... so jetzt aber
Code:
Alles auswählen Aufklappen ATTFilter
Emsisoft Emergency Kit - Version 10.0
Letztes Update: 25.08.2015 17:31:12
Benutzerkonto: Veli-PC\Veli
Scan-Einstellungen:
Scan-Methode: Malware-Scan
Objekte: Rootkits, Speicher, Traces, Dateien
PUPs-Erkennung: An
Archiv-Scan: Aus
ADS Scan: An
Dateitypen-Filter: Aus
Erweitertes Caching: An
Direkter Festplattenzugriff: Aus
Scan-Beginn: 25.08.2015 17:51:11
Key: HKEY_USERS\.DEFAULT\SOFTWARE\APPDATALOW\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Gefunden: Application.Toolbar (A)
Key: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\APPDATALOW\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Gefunden: Application.Toolbar (A)
Key: HKEY_USERS\S-1-5-18\SOFTWARE\APPDATALOW\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Gefunden: Application.Toolbar (A)
Key: HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{D01A33E2-0A34-4659-82AA-8A90C51C0D21} Gefunden: Application.Toolbar (A)
Key: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{D01A33E2-0A34-4659-82AA-8A90C51C0D21} Gefunden: Application.Toolbar (A)
Key: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\CLASSES\INTERFACE\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326} Gefunden: Application.Toolbar (A)
Key: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\CLASSES\TYPELIB\{157B1AA6-3E5C-404A-9118-C1D91F537040} Gefunden: Application.Toolbar (A)
Key: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\WEBAPP Gefunden: Application.Toolbar (A)
Key: HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432NODE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Gefunden: Application.Toolbar (A)
Key: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\CLKAPP Gefunden: Application.Toolbar (A)
C:\Program Files (x86)\baidu Gefunden: Application.AppInstall (A)
Value: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLETASKMGR Gefunden: Setting.DisableTaskMgr (A)
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLEREGISTRYTOOLS Gefunden: Setting.DisableRegistryTools (A)
Value: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLEREGISTRYTOOLS Gefunden: Setting.DisableRegistryTools (A)
Key: HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432NODE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Gefunden: Application.AdFix (A)
C:\Windows\Installer\MSI102A.tmp-\PIFlagsManager.dll Gefunden: Adware.Linkury.P (B)
C:\Windows\Installer\MSI102A.tmp-\PILogger.dll Gefunden: Adware.Linkury.P (B)
C:\Windows\Installer\MSI102A.tmp-\PILogManager.dll Gefunden: Adware.Linkury.P (B)
C:\Windows\Installer\MSI102A.tmp-\Smartbar.Common.dll Gefunden: Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI102A.tmp-\Smartbar.Communication.dll Gefunden: Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI102A.tmp-\Smartbar.Communication.NamedPipe.dll Gefunden: Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI102A.tmp-\srpt.dll Gefunden: Adware.Linkury.P (B)
C:\Windows\Installer\MSI1328.tmp-\FiddlerCore.dll Gefunden: Adware.Linkury.N (B)
C:\Windows\Installer\MSI1328.tmp-\Proxy.Lib.dll Gefunden: Application.Generic.1140251 (B)
C:\Windows\Installer\MSI1328.tmp-\ProxySettings.dll Gefunden: Application.Generic.1412240 (B)
C:\Windows\Installer\MSI1328.tmp-\Smartbar.Common.dll Gefunden: Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI1328.tmp-\Smartbar.Communication.dll Gefunden: Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI1328.tmp-\Smartbar.Communication.NamedPipe.dll Gefunden: Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI1328.tmp-\Smartbar.Monetization.Proxy.ProxyService.dll Gefunden: Application.Generic.1193785 (B)
C:\Windows\Installer\MSI1328.tmp-\Smartbar.Resources.SocialNetsSharer.XmlSerializers.dll Gefunden: Application.Generic.1170253 (B)
C:\Windows\Installer\MSI1328.tmp-\sreu.dll Gefunden: Application.Generic.1174709 (B)
C:\Windows\Installer\MSI1328.tmp-\srns.dll Gefunden: Application.Generic.1173605 (B)
C:\Windows\Installer\MSI1328.tmp-\srpdm.dll Gefunden: Application.Generic.1178608 (B)
C:\Windows\Installer\MSI1328.tmp-\srprl.dll Gefunden: Application.Generic.1194082 (B)
C:\Windows\Installer\MSI1328.tmp-\srut.dll Gefunden: Application.Generic.1187038 (B)
C:\Windows\Installer\MSI5D61.tmp-\PILogManager.dll Gefunden: Adware.Linkury.P (B)
C:\Windows\Installer\MSI958F.tmp-\FiddlerCore.dll Gefunden: Adware.Smartbar.O (B)
C:\Windows\Installer\MSI958F.tmp-\lrrot.dll Gefunden: Application.Generic.1196901 (B)
C:\Windows\Installer\MSI958F.tmp-\PIFlagsManager.dll Gefunden: Adware.Linkury.P (B)
C:\Windows\Installer\MSI958F.tmp-\PILogger.dll Gefunden: Adware.Linkury.P (B)
C:\Windows\Installer\MSI958F.tmp-\PILogManager.dll Gefunden: Adware.Linkury.P (B)
C:\Windows\Installer\MSI958F.tmp-\Proxy.Lib.dll Gefunden: Application.Generic.945947 (B)
C:\Windows\Installer\MSI958F.tmp-\Smartbar.Common.dll Gefunden: Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI958F.tmp-\Smartbar.Communication.dll Gefunden: Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI958F.tmp-\Smartbar.Communication.NamedPipe.dll Gefunden: Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI958F.tmp-\Smartbar.Resources.SocialNetsSharer.dll Gefunden: Application.Generic.1218186 (B)
C:\Windows\Installer\MSI958F.tmp-\Smartbar.Resources.SocialNetsSharer.XmlSerializers.dll Gefunden: Application.Generic.1219204 (B)
C:\Windows\Installer\MSI958F.tmp-\sreu.dll Gefunden: Application.Generic.1162465 (B)
C:\Windows\Installer\MSI958F.tmp-\srns.dll Gefunden: Application.Generic.1219208 (B)
C:\Windows\Installer\MSI958F.tmp-\srprl.dll Gefunden: Application.Generic.1209951 (B)
C:\Windows\Installer\MSI958F.tmp-\srpt.dll Gefunden: Adware.Linkury.P (B)
C:\Windows\Installer\MSI958F.tmp-\srsbs.dll Gefunden: Application.Generic.1172129 (B)
C:\Windows\Installer\MSI9EDF.tmp-\PIFlagsManager.dll Gefunden: Adware.Linkury.P (B)
C:\Windows\Installer\MSI9EDF.tmp-\PILogger.dll Gefunden: Adware.Linkury.P (B)
C:\Windows\Installer\MSI9EDF.tmp-\PILogManager.dll Gefunden: Adware.Linkury.P (B)
C:\Windows\Installer\MSI9EDF.tmp-\Smartbar.Communication.dll Gefunden: Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI9EDF.tmp-\Smartbar.Common.dll Gefunden: Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI9EDF.tmp-\Smartbar.Communication.NamedPipe.dll Gefunden: Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI9EDF.tmp-\srpt.dll Gefunden: Adware.Linkury.P (B)
Gescannt: 75946
Gefunden 59
Scan-Ende: 25.08.2015 18:02:37
Scan-Zeit: 0:11:26
C:\Windows\Installer\MSI9EDF.tmp-\srpt.dll Quarantäne Adware.Linkury.P (B)
C:\Windows\Installer\MSI9EDF.tmp-\Smartbar.Communication.NamedPipe.dll Quarantäne Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI9EDF.tmp-\Smartbar.Common.dll Quarantäne Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI9EDF.tmp-\Smartbar.Communication.dll Quarantäne Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI9EDF.tmp-\PILogManager.dll Quarantäne Adware.Linkury.P (B)
C:\Windows\Installer\MSI9EDF.tmp-\PILogger.dll Quarantäne Adware.Linkury.P (B)
C:\Windows\Installer\MSI9EDF.tmp-\PIFlagsManager.dll Quarantäne Adware.Linkury.P (B)
C:\Windows\Installer\MSI958F.tmp-\srsbs.dll Quarantäne Application.Generic.1172129 (B)
C:\Windows\Installer\MSI958F.tmp-\srpt.dll Quarantäne Adware.Linkury.P (B)
C:\Windows\Installer\MSI958F.tmp-\srprl.dll Quarantäne Application.Generic.1209951 (B)
C:\Windows\Installer\MSI958F.tmp-\srns.dll Quarantäne Application.Generic.1219208 (B)
C:\Windows\Installer\MSI958F.tmp-\sreu.dll Quarantäne Application.Generic.1162465 (B)
C:\Windows\Installer\MSI958F.tmp-\Smartbar.Resources.SocialNetsSharer.XmlSerializers.dll Quarantäne Application.Generic.1219204 (B)
C:\Windows\Installer\MSI958F.tmp-\Smartbar.Resources.SocialNetsSharer.dll Quarantäne Application.Generic.1218186 (B)
C:\Windows\Installer\MSI958F.tmp-\Smartbar.Communication.NamedPipe.dll Quarantäne Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI958F.tmp-\Smartbar.Communication.dll Quarantäne Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI958F.tmp-\Smartbar.Common.dll Quarantäne Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI958F.tmp-\Proxy.Lib.dll Quarantäne Application.Generic.945947 (B)
C:\Windows\Installer\MSI958F.tmp-\PILogManager.dll Quarantäne Adware.Linkury.P (B)
C:\Windows\Installer\MSI958F.tmp-\PILogger.dll Quarantäne Adware.Linkury.P (B)
C:\Windows\Installer\MSI958F.tmp-\PIFlagsManager.dll Quarantäne Adware.Linkury.P (B)
C:\Windows\Installer\MSI958F.tmp-\lrrot.dll Quarantäne Application.Generic.1196901 (B)
C:\Windows\Installer\MSI958F.tmp-\FiddlerCore.dll Quarantäne Adware.Smartbar.O (B)
C:\Windows\Installer\MSI5D61.tmp-\PILogManager.dll Quarantäne Adware.Linkury.P (B)
C:\Windows\Installer\MSI1328.tmp-\srut.dll Quarantäne Application.Generic.1187038 (B)
C:\Windows\Installer\MSI1328.tmp-\srprl.dll Quarantäne Application.Generic.1194082 (B)
C:\Windows\Installer\MSI1328.tmp-\srpdm.dll Quarantäne Application.Generic.1178608 (B)
C:\Windows\Installer\MSI1328.tmp-\srns.dll Quarantäne Application.Generic.1173605 (B)
C:\Windows\Installer\MSI1328.tmp-\sreu.dll Quarantäne Application.Generic.1174709 (B)
C:\Windows\Installer\MSI1328.tmp-\Smartbar.Resources.SocialNetsSharer.XmlSerializers.dll Quarantäne Application.Generic.1170253 (B)
C:\Windows\Installer\MSI1328.tmp-\Smartbar.Monetization.Proxy.ProxyService.dll Quarantäne Application.Generic.1193785 (B)
C:\Windows\Installer\MSI1328.tmp-\Smartbar.Communication.NamedPipe.dll Quarantäne Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI1328.tmp-\Smartbar.Communication.dll Quarantäne Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI1328.tmp-\Smartbar.Common.dll Quarantäne Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI1328.tmp-\ProxySettings.dll Quarantäne Application.Generic.1412240 (B)
C:\Windows\Installer\MSI1328.tmp-\Proxy.Lib.dll Quarantäne Application.Generic.1140251 (B)
C:\Windows\Installer\MSI1328.tmp-\FiddlerCore.dll Quarantäne Adware.Linkury.N (B)
C:\Windows\Installer\MSI102A.tmp-\srpt.dll Quarantäne Adware.Linkury.P (B)
C:\Windows\Installer\MSI102A.tmp-\Smartbar.Communication.NamedPipe.dll Quarantäne Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI102A.tmp-\Smartbar.Communication.dll Quarantäne Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI102A.tmp-\Smartbar.Common.dll Quarantäne Adware.Smartbar.AB (B)
C:\Windows\Installer\MSI102A.tmp-\PILogManager.dll Quarantäne Adware.Linkury.P (B)
C:\Windows\Installer\MSI102A.tmp-\PILogger.dll Quarantäne Adware.Linkury.P (B)
C:\Windows\Installer\MSI102A.tmp-\PIFlagsManager.dll Quarantäne Adware.Linkury.P (B)
Key: HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432NODE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Quarantäne Application.AdFix (A)
Value: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLEREGISTRYTOOLS Quarantäne Setting.DisableRegistryTools (A)
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLEREGISTRYTOOLS Quarantäne Setting.DisableRegistryTools (A)
Value: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLETASKMGR Quarantäne Setting.DisableTaskMgr (A)
C:\Program Files (x86)\baidu Quarantäne Application.AppInstall (A)
Key: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\CLKAPP Quarantäne Application.Toolbar (A)
Key: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\WEBAPP Quarantäne Application.Toolbar (A)
Key: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\CLASSES\TYPELIB\{157B1AA6-3E5C-404A-9118-C1D91F537040} Quarantäne Application.Toolbar (A)
Key: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\CLASSES\INTERFACE\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326} Quarantäne Application.Toolbar (A)
Key: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{D01A33E2-0A34-4659-82AA-8A90C51C0D21} Quarantäne Application.Toolbar (A)
Key: HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{D01A33E2-0A34-4659-82AA-8A90C51C0D21} Quarantäne Application.Toolbar (A)
Key: HKEY_USERS\S-1-5-18\SOFTWARE\APPDATALOW\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Quarantäne Application.Toolbar (A)
Key: HKEY_USERS\S-1-5-21-2447634249-3870620914-2731681305-1000\SOFTWARE\APPDATALOW\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Quarantäne Application.Toolbar (A)
Quarantäne 57