![]() |
Windows Virus, Run DLL Error mit fehlenden Desktopsymbolen und Taskleiste Hallo, ich bin wirklich verzweifelt und hoffe, jemand kann mir helfen! Fing alles damit an, als ich gestern ein Programm aus dem Internet geladen habe und dummerweise mein Antivirenprogramm deaktiviert habe, weil ich so naiv war. Habe gestern mit Avira und Malwarebites zahlreiche Scans durchgeführt und dachte, ich konnte den Virus löschen. Heute jedoch, als ich meinen PC hochgefahren habe, kam mir die Fehlermeldung Run DLL Problem Beim Starten von C:... Modul wurde nicht gefunden, außerdem sind alle Symbole und die Taskleiste verschwunden und nur noch das Hintergrundbild da. Das einzige Fenster ist der Explorer mit den Ordnern. Habe gelesen, dass ich den Log posten muss, hier der erste, habe alles danach in Quarantäne verschoben. Danach den Pc neugestartet und noch einen durchgeführt. Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 25.11.2014 Suchlauf-Zeit: 12:06:30 Logdatei: Administrator: Ja Version: 2.00.3.1025 Malware Datenbank: v2014.09.19.05 Rootkit Datenbank: v2014.11.22.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: Bianca Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 356914 Verstrichene Zeit: 20 Min, 42 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Warnen PUM: Aktiviert Prozesse: 0 (Keine schädliche Elemente erkannt) Module: 0 (Keine schädliche Elemente erkannt) Registrierungsschlüssel: 25 PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [afd26b84cfacfa3c98ed5736fd0508f8], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\20891, In Quarantäne, [c9b8f0ff641776c0103a0329fa09d030], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\21836, In Quarantäne, [b1d010df7b00f54141096fbdaa59c838], PUP.Optional.iWebar.A, HKLM\SOFTWARE\WOW6432NODE\iWebar, In Quarantäne, [3051559a3843c96d6f4baaac778d58a8], PUP.Optional.ObjectBrowser.A, HKLM\SOFTWARE\WOW6432NODE\Object Browser, In Quarantäne, [176a32bdd8a31b1b8d312f2744c007f9], PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE, In Quarantäne, [f091915e433882b4a184cf42d330b24e], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\20891, In Quarantäne, [572a638c4e2d1d19db6f38f405fe7d83], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\21836, In Quarantäne, [a9d8b23deb905cda5ceefb319d6655ab], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=10, In Quarantäne, [4938549bd2a9d066b776155dd232d42c], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=4, In Quarantäne, [b5cc6e81324981b5032b1f5305ff29d7], PUP.Optional.WebSearches.A, HKU\S-1-5-21-3245239941-1007233972-3716969042-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SupHpUISoft, Löschen bei Neustart, [dfa28e610477db5b5a2c35d562a1fa06], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3245239941-1007233972-3716969042-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, Löschen bei Neustart, [4140846b0378d75ff646f96a1aeaf30d], PUP.Optional.iWebar.A, HKU\S-1-5-21-3245239941-1007233972-3716969042-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\iWebar, Löschen bei Neustart, [6a17757a34471e18946aa68dc04327d9], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3245239941-1007233972-3716969042-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\20891, Löschen bei Neustart, [f38e6b84027925114a6f4cb8f90a21df], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3245239941-1007233972-3716969042-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\21836, Löschen bei Neustart, [eb96ae41e19adf57b40512f258ab54ac], PUP.Optional.iWebar.A, HKU\S-1-5-21-3245239941-1007233972-3716969042-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\iWebar, Löschen bei Neustart, [b5cc608fc4b770c6ec842c097d86b54b], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3245239941-1007233972-3716969042-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\Object Browser, Löschen bei Neustart, [83fe97584239c76fb468194b996b6799], PUP.Optional.Qone8, HKU\S-1-5-21-3245239941-1007233972-3716969042-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, Löschen bei Neustart, [5d2406e9126944f2761c0159ae5660a0], PUP.Optional.FastStart.A, HKU\S-1-5-21-3245239941-1007233972-3716969042-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\EXTENDS, Löschen bei Neustart, [7e03aa453e3dd462dcde877eb3500bf5], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [522f05eae69581b5a74d37b86f93ce32], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [522f05eae69581b5a74d37b86f93ce32], PUP.Optional.ShopperPro, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}, In Quarantäne, [4f32fdf29ae1b284c248ff0d0ef7fd03], PUP.Optional.ShopperPro, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}, In Quarantäne, [4f32fdf29ae1b284c248ff0d0ef7fd03], PUP.Optional.ShopperPro, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}, In Quarantäne, [4f32fdf29ae1b284c248ff0d0ef7fd03], PUP.Optional.ShopperPro, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}, In Quarantäne, [4f32fdf29ae1b284c248ff0d0ef7fd03], Registrierungswerte: 5 PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE|path, C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe, In Quarantäne, [f091915e433882b4a184cf42d330b24e] PUP.Optional.ShopperPro, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|SPDriver, C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1413\jsdrv.exe, In Quarantäne, [334e77785328dc5a6b5fbb51db28ef11] PUP.Optional.FastStart.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|faststartff@gmail.com, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com, In Quarantäne, [2a57f8f7601bec4ac45a333b1ee69769] PUP.Optional.ShopperPro, HKU\S-1-5-21-3245239941-1007233972-3716969042-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|SPDriver, C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.1413\jsdrv.exe, Löschen bei Neustart, [2d5428c7a0db7cbaed79c149a85bd927] PUP.Optional.FastStart.A, HKU\S-1-5-21-3245239941-1007233972-3716969042-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\EXTENDS|appid, faststartff@gmail.com, Löschen bei Neustart, [7e03aa453e3dd462dcde877eb3500bf5] Registrierungsdaten: 0 (Keine schädliche Elemente erkannt) Ordner: 37 PUP.Optional.ObjectBrowser.A, C:\Program Files (x86)\Object Browser, In Quarantäne, [b3ce01ee86f55ed8e9d24f079a6a857b], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\include, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\include\tools, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\js\lib, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\js\module, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\js\pack, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\en, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\en-US, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\es, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\es-419, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\fr, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\fr-BE, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\fr-CA, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\fr-CH, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\fr-LU, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\it, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\it-CH, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\pl, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\pt-BR, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\ru, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\ru-MO, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\tr, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\vi, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\zh-CN, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\zh-TW, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\skin, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\defaults, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\defaults\preferences, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\modules, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.361848, In Quarantäne, [522f05eae69581b5a74d37b86f93ce32], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.473806, In Quarantäne, [2f52925d8eed51e5b341c82752b014ec], PUP.Optional.ShopperPro, C:\Program Files\Common Files\ShopperPro, In Quarantäne, [225f6788de9d0b2bd74145b6ec16817f], Dateien: 138 PUP.Optional.crossRider.A, C:\Program Files (x86)\Object Browser\utils.exe, In Quarantäne, [067be30c0972a29461b7a59b916fe51b], PUP.Optional.Goobzo, C:\Users\Bianca\AppData\Local\Temp\dufgmr4c.exe, In Quarantäne, [ee931fd00d6e171faee4565437caf010], PUP.Optional.ShopperPro, C:\Windows\System32\Tasks\SPBIW_UpdateTask_Time_333132343334353538382d415b343437414545785a5a6c, In Quarantäne, [cdb4ec03b9c255e1b590030552b19070], PUP.Optional.ShopperPro, C:\Windows\System32\Tasks\ShopperPro, In Quarantäne, [50315f90f38834020ac807056d96a35d], PUP.Optional.ShopperPro, C:\Windows\System32\Tasks\ShopperProJSUpd, In Quarantäne, [84fd6d82205b9c9a21b2b05c55aef808], PUP.Optional.ShopperPro, C:\Windows\System32\Tasks\SPDriver, In Quarantäne, [f28f2cc3a2d9fb3b8b49fb11bb4847b9], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-1, In Quarantäne, [245d8a6556250135fe22f918ae555ea2], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-11, In Quarantäne, [69188867c5b679bd55cbff1239ca9b65], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-2, In Quarantäne, [d9a8cd22027942f441dfa869f50e28d8], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-4, In Quarantäne, [b4cd34bb23583ff7ea3666ab768d27d9], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-5, In Quarantäne, [fb8667880873ff37c25e55bcdd26c040], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-5_user, In Quarantäne, [532e7b74f2893ef8819f44cdc83b5ca4], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-6, In Quarantäne, [0081e50ab8c39d99e13f51c0907315eb], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-7, In Quarantäne, [a8d94ca3c0bb11254cd468a98f74d62a], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-1, In Quarantäne, [0a77b23de5967eb8e33df0210df6e818], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-11, In Quarantäne, [aed312ddc1ba72c4c06015fcef1414ec], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-2, In Quarantäne, [f9885e915625be78fd23c9480bf825db], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-3, In Quarantäne, [4f3212dda3d84bebf32d33de8c77619f], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-4, In Quarantäne, [8cf5638c7209092d2af62ee3be45a45c], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-5, In Quarantäne, [5d24608ff08bf73fa37d78997e8508f8], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-5_user, In Quarantäne, [2b5646a90d6ec373869ac24f34cfce32], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-6, In Quarantäne, [d7aa658a3b4065d19888ab6617ec9070], PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-7, In Quarantäne, [463b836c067592a470b03dd4b0533fc1], PUP.Optional.Superfish.A, C:\Users\Bianca\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage, In Quarantäne, [2c5547a80e6d2f07208a928eaa590ef2], PUP.Optional.Superfish.A, C:\Users\Bianca\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal, In Quarantäne, [255cc926a3d8181e149672aee023e020], PUP.Optional.ObjectBrowser.A, C:\Program Files (x86)\Object Browser\background.html, In Quarantäne, [b3ce01ee86f55ed8e9d24f079a6a857b], PUP.Optional.ObjectBrowser.A, C:\Program Files (x86)\Object Browser\1293297481.mxaddon, In Quarantäne, [b3ce01ee86f55ed8e9d24f079a6a857b], PUP.Optional.ObjectBrowser.A, C:\Program Files (x86)\Object Browser\32e70cc9-a38d-47ea-93ac-2f00e4b82bd4.crx, In Quarantäne, [b3ce01ee86f55ed8e9d24f079a6a857b], PUP.Optional.ObjectBrowser.A, C:\Program Files (x86)\Object Browser\bgNova.html, In Quarantäne, [b3ce01ee86f55ed8e9d24f079a6a857b], PUP.Optional.ObjectBrowser.A, C:\Program Files (x86)\Object Browser\dad1b571-414c-4a8d-979f-733e7855cbb5.crx, In Quarantäne, [b3ce01ee86f55ed8e9d24f079a6a857b], PUP.Optional.ObjectBrowser.A, C:\Program Files (x86)\Object Browser\fa62ca28-7e59-46fc-8a53-8b821cc30946.crx, In Quarantäne, [b3ce01ee86f55ed8e9d24f079a6a857b], PUP.Optional.ObjectBrowser.A, C:\Program Files (x86)\Object Browser\fa62ca28-7e59-46fc-8a53-8b821cc30946.xpi, In Quarantäne, [b3ce01ee86f55ed8e9d24f079a6a857b], PUP.Optional.ObjectBrowser.A, C:\Program Files (x86)\Object Browser\Object Browser.ico, In Quarantäne, [b3ce01ee86f55ed8e9d24f079a6a857b], PUP.Optional.CrossRider.T, C:\Windows\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-1.job, In Quarantäne, [d7aa5d926417b97dcadb2e419f6548b8], PUP.Optional.CrossRider.T, C:\Windows\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-11.job, In Quarantäne, [d7aa58972e4de650fbaacca30ff53fc1], PUP.Optional.CrossRider.T, C:\Windows\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-2.job, In Quarantäne, [166ba7483d3e4aec9c0974fbef1519e7], PUP.Optional.CrossRider.T, C:\Windows\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-4.job, In Quarantäne, [bdc433bcc2b926105b4abfb06b99cf31], PUP.Optional.CrossRider.T, C:\Windows\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-5.job, In Quarantäne, [374a0de2f78457df762f9ad552b2f60a], PUP.Optional.CrossRider.T, C:\Windows\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-5_user.job, In Quarantäne, [dea3529deb9050e6465f0867b54fc23e], PUP.Optional.CrossRider.T, C:\Windows\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-6.job, In Quarantäne, [631ed916dc9f34026441343b11f3ad53], PUP.Optional.CrossRider.T, C:\Windows\Tasks\3b3d435e-37a5-4518-8a78-9d63de706c8d-7.job, In Quarantäne, [5031dc131d5e1125bfe670ff7e86728e], PUP.Optional.CrossRider.T, C:\Windows\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-1.job, In Quarantäne, [4e330ee14c2f78bea8fdfa75f311718f], PUP.Optional.CrossRider.T, C:\Windows\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-11.job, In Quarantäne, [730eb43bf78490a651542e41eb1912ee], PUP.Optional.CrossRider.T, C:\Windows\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-2.job, In Quarantäne, [88f968873f3c79bdfbaa1e518d77619f], PUP.Optional.CrossRider.T, C:\Windows\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-3.job, In Quarantäne, [87fadf108cefab8b782d8be41aead52b], PUP.Optional.CrossRider.T, C:\Windows\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-4.job, In Quarantäne, [245d42ad80fb9b9be0c5bfb0af551ae6], PUP.Optional.CrossRider.T, C:\Windows\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-5.job, In Quarantäne, [6819826d73086fc7fea7511e7c8809f7], PUP.Optional.CrossRider.T, C:\Windows\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-5_user.job, In Quarantäne, [3e43e90680fb2610cbdae18e72922dd3], PUP.Optional.CrossRider.T, C:\Windows\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-6.job, In Quarantäne, [720f29c67efd50e63570bab50004e719], PUP.Optional.CrossRider.T, C:\Windows\Tasks\fa62ca28-7e59-46fc-8a53-8b821cc30946-7.job, In Quarantäne, [3d449f500b70a98d0a9bb3bc3bc9c937], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome.manifest, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\install.rdf, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\index.html, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\quick_start.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\quick_start.xul, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\include\speed_dial.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\include\tools\about_blank_ho ok.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\include\tools\misc.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\include\tools\popup_image_he lper.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\include\tools\urlrequestor.j s, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\js\js.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\js\lib\doT.min.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\js\lib\jquery-2.1.0.min.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\js\lib\jquery.autocomplete.j s, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\js\module\hotSearch.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\js\module\mostgrid.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\js\module\search.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\js\module\stat.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\js\pack\common.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\js\pack\ga.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\content\js\pack\xagainit.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\en\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\en-US\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\es\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\es-419\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\fr\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\fr-BE\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\fr-CA\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\fr-CH\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\fr-LU\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\it\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\it-CH\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\pl\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\pt-BR\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\ru\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\ru-MO\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\tr\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\vi\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\zh-CN\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\locale\zh-TW\locale.properties, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\skin\default_logo.png, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\skin\googlelogo.png, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\skin\google_trends.png, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\skin\icon.png, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\skin\loading.gif, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\skin\logo.png, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\skin\newtab.ico, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\skin\simple.css, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\chrome\skin\style.css, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\defaults\preferences\fvd.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\defaults\preferences\preferences.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\modules\addonmanager.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\modules\aes.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\modules\config.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\modules\dialogs.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\modules\last_tab.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\modules\misc.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\modules\properties.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\modules\remoterequest.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\modules\restoreprefs.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.FastStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\extensions\faststartff@gmail.com\modules\settings.js, In Quarantäne, [0180935c4e2d39fd685a628a3ec43bc5], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.361848\GoogleCrashHandler.exe, In Quarantäne, [522f05eae69581b5a74d37b86f93ce32], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.361848\GoogleUpdate.exe, In Quarantäne, [522f05eae69581b5a74d37b86f93ce32], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.361848\GoogleUpdateBroker.exe, In Quarantäne, [522f05eae69581b5a74d37b86f93ce32], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.361848\GoogleUpdateHelper.msi, In Quarantäne, [522f05eae69581b5a74d37b86f93ce32], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.361848\GoogleUpdateOnDemand.exe, In Quarantäne, [522f05eae69581b5a74d37b86f93ce32], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.361848\goopdate.dll, In Quarantäne, [522f05eae69581b5a74d37b86f93ce32], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.361848\goopdateres_en.dll, In Quarantäne, [522f05eae69581b5a74d37b86f93ce32], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.361848\npGoogleUpdate4.dll, In Quarantäne, [522f05eae69581b5a74d37b86f93ce32], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.361848\psmachine.dll, In Quarantäne, [522f05eae69581b5a74d37b86f93ce32], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.361848\psuser.dll, In Quarantäne, [522f05eae69581b5a74d37b86f93ce32], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.473806\GoogleCrashHandler.exe, In Quarantäne, [2f52925d8eed51e5b341c82752b014ec], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.473806\GoogleUpdate.exe, In Quarantäne, [2f52925d8eed51e5b341c82752b014ec], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.473806\GoogleUpdateBroker.exe, In Quarantäne, [2f52925d8eed51e5b341c82752b014ec], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.473806\GoogleUpdateHelper.msi, In Quarantäne, [2f52925d8eed51e5b341c82752b014ec], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.473806\GoogleUpdateOnDemand.exe, In Quarantäne, [2f52925d8eed51e5b341c82752b014ec], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.473806\goopdate.dll, In Quarantäne, [2f52925d8eed51e5b341c82752b014ec], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.473806\goopdateres_en.dll, In Quarantäne, [2f52925d8eed51e5b341c82752b014ec], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.473806\npGoogleUpdate4.dll, In Quarantäne, [2f52925d8eed51e5b341c82752b014ec], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.473806\psmachine.dll, In Quarantäne, [2f52925d8eed51e5b341c82752b014ec], PUP.Optional.GlobalUpdate.A, C:\Users\Bianca\AppData\Local\Temp\comh.473806\psuser.dll, In Quarantäne, [2f52925d8eed51e5b341c82752b014ec], PUP.Optional.ShopperPro, C:\Program Files\Common Files\ShopperPro\spbia.exe, In Quarantäne, [225f6788de9d0b2bd74145b6ec16817f], PUP.Optional.ShopperPro, C:\Program Files\Common Files\ShopperPro\spbici32.dll, In Quarantäne, [225f6788de9d0b2bd74145b6ec16817f], PUP.Optional.ShopperPro, C:\Program Files\Common Files\ShopperPro\spbici64.dll, In Quarantäne, [225f6788de9d0b2bd74145b6ec16817f], PUP.Optional.ShopperPro, C:\Program Files\Common Files\ShopperPro\spbii32.exe, In Quarantäne, [225f6788de9d0b2bd74145b6ec16817f], PUP.Optional.ShopperPro, C:\Program Files\Common Files\ShopperPro\spbii64.exe, In Quarantäne, [225f6788de9d0b2bd74145b6ec16817f], PUP.Optional.QuickStart.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\prefs.js, Gut: (), Schlecht: (user_pref("browser.newtab.url", "chrome://quick_start/content/index.html");), Ersetzt,[503144ab572467cf376dba7d17eef10f] PUP.Optional.CrossRider.A, C:\Users\Bianca\AppData\Roaming\Mozilla\Firefox\Profiles\q2qyj2e5.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.crossrider.bic", "149dec01fb5fe7415a003a6aec036b95");), Ersetzt,[3948a54a0d6ec472fcea7ebae71e3bc5] Physische Sektoren: 0 (Keine schädliche Elemente erkannt) (end) 2. Protokoll: Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 25.11.2014 Suchlauf-Zeit: 12:38:58 Logdatei: Administrator: Ja Version: 2.00.3.1025 Malware Datenbank: v2014.11.25.05 Rootkit Datenbank: v2014.11.22.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: Bianca Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 368823 Verstrichene Zeit: 22 Min, 42 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Warnen PUM: Aktiviert Prozesse: 0 (Keine schädliche Elemente erkannt) Module: 0 (Keine schädliche Elemente erkannt) Registrierungsschlüssel: 1 PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\mystartsearchSoftware, , [cc2d91ae5725e84e4e44c77663a0c53b], Registrierungswerte: 0 (Keine schädliche Elemente erkannt) Registrierungsdaten: 2 PUP.Optional.MyStartSearch.A, HKU\S-1-5-21-3245239941-1007233972-3716969042-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://www.mystartsearch.com/?type=hp&ts=1416781321&from=amt&uid=ST9500325AS_5VEMJR5LXXXX5VEMJR5L, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/?type=hp&ts=1416781321&from=amt&uid=ST9500325AS_5VEMJR5LXXXX5VEMJR5L),,[fdfc19267705a393bb1980d6a85ddd23] PUP.Optional.MyStartSearch.A, HKU\S-1-5-21-3245239941-1007233972-3716969042-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.mystartsearch.com/?type=hp&ts=1416781321&from=amt&uid=ST9500325AS_5VEMJR5LXXXX5VEMJR5L, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/?type=hp&ts=1416781321&from=amt&uid=ST9500325AS_5VEMJR5LXXXX5VEMJR5L),,[35c44bf4c7b52610db6860e964a1b749] Ordner: 0 (Keine schädliche Elemente erkannt) Dateien: 2 PUP.Optional.CrossRider.A, C:\Users\Bianca\AppData\Local\Temp\awh694F.tmp, , [b049e45b730974c2ac034992d92807f9], PUP.Optional.MyStartSearch.A, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\mystartsearch.xml, , [ea0f74cb9be14de9088818256e953ac6], Physische Sektoren: 0 (Keine schädliche Elemente erkannt) (end) Bin jeder Hilfe dankbar!!! |
hi, Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: ![]() (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
|
1. FRST Logfile: FRST Logfile: Code: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-11-2014 01 --- --- --- 2.FRST Additions Logfile: Code: Additional scan result of Farbar Recovery Scan Tool (x64) Version: 23-11-2014 01 Code: hatte das Zeichen übersehen |
MBAM updaten, scannen, Funde löschen. Downloade Dir bitte ![]()
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte. |
AdwCleaner Logfile: Code: # AdwCleaner v4.102 - Bericht erstellt am 26/11/2014 um 16:21:45 --- --- --- AdwCleaner Logfile: Code: # AdwCleaner v4.102 - Bericht erstellt am 26/11/2014 um 16:25:47 Junkware Removal Tool (JRT) by Thisisu Version: 6.3.9 (11.15.2014:2) OS: Windows 7 Home Premium x64 Ran by Bianca on 26.11.2014 at 16:32:55,84 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\ytdownloader Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ytdownloader ~~~ Registry Keys ~~~ Files ~~~ Folders Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{05F18838-E72A-404D-BD53-EC58080CBA1A} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{132D4C5E-D38B-43D0-B4CF-77F35960AC8F} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{136E3035-249A-4822-B843-9C22242CC37A} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{36A55B90-7F09-4B9B-B03B-B45F7DF45F80} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{3A2437A3-6589-4C29-ABDB-5091A8FCCEEE} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{46776DCE-20BA-4F27-B113-3308071F2F8C} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{5F92364D-751B-4D3D-9CA9-CE26276FA64D} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{6A99A880-D665-462C-8ECA-EA48E072AFCF} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{7112EEB8-15B4-4406-9694-0F60AD8056EE} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{71CF64BC-E3C2-4E17-8769-D91000428FD2} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{94088950-2F66-4BF2-B3F6-E57349E2D442} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{977E2926-E3F8-4940-8F50-FBD7E42EECBC} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{9DFB733E-A580-46DA-BDB3-F83F1AA67CCF} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{A4A0FA79-CBE2-4D29-976E-140B7BCF2180} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{A8C54941-1DEA-472F-AE21-40E6F3BDAF97} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{B4675C52-CA0F-4473-9CF1-DF9E1360C9B3} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{CCB4A16C-C23E-49A8-BCFA-B5FB5E0CC956} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{CDEC5A38-D3E4-4B2C-A92F-15EA094E7306} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{DB689E1C-150A-45D4-97AD-F31AD5A57842} Successfully deleted: [Empty Folder] C:\Users\Bianca\appdata\local\{E52E0942-F9DB-47F3-939D-156A9A961091} ~~~ FireFox Emptied folder: C:\Users\Bianca\AppData\Roaming\mozilla\firefox\profiles\q2qyj2e5.default\minidumps [195 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 26.11.2014 at 16:36:00,83 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: Code: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-11-2014 Danke! |
ESET Online Scanner
Downloade Dir bitte ![]()
und ein frisches FRST log bitte. Noch Probleme? :) |
Code: ESETSmartInstaller@High as downloader log: Windows 7 Service Pack 1 x64 (UAC is disabled!) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Avira Desktop Antivirus up to date! (On Access scanning disabled!) `````````Anti-malware/Other Utilities Check:````````` Java 7 Update 71 Adobe Flash Player 15.0.0.239 Adobe Reader 10.1.12 Adobe Reader out of Date! Mozilla Firefox (33.1) Google Chrome (39.0.2171.65) Google Chrome (39.0.2171.71) Google Chrome (chrome.exe..) Google Chrome (debug.log..) Google Chrome (Dictionaries...) ````````Process Check: objlist.exe by Laurent```````` Avira Antivir avguard.exe ESET ESET Online Scanner OnlineScannerApp.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: Code: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-11-2014 01 --- --- --- --- --- --- --- --- --- --- --- --- Leider nach Neustart des Pc immer noch keine Startleiste und Symbole vorhanden, sowie die Run DLL Fehlermeldung: Problem beim Starten von C:\PROGRA~1\COMMON~1\System\SysMenu.dll Das angegebene Modul wurde nicht gefunden. Habe gerade gemerkt, dass ich die Einstellungen vergessen habe! Also nochmal von vorne: ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7623 # api_version=3.0.2 # EOSSerial=81812324bb435242896388554994e3dc # engine=21290 # end=finished # remove_checked=true # archives_checked=false # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2014-11-27 11:31:34 # local_time=2014-11-27 01:31:34 (+0200, Osteuropäische Zeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='Avira Desktop' # compatibility_mode=1810 16777213 100 100 7143 282511184 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 29090 168717744 0 0 # scanned=277584 # found=1 # cleaned=1 # scan_time=5310 sh=AA077387555F06C6154935FC22F6AD55E2AFD22E ft=1 fh=6269a9a0784c11b6 vn="Win32/DownWare.L evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Bianca\Downloads\wondershare-drfone-1025-full-license-key.exe" ESETSmartInstaller@High as downloader log: all ok ESETSmartInstaller@High as downloader log: Can not read file from internet.ESETSmartInstaller@High as downloader log: Can not read file from internet.Can not read file from internet.ESETSmartInstaller@High as downloader log: Can not read file from internet.Can not read file from internet.ESETSmartInstaller@High as downloader log: Can not read file from internet.Can not read file from internet.ESETSmartInstaller@High as downloader log: Can not read file from internet.ESETSmartInstaller@High as downloader log: Can not read file from internet.Can not read file from internet.ESETSmartInstaller@High as downloader log: Can not read file from internet.# product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7623 # api_version=3.0.2 # EOSSerial=81812324bb435242896388554994e3dc # engine=21293 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2014-11-27 02:58:04 # local_time=2014-11-27 04:58:04 (+0200, Osteuropäische Zeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='Avira Desktop' # compatibility_mode=1810 16777213 100 100 19533 282523574 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 41480 168730134 0 0 # scanned=277864 # found=2 # cleaned=0 # scan_time=8435 sh=DDD7E789E67132CF6C5D8169B2F46E3498FCA60F ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Bianca\AppData\Roaming\OJVHXW" sh=9413821E4285C46DAF48156B472065FC2D763FE8 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Bianca\AppData\Roaming\SALOZB" Results of screen317's Security Check version 0.99.90 Windows 7 Service Pack 1 x64 (UAC is disabled!) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Avira Desktop Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Java 7 Update 71 Adobe Flash Player 15.0.0.239 Adobe Reader 10.1.12 Adobe Reader out of Date! Mozilla Firefox (33.1) Google Chrome (39.0.2171.65) Google Chrome (39.0.2171.71) Google Chrome (chrome.exe..) Google Chrome (debug.log..) Google Chrome (Dictionaries...) ````````Process Check: objlist.exe by Laurent```````` Avira Antivir avguard.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: FRST Logfile: Code: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-11-2014 01 --- --- --- |
Zitat:
|
Hallo, das weiß ich leider nicht, da der Pc nicht nur von mir genutzt wird. Hat das was mit dem Virus zu tun, bzw gibt es eine Lösung zu meinem Problem oder muss ich den ganzen Pc neu aufsetzen lassen? Danke! |
Eigentlich würde ich dich ja gerne formatieren schicken bei so Crack-Kram..... Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code: C:\Users\Bianca\AppData\Roaming\OJVHXW Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Alle Passwörter und Zugänge ändern. Frisches FRST log bitte. |
Hallo, Windows Taste geht leider nicht, kann auch nichts auf dem Desktop machen, kann ich das auch über den Explorer öffnen? LG |
windows-Taste geht nicht? Du sollst WIndows Taste und Taste R gleichzeitig drücken, das muss gehen. Ansonsten im Explorere Rechtsklick nen neues Textokument öffnen. |
Code: Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-11-2014 01 |
Seit wann geht das nicht? Frisches FRST Log bitte. |
Alle Zeitangaben in WEZ +1. Es ist jetzt 22:00 Uhr. |
Copyright ©2000-2025, Trojaner-Board