![]() |
Trojaner snap.do Hallo, ich habe mir den Trojaner snap.do eingefangen. Ich habe ihn zuerst aus der Systemsteuerung bei Software deinstalliert. Dort ist er seitdem auch nicht mehr zu finden. Jedes Mal wenn ich den Browser öffne, wird mir ein Fenster angezeigt: Seite wiederherstellen. Gehe darauf kommt snap.do. Klicke ich auf "nein" und lösche die Seite in den Chrome Einstellungen, ist sie trotzdem wieder da sobald ich einen neuen Tab öffne. Ich habe im Forum bereits Beiträge dazu gelesen und die dort genannte Software runtergeladen. Trotzdem ist der Trojaner noch da. Ich nutze Windows 8 und den Chrome Browser. Den Browser hab ich auch schon deinstalliert und neu runter geladen. Der Trojaner war sofort wieder da. Kann mir vielleicht jemand helfen den Trojaner von meinem Rechner zu bekommen? Ich danke Euch im vorraus. Ani |
hi, Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: ![]() (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
|
Erstmal vielen Dank für Deine Antwort. FRST.txt lautet: FRST Logfile: FRST Logfile: Code: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014 --- --- --- Addition.txt lautet:FRST Additions Logfile: Code: Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-03-2014 |
Revo Uninstaller - Download - Filepony Damit alles deinstallieren was Du in der Additional.txt findest mit dem Zusatz <== ATTENTION Mit Revo auch Moderat die Reste entfernen lassen. Downloade Dir bitte ![]()
Downloade Dir bitte ![]()
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte. |
Malwarebytes Anti-Malware Malwarebytes | Free Anti-Malware & Internet Security Software Suchlauf Datum: 30.03.2014 Suchlauf-Zeit: 20:41:22 Logdatei: mbam.txt Administrator: Ja Version: 2.00.0.1000 Malware Datenbank: v2014.03.28.05 Rootkit Datenbank: v2014.03.27.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Chameleon: Deaktiviert Betriebssystem: Windows 8 CPU: x64 Dateisystem: NTFS Benutzer: Ani Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 237057 Verstrichene Zeit: 52 Std, 34 Min, 21 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Aktiviert Shuriken: Aktiviert PUP: Warnen PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 6 PUP.Optional.SavingsWizard.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{39B931CF-F1E2-4D04-8129-9EE8159A91C5}, In Quarantäne, [8c74f40c6c94e11f26a66c9b0df535cb], PUP.Optional.SavingsWizard.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{CEADAE6E-E08C-4950-BEBF-149EFD998248}, In Quarantäne, [c937f30d9a6612eeece09275dc26a35d], PUP.Optional.SavingsWizard.A, HKLM\SOFTWARE\CLASSES\TypeLib\{39B931CF-F1E2-4D04-8129-9EE8159A91C5}, In Quarantäne, [f90710f04db33bc57f4d13f422e0da26], PUP.Optional.MediaPlayerEnhance.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\MediaPlayerEnhance, In Quarantäne, [1be5c13f77890ef2e64fa5bbc042a060], PUP.Optional.CrossRider.M, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{11111111-1111-1111-1111-110411411150}, In Quarantäne, [35cb53ad26da3ec2417bde2e18ec6b95], PUP.Optional.CrossRider.M, HKLM\SOFTWARE\CLASSES\CLSID\{11111111-1111-1111-1111-110411411150}, In Quarantäne, [35cb53ad26da3ec2417bde2e18ec6b95], Registrierungswerte: 0 (No malicious items detected) Registrierungsdaten: 1 PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[49b7ea16748c00001fcfb356fa0aaa56] Ordner: 21 PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\defaults, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\defaults\preferences, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\userCode, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\locale, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\locale\en-US, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\AppFramework, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\CanvasFramework, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework-ui, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\icons, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.Conduit.A, C:\Users\Ani\AppData\Local\Temp\mam-ct3316263, In Quarantäne, [7d832bd5e02058a82b1e7cd955ad2fd1], PUP.Optional.Conduit.A, C:\Users\Ani\AppData\Local\Temp\mam-ct3319214, In Quarantäne, [c13fa759c23e758b7acf8cc9ed1523dd], Dateien: 154 PUP.Optional.BuenoSearch.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\searchplugins\buenosearch.xml, In Quarantäne, [09f743bd3ec2c63a6e84075201011de3], PUP.Optional.Lightning.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\jid0-O6MIff3eO5dIGf5Tcv8RsJDKxrs@jetpack.xpi, In Quarantäne, [3ac68a7605fbc23e5a061e3ce121c23e], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome.manifest, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\install.rdf, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\background.html, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\baseObject.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\browser.xul, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\dialog.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\ffCoreFilesIndex.txt, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\main.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\options.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\options.xul, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\platformVersion.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\search_dialog.xul, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\asyncDB.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\background.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\browserAction.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\contextMenu.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\dbManager.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\dom_bg.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\fileManager.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\firefox.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\firefoxNotifications.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\firefoxOmnibox.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\message.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\pageAction.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\request.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\tabs.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\webRequest.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\api\windowsMessagingHandler.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\addressBarChangeObserver.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\console.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\consts.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\delegate.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\extensionDataStore.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\folderIOWrapper.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\httpObserver.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\IDBWrapper.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\installer.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\logFile.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\prefs.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\progressListenerObserver.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\registry.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\reloadObserver.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\reports.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\requestObject.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\searchSettings.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\uninstallObserver.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\updateManager.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\utils.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\chrome\content\core\xhr.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\defaults\preferences\prefs.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\manifest.xml, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins.json, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\102_dealply_m.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\103_intext_5_m.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\104_jollywallet_m.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\13_CrossriderAppUtils.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\14_CrossriderUtils.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\155_ibario_pops_m.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\16_FFAppAPIWrapper.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\177_crossriderDashboard.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\17_jQuery.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\182_openUrl.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\183_tabsWrapper.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\184_noproblemppc_m.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\190_pops_5_m.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\191_ciuvo_m.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\1_base.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\207_dbWrapper.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\21_debug.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\22_resources.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\230_revizer_ws_dynamic_b2b_2_m.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\233_revizer_p_dynamic_b2b_2_m.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\28_initializer.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\47_resources_background.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\4_jquery_1_7_1.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\64_appApiMessage.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\72_appApiValidation.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\78_CrossriderInfo.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\91_monetizationLoader.js.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\93_superfish_no_coupons_m.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\plugins\98_omniCommands.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\userCode\background.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\extensionData\userCode\extension.js, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\locale\en-US\translations.dtd, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin\button1.png, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin\button2.png, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin\button3.png, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin\button4.png, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin\button5.png, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin\crossrider_statusbar.png, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin\icon128.png, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin\icon16.png, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin\icon24.png, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin\icon48.png, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin\panelarrow-up.png, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin\popup.html, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin\skin.css, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.CrossRider.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\0c822a17-a68f-4066-9257-d229458d21ca@9c178d17-dc61-4aaf-b2da-1425ac7300ac.com\skin\update.css, In Quarantäne, [e51b38c849b7ab551d5e3222f80a22de], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\background.html, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\bootstrap.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\chrome.manifest, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\extension_info.json, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\install.rdf, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\AppFramework\appAPI_bg.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\AppFramework\appAPI_browseraction.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\AppFramework\appAPI_common.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\AppFramework\appAPI_content.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\AppFramework\appAPI_settings.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\AppFramework\appAPI_webrequest.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\AppFramework\jquery.min.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\CanvasFramework\canvasscript_engine.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\CanvasFramework\canvas_bg.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\CanvasFramework\md5.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\CanvasFramework\registry.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\CanvasFramework\webrequest.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\backgroundscript_engine.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\base.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\browser.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\chrome_windows.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\console.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\content_proxy.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\framework.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\i18n.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\invoke_async.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\io.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\lang.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\legacy.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\message_target.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\messaging.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\storage.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\timer.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\uninstall.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\userscript_client.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\userscript_engine.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\utils.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework\xhr.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework-ui\browser_button.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework-ui\contentNotification.tmpl, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework-ui\contentNotificationStyle.tmpl, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework-ui\content_notifications.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework-ui\context_menu.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework-ui\framework_api.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework-ui\notifications.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework-ui\options.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\framework-ui\ui_base.js, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\icons\button.png, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\icons\icon100.png, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\icons\icon128.png, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\icons\icon32.png, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.SavingsWizard.A, C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default\extensions\{090AF4A1-CDA6-D91F-096A-378C214EE20C}\icons\icon48.png, In Quarantäne, [9d6301ff1ee2916ffccbbb9953af38c8], PUP.Optional.Conduit.A, C:\Users\Ani\AppData\Local\Temp\mam-ct3319214\mam_ch.exe, In Quarantäne, [c13fa759c23e758b7acf8cc9ed1523dd], Physische Sektoren: 0 (No malicious items detected) (end) AdwCleaner Logfile: Code: # AdwCleaner v3.023 - Bericht erstellt am 01/04/2014 um 15:15:31 Code: ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: FRST Logfile: Code: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014 --- --- --- |
FRST Logfile: Code: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014 |
ESET Online Scanner
Downloade Dir bitte ![]()
und ein frisches FRST log bitte. Noch Probleme? :) |
ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=4f872a8ee7fe9a409bbf02d9b45d785c # engine=17403 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2014-03-12 12:51:08 # local_time=2014-03-12 01:51:08 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.2.9200 NT # compatibility_mode=772 16777213 66 82 1073569 3672165 0 0 # compatibility_mode=5893 16776574 100 94 3748568 21868943 0 0 # scanned=190164 # found=3 # cleaned=0 # scan_time=18426 sh=8600D26F71A288EF76E46D78B22BF9AA6842C29A ft=1 fh=c7d6aa476776e143 vn="Win32/AdWare.AddLyrics.AD application" ac=I fn="C:\Users\Ani\AppData\Local\Temp\awhCAAC.tmp" sh=DB5E4E4F64BAA359255F230C658BE286E266892A ft=1 fh=cc4c339215781df4 vn="multiple threats" ac=I fn="C:\Users\Ani\AppData\Local\Temp\{14379735-A566-4F8C-9072-F0D3BEBF0E2C}\setup.exe" sh=DB5E4E4F64BAA359255F230C658BE286E266892A ft=1 fh=cc4c339215781df4 vn="multiple threats" ac=I fn="C:\Users\Ani\AppData\Local\Temp\{B03D9786-A5EC-42D2-AC8E-407C9204A3FD}\setup.exe" ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=4f872a8ee7fe9a409bbf02d9b45d785c # engine=17727 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2014-04-02 06:27:13 # local_time=2014-04-02 08:27:13 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.2.9200 NT # compatibility_mode=772 16777213 66 82 2951334 5549930 0 0 # compatibility_mode=5893 16776574 100 94 600966 13809162 0 0 # scanned=193128 # found=5 # cleaned=0 # scan_time=11200 sh=8600D26F71A288EF76E46D78B22BF9AA6842C29A ft=1 fh=c7d6aa476776e143 vn="Win32/AdWare.AddLyrics.AD application" ac=I fn="C:\Users\Ani\AppData\Local\Temp\awhCAAC.tmp" sh=57BA28B40515E484FF894807A226FBA8D741C194 ft=1 fh=b34e093f204ff3b2 vn="a variant of Win32/SpeedingUpMyPC.H application" ac=I fn="C:\Users\Ani\AppData\Local\Temp\316dd943-bb0f-4ccf-8df2-599e2406fbd1\software\OptimizerPro.exe" sh=57BA28B40515E484FF894807A226FBA8D741C194 ft=1 fh=b34e093f204ff3b2 vn="a variant of Win32/SpeedingUpMyPC.H application" ac=I fn="C:\Users\Ani\AppData\Local\Temp\50a0a9dd-b808-4e1a-9e09-ea9a167c79bb\software\OptimizerPro.exe" sh=DB5E4E4F64BAA359255F230C658BE286E266892A ft=1 fh=cc4c339215781df4 vn="multiple threats" ac=I fn="C:\Users\Ani\AppData\Local\Temp\{14379735-A566-4F8C-9072-F0D3BEBF0E2C}\setup.exe" sh=DB5E4E4F64BAA359255F230C658BE286E266892A ft=1 fh=cc4c339215781df4 vn="multiple threats" ac=I fn="C:\Users\Ani\AppData\Local\Temp\{B03D9786-A5EC-42D2-AC8E-407C9204A3FD}\setup.exe" Results of screen317's Security Check version 0.99.80 x64 (UAC is enabled) Internet Explorer 10 Out of date! ``````````````Antivirus/Firewall Check:`````````````` Windows Defender avast! Internet Security Antivirus out of date! `````````Anti-malware/Other Utilities Check:````````` Java 7 Update 51 Adobe Reader XI Google Chrome 33.0.1750.146 Google Chrome 33.0.1750.154 ````````Process Check: objlist.exe by Laurent```````` AVAST Software Avast AvastSvc.exe AVAST Software Avast afwServ.exe AVAST Software Avast AvastUI.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014 Ran by Ani (administrator) on LENOVO-PC on 03-04-2014 15:53:42 Running from C:\Users\Ani\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: Downloading Farbar Recovery Scan Tool Download link for 64-Bit Version: Downloading Farbar Recovery Scan Tool Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials ==================== Processes (Whitelisted) ================= (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe (Microsoft Corporation) C:\WINDOWS\system32\dashost.exe (Systweak Inc., (Systweak - Download Software utilities for Windows optimization, Scan & Clean Spyware for Free)) C:\Users\Ani\Desktop\Disk Speedup\DSUDefragSrv64.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe () C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe (Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe () C:\Windows\SysWOW64\UMonit64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (Realtek semiconductor) C:\Windows\RTFTrack.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe (Spotify Ltd) C:\Users\Ani\AppData\Roaming\Spotify\spotify.exe (Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe (Spotify Ltd) C:\Users\Ani\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe () C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe (CyberLink Corp.) C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe () C:\Users\Ani\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Ani\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Ani\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Ani\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (FreeDownloadManager.ORG) C:\Program Files (x86)\Free Download Manager\fdm.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [UMonit64] - C:\WINDOWS\SysWOW64\UMonit64.exe [40960 2013-02-28] () HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13626072 2013-06-26] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1311304 2013-06-05] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2986224 2013-07-17] (Synaptics Incorporated) HKLM\...\Run: [RtsFT] - C:\WINDOWS\RTFTrack.exe [6340312 2013-08-03] (Realtek semiconductor) HKLM\...\Run: [Energy Manager] - C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [15792112 2013-11-05] (Lenovo(beijing) Limited) HKLM\...\Run: [Lenovo Utility] - C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [101360 2013-11-05] (Lenovo(beijing) Limited) HKLM-x32\...\Run: [YouCam Tray] - C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [168464 2012-10-30] (CyberLink Corp.) HKLM-x32\...\Run: [Intel AppUp(SM) center] - C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3767096 2014-01-28] (AVAST Software) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer\Run: [BtvStack] - C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [133248 2013-05-31] ( (Atheros Communications)) HKU\S-1-5-21-3821535056-3605009046-4233020135-1001\...\Run: [Spotify] - C:\Users\Ani\AppData\Roaming\Spotify\Spotify.exe [6118400 2014-01-30] (Spotify Ltd) HKU\S-1-5-21-3821535056-3605009046-4233020135-1001\...\Run: [Sony PC Companion] - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [449760 2013-10-31] (Sony) HKU\S-1-5-21-3821535056-3605009046-4233020135-1001\...\Run: [Spotify Web Helper] - C:\Users\Ani\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2014-01-30] (Spotify Ltd) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Lenovo Deutschland: Computer, Notebooks, Tablets & Mehr | Lenovo (DE) StartMenuInternet: IEXPLORE.EXE - iexplore.exe SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {EF90F642-B8E6-4E6C-A71A-C406192758C7} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=LCJB SearchScopes: HKCU - DefaultScope {EF90F642-B8E6-4E6C-A71A-C406192758C7} URL = SearchScopes: HKCU - {EF90F642-B8E6-4E6C-A71A-C406192758C7} URL = BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Free Download Manager - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll (FreeDownloadManager.ORG) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Ani\AppData\Roaming\Mozilla\Firefox\Profiles\b3wf8nsc.default |
Downloade Dir bitte TFC ( von Oldtimer ) und speichere die Datei auf dem Desktop. Schließe nun alle offenen Programme und trenne Dich von dem Internet. Doppelklick auf die TFC.exe und drücke auf Start. Sollte TFC nicht alle Dateien löschen können wird es einen Neustart verlangen. Dies bitte zulassen. Fertig :) Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun :) Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann. |
Alle Zeitangaben in WEZ +1. Es ist jetzt 16:06 Uhr. |
Copyright ©2000-2025, Trojaner-Board