und noch das Malwarrebyte Protokoll Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 27.06.2016
Suchlaufzeit: 15:38
Protokolldatei: malware_20160627.txt
Administrator: Ja
Version: 2.2.1.1043
Malware-Datenbank: v2016.06.27.03
Rootkit-Datenbank: v2016.05.27.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Vali
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 409982
Abgelaufene Zeit: 37 Min., 14 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Warnen
PUM: Aktiviert
Prozesse: 0
(keine bösartigen Elemente erkannt)
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 30
PUP.Optional.OutBrowse, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{6D4506CE-F855-4657-AA38-DB6B1F733982}, , [905f12ef376346f06c4addafcc3623dd],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\CLASSES\TYPELIB\{03771AEF-400D-4A13-B712-25878EC4A3F5}, , [905f12ef376346f06c4addafcc3623dd],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\CLASSES\INTERFACE\{3408AC0D-510E-4808-8F7B-6B70B1F88534}, , [905f12ef376346f06c4addafcc3623dd],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{3408AC0D-510E-4808-8F7B-6B70B1F88534}, , [905f12ef376346f06c4addafcc3623dd],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{3408AC0D-510E-4808-8F7B-6B70B1F88534}, , [905f12ef376346f06c4addafcc3623dd],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{03771AEF-400D-4A13-B712-25878EC4A3F5}, , [905f12ef376346f06c4addafcc3623dd],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{03771AEF-400D-4A13-B712-25878EC4A3F5}, , [905f12ef376346f06c4addafcc3623dd],
PUP.Optional.OutBrowse, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{6D4506CE-F855-4657-AA38-DB6B1F733982}, , [905f12ef376346f06c4addafcc3623dd],
PUP.Optional.BabylonToolBar, HKLM\SOFTWARE\CLASSES\INTERFACE\{FD8F79A0-D2E2-4FA2-AEAF-393EAC8064F7}, , [0fe007faf3a7b38318eee2ab27db1fe1],
PUP.Optional.BabylonToolBar, HKLM\SOFTWARE\CLASSES\TypeLib\{6E8BF012-2C85-4834-B10A-1B31AF173D70}, , [78770df4eab05cda2ed84c4121e124dc],
PUP.Optional.BabylonToolBar, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{FD8F79A0-D2E2-4FA2-AEAF-393EAC8064F7}, , [78770df4eab05cda2ed84c4121e124dc],
PUP.Optional.BabylonToolBar, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{FD8F79A0-D2E2-4FA2-AEAF-393EAC8064F7}, , [78770df4eab05cda2ed84c4121e124dc],
PUP.Optional.BabylonToolBar, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TypeLib\{6E8BF012-2C85-4834-B10A-1B31AF173D70}, , [529d60a1aeecf2446e98226b33cf0af6],
PUP.Optional.BabylonToolBar, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TypeLib\{6E8BF012-2C85-4834-B10A-1B31AF173D70}, , [ed020ef3a3f7da5c3ccadbb2699953ad],
PUP.Optional.BundleInstaller.VG, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Video Downloader, , [ab444ab79208a78fd3d0133c0ff26f91],
PUP.Optional.DealPly, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{2ED87FE6-84A8-448F-B32F-E7BFD218BD43}, , [c32c53ae61395bdbb38c45ae62a15ba5],
PUP.Optional.DealPly, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\DealPly, , [549b33ce2c6ed660e047ff9f2bd8e11f],
PUP.Optional.Movie2kDownloader, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\blaofbhgbmeikidhlkmjhbkbfohpgekf, , [db1424dd3a60c96d3cbda1094db6e31d],
PUP.Optional.SweetIM, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{6DC0B2DD-0FDB-82BC-95BE-6D953C4BB2C2}, , [4ea119e8504aa69099819026fa09b34d],
PUP.Optional.AdvancedSystemProtector, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\AdvancedSystemProtector_RASAPI32, , [cc230cf5e6b4e74fa33f9c23a2614eb2],
PUP.Optional.AdvancedSystemProtector, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\AdvancedSystemProtector_RASMANCS, , [737c0df4b6e479bd944efac5b2519d63],
PUP.Optional.RegCleanPro, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\RegCleanPro_RASAPI32, , [05ea09f88d0d90a6c7f0d30a2cd7c040],
PUP.Optional.RegCleanPro, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\TRACING\RegCleanPro_RASMANCS, , [f4fb2bd6900a38fe3a7dffde1be8d22e],
PUP.Optional.DataMngr.AppFlsh, HKU\S-1-5-18\SOFTWARE\DataMngr, , [e50a41c00e8c95a12f6aebf1956e1ae6],
PUP.Optional.DataMngr.AppFlsh, HKU\S-1-5-18\SOFTWARE\DataMngr_Toolbar, , [2ec1b64bd5c5f93df0aa716bc93a857b],
PUP.Optional.DealPly, HKU\S-1-5-21-3354740022-1682059011-2982652592-1001\SOFTWARE\DealPly, , [dd12ce33d5c54beb28f56e30d52e27d9],
PUP.Optional.FilesFrog, HKU\S-1-5-21-3354740022-1682059011-2982652592-1001\SOFTWARE\BI, , [4ca3c83927733bfbed0ec5db56adf30d],
PUP.Optional.SweetIM, HKU\S-1-5-21-3354740022-1682059011-2982652592-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{6DC0B2DD-0FDB-82BC-95BE-6D953C4BB2C2}, , [eb04b34eb3e7ed496cabd4e25aa98878],
PUP.Optional.SearchProtect.AppFlsh, HKU\S-1-5-21-3354740022-1682059011-2982652592-1001\SOFTWARE\SEARCHPROTECTINT2, , [8966c53c0397e5513b796e6eef14a858],
PUP.Optional.DealPly, HKU\S-1-5-21-3354740022-1682059011-2982652592-1001\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\gaiilaahiahdejapggenmdmafpmbipje, , [915e699831693204b26db1ed0df69967],
Registrierungswerte: 17
PUP.Optional.FilesFrog, HKLM\SOFTWARE\CLASSES\SDP\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe" /protocol , [40afdf22f9a12c0abb5d7d7211f218e8], %5
PUP.Optional.FilesFrog, HKLM\SOFTWARE\CLASSES\WOW6432NODE\SDP\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe" /protocol , [c728e51c0c8e171f3ddbbc335fa432ce], %5
PUP.Optional.DealPly, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{2ED87FE6-84A8-448F-B32F-E7BFD218BD43}|Path, \DealPly, , [c32c53ae61395bdbb38c45ae62a15ba5]
PUP.Optional.WebAssistant, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|{336D0C35-8A85-403a-B9D2-65C292C39087}, C:\Program Files\Web Assistant\Firefox, , [13dc4fb206946bcb9a673288bd46e31d]
PUP.Optional.FilesFrog, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SDP\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe" /protocol , [bb348d7481190333dd3b01ee32d159a7], %5
PUP.Optional.SweetIM, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{6DC0B2DD-0FDB-82BC-95BE-6D953C4BB2C2}|URL, hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010000.10016&barid={669FDFF8-E3A0-11E1-987F-F04DA29A61ED}, , [4ea119e8504aa69099819026fa09b34d]
PUP.Optional.Perion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{18A8BFD7-FADA-4E9F-9B36-6F983367A684}, v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Windows\System32\dmwu.exe|Name=dmwu|, , [d31cb948f6a4e35333d96e7e798a2dd3]
PUP.Optional.Perion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{A917DC36-E8DD-4566-B39A-6D0F203B4F1F}, v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Windows\System32\dmwu.exe|Name=dmwu|, , [5e91f50c8911251185875d8fd0336a96]
PUP.Optional.Perion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{BE5310DE-60DE-4FE1-8090-8D8F5EAFD55F}, v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Windows\System32\ARFC\wrtc.exe|Name=wrtc|, , [e50a4fb28713d4628c7f717b10f360a0]
PUP.Optional.Perion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{634B6336-6B75-4CF0-87D5-D27DC78EBEBA}, v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Windows\System32\ARFC\wrtc.exe|Name=wrtc|, , [876837cac3d7c175838802ea1ee52fd1]
PUP.Optional.Perion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{277327E9-C882-4F95-B955-0339217114F0}, v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Windows\System32\dmwu.exe|Name=dmwu|, , [14db728f495191a50309b735bd46be42]
PUP.Optional.Perion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{A60CC92F-5EF0-4BFD-86EB-861550986018}, v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Windows\System32\dmwu.exe|Name=dmwu|, , [a649c041d3c7122403094ba1ed16817f]
PUP.Optional.Perion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{BC1C5B64-F88F-4486-83C5-5B5C240FF6EB}, v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Windows\System32\ARFC\wrtc.exe|Name=wrtc|, , [d718cf321288ab8b10fb925a9b68a060]
PUP.Optional.Perion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{A50F0FF8-5CD4-4C50-B768-82128A1AE780}, v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Windows\System32\ARFC\wrtc.exe|Name=wrtc|, , [698632cf7e1cf5415ab1f3f9c340f50b]
PUP.Optional.FilesFrog, HKU\S-1-5-21-3354740022-1682059011-2982652592-1001\SOFTWARE\BI|ui_path_filesfrog, HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FilesFrog Update Checker, , [4ca3c83927733bfbed0ec5db56adf30d]
PUP.Optional.SweetIM, HKU\S-1-5-21-3354740022-1682059011-2982652592-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{6DC0B2DD-0FDB-82BC-95BE-6D953C4BB2C2}|URL, hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010000.10016&barid={669FDFF8-E3A0-11E1-987F-F04DA29A61ED}, , [eb04b34eb3e7ed496cabd4e25aa98878]
PUP.Optional.SearchProtect.AppFlsh, HKU\S-1-5-21-3354740022-1682059011-2982652592-1001\SOFTWARE\SEARCHPROTECTINT2|Install, 1, , [8966c53c0397e5513b796e6eef14a858]
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 10
PUP.Optional.Perion, C:\Windows\System32\ARFC, , [29c610f10f8b62d437f4b516a06225db],
PUP.Optional.GoPhoto, C:\Program Files (x86)\Gophoto.it, , [3db2cf32e2b885b152f20aa93ec449b7],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\css, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\html, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\images, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\js, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.Movie2kDownloader, C:\Users\Vali\AppData\Roaming\Mozilla\Firefox\Profiles\g2jbo56y.default\jetpack\movie2kdownloader@movie2kdownloader.com, , [2ec152af84163df9552334833dc57d83],
PUP.Optional.Movie2kDownloader, C:\Users\Vali\AppData\Roaming\Mozilla\Firefox\Profiles\g2jbo56y.default\jetpack\movie2kdownloader@movie2kdownloader.com\simple-storage, , [2ec152af84163df9552334833dc57d83],
Dateien: 41
PUP.Optional.BundleInstaller.VG, C:\Program Files (x86)\vGrabber-software\Uninstall.exe, , [ab444ab79208a78fd3d0133c0ff26f91],
PUP.Optional.RegCleanPro, C:\Windows\System32\roboot64.exe, , [5e91e21f1783181e094ae2acf4106a96],
PUP.Optional.AdvancedSystemProtector, C:\Windows\System32\sasnative64.exe, , [1fd0da275f3bc76f66e317b432ce45bb],
PUP.Optional.Babylon, C:\Users\Vali\AppData\Local\Temp\1_Offer_3.exe, , [d6190ef3f9a1142290e0deef5ca44fb1],
PUP.Optional.Conduit, C:\Users\Vali\AppData\Local\Temp\SearchProtectINT.exe, , [955a6a97d2c8f83e82abee3c49b8ac54],
PUP.Optional.BuzzIT, C:\Users\Vali\AppData\Local\Temp\PreExe_ID_13667.exe, , [f6f96b961585d46283549f8110f0fa06],
PUP.Optional.Ilivid, C:\Users\Vali\Downloads\iLividSetup.exe, , [ca2540c1d1c922148a043c9eec149e62],
PUP.Optional.Ilivid, C:\Users\Vali\Downloads\iLividSetupV1.exe, , [3eb16e9318821224bbd319c10af6da26],
PUP.Optional.InstallCore, C:\Users\Vali\Downloads\FlvPlayerSetup.exe, , [2ac55ba609918bab71ddaa7c966ea759],
PUP.Optional.SweetIM, C:\Windows\Installer\94dc7680.msi, , [cf20b44d5a40c86eb270e4a42dd733cd],
PUP.Optional.SweetIM, C:\Windows\Installer\94dc7686.msi, , [ec0315ec5c3e59dd60c2acdcf70d07f9],
PUP.Optional.SweetIM, C:\Windows\Installer\94dc768c.msi, , [3bb4d22fcbcf54e20f135f2930d40ef2],
PUP.Optional.Perion, C:\Windows\System32\ARFC\wrtc.exe, , [29c610f10f8b62d437f4b516a06225db],
PUP.Optional.DealPly, C:\Windows\System32\Tasks\DealPly, , [f6f925dccccef5415fb9e5b9d52e2fd1],
PUP.Optional.Iminent, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igdhbblpcellaljokkpfhcjlagemhgjl_0.localstorage, , [19d622df2575f5416a9fe7be7c8732ce],
PUP.Optional.Iminent, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igdhbblpcellaljokkpfhcjlagemhgjl_0.localstorage-journal, , [af40df222d6d14228e7b4164847ff808],
PUP.Optional.PricePeep, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage, , [de11be43e5b5e6505bc92e8130d3f808],
PUP.Optional.PricePeep, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage-journal, , [559a6998f2a8d75fd0541b949a6918e8],
PUP.Optional.ReMarkable, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.re-markable00.re-markable.net_0.localstorage, , [da1545bc3d5d6ec8392c7040d52ee31d],
PUP.Optional.ReMarkable, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.re-markable00.re-markable.net_0.localstorage-journal, , [27c85ba68812d363ec7902ae1de651af],
PUP.Optional.SelectNGo, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.selectgo00.selectgo.net_0.localstorage, , [fdf20af7edadfb3bb20b3c76ce35d42c],
PUP.Optional.SelectNGo, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.selectgo00.selectgo.net_0.localstorage-journal, , [925d3cc5f1a96accdde006acba4905fb],
PUP.Optional.ReMarkIt.PrxySvrRST, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.re-markit00.re-markit.co_0.localstorage, , [8e6106fb2179f640a26bcf1eae55d12f],
PUP.Optional.ReMarkIt.PrxySvrRST, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.re-markit00.re-markit.co_0.localstorage-journal, , [1cd345bcb6e4f442020b5a9353b0f30d],
PUP.Optional.GoPhoto, C:\Program Files (x86)\Gophoto.it\gophotoit14.crx, , [3db2cf32e2b885b152f20aa93ec449b7],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\manifest.json, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\css\zoom.css, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\html\background.html, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\images\back.png, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\images\icon.128.png, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\images\icon.16.png, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\images\icon.48.png, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\images\icon.png, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\images\loader.gif, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\images\logo.png, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\js\background.js, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\js\context.js, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\js\ex.js, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\js\jquery.js, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.GoPhotoIt, C:\Users\Vali\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_1\js\zoom.js, , [8f60c140f9a1c5712028a40f8181f010],
PUP.Optional.Movie2kDownloader, C:\Users\Vali\AppData\Roaming\Mozilla\Firefox\Profiles\g2jbo56y.default\jetpack\movie2kdownloader@movie2kdownloader.com\simple-storage\store.json, , [2ec152af84163df9552334833dc57d83],
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) Gerade eben noch festgestellt, beim Hochfahren gibt es eine Fehlermeldung:
Der Prozedureinsprungpunkt "ucrtbase.terminate" wurde in der DLL
"api-ms-win-crt-runtime-I1-1-0.dll" nicht gefunden.
DellDock.exe |