![]() |
|
Log-Analyse und Auswertung: Windows 10, Problem Entfernung MPC Cleaner/Istartsurf als StartseiteWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #3 |
![]() | ![]() MPC/Istartsurf problemeCode:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 24/03/2016 Suchlaufzeit: 14:26 Protokolldatei: mbam.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2016.03.24.02 Rootkit-Datenbank: v2016.03.12.01 Lizenz: Testversion Malware-Schutz: Aktiviert Schutz vor bösartigen Websites: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 10 CPU: x64 Dateisystem: NTFS Benutzer: Andrea Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 428978 Abgelaufene Zeit: 29 Min., 23 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 3 PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe, 2248, Löschen bei Neustart, [543e0487425758de885501eb05fc9e62] PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCTray.exe, 3860, Löschen bei Neustart, [741e2e5d1b7efa3c7766d319ee136997] PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCTray64.exe, 4632, Löschen bei Neustart, [098949427821f442a7369f4db051e719] Module: 33 PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, Löschen bei Neustart, [9ef494f71c7d24123e9f18d4936e36ca], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, Löschen bei Neustart, [9ef494f71c7d24123e9f18d4936e36ca], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, Löschen bei Neustart, [9ef494f71c7d24123e9f18d4936e36ca], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, Löschen bei Neustart, [9ef494f71c7d24123e9f18d4936e36ca], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, Löschen bei Neustart, [9ef494f71c7d24123e9f18d4936e36ca], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, Löschen bei Neustart, [9ef494f71c7d24123e9f18d4936e36ca], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, Löschen bei Neustart, [9ef494f71c7d24123e9f18d4936e36ca], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\LpcManager.dll, Löschen bei Neustart, [8012ccbf4455b284d60713d9c1401ee2], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\LpcManager.dll, Löschen bei Neustart, [8012ccbf4455b284d60713d9c1401ee2], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\WinService.dll, Löschen bei Neustart, [99f9a0eb9702f145fde014d868999967], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XProcessBus.dll, Löschen bei Neustart, [f0a2800b15846fc736a7e00ce81931cf], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XProcessBus.dll, Löschen bei Neustart, [f0a2800b15846fc736a7e00ce81931cf], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Report.dll, Löschen bei Neustart, [94fe97f491085ed8be1fe309bc4503fd], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Report.dll, Löschen bei Neustart, [94fe97f491085ed8be1fe309bc4503fd], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XBus.dll, Löschen bei Neustart, [088a66258415d264d7067a728f722cd4], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\TrayFrame.dll, Löschen bei Neustart, [7c162d5eaced35017f5ea646847d669a], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Monitor.dll, Löschen bei Neustart, [464cf4972574d0666a73de0e41c06d93], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Database.dll, Löschen bei Neustart, [8a087d0e118884b27a6301eb02ffe020], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\LogReport.dll, Löschen bei Neustart, [cbc7593280193402736a03e9d92836ca], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\BrowserPlugIn.dll, Löschen bei Neustart, [8d05404b2f6a5cda32ab06e6837e5ea2], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Cleaner.dll, Löschen bei Neustart, [c6ccd6b5ddbc5bdbad309a526f920af6], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeProtect.dll, Löschen bei Neustart, [b9d924679ffadc5a04d98b6107faa060], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Update.dll, Löschen bei Neustart, [dfb30289237678be8e4f18d4e918aa56], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Web.dll, Löschen bei Neustart, [058d91fa9bfebf770cd19f4d897823dd], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeNavi.dll, Löschen bei Neustart, [5c36206b9207f541825b26c6f40d3ac6], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdbWinApi.dll, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdbWinUsbApi.dll, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AndriodServer.dll, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Support.dll, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Support.dll, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Utility.dll, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Utility.dll, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XSkin.dll, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], Registrierungsschlüssel: 5 PUP.Optional.MorePowerfulCleaner, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MPCProtectService, Löschen bei Neustart, [543e0487425758de885501eb05fc9e62], PUP.Optional.MorePowerfulCleaner, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MPCKpt, Löschen bei Neustart, [0e84b0dbd5c45ed82e7d757d2cd5659b], PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{844FB3D6-C17F-4738-AF91-F1AF5FDBD136}, Löschen bei Neustart, [3161c6c56138d95dde7d1b75f014c43c], PUP.Optional.MorePowerfulCleaner, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\MpcDisabled, In Quarantäne, [a9e9c9c2495056e094a85436cb3945bb], PUP.Optional.MorePowerfulCleaner, HKLM\SOFTWARE\WOW6432NODE\MPC, Löschen bei Neustart, [731f7f0c4257c96d4483d2c046be7888], Registrierungswerte: 5 PUP.Optional.MyPCBackup, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{844FB3D6-C17F-4738-AF91-F1AF5FDBD136}|Path, \LaunchPreSignup, Löschen bei Neustart, [3161c6c56138d95dde7d1b75f014c43c] PUP.Optional.MorePowerfulCleaner, HKLM\SOFTWARE\WOW6432NODE\MPC|Location, C:\Program Files (x86)\MPC Cleaner, Löschen bei Neustart, [731f7f0c4257c96d4483d2c046be7888] PUP.Optional.MorePowerfulCleaner, HKLM\SOFTWARE\WOW6432NODE\MPC|MPCNewsExist, 2, Löschen bei Neustart, [bcd6addea1f89b9be8569bef6d97fa06] PUP.Optional.MorePowerfulCleaner, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MPCKPT|Description, MPC Driver, Löschen bei Neustart, [385a3a51009966d06f59d7bbbd47d729] PUP.Optional.MorePowerfulCleaner, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MPCPROTECTSERVICE|ImagePath, "C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe", Löschen bei Neustart, [fd9515766831b97d0bc03f54f113de22] Registrierungsdaten: 1 PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Löschen bei Neustart,[c1d1ef9cc9d0b28449384bd865a01ae6] Ordner: 25 PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Exe, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\ntkrnlmp.pdb, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\ntkrnlmp.pdb\0292FE5A651143BFA48A2B8936D760B41, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\ntkrnlmp.pdb\231AC242EEAA4DB49BDBFD91531082851, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\ntkrnlmp.pdb\A3435D41933645F0AEE25359430F40051, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\ntkrnlmp.pdb\AA1C6DFE1C9F4E858ACC76B54F42BEE61, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\ntkrnlmp.pdb\BCD995A13A79426B96B15B8D0331A46F1, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Cleaner, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\CrashReport, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\FloatWnd, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\News, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Tray, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Uninstall, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\TEMP, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\TEMP\Upgrade, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], Dateien: 195 PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll.dll, Löschen bei Neustart, [9ef494f71c7d24123e9f18d4936e36ca], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe, Löschen bei Neustart, [543e0487425758de885501eb05fc9e62], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\LpcManager.dll, Löschen bei Neustart, [8012ccbf4455b284d60713d9c1401ee2], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\WinService.dll, Löschen bei Neustart, [99f9a0eb9702f145fde014d868999967], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XProcessBus.dll, Löschen bei Neustart, [f0a2800b15846fc736a7e00ce81931cf], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Report.dll, Löschen bei Neustart, [94fe97f491085ed8be1fe309bc4503fd], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCTray.exe, Löschen bei Neustart, [741e2e5d1b7efa3c7766d319ee136997], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XBus.dll, Löschen bei Neustart, [088a66258415d264d7067a728f722cd4], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\TrayFrame.dll, Löschen bei Neustart, [7c162d5eaced35017f5ea646847d669a], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Monitor.dll, Löschen bei Neustart, [464cf4972574d0666a73de0e41c06d93], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Database.dll, Löschen bei Neustart, [8a087d0e118884b27a6301eb02ffe020], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\LogReport.dll, Löschen bei Neustart, [cbc7593280193402736a03e9d92836ca], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\BrowserPlugIn.dll, Löschen bei Neustart, [8d05404b2f6a5cda32ab06e6837e5ea2], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Cleaner.dll, Löschen bei Neustart, [c6ccd6b5ddbc5bdbad309a526f920af6], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeProtect.dll, Löschen bei Neustart, [b9d924679ffadc5a04d98b6107faa060], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Update.dll, Löschen bei Neustart, [dfb30289237678be8e4f18d4e918aa56], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Web.dll, Löschen bei Neustart, [058d91fa9bfebf770cd19f4d897823dd], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeNavi.dll, Löschen bei Neustart, [5c36206b9207f541825b26c6f40d3ac6], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCTray64.exe, Löschen bei Neustart, [098949427821f442a7369f4db051e719], PUP.Optional.MorePowerfulCleaner, C:\Windows\System32\drivers\MPCKpt.sys, Löschen bei Neustart, [0e84b0dbd5c45ed82e7d757d2cd5659b], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\DataCenter.dll, In Quarantäne, [eda5117aeaaf70c60bd22fbdff02e41c], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\FloatFrame.dll, In Quarantäne, [6f23b9d24752c96d12cb9e4e43be16ea], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MainFrame.dll, In Quarantäne, [f0a25f2cb6e39e98f0ed9b514fb22cd4], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPC.exe, In Quarantäne, [415155362f6a8bab17c6c7257f82e51b], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCAnalysisPdb.exe, In Quarantäne, [830f2863524790a617c6e00cc0415fa1], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCAutoClean.exe, In Quarantäne, [bdd55d2e9009f44239a4d9134eb3b050], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCNews.exe, In Quarantäne, [b5dd2b609efb6ccaab32a14b728fbc44], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MpcSafeDll64.dll, Löschen bei Neustart, [94feb4d7475250e6e7f68f5d51b02dd3], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCSecurity.exe, In Quarantäne, [296916756e2b7abcaa33faf255ace31d], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCSetting.exe, In Quarantäne, [a9e9b3d8405945f126b7ad3ff70ae719], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCSmartBalance.exe, In Quarantäne, [b5ddddae861358de4e8ff5f7b849d22e], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SafeNavi64.dll, Löschen bei Neustart, [157dec9feeabe353419c0be1d8299b65], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SetupFrame.dll, In Quarantäne, [abe73f4c0c8d90a69548549857aa916f], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\SmartBalance.dll, In Quarantäne, [375b1f6c7524b383637a27c5ea1725db], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Uninstall.exe, In Quarantäne, [4c46dbb08e0b261059844d9f3ec3c739], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\UninstallFrame.dll, In Quarantäne, [6f23b9d279202214805d589435ccf709], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\UninstDelete.exe, In Quarantäne, [61311a715841ae88ae2f4e9e649d04fc], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\UpdateHost.exe, In Quarantäne, [a7eb73186138dd59c51820cc3ec305fb], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Upgrade.dll, In Quarantäne, [4151b3d8c9d0b383588542aa51b047b9], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Andrea\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.istartsurf.com_0.localstorage, In Quarantäne, [31616427663360d60a4a5c99db281de3], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Andrea\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.istartsurf.com_0.localstorage-journal, In Quarantäne, [d7bbf794336623139aba3fb66f9414ec], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\symsrv.yes, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdbWinApi.dll, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdbWinUsbApi.dll, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AdcManager.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\AndriodServer.dll, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\CeBase.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\CrashReport.exe, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Guid.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\isafechlp.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT.manifest, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCBS.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\MPCCheckDump.exe, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcm90.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcp110.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcp90.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcr110.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\msvcr90.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\nmlct, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\pingme.txt, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\silence.ini, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\snh.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Support.dll, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\symsrv.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\udpx, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Utility.dll, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\versioninfo.ini, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\wfhxte.dat, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\xadb.exe, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\XSkin.dll, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\dbgkpt.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\Clean.xf, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\google.xml, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\PlugIn.xf, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\as.db, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\cf.db, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\run.db, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Config\DB\st.db, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCBase_32.sys, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt.inf, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt.sys, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt_vista_32.sys, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt_vista_64.sys, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Drivers\MPCKpt_xp_32.sys, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Exe\ADC_qd00000.exe, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q2.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_gray.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_green.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_org.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\ad_red.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g1.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g10.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g11.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g12.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g2.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g3.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g4.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g5.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g6.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g7.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g8.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\g9.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q1.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q10.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q11.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q12.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q3.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q4.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q5.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q6.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q7.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q8.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\q9.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r1.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r10.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r11.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r12.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r2.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r3.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r4.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r5.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r6.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r7.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r8.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\r9.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_gray.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_green.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_org.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\sys_red.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y1.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y10.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y11.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y12.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y2.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y3.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y4.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y5.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y6.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y7.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y8.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\y9.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{08DA4B46-E0EB-4B4D-8C8B-558C967AF6C5}.ico, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{22A8D5A3-F368-4C6B-BF4D-3C901EBCF242}.ico, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{3F9A707D-2C36-4344-8621-B8E4ADC95C18}.ico, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{ADC520A9-B4B3-791E-B149-845C11673CB0}.ico, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{CDA529A9-B1B3-793E-B449-845C11673CB5}.ico, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{D8EC46AF-529F-4636-963B-C086429C73DA}.ico, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{DE37CD8C-DE7B-481F-A676-303ABAFBEE04}.ico, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{EDA029A1-B5BA-793E-B649-875C18673CC5}.ico, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{F154C596-75A9-4028-90E8-9752BD7CA05B}.ico, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\search_{FDA029A2-A5BA-797E-B689-875E18673FC2}.ico, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SearchIcon\toasts_waring.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\adcapp.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\adcweb.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\block.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\home.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\ie.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SgIcon\search.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\AR_green.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\AR_org.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\AR_red.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\Bp_green.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\Bp_org.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\Bp_red.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SpeedUp_green.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SpeedUp_org.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SpeedUp_red.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SVC_green.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SVC_org.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\SVC_red.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\TSK_green.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\TSK_org.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Image\SoIcon\TSK_red.png, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\msvcm90.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\msvcp90.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Microsoft.VC90.CRT\msvcr90.dll, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\ntkrnlmp.pdb\0292FE5A651143BFA48A2B8936D760B41\ntkrnlmp.pdb, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\ntkrnlmp.pdb\231AC242EEAA4DB49BDBFD91531082851\ntkrnlmp.pdb, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\ntkrnlmp.pdb\A3435D41933645F0AEE25359430F40051\ntkrnlmp.pdb, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\ntkrnlmp.pdb\AA1C6DFE1C9F4E858ACC76B54F42BEE61\ntkrnlmp.pdb, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\ntkrnlmp.pdb\BCD995A13A79426B96B15B8D0331A46F1\ntkrnlmp.pdb, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Cleaner\Lang.xf, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Cleaner\Skin.xf, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\CrashReport\Lang.xf, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\CrashReport\Skin.xf, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\FloatWnd\Lang.xf, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\FloatWnd\Skin.xf, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\News\Lang.xf, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\News\Skin.xf, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Tray\Lang.xf, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Tray\Skin.xf, Löschen bei Neustart, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Uninstall\Lang.xf, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], PUP.Optional.MorePowerfulCleaner, C:\Program Files (x86)\MPC Cleaner\Skin\Uninstall\Skin.xf, In Quarantäne, [f99918736e2b0c2af88ed5b56d97c838], Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter # AdwCleaner v5.105 - Registro generado 24/03/2016 en 18:14:21 # Actualizado 21/03/2016 por Xplode # Base de datos : 2016-03-24.1 [Servidor] # Sistema operativo : Windows 10 Home (x64) # Nombre de usuario : Andrea - ANDREA # Ejecutado desde : C:\Users\Andrea\Desktop\AdwCleaner_5.105(1).exe # Opción : Limpiar # Apoyo : hxxp://toolslib.net/forum ***** [ Servicios ] ***** ***** [ Carpetas ] ***** ***** [ Archivos ] ***** ***** [ DLLs ] ***** ***** [ Accesos directos ] ***** ***** [ Tareas programadas ] ***** ***** [ Registro ] ***** [-] Llave Eliminar : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\search.mpc.am [-] Llave Eliminar : HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\search.mpc.am ***** [ Navegadores Web ] ***** [-] [C:\Users\Andrea\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Eliminar : google [-] [C:\Users\Andrea\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Eliminar : search.mpc.am [-] [C:\Users\Andrea\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Eliminar : search.mpc.am [-] [C:\Users\Andrea\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Default_Search_Provider] Eliminar : hxxp://s.coldsearch.com/wefavicon.ico [-] [C:\Users\Andrea\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Homepage] Eliminar : search.mpc.am ************************* :: Llaves "Tracing" removidas :: Proxy Configuración borrada :: Winsock Configuración borrada :: Políticas de IE borradas :: Políticas de Chrome borradas ************************* C:\AdwCleaner\AdwCleaner[C1].txt - [4632 bytes] - [22/03/2016 20:13:06] C:\AdwCleaner\AdwCleaner[C2].txt - [2033 bytes] - [22/03/2016 20:25:21] C:\AdwCleaner\AdwCleaner[C3].txt - [2074 bytes] - [24/03/2016 18:14:21] C:\AdwCleaner\AdwCleaner[S1].txt - [5629 bytes] - [22/03/2016 20:08:21] C:\AdwCleaner\AdwCleaner[S2].txt - [1837 bytes] - [22/03/2016 20:23:39] C:\AdwCleaner\AdwCleaner[S3].txt - [2162 bytes] - [24/03/2016 18:08:17] ########## EOF - C:\AdwCleaner\AdwCleaner[C3].txt - [2366 bytes] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.4 (03.14.2016) Operating System: Windows 10 Home x64 Ran by Andrea (Administrator) on 24/03/2016 at 18:20:10,05 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 1 Successfully deleted: C:\WINDOWS\prefetch\AVIRA_FREE_ANTIVIRUS_1516DE.E-FDBF05BE.pf (File) Registry: 0 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 24/03/2016 at 18:22:39,41 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter LastRegBack: 2016-03-22 18:44 ==================== End of FRST.txt ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01 Ran by Andrea (2016-03-24 18:25:47) Running from C:\Users\Andrea\Desktop Windows 10 Home Version 1511 (X64) (2015-12-04 17:47:10) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrador (S-1-5-21-1489487905-805253939-2442927746-500 - Administrator - Disabled) => C:\Users\Administrator Andrea (S-1-5-21-1489487905-805253939-2442927746-1001 - Administrator - Enabled) => C:\Users\Andrea DefaultAccount (S-1-5-21-1489487905-805253939-2442927746-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1489487905-805253939-2442927746-1003 - Limited - Enabled) Invitado (S-1-5-21-1489487905-805253939-2442927746-501 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated) Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.197 - Adobe Systems Incorporated) AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD) Bing Bar (HKLM-x32\...\{3611CA6C-5FCA-4900-A329-6A118123CCFC}) (Version: 7.1.355.0 - Microsoft Corporation) CutePDF Writer 2.8 (HKLM\...\CutePDF Writer Installation) (Version: - ) Dropbox (HKLM-x32\...\Dropbox) (Version: 3.16.1 - Dropbox, Inc.) Dropbox Update Helper (x32 Version: 1.3.27.37 - Dropbox, Inc.) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.87 - Google Inc.) Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden HP Officejet 4620 series Ayuda (HKLM-x32\...\{36D47790-7562-4A7F-B933-600A700B2D40}) (Version: 6.0.0 - Hewlett Packard) HP Officejet 4620 series Estudio para la mejora del producto (HKLM\...\{3ADC3E59-CC72-409E-8FB4-692E40C76B32}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Officejet 4620 series Software básico del dispositivo (HKLM\...\{CFA8A322-2D7F-4425-A251-F42BAF0A52D1}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP) Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft Office 365 - es-es (HKLM\...\O365HomePremRetail - es-es) (Version: 16.0.6568.2025 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Mozilla Firefox 45.0.1 (x86 es-ES) (HKLM-x32\...\Mozilla Firefox 45.0.1 (x86 es-ES)) (Version: 45.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 45.0.1 - Mozilla) Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.6528.1011 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.6528.1011 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (x32 Version: 16.0.6528.1011 - Microsoft Corporation) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6794 - Realtek Semiconductor Corp.) Skype™ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.112 - Skype Technologies S.A.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.16.3 - Synaptics Incorporated) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.2 - VideoLAN) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1489487905-805253939-2442927746-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Andrea\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileCoAuth.exe (Microsoft Corporation) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0845ABDF-F6EF-4B23-8B21-FA1CFA3D8C94} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-04] (Google Inc.) Task: {2A17B0BB-5A36-4512-A5CB-535766790163} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-23] (Adobe Systems Incorporated) Task: {2D7C9F36-57F4-4902-9DEE-AE6F4DAE2AFA} - System32\Tasks\HPCustParticipation HP Officejet 4620 series => C:\Program Files\HP\HP Officejet 4620 series\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.) Task: {2F835778-D4E4-454A-AD0B-3B81D71C26DD} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-11-04] (Dropbox, Inc.) Task: {46E05383-FF33-452E-9CA2-336720715CAE} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-02-04] (Microsoft Corporation) Task: {671CEBE7-1E62-469F-B289-FFE040E9C692} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated) Task: {700D1614-1481-461E-BBE7-B298BFAEC365} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-11-04] (Dropbox, Inc.) Task: {A1DCBB96-1F07-4D44-AD5A-5B9420DD5DBE} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe Task: {A7E4AE1F-F0C1-4CBE-BB85-74DE68B51E18} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-04] (Google Inc.) Task: {BBF293C4-3408-4EDB-8580-D21B81F8F7B4} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2016-02-23] (Microsoft Corporation) Task: {D246076E-9163-44E8-B5EE-8423A6815EA6} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-02-04] (Microsoft Corporation) Task: {FDA06C4A-0EF9-4AE1-AA74-331E557B2F19} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-03-09] (Microsoft Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2015-11-03 20:15 - 2009-11-05 07:40 - 00085504 _____ () C:\WINDOWS\System32\cpwmon64.dll 2016-03-02 08:09 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-03-02 08:09 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-01-22 12:21 - 2016-01-22 12:21 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2015-12-18 08:14 - 2015-12-07 05:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-03-02 08:08 - 2016-02-23 09:36 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-01-13 07:54 - 2016-01-05 02:29 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-01-13 07:54 - 2016-01-05 02:23 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-01-28 19:30 - 2016-01-16 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-01-28 19:30 - 2016-01-16 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-01-22 12:21 - 2016-01-22 12:21 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2016-01-22 12:21 - 2016-01-22 12:21 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll 2016-01-11 10:36 - 2016-01-11 10:36 - 00932032 ____R () C:\Program Files (x86)\Skype\Phone\ssScreenVVS2.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Andrea\Desktop\Andrea Redefin:com.dropbox.attributes [168] ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2015-11-03 10:21 - 2015-11-03 10:18 - 00000824 ____N C:\WINDOWS\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1489487905-805253939-2442927746-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Andrea\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 80.58.61.250 - 80.58.61.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [UDP Query User{E3C1E0C2-5851-4968-AC07-36149B1DEE3C}C:\program files (x86)\voipconnect.com\voipconnect\voipconnect.exe] => (Allow) C:\program files (x86)\voipconnect.com\voipconnect\voipconnect.exe FirewallRules: [TCP Query User{D8961C48-783C-446E-836A-FF895F138F58}C:\program files (x86)\voipconnect.com\voipconnect\voipconnect.exe] => (Allow) C:\program files (x86)\voipconnect.com\voipconnect\voipconnect.exe FirewallRules: [{466581F5-1E0E-416D-984C-529683392D97}] => (Allow) C:\Program Files\HP\HP Officejet 4620 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{EBF26AA6-4DBA-4492-94DF-E95446D9BB1B}] => (Allow) C:\Program Files\HP\HP Officejet 4620 series\Bin\HPNetworkCommunicator.exe FirewallRules: [{0472D5A3-6D5B-4801-B56B-773D3263D1DC}] => (Allow) C:\Program Files\HP\HP Officejet 4620 series\Bin\DeviceSetup.exe FirewallRules: [{4F859EED-6E7C-42C0-8144-7C56049217B9}] => (Allow) C:\Program Files\HP\HP Officejet 4620 series\bin\SendAFax.exe FirewallRules: [{C312F809-C131-404A-BED8-3BA550631B11}] => (Allow) C:\Program Files\HP\HP Officejet 4620 series\bin\DigitalWizards.exe FirewallRules: [{2A44E12A-57F7-4C9B-8436-5E956AAF26FC}] => (Allow) C:\Program Files\HP\HP Officejet 4620 series\bin\FaxApplications.exe FirewallRules: [{0216F656-736C-47DA-BADF-194C89E72323}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{2C5E4983-A932-4842-B20C-3D42DEBC52EF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{749F59A6-F8E0-4EE5-B0EE-E3E3B7D5613D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{73D47067-AB77-4D7D-B4F7-F5BC915F2082}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{FFBA7A4E-4A57-48AC-9138-550202E1ACCA}C:\users\andrea\downloads\anydesk.exe] => (Allow) C:\users\andrea\downloads\anydesk.exe FirewallRules: [UDP Query User{5B56362D-1CF0-4BBC-896C-133001B6E9AB}C:\users\andrea\downloads\anydesk.exe] => (Allow) C:\users\andrea\downloads\anydesk.exe FirewallRules: [{B10E15D3-5994-450C-9C56-149538EC2033}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe FirewallRules: [{FD865C1C-6FDD-43C8-B029-B45EC7D945A9}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Restore Points ========================= 09-03-2016 09:09:06 Windows Update 12-03-2016 11:46:02 Windows Update 20-03-2016 21:14:40 Punto de control programado 24-03-2016 09:25:53 Windows Update 24-03-2016 18:20:27 JRT Pre-Junkware Removal ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (03/24/2016 06:20:54 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Error en Servicios de cifrado mientras se procesaba el objeto "System Writer" de la llamada OnIdentity(). Details: AddLegacyDriverFiles: Unable to back up image of binary Protocolo de detección de nivel de vínculo de Microsoft. System Error: Acceso denegado. . Error: (03/24/2016 02:16:06 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: firefox.exe, versión: 45.0.1.5918, marca de tiempo: 0x56e8a989 Nombre del módulo con errores: WS2_32.dll, versión: 10.0.10586.0, marca de tiempo: 0x5632d647 Código de excepción: 0xc0000409 Desplazamiento de errores: 0x0001441d Identificador del proceso con errores: 0x8e0 Hora de inicio de la aplicación con errores: 0xfirefox.exe0 Ruta de acceso de la aplicación con errores: firefox.exe1 Ruta de acceso del módulo con errores: firefox.exe2 Identificador del informe: firefox.exe3 Nombre completo del paquete con errores: firefox.exe4 Identificador de aplicación relativa del paquete con errores: firefox.exe5 Error: (03/24/2016 09:26:46 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Error en Servicios de cifrado mientras se procesaba el objeto "System Writer" de la llamada OnIdentity(). Details: AddLegacyDriverFiles: Unable to back up image of binary Protocolo de detección de nivel de vínculo de Microsoft. System Error: Acceso denegado. . Error: (03/23/2016 08:40:03 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418220 Error: (03/22/2016 08:38:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: rundll32.exe, versión: 10.0.10586.0, marca de tiempo: 0x5632d69c Nombre del módulo con errores: MSIFD3F.tmp, versión: 1.1.53.13962, marca de tiempo: 0x52974d21 Código de excepción: 0xc0000005 Desplazamiento de errores: 0x0000403f Identificador del proceso con errores: 0x1e4c Hora de inicio de la aplicación con errores: 0xrundll32.exe0 Ruta de acceso de la aplicación con errores: rundll32.exe1 Ruta de acceso del módulo con errores: rundll32.exe2 Identificador del informe: rundll32.exe3 Nombre completo del paquete con errores: rundll32.exe4 Identificador de aplicación relativa del paquete con errores: rundll32.exe5 Error: (03/22/2016 08:15:07 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ANDREA) Description: No se pudo activar la aplicación Microsoft.MicrosoftEdge_25.10586.0.0_neutral__8wekyb3d8bbwe:MicrosoftEdge.AppX9zvsr9qeth9e9a03yr0g7rpdrcrwgn5r.mca debido al error: -2144927149. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información. Error: (03/22/2016 08:03:23 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ANDREA) Description: No se pudo activar la aplicación Microsoft.WindowsStore_8wekyb3d8bbwe!App debido al error: -2144927149. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información. Error: (03/22/2016 08:01:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ANDREA) Description: No se pudo activar la aplicación Microsoft.MicrosoftEdge_25.10586.0.0_neutral__8wekyb3d8bbwe:MicrosoftEdge.AppX9zvsr9qeth9e9a03yr0g7rpdrcrwgn5r.mca debido al error: -2144927149. Consulte el registro Microsoft-Windows-TWinUI/Operational para obtener más información. Error: (03/22/2016 06:41:44 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418220 Error: (03/22/2016 07:50:08 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418220 System errors: ============= Error: (03/24/2016 06:18:38 PM) (Source: DCOM) (EventID: 10016) (User: ANDREA) Description: establecido de forma predeterminada en el equipoLocalActivación{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}AndreaAndreaS-1-5-21-1489487905-805253939-2442927746-1001LocalHost (con LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742 Error: (03/24/2016 06:18:38 PM) (Source: DCOM) (EventID: 10016) (User: ANDREA) Description: establecido de forma predeterminada en el equipoLocalActivación{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}AndreaAndreaS-1-5-21-1489487905-805253939-2442927746-1001LocalHost (con LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742 Error: (03/24/2016 06:18:38 PM) (Source: DCOM) (EventID: 10016) (User: ANDREA) Description: establecido de forma predeterminada en el equipoLocalActivación{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}AndreaAndreaS-1-5-21-1489487905-805253939-2442927746-1001LocalHost (con LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742 Error: (03/24/2016 06:18:38 PM) (Source: DCOM) (EventID: 10016) (User: ANDREA) Description: establecido de forma predeterminada en el equipoLocalActivación{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}AndreaAndreaS-1-5-21-1489487905-805253939-2442927746-1001LocalHost (con LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742 Error: (03/24/2016 06:16:30 PM) (Source: DCOM) (EventID: 10016) (User: ANDREA) Description: establecido de forma predeterminada en el equipoLocalActivación{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}AndreaAndreaS-1-5-21-1489487905-805253939-2442927746-1001LocalHost (con LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742 Error: (03/24/2016 06:16:30 PM) (Source: DCOM) (EventID: 10016) (User: ANDREA) Description: establecido de forma predeterminada en el equipoLocalActivación{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}AndreaAndreaS-1-5-21-1489487905-805253939-2442927746-1001LocalHost (con LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742 Error: (03/24/2016 06:15:34 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: El servicio RtkAudioService no pudo iniciarse debido al siguiente error: %%2 Error: (03/24/2016 06:15:26 PM) (Source: BTHUSB) (EventID: 5) (User: ) Description: El controlador Bluetooth esperaba un evento HCI con un tamaño determinado pero no lo recibió. Error: (03/24/2016 06:14:51 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: El servicio Acceso a datos de usuarios_cfdce terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 10000 milisegundos: Reiniciar el servicio. Error: (03/24/2016 06:14:51 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: El servicio Almacenamiento de datos de usuarios_cfdce terminó inesperadamente. Esto se ha repetido 1 veces. Se realizará la siguiente acción correctora en 10000 milisegundos: Reiniciar el servicio. CodeIntegrity: =================================== Date: 2016-03-24 18:03:21.291 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-03-20 21:01:44.406 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll that did not meet the Store signing level requirements. Date: 2016-03-14 12:07:24.856 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-03-12 15:38:55.554 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-03-10 16:31:31.294 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-03-03 07:37:04.958 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-03-02 11:36:29.478 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-25 08:17:00.135 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-25 07:56:29.674 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-21 21:16:03.063 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\spoolsv.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Acro Software\CutePDF Writer\CPWSave.exe that did not meet the Store signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-3210M CPU @ 2.50GHz Percentage of memory in use: 52% Total physical RAM: 4047.22 MB Available physical RAM: 1917.3 MB Total Virtual: 6223.22 MB Available Virtual: 4052.82 MB ==================== Drives ================================ Drive c: (TI30982400B) (Fixed) (Total:455.24 GB) (Free:386.28 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 00000000) Partition: GPT. ==================== End of Addition.txt ============================ vielen Dank für Deine Hilfe!!!! Ich hoffe ich habe jetzt alles richtig gemacht. Viele Grüsse aus Barcelona Andrea |
Themen zu Windows 10, Problem Entfernung MPC Cleaner/Istartsurf als Startseite |
adware, antivirus, browser, computer, desktop, device driver, dnsapi.dll, entfernen, esgscanner.sys, failed, firefox, flash player, home, homepage, installation, monitor, mozilla, mpc cleaner, office 2016, office 365, officejet, problem, realtek, registry, rundll, security, services.exe, software, svchost.exe, system, udp, windows, windowsapps |