C:\Program Files (x86)\gmsd_de_283\gamesdesktop_widget.exe, In Quarantäne, [5f9375692268d561c3ac088c887e48b8], PUP.Optional.EORezo, C:\Program Files (x86)\gmsd_de_283\predm.exe, In Quarantäne, [ce24edf13e4c8fa7046b930166a0a15f], PUP.Optional.Nova.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\761c5e96-144a-4f1e-95a7-50f69bddb27a.dll, In Quarantäne, [61915f7f7119fc3ae859d7402dd5c040], PUP.Optional.HQCinemax.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954-1-7.exe, In Quarantäne, [ea08d806a4e68caa07bdd1bf32d4a957], PUP.Optional.HQCinemax.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954-3.exe, In Quarantäne, [42b089557416aa8cad17fc9424e2639d], PUP.Optional.HQCinemax.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954-4.exe, In Quarantäne, [5a98cf0fb2d8ed493b898a064eb8a957], PUP.Optional.HQCinemax.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954-64.exe, In Quarantäne, [35bd33abd0baa492dbe9721e62a42ad6], PUP.Optional.HQCinemax.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954-7.exe, In Quarantäne, [bd35d40aeaa071c56d57cbc518eee11f], PUP.Optionlal.CrossRider, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\Uninstall.exe, In Quarantäne, [3cb6cd1141499f97022a5816b94a9d63], PUP.Optional.HQCinemax.A, c:\program files (x86)\hq cinemax 1.9cv07.03\uninstallbrw.exe, In Quarantäne, [0ee4b42ad0bafb3b3193a4ecc0466e92], PUP.Optional.CrossRider.A, c:\program files (x86)\hq cinemax 1.9cv07.03\utils.exe, In Quarantäne, [81717f5ffd8daf874c56502a9b675fa1], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptimizerPro.exe, In Quarantäne, [7979b8261b6fd561e6586501d230ba46], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProGuard.exe, In Quarantäne, [fff3746a7218f73fa29ce77f867c7c84], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProSchedule.exe, In Quarantäne, [d121c9159ceefa3cce70f96daa58a65a], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProSmartScan.exe, In Quarantäne, [31c1b727d9b1f343ee505f07956de11f], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProStart.exe, In Quarantäne, [1dd5eaf46426072fde606ef8cf337f81], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProUninstaller.exe, In Quarantäne, [d31f9945bcce75c17cc2bcaacf3320e0], PUP.Optional.Multiplug.A, C:\Program Files (x86)\Savinshhopp\pRsTug3lO92q5x.exe, In Quarantäne, [7d754c922a6032048a05c871cb3712ee], PUP.Optional.Multiplug.A, C:\Program Files (x86)\Session Manager\Session Manager.exe, In Quarantäne, [b2409e40503a51e58e0191a8ca38d22e], PUP.Optionlal.CrossRider, C:\Program Files (x86)\System NotifierV07.03\Uninstall.exe, In Quarantäne, [9f538658345648ee1517630b2ed58f71], PUP.Optional.SystemNotifier.A, c:\program files (x86)\system notifierv07.03\uninstallbrw.exe, In Quarantäne, [4aa84f8f1377c175240c6a281fe728d8], PUP.Optional.Multiplug.A, C:\Program Files (x86)\TicTaCooUpon\TicTaCooUpon.exe, In Quarantäne, [42b003db2664c472a4eb0d2ca55d7789], PUP.Optional.Multiplug.A, C:\Program Files (x86)\TiCTaCoupon\nQuLHdvmUIMBjs.exe, In Quarantäne, [45ad3ea06a20ae885a350f2ad32f17e9], PUP.Optional.Multiplug.A, C:\Program Files (x86)\TicTaCoupone\IRoTD46NKB8E42.exe, In Quarantäne, [9959528cf694e84eaee13bfe976b5ea2], PUP.Optional.Multiplug.A, C:\Program Files (x86)\tpeRfecttcooUpon\4CR0qHPpAi6VbU.exe, In Quarantäne, [fbf737a77f0b7eb899f64feaf21020e0], PUP.Optional.CrossBrowse, C:\Users\Felix\AppData\Local\Temp\3763.exe, In Quarantäne, [747ee1fd5d2db28435b471e903ffd52b], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\Temp\Setup.exe, In Quarantäne, [935f16c8dcae62d4244b7d485ca54db3], PUP.optional.OptimizerPro.A, C:\Users\Felix\AppData\Local\Temp\optprosetup.exe, In Quarantäne, [737fa6387218cd6926694c30877bf60a], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-1CGSC.tmp\gentlemjmp_ieu.exe, In Quarantäne, [5c96e1fd8505f442520dfb99848243bd], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_secureprotect_installer_multilang.exe, In Quarantäne, [52a022bca6e48da9d3fe28df966c0ff1], PUP.Optional.Conduit.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\ism.exe, In Quarantäne, [a54d706e1773e84ed817e25a18ea3ec2], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_speeditup_installer_multilang.exe, In Quarantäne, [3bb702dc652577bf04cd66a114eee11f], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_superpc_installer_multilang.exe, In Quarantäne, [af43e3fbdeac2016ebe637d038cae719], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_taplika_installer_multilang.exe, In Quarantäne, [0ee4b42a94f66acc2ca5da2dec16ca36], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_wajam_installer_multilang.exe, In Quarantäne, [49a9cd117f0bba7c30a161a6639fe41c], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_zombie_installer_multilang.exe, In Quarantäne, [8e6412cc226857df3998838420e227d9], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_browsergood_installer_multilang.exe, In Quarantäne, [6d857d613c4e6dc9f9d8e6213cc6926e], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_BubbleSound_installer_multilang.exe, In Quarantäne, [26cc904e2367bd799b361aed7290e41c], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_CubepileShopperz_installer_multilang.exe, In Quarantäne, [6092f9e5741668ce379af017cf33748c], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_istartsurfp_installer_multilang.exe, In Quarantäne, [b93907d7bad068ce04cd47c07b879a66], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_mountainbike_installer_multilang.exe, In Quarantäne, [4ea40bd3335766d018b929decd35eb15], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_MyStartSearch_installer_multilang.exe, In Quarantäne, [e40ebd216129e452eee3b552f40e3ac6], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_optimizerpro_installer_multilang.exe, In Quarantäne, [b1412ab4375388aeca07818624de738d], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_pariente_secureprotect_bing_installer_multilang.exe, In Quarantäne, [dc16ab337713ab8bc9080700d42e0ff1], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_pariente_secureprotect_yahoo_installer_multilang.exe, In Quarantäne, [60920cd24446da5ce7eae32407fb23dd], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_plushd_installer_multilang.exe, In Quarantäne, [f1019c420f7bc6707d544abdc73b56aa], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_pzombie_installer_multilang.exe, In Quarantäne, [26cccf0fc2c857dfa9280afd8c767987], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_quickref_p_installer_multilang.exe, In Quarantäne, [cd25805ea6e401357d54f017768cb947], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_SByoutube_installer_multilang.exe, In Quarantäne, [af43da0464265fd77c5549be72908d73], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_secprotwhite_installer_multilang.exe, In Quarantäne, [ac4637a7820863d3fad77f8853af28d8], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-5RV9F.tmp\gentlemjmp_ieu.exe, In Quarantäne, [27cb8d514743db5b4619850f20e602fe], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-6B800.tmp\gentlemjmp_ieu.exe, In Quarantäne, [da18e2fc692140f60c53abe9cb3b9b65], PUP.Optional.Infonaut.A, C:\Users\Felix\AppData\Local\Temp\is-7BT45.tmp\infonaut.exe, In Quarantäne, [2bc7a03eb2d860d6a495751f699da65a], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-7S0M4.tmp\gentlemjmp_ieu.exe, In Quarantäne, [2ac8637b0c7ec5714a158c08b0562cd4], PUP.Optional.Infonaut.A, C:\Users\Felix\AppData\Local\Temp\is-82N0O.tmp\infonaut.exe, In Quarantäne, [6d85419d8802be782118e3b116f0e11f], PUP.Optional.SpeedItUp.A, C:\Users\Felix\AppData\Local\Temp\is-BQC10.tmp\package_speeditup_installer_multilang.exe, In Quarantäne, [8e6435a94545df574848246fad592fd1], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\3e07d81a-918d-4f2d-89df-687bbe1ee1bb\games desktop.exe, In Quarantäne, [08eaab335c2efa3cc54bad7631d1c53b], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CI0L1.tmp\gentlemjmp_ieu.exe, In Quarantäne, [8a68a7373e4c9d99322d464e828452ae], PUP.Optional.SystemNotifier.A, C:\Users\Felix\AppData\Local\Temp\e145a5ab-1e7e-40e0-95bc-0e62072da68f\mini_installer.exe, In Quarantäne, [ac46419dbbcf2115f739ddb549bdfd03], PUP.Optional.VeriBrowse.A, C:\Users\Felix\AppData\Local\Temp\2c08fc3e-4a26-428e-aacf-43c02ec41aee\3333-2081_speedcheck.exe, In Quarantäne, [8e647569761448ee5e406bd339c955ab], PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\Temp\b0b712e2-6ca1-4f09-b70e-eac64d0fc604\mixvideoplayersetup.exe, In Quarantäne, [945efae45d2de74f85b5214eb44c2dd3], PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\GoogleCrashHandler.exe, In Quarantäne, [89693f9f5b2f73c3a5af7bd3ca38c33d], PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\GoogleUpdate.exe, In Quarantäne, [cb276b73c8c272c4e371024ce71b1ce4], PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\GoogleUpdateBroker.exe, In Quarantäne, [4ea4429c781251e5015395b97b87ce32], PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\GoogleUpdateOnDemand.exe, In Quarantäne, [07eb716deb9f0630391b50fe4db5bf41], PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\goopdate.dll, In Quarantäne, [5d95cf0f37530d293f15d27cb64c7c84], PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\goopdateres_en.dll, In Quarantäne, [678be1fd5337280e90c4480606fcc040], PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\npGoogleUpdate4.dll, In Quarantäne, [935ff5e9fe8c56e03420fb5332d07f81], PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\psmachine.dll, In Quarantäne, [a949e7f7c7c36accbe96fa540df550b0], PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\psuser.dll, In Quarantäne, [fff3e1fd642645f1b2a21935768ccd33], PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.481717\GoogleCrashHandler.exe, In Quarantäne, [d022f6e8fc8ec96d95bf1c32e12135cb], PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.481717\GoogleUpdate.exe, In Quarantäne, [ae44b32b5b2fee4889cb8ac4e31f29d7], PUP.Optional.Conduit.A, C:\Users\Felix\AppData\Local\Temp\ct3334334\ism.exe, In Quarantäne, [72801fbf3c4e37ff00efd9635ba7ae52], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_secureprotect_installer_multilang.exe, In Quarantäne, [e111fde1f991c0766f626f98966c946c], PUP.Optional.Conduit.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\ism.exe, In Quarantäne, [c0320ed0315981b5608f5ce0a55d8977], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_speeditup_installer_multilang.exe, In Quarantäne, [d2209d411773a294a928b84f71919e62], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_superpc_installer_multilang.exe, In Quarantäne, [d220429c107a23134c859770f210fc04], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_taplika_installer_multilang.exe, In Quarantäne, [965c2eb027638da9745dc542837fa35d], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_wajam_installer_multilang.exe, In Quarantäne, [549e528c2e5cdd59527fff08cb37c937], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_zombie_installer_multilang.exe, In Quarantäne, [985ab22c553595a11cb54cbb936f9e62], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_browsergood_installer_multilang.exe, In Quarantäne, [45ad657983079e984c85a66122e0c53b], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_BubbleSound_installer_multilang.exe, In Quarantäne, [4ba7d20c6129a096e0f19572c93903fd], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_CubepileShopperz_installer_multilang.exe, In Quarantäne, [5d95f6e81278cc6ae9e8f116f70b659b], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_istartsurfp_installer_multilang.exe, In Quarantäne, [a44eb92591f9310504cd55b2a062926e], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_mountainbike_installer_multilang.exe, In Quarantäne, [39b9c6187911eb4b30a19374fb07f30d], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_MyStartSearch_installer_multilang.exe, In Quarantäne, [8c660ed0642689adc9084eb935cdff01], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_optimizerpro_installer_multilang.exe, In Quarantäne, [4ca66d71e9a1a591458cfc0be81ae21e], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_pariente_secureprotect_bing_installer_multilang.exe, In Quarantäne, [23cff7e76a20d462e0f1bc4bbc46b24e], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_pariente_secureprotect_yahoo_installer_multilang.exe, In Quarantäne, [539fbe20226888ae438eae594ab8f30d], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_plushd_installer_multilang.exe, In Quarantäne, [cc26a13da2e833036f62729539c9aa56], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_pzombie_installer_multilang.exe, In Quarantäne, [fff3e4facebc1620ab267b8cb34f7a86], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_quickref_p_installer_multilang.exe, In Quarantäne, [dd159c425634b2847e53c245738fcb35], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_SByoutube_installer_multilang.exe, In Quarantäne, [07eba7378307b185943dd82fab57b14f], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_secprotwhite_installer_multilang.exe, In Quarantäne, [5d95a638a5e5181e518046c1669cce32], PUP.Optional.Infonaut.A, C:\Users\Felix\AppData\Local\Temp\is-DHUCM.tmp\infonaut.exe, In Quarantäne, [00f22db1c0cad066ea4ff3a1ef17d22e], Adware.EoRezo, C:\Users\Felix\AppData\Local\Temp\is-E9V06.tmp\package_SByoutube_installer_multilang.exe, In Quarantäne, [599934aa058568ce9aa9343e8979f30d], Adware.EoRezo, C:\Users\Felix\AppData\Local\Temp\is-E9V06.tmp\package_wajam_installer_multilang.exe, In Quarantäne, [3fb34e904a405cda0a399ad80200ba46], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-GEPJ1.tmp\gentlemjmp_ieu.exe, In Quarantäne, [975b449a5b2f9c9ac9961480ef1737c9], PUP.Optional.Taplika, C:\Users\Felix\AppData\Local\Temp\is-IRKR2.tmp\150.exe, In Quarantäne, [b042b6285c2e56e0563e7ff7c43ca55b], PUP.Optional.SpeedItUp.A, C:\Users\Felix\AppData\Local\Temp\is-IRKR2.tmp\package_speeditup_installer_multilang.exe, In Quarantäne, [ce2428b6e3a72610b4dc385b8d79bf41], PUP.Optional.ChartChoosing.A, C:\Users\Felix\AppData\Local\Temp\is-IRKR2.tmp\package_chartchoosing_installer_multilang.exe, In Quarantäne, [b33f736b2d5d88ae4d3b672c5caa10f0], PUP.Optional.CubepileShopperz.A, C:\Users\Felix\AppData\Local\Temp\is-IRKR2.tmp\package_CubepileShopperz_installer_multilang.exe, In Quarantäne, [ab473da14d3d2e0858312370f610b050], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-ITAPD.tmp\gentlemjmp_ieu.exe, In Quarantäne, [6d85da04b4d6330369f6c8ccb94d837d], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_secureprotect_installer_multilang.exe, In Quarantäne, [678b35a9bbcf23138c45f90e7a887987], PUP.Optional.Conduit.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\ism.exe, In Quarantäne, [757deaf4315977bf32bda39952b0e41c], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_speeditup_installer_multilang.exe, In Quarantäne, [9161726c177357df953cdf28ff0302fe], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_superpc_installer_multilang.exe, In Quarantäne, [e60c647a4c3ede5801d09572f50dd22e], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_taplika_installer_multilang.exe, In Quarantäne, [40b2409ef89243f30dc4a067e31f22de], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_wajam_installer_multilang.exe, In Quarantäne, [38bae2fc2b5ff2448849a7602ad8cf31], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_zombie_installer_multilang.exe, In Quarantäne, [df13627c8cfecf67735e0502e22047b9], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_browsergood_installer_multilang.exe, In Quarantäne, [af43a43a5238a78f2aa7ed1a5ca6817f], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_BubbleSound_installer_multilang.exe, In Quarantäne, [d81a37a7c2c8db5b29a87295df2341bf], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_CubepileShopperz_installer_multilang.exe, In Quarantäne, [38bac8166d1dcd699d346b9ce91947b9], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_cubepile_speedcheck_installer_multilang.exe, In Quarantäne, [3bb75a8457333105b918c740f90949b7], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_istartsurfp_installer_multilang.exe, In Quarantäne, [19d9dd01addd1d19b31e0bfce0227b85], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_mountainbike_installer_multilang.exe, In Quarantäne, [6c8602dc0f7b171f478acf3872906a96], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_MyStartSearch_installer_multilang.exe, In Quarantäne, [a84ad20c0e7c7fb7ffd26e99867c3bc5], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_navright_imali_installer_multilang.exe, In Quarantäne, [0ee4706e0981ca6cc110ee19887a6997], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_optimizerpro_installer_multilang.exe, In Quarantäne, [9b57924cf7932a0c488955b2a95939c7], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_pariente_secureprotect_bing_installer_multilang.exe, In Quarantäne, [b33f7b637a1052e4f1e00ff8d72bd42c], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_pariente_secureprotect_yahoo_installer_multilang.exe, In Quarantäne, [df137e60ef9b16207f524cbb669c847c], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_plushd_installer_multilang.exe, In Quarantäne, [50a2f9e5bad03cfad6fb4dbab54d5ea2], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_pzombie_installer_multilang.exe, In Quarantäne, [15dd716dc3c7ac8a17baba4d9a68ff01], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_quickref_p_installer_multilang.exe, In Quarantäne, [11e19b43563458de4e83c93eb9496d93], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_SByoutube_installer_multilang.exe, In Quarantäne, [6a880dd1d4b61521e2ef5ea910f2f30d], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_secprotwhite_installer_multilang.exe, In Quarantäne, [24cea7370a80c86e458cd433c0421de3], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-L2HK5.tmp\gentlemjmp_ieu.exe, In Quarantäne, [35bdcf0f6921ad8929368a0a49bdb24e], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-LR6JO.tmp\gentlemjmp_ieu.exe, In Quarantäne, [0ae8d806731792a4203f54405da9d42c], PUP.Optional.Iminent.A, C:\Users\Felix\AppData\Local\Temp\is-PDR18.tmp\Iminent.exe, In Quarantäne, [4da5d40a0b7fb4822ecb177d32d40ef2], Trojan.Ransom.ED, C:\Users\Felix\AppData\Local\Temp\Low\lKUv.dll, In Quarantäne, [9c566d713852f5411a6cf332af538080], PUP.Optional.IStartsurf.A, C:\Users\Felix\AppData\Local\Temp\426fd0fc-b6b0-454d-a8e1-9b835748ff30\lly_istartsurf.exe, In Quarantäne, [ac46d707a2e852e4dcfdb0e1dc2af40c], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Temp\74fdec08-954d-419e-840d-65c4fc0b02c8\setup.exe, In Quarantäne, [e909ecf2e8a21422db87f9ff34cd9769], PUP.Optional.TVWizard.A, C:\Users\Felix\AppData\Local\Temp\f7c95d60-85a1-46e2-95a4-229a713d4816\setup.exe, In Quarantäne, [787a17c7800ac274eadd6fed867a1ae6], PUP.Optional.MixVideoPlayer.A, C:\Windows\Temp\MixVideoPlayerSetup.exe, In Quarantäne, [935ff5e9890182b4261483eccc34936d], PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsx7C2F.tmp\SPtool.dll, In Quarantäne, [48aac41a27639d99165911b4a35e22de], PUP.Optional.Installcore, C:\Users\Felix\Downloads\lg-smart-share.exe, In Quarantäne, [15dd6975ff8b2f074b0a3eba669f38c8], PUP.Optional.SearchProtect, C:\Users\Felix\AppData\Local\avabvbxvh\avabvbxvh.exe, In Quarantäne, [589a736b0189d36360db5ac9b151cb35], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\avabvbxvh\pbqrmvbub, In Quarantäne, [09e9a23ca3e7a492f47bba0b04fdca36], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\gmsd_de_283\Download\majmp_gentleeu.exe, In Quarantäne, [f00285596426e254c59a71235caa728e], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\gmsd_de_283\Download\setup_recover_rec_de_25.exe, In Quarantäne, [dd1518c6840649ed58071480c5416d93], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\gmsd_de_283\Download\setup_recover_rec_de_27.exe, In Quarantäne, [20d219c57f0b8ea8025d098bab5bf010], PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\gmsd_de_283\Download\setup_recover_rec_de_32.exe, In Quarantäne, [668c607e0d7d6ec85708e7adcf37916f], PUP.Optional.SearchProtect.A, C:\Windows\apppatch\apppatch64\VCLdr64.dll, In Quarantäne, [2fc39747ed9dc96d56191da850b18779], PUP.Optional.SearchProtect.A, C:\Windows\apppatch\apppatch64\VCLdr64.dll_1430753434995, In Quarantäne, [836f37a72169c076f778facb0df4dd23], PUP.Optional.SearchProtect.A, C:\Windows\apppatch\apppatch64\VCLdr64.dll_1432133447556, In Quarantäne, [5999e9f5c2c877bf9bd4aa1b857c7888], PUP.Optional.SearchProtect.A, C:\Windows\apppatch\nbin\VC32Loader.dll, In Quarantäne, [e0122db132583600a8c7d2f326db4cb4], PUP.Optional.AppDataFR.A, C:\Users\Felix\AppData\Roaming\appdataFr25.bin, In Quarantäne, [728028b6315970c6fcada956699a30d0], PUP.Optional.CrossRider.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\bgNova.html, In Quarantäne, [aa48845a38522b0b173205fc36ce7090], PUP.Optional.CrossRider.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\07835b83-9beb-46c5-820b-3b773124de84.dll, In Quarantäne, [aa48845a38522b0b173205fc36ce7090], PUP.Optional.CrossRider.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\761c5e96-144a-4f1e-95a7-50f69bddb27a.crx, In Quarantäne, [aa48845a38522b0b173205fc36ce7090], PUP.Optional.CrossRider.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954.xpi, In Quarantäne, [aa48845a38522b0b173205fc36ce7090], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk, In Quarantäne, [51a1c915602af046561ec53ff410f10f], PUP.Optional.Crossbrowse.C, C:\Windows\System32\Tasks\Crossbrowse, In Quarantäne, [2cc647974644eb4b14614cb8709453ad], PUP.Optional.Crossbrowse.C, C:\Windows\Tasks\Crossbrowse.job, In Quarantäne, [f1017965f694b68085f1a85c37cdb848], PUP.Optional.Crossbrowse.A, C:\Users\Felix\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Crossbrowse.lnk, In Quarantäne, [b43e2faf98f249edbaea25df798b867a], PUP.Optional.Trovi.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\searchplugins\trovi.xml, In Quarantäne, [0be766784644e6502177f01712f29967], PUP.Optional.MixVideoPlayer.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp\WebBrowserMixVideoPlayer.lnk, In Quarantäne, [8171fce2a3e760d6dbf8f414ed173dc3], PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\log.txt, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\config\config.ini, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\MixVideoPlayer.exe_Url_0uxwaewrhelcgghll0o5cintgfcbqdxr\1.0.0.4\user.config, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], PUP.Optional.MixVideoPlayer.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MixVideoPlayer\Uninstall MixVideoPlayer.lnk, In Quarantäne, [8171b826a6e4ce68ddfa5dab927223dd], PUP.Optional.MixVideoPlayer.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MixVideoPlayer\MixVideoPlayer.lnk, In Quarantäne, [8171b826a6e4ce68ddfa5dab927223dd], PUP.Optional.SearchProtect.A, C:\Windows\System32\Tasks\avabvbxvh, In Quarantäne, [1dd5ca141377b086007c0704f60e31cf], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\uninstall.exe, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ffsearch_toolbar!1.0.0.1031.xpi, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\install.data, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\searchProvider.xml, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about_bk.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn_apply.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\close.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf.xml, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf_back.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\input_bk.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\logo.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\main.xml, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_1.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_2.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\rigth_arrow.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\settings.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\data.html, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE.html, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE8.html, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\main.css, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\google_trends.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon128.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon16.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon48.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\loading.gif, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\logo32.ico, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\common.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\ga.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery-1.11.0.min.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery.autocomplete.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery.xdomainrequest.min.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\js.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\library.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit-ie8.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit2.0.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xdomain.min.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], PUP.Optional.Iminent.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ehhlaekjfiiojlddgndcnefflngfmhen_0.localstorage, In Quarantäne, [8072b529afdb70c6517050d551b33dc3], PUP.Optional.IStartSurf.A, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\istartsurf.xml, In Quarantäne, [f6fc7767c2c8f54102993debb054aa56], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-1-7, In Quarantäne, [9f53f6e8d6b4d36337ec1b12d72d3cc4], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-3, In Quarantäne, [658d6b738208b086081b3eef877d5ca4], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-4, In Quarantäne, [9062c618e4a6c96d9f84a885f311d32d], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-6, In Quarantäne, [a949de008802e45246ddba73030129d7], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-7, In Quarantäne, [a151e9f5d9b181b565be2ffed82cd927], PUP.Optional.Delta.A, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\delta-homes.xml, In Quarantäne, [5a988d514941a78f1b1175be7391bf41], PUP.Optional.SelectNGo.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage, In Quarantäne, [975b23bb008a64d216c83ef935cf08f8], PUP.Optional.SelectNGo.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage-journal, In Quarantäne, [6092697595f5ad897c6204337b892bd5], PUP.Optional.V9.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.v9.com_0.localstorage, In Quarantäne, [7f7332acc3c7d561027a9e9d5ea638c8], PUP.Optional.V9.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.v9.com_0.localstorage-journal, In Quarantäne, [668cf1edb4d63402473598a3aa5a7789], PUP.Optional.Websteroids.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_d.websteroidsapp.com_0.localstorage, In Quarantäne, [6a8898468802a0960fe8ac962bd9e41c], PUP.Optional.Websteroids.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_d.websteroidsapp.com_0.localstorage-journal, In Quarantäne, [02f017c7b9d1e84e966195ad32d2758b], PUP.Optional.ReMarkIt.A, C:\Windows\Tasks\Re-markit Update.job, In Quarantäne, [935ff7e797f341f5972b6cd824e0ca36], PUP.Optional.CrossRider.T, C:\Windows\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-1-7.job, In Quarantäne, [fcf629b5c6c488ae38480e76a56037c9], PUP.Optional.CrossRider.T, C:\Windows\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-3.job, In Quarantäne, [d31f7e60a5e5d660126e087cae570bf5], PUP.Optional.CrossRider.T, C:\Windows\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-4.job, In Quarantäne, [678bbd21aae07fb7a1dfb8cce71ea858], PUP.Optional.CrossRider.T, C:\Windows\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-6.job, In Quarantäne, [ae447e60a6e450e68cf4582cc2438a76], PUP.Optional.CrossRider.T, C:\Windows\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-7.job, In Quarantäne, [dd15ecf2abdf9c9a562ac5bfd0359868], PUP.Optional.GlobalUpdate.A, C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job, In Quarantäne, [6c86e4faf298d660c7c89fe539cca25e], PUP.Optional.GlobalUpdate.A, C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore, In Quarantäne, [d31fde003951f640e0b02262c63f669a], PUP.Optional.GlobalUpdate.A, C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job, In Quarantäne, [31c1825c96f473c3cac753317392b34d], PUP.Optional.GlobalUpdate.A, C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA, In Quarantäne, [b53df1eda5e5b87edbb78400a85d9e62], PUP.Optional.SearchProtect, C:\Windows\apppatch\Custom\Custom64\{cf2797aa-b7ec-e311-8ed9-005056c00008}.sdb, In Quarantäne, [29c9c21c91f922148c0af59240c57e82], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_idpcbdkoekecjkbjeccbapdkpcmoiloa_0.localstorage, In Quarantäne, [1ed4cb13d7b31620e91e3555dc29f709], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_idpcbdkoekecjkbjeccbapdkpcmoiloa_0.localstorage-journal, In Quarantäne, [6e844f8f7a1074c27a8d8a00877e60a0], PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\5es@IGB5CG.net\content\bg.js, In Quarantäne, [737f8c528406c472a3d94a490203fe02], PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\5es@IGB5CG.net\bootstrap.js, In Quarantäne, [737f8c528406c472a3d94a490203fe02], PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\5es@IGB5CG.net\chrome.manifest, In Quarantäne, [737f8c528406c472a3d94a490203fe02], PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\5es@IGB5CG.net\install.rdf, In Quarantäne, [737f8c528406c472a3d94a490203fe02], PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\z@AvXLzV.org\content\bg.js, In Quarantäne, [11e1a836bbcf3600ed8f910210f55ca4], PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\z@AvXLzV.org\bootstrap.js, In Quarantäne, [11e1a836bbcf3600ed8f910210f55ca4], PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\z@AvXLzV.org\chrome.manifest, In Quarantäne, [11e1a836bbcf3600ed8f910210f55ca4], PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\z@AvXLzV.org\install.rdf, In Quarantäne, [11e1a836bbcf3600ed8f910210f55ca4], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\crossrider_statusbar.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\button1.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\button2.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\button3.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\button4.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\button5.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\icon128.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\icon16.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\icon24.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\icon48.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\panelarrow-up.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\popup.html, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\skin.css, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\update.css, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome.manifest, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\install.rdf, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\2bfc61f66c21edc470f851f6877f7f4e.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\46769f088d8a5ca7d957f552bd7889ee.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\5345938d3f93ed57760f7ce85a709ff9.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\556b719984267776036f6aab2789273a.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\6b1f9fa3e593288cc575ced37adc66e9.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\a75df55f2eb2353a1f56f9031d91b63b.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\background.html, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\browser.xul, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\dialog.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\ffCoreFilesIndex.txt, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\options.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\options.xul, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\search_dialog.xul, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\8b8a15340106dbc4bf3e3f90d8c4ed91.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\04b52e49aba927abd6e84c13c7ec770d.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\07405a1cc2e8770b12e37cdfc04109f1.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\0ab339d54d43d16057414b7f2c235ffa.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\0f3ce61cd4fca8b07ee551a4df03afc7.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\2f8c482e297b4f921dee8a1d3453e884.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\595451a4009781649a8b6e389d51ceba.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\72962227cf70d95b507b78a156b12343.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\73912c1be394e1bcfe970a5ee0af7926.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\95db074f992289ade5468bf48ad490bb.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\a644849e50faff333fd1ce007699a7b9.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\e02f19efe53a27f2e539f234b4426d61.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\e18fb975a70cd38945fba550b42ee120.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\e5ba0369f95a1fb6fbfe373138b91558.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\e812087c22fd55c9b9587b8ceb55a6ba.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\fb4b47f5a96fdd5753555f33359603de.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\cb373a03382b78709efc2e49bb4b0495.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\114457d4f8e3998aa94dc495c8765cf6.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\2d04d45a70842d3a9d3c3bd20a20abad.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\4c5c61479540f1a2ee6df67a00d33339.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\4cc270623f90e14e068b36a62af8e5c4.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\6c1ed0c79825df083afd20a7c4f95c04.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\6dccd3a95c208d0a099eca8129138b96.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\71130efab9aa3fc43f72f48136e18180.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\99d27a74c833b723cd6fafed83fc39e7.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\c17ea5ed6f24245deba1ab43a2fba28d.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\c7a68542fbf413b043ea44c6342ad5b0.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\d087ab224d7a2fabf3ff83033515450b.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\d0cc4309b2fde82409d041e93e64d4cb.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\daf0efc2350ca080928f96835d19acdf.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\ddb60cafee09985c6cd302fe8c2bdee9.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\e10adc8da867436aa2d962338dbc43e3.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\eb8643bd76715392be6df38c6a129f6b.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\f1214a116e094f4852f0904348046984.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\f301d3f7d9c0f26ad545883eec96ecf6.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\f565dc4d472d454899576fe7b8fb580d.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\installer.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\defaults\preferences\prefs.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\manifest.xml, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins.json, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\262.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\102.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\104.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\119.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\123.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\13.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\14.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\16.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\17.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\178.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\179.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\180.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\184.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\195.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\200.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\220.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\221.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\223.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\231.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\232.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\234.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\242.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\246.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\252.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\253.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\260.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\263.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\264.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\273.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\281.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\286.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\288.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\289.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\300.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\315.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\334.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\335.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\339.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\345.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\354.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\356.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\375.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\376.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\379.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\380.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\385.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\388.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\389.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\390.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\391.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\393.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\397.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\4.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\47.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\64.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\7.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\78.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\9.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\91.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\93.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\userCode\background.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\userCode\extension.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\locale\en-US\translations.dtd, In Quarantäne, [ec060bd34a40b87e44393b582adba060], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\crossrider_statusbar.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\button1.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\button2.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\button3.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\button4.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\button5.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\icon128.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\icon16.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\icon24.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\icon48.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\panelarrow-up.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\popup.html, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\skin.css, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\update.css, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome.manifest, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\install.rdf, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\0ea43de4d6b3549c15f949060d2b2e61.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\261f6138d64b6c630071146cfdeb035f.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\489826da8b0971ad9ff38580c6f0c2a4.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\5c2ef77bfb9fe225933efbf80a3fb0fd.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\82a37b2f10cf4f9099dfaff88c72571f.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\background.html, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\browser.xul, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\d1f2b163538b1486ce98cb7f29593d00.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\dialog.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\ffCoreFilesIndex.txt, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\options.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\options.xul, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\search_dialog.xul, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\95f5e21a39242e6fc3e412e65b5aa306.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\21f5a12c00cd3b763d82871db00b08cc.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\46266e9dfe6291ad9097e9eb98726d76.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\5f279e214606bc563f1eb3324ac4cd5b.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\66edc42f4f43f7fbe5a84d3810f5f589.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\6ea5a8219db79fc60df01cdb6626d520.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\76c468f415d458b3199049c739ac572d.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\7a47a676caeb26dbe76a7a27da8f8e77.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\8089f1e3fec4ba0b2e639e141b5488f9.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\9711e2bf1ef4a0491d8f4c1272c48d46.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\9998b215863dbb922f3228443e7a7637.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\aa38941cf00fc5e8ec319ac768234210.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\ca749f9e381de2d605338ba17efec556.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\d104c42ad9ccf8fa515f5b13ecf84654.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\e5bd519b5abb64ec0025c51621829a3b.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\f1bcedb8cea54d0e34f3aae270a17a46.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\b1584b0c93b71b476926bd8bef4c0a3d.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\0dc59c68bc796eb80fe6f4c201ccda5e.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\314cf3e75d5aeb68a18ef4dbffcb0717.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\31b2cc6c452274067e0bf4258b2d6970.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\351d57de6ad71794c043d08a11a00685.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\3b6460f409ad02fcf9f16daab40ce621.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\546b2ead3000047687fc7af9bde25d25.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\56a6c9f262584e815ae0ad47811c50f4.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\6e790db65c04d806d713965f673071b9.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\7b9ad834a6ae608dc5e14dfc46adf0b1.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\837cb60acf519b04a67416a528c057f7.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\856e9518f733eb3a5adde00953202728.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\8bce38e4a3b83633462206a951c85a00.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\9bfe863e6a8bbd1aed473b9ce7a95603.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\c761f84828902c3731ca58f64b577c29.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\ccad490f1a032f8aec64041868b333ab.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\e105a4dd340257526f5ec0c95b35f959.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\e34079fd900a151c38932b3ccf1531c3.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\eaac1a7f1a7a3a2cf4bca1c9f0fc03d9.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\eb467271bbea24ba2fc6ded8831a9a13.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\installer.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\defaults\preferences\prefs.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\manifest.xml, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins.json, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\102.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\104.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\119.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\123.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\13.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\14.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\16.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\17.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\178.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\179.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\180.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\184.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\195.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\220.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\221.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\223.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\231.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\232.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\242.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\246.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\260.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\262.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\263.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\268.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\273.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\275.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\286.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\289.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\291.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\299.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\300.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\302.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\4.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\47.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\64.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\7.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\78.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\9.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\91.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\93.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\userCode\background.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\userCode\extension.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\locale\en-US\translations.dtd, In Quarantäne, [04eed20c02886ec828551182a065d12f], PUP.Optional.PerfectCoupon.A, C:\Program Files (x86)\tpeRfecttcooUpon\4CR0qHPpAi6VbU.tlb, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.PerfectCoupon.A, C:\Program Files (x86)\tpeRfecttcooUpon\4CR0qHPpAi6VbU.dat, In Quarantäne, [b240cc123357f5411603672d1aebed13], PUP.Optional.Iminent.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\minibar@go.im.xpi, In Quarantäne, [4ea4c618f3979b9bac304c49cf36e719], PUP.Optional.SuperOptimizer.A, C:\ProgramData\{29efd0f5-4e5f-1d8b-29ef-fd0f54e543d5}\hqghumeaylnlf.dat, In Quarantäne, [817104dab6d46ccaf62912877f866997], PUP.Optional.SuperOptimizer.A, C:\ProgramData\{29efd0f5-4e5f-1d8b-29ef-fd0f54e543d5}\3f0720df6839b764, Löschen bei Neustart, [817104dab6d46ccaf62912877f866997], PUP.Optional.SuperOptimizer.A, C:\ProgramData\{29efd0f5-4e5f-1d8b-29ef-fd0f54e543d5}\f2fa868a4fed50b0, In Quarantäne, [817104dab6d46ccaf62912877f866997], PUP.Optional.SuperOptimizer.A, C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\hqghumeaylnlf.lnk, In Quarantäne, [935fd70798f276c022ff9cfd4bba0af6], PUP.Optional.Picexa.A, C:\Users\Felix\AppData\Roaming\Picexa Viewer\log\install.log, In Quarantäne, [8e6404da95f5c76fafe90d8da0656e92], PUP.Optional.Picexa.A, C:\Users\Public\Desktop\Picexa.lnk, In Quarantäne, [9d552bb36b1f5bdb0b8e0892a3621ce4], PUP.Optional.Picexa.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picexa\Picexa.lnk, In Quarantäne, [39b99846eaa03afc98034e4c4cb9ad53], PUP.Optional.Picexa.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picexa\uninstall.lnk, In Quarantäne, [39b99846eaa03afc98034e4c4cb9ad53], PUP.Optional.SaveInShop.A, C:\Program Files (x86)\Savinshhopp\pRsTug3lO92q5x.tlb, In Quarantäne, [0ce6b22c1377cb6bbb79acf0ec19827e], PUP.Optional.SaveInShop.A, C:\Program Files (x86)\Savinshhopp\pRsTug3lO92q5x.dat, In Quarantäne, [0ce6b22c1377cb6bbb79acf0ec19827e], PUP.Optional.BubbleSound.A, C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BubbleSound 1.0\Uninstall.lnk, In Quarantäne, [ca28c8168bff1d1911c9c5d7da2bc23e], PUP.Optional.3DBubbleSound.A, C:\Program Files\BubbleSound\3D BubbleSound.exe, Löschen bei Neustart, [8969af2fd3b7d85ea81e9d63689ca65a], PUP.Optional.WindowsMangerProtect.A, C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe, Löschen bei Neustart, [8b677965f3972610beb95cb9b64e718f], PUP.Optional.Picexa.A, C:\Program Files (x86)\Picexa\picexasvc.exe, Löschen bei Neustart, [5a984e9090faf64035692971887d7c84], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_DUMP_P11020_T3576_D2015_05_23_T20_55_45.dmp, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_DUMP_P12592_T5648_D2015_05_24_T12_26_55.dmp, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_DUMP_P3596_T12100_D2015_05_24_T04_48_55.dmp, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_DUMP_P5344_T13260_D2015_05_24_T20_04_54.dmp, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_DUMP_P8172_T6264_D2015_05_23_T21_10_54.dmp, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_DUMP_P8584_T1088_D2015_05_22_T19_43_55.dmp, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_REPORT_P11020_T3576_D2015_05_23_T20_55_45.txt, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_REPORT_P12592_T5648_D2015_05_24_T12_26_55.txt, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_REPORT_P3596_T12100_D2015_05_24_T04_48_55.txt, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_REPORT_P5344_T13260_D2015_05_24_T20_04_54.txt, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_REPORT_P8172_T6264_D2015_05_23_T21_10_54.txt, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_REPORT_P8584_T1088_D2015_05_22_T19_43_55.txt, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\rep\UserRepository.dat, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\rep\UserSettings.dat, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\UI\rep\UIRepository.dat, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update\conf, In Quarantäne, [62903ba33d4d51e5f3ca9648e122cf31], PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update\update.exe, In Quarantäne, [62903ba33d4d51e5f3ca9648e122cf31], PUP.Optional.GlobalUpdate.A, C:\Users\Felix\AppData\Local\Temp\comh.189875\GoogleUpdateHelper.msi, In Quarantäne, [2ec4aa34f298171ff4062bb4976c06fa], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\473.json, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\MessageBox.xml, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\un.ini, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\uninstallDlg2.xml, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\UninstallManager.exe, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\bg.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\bg1.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\bk_shadow.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\button.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\button1.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\checkbox.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\checkbox_select.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\checked.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\close.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\loading_bg.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\loading_light.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\min.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb],
__________________ |
08.07.2015, 18:51 | #4 |
| Windows 8 & Windows 7 Laptop beide stark Adware verseuchtCode:
ATTFilter PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\scrollbar.bmp, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\Thumbs.db, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\unchecked.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code\code1.jpg, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code\code2.jpg, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code\code3.jpg, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code\code4.jpg, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code\code5.jpg, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code\code6.jpg, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code\Thumbs.db, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\a.db, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\b.db, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\b.res, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\c1.res, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\c1_64.res, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\c2.arc, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\c3.res, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\c4.arc, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\i.arc, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\Sqlite3.dll, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\tb32.arc, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\tb64.arc, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\u.arc, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\000271.ldb, In Quarantäne, [ad4511cd850548eef09a55967d8651af], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\000273.ldb, In Quarantäne, [ad4511cd850548eef09a55967d8651af], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\000280.ldb, In Quarantäne, [ad4511cd850548eef09a55967d8651af], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\000281.log, In Quarantäne, [ad4511cd850548eef09a55967d8651af], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\CURRENT, In Quarantäne, [ad4511cd850548eef09a55967d8651af], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\LOCK, In Quarantäne, [ad4511cd850548eef09a55967d8651af], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\LOG, In Quarantäne, [ad4511cd850548eef09a55967d8651af], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\LOG.old, In Quarantäne, [ad4511cd850548eef09a55967d8651af], PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\MANIFEST-000279, In Quarantäne, [ad4511cd850548eef09a55967d8651af], PUP.Optional.TicTaCoupon.A, C:\Program Files (x86)\TiCTaCoupon\nQuLHdvmUIMBjs.dat, In Quarantäne, [16dc5c827f0b26105ccb23ca976cec14], PUP.Optional.TicTaCoupon.A, C:\Program Files (x86)\TiCTaCoupon\nQuLHdvmUIMBjs.tlb, In Quarantäne, [16dc5c827f0b26105ccb23ca976cec14], PUP.Optional.GamesDesktop.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP\GamesDesktop.lnk, In Quarantäne, [f7fb09d5cbbfaa8c2d94ec03e71c1fe1], PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\upgmsd_de_283.cyl, In Quarantäne, [5a98b727484246f02d9533bcf50e5ca4], PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\user_profil.cyp, In Quarantäne, [5a98b727484246f02d9533bcf50e5ca4], PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\Download\setup_recover_rec_de_17.exe, In Quarantäne, [5a98b727484246f02d9533bcf50e5ca4], PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\gmsd_de_283\1.20\cnf.cyl, Löschen bei Neustart, [5a98b727484246f02d9533bcf50e5ca4], PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\gmsd_de_283\1.20\eorezo.cyl, Löschen bei Neustart, [5a98b727484246f02d9533bcf50e5ca4], PUP.Optional.GamesDesktop.A, C:\Program Files (x86)\gmsd_de_283\unins000.dat, In Quarantäne, [1bd7a23cabdf96a04c77e906d03346ba], PUP.Optional.GamesDesktop.A, C:\Program Files (x86)\gmsd_de_283\unins000.exe, In Quarantäne, [1bd7a23cabdf96a04c77e906d03346ba], PUP.Optional.GamesDesktop.A, C:\Program Files (x86)\gmsd_de_283\unins000.msg, In Quarantäne, [1bd7a23cabdf96a04c77e906d03346ba], PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update\conf, In Quarantäne, [e909d806f39774c215fbde160ff4d52b], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome.manifest, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\install.rdf, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\index.html, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\quick_start.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\quick_start.xul, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\include\speed_dial.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\include\tools\about_blank_hook.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\include\tools\misc.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\include\tools\popup_image_helper.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\include\tools\urlrequestor.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\js.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\lib\doT.min.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\lib\jquery-2.1.0.min.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\lib\jquery.autocomplete.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\module\hotSearch.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\module\mostgrid.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\module\search.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\module\stat.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\pack\common.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\pack\ga.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\pack\xagainit.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\en\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\en-US\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\es\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\es-419\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-BE\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-CA\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-CH\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-LU\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\it\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\it-CH\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\pl\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\pt-BR\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\ru\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\ru-MO\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\tr\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\vi\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\zh-CN\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\zh-TW\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\default_logo.png, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\googlelogo.png, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\google_trends.png, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\icon.png, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\loading.gif, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\logo.png, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\newtab.ico, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\simple.css, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\style.css, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\defaults\preferences\fvd.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\defaults\preferences\preferences.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\addonmanager.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\aes.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\config.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\dialogs.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\last_tab.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\misc.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\properties.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\remoterequest.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\restoreprefs.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\settings.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\icudtl.dat, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome_100_percent.pak, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome_child.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\d3dcompiler_46.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\ffmpegsumo.dll, In Quarantäne, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\libegl.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\libglesv2.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\pdf.dll, In Quarantäne, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\resources.pak, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\Locales\de.pak, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\chrome.dat, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\First Run, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Local State, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\lockfile, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Bookmarks, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Bookmarks.bak, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cookies, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cookies-journal, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Current Session, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Current Tabs, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Favicons, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Favicons-journal, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Google Profile.ico, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\History, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\History-journal, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Last Session, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Last Tabs, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Login Data, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Login Data-journal, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Network Action Predictor, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Network Action Predictor-journal, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Origin Bound Certs, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Origin Bound Certs-journal, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Preferences, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\README, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Secure Preferences, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Shortcuts, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Shortcuts-journal, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Top Sites, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Top Sites-journal, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\TransportSecurity, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Visited Links, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Web Data, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Web Data-journal, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\data_0, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\data_1, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\data_2, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\data_3, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\f_000001, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\f_000002, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\f_000003, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\f_000004, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\index, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension Rules\000009.log, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension Rules\CURRENT, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension Rules\LOCK, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension Rules\LOG, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension Rules\LOG.old, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension Rules\MANIFEST-000008, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\000005.ldb, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\000008.ldb, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\000011.ldb, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\000012.log, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\CURRENT, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\LOCK, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\LOG, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\LOG.old, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\MANIFEST-000010, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\craw_background.js, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\craw_window.js, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\manifest.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\css\craw_window.css, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\html\craw_window.html, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\flapper.gif, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\icon_128.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\icon_16.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_close.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_hover.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_maximize.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_pressed.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\bg\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ca\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\cs\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\da\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\de\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\el\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en_GB\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es_419\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\et\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fi\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fil\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hi\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hu\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\id\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\it\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ja\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ko\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lt\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lv\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nb\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nl\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pl\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_BR\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_PT\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ro\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ru\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sk\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sl\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sv\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\th\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\tr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\uk\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\vi\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_CN\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_TW\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_metadata\verified_contents.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\craw_background.js, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\craw_window.js, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\manifest.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\css\craw_window.css, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\html\craw_window.html, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\flapper.gif, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\icon_128.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\icon_16.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\topbar_floating_button.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\topbar_floating_button_close.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\topbar_floating_button_hover.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\topbar_floating_button_maximize.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\topbar_floating_button_pressed.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\bg\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ca\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\cs\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\da\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\de\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\el\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\en\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\en_GB\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\es\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\es_419\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\et\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\fi\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\fil\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\fr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\hi\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\hr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\hu\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\id\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\it\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ja\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ko\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\lt\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\lv\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\nb\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\nl\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\pl\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\pt_BR\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\pt_PT\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ro\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ru\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sk\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sl\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sv\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\th\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\tr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\uk\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\vi\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\zh_CN\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\zh_TW\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_metadata\verified_contents.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\GPUCache\data_0, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\GPUCache\data_1, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\GPUCache\data_2, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\GPUCache\data_3, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\GPUCache\index, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\JumpListIcons\2BDC.tmp, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\JumpListIcons\2BED.tmp, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\JumpListIconsOld\B6AA.tmp, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\JumpListIconsOld\B6BB.tmp, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\000005.ldb, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\000008.ldb, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\000011.ldb, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\000012.log, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\CURRENT, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\LOCK, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\LOG, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\LOG.old, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\MANIFEST-000010, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage\chrome-extension_pafkbggdmjlpgkdkcbjmhmfcdpncadgh_0.localstorage, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage\chrome-extension_pafkbggdmjlpgkdkcbjmhmfcdpncadgh_0.localstorage-journal, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\000005.ldb, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\000008.ldb, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\000011.ldb, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\000012.log, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\CURRENT, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\LOCK, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\LOG, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\LOG.old, In Quarantäne, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\MANIFEST-000010, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], PUP.Optional.Crossbrowse.C, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse\Crossbrowse.lnk, In Quarantäne, [20d2c7174b3f082ef048a8520ff40ff1], PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\a.db, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\b.db, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\b.res, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\c1.res, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\c1_64.res, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\c3.res, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\c4.arc, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\i.arc, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\Sqlite3.dll, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\tb32.arc, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\tb64.arc, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\u.arc, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\backup_Realtek High Definition Audio_Lautsprecher.reg, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\BubbleSound.dll, Löschen bei Neustart, [856dad313d4d3bfb1e6da35a847f6c94], PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\silentinstaller.exe, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\silentuninstaller.exe, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\Uninstall.exe, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\config\3DBubbleSound.conf, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\config\3DBubbleSound.err, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\config\3DBubbleUser.conf, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProHelper.dll, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\bg_new3.bmp, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\bg_new4.bmp, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\cancel.bmp, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\CookiesException.txt, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\file_id.diz, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\German.ini, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\HomePage.url, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\itdownload.dll, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptimizerPro.chm, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\scan.gif, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\sqlite3.dll, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\StartupList.txt, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\unins000.dat, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\unins000.exe, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\unins000.msg, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], PUP.Optional.OptimizerPro.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2\Hilfe.lnk, In Quarantäne, [9b57de00d7b33402c6ccb94448bb7789], PUP.Optional.OptimizerPro.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2\Nach Updates suchen.lnk, In Quarantäne, [9b57de00d7b33402c6ccb94448bb7789], PUP.Optional.OptimizerPro.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2\Optimizer Pro entfernen.lnk, In Quarantäne, [9b57de00d7b33402c6ccb94448bb7789], PUP.Optional.OptimizerPro.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2\Optimizer Pro im Internet.lnk, In Quarantäne, [9b57de00d7b33402c6ccb94448bb7789], PUP.Optional.OptimizerPro.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2\Optimizer Pro.lnk, In Quarantäne, [9b57de00d7b33402c6ccb94448bb7789], PUP.Optional.Trovi, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences, Gut: ("session":{"restore_on_startup":4,"startup_urls":["https://www.malwarebytes.org/restorebrowser/"]}}), Schlecht: ("session":{"restore_on_startup":4,"startup_urls":["http://www.trovi.com/?gd=&ctid=CT3330130&octid=EB_ORIGINAL_CTID&ISID=M72406C1C-94FC-4B75-BFD1-DCF538369C96&SearchSource=55&CUI=&UM=8&UP=SP23D2B5C9-FC57-4337-B50B-5A179B68F721&D=042315&SSPV=SP22230TA_sp_ch"]}}), Ersetzt,[1ed42cb2ec9edc5a2b9f3369b0569868] PUP.Optional.QuickStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\prefs.js, Gut: (), Schlecht: (user_pref("browser.newtab.url", "chrome://quick_start/content/index.html");), Ersetzt,[81717d614d3d64d207ee88117b8b0ff1] PUP.Optional.Delta.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\prefs.js, Gut: (), Schlecht: (user_pref("browser.startup.homepage", "http://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH");), Ersetzt,[678bb32b4941c5716ede15857195a55b] PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.crossrider.bic", "14c38f6106d4e963a25527fbfddf5dbf");), Ersetzt,[3fb3746a4644cd69505c9307ae58a65a] Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter # AdwCleaner v4.207 - Bericht erstellt 08/07/2015 um 01:59:56 # Aktualisiert 21/06/2015 von Xplode # Datenbank : 2015-07-05.2 [Server] # Betriebssystem : Windows 8.1 (x64) # Benutzername : Felix - FELIX # Gestarted von : C:\Users\Felix\Desktop\AdwCleaner_4.207.exe # Option : Löschen ***** [ Dienste ] ***** [#] Dienst Gelöscht : a4b494b4 ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue Ordner Gelöscht : C:\Program Files (x86)\Picexa Ordner Gelöscht : C:\Program Files (x86)\FineDiealSoFt Ordner Gelöscht : C:\Program Files (x86)\TicTaCooUpon Ordner Gelöscht : C:\Program Files (x86)\TicTaCoupone Ordner Gelöscht : C:\Program Files (x86)\MixVideoPlayer Ordner Gelöscht : C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Local\SearchProtect Ordner Gelöscht : C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Local\BrowserWeb Ordner Gelöscht : C:\Users\Felix\AppData\Local\globalUpdate Ordner Gelöscht : C:\Users\Felix\AppData\Roaming\Uniblue Ordner Gelöscht : C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PepperZip Datei Gelöscht : C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0.localstorage-journal Datei Gelöscht : C:\END Datei Gelöscht : C:\WINDOWS\AppPatch\Custom\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb Datei Gelöscht : C:\Users\Felix\AppData\Roaming\AMIILI Datei Gelöscht : C:\Users\Felix\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PC-Mechanic.lnk Datei Gelöscht : C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.nationzoom.com_0.localstorage Datei Gelöscht : C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.nationzoom.com_0.localstorage-journal ***** [ Geplante Tasks ] ***** Task Gelöscht : Optimizer Pro Schedule Task Gelöscht : PC-Mechanic Maintenance Task Gelöscht : PC-Mechanic Startup Task Gelöscht : PC-Mechanic Subscription ***** [ Verknüpfungen ] ***** Verknüpfung Desinfiziert : C:\Users\Public\Desktop\Mozilla Firefox.lnk Verknüpfung Desinfiziert : C:\Users\Felix\Desktop\iexplore.lnk Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk Verknüpfung Desinfiziert : C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk Verknüpfung Desinfiziert : C:\Users\Felix\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk Verknüpfung Desinfiziert : C:\Users\Felix\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk Verknüpfung Desinfiziert : C:\Users\Felix\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk Verknüpfung Desinfiziert : C:\Users\Felix\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4 Schlüssel Gelöscht : HKCU\Software\Classes\PepperZip Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PicexaViewer.bmp Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PicexaViewer.gif Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PicexaViewer.jpeg Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PicexaViewer.jpg Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PicexaViewer.png Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PicexaViewer.tif Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\pc-mechanic Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\PepperZip.exe Wert Gelöscht : HKLM\SOFTWARE\Classes\.xht\OpenWithProgIDs [CRSBRWSHTML] Wert Gelöscht : HKLM\SOFTWARE\Classes\.webp\OpenWithProgIDs [CRSBRWSHTML] Wert Gelöscht : HKLM\SOFTWARE\Classes\.shtml\OpenWithProgIDs [CRSBRWSHTML] Schlüssel Gelöscht : HKLM\SOFTWARE\761c5e96-144a-4f1e-95a7-50f69bddb27a Schlüssel Gelöscht : HKLM\SOFTWARE\9c0ea3f1-d566-a363-936b-0ecb9f66d95e Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{9C4EFBD5-1ADF-41E6-BE26-AF44326E30E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A07E5BFF-B16C-4ABA-A30F-514213A945E6} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{03D19D4E-AADD-472C-93CF-63602AE5DC2E} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{9C4EFBD5-1ADF-41E6-BE26-AF44326E30E4} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{A07E5BFF-B16C-4ABA-A30F-514213A945E6} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{00000000-BA82-4612-BE43-95B8B482C269} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36} Schlüssel Gelöscht : HKCU\Software\GlobalUpdate Schlüssel Gelöscht : HKCU\Software\InstalledBrowserExtensions Schlüssel Gelöscht : HKCU\Software\PepperZip Schlüssel Gelöscht : HKCU\Software\Tutorials Schlüssel Gelöscht : HKCU\Software\Wnkey Schlüssel Gelöscht : HKCU\Software\ClientConnect Schlüssel Gelöscht : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} Schlüssel Gelöscht : HKLM\SOFTWARE\GlobalUpdate Schlüssel Gelöscht : HKLM\SOFTWARE\hdcode Schlüssel Gelöscht : HKLM\SOFTWARE\InstalledBrowserExtensions Schlüssel Gelöscht : HKLM\SOFTWARE\SupDp Schlüssel Gelöscht : HKLM\SOFTWARE\Uniblue Schlüssel Gelöscht : HKLM\SOFTWARE\MixVideoPlayer Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PepperZip Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TVWizard Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1F88FC5D-4D46-448A-AF59-7061FFC6ABBF}_is1 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Assets Manager Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MixVideoPlayer Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LolliScan Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Picexa Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\BubbleSound Daten Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\VC32Loader.dll Daten Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\VC64Loader.dll Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\93BAD29AC2E44034A96BCB446EB8552E Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\delta-homes.com Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\istartsurf.com Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\v9.com Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.delta-homes.com Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.istartsurf.com Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.v9.com ***** [ Internetbrowser ] ***** -\\ Internet Explorer v11.0.9600.17416 -\\ Mozilla Firefox v27.0.1 (de) [k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.5WG8cDbX0ynuoutI.scode", "(function(){try{if(window.location.href.indexOf(\"rHYEqjrErjnFqjrGqTa9rTg5rE\")>-1){return;}}catch(e){}try{var d=[[\"www.ewoss.com\",\"livewebcams.xyz\"[...] [k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.JeywMvGpWdNS99qI.scode", "(function(){try{if(window.location.href.indexOf(\"rHYEqjrErjnFqjrGqTa9rTg5rE\")>-1){return;}}catch(e){}try{var d=[[\"www.ewoss.com\",\"livewebcams.xyz\"[...] [k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.a9852e04d79234f0284e5c1a1b9fe8c30gmailcom71381.71381.cookie.previous_page.value", "%22hxxp%3A//www.delta-homes.com/%3Ftype%3Dsc%26ts%3D1432145680%26z%3Dd9753fd62bae21669a640dcg6z[...] [k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.a9852e04d79234f0284e5c1a1b9fe8c30gmailcom71381.71381.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22deal[...] [k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.adad2ada441be422fac3577d1e84d4570e6419885b2032com61994.61994.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2[...] [k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.enabledAddons", "istart_ffnt%40gmail.com:5.3.4,fireml%40sirma.bg:1008.21.586,minibar%40go.im:9.11.1.2,quick_searchff%40gmail.com:5.4.13,9852e04d-7923-4f02-84e5-c1a1b9fe8c30%40gma[...] [k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.quick_start.enable_search1", false); [k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); [k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("iminent.cifs", "1"); [k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("iminent.version", "9.11.1.2"); [k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("iminent.versioning", "{\"CurrentVersion\":\"9.11.1.2\",\"InstallEventCTime\":1436309353939}"); -\\ Google Chrome v43.0.2357.132 [C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3330130&octid=EB_ORIGINAL_CTID&ISID=M72406C1C-94FC-4B75-BFD1-DCF538369C96&SearchSource=58&CUI=&UM=8&UP=SP23D2B5C9-FC57-4337-B50B-5A179B68F721&q={searchTerms}&D=042315&SSPV=SP22230TA_sp_ch [C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Gelöscht [Homepage] : hxxp://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH ************************* AdwCleaner[R0].txt - [28653 Bytes] - [05/12/2014 13:55:55] AdwCleaner[R1].txt - [14199 Bytes] - [08/07/2015 01:58:23] AdwCleaner[S0].txt - [27409 Bytes] - [05/12/2014 14:00:47] AdwCleaner[S1].txt - [13876 Bytes] - [08/07/2015 01:59:56] ########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [13936 Bytes] ##########
__________________ Beste Grüße, Kuhlambo12 |
08.07.2015, 19:01 | #5 |
| Windows 8 & Windows 7 Laptop beide stark Adware verseucht JRT: Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 7.3.5 (07.07.2015:2) OS: Windows 8.1 x64 Ran by Felix on 08.07.2015 at 2:05:06,86 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Tasks Successfully deleted: [Task] C:\WINDOWS\system32\tasks\PCDEventLauncherTask Successfully deleted: [Task] C:\WINDOWS\system32\tasks\PCDoctorBackgroundMonitorTask ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Eventlog\Application\Update Mega Browse ~~~ Files Successfully deleted: [File] C:\Users\Felix\appdata\local\google\chrome\user data\default\local storage\chrome-extension_ogminpmldncgcmokldnmmapddoccmhfl_0.localstorage Successfully deleted: [File] C:\Users\Felix\appdata\local\google\chrome\user data\default\local storage\chrome-extension_ogminpmldncgcmokldnmmapddoccmhfl_0.localstorage-journal Successfully deleted: [File] C:\Users\Felix\appdata\local\google\chrome\user data\default\local storage\hxxps_www.superfish.com_0.localstorage Successfully deleted: [File] C:\Users\Felix\appdata\local\google\chrome\user data\default\local storage\hxxps_www.superfish.com_0.localstorage-journal ~~~ Folders Successfully deleted: [Folder] C:\ProgramData\16031212816591746667 Successfully deleted: [Folder] C:\ProgramData\88e93e1b614f44179b9b054e7f8932e6 ~~~ FireFox Successfully deleted the following from C:\Users\Felix\AppData\Roaming\mozilla\firefox\profiles\k9omtvtx.default\prefs.js user_pref(browser.search.defaultenginename, delta-homes); user_pref(browser.search.selectedEngine, delta-homes); Emptied folder: C:\Users\Felix\AppData\Roaming\mozilla\firefox\profiles\k9omtvtx.default\minidumps [6 files] ~~~ Chrome [C:\Users\Felix\appdata\local\Google\Chrome\User Data\Default\Preferences] - default search provider reset [C:\Users\Felix\appdata\local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted: [C:\Users\Felix\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset [C:\Users\Felix\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted: [ ogminpmldncgcmokldnmmapddoccmhfl ] ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 08.07.2015 at 2:08:40,64 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-07-2015 Ran by Felix (administrator) on FELIX on 08-07-2015 19:57:47 Running from C:\Users\Felix\Desktop Loaded Profiles: Felix (Available Profiles: Felix) Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel) C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (SoftThinks SAS) C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Spotify Ltd) C:\Users\Felix\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\csisyncclient.exe (PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssist\uaclauncher.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17044_x64__8wekyb3d8bbwe\glcnd.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7192792 2013-07-06] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-07-05] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-07-05] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-30] (Intel Corporation) HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [457616 2014-10-03] () HKLM\...\Run: [HotKeysCmds] => "C:\Windows\system32\hkcmd.exe" HKLM\...\Run: [Persistence] => "C:\Windows\system32\igfxpers.exe" HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [3760456 2013-04-23] (Dell Inc.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2780400 2013-09-06] (Synaptics Incorporated) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.) HKLM-x32\...\Run: [MetroTileShortcut] => "C:\Program Files\McAfeeAntiTheft\2.1.170.2\McATUIHost.exe" /IMAT_SHORTCUTS HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-03-20] (Apple Inc.) HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKLM\...\Policies\Explorer: [NoFolderOptions] 0 HKLM\...\Policies\Explorer: [TaskbarNoNotification] 0 HKLM\...\Policies\Explorer: [HideSCAHealth] 0 HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Run: [Spotify Web Helper] => C:\Users\Felix\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2023480 2015-07-08] (Spotify Ltd) HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Run: [OneDrive] => C:\Users\Felix\AppData\Local\Microsoft\OneDrive\OneDrive.exe [382664 2015-05-22] (Microsoft Corporation) HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Policies\Explorer: [TaskbarNoNotification] 0 HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Policies\Explorer: [HideSCAHealth] 0 HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Policies\Explorer: [NoFolderOptions] 0 HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Policies\Explorer: [NoControlPanel] 0 AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [141336 2013-12-18] (NVIDIA Corporation) Startup: C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2013-12-24] ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File ShellIconOverlayIdentifiers: [DBARFileBackuped] -> {831cebdd-6baf-4432-be76-9e0989c14aef} => C:\WINDOWS\system32\mscoree.dll [2013-08-22] (Microsoft Corporation) ShellIconOverlayIdentifiers: [DBARFileNotBackuped] -> {275e4fd7-21ef-45cf-a836-832e5d2cc1b3} => C:\WINDOWS\system32\mscoree.dll [2013-08-22] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-05-19] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-05-28] (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-03-17] (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{5D15FC0D-6CAB-4030-91AE-005F1D6C46C7}: [DhcpNameServer] 172.4.1.171 Tcpip\..\Interfaces\{9F1B649E-8A56-4D77-BC37-3CF394F922D5}: [DhcpNameServer] 192.168.178.1 StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll [2014-03-03] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll [2014-03-03] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-06-01] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-06-01] (Intel Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2013-12-25] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-10-23] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-10-23] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-07-08] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-07-08] (Google Inc.) FF HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: Download videos and MP3s from YouTube - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2014-04-04] StartMenuInternet: FIREFOX.EXE - firefox.exe Chrome: ======= CHR Profile: C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Slides) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-08] CHR Extension: (Google Docs) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-08] CHR Extension: (Google Drive) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-08] CHR Extension: (YouTube) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-07-08] CHR Extension: (Adblock Plus) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-07-08] CHR Extension: (Google Search) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-07-08] CHR Extension: (Google Sheets) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-08] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-07-08] CHR Extension: (Ghostery) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2015-07-08] CHR Extension: (Google Wallet) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-08] CHR Extension: (Gmail) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-08] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.) R2 BrcmSetSecurity; C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe [101536 2013-04-16] (Intel) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2739888 2015-05-19] (Microsoft Corporation) S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-30] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [329104 2014-10-03] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-06-01] (Intel Corporation) R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [156616 2013-06-26] (Intel Corporation) S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-02-28] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-06-01] (Intel Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-08-28] () R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-19] (Realtek Semiconductor) R2 SftService; C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe [1911312 2013-08-30] (SoftThinks SAS) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-12-12] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-12-12] (Microsoft Corporation) S2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3378416 2013-08-28] (Intel® Corporation) S4 McMPFSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-09-24] (Microsoft Corporation) R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1385272 2013-04-23] (Motorola Solutions, Inc.) R3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [10752 2013-01-25] (OSR Open Systems Resources, Inc.) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [115656 2013-06-03] (Intel Corporation) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99800 2013-06-01] (Intel Corporation) R3 NETwNb64; C:\Windows\system32\DRIVERS\NETwbw02.sys [3589600 2013-09-25] (Intel Corporation) S3 NETwNe64; C:\Windows\system32\DRIVERS\Netwew02.sys [3648480 2013-10-08] (Intel Corporation) R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [444632 2013-09-28] (Realsil Semiconductor Corporation) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [30448 2013-09-06] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-09-06] (Synaptics Incorporated) R3 ST_Accel; C:\Windows\system32\DRIVERS\ST_Accel.sys [91360 2013-04-11] (STMicroelectronics) R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [207768 2013-04-16] (Windows (R) Win 7 DDK provider) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-12-12] (Microsoft Corporation) S3 PCDSRVC{3B54B31B-D06B6431-06020200}_0; \??\c:\program files\dell\supportassist\pcdsrvc_x64.pkms [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-07-08 19:23 - 2015-07-08 19:23 - 00368972 _____ C:\Users\Felix\Desktop\mbam1.txt 2015-07-08 18:31 - 2015-07-08 18:32 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Felix\Desktop\tdsskiller.exe 2015-07-08 05:18 - 2015-07-08 05:18 - 00048348 _____ C:\Users\Felix\Desktop\Addition.txt 2015-07-08 05:17 - 2015-07-08 19:57 - 00019278 _____ C:\Users\Felix\Desktop\FRST.txt 2015-07-08 05:17 - 2015-07-08 19:57 - 00000000 ____D C:\FRST 2015-07-08 05:16 - 2015-07-08 05:17 - 02112512 _____ (Farbar) C:\Users\Felix\Desktop\FRST64.exe 2015-07-08 04:55 - 2015-07-08 04:55 - 00002273 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-07-08 04:55 - 2015-07-08 04:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-07-08 04:39 - 2015-07-08 19:44 - 00001120 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-07-08 04:39 - 2015-07-08 17:14 - 00001116 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-07-08 04:39 - 2015-07-08 04:39 - 00004092 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-07-08 04:39 - 2015-07-08 04:39 - 00003856 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-07-08 04:36 - 2015-07-08 04:36 - 00001286 _____ C:\Users\Felix\Desktop\Revo Uninstaller.lnk 2015-07-08 04:36 - 2015-07-08 04:36 - 00000000 ____D C:\Program Files (x86)\VS Revo Group 2015-07-08 04:34 - 2015-07-08 04:35 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Felix\Downloads\revosetup95.exe 2015-07-08 04:32 - 2015-07-08 04:32 - 00931408 _____ (Google Inc.) C:\Users\Felix\Downloads\ChromeSetup.exe 2015-07-08 04:19 - 2015-07-08 04:21 - 00000024 _____ C:\Users\Felix\AppData\Roaming\appdataFr25.bin 2015-07-08 02:08 - 2015-07-08 02:08 - 00002555 _____ C:\Users\Felix\Desktop\JRT.txt 2015-07-08 02:05 - 2015-07-08 02:05 - 00000207 _____ C:\WINDOWS\tweaking.com-regbackup-FELIX-Windows-8.1-(64-bit).dat 2015-07-08 02:05 - 2015-07-08 02:05 - 00000000 ____D C:\RegBackup 2015-07-08 02:03 - 2015-07-08 02:04 - 02953676 _____ (Malwarebytes Corporation) C:\Users\Felix\Desktop\JRT.exe 2015-07-08 02:01 - 2015-07-08 02:01 - 00000020 ___SH C:\Users\Felix\ntuser.ini 2015-07-08 01:58 - 2015-07-08 01:58 - 02244096 _____ C:\Users\Felix\Desktop\AdwCleaner_4.207.exe 2015-07-08 01:53 - 2015-07-08 17:35 - 00005122 _____ C:\WINDOWS\System32\Tasks\Microsoft Office 15 Sync Maintenance for FELIX-Felix Felix 2015-07-08 00:54 - 2015-07-08 19:21 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-07-08 00:54 - 2015-07-08 00:54 - 00001120 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-07-08 00:54 - 2015-07-08 00:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-07-08 00:53 - 2015-07-08 00:53 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-07-08 00:53 - 2015-07-08 00:53 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-07-08 00:53 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-07-08 00:53 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-07-08 00:53 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2015-06-20 16:37 - 2015-07-08 01:48 - 00000000 ____D C:\Program Files (x86)\Session Manager ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-07-08 19:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru 2015-07-08 18:29 - 2014-12-12 19:49 - 00833086 _____ C:\WINDOWS\WindowsUpdate.log 2015-07-08 17:18 - 2013-12-24 19:29 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3467804002-3895737877-2157059006-1001 2015-07-08 17:14 - 2014-05-11 21:46 - 00000000 ____D C:\Users\Felix\OneDrive 2015-07-08 04:55 - 2013-12-24 22:06 - 00000000 ____D C:\Users\Felix\AppData\Local\Google 2015-07-08 04:55 - 2013-12-24 22:06 - 00000000 ____D C:\Program Files (x86)\Google 2015-07-08 04:37 - 2013-12-25 12:27 - 00000000 ____D C:\Users\Felix\AppData\Roaming\Mozilla 2015-07-08 04:21 - 2013-12-04 00:25 - 00000000 ____D C:\Program Files (x86)\Dell Backup and Recovery 2015-07-08 04:13 - 2014-12-13 19:15 - 00000306 __RSH C:\ProgramData\ntuser.pol 2015-07-08 04:13 - 2014-12-12 19:51 - 00000000 ____D C:\ProgramData\NVIDIA 2015-07-08 04:13 - 2014-09-23 23:06 - 00435260 _____ C:\WINDOWS\PFRO.log 2015-07-08 04:13 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-07-08 04:13 - 2013-08-22 15:25 - 00786432 ___SH C:\WINDOWS\system32\config\BBI 2015-07-08 04:12 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Globalization 2015-07-08 02:33 - 2014-12-05 13:55 - 00000000 ____D C:\AdwCleaner 2015-07-08 02:20 - 2013-12-04 00:22 - 00000000 ____D C:\ProgramData\McAfee 2015-07-08 02:17 - 2013-12-25 14:42 - 00000000 ____D C:\Users\Felix\AppData\Roaming\Spotify 2015-07-08 02:16 - 2013-12-25 14:43 - 00000000 ____D C:\Users\Felix\AppData\Local\Spotify 2015-07-08 02:13 - 2012-07-26 10:12 - 00000000 ___HD C:\WINDOWS\ELAMBKUP 2015-07-08 02:11 - 2012-07-26 07:37 - 00000000 ____D C:\Users\Default.migrated 2015-07-08 02:01 - 2014-12-12 20:01 - 00000000 ____D C:\Users\Felix 2015-07-08 02:00 - 2013-12-24 21:30 - 00000901 _____ C:\Users\Felix\Desktop\iexplore.lnk 2015-07-08 02:00 - 2013-12-24 19:21 - 00001009 _____ C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-07-08 01:52 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM 2015-07-08 01:51 - 2014-10-03 21:55 - 00000000 ____D C:\ProgramData\06154ba7-7ceb-4959-a6bd-bf38bdec8cc6 2015-07-08 01:51 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Cursors 2015-07-08 01:48 - 2015-05-23 21:33 - 00000000 ____D C:\Program Files (x86)\Extreme User Agent Switcher 2015-07-08 01:20 - 2013-08-22 16:46 - 00307414 _____ C:\WINDOWS\setupact.log 2015-07-08 01:18 - 2013-12-24 20:51 - 00000000 ____D C:\Program Files\Microsoft Office 15 2015-06-20 15:56 - 2014-12-12 20:07 - 00000000 ____D C:\Users\Default\AppData\Roaming\IMAT 2015-06-20 15:56 - 2014-12-12 20:07 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IMAT ==================== Files in the root of some directories ======= 2015-07-08 04:19 - 2015-07-08 04:21 - 0000024 _____ () C:\Users\Felix\AppData\Roaming\appdataFr25.bin Some files in TEMP: ==================== C:\Users\Felix\AppData\Local\Temp\173AE4A8-C26A-17B4-28CD-6FC766540816.dll C:\Users\Felix\AppData\Local\Temp\173AE4A8-C26A-17B4-28CD-6FC766540816.exe C:\Users\Felix\AppData\Local\Temp\B63AC1CC-E011-E524-BC1E-56FB4CE49953.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-07-08 05:27 ==================== End of log ============================ --- --- --- Addition: [CODE] Additional FRST Logfile: Code:
ATTFilter scan result of Farbar Recovery Scan Tool (x64) Version:05-07-2015 Ran by Felix at 2015-07-08 19:58:14 Running from C:\Users\Felix\Desktop Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3467804002-3895737877-2157059006-500 - Administrator - Disabled) Felix (S-1-5-21-3467804002-3895737877-2157059006-1001 - Administrator - Enabled) => C:\Users\Felix Gast (S-1-5-21-3467804002-3895737877-2157059006-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3467804002-3895737877-2157059006-1006 - Limited - Enabled) UpdatusUser (S-1-5-21-3467804002-3895737877-2157059006-1004 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.70 - Adobe Systems Incorporated) Apple Application Support (32-Bit) (HKLM-x32\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dell Backup and Recovery - Support Software (HKLM-x32\...\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version: 1.6.0.3 - Dell Inc.) Dell Backup and Recovery (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 1.6.0.3 - Dell Inc.) Dell SupportAssist (HKLM\...\PC-Doctor for Windows) (Version: 1.0.6584.81 - Dell) Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 17.0.13.0 - Synaptics Incorporated) Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Free YouTube to MP3 Converter version 3.12.32.327 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.32.327 - DVDVideoSoft Ltd.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.132 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.3.1520 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3960 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{302600C1-6BDF-4FD1-1306-148929CC1385}) (Version: 3.1.1306.0354 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.2.1000 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation) Intel(R) Update Manager (HKLM-x32\...\{12914061-EB9B-4AE7-AC7E-0B8A607C7DF4}) (Version: 2.3.1338 - Intel Corporation) Intel(R) WiDi (HKLM\...\{C605440F-2748-435F-9F29-EB1C8134856F}) (Version: 4.1.17.0 - Intel Corporation) Intel® PROSet/Wireless Software (HKLM-x32\...\{c9967fbd-e3c3-4ed0-992a-5b33260f2944}) (Version: 16.1.5 - Intel Corporation) iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.) Little Fighter 2 version 2.0a (HKLM-x32\...\Little Fighter 2) (Version: version 2.0a - ) Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4727.1003 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\OneDriveSetup.exe) (Version: 17.3.5860.0512 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden NVIDIA 3D Vision Treiber 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 331.65 - NVIDIA Corporation) NVIDIA Grafiktreiber 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 331.65 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4727.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden Pflanzen gegen Zombies (HKLM-x32\...\Pflanzen gegen Zombies) (Version: - ) Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 11.1.12 - Dell Inc.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9600.21242 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6971 - Realtek Semiconductor Corp.) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Spotify (HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Spotify) (Version: 1.0.7.157.g2a6526f9 - Spotify AB) ST Microelectronics 3 Axis Digital Accelerometer Solution (HKLM-x32\...\{9C24F411-9CA7-4A8A-91F3-F08A4A38EB31}) (Version: 4.11.0040 - ST Microelectronics) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-3467804002-3895737877-2157059006-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) CustomCLSID: HKU\S-1-5-21-3467804002-3895737877-2157059006-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Felix\AppData\Local\Microsoft\OneDrive\17.3.5860.0512\amd64\FileSyncApi64.dll (Microsoft Corporation) ==================== Restore Points ========================= Could not list restore points Check "winmgmt" service or repair WMI. ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {4521731A-A841-4C4B-A807-5E73BE7500D1} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation) Task: {4EF9C9A8-402C-465A-B710-F20848B49C42} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-08] (Google Inc.) Task: {5BDE7815-F9E3-46D0-BF80-99622F015126} - System32\Tasks\EPXLYFXW => C:\ProgramData\e822a2fe7db443439f03b26cb6d6cd7d\e822a2fe7db443439f03b26cb6d6cd7d.exe <==== ATTENTION Task: {65619EF3-177D-4758-A747-C3251E6EB807} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-08] (Google Inc.) Task: {84603743-7D05-4FD5-AF70-349E83882C80} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe Task: {84D0073B-845F-4B2E-A6BB-EF4725FE2993} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28] () Task: {93CBD974-BC87-45EB-B565-19DFCF10DA8C} - \avabvbxvh No Task File <==== ATTENTION Task: {96B43A9B-C622-4BAD-B227-DD9D458E2BE1} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {9848B2C6-CC90-40CF-B44D-8214DE6592AF} - System32\Tasks\Microsoft Office 15 Sync Maintenance for FELIX-Felix Felix => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-05-28] (Microsoft Corporation) Task: {9F4EF12E-5F60-49E4-9107-45AECD7B85F9} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28] () Task: {AD99B69F-9972-4C45-AB7B-D6E4830C6BC4} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-3467804002-3895737877-2157059006-1001 => %localappdata%\Microsoft\OneDrive\OneDrive.exe Task: {C884F498-D39A-45AA-A7F1-FEE5B4A81B6C} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation) Task: {F962640D-9321-462A-897A-F3659B792494} - System32\Tasks\{495DBA67-C3C8-4BD9-BFB1-83EFB9B894EC} => pcalua.exe -a "C:\Users\Felix\Downloads\lf2_v20a_Setup (1).exe" -d C:\Users\Felix\Downloads Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Loaded Modules (Whitelisted) ============== 2015-03-20 18:12 - 2015-03-20 18:12 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-03-20 18:12 - 2015-03-20 18:12 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2015-03-25 13:14 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2013-12-18 15:42 - 2013-12-18 15:42 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll 2014-12-12 19:50 - 2013-10-23 10:20 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-12-04 00:26 - 2013-08-19 11:21 - 00020256 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayIcon.dll 2013-12-04 00:26 - 2013-08-19 11:21 - 00019232 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayNotBackuped.dll 2013-12-04 00:26 - 2013-08-19 11:21 - 00035104 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRShellExtension.dll 2014-10-03 18:36 - 2014-10-03 18:36 - 00457616 _____ () C:\WINDOWS\system32\igfxTray.exe 2013-12-03 23:59 - 2013-06-01 14:31 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-04-16 13:47 - 2015-03-17 11:16 - 00316576 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll 2014-04-16 14:08 - 2015-03-17 11:20 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll 2015-07-08 04:55 - 2015-07-07 05:49 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.132\libglesv2.dll 2015-07-08 04:55 - 2015-07-07 05:49 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.132\libegl.dll 2013-12-18 15:42 - 2013-12-18 15:42 - 00013088 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Felix\OneDrive:ms-properties ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\t-online.de -> hxxps://www.t-online.de ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Felix\Pictures\Unbenannt.png DNS Servers: 192.168.178.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{A1E5B7E9-8606-49AD-B34F-975F0DDA9AB8}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{13EA75D8-568C-4815-8EEE-EF6A70D897EE}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{948B6C26-A043-4560-BB80-8003083A1EDD}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe FirewallRules: [{17623C81-C18D-41C6-AB3D-8F15AB30CBBB}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe FirewallRules: [{81EE94CF-8448-42D3-A594-71612FB5A571}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe FirewallRules: [{4B905F77-B1DF-4407-BC62-562DDCE44CFE}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe FirewallRules: [{5A9C5AEA-D8AE-4C35-AA19-3E29BD4A51F9}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe FirewallRules: [{F9B7ABDA-DF1B-4134-9CF0-7F3131F19067}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{7780DD21-3381-4E07-A12B-CA31728E143A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{6955B087-15F4-402B-B4A1-99CB1ADA41A4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{C8455B14-666E-4603-967A-73803C85A797}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{1A5A96AB-696B-4C71-A409-5C040701EAB6}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{354E4F01-C0E0-45B0-8C06-81D2EAEDA1B2}] => (Block) C:\users\felix\appdata\roaming\spotify\spotify.exe FirewallRules: [{E32B4203-6DF8-42EC-B36D-AADDBF198900}] => (Block) C:\users\felix\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{DB321018-25A4-4074-92E4-589DB826C996}C:\users\felix\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\felix\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{54A12C4D-FAC9-4772-917B-D93A4550A855}C:\users\felix\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\felix\appdata\roaming\spotify\spotify.exe FirewallRules: [{9D0DC19B-BFF1-441E-A336-2F849FF1AEA2}] => (Allow) C:\Users\Felix\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{FE27F6D6-5515-4B20-9DD9-C962F9A632B3}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{115D8B90-5C27-41D1-876A-610AFD83EE9F}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{9F66F785-2CD5-4EDA-9CAE-3EBC8160B674}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{77166172-63A0-4DF9-BB74-56C60AEBD876}] => (Allow) LPort=1900 FirewallRules: [{06513B53-10AB-47C9-A254-F3D1BA3A8987}] => (Allow) LPort=2869 FirewallRules: [{E7DF0381-7592-44EE-90FE-1164B4F0E8DB}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{19609355-2855-492A-9156-7F4B1F67086C}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiApp.exe ==================== Faulty Device Manager Devices ============= Could not list Devices. Check "winmgmt" service or repair WMI. ==================== Event log errors: ========================= Application errors: ================== Error: (07/08/2015 04:21:28 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: TOASTER.EXE, Version: 1.0.1.160, Zeitstempel: 0x520b3256 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.17055, Zeitstempel: 0x532943a3 Ausnahmecode: 0xe0434352 Fehleroffset: 0x00011d4d ID des fehlerhaften Prozesses: 0x310 Startzeit der fehlerhaften Anwendung: 0xTOASTER.EXE0 Pfad der fehlerhaften Anwendung: TOASTER.EXE1 Pfad des fehlerhaften Moduls: TOASTER.EXE2 Berichtskennung: TOASTER.EXE3 Vollständiger Name des fehlerhaften Pakets: TOASTER.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: TOASTER.EXE5 Error: (07/08/2015 04:21:27 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: TOASTER.EXE Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.Runtime.InteropServices.COMException Stapel: bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) bei System.Windows.Threading.DispatcherOperation.InvokeImpl() bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object) bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) bei System.Windows.Threading.DispatcherOperation.Invoke() bei System.Windows.Threading.Dispatcher.ProcessQueue() bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.Run() bei System.Windows.Application.RunDispatcher(System.Object) bei System.Windows.Application.RunInternal(System.Windows.Window) bei System.Windows.Application.Run(System.Windows.Window) bei Toaster.App.Main() Error: (07/08/2015 04:21:27 AM) (Source: TOASTER.EXE) (EventID: 0) (User: ) Description: An Unhandled Exception occured. Der angegebene Dienst ist kein installierter Dienst. (Ausnahme von HRESULT: 0x80070424) bei System.Management.ThreadDispatch.Start() bei System.Management.ManagementScope.Initialize() bei System.Management.ManagementEventWatcher.Initialize() bei System.Management.ManagementEventWatcher.Start() bei Toaster.Services.PowerManagementService.Start() bei Toaster.MainWindowViewModel..ctor() bei Toaster.App.OnStartup(StartupEventArgs e) bei System.Windows.Application.<.ctor>b__1(Object unused) bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs) bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler) Error: (07/08/2015 02:42:44 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: DmiInfo.exe, Version: 1.0.0.0, Zeitstempel: 0x5273bfb9 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.17055, Zeitstempel: 0x532943a3 Ausnahmecode: 0xe0434352 Fehleroffset: 0x00011d4d ID des fehlerhaften Prozesses: 0xd00 Startzeit der fehlerhaften Anwendung: 0xDmiInfo.exe0 Pfad der fehlerhaften Anwendung: DmiInfo.exe1 Pfad des fehlerhaften Moduls: DmiInfo.exe2 Berichtskennung: DmiInfo.exe3 Vollständiger Name des fehlerhaften Pakets: DmiInfo.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: DmiInfo.exe5 Error: (07/08/2015 02:42:44 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: DmiInfo.exe Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.Runtime.InteropServices.COMException Stapel: bei System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32, IntPtr) bei System.Runtime.InteropServices.Marshal.ThrowExceptionForHR(Int32) bei System.Management.ManagementScope.InitializeGuts(System.Object) bei System.Management.ManagementScope.Initialize() bei System.Management.ManagementObject.Initialize(Boolean) bei System.Management.ManagementClass.GetInstances(System.Management.EnumerationOptions) bei System.Management.ManagementClass.GetInstances() bei DmiInfo.Program.GetSystemModel() bei DmiInfo.Program.Main(System.String[]) Error: (07/08/2015 02:28:08 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: TOASTER.EXE, Version: 1.0.1.160, Zeitstempel: 0x520b3256 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.17055, Zeitstempel: 0x532943a3 Ausnahmecode: 0xe0434352 Fehleroffset: 0x00011d4d ID des fehlerhaften Prozesses: 0x1370 Startzeit der fehlerhaften Anwendung: 0xTOASTER.EXE0 Pfad der fehlerhaften Anwendung: TOASTER.EXE1 Pfad des fehlerhaften Moduls: TOASTER.EXE2 Berichtskennung: TOASTER.EXE3 Vollständiger Name des fehlerhaften Pakets: TOASTER.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: TOASTER.EXE5 Error: (07/08/2015 02:28:08 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: TOASTER.EXE Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.Runtime.InteropServices.COMException Stapel: bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) bei System.Windows.Threading.DispatcherOperation.InvokeImpl() bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object) bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) bei System.Windows.Threading.DispatcherOperation.Invoke() bei System.Windows.Threading.Dispatcher.ProcessQueue() bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.Run() bei System.Windows.Application.RunDispatcher(System.Object) bei System.Windows.Application.RunInternal(System.Windows.Window) bei System.Windows.Application.Run(System.Windows.Window) bei Toaster.App.Main() Error: (07/08/2015 02:28:08 AM) (Source: TOASTER.EXE) (EventID: 0) (User: ) Description: An Unhandled Exception occured. Der angegebene Dienst ist kein installierter Dienst. (Ausnahme von HRESULT: 0x80070424) bei System.Management.ThreadDispatch.Start() bei System.Management.ManagementScope.Initialize() bei System.Management.ManagementEventWatcher.Initialize() bei System.Management.ManagementEventWatcher.Start() bei Toaster.Services.PowerManagementService.Start() bei Toaster.MainWindowViewModel..ctor() bei Toaster.App.OnStartup(StartupEventArgs e) bei System.Windows.Application.<.ctor>b__1(Object unused) bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs) bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler) Error: (07/08/2015 02:09:42 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: TOASTER.EXE, Version: 1.0.1.160, Zeitstempel: 0x520b3256 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.17055, Zeitstempel: 0x532943a3 Ausnahmecode: 0xe0434352 Fehleroffset: 0x00011d4d ID des fehlerhaften Prozesses: 0x16d8 Startzeit der fehlerhaften Anwendung: 0xTOASTER.EXE0 Pfad der fehlerhaften Anwendung: TOASTER.EXE1 Pfad des fehlerhaften Moduls: TOASTER.EXE2 Berichtskennung: TOASTER.EXE3 Vollständiger Name des fehlerhaften Pakets: TOASTER.EXE4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: TOASTER.EXE5 Error: (07/08/2015 02:09:42 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: TOASTER.EXE Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.Runtime.InteropServices.COMException Stapel: bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) bei System.Windows.Threading.DispatcherOperation.InvokeImpl() bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object) bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) bei System.Windows.Threading.DispatcherOperation.Invoke() bei System.Windows.Threading.Dispatcher.ProcessQueue() bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.Run() bei System.Windows.Application.RunDispatcher(System.Object) bei System.Windows.Application.RunInternal(System.Windows.Window) bei System.Windows.Application.Run(System.Windows.Window) bei Toaster.App.Main() System errors: ============= Error: (07/08/2015 06:11:10 PM) (Source: Service Control Manager) (EventID: 7003) (User: ) Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert. Error: (07/08/2015 05:26:48 AM) (Source: Service Control Manager) (EventID: 7003) (User: ) Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert. Error: (07/08/2015 05:26:15 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (07/08/2015 05:24:45 AM) (Source: Service Control Manager) (EventID: 7003) (User: ) Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert. Error: (07/08/2015 05:22:44 AM) (Source: Service Control Manager) (EventID: 7003) (User: ) Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert. Error: (07/08/2015 04:22:21 AM) (Source: Service Control Manager) (EventID: 7003) (User: ) Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert. Error: (07/08/2015 04:15:35 AM) (Source: Service Control Manager) (EventID: 7003) (User: ) Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert. Error: (07/08/2015 04:14:46 AM) (Source: Service Control Manager) (EventID: 7003) (User: ) Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert. Error: (07/08/2015 04:14:34 AM) (Source: Service Control Manager) (EventID: 7003) (User: ) Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert. Error: (07/08/2015 04:13:48 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Intel(R) PROSet/Wireless Zero Configuration Service" wurde mit folgendem Fehler beendet: %%2147770990 Microsoft Office: ========================= Error: (07/08/2015 04:21:28 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: TOASTER.EXE1.0.1.160520b3256KERNELBASE.dll6.3.9600.17055532943a3e043435200011d4d31001d0b924b52b14a2C:\Program Files (x86)\Dell Backup and Recovery\TOASTER.EXEC:\WINDOWS\SYSTEM32\KERNELBASE.dll09642117-2518-11e5-be9a-fcf8ae205b83 Error: (07/08/2015 04:21:27 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: TOASTER.EXE Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.Runtime.InteropServices.COMException Stapel: bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) bei System.Windows.Threading.DispatcherOperation.InvokeImpl() bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object) bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) bei System.Windows.Threading.DispatcherOperation.Invoke() bei System.Windows.Threading.Dispatcher.ProcessQueue() bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.Run() bei System.Windows.Application.RunDispatcher(System.Object) bei System.Windows.Application.RunInternal(System.Windows.Window) bei System.Windows.Application.Run(System.Windows.Window) bei Toaster.App.Main() Error: (07/08/2015 04:21:27 AM) (Source: TOASTER.EXE) (EventID: 0) (User: ) Description: An Unhandled Exception occured. Der angegebene Dienst ist kein installierter Dienst. (Ausnahme von HRESULT: 0x80070424) bei System.Management.ThreadDispatch.Start() bei System.Management.ManagementScope.Initialize() bei System.Management.ManagementEventWatcher.Initialize() bei System.Management.ManagementEventWatcher.Start() bei Toaster.Services.PowerManagementService.Start() bei Toaster.MainWindowViewModel..ctor() bei Toaster.App.OnStartup(StartupEventArgs e) bei System.Windows.Application.<.ctor>b__1(Object unused) bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs) bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler) Error: (07/08/2015 02:42:44 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: DmiInfo.exe1.0.0.05273bfb9KERNELBASE.dll6.3.9600.17055532943a3e043435200011d4dd0001d0b91700c5d325C:\Program Files (x86)\Dell Backup and Recovery\Components\DBRUpdate\DmiInfo.exeC:\WINDOWS\SYSTEM32\KERNELBASE.dll3ec11196-250a-11e5-be99-fcf8ae205b83 Error: (07/08/2015 02:42:44 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: DmiInfo.exe Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.Runtime.InteropServices.COMException Stapel: bei System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32, IntPtr) bei System.Runtime.InteropServices.Marshal.ThrowExceptionForHR(Int32) bei System.Management.ManagementScope.InitializeGuts(System.Object) bei System.Management.ManagementScope.Initialize() bei System.Management.ManagementObject.Initialize(Boolean) bei System.Management.ManagementClass.GetInstances(System.Management.EnumerationOptions) bei System.Management.ManagementClass.GetInstances() bei DmiInfo.Program.GetSystemModel() bei DmiInfo.Program.Main(System.String[]) Error: (07/08/2015 02:28:08 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: TOASTER.EXE1.0.1.160520b3256KERNELBASE.dll6.3.9600.17055532943a3e043435200011d4d137001d0b914e53b82beC:\Program Files (x86)\Dell Backup and Recovery\TOASTER.EXEC:\WINDOWS\SYSTEM32\KERNELBASE.dll34924dcd-2508-11e5-be99-fcf8ae205b83 Error: (07/08/2015 02:28:08 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: TOASTER.EXE Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.Runtime.InteropServices.COMException Stapel: bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) bei System.Windows.Threading.DispatcherOperation.InvokeImpl() bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object) bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) bei System.Windows.Threading.DispatcherOperation.Invoke() bei System.Windows.Threading.Dispatcher.ProcessQueue() bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.Run() bei System.Windows.Application.RunDispatcher(System.Object) bei System.Windows.Application.RunInternal(System.Windows.Window) bei System.Windows.Application.Run(System.Windows.Window) bei Toaster.App.Main() Error: (07/08/2015 02:28:08 AM) (Source: TOASTER.EXE) (EventID: 0) (User: ) Description: An Unhandled Exception occured. Der angegebene Dienst ist kein installierter Dienst. (Ausnahme von HRESULT: 0x80070424) bei System.Management.ThreadDispatch.Start() bei System.Management.ManagementScope.Initialize() bei System.Management.ManagementEventWatcher.Initialize() bei System.Management.ManagementEventWatcher.Start() bei Toaster.Services.PowerManagementService.Start() bei Toaster.MainWindowViewModel..ctor() bei Toaster.App.OnStartup(StartupEventArgs e) bei System.Windows.Application.<.ctor>b__1(Object unused) bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs) bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler) Error: (07/08/2015 02:09:42 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: TOASTER.EXE1.0.1.160520b3256KERNELBASE.dll6.3.9600.17055532943a3e043435200011d4d16d801d0b91251415747C:\Program Files (x86)\Dell Backup and Recovery\TOASTER.EXEC:\WINDOWS\SYSTEM32\KERNELBASE.dlla13aa489-2505-11e5-be97-fcf8ae205b83 Error: (07/08/2015 02:09:42 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Anwendung: TOASTER.EXE Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: System.Runtime.InteropServices.COMException Stapel: bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) bei System.Windows.Threading.DispatcherOperation.InvokeImpl() bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object) bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) bei System.Windows.Threading.DispatcherOperation.Invoke() bei System.Windows.Threading.Dispatcher.ProcessQueue() bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) bei System.Windows.Threading.Dispatcher.Run() bei System.Windows.Application.RunDispatcher(System.Object) bei System.Windows.Application.RunInternal(System.Windows.Window) bei System.Windows.Application.Run(System.Windows.Window) bei Toaster.App.Main() CodeIntegrity Errors: =================================== Date: 2015-07-08 05:26:15.720 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-04-29 21:25:22.506 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-04-29 21:25:22.475 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-4200U CPU @ 1.60GHz Percentage of memory in use: 30% Total physical RAM: 6042.57 MB Available physical RAM: 4203.57 MB Total Virtual: 9114.57 MB Available Virtual: 7045 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:452.09 GB) (Free:397.36 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 6777703A) Partition: GPT Partition Type. ==================== End of log ============================ --- --- ---
__________________ Beste Grüße, Kuhlambo12 Geändert von kuhlambo12 (08.07.2015 um 19:14 Uhr) |
09.07.2015, 19:23 | #6 |
/// the machine /// TB-Ausbilder | Windows 8 & Windows 7 Laptop beide stark Adware verseucht hi, Lade Dir bitte von hier Emsisoft Emergency Kit herunter.
__________________ --> Windows 8 & Windows 7 Laptop beide stark Adware verseucht |
10.07.2015, 02:32 | #7 |
| Windows 8 & Windows 7 Laptop beide stark Adware verseucht Nachdem sich bei dem Win8 Laptop Updates installiert haben und der Rechner sich neustartet will um den Vorgang abzuschließen hängt das Ding in einer Dauerschleife:" Die Einrichtung der updates konnte nicht abgeschlossen werden. Änderungen werden rückgängig gemacht. Schalten sie den Computer n" Das macht der nun schon seit einer sehr langen Zeit, startet sich zwischendurch immermal wieder neu aber kommt nicht vorran. Wenn ich den Rechner dann am Schalter kalt ausschalte, fängt er beim nächsten Hochfahren wieder da an wo er heruntergefahren wurde, ohne mir jegliche Option zugeben im Safemode oder sonst wie zu starten. Update: Jetzt habe ich es geschafft, soweit in die Optionen vorzudringen, dass ich einen Safeboot, eine Wiederherstellung, etc. auswählen könnte. Aber nun pöbelt Win8.1 rum, dass das Passwort falsch sei, was es unter Garantie nicht ist. Ohne das Passwort kann ich leider keine der Reperaturoptionen o.Ä. auswählen. Update2: Ich weiß nicht was passiert ist, aber nach ca. 5 Stunden und mehreren Neustarts ist alles wieder auf dem alten Stand was die Updates angeht. Ich kann wieder auf den Desktop zugreifen. Allerdings sind die Updates alle wieder weg. Nachdem ich das EEK hab laufen lassen, ist die Meldung, dass das Sicherheitscenter deaktiviert ist zwar verschwunden, der Dienst ist aber weder aktiv noch lässt er sich aktivieren. Gleiches Problem mit dem Defender und alle anderen Komponenten die zum Sicherheitscenter gehören. Hier das Logfile vom EEK: Code:
ATTFilter Emsisoft Emergency Kit - Version 10.0 Letztes Update: 10.07.2015 02:55:32 Benutzerkonto: FELIX\Felix Scan-Einstellungen: Scan-Methode: Malware-Scan Objekte: Rootkits, Speicher, Traces, Dateien PUPs-Erkennung: An Archiv-Scan: Aus ADS Scan: An Dateitypen-Filter: Aus Erweitertes Caching: An Direkter Festplattenzugriff: Aus Scan-Beginn: 10.07.2015 02:56:19 Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLETASKMGR Gefunden: Setting.DisableTaskMgr (A) Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLETASKMGR Gefunden: Setting.DisableTaskMgr (A) Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLEREGISTRYTOOLS Gefunden: Setting.DisableRegistryTools (A) Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLEREGISTRYTOOLS Gefunden: Setting.DisableRegistryTools (A) Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NORUN Gefunden: Setting.NoRun (A) Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NORUN Gefunden: Setting.NoRun (A) Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NOFOLDEROPTIONS Gefunden: Setting.NoFolderOptions (A) Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NOFOLDEROPTIONS Gefunden: Setting.NoFolderOptions (A) C:\Users\Felix\AppData\Local\Microsoft\Windows\INetCache\IE\5V1CY27T\1037[1].js Gefunden: Adware.JS.Agent.AI (B) C:\Users\Felix\AppData\Local\Temp\nsi8672.tmp\g.dll Gefunden: Gen:Variant.Adware.Mikey.11553 (B) Gescannt: 83480 Gefunden 10 Scan-Ende: 10.07.2015 03:00:36 Scan-Zeit: 0:04:17 C:\Users\Felix\AppData\Local\Temp\nsi8672.tmp\g.dll Quarantäne Gen:Variant.Adware.Mikey.11553 (B) C:\Users\Felix\AppData\Local\Microsoft\Windows\INetCache\IE\5V1CY27T\1037[1].js Quarantäne Adware.JS.Agent.AI (B) Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NOFOLDEROPTIONS Quarantäne Setting.NoFolderOptions (A) Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NOFOLDEROPTIONS Quarantäne Setting.NoFolderOptions (A) Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NORUN Quarantäne Setting.NoRun (A) Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NORUN Quarantäne Setting.NoRun (A) Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLEREGISTRYTOOLS Quarantäne Setting.DisableRegistryTools (A) Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLEREGISTRYTOOLS Quarantäne Setting.DisableRegistryTools (A) Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLETASKMGR Quarantäne Setting.DisableTaskMgr (A) Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLETASKMGR Quarantäne Setting.DisableTaskMgr (A) Quarantäne 10
__________________ Beste Grüße, Kuhlambo12 |
10.07.2015, 14:54 | #8 |
/// the machine /// TB-Ausbilder | Windows 8 & Windows 7 Laptop beide stark Adware verseucht Bitte Windows Repair laufen lassen: Windows reparieren - so geht's - Anleitungen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
11.07.2015, 02:32 | #9 |
| Windows 8 & Windows 7 Laptop beide stark Adware verseucht So, das Tool ist durchgelaufen. Updates lassen sich alle problemlos installieren. Das Sicherheitscenter funktioniert wieder, allerdings wird mir die Meldung angezeigt, dass der Windows Defender nicht aktiviert ist. Sobald ich den aber aktivieren möchte, öffnet sich nur der System32-Ordner und es passiert nichts Weiteres. Außerdem ist mir aufgefallen, dass das Internet auf diesem Rechner super langsam ist, andere PC's die in diesem Netzwerk sind haben keinerlei Einschränkungen diesbezüglich. Nochmal ein frisches FRST: Ich hab die One Month created Files mal weggelassen, weil die ja größtenteils eh nur von dem Repairkit stammen und ich sonst den Post splitten müsste. FRST: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:09-07-2015 Ran by Felix (administrator) on FELIX on 11-07-2015 03:02:50 Running from C:\Users\Felix\Desktop Loaded Profiles: Felix (Available Profiles: Felix) Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel) C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe () C:\Windows\System32\igfxTray.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Spotify Ltd) C:\Users\Felix\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\csisyncclient.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (SoftThinks SAS) C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe (SoftThinks - Dell) C:\Program Files (x86)\Dell Backup and Recovery\Components\DBRUpdate\DBRUpd.exe (SoftThinks - Dell) C:\Program Files (x86)\Dell Backup and Recovery\Toaster.exe () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRCrawler.exe (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Microsoft Corporation) C:\Windows\System32\CredentialUIBroker.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7192792 2013-07-06] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-07-05] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-07-05] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-30] (Intel Corporation) HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [393480 2015-03-19] () HKLM\...\Run: [HotKeysCmds] => "C:\Windows\system32\hkcmd.exe" HKLM\...\Run: [Persistence] => "C:\Windows\system32\igfxpers.exe" HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [3760456 2013-04-23] (Dell Inc.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2780400 2013-09-06] (Synaptics Incorporated) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.) HKLM-x32\...\Run: [MetroTileShortcut] => "C:\Program Files\McAfeeAntiTheft\2.1.170.2\McATUIHost.exe" /IMAT_SHORTCUTS HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-03-20] (Apple Inc.) HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKLM\...\Policies\Explorer: [TaskbarNoNotification] 0 HKLM\...\Policies\Explorer: [HideSCAHealth] 0 HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Run: [Spotify Web Helper] => C:\Users\Felix\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2023480 2015-07-08] (Spotify Ltd) HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Run: [OneDrive] => C:\Users\Felix\AppData\Local\Microsoft\OneDrive\OneDrive.exe [382664 2015-05-22] (Microsoft Corporation) HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Policies\Explorer: [TaskbarNoNotification] 0 HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Policies\Explorer: [HideSCAHealth] 0 HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Policies\Explorer: [NoControlPanel] 0 AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [141336 2013-12-18] (NVIDIA Corporation) Startup: C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2013-12-24] ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation) ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File ShellIconOverlayIdentifiers: [DBARFileBackuped] -> {831cebdd-6baf-4432-be76-9e0989c14aef} => C:\WINDOWS\system32\mscoree.dll [2013-08-22] (Microsoft Corporation) ShellIconOverlayIdentifiers: [DBARFileNotBackuped] -> {275e4fd7-21ef-45cf-a836-832e5d2cc1b3} => C:\WINDOWS\system32\mscoree.dll [2013-08-22] (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File GroupPolicy: Group Policy on Chrome detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3467804002-3895737877-2157059006-1001 -> {A2538774-7694-405F-8617-40F6CF9BD6C0} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-05-19] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-05-28] (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-03-17] (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{5D15FC0D-6CAB-4030-91AE-005F1D6C46C7}: [DhcpNameServer] 172.4.1.171 Tcpip\..\Interfaces\{9F1B649E-8A56-4D77-BC37-3CF394F922D5}: [DhcpNameServer] 192.168.178.1 StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll [2014-03-03] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll [2014-03-03] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-06-01] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-06-01] (Intel Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2013-12-25] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-10-23] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-10-23] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-07-08] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-07-08] (Google Inc.) FF HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: Download videos and MP3s from YouTube - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2014-04-04] StartMenuInternet: FIREFOX.EXE - firefox.exe Chrome: ======= CHR Profile: C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Slides) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-08] CHR Extension: (Google Docs) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-08] CHR Extension: (Google Drive) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-08] CHR Extension: (YouTube) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-07-08] CHR Extension: (Adblock Plus) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-07-08] CHR Extension: (Google Search) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-07-08] CHR Extension: (Google Sheets) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-08] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-07-08] CHR Extension: (Ghostery) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2015-07-08] CHR Extension: (Google Wallet) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-08] CHR Extension: (Gmail) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-08] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.) R2 BrcmSetSecurity; C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe [101536 2013-04-16] (Intel) S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2739888 2015-05-19] (Microsoft Corporation) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-30] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [345864 2015-03-19] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-06-01] (Intel Corporation) R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [156616 2013-06-26] (Intel Corporation) S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-02-28] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-06-01] (Intel Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2014-11-19] () R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-19] (Realtek Semiconductor) R2 SftService; C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe [1911312 2013-08-30] (SoftThinks SAS) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation) S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3820960 2014-11-19] (Intel® Corporation) S4 McMPFSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-09-24] (Microsoft Corporation) R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1385272 2013-04-23] (Motorola Solutions, Inc.) R3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [10752 2013-01-25] (OSR Open Systems Resources, Inc.) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [115656 2013-06-03] (Intel Corporation) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99800 2013-06-01] (Intel Corporation) R3 NETwNb64; C:\Windows\system32\DRIVERS\NETwbw02.sys [3494680 2015-03-09] (Intel Corporation) S3 NETwNe64; C:\Windows\system32\DRIVERS\Netwew02.sys [3648480 2013-10-08] (Intel Corporation) R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [444632 2013-09-28] (Realsil Semiconductor Corporation) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [30448 2013-09-06] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-09-06] (Synaptics Incorporated) R3 ST_Accel; C:\Windows\system32\DRIVERS\ST_Accel.sys [91360 2013-04-11] (STMicroelectronics) R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [207768 2013-04-16] (Windows (R) Win 7 DDK provider) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation) S3 PCDSRVC{3B54B31B-D06B6431-06020200}_0; \??\c:\program files\dell\supportassist\pcdsrvc_x64.pkms [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-07-11 03:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru 2015-07-11 02:54 - 2014-12-12 19:49 - 01134970 _____ C:\WINDOWS\WindowsUpdate.log 2015-07-11 02:02 - 2015-03-07 17:10 - 00003554 _____ C:\WINDOWS\System32\Tasks\EPXLYFXW 2015-07-11 02:00 - 2014-12-13 00:40 - 00018432 ___SH C:\Users\Felix\Downloads\Thumbs.db 2015-07-11 02:00 - 2014-01-20 18:19 - 00062464 ___SH C:\Users\Felix\Documents\Thumbs.db 2015-07-11 01:59 - 2013-12-24 19:29 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3467804002-3895737877-2157059006-1001 2015-07-11 01:56 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-07-11 01:52 - 2015-05-13 21:42 - 00000000 __SHD C:\Users\Felix\AppData\Local\EmieUserList 2015-07-11 01:52 - 2015-05-13 21:42 - 00000000 __SHD C:\Users\Felix\AppData\Local\EmieSiteList 2015-07-11 01:52 - 2015-05-13 21:42 - 00000000 __SHD C:\Users\Felix\AppData\Local\EmieBrowserModeList 2015-07-11 01:51 - 2013-12-24 19:19 - 00000000 ____D C:\Users\Felix\AppData\Local\Packages 2015-07-11 01:17 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache 2015-07-11 00:48 - 2013-12-04 00:25 - 00000000 ____D C:\Program Files (x86)\Dell Backup and Recovery 2015-07-11 00:45 - 2014-09-24 08:17 - 01697546 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-07-11 00:45 - 2014-09-24 07:43 - 00720776 _____ C:\WINDOWS\system32\perfh007.dat 2015-07-11 00:45 - 2014-09-24 07:43 - 00143882 _____ C:\WINDOWS\system32\perfc007.dat 2015-07-11 00:41 - 2014-12-12 23:45 - 00000401 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2015-07-11 00:41 - 2014-05-11 21:46 - 00000000 ____D C:\Users\Felix\OneDrive 2015-07-11 00:39 - 2014-12-12 20:10 - 00000000 ____D C:\WINDOWS\SysWOW64\NV 2015-07-11 00:39 - 2014-12-12 20:10 - 00000000 ____D C:\WINDOWS\system32\NV 2015-07-11 00:39 - 2014-12-12 19:51 - 00000000 ____D C:\ProgramData\NVIDIA 2015-07-11 00:39 - 2014-09-23 23:06 - 00448926 _____ C:\WINDOWS\PFRO.log 2015-07-11 00:39 - 2013-08-22 16:46 - 00308905 _____ C:\WINDOWS\setupact.log 2015-07-11 00:39 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-07-11 00:38 - 2013-08-22 15:25 - 00786432 ___SH C:\WINDOWS\system32\config\BBI 2015-07-11 00:37 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData 2015-07-11 00:37 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2015-07-11 00:37 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-07-11 00:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\WinStore 2015-07-11 00:37 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2015-07-11 00:03 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-07-11 00:00 - 2014-12-12 19:48 - 00000000 ____D C:\Program Files (x86)\Intel 2015-07-11 00:00 - 2013-12-24 19:28 - 00000000 ____D C:\Program Files (x86)\Cisco 2015-07-11 00:00 - 2013-12-04 00:05 - 00000000 ____D C:\ProgramData\Package Cache 2015-07-11 00:00 - 2013-12-04 00:01 - 00000000 ____D C:\ProgramData\Intel 2015-07-11 00:00 - 2013-12-03 23:59 - 00000000 ____D C:\Intel 2015-07-11 00:00 - 2012-07-26 07:37 - 00000000 ____D C:\Users\Default.migrated 2015-07-10 23:59 - 2014-12-12 19:47 - 00000000 ____D C:\Program Files\Intel 2015-07-10 23:56 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-07-10 23:07 - 2013-08-22 17:37 - 00009915 _____ C:\WINDOWS\DtcInstall.log 2015-07-10 23:05 - 2013-08-22 16:44 - 00371968 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-07-10 23:02 - 2014-09-24 09:43 - 00000000 ___SD C:\WINDOWS\system32\CompatTel 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___SD C:\WINDOWS\system32\dsc 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\sppui 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\setup 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Com 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-RS 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-CS 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sppui 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\setup 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\migwiz 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\Com 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\MediaViewer 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\IME 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\FileManager 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Camera 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\WindowsPowerShell 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Portable Devices 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Multimedia Platform 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\System 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2015-07-10 23:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe 2015-07-10 23:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2015-07-10 23:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-07-10 23:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\oobe 2015-07-10 23:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\Dism 2015-07-10 23:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\servicing 2015-07-10 22:41 - 2013-08-22 17:36 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll 2015-07-10 22:41 - 2013-08-22 17:36 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll 2015-07-10 22:18 - 2014-09-24 08:00 - 00000000 ____D C:\Program Files\Windows Journal 2015-07-10 21:41 - 2014-12-13 19:15 - 00000306 __RSH C:\ProgramData\ntuser.pol 2015-07-10 21:14 - 2012-07-26 07:26 - 00000262 _____ C:\WINDOWS\win.ini 2015-07-10 20:11 - 2013-12-30 13:02 - 00000000 ____D C:\Users\Felix\AppData\Roaming\PCDr 2015-07-09 14:51 - 2013-12-04 00:17 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell 2015-07-09 14:49 - 2013-12-04 00:17 - 00000000 ____D C:\ProgramData\PCDr 2015-07-09 14:30 - 2013-12-28 15:27 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-07-08 20:36 - 2013-12-25 14:43 - 00000000 ____D C:\Users\Felix\AppData\Local\Spotify 2015-07-08 20:36 - 2013-12-25 14:42 - 00000000 ____D C:\Users\Felix\AppData\Roaming\Spotify 2015-07-08 04:55 - 2013-12-24 22:06 - 00000000 ____D C:\Users\Felix\AppData\Local\Google 2015-07-08 04:55 - 2013-12-24 22:06 - 00000000 ____D C:\Program Files (x86)\Google 2015-07-08 04:37 - 2013-12-25 12:27 - 00000000 ____D C:\Users\Felix\AppData\Roaming\Mozilla 2015-07-08 04:12 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Globalization 2015-07-08 02:33 - 2014-12-05 13:55 - 00000000 ____D C:\AdwCleaner 2015-07-08 02:20 - 2013-12-04 00:22 - 00000000 ____D C:\ProgramData\McAfee 2015-07-08 02:13 - 2012-07-26 10:12 - 00000000 ___HD C:\WINDOWS\ELAMBKUP 2015-07-08 02:01 - 2014-12-12 20:01 - 00000000 ____D C:\Users\Felix 2015-07-08 02:00 - 2013-12-24 21:30 - 00000901 _____ C:\Users\Felix\Desktop\iexplore.lnk 2015-07-08 02:00 - 2013-12-24 19:21 - 00001009 _____ C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-07-08 01:52 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM 2015-07-08 01:51 - 2014-10-03 21:55 - 00000000 ____D C:\ProgramData\06154ba7-7ceb-4959-a6bd-bf38bdec8cc6 2015-07-08 01:51 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Cursors 2015-07-08 01:48 - 2015-05-23 21:33 - 00000000 ____D C:\Program Files (x86)\Extreme User Agent Switcher 2015-07-08 01:18 - 2013-12-24 20:51 - 00000000 ____D C:\Program Files\Microsoft Office 15 2015-06-20 15:56 - 2014-12-12 20:07 - 00000000 ____D C:\Users\Default\AppData\Roaming\IMAT 2015-06-20 15:56 - 2014-12-12 20:07 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IMAT ==================== Files in the root of some directories ======= 2015-07-08 04:19 - 2015-07-08 04:21 - 0000024 _____ () C:\Users\Felix\AppData\Roaming\appdataFr25.bin Some files in TEMP: ==================== C:\Users\Felix\AppData\Local\Temp\173AE4A8-C26A-17B4-28CD-6FC766540816.dll C:\Users\Felix\AppData\Local\Temp\173AE4A8-C26A-17B4-28CD-6FC766540816.exe C:\Users\Felix\AppData\Local\Temp\B63AC1CC-E011-E524-BC1E-56FB4CE49953.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-07-11 01:07 ==================== End of log ============================ Addition: [CODE]Additional FRST Logfile: Code:
ATTFilter scan result of Farbar Recovery Scan Tool (x64) Version:09-07-2015 Ran by Felix at 2015-07-11 03:04:37 Running from C:\Users\Felix\Desktop Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3467804002-3895737877-2157059006-500 - Administrator - Disabled) Felix (S-1-5-21-3467804002-3895737877-2157059006-1001 - Administrator - Enabled) => C:\Users\Felix Gast (S-1-5-21-3467804002-3895737877-2157059006-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3467804002-3895737877-2157059006-1006 - Limited - Enabled) UpdatusUser (S-1-5-21-3467804002-3895737877-2157059006-1004 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.70 - Adobe Systems Incorporated) Apple Application Support (32-Bit) (HKLM-x32\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dell Backup and Recovery - Support Software (HKLM-x32\...\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version: 1.6.0.3 - Dell Inc.) Dell Backup and Recovery (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 1.6.0.3 - Dell Inc.) Dell SupportAssist (HKLM\...\PC-Doctor for Windows) (Version: 1.1.6664.10 - Dell) Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 17.0.13.0 - Synaptics Incorporated) Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Free YouTube to MP3 Converter version 3.12.32.327 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.32.327 - DVDVideoSoft Ltd.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.132 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.3.1520 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4170 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{302600C1-6BDF-4FD1-1306-148929CC1385}) (Version: 3.1.1306.0354 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.2.1000 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation) Intel(R) Update Manager (HKLM-x32\...\{12914061-EB9B-4AE7-AC7E-0B8A607C7DF4}) (Version: 2.3.1338 - Intel Corporation) Intel(R) WiDi (HKLM\...\{C605440F-2748-435F-9F29-EB1C8134856F}) (Version: 4.1.17.0 - Intel Corporation) Intel® PROSet/Wireless Software (HKLM-x32\...\{313c06de-4aa7-4a1f-930a-f10f80380426}) (Version: 17.14.0 - Intel Corporation) iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.) Little Fighter 2 version 2.0a (HKLM-x32\...\Little Fighter 2) (Version: version 2.0a - ) Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4727.1003 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\OneDriveSetup.exe) (Version: 17.3.5860.0512 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden NVIDIA 3D Vision Treiber 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 331.65 - NVIDIA Corporation) NVIDIA Grafiktreiber 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 331.65 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4727.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden Pflanzen gegen Zombies (HKLM-x32\...\Pflanzen gegen Zombies) (Version: - ) Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 11.1.12 - Dell Inc.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9600.21242 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6971 - Realtek Semiconductor Corp.) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Spotify (HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Spotify) (Version: 1.0.7.157.g2a6526f9 - Spotify AB) ST Microelectronics 3 Axis Digital Accelerometer Solution (HKLM-x32\...\{9C24F411-9CA7-4A8A-91F3-F08A4A38EB31}) (Version: 4.11.0040 - ST Microelectronics) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-3467804002-3895737877-2157059006-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) CustomCLSID: HKU\S-1-5-21-3467804002-3895737877-2157059006-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Felix\AppData\Local\Microsoft\OneDrive\17.3.5860.0512\amd64\FileSyncApi64.dll (Microsoft Corporation) ==================== Restore Points ========================= 08-07-2015 04:36:46 Revo Uninstaller's restore point - Mozilla Firefox 27.0.1 (x86 de) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2015-07-10 21:15 - 00000855 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {071F266F-51D9-4267-8546-E96D4B7BB295} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\Dell\SupportAssist\sessionchecker.exe [2015-05-25] (PC-Doctor, Inc.) Task: {30D2CA03-44ED-47C9-813F-08DF2CAA2E9B} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-05-27] (Microsoft Corporation) Task: {4521731A-A841-4C4B-A807-5E73BE7500D1} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation) Task: {4EF9C9A8-402C-465A-B710-F20848B49C42} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-08] (Google Inc.) Task: {5BDE7815-F9E3-46D0-BF80-99622F015126} - System32\Tasks\EPXLYFXW => C:\ProgramData\e822a2fe7db443439f03b26cb6d6cd7d\e822a2fe7db443439f03b26cb6d6cd7d.exe <==== ATTENTION Task: {65619EF3-177D-4758-A747-C3251E6EB807} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-08] (Google Inc.) Task: {84D0073B-845F-4B2E-A6BB-EF4725FE2993} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28] () Task: {93CBD974-BC87-45EB-B565-19DFCF10DA8C} - \avabvbxvh No Task File <==== ATTENTION Task: {96B43A9B-C622-4BAD-B227-DD9D458E2BE1} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {9848B2C6-CC90-40CF-B44D-8214DE6592AF} - System32\Tasks\Microsoft Office 15 Sync Maintenance for FELIX-Felix Felix => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-05-28] (Microsoft Corporation) Task: {9F4EF12E-5F60-49E4-9107-45AECD7B85F9} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28] () Task: {AD99B69F-9972-4C45-AB7B-D6E4830C6BC4} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-3467804002-3895737877-2157059006-1001 => %localappdata%\Microsoft\OneDrive\OneDrive.exe Task: {C884F498-D39A-45AA-A7F1-FEE5B4A81B6C} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation) Task: {F962640D-9321-462A-897A-F3659B792494} - System32\Tasks\{495DBA67-C3C8-4BD9-BFB1-83EFB9B894EC} => pcalua.exe -a "C:\Users\Felix\Downloads\lf2_v20a_Setup (1).exe" -d C:\Users\Felix\Downloads Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Loaded Modules (Whitelisted) ============== 2013-12-18 15:42 - 2013-12-18 15:42 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll 2014-12-12 19:50 - 2013-10-23 10:20 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-03-20 18:12 - 2015-03-20 18:12 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-03-20 18:12 - 2015-03-20 18:12 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2015-03-25 13:14 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2014-10-03 18:36 - 2015-03-19 21:02 - 00393480 _____ () C:\WINDOWS\system32\igfxTray.exe 2013-12-04 00:26 - 2013-08-19 11:21 - 00020256 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayIcon.dll 2013-12-04 00:26 - 2013-08-19 11:21 - 00019232 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayNotBackuped.dll 2013-12-04 00:26 - 2013-08-19 11:21 - 00484640 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRCrawler.exe 2014-04-16 14:08 - 2015-03-17 11:20 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll 2013-12-03 23:59 - 2013-06-01 14:31 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2013-12-04 00:26 - 2013-08-22 16:26 - 01904928 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Restore\STRestoreAPI.dll 2013-12-04 00:26 - 2012-11-26 00:20 - 01153384 ____N () C:\Program Files (x86)\Dell Backup and Recovery\Components\Restore\libxml2.dll 2013-12-04 00:26 - 2012-11-26 00:20 - 00117608 ____N () C:\Program Files (x86)\Dell Backup and Recovery\Components\Restore\zlib1.dll 2013-12-18 15:42 - 2013-12-18 15:42 - 00013088 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Felix\OneDrive:ms-properties ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\t-online.de -> hxxps://www.t-online.de ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Felix\Pictures\Unbenannt.png DNS Servers: 192.168.178.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\StartupApproved\StartupFolder: => "An OneNote senden.lnk" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{A1E5B7E9-8606-49AD-B34F-975F0DDA9AB8}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{13EA75D8-568C-4815-8EEE-EF6A70D897EE}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{948B6C26-A043-4560-BB80-8003083A1EDD}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe FirewallRules: [{17623C81-C18D-41C6-AB3D-8F15AB30CBBB}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe FirewallRules: [{81EE94CF-8448-42D3-A594-71612FB5A571}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe FirewallRules: [{4B905F77-B1DF-4407-BC62-562DDCE44CFE}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe FirewallRules: [{5A9C5AEA-D8AE-4C35-AA19-3E29BD4A51F9}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe FirewallRules: [{F9B7ABDA-DF1B-4134-9CF0-7F3131F19067}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{7780DD21-3381-4E07-A12B-CA31728E143A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{6955B087-15F4-402B-B4A1-99CB1ADA41A4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{C8455B14-666E-4603-967A-73803C85A797}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{1A5A96AB-696B-4C71-A409-5C040701EAB6}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{354E4F01-C0E0-45B0-8C06-81D2EAEDA1B2}] => (Block) C:\users\felix\appdata\roaming\spotify\spotify.exe FirewallRules: [{E32B4203-6DF8-42EC-B36D-AADDBF198900}] => (Block) C:\users\felix\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{DB321018-25A4-4074-92E4-589DB826C996}C:\users\felix\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\felix\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{54A12C4D-FAC9-4772-917B-D93A4550A855}C:\users\felix\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\felix\appdata\roaming\spotify\spotify.exe FirewallRules: [{9D0DC19B-BFF1-441E-A336-2F849FF1AEA2}] => (Allow) C:\Users\Felix\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{115D8B90-5C27-41D1-876A-610AFD83EE9F}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{9F66F785-2CD5-4EDA-9CAE-3EBC8160B674}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{77166172-63A0-4DF9-BB74-56C60AEBD876}] => (Allow) LPort=1900 FirewallRules: [{06513B53-10AB-47C9-A254-F3D1BA3A8987}] => (Allow) LPort=2869 FirewallRules: [{E7DF0381-7592-44EE-90FE-1164B4F0E8DB}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{19609355-2855-492A-9156-7F4B1F67086C}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiApp.exe FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [{181F9743-F4C0-4390-9851-B55885633008}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/11/2015 01:37:16 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1". Die abhängige Assemblierung "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (07/11/2015 01:37:12 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"1". Die abhängige Assemblierung "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (07/11/2015 01:27:24 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1". Die abhängige Assemblierung "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (07/11/2015 01:27:19 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"1". Die abhängige Assemblierung "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (07/11/2015 01:15:39 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"1". Die abhängige Assemblierung "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (07/11/2015 00:40:33 AM) (Source: Windows Search Service) (EventID: 10021) (User: ) Description: Die Registrierungsinformationen der Leistungsindikatoren für WSearchIdxPi für die Instanz konnten wegen des folgenden Fehlers nicht abgerufen werden: Der Vorgang wurde erfolgreich beendet. 0x0. Error: (07/11/2015 00:40:32 AM) (Source: Windows Search Service) (EventID: 3007) (User: ) Description: Die Leistungsüberwachung für den Gatherer-Dienst kann nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Kontext: Anwendung, SystemIndex Katalog Error: (07/11/2015 00:40:30 AM) (Source: Windows Search Service) (EventID: 3006) (User: ) Description: Die Leistungsüberwachung kann für den Gatherer-Dienst nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut. Error: (07/10/2015 11:59:39 PM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT-AUTORITÄT) Description: Der Ereignisfilter mit der Abfrage "select * from CIntelWLANEvent" konnte im Namespace "//./ROOT/default" aufgrund des Fehlers "0x80041010" nicht reaktiviert werden. Solange dieses Problem besteht, können mit diesem Filter keine Ereignisse übermittelt werden. Error: (07/10/2015 11:48:17 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1". Die abhängige Assemblierung "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". System errors: ============= Error: (07/11/2015 00:40:29 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (07/11/2015 00:39:50 AM) (Source: NETLOGON) (EventID: 3095) (User: ) Description: Dieser Computer ist als Mitglied einer Arbeitsgruppe konfiguriert, nicht als Mitglied einer Domäne. Der Anmeldedienst braucht bei dieser Konfiguration nicht gestartet zu sein. Error: (07/11/2015 00:36:56 AM) (Source: DCOM) (EventID: 10010) (User: FELIX) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (07/11/2015 00:36:56 AM) (Source: DCOM) (EventID: 10010) (User: FELIX) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (07/10/2015 11:07:38 PM) (Source: WMPNetworkSvc) (EventID: 14349) (User: ) Description: Ein neuer Medienserver konnte nicht initialisiert werden, da im Windows Media-Lieferungsmodul ein Fehler "0x80070005" aufgetreten ist. Starten Sie den Computer und den "WMPNetworkSvc"-Dienst neu. Wenn das Problem weiterhin besteht, installieren Sie Windows Media Player möglichst erneut. Error: (07/10/2015 11:07:38 PM) (Source: WMPNetworkSvc) (EventID: 14353) (User: ) Description: Ein Medienlieferungsmodul mit der ID "0" konnte wegen Fehler "0x80070005" beim Hinzufügen der URL "http://+:10243/WMPNSSv4/3257691937/!S!" nicht initialisiert werden. Starten Sie den Computer und den WMPNetworkSvc-Dienst erneut. Wenn das Problem weiterhin besteht, installieren Sie nach Möglichkeit Windows Media Player erneut. Error: (07/10/2015 11:07:38 PM) (Source: WMPNetworkSvc) (EventID: 14346) (User: ) Description: Ein neuer Medienserver konnte nicht initialisiert werden, da ein Fehler "0x80070005" in "RegisterRunningDevice()" aufgetreten ist. Starten Sie den Computer und den "WMPNetworkSvc"-Dienst neu. Error: (07/10/2015 11:07:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (07/10/2015 11:05:59 PM) (Source: NETLOGON) (EventID: 3095) (User: ) Description: Dieser Computer ist als Mitglied einer Arbeitsgruppe konfiguriert, nicht als Mitglied einer Domäne. Der Anmeldedienst braucht bei dieser Konfiguration nicht gestartet zu sein. Error: (07/10/2015 10:23:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Microsoft Office: ========================= Error: (07/11/2015 01:37:16 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"c:\program files (x86)\littlefighter2\LF2_v2.0a\recording\lfr_summary_generator.exe Error: (07/11/2015 01:37:12 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"C:\Program Files (x86)\LittleFighter2\LF2_v2.0a\lf2.exe Error: (07/11/2015 01:27:24 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"c:\program files (x86)\littlefighter2\LF2_v2.0a\recording\lfr_summary_generator.exe Error: (07/11/2015 01:27:19 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"C:\Program Files (x86)\LittleFighter2\LF2_v2.0a\lf2.exe Error: (07/11/2015 01:15:39 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"C:\Program Files (x86)\LittleFighter2\LF2_v2.0a\lf2.exe Error: (07/11/2015 00:40:33 AM) (Source: Windows Search Service) (EventID: 10021) (User: ) Description: WSearchIdxPiDer Vorgang wurde erfolgreich beendet. 0x0 Error: (07/11/2015 00:40:32 AM) (Source: Windows Search Service) (EventID: 3007) (User: ) Description: Kontext: Anwendung, SystemIndex Katalog Error: (07/11/2015 00:40:30 AM) (Source: Windows Search Service) (EventID: 3006) (User: ) Description: Error: (07/10/2015 11:59:39 PM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT-AUTORITÄT) Description: //./ROOT/defaultselect * from CIntelWLANEvent0x80041010 Error: (07/10/2015 11:48:17 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"c:\program files (x86)\littlefighter2\LF2_v2.0a\recording\lfr_summary_generator.exe CodeIntegrity Errors: =================================== Date: 2015-07-11 00:40:29.635 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-10 23:07:13.431 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-10 22:23:38.932 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-10 22:21:15.866 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-10 21:46:55.026 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-10 21:41:00.317 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-10 03:12:30.434 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-08 05:26:15.720 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-04-29 21:25:22.506 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-04-29 21:25:22.475 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-4200U CPU @ 1.60GHz Percentage of memory in use: 30% Total physical RAM: 6042.57 MB Available physical RAM: 4220.5 MB Total Virtual: 9114.57 MB Available Virtual: 6831.64 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:452.09 GB) (Free:389.52 GB) NTFS Drive d: (ESP) (Fixed) (Total:0.48 GB) (Free:0.44 GB) FAT32 Drive x: (WINRETOOLS) (Fixed) (Total:0.48 GB) (Free:0.21 GB) NTFS Drive y: (PBR Image) (Fixed) (Total:12.1 GB) (Free:0.71 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 6777703A) Partition: GPT Partition Type. ==================== End of log ============================
__________________ Beste Grüße, Kuhlambo12 |
11.07.2015, 15:02 | #10 |
/// the machine /// TB-Ausbilder | Windows 8 & Windows 7 Laptop beide stark Adware verseucht Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter GroupPolicy: Group Policy on Chrome detected <======= ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION Task: {5BDE7815-F9E3-46D0-BF80-99622F015126} - System32\Tasks\EPXLYFXW => C:\ProgramData\e822a2fe7db443439f03b26cb6d6cd7d\e822a2fe7db443439f03b26cb6d6cd7d.exe <==== ATTENTION Task: {93CBD974-BC87-45EB-B565-19DFCF10DA8C} - \avabvbxvh No Task File <==== ATTENTION Emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Downloade dir bitte Farbar Service Scanner
Poste bitte den Inhalt hier.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
11.07.2015, 15:53 | #11 |
| Windows 8 & Windows 7 Laptop beide stark Adware verseucht So, einmal das Fixlog: Code:
ATTFilter Fix result of Farbar Recovery Scan Tool (x64) Version:11-07-2015 Ran by Felix at 2015-07-11 16:43:25 Run:1 Running from C:\Users\Felix\Desktop Loaded Profiles: Felix (Available Profiles: Felix) Boot Mode: Normal ============================================== fixlist content: ***************** GroupPolicy: Group Policy on Chrome detected <======= ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION Task: {5BDE7815-F9E3-46D0-BF80-99622F015126} - System32\Tasks\EPXLYFXW => C:\ProgramData\e822a2fe7db443439f03b26cb6d6cd7d\e822a2fe7db443439f03b26cb6d6cd7d.exe <==== ATTENTION Task: {93CBD974-BC87-45EB-B565-19DFCF10DA8C} - \avabvbxvh No Task File <==== ATTENTION Emptytemp: ***************** C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully. C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully. "HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully "HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully "HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5BDE7815-F9E3-46D0-BF80-99622F015126}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5BDE7815-F9E3-46D0-BF80-99622F015126}" => key removed successfully C:\Windows\System32\Tasks\EPXLYFXW => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EPXLYFXW" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{93CBD974-BC87-45EB-B565-19DFCF10DA8C}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{93CBD974-BC87-45EB-B565-19DFCF10DA8C}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\avabvbxvh" => key removed successfully EmptyTemp: => 1.3 GB temporary data Removed. The system needed a reboot.. ==== End of Fixlog 16:43:59 ==== Code:
ATTFilter Farbar Service Scanner Version: 17-01-2015 Ran by Felix (administrator) on 11-07-2015 at 16:49:39 Running from "C:\Users\Felix\Desktop" Microsoft Windows 8.1 (X64) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== System Restore: ============ System Restore Policy: ======================== Action Center: ============ Windows Update: ============ wuauserv Service is not running. Checking service configuration: The start type of wuauserv service is set to Demand. The default start type is Auto. The ImagePath of wuauserv service is OK. The ServiceDll of wuauserv service is OK. Windows Autoupdate Disabled Policy: ============================ Windows Defender: ============== WinDefend Service is not running. Checking service configuration: The start type of WinDefend service is OK. The ImagePath of WinDefend: ""%ProgramFiles%\Windows Defender\MsMpEng.exe"". Windows Defender Disabled Policy: ========================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender] "DisableAntiSpyware"=DWORD:1 Other Services: ============== File Check: ======== C:\Windows\System32\nsisvc.dll => File is digitally signed C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed C:\Windows\System32\dhcpcore.dll => File is digitally signed C:\Windows\System32\drivers\afd.sys => File is digitally signed C:\Windows\System32\drivers\tdx.sys => File is digitally signed C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed C:\Windows\System32\dnsrslvr.dll => File is digitally signed C:\Windows\System32\mpssvc.dll => File is digitally signed C:\Windows\System32\bfe.dll => File is digitally signed C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed C:\Windows\System32\wscsvc.dll => File is digitally signed C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed C:\Windows\System32\wuaueng.dll => File is digitally signed C:\Windows\System32\qmgr.dll => File is digitally signed C:\Windows\System32\es.dll => File is digitally signed C:\Windows\System32\cryptsvc.dll => File is digitally signed C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed C:\Program Files\Windows Defender\MsMpEng.exe => File is digitally signed C:\Windows\System32\ipnathlp.dll => File is digitally signed C:\Windows\System32\iphlpsvc.dll => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed **** End of log ****
__________________ Beste Grüße, Kuhlambo12 |
12.07.2015, 11:21 | #12 |
/// the machine /// TB-Ausbilder | Windows 8 & Windows 7 Laptop beide stark Adware verseucht http://download.bleepingcomputer.com.../WinDefend.reg http://download.bleepingcomputer.com...8/wuauserv.reg Beide Files auf dem Desktop speichern und ausführen, erlauben. Rebooten, dann bitte nochmal ein frisches FSS Logfile.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
12.07.2015, 13:43 | #13 |
| Windows 8 & Windows 7 Laptop beide stark Adware verseucht So, Code:
ATTFilter Farbar Service Scanner Version: 17-01-2015 Ran by Felix (administrator) on 12-07-2015 at 14:38:40 Running from "C:\Users\Felix\Desktop" Microsoft Windows 8.1 (X64) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== System Restore: ============ System Restore Policy: ======================== Action Center: ============ Windows Update: ============ wuauserv Service is not running. Checking service configuration: The start type of wuauserv service is set to Demand. The default start type is Auto. The ImagePath of wuauserv service is OK. The ServiceDll of wuauserv service is OK. Windows Autoupdate Disabled Policy: ============================ Windows Defender: ============== WinDefend Service is not running. Checking service configuration: The start type of WinDefend service is OK. The ImagePath of WinDefend service is OK. Windows Defender Disabled Policy: ========================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender] "DisableAntiSpyware"=DWORD:1 Other Services: ============== File Check: ======== C:\Windows\System32\nsisvc.dll => File is digitally signed C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed C:\Windows\System32\dhcpcore.dll => File is digitally signed C:\Windows\System32\drivers\afd.sys => File is digitally signed C:\Windows\System32\drivers\tdx.sys => File is digitally signed C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed C:\Windows\System32\dnsrslvr.dll => File is digitally signed C:\Windows\System32\mpssvc.dll => File is digitally signed C:\Windows\System32\bfe.dll => File is digitally signed C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed C:\Windows\System32\wscsvc.dll => File is digitally signed C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed C:\Windows\System32\wuaueng.dll => File is digitally signed C:\Windows\System32\qmgr.dll => File is digitally signed C:\Windows\System32\es.dll => File is digitally signed C:\Windows\System32\cryptsvc.dll => File is digitally signed C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed C:\Program Files\Windows Defender\MsMpEng.exe => File is digitally signed C:\Windows\System32\ipnathlp.dll => File is digitally signed C:\Windows\System32\iphlpsvc.dll => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed **** End of log ****
__________________ Beste Grüße, Kuhlambo12 |
13.07.2015, 07:00 | #14 |
/// the machine /// TB-Ausbilder | Windows 8 & Windows 7 Laptop beide stark Adware verseucht Repair hilft nicht, Regfiles auch nicht, bleibt nur noch ein Refresh von Win8.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
13.07.2015, 08:22 | #15 |
| Windows 8 & Windows 7 Laptop beide stark Adware verseucht Alles klar, soll ich dann ein Inplace-Upgrade machen oder einfach die paar Tage bis zum Win10-Release mit einer anderen Securitylösung überbrücken. Soweit ich weiß will der Kollege Win10 sobald es zur Verfügung steht sich auf den Rechner ziehen. Soll ich sonst noch was durchlaufen lassen? (Eset, Securitycheck, o.Ä.) Oder soll ich gleich mit dem 2ten Win7 Laptop weiter machen? Vielen Dank bis hier hin schonmal!
__________________ Beste Grüße, Kuhlambo12 |