Legolas-3 | 11.06.2014 17:57 | Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 11.06.2014
Suchlauf-Zeit: 18:34:25
Logdatei: mbam.txt
Administrator: Ja
Version: 2.00.2.1012
Malware Datenbank: v2014.06.11.06
Rootkit Datenbank: v2014.06.02.01
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Self-protection: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Börnie
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 312376
Verstrichene Zeit: 7 Min, 41 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristics: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 1
Trojan.Crypt.NKN, C:\ProgramData\168BKMkptz.exe, 2376, Löschen bei Neustart, [131f0077c2b9dc5aabe37decdf227f81]
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 1
PUP.Optional.MindSpark.A, HKU\S-1-5-21-3791516533-3566762779-539856214-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\UtilityChest_49, In Quarantäne, [ba782156eb900e28a7d2752c5ba7cd33],
Registrierungswerte: 2
Trojan.Crypt.NKN, HKU\S-1-5-21-3791516533-3566762779-539856214-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|168BKMkptz, C:\ProgramData\168BKMkptz.exe, In Quarantäne, [131f0077c2b9dc5aabe37decdf227f81]
PUP.Optional.MindSpark, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Utility Chest Home Page Guard 64 bit, "C:\PROGRA~2\UTILIT~2\bar\1.bin\AppIntegrator64.exe", In Quarantäne, [36fc13641f5cb185b1ee6b75b35032ce]
Registrierungsdaten: 0
(No malicious items detected)
Ordner: 0
(No malicious items detected)
Dateien: 55
Trojan.Crypt.NKN, C:\ProgramData\168BKMkptz.exe, Löschen bei Neustart, [131f0077c2b9dc5aabe37decdf227f81],
PUP.Optional.SearchProtect.A, C:\Users\Börnie\AppData\Local\Temp\nsi268B.exe, In Quarantäne, [0929c9ae156657dfef29d25a4ab758a8],
PUP.Optional.SearchProtect.A, C:\Users\Börnie\AppData\Local\Temp\nsn23EB.exe, In Quarantäne, [fe340a6d116ac175b167e349b84902fe],
PUP.Optional.SearchProtect.A, C:\Users\Börnie\AppData\Local\Temp\nsn3D87.exe, In Quarantäne, [40f2b4c35427ec4ad34544e8a35ebf41],
PUP.Optional.SearchProtect.A, C:\Users\Börnie\AppData\Local\Temp\nsn4094.exe, In Quarantäne, [c27075022d4ed56101176dbfe51cc040],
PUP.Optional.SearchProtect.A, C:\Users\Börnie\AppData\Local\Temp\nsyD9A2.exe, In Quarantäne, [59d9aacdbbc03ff79583a488936e45bb],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus1386\CrxUpdater_d.exe, In Quarantäne, [a48e4730e69561d52d32d1683cc8d828],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus1C40\CrxUpdater_d.exe, In Quarantäne, [4ce678ff3348ae888ad5a297fc086898],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus1FA3\CrxUpdater_d.exe, In Quarantäne, [c86ac0b70c6f270f79e6d1683bc954ac],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus25C9\CrxUpdater_d.exe, In Quarantäne, [042e146387f443f3ef7046f39b69de22],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus28EA\CrxUpdater_d.exe, In Quarantäne, [8da5dc9b8dee88ae411e72c7c83c1ee2],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus3E4B\CrxUpdater_d.exe, In Quarantäne, [42f0b9bed4a7171fed72102911f3926e],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus41C5\CrxUpdater_d.exe, In Quarantäne, [e34fda9d88f359dd26393306d92b38c8],
PUP.Optional.Conduit.A, C:\Users\Börnie\AppData\Local\Temp\nsiEC5\SpSetup.exe, In Quarantäne, [c969b5c23a41c175cb3efa27d031ee12],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus4636\CrxUpdater_d.exe, In Quarantäne, [1e1492e5007be84edb841d1c22e2be42],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\busD6C4\CrxUpdater_d.exe, In Quarantäne, [bc7616612853b4826df2c277f60e639d],
PUP.Optional.Babylon.A, C:\Users\Börnie\AppData\Local\Temp\D70E2F81-BAB0-7891-9135-6220743C4566\Latest\BExternal.dll, In Quarantäne, [48ea6512423923138e62d1517090ab55],
PUP.Optional.BabSolution.A, C:\Users\Börnie\AppData\Local\Temp\D70E2F81-BAB0-7891-9135-6220743C4566\Latest\BUSolution.dll, In Quarantäne, [7db582f5c4b7181e8f8dc44bf80932ce],
Trojan.RotBrowse, C:\Users\Börnie\AppData\Local\Temp\D70E2F81-BAB0-7891-9135-6220743C4566\Latest\ccp.exe, In Quarantäne, [67cbaec9215a3bfb11e29ac82ed68d73],
PUP.Optional.Babylon.A, C:\Users\Börnie\AppData\Local\Temp\D70E2F81-BAB0-7891-9135-6220743C4566\Latest\CrxInstaller.dll, In Quarantäne, [8ca6fe798fec5ed802ce6ab16f9260a0],
PUP.Optional.Babylon.A, C:\Users\Börnie\AppData\Local\Temp\D70E2F81-BAB0-7891-9135-6220743C4566\Latest\MntrDLLInstall.dll, In Quarantäne, [86ac99de8af17eb8a829978422dffa06],
PUP.Optional.Delta.A, C:\Users\Börnie\AppData\Local\Temp\D70E2F81-BAB0-7891-9135-6220743C4566\Latest\MyDeltaTB.exe, In Quarantäne, [2210d3a45625b581605ad39f669b58a8],
PUP.Optional.Babylon.A, C:\Users\Börnie\AppData\Local\Temp\D70E2F81-BAB0-7891-9135-6220743C4566\Latest\Setup.exe, In Quarantäne, [1d15b6c1d6a5d95d2c098e905ea29868],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\busD8B\CrxUpdater_d.exe, In Quarantäne, [d45e3d3a5427e056441b9e9b59abb14f],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\busE1BC\CrxUpdater_d.exe, In Quarantäne, [3101beb9611a6fc792cdb287b74d29d7],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\busF7CC\CrxUpdater_d.exe, In Quarantäne, [3ff3294e83f8bc7a7ce35ddc4bb95da3],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\busFCA6\CrxUpdater_d.exe, In Quarantäne, [67cb037481fa55e11f40f04921e35aa6],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus93FA\CrxUpdater_d.exe, In Quarantäne, [ae8475026615be78a3bcf148ef150ef2],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus956B\CrxUpdater_d.exe, In Quarantäne, [7cb6afc89cdfa393c8973bfece3612ee],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus9BF0\CrxUpdater_d.exe, In Quarantäne, [3af8581f2a51e452fa65b58464a04eb2],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus9DAB\CrxUpdater_d.exe, In Quarantäne, [d85a4c2b007b45f1d58acd6c3dc721df],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\busA736\CrxUpdater_d.exe, In Quarantäne, [d55d651216652e0836294dec18ec659b],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\busAFE2\CrxUpdater_d.exe, In Quarantäne, [99998dea4b30fd396bf4da5f73911ae6],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\busB177\CrxUpdater_d.exe, In Quarantäne, [b47e8deaa0dba0968dd21623877d916f],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\busB487\CrxUpdater_d.exe, In Quarantäne, [65cdc6b14a3146f0bea1ef4aac580ef2],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\busBE36\CrxUpdater_d.exe, In Quarantäne, [7bb712653348ac8ad38ce7521ce8e21e],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\busBE45\CrxUpdater_d.exe, In Quarantäne, [d85aa9cea5d6b1853f2040f9ea1a669a],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\busBF1F\CrxUpdater_d.exe, In Quarantäne, [19192d4a79020432025d7fbade26639d],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\busC40E\CrxUpdater_d.exe, In Quarantäne, [38fa82f5750674c280dfea4ffa0a52ae],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\busCFFE\CrxUpdater_d.exe, In Quarantäne, [9d95e98e205b90a6302fef4a23e1ea16],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus4679\CrxUpdater_d.exe, In Quarantäne, [d75b00775526d75f65fa3bfeae5644bc],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus4BB4\CrxUpdater_d.exe, In Quarantäne, [d65c9add255644f2c8972b0e61a360a0],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus4C13\CrxUpdater_d.exe, In Quarantäne, [9a9853243b405bdb342ba792d33157a9],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus5718\CrxUpdater_d.exe, In Quarantäne, [57db9bdc502bcc6a104f48f1c440758b],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus592B\CrxUpdater_d.exe, In Quarantäne, [e34fc0b76615dc5af7683aff8381ea16],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus5D32\CrxUpdater_d.exe, In Quarantäne, [0d251463f18a5cdab0af1c1d57ad916f],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus630C\CrxUpdater_d.exe, In Quarantäne, [45edfa7d5f1cba7ceb74c574b3518080],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus6904\CrxUpdater_d.exe, In Quarantäne, [f9396a0d4e2d90a68ad5f8414aba8d73],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus78CB\CrxUpdater_d.exe, In Quarantäne, [01311f58057684b2550a3bfe83816a96],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus79C3\CrxUpdater_d.exe, In Quarantäne, [a48e3b3c6813c0762d326fcafe0660a0],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus7C83\CrxUpdater_d.exe, In Quarantäne, [69c98dea3744a78f055aed4c58acee12],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus8B24\CrxUpdater_d.exe, In Quarantäne, [80b27dfac9b282b44b14b28708fcb749],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus8E2B\CrxUpdater_d.exe, In Quarantäne, [86acdd9aff7c55e1de81b98035cf01ff],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus8FE0\CrxUpdater_d.exe, In Quarantäne, [c17188ef493281b5550ae0597f85bb45],
PUP.Optional.CRX.A, C:\Users\Börnie\AppData\Local\Temp\bus90E9\CrxUpdater_d.exe, In Quarantäne, [082ac3b4e695f1451748e6533ec6a957],
Physische Sektoren: 0
(No malicious items detected)
(end) |