Besten Dank für die Anleitung!
Den ersten Schritt hab ich jetzt befolgt. Das kam dabei raus Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 28.04.2014
Suchlauf-Zeit: 18:09:27
Logdatei: antim.txt
Administrator: Ja
Version: 2.00.1.1004
Malware Datenbank: v2014.04.28.06
Rootkit Datenbank: v2014.03.27.01
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Chameleon: Deaktiviert
Betriebssystem: Windows 8.1
CPU: x64
Dateisystem: NTFS
Benutzer: Marcel
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 341553
Verstrichene Zeit: 39 Min, 0 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Shuriken: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 38
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{5018CFD2-804D-4C99-9F81-25EAEA2769DE}, In Quarantäne, [03fddc2455abe11f2be9f526f30fee12],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\CLASSES\Softonic.dskBnd.1, In Quarantäne, [03fddc2455abe11f2be9f526f30fee12],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\CLASSES\Softonic.dskBnd, In Quarantäne, [03fddc2455abe11f2be9f526f30fee12],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Softonic.dskBnd, In Quarantäne, [03fddc2455abe11f2be9f526f30fee12],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Softonic.dskBnd.1, In Quarantäne, [03fddc2455abe11f2be9f526f30fee12],
PUP.Optional.Softonic.A, HKU\S-1-5-21-2133216114-2612136218-1119845765-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{5018CFD2-804D-4C99-9F81-25EAEA2769DE}, In Quarantäne, [03fddc2455abe11f2be9f526f30fee12],
PUP.Optional.Softonic.A, HKU\S-1-5-21-2133216114-2612136218-1119845765-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{5018CFD2-804D-4C99-9F81-25EAEA2769DE}, In Quarantäne, [03fddc2455abe11f2be9f526f30fee12],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E87806B5-E908-45FD-AF5E-957D83E58E68}, In Quarantäne, [25db3dc334cc4db3f71e4ecd06fc08f8],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{CA0167C2-6295-41B8-9BDA-704B2F5E4CD9}, In Quarantäne, [25db3dc334cc4db3f71e4ecd06fc08f8],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\CLASSES\escort.escortIEPane.1, In Quarantäne, [25db3dc334cc4db3f71e4ecd06fc08f8],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\CLASSES\escort.escortIEPane, In Quarantäne, [25db3dc334cc4db3f71e4ecd06fc08f8],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\escort.escortIEPane, In Quarantäne, [25db3dc334cc4db3f71e4ecd06fc08f8],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\escort.escortIEPane.1, In Quarantäne, [25db3dc334cc4db3f71e4ecd06fc08f8],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\CLASSES\Softonic.SoftonicHlpr.1, In Quarantäne, [25db3dc334cc4db3f71e4ecd06fc08f8],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\CLASSES\Softonic.SoftonicHlpr, In Quarantäne, [25db3dc334cc4db3f71e4ecd06fc08f8],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Softonic.SoftonicHlpr, In Quarantäne, [25db3dc334cc4db3f71e4ecd06fc08f8],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{E87806B5-E908-45FD-AF5E-957D83E58E68}, In Quarantäne, [25db3dc334cc4db3f71e4ecd06fc08f8],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Softonic.SoftonicHlpr.1, In Quarantäne, [25db3dc334cc4db3f71e4ecd06fc08f8],
PUP.Optional.Softonic.A, HKU\S-1-5-21-2133216114-2612136218-1119845765-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{E87806B5-E908-45FD-AF5E-957D83E58E68}, In Quarantäne, [25db3dc334cc4db3f71e4ecd06fc08f8],
PUP.Optional.Softonic.A, HKU\S-1-5-21-2133216114-2612136218-1119845765-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{E87806B5-E908-45FD-AF5E-957D83E58E68}, In Quarantäne, [25db3dc334cc4db3f71e4ecd06fc08f8],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\CLASSES\srv.SoftonicSrvc, In Quarantäne, [ed1309f7d62ac9378249e5933dc50df3],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\CLASSES\srv.SoftonicSrvc.1, In Quarantäne, [16ea32ce916fd0305c6f1c5cad55c23e],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\srv.SoftonicSrvc, In Quarantäne, [5fa1ed138977c43cfbd04f290cf643bd],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\srv.SoftonicSrvc.1, In Quarantäne, [bf418f7114ecab55d7f4b6c257abc33d],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\elchiiiejkobdbblfejjkbphbddgmljf, In Quarantäne, [fc04b44c03fd7a86b41a690fb052c33d],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\SOFTONIC\Softonic, In Quarantäne, [18e8629e4bb57e82507ffe7a51b1fe02],
PUP.Optional.Softonic.A, HKU\S-1-5-21-2133216114-2612136218-1119845765-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Softonic, In Quarantäne, [699717e929d724dc9f2d1662ac5627d9],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{44B50C01-4993-48E2-ADEE-D812BAE2E9A2}, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\CLASSES\SoftonicApp.appCore.1, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\CLASSES\SoftonicApp.appCore, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SoftonicApp.appCore, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SoftonicApp.appCore.1, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{A5679AB0-C59E-49E7-83C4-5289F844A6E0}, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\CLASSES\S, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\S, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{B15F118E-AF21-45E8-A809-29FDD7362565}, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{B15F118E-AF21-45E8-A809-29FDD7362565}, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Softonic, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
Registrierungswerte: 2
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{5018CFD2-804D-4C99-9F81-25EAEA2769DE}, Softonic Toolbar, In Quarantäne, [03fddc2455abe11f2be9f526f30fee12]
PUP.Optional.Softonic.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\{5018CFD2-804D-4C99-9F81-25EAEA2769DE}, In Quarantäne, [758b867a50b0c13f7d97a5763dc5748c],
Registrierungsdaten: 0
(No malicious items detected)
Ordner: 8
PUP.Optional.OpenCandy, C:\Users\Marcel\AppData\Roaming\OpenCandy, In Quarantäne, [6d93fa06ad53e41c9cc68ada48ba8d73],
PUP.Optional.OpenCandy, C:\Users\Marcel\AppData\Roaming\OpenCandy\2FEF850910274BC6A27CF506B2177793, In Quarantäne, [6d93fa06ad53e41c9cc68ada48ba8d73],
PUP.Optional.OpenCandy, C:\Users\Marcel\AppData\Roaming\OpenCandy\F461E95E624A478B8DAB0BD9DB52F6BA, In Quarantäne, [6d93fa06ad53e41c9cc68ada48ba8d73],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Program Files (x86)\Softonic\Softonic, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, C:\Program Files (x86)\Softonic\Softonic\1.8.21.14, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\bh, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
Dateien: 24
PUP.Optional.Softonic.A, C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\SoftonicTlbr.dll, In Quarantäne, [03fddc2455abe11f2be9f526f30fee12],
PUP.Optional.Softonic.A, C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\bh\Softonic.dll, In Quarantäne, [25db3dc334cc4db3f71e4ecd06fc08f8],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Roaming\OpenCandy\F461E95E624A478B8DAB0BD9DB52F6BA\Setupsft_chr_p1v5.exe, In Quarantäne, [6898788849b71be56a828eaee0209c64],
PUP.Optional.OpenCandy, C:\Users\Marcel\Downloads\DTLite4471-0333.exe, In Quarantäne, [24dc20e0ed13dd232b3871e5976dde22],
PUP.Optional.OpenCandy, C:\Users\Marcel\AppData\Roaming\OpenCandy\2FEF850910274BC6A27CF506B2177793\Trial-14.0.1000.89_de-DE_1004732_DE-1.exe, In Quarantäne, [6d93fa06ad53e41c9cc68ada48ba8d73],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\appCntrl.js, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\bg.html, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\bg.js, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\chMntz.dll, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\CrmAdpt.dll, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\ct.js, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\CTB.dll, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\dpk.js, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\hprtkMsg.htm, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\hprtkMsg.js, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\json2.min.js, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\logo.png, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\manifest.json, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\pref.json, In Quarantäne, [50b09b65fb055da3e65383e9f9099f61],
PUP.Optional.Softonic.A, C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\softonic.crx, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\SoftonicApp.dll, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\SoftonicEng.dll, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\Softonicsrv.exe, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
PUP.Optional.Softonic.A, C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\uninstall.exe, In Quarantäne, [ec1448b8b0503ec284b6c2aad42e9e62],
Physische Sektoren: 0
(No malicious items detected)
(end) |