Th4Prophet | 27.06.2014 11:12 | MBAM: Code:
Bösartiger Webseiten Schutz: Aktiviert
Self-protection: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Dirk Brehme
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 335161
Verstrichene Zeit: 12 Min, 9 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristics: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 8
PUP.Optional.ValueApps.A, HKU\S-1-5-21-4072139406-44083544-3542647296-1007-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{93DBF2BB-A2B3-4683-A92E-57E60751F346}, In Quarantäne, [8fdf8eef304be2541ea45deede249a66],
PUP.Optional.Fortunitas.A, HKLM\SOFTWARE\WOW6432NODE\Fortunitas, In Quarantäne, [ff6f334ad6a5290d58b87e513bc753ad],
PUP.Optional.Feven.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Feven 1.5, In Quarantäne, [d09e2d500d6e9b9b9646cffc21e152ae],
PUP.Optional.Fortunitas.A, HKU\S-1-5-21-4072139406-44083544-3542647296-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Fortunitas, In Quarantäne, [4529df9ef9820f27a8678f40ab577888],
PUP.Optional.SuperFish.A, HKU\S-1-5-21-4072139406-44083544-3542647296-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\superfish.com, In Quarantäne, [9dd198e5700b4bebd2476249d62cae52],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-4072139406-44083544-3542647296-1007-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, In Quarantäne, [fb731a633249ed49a4677784ca392ed2],
PUP.Optional.Feven.A, HKU\S-1-5-21-4072139406-44083544-3542647296-1007-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Feven 1.5, In Quarantäne, [98d6f28b2556a78f518b7c4f27db04fc],
PUP.Optional.Qone8, HKU\S-1-5-21-4072139406-44083544-3542647296-1007-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [fc72a2dbb2c989addb773bb77f84af51],
Registrierungswerte: 0
(No malicious items detected)
Registrierungsdaten: 1
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[7bf3de9fa3d8b5814d72058457adc739]
Ordner: 3
PUP.Optional.CrossRider.A, C:\Users\Standard Carolin\AppData\Local\Google\Chrome\User Data\Default\Extensions\baodmgdpdoelldjmkhknbolcldnfjegg, In Quarantäne, [531bfa834833f541a73c3174eb1711ef],
PUP.Optional.CrossRider.A, C:\Users\Standard Carolin\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\baodmgdpdoelldjmkhknbolcldnfjegg, In Quarantäne, [eb8387f6e19a7cbae5ff852037cb6997],
PUP.Optional.CrossRider.A, C:\Users\Standard Carolin\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_baodmgdpdoelldjmkhknbolcldnfjegg_0, In Quarantäne, [55197d00eb906ccaa1440a9bd9292ed2],
Dateien: 12
PUP.Optional.CrossRider.A, C:\Users\Standard Carolin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_baodmgdpdoelldjmkhknbolcldnfjegg_0.localstorage, In Quarantäne, [432bf38a205b58de47a1e4ce90724eb2],
PUP.Optional.CrossRider.A, C:\Users\Standard Carolin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_baodmgdpdoelldjmkhknbolcldnfjegg_0.localstorage-journal, In Quarantäne, [70fe0b72ff7c1e189850b3ffd032fb05],
PUP.Optional.V9.A, C:\Users\Dirk Brehme\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.v9.com_0.localstorage, In Quarantäne, [4d21a1dc2e4db383bc37b305c83adf21],
PUP.Optional.V9.A, C:\Users\Dirk Brehme\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.v9.com_0.localstorage-journal, In Quarantäne, [2e40f8850378e650965d0eaa649e03fd],
PUP.Optional.CrossRider.A, C:\Users\Standard Carolin\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\baodmgdpdoelldjmkhknbolcldnfjegg\000005.ldb, In Quarantäne, [eb8387f6e19a7cbae5ff852037cb6997],
PUP.Optional.CrossRider.A, C:\Users\Standard Carolin\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\baodmgdpdoelldjmkhknbolcldnfjegg\000009.log, In Quarantäne, [eb8387f6e19a7cbae5ff852037cb6997],
PUP.Optional.CrossRider.A, C:\Users\Standard Carolin\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\baodmgdpdoelldjmkhknbolcldnfjegg\CURRENT, In Quarantäne, [eb8387f6e19a7cbae5ff852037cb6997],
PUP.Optional.CrossRider.A, C:\Users\Standard Carolin\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\baodmgdpdoelldjmkhknbolcldnfjegg\LOCK, In Quarantäne, [eb8387f6e19a7cbae5ff852037cb6997],
PUP.Optional.CrossRider.A, C:\Users\Standard Carolin\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\baodmgdpdoelldjmkhknbolcldnfjegg\LOG, In Quarantäne, [eb8387f6e19a7cbae5ff852037cb6997],
PUP.Optional.CrossRider.A, C:\Users\Standard Carolin\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\baodmgdpdoelldjmkhknbolcldnfjegg\LOG.old, In Quarantäne, [eb8387f6e19a7cbae5ff852037cb6997],
PUP.Optional.CrossRider.A, C:\Users\Standard Carolin\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\baodmgdpdoelldjmkhknbolcldnfjegg\MANIFEST-000007, In Quarantäne, [eb8387f6e19a7cbae5ff852037cb6997],
PUP.Optional.CrossRider.A, C:\Users\Standard Carolin\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_baodmgdpdoelldjmkhknbolcldnfjegg_0\3, In Quarantäne, [55197d00eb906ccaa1440a9bd9292ed2],
Physische Sektoren: 0
(No malicious items detected)
(end) ESET: Code:
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7587
# api_version=3.0.2
# EOSSerial=1676da404373d94fa0ce46c6de5a59ef
# engine=18911
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2014-06-27 09:36:27
# local_time=2014-06-27 11:36:27 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1031
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode_1='avast! Antivirus'
# compatibility_mode=783 16777213 100 97 522576 168282277 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 65825 155491637 0 0
# scanned=113422
# found=52
# cleaned=0
# scan_time=7489
sh=AA74169DBB84D2DC822622FDB1F90DBAE47224D3 ft=1 fh=3d83b552efbac760 vn="möglicherweise Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\FortunitasUn.exe.vir"
sh=3D666F9B3A3DD873061FBB3AC4C86C896C4C398F ft=1 fh=3fde80e745f5eb70 vn="Variante von Win32/BrowseFox.H evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\updateFortunitas(62).exe.vir"
sh=264DAEAEFDDC09F8ED72ED3F20EE85B0FF66387D ft=1 fh=8898de085c95edd9 vn="Variante von Win32/BrowseFox.H evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\updateFortunitas.exe.vir"
sh=5086541A3E0EDBAC0D46E675FCF9E98E14DD2CE3 ft=1 fh=3a291db117e3556c vn="Variante von Win32/BrowseFox.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\bin\Fortunitas.BrowserAdapter.exe.vir"
sh=F4963CEA2CC7A55125F3A4755A26FCBA8FE207D6 ft=1 fh=f8f5513918afc5c0 vn="Variante von Win64/BrowseFox.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\bin\Fortunitas.PurBrowse64(60).exe.vir"
sh=F4963CEA2CC7A55125F3A4755A26FCBA8FE207D6 ft=1 fh=f8f5513918afc5c0 vn="Variante von Win64/BrowseFox.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\bin\Fortunitas.PurBrowse64.exe.vir"
sh=63EBEE33851E902C294BBC73D13BF0A962E789E7 ft=1 fh=765484aeb8e9c5dd vn="Variante von Win32/BrowseFox.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\bin\FortunitasBAApp.dll.vir"
sh=3D666F9B3A3DD873061FBB3AC4C86C896C4C398F ft=1 fh=3fde80e745f5eb70 vn="Variante von Win32/BrowseFox.H evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\bin\utilFortunitas(61).exe.vir"
sh=264DAEAEFDDC09F8ED72ED3F20EE85B0FF66387D ft=1 fh=8898de085c95edd9 vn="Variante von Win32/BrowseFox.H evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\bin\utilFortunitas.exe.vir"
sh=E963200537E5570D0BD8817A1ADC8ADF28261E5E ft=1 fh=52c8fbf0b8942421 vn="Variante von Win32/BrowseFox.K evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\bin\{b8a90375-3b37-4954-86de-f96c458c4ce2}.dll.vir"
sh=2AC38E513B73E3FBE6CEF664F61154F31B8149C6 ft=1 fh=6110107a845c756e vn="Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\bin\plugins\Fortunitas.Bromon.dll.vir"
sh=B4DE77D413E767C824C183412A85A5E793997E10 ft=1 fh=2fc5757bc547e695 vn="Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\bin\plugins\Fortunitas.BroStats.dll.vir"
sh=49D66BDE59686D84336C965885718A6440F72A28 ft=1 fh=0f6fd7ccd3b3124a vn="möglicherweise Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\bin\plugins\Fortunitas.BrowserAdapterS.dll.vir"
sh=1A495AEC55E93DC2022A717E363A23A65C5C0F55 ft=1 fh=87598fa29d2c2c86 vn="Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\bin\plugins\Fortunitas.BrowserFilterG.dll.vir"
sh=4AA47F8A64CB4C47AA1E34DDA9F8CF08FE1E6DAA ft=1 fh=01c85001274ba041 vn="Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\bin\plugins\Fortunitas.CompatibilityChecker.dll.vir"
sh=17DABDC0011D62EA88816C5637F491D889070C4C ft=1 fh=126944fd9595fae2 vn="Variante von MSIL/BrowseFox.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\bin\plugins\Fortunitas.FFUpdate.dll.vir"
sh=BE47595D6808B5F6A0056A380DD0B21CAC91FE14 ft=1 fh=66408a46ec87db90 vn="Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\bin\plugins\Fortunitas.PurBrowse.dll.vir"
sh=2E7176281E47F91F3AC7D9C3CDE5488A9A8DFF3D ft=1 fh=937f1c2530361c50 vn="Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Fortunitas\bin\plugins\Fortunitas.Repmon.dll.vir"
sh=DCDAFDA3D713E40441BEB285780962150C143DB0 ft=0 fh=0000000000000000 vn="Variante von Android/Mobserv.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Mobogenie\MUServer.apk.vir"
sh=5086541A3E0EDBAC0D46E675FCF9E98E14DD2CE3 ft=1 fh=3a291db117e3556c vn="Variante von Win32/BrowseFox.I evtl. unerwünschte Anwendung" ac=I fn="C:\FRST\Quarantine\C\Program Files (x86)\Fortunitas\bin\Fortunitas.BrowserAdapter.exe"
sh=63EBEE33851E902C294BBC73D13BF0A962E789E7 ft=1 fh=765484aeb8e9c5dd vn="Variante von Win32/BrowseFox.I evtl. unerwünschte Anwendung" ac=I fn="C:\FRST\Quarantine\C\Program Files (x86)\Fortunitas\bin\FortunitasBAApp.dll"
sh=E963200537E5570D0BD8817A1ADC8ADF28261E5E ft=1 fh=52c8fbf0b8942421 vn="Variante von Win32/BrowseFox.K evtl. unerwünschte Anwendung" ac=I fn="C:\FRST\Quarantine\C\Program Files (x86)\Fortunitas\bin\{b8a90375-3b37-4954-86de-f96c458c4ce2}.dll"
sh=D6A5DC7A4B717224CC176094F60D61086E4733DC ft=1 fh=b7e2079953f7b9d4 vn="Variante von Win32/Conduit.SearchProtect.H evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe.vir"
sh=0235B5E13704F2A1B3BC3D137D79ADDA89FE1B86 ft=1 fh=361f43e80eb2f2cf vn="Variante von Win32/Conduit.SearchProtect.H evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Program Files (x86)\SearchProtect\Main\bin\SPTool.dll.vir"
sh=BB3752D2131C964718E918AEB456F2A20F9C3D56 ft=1 fh=a8d087ddbacdd236 vn="Win32/Conduit.SearchProtect.Q evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Program Files (x86)\SearchProtect\Main\bin\uninstall.exe.vir"
sh=7DC19763FCFB8BE9846DD4405485A92AA3E50163 ft=1 fh=f4eca9bc8299d3bc vn="Variante von Win32/Conduit.SearchProtect.I evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe.vir"
sh=96C383FA62BDCCC2B457D8FEC74F1B596E77AC28 ft=1 fh=24b344ad614e0ab4 vn="Variante von Win32/Kryptik.BEQH Trojaner" ac=I fn="C:\Qoobox\Quarantine\C\Users\Dirk Brehme\AppData\Local\Lollipop\Lollipop.exe.vir"
sh=960436508D0F4B6EC63922277E4D5195A6D61FFA ft=0 fh=0000000000000000 vn="Variante von Win32/Toolbar.Conduit.P evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2012-02-05 111246\Backup Files 2012-02-05 111246\Backup files 1.zip"
sh=990AE9BD1936D4A95B55C1F0EE1CBD9648C85839 ft=0 fh=0000000000000000 vn="Variante von Win32/LoadTubes.C evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2012-02-05 111246\Backup Files 2012-04-15 075421\Backup files 1.zip"
sh=B3B475FC0009FB68EFF4FA01895BABD332918693 ft=0 fh=0000000000000000 vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2012-02-05 111246\Backup Files 2012-04-22 130815\Backup files 1.zip"
sh=D3EFF677BFDC345C2A4D76B356FF8ED492AD6350 ft=0 fh=0000000000000000 vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2012-02-05 111246\Backup Files 2012-04-22 130815\Backup files 2.zip"
sh=75117178FC44B93AD756C4E6344B610D053694AC ft=0 fh=0000000000000000 vn="Variante von Win32/Toolbar.Conduit.Y evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2012-02-05 111246\Backup Files 2012-04-29 090848\Backup files 2.zip"
sh=FD5189B37D4B163E7448652C3937EC60521B3DEC ft=0 fh=0000000000000000 vn="Variante von Win32/LoadTubes.C evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2012-05-06 101938\Backup Files 2012-05-06 101938\Backup files 1.zip"
sh=3D178075A8A8DB8054D318BED98905A9189F5329 ft=0 fh=0000000000000000 vn="Win32/Toolbar.Montiera.I evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2012-05-06 101938\Backup Files 2012-05-06 101938\Backup files 2.zip"
sh=B8F35233DBEAC8110A3C6C751519988FD976BAF5 ft=0 fh=0000000000000000 vn="Variante von Win32/LoadTubes.C evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2012-06-10 135340\Backup Files 2012-06-10 135340\Backup files 1.zip"
sh=FF7672DDB17BD370379783F1C48644C880FAB5B9 ft=0 fh=0000000000000000 vn="Win32/Toolbar.Montiera.I evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2012-06-10 135340\Backup Files 2012-06-10 135340\Backup files 2.zip"
sh=06DDC38A5C9E682C3438A6D44105BECA856196CA ft=0 fh=0000000000000000 vn="Variante von Win32/LoadTubes.C evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2012-07-22 130033\Backup Files 2012-07-22 130033\Backup files 1.zip"
sh=4A79B0D671E054969D72ADAE6F34E6E624877819 ft=0 fh=0000000000000000 vn="Variante von Win32/LoadTubes.C evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2012-09-16 085158\Backup Files 2012-09-16 085158\Backup files 1.zip"
sh=563C51BD98DB1319185AEB1344F494B3B0265207 ft=0 fh=0000000000000000 vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2012-09-16 085158\Backup Files 2012-10-21 085927\Backup files 1.zip"
sh=E06DED3A86459D38B8C170FA231E53639C80DE2B ft=0 fh=0000000000000000 vn="Variante von Win32/LoadTubes.C evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2012-11-04 080836\Backup Files 2012-11-04 080836\Backup files 1.zip"
sh=9A642ED9C0D2491EE4295A55472D50C298D37BAC ft=0 fh=0000000000000000 vn="Win32/Toolbar.Montiera.I evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2012-11-04 080836\Backup Files 2012-11-04 080836\Backup files 2.zip"
sh=C309497D3124108AB8DF2291BFB013EBBB8268D8 ft=0 fh=0000000000000000 vn="Variante von Win32/Toolbar.Visicom.B evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2012-11-04 080836\Backup Files 2012-11-18 055928\Backup files 1.zip"
sh=454B27B000406315514F543D0364D592E43BD275 ft=0 fh=0000000000000000 vn="Variante von Win32/LoadTubes.C evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2013-01-06 103159\Backup Files 2013-01-06 103159\Backup files 1.zip"
sh=7657068DCD7C444D249F5E1E1C6713DACB4A0E7D ft=0 fh=0000000000000000 vn="Win32/Toolbar.Montiera.I evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2013-01-06 103159\Backup Files 2013-01-06 103159\Backup files 3.zip"
sh=0D322489A7D482A367C4D9183E05B8F506EFAF5B ft=0 fh=0000000000000000 vn="Variante von Win32/LoadTubes.C evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2013-03-03 185657\Backup Files 2013-03-03 185657\Backup files 1.zip"
sh=5831BD89503BC15BF40E0A325439694F1CBD6C48 ft=0 fh=0000000000000000 vn="Win32/Toolbar.Montiera.I evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2013-03-03 185657\Backup Files 2013-03-03 185657\Backup files 3.zip"
sh=88A5D0F358108DBCE4AEB18B0BF63FDF518E101C ft=0 fh=0000000000000000 vn="Mehrere Bedrohungen" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2013-04-07 103853\Backup Files 2013-04-07 103853\Backup files 1.zip"
sh=9E025578574B6A68288CE7AE715DC8B440E921C9 ft=0 fh=0000000000000000 vn="Win32/Toolbar.Montiera.I evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2013-04-07 103853\Backup Files 2013-04-07 103853\Backup files 2.zip"
sh=F25D9C45A80B4FD955497B708BF2B4860A4031A3 ft=0 fh=0000000000000000 vn="Variante von Win32/Injector.AFXO Trojaner" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2013-04-07 103853\Backup Files 2013-04-21 110011\Backup files 1.zip"
sh=7E48FD19F5B523F405E519EC795004EA20F88E69 ft=0 fh=0000000000000000 vn="Mehrere Bedrohungen" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2013-06-02 124642\Backup Files 2013-06-02 124642\Backup files 1.zip"
sh=DDC917321CA56FE87790A177EC7B5111DD5C79E3 ft=0 fh=0000000000000000 vn="Win32/Toolbar.Montiera.I evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2013-06-02 124642\Backup Files 2013-06-02 124642\Backup files 2.zip"
sh=471EA15770D8A471885ADF74A2D0703C6274C34F ft=0 fh=0000000000000000 vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="D:\DIRKBREHME-PC\Backup Set 2013-06-02 124642\Backup Files 2013-06-02 124642\Backup files 3.zip" |