Suchender12 | 18.12.2014 22:18 | mbam.txt: Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 17.12.2014
Suchlauf-Zeit: 22:07:34
Logdatei: mbam2.txt
Administrator: Ja
Version: 2.00.4.1028
Malware Datenbank: v2014.12.17.04
Rootkit Datenbank: v2014.12.14.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 8.1
CPU: x64
Dateisystem: NTFS
Benutzer: ******
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 450116
Verstrichene Zeit: 35 Min, 42 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(Keine schädliche Elemente erkannt)
Module: 0
(Keine schädliche Elemente erkannt)
Registrierungsschlüssel: 34
PUP.Optional.AppEnable.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{23D4646C-263A-4E2D-A08C-6C704557973D}, In Quarantäne, [b038f76c8bf174c24ea90fffb44fa759],
PUP.Optional.AppEnable.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{23D4646C-263A-4E2D-A08C-6C704557973D}, In Quarantäne, [b038f76c8bf174c24ea90fffb44fa759],
PUP.Optional.SupTab.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [6e7a590accb00432e82ee6f0cb3728d8],
PUP.Optional.SupTab.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [6e7a590accb00432e82ee6f0cb3728d8],
PUP.Optional.FreeHDSportTV.A, HKLM\SOFTWARE\WOW6432NODE\FreeHD-Sport TV V9.0, In Quarantäne, [f3f59ec5720a95a1f311612f4db68d73],
PUP.Optional.FreeHDSportTV.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\FreeHD-Sport TV V9.0, In Quarantäne, [14d44023fa82f541788e1878da29b34d],
PUP.Optional.1ClickDownload.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\1ClickDownload, In Quarantäne, [73750b58681443f3d7f4327ad62e3dc3],
PUP.Optional.AppEnable.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\AppEnable, In Quarantäne, [5197580b2b51290dbc9d13c028dc23dd],
PUP.Optional.Iminent.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Iminent, In Quarantäne, [b1379cc72458a492e569fd9906fd54ac],
PUP.Optional.RocketTab.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\RocketTabInstalled, In Quarantäne, [d414a3c0ee8e06303e6bf27140c307f9],
PUP.Optional.StormWatchApp.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\StormWatchApp, In Quarantäne, [5d8bca99611be1552b6c055724df7c84],
PUP.Optional.WebSearches.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SupHpUISoft, In Quarantäne, [ad3baab92f4d8fa7d3063037df2410f0],
PUP.Optional.Vosteran.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Vosteran Browser, In Quarantäne, [6c7c441fbfbd55e1b5fa874db94b669a],
PUP.Optional.Vosteran.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\wse_vosteran, In Quarantäne, [35b3d98a314bd066f253369e83815fa1],
PUP.Optional.CouponArific.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\CouponARific, In Quarantäne, [30b8ce953b41b185009d5ffb26dd639d],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, In Quarantäne, [0ade550e1963e155f9b24e71897b4eb2],
PUP.Optional.FreeHDSportTV.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\FreeHD-Sport TV V9.0, In Quarantäne, [27c13f24324a58debb4b018fb44f639d],
PUP.Optional.Vosteran.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\oilkkkefbalmbfppgjmgjoefbclebkce, In Quarantäne, [7d6b9bc81963c96d1e95450e6c9735cb],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, In Quarantäne, [60883e2574081f170658ace993708e72],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, In Quarantäne, [6b7d2f34225af541ed9004a750b4f30d],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\3874, In Quarantäne, [10d8bda6aad2b3832a185b07e61df30d],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\installdaddy, In Quarantäne, [ca1e5e055d1f83b3bea593199a6a9a66],
PUP.Optional.Qone8, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [09df293aeb918caa9575f5c2679dfd03],
PUP.Optional.FastStart.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\EXTENDS, In Quarantäne, [ebfd76eda6d60e2844f850132cd70cf4],
PUP.Optional.RocketTab.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SEARCH EXTENSIONS, In Quarantäne, [9e4ac79c08745cda32447c56ee1632ce],
PUP.Optional.CoolSaleCoupon.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{2ddd4bed-9178-4d47-831c-7ea90170edf0}, In Quarantäne, [9b4da3c03c4031050857a0d964a18b75],
PUP.Optional.CoolSaleCoupon.A, HKLM\SOFTWARE\CLASSES\CoolSaleCoupon.CoolSaleCoupon, In Quarantäne, [9b4da3c03c4031050857a0d964a18b75],
PUP.Optional.CoolSaleCoupon.A, HKLM\SOFTWARE\CLASSES\CoolSaleCoupon.CoolSaleCoupon.9, In Quarantäne, [9b4da3c03c4031050857a0d964a18b75],
PUP.Optional.CoolSaleCoupon.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CoolSaleCoupon.CoolSaleCoupon, In Quarantäne, [9b4da3c03c4031050857a0d964a18b75],
PUP.Optional.CoolSaleCoupon.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CoolSaleCoupon.CoolSaleCoupon.9, In Quarantäne, [9b4da3c03c4031050857a0d964a18b75],
PUP.Optional.CoolSaleCoupon.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{2DDD4BED-9178-4D47-831C-7EA90170EDF0}, In Quarantäne, [9b4da3c03c4031050857a0d964a18b75],
PUP.Optional.CoolSaleCoupon.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{2DDD4BED-9178-4D47-831C-7EA90170EDF0}, In Quarantäne, [9b4da3c03c4031050857a0d964a18b75],
PUP.Optional.CoolSaleCoupon.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{2DDD4BED-9178-4D47-831C-7EA90170EDF0}, In Quarantäne, [9b4da3c03c4031050857a0d964a18b75],
PUP.Optional.CoolSaleCoupon.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{2DDD4BED-9178-4D47-831C-7EA90170EDF0}, In Quarantäne, [9b4da3c03c4031050857a0d964a18b75],
Registrierungswerte: 3
PUP.Optional.InstallCore.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, 0Z1B1L2Z1S, In Quarantäne, [6b7d2f34225af541ed9004a750b4f30d]
PUP.Optional.FastStart.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\EXTENDS|appid, faststartff@gmail.com, In Quarantäne, [ebfd76eda6d60e2844f850132cd70cf4]
PUP.Optional.RocketTab.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SEARCH EXTENSIONS|RocketTab, 1, In Quarantäne, [9e4ac79c08745cda32447c56ee1632ce]
Registrierungsdaten: 2
PUP.Optional.OmigaPlus.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://isearch.omiga-plus.com/?type=hp&ts=1416256435&from=adks&uid=HGSTXHTS545050A7E380_130413TE8513491NYZZCX, Gut: (www.google.com), Schlecht: (hxxp://isearch.omiga-plus.com/?type=hp&ts=1416256435&from=adks&uid=HGSTXHTS545050A7E380_130413TE8513491NYZZCX),Ersetzt,[20c83f24f5872d09611998dcfa0bd030]
PUP.Optional.OmigaPlus.A, HKU\S-1-5-21-3488547966-3651287838-4017947475-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://isearch.omiga-plus.com/?type=hp&ts=1416256435&from=adks&uid=HGSTXHTS545050A7E380_130413TE8513491NYZZCX, Gut: (www.google.com), Schlecht: (hxxp://isearch.omiga-plus.com/?type=hp&ts=1416256435&from=adks&uid=HGSTXHTS545050A7E380_130413TE8513491NYZZCX),Ersetzt,[fbeda5be621ac274a9d093e1b64f7888]
Ordner: 6
PUP.Optional.CouponArific, C:\Program Files\CouponArific, In Quarantäne, [b632075c384424127ced7dce956e3fc1],
PUP.Optional.CouponArific, C:\Program Files\CouponArific\SSL, In Quarantäne, [b632075c384424127ced7dce956e3fc1],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\content, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\content\browser, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\content\external, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
Dateien: 25
PUP.Optional.OptimunInstaller, C:\Users\******\Downloads\Flash_Player_Pro_Setup (1).exe, In Quarantäne, [7a6e10537efec07603fdb09aa35d9e62],
PUP.Optional.OptimunInstaller, C:\Users\******\Downloads\Flash_Player_Pro_Setup.exe, In Quarantäne, [dd0b4d16fc80320401ffb397e8181be5],
PUP.Optional.InstallBrain, C:\Users\******\Downloads\unZipExpressSetup.exe, In Quarantäne, [5b8d84dfd3a9d066e73e6bcaa65a48b8],
PUP.Optional.OptimunInstaller, C:\Users\******\Downloads\evasi0n7_Setup.exe, In Quarantäne, [e008bea5c2ba1a1c7b852624d828ae52],
PUP.Optional.SelectNGo.A, C:\Users\******\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage, In Quarantäne, [6385075cf18b89ad74f8dd9db2519070],
PUP.Optional.SelectNGo.A, C:\Users\******\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage, In Quarantäne, [697fd88b314bed49e884adcd9c67a45c],
PUP.Optional.SelectNGo.A, C:\Users\******\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage-journal, In Quarantäne, [895f8bd8dd9f57dff7754337d330639d],
PUP.Optional.CouponArific, C:\Program Files\CouponArific\mfsD928.tmp, In Quarantäne, [b632075c384424127ced7dce956e3fc1],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\bootstrap.js, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\chrome.manifest, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\icon.png, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\icon64.png, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\install.rdf, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\content\browser\background.js, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\content\browser\browser.js, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\content\browser\header.js, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\content\browser\timer.jsm, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\content\browser\vstr.1.0.2.jsm, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\content\browser\vstr.1.0.2h.jsm, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\content\external\aes.js, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\content\external\hmac-md5.js, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\content\external\jsencrypt.min.js, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\content\external\md5.js, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\content\external\string.min.js, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
PUP.Optional.Vosteran.A, C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{a2bff6ba-8d18-488c-853c-ad9bc29f2482}\content\external\underscore-min.js, In Quarantäne, [eff95b08ef8db97d352a103ebb487888],
Physische Sektoren: 0
(Keine schädliche Elemente erkannt)
(end) ESET Log: Code:
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=5663d17787725a478c5482ed964c2ed5
# engine=21602
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2014-12-18 02:00:39
# local_time=2014-12-18 03:00:39 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.2.9200 NT
# compatibility_mode_1='avast! Antivirus'
# compatibility_mode=783 16777213 71 94 38659 85508 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776574 100 94 83747 9172358 0 0
# scanned=300966
# found=120
# cleaned=0
# scan_time=14022
sh=5CC54C31E53CDB4AD76AE1F03C85323DD514FB29 ft=1 fh=be953427e2d96ee6 vn="Variante von Win32/BrowseFox.O evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\AppEnableBHO.dll.vir"
sh=CE3ECEB26073C2B16B2AD94E4AA3E9C95221B18D ft=1 fh=abdf253246e38fc9 vn="Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\AppEnableUn.exe.vir"
sh=63699E6D40B50C59EFE8258EA6D7E857DB1DB6CD ft=1 fh=aaaa82c4aa63c2ca vn="Win32/BrowseFox.C evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\AppEnableUninstall.exe.vir"
sh=9F7C7B19DB09C2E4910127EDF8A8EE37F43CDFCA ft=0 fh=0000000000000000 vn="Win32/BrowseFox.Q evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bnaeackconkmhppdoemdbhohlkbjfggd.crx.vir"
sh=60C239B16847CA8380EF2C04311DA521F65BE775 ft=1 fh=12228aa4a6c55e42 vn="Variante von Win32/BrowseFox.N evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\55bbc577fb0b4e778a51.dll.vir"
sh=A1DD48BE645BC419A2B30012D006147657AF1843 ft=1 fh=68ad92ad02e21ca4 vn="Variante von Win64/BrowseFox.CI evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\55bbc577fb0b4e778a5164.dll.vir"
sh=36921C3E9933C5839EB76AD988ACC0B157C0D737 ft=1 fh=f4ce6513051befa8 vn="Variante von Win32/BrowseFox.N evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\820a714fc52647778e87.dll.vir"
sh=E745B3FB6BD92C657E74FACD75C07E0D02E8651B ft=1 fh=8d8db181b0dde41b vn="Variante von Win64/BrowseFox.CI evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\820a714fc52647778e8764.dll.vir"
sh=55DDA7A8CA72B5CE31933E0E10FC6650ADB597F0 ft=1 fh=6f85354871aebbc4 vn="Variante von Win32/BrowseFox.R evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\AppEnable.BOAS.exe.vir"
sh=8A600F80D33901825665FD43372A4BC94BFCA6FF ft=1 fh=a38acddafafade62 vn="Variante von Win32/BrowseFox.R evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\AppEnable.BOASHelper.exe.vir"
sh=DC17B99733B325551369E84E00629DB0C6F046C3 ft=1 fh=ab28866cb9053c61 vn="Variante von Win32/BrowseFox.R evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\AppEnable.BOASPRT.exe.vir"
sh=C2C62FC161A66687716D6D171A2E3A77FF7F63D0 ft=1 fh=9e6eb9094a607579 vn="Variante von Win32/BrowseFox.P evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\AppEnable.BrowserAdapter.exe.vir"
sh=881388000BAEBBEC28D4A54569A5335968FBAC4E ft=1 fh=0e3ad1087c7e41c0 vn="Variante von Win64/BrowseFox.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\AppEnable.BrowserAdapter64.exe.vir"
sh=979DE109F5B2105606684910F13D36447ECDBF38 ft=1 fh=7b5330b544fa8d49 vn="Variante von Win32/BrowseFox.AA evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\AppEnable.expext.exe.vir"
sh=6D47EE8FACBCE6FDFBFEFE7B953FF948568EAD18 ft=1 fh=c1a3144aad9b89a3 vn="Variante von Win64/BrowseFox.CJ evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\AppEnable.expextdll.dll.vir"
sh=2298F3D456044AA69F3D19A59FFEBA7FD1136B52 ft=1 fh=4721a8b75c825a4b vn="Variante von Win64/BrowseFox.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\AppEnable.PurBrowse64.exe.vir"
sh=BD740FE2899C1FAC1BFBABF8F4F5525305D03FE9 ft=1 fh=2de363b61620b387 vn="Variante von Win32/BrowseFox.N evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\e7ea42ad4fa44fcea37a.dll.vir"
sh=2B2DBA547A896C18DE9757CA470A23E864C8A7D6 ft=1 fh=8bc3891d083362cf vn="Variante von Win64/BrowseFox.CI evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\e7ea42ad4fa44fcea37a64.dll.vir"
sh=5453B0606EEAEEC292C3D813829D2EF2220183AB ft=1 fh=7fb13711dd3f6966 vn="Variante von Win32/BrowseFox.N evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\efe93952e0414e49a1cc.dll.vir"
sh=DD85239416099B2310FF062055170A950E7EDFCE ft=1 fh=386741586ba0d357 vn="Variante von Win64/BrowseFox.CI evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\efe93952e0414e49a1cc64.dll.vir"
sh=EEE293D8421A037780FC0509C712BC04451BCBBC ft=1 fh=c04ca2646cf2b208 vn="Variante von Win32/BrowseFox.M evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\{55bbc577-fb0b-4e77-8a51-e033716a9ead}.dll.vir"
sh=2F38D6C241899EF106E7D02881A9619B72172768 ft=1 fh=b38fdbb61498b541 vn="Variante von Win64/BrowseFox.CH evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\{55bbc577-fb0b-4e77-8a51-e033716a9ead}64.dll.vir"
sh=B2A2D373C95C7AF3EC37A927C78DA82A8099BEBF ft=1 fh=147b6ea98f766338 vn="Variante von Win32/BrowseFox.M evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\{820a714f-c526-4777-8e87-e9d6612e0938}.dll.vir"
sh=D3C059D18FEDEBB9F7AC97EF14717796E405BB9D ft=1 fh=5664f4a64a8c437e vn="Variante von Win64/BrowseFox.CH evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\{820a714f-c526-4777-8e87-e9d6612e0938}64.dll.vir"
sh=B9995933037A4391908E22CE46D73AD5FE95A005 ft=1 fh=8ffa53e422eab206 vn="Variante von Win32/BrowseFox.M evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\{e7ea42ad-4fa4-4fce-a37a-c42931f721e3}.dll.vir"
sh=2F7379B1A29A540958C1EBAA20C703F8F97C9449 ft=1 fh=4e6a2018b2aa1630 vn="Variante von Win64/BrowseFox.CH evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\{e7ea42ad-4fa4-4fce-a37a-c42931f721e3}64.dll.vir"
sh=3A71D0968B329746BC6F374AB84E52FBA9115345 ft=1 fh=a8426bb23595c98e vn="Variante von Win32/BrowseFox.M evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\{efe93952-e041-4e49-a1cc-461436cf69d0}.dll.vir"
sh=B77A7F18BE1379C5476B924C7B4B1AA7FBD1DC9C ft=1 fh=5ce0aabf3a39f281 vn="Variante von Win64/BrowseFox.CH evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\{efe93952-e041-4e49-a1cc-461436cf69d0}64.dll.vir"
sh=967A17C7530FF3F8053A7177A05513408D603347 ft=1 fh=637f093c7ad9f254 vn="Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\plugins\AppEnable.BOAS.dll.vir"
sh=C86F983E59422A33D7BB911BECF755AB3E77AE54 ft=1 fh=f1ea4853365e5229 vn="Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\plugins\AppEnable.Bromon.dll.vir"
sh=ED99F99CD70D9961912EFC307C8E2F4887A7EA5A ft=1 fh=b988e7fced5a9f22 vn="Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\plugins\AppEnable.BroStats.dll.vir"
sh=908A201D24ECC1D8B784700FDFC65B05EF3B8726 ft=1 fh=c4bce75590c6be40 vn="Variante von MSIL/BrowseFox.L evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\plugins\AppEnable.BrowserAdapter.dll.vir"
sh=F276EC7503418A059D2D03096BFDC4428CE29DED ft=1 fh=0d90042c2890dfda vn="Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\plugins\AppEnable.CompatibilityChecker.dll.vir"
sh=25BCE0CF8455B0CABC3E4094FA78E90AEA48E6FF ft=1 fh=fcb063a508048ec0 vn="Variante von MSIL/BrowseFox.L evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\plugins\AppEnable.ExpExt.dll.vir"
sh=0A04E479274091F87BC2C7F141C874B9CCC64D89 ft=1 fh=981f6b2aa7f9ea35 vn="Variante von MSIL/BrowseFox.L evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\plugins\AppEnable.FFUpdate.dll.vir"
sh=147B248C9AA95C52C3C96407A86E4FEA20DBF663 ft=1 fh=cf13d907e9c7bac9 vn="Variante von MSIL/BrowseFox.L evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\plugins\AppEnable.GCUpdate.dll.vir"
sh=D014C4F7FCD1304D7803949688EBF13ADEC88815 ft=1 fh=51d9cc4d5c5ea2e4 vn="Variante von MSIL/BrowseFox.L evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\plugins\AppEnable.IEUpdate.dll.vir"
sh=2A40E7C603BAAB6B672E45E30B904736D77AE865 ft=1 fh=1e8aa548c3a220a3 vn="Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\plugins\AppEnable.Msvcmon.dll.vir"
sh=E9514FFD0BD8EEA931C72F94F7C7D32C3812F9C4 ft=1 fh=2c353cd37cae6e79 vn="Variante von MSIL/BrowseFox.L evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\plugins\AppEnable.OptChecker.dll.vir"
sh=55CDA6597EEBBB2A3F42D7ED715EB3BD9117B26B ft=1 fh=a3ffa42251f027e6 vn="Variante von MSIL/BrowseFox.L evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\plugins\AppEnable.PurBrowse.dll.vir"
sh=A69D7382E3E7EE741621CF10EE9F11A8646F5529 ft=1 fh=a15ce1a1392e5122 vn="Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\plugins\AppEnable.PurBrowseG.dll.vir"
sh=AE35DB5EFBF003B83D06EE380512CFBDF02709B9 ft=1 fh=16589fcd9890daee vn="Variante von MSIL/BrowseFox.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\AppEnable\bin\plugins\AppEnable.Repmon.dll.vir"
sh=532955F08D04FB6C4A069DFF08A9AAEAB1696594 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\FreeHD-Sport TV V9.0\51386.crx.vir"
sh=5C27958A97C19A260349ED760DE4D3DEEF2CF8AE ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\FreeHD-Sport TV V9.0\51386.xpi.vir"
sh=9E5B9026CF4D11A66DB292EAEDA9FBEF56E790D8 ft=1 fh=c71c00112eab44a0 vn="Variante von Win64/Toolbar.Crossrider.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\FreeHD-Sport TV V9.0\FreeHD-Sport TV V9.0-buttonutil64.dll.vir"
sh=24DDEEC0580609DB801FD7C63D953800EC43F246 ft=1 fh=5fee560e784e5f2d vn="Variante von Win32/Toolbar.CrossRider.BP evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\FreeHD-Sport TV V9.0\Uninstall.exe.vir"
sh=927F320760CB54EF6D972B7D3928DFF33F46198D ft=1 fh=3e85e3f735d0fa5f vn="Win32/Toolbar.CrossRider.AB evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\FreeHD-Sport TV V9.0\utils.exe.vir"
sh=6B077A2100E06DEA1ECC3A7F9A2F05212486FF9C ft=1 fh=c9a915b4dabd43db vn="Variante von MSIL/MyPCBackup.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\MyPC Backup\MyPC Backup.exe.vir"
sh=30AE45E3CBED6E27195C35B00440DE1E98C0043B ft=1 fh=c71c00115f60ddd0 vn="Variante von MSIL/Adware.iBryte.O Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Search Extensions\Client.exe.vir"
sh=91F8DD8B8C15F511342F324CC1C540279EA983E8 ft=1 fh=c71c001190b110b6 vn="Variante von MSIL/Adware.iBryte.J Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Search Extensions\uninstall.exe.vir"
sh=21CAB45134CBAB08DA9DEF13EECAC86B46F3E669 ft=1 fh=5fc65ef6698c7c41 vn="Win32/Thinknice.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\DpInterface32.dll.vir"
sh=1727DEA1E7C028D11876CFC42F3553C3C6718467 ft=1 fh=f9e5b6a85939375c vn="Win64/Thinknice.F evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\DpInterface64.dll.vir"
sh=12EBF6FC8AD543662053CA101C2D5DA175137EB2 ft=1 fh=c71c00119e5c1a87 vn="Win32/Thinknice.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\Loader32.exe.vir"
sh=8F0ABE23DDA3F9DC04497B1A4F455AF8CE9D45B8 ft=1 fh=787e176d56997de7 vn="Win64/Thinknice.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\Loader64.exe.vir"
sh=6796FD43F04FE933E9155F5DD9B5B928E8C1AC71 ft=1 fh=0691f007be75c371 vn="Variante von Win32/Thinknice.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\SearchProtect32.dll.vir"
sh=147893B2EC59DC338295C9DB77760076F7817A79 ft=1 fh=f16cf01e720a3dcc vn="Win64/Thinknice.F evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\SearchProtect64.dll.vir"
sh=2B55DF509EC5D62C5FB44E14E63AAC90371B917F ft=1 fh=918bb53878474d1f vn="Variante von Win32/ELEX.AV evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\SupIePluginServiceUpdate.exe.vir"
sh=43B2963293CE3865C32132A4802B92531C16D256 ft=1 fh=e1d0248c77f0c9d9 vn="Win32/Thinknice.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\SupTab.dll.vir"
sh=9AE9A2C0B8241366357206097FD312B5671FCAE8 ft=1 fh=dc7a3c84863e13b7 vn="Win32/Thinknice.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\uninstall.exe.vir"
sh=A5FE5C71D62BD9648AB25660D7CAE6EFF98AF3ED ft=1 fh=c71c00113e20c1ff vn="Variante von Win32/AdWare.MultiPlug.BN Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\CoolSaleCoupon\VdM4CjrIUFqIdi.dll.vir"
sh=8B31E1D5B92FF6642CC5FB707EC76596CE84002C ft=1 fh=1e4a03f52794c59a vn="Variante von Win64/Adware.MultiPlug.E Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\CoolSaleCoupon\VdM4CjrIUFqIdi.x64.dll.vir"
sh=B8D35238AB8FC45B1363B9229FCFD3FF7E6844C5 ft=1 fh=c71c00114b81337a vn="Variante von Win32/AdWare.MultiPlug.BN Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\ddownlloaditkeep\Nz0dcqEOXPF79F.dll.vir"
sh=6EA4AD40526D2FF098B833C8B89DC1B787DA46C3 ft=1 fh=12e84785a28b9650 vn="Variante von Win64/Adware.MultiPlug.E Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\ddownlloaditkeep\Nz0dcqEOXPF79F.x64.dll.vir"
sh=2B55DF509EC5D62C5FB44E14E63AAC90371B917F ft=1 fh=918bb53878474d1f vn="Variante von Win32/ELEX.AV evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\IePluginServices\PluginService.exe.vir"
sh=84616836894B9CACA83D683872A132424128D9CB ft=1 fh=23b3d2b5787c7150 vn="Win32/ELEX.BC evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe.vir"
sh=0CDDBFAC8EF5146B6A827219D016E1E9AA438C42 ft=0 fh=0000000000000000 vn="JS/Kryptik.ATB Trojaner" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\Google\Chrome\User Data\Default\Extensions\plmdkolkgokhiflhdddcfnbebofneifp\1.8\v.js.vir"
sh=036B01DD2688D046A867787659545ACD1F78FC22 ft=0 fh=0000000000000000 vn="JS/Astromenda.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\Rocket\Application\31.0.1650.23\Extensions\Rocket.crx.vir"
sh=BF60ADDA4AD69DC3D70795605BDDBE46993ACC4D ft=0 fh=0000000000000000 vn="JS/Astromenda.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\Rocket\Application\31.0.1650.23\Installer\chrome.7z.vir"
sh=50164001C8B484365DD2F5A701C582D52D7AD2B8 ft=0 fh=0000000000000000 vn="JS/Astromenda.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\Rocket\User Data\Default\Extensions\ibnjmihbbanannlbobkbmnmckjnmdnom\0.2.4_1\js\background.js.vir"
sh=2A52439FB823A672620DF3D634E33A9ADCE74E7C ft=0 fh=0000000000000000 vn="JS/Astromenda.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\Rocket\User Data\Default\Extensions\ibnjmihbbanannlbobkbmnmckjnmdnom\0.2.4_1\js\bootstrap.js.vir"
sh=0CE9A2B76440CB57A2FBF700EA345D24AAEAFB17 ft=0 fh=0000000000000000 vn="JS/Astromenda.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\Rocket\User Data\Default\Extensions\ibnjmihbbanannlbobkbmnmckjnmdnom\0.2.4_1\js\newtab.js.vir"
sh=6E2F49F9CA86FE8D9613E02FB7159B376AEF40C8 ft=0 fh=0000000000000000 vn="JS/Astromenda.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\Rocket\User Data\Default\Extensions\ibnjmihbbanannlbobkbmnmckjnmdnom\0.2.4_1\js\opentab.js.vir"
sh=C7438D942F5D66F71822D807D890EA30B68DEA5E ft=1 fh=cea6bc5b719b3fa1 vn="Variante von Win32/DealPly.M evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\SaveSense\SaveSenseUpdateVer.exe.vir"
sh=0CDDBFAC8EF5146B6A827219D016E1E9AA438C42 ft=0 fh=0000000000000000 vn="JS/Kryptik.ATB Trojaner" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\Google\Chrome\User Data\Default\Extensions\plmdkolkgokhiflhdddcfnbebofneifp\1.8\v.js.vir"
sh=A148FE16E5DB3B6F67AC7BFEB0A918BE9E3ABEC7 ft=1 fh=3d0f5b1f98dab79f vn="Win32/Verti.K evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\StormWatch\StormWatchApp.exe.vir"
sh=2707BE89CD8B0CF675180163D0BE9B65447DEAA1 ft=0 fh=0000000000000000 vn="JS/Astromenda.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\Vosteran\Application\31.0.1650.23\Extensions\Vosteran.crx.vir"
sh=A89A768C4ECBE9EFFAE22162944E8A776C94153E ft=0 fh=0000000000000000 vn="JS/Astromenda.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\Vosteran\Application\31.0.1650.23\Installer\chrome.7z.vir"
sh=E5A22D682B5B9C1F5AD1E1F7D98E685772BED8FC ft=0 fh=0000000000000000 vn="JS/Astromenda.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\Vosteran\User Data\Default\Extensions\bjaelnipcipenlfdoncdclohekeglkac\0.3.8_0\js\background.js.vir"
sh=F2A8917500E1C6B9E4ADD5299BAF66B57DD4EB63 ft=0 fh=0000000000000000 vn="JS/Astromenda.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\Vosteran\User Data\Default\Extensions\bjaelnipcipenlfdoncdclohekeglkac\0.3.8_0\js\bootstrap.js.vir"
sh=CE3159B58A6DFF52E43F2445A4E094B983DD0EBA ft=0 fh=0000000000000000 vn="JS/Astromenda.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\Vosteran\User Data\Default\Extensions\bjaelnipcipenlfdoncdclohekeglkac\0.3.8_0\js\newtab.js.vir"
sh=FD7368BFE59CB6D2E4853110A8BDE09937D30BFA ft=0 fh=0000000000000000 vn="JS/Astromenda.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Local\Vosteran\User Data\Default\Extensions\bjaelnipcipenlfdoncdclohekeglkac\0.3.8_0\js\opentab.js.vir"
sh=DFC204EC778E2F406D92CDC0D66CD9A91C56AFD5 ft=0 fh=0000000000000000 vn="JS/Kryptik.ATB Trojaner" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\Extensions\wculZ@S.edu\content\bg.js.vir"
sh=20509FA2B69F4F520808C47C8512FA95C6CCBD89 ft=1 fh=fbea23574f0e2b5a vn="Win32/VOPackage.AT evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Roaming\VOPackage\Uninstall.exe.vir"
sh=DB6975D3260B6B0A5E718EB43CDF8536D67D6E3E ft=1 fh=a02280cc354e021a vn="Variante von Win32/VOPackage.AV evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Roaming\VOPackage\VOsrv.exe.vir"
sh=77C41F7DE0C08A26E70826946D91A9DC9BDD1C33 ft=1 fh=eed3d5e2751d7146 vn="Variante von Win32/DealPly.U evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\******\AppData\Roaming\WSE_Vosteran\UpdateProc\UpdateTask.exe.vir"
sh=8B67C4946B050285FE89EFE36AB6DC2F7B3E2D2F ft=1 fh=d91722da20002316 vn="Variante von Win64/Riskware.NetFilter.F Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\WINDOWS\System32\drivers\netfilter64.sys.vir"
sh=3F07D47B33E637549BCA17455CB48F5BC83AAE9E ft=1 fh=e85f00dea0d5519e vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\WINDOWS\System32\drivers\{55bbc577-fb0b-4e77-8a51-e033716a9ead}Gw64.sys.vir"
sh=26852AF2A6DB4F6A499F73854B052C30EA553377 ft=1 fh=6043fa7df229486b vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\WINDOWS\System32\drivers\{820a714f-c526-4777-8e87-e9d6612e0938}Gw64.sys.vir"
sh=8643A3AFAF638E544CFE03DBEFC7B54DFA140BEC ft=1 fh=dff6abe5bc3fb4aa vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\WINDOWS\System32\drivers\{e7ea42ad-4fa4-4fce-a37a-c42931f721e3}w64.sys.vir"
sh=2B160B725103F03C553499A0FCC802833406360D ft=1 fh=2173bba019656767 vn="Variante von Win64/Adware.Adpeak.F Anwendung" ac=I fn="C:\FRST\Quarantine\C\Program Files (x86)\35556262-902E-49AE-8622-66E14F1F041C\arrmeapsie64.exe"
sh=0CFCD251E8842BDEF45E5B0B566B32DC3DE0241B ft=1 fh=664d8905e691ccb7 vn="Win32/BrowseFox.V evtl. unerwünschte Anwendung" ac=I fn="C:\FRST\Quarantine\C\ProgramData\e25f457c-9287-4f2d-b5a8-8cd714c55009\maintainer.bak"
sh=3F07D47B33E637549BCA17455CB48F5BC83AAE9E ft=1 fh=e85f00dea0d5519e vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\{55bbc577-fb0b-4e77-8a51-e033716a9ead}Gw64.sys-k.mbam"
sh=3F07D47B33E637549BCA17455CB48F5BC83AAE9E ft=1 fh=e85f00dea0d5519e vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\{55bbc577-fb0b-4e77-8a51-e033716a9ead}Gw64.sys-r.mbam"
sh=3F07D47B33E637549BCA17455CB48F5BC83AAE9E ft=1 fh=e85f00dea0d5519e vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\{55bbc577-fb0b-4e77-8a51-e033716a9ead}Gw64.sys-u.mbam"
sh=26852AF2A6DB4F6A499F73854B052C30EA553377 ft=1 fh=6043fa7df229486b vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\{820a714f-c526-4777-8e87-e9d6612e0938}Gw64.sys-k.mbam"
sh=26852AF2A6DB4F6A499F73854B052C30EA553377 ft=1 fh=6043fa7df229486b vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\{820a714f-c526-4777-8e87-e9d6612e0938}Gw64.sys-r.mbam"
sh=26852AF2A6DB4F6A499F73854B052C30EA553377 ft=1 fh=6043fa7df229486b vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\{820a714f-c526-4777-8e87-e9d6612e0938}Gw64.sys-u.mbam"
sh=8643A3AFAF638E544CFE03DBEFC7B54DFA140BEC ft=1 fh=dff6abe5bc3fb4aa vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\{e7ea42ad-4fa4-4fce-a37a-c42931f721e3}w64.sys-k.mbam"
sh=8643A3AFAF638E544CFE03DBEFC7B54DFA140BEC ft=1 fh=dff6abe5bc3fb4aa vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\{e7ea42ad-4fa4-4fce-a37a-c42931f721e3}w64.sys-r.mbam"
sh=8643A3AFAF638E544CFE03DBEFC7B54DFA140BEC ft=1 fh=dff6abe5bc3fb4aa vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\{e7ea42ad-4fa4-4fce-a37a-c42931f721e3}w64.sys-u.mbam"
sh=3F07D47B33E637549BCA17455CB48F5BC83AAE9E ft=1 fh=e85f00dea0d5519e vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\Users\All Users\Malwarebytes\Malwarebytes Anti-Malware\{55bbc577-fb0b-4e77-8a51-e033716a9ead}Gw64.sys-k.mbam"
sh=3F07D47B33E637549BCA17455CB48F5BC83AAE9E ft=1 fh=e85f00dea0d5519e vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\Users\All Users\Malwarebytes\Malwarebytes Anti-Malware\{55bbc577-fb0b-4e77-8a51-e033716a9ead}Gw64.sys-r.mbam"
sh=3F07D47B33E637549BCA17455CB48F5BC83AAE9E ft=1 fh=e85f00dea0d5519e vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\Users\All Users\Malwarebytes\Malwarebytes Anti-Malware\{55bbc577-fb0b-4e77-8a51-e033716a9ead}Gw64.sys-u.mbam"
sh=26852AF2A6DB4F6A499F73854B052C30EA553377 ft=1 fh=6043fa7df229486b vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\Users\All Users\Malwarebytes\Malwarebytes Anti-Malware\{820a714f-c526-4777-8e87-e9d6612e0938}Gw64.sys-k.mbam"
sh=26852AF2A6DB4F6A499F73854B052C30EA553377 ft=1 fh=6043fa7df229486b vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\Users\All Users\Malwarebytes\Malwarebytes Anti-Malware\{820a714f-c526-4777-8e87-e9d6612e0938}Gw64.sys-r.mbam"
sh=26852AF2A6DB4F6A499F73854B052C30EA553377 ft=1 fh=6043fa7df229486b vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\Users\All Users\Malwarebytes\Malwarebytes Anti-Malware\{820a714f-c526-4777-8e87-e9d6612e0938}Gw64.sys-u.mbam"
sh=8643A3AFAF638E544CFE03DBEFC7B54DFA140BEC ft=1 fh=dff6abe5bc3fb4aa vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\Users\All Users\Malwarebytes\Malwarebytes Anti-Malware\{e7ea42ad-4fa4-4fce-a37a-c42931f721e3}w64.sys-k.mbam"
sh=8643A3AFAF638E544CFE03DBEFC7B54DFA140BEC ft=1 fh=dff6abe5bc3fb4aa vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\Users\All Users\Malwarebytes\Malwarebytes Anti-Malware\{e7ea42ad-4fa4-4fce-a37a-c42931f721e3}w64.sys-r.mbam"
sh=8643A3AFAF638E544CFE03DBEFC7B54DFA140BEC ft=1 fh=dff6abe5bc3fb4aa vn="Variante von Win64/BrowseFox.CG evtl. unerwünschte Anwendung" ac=I fn="C:\Users\All Users\Malwarebytes\Malwarebytes Anti-Malware\{e7ea42ad-4fa4-4fce-a37a-c42931f721e3}w64.sys-u.mbam"
sh=AA92BC878974CB71E4592F49A70A92CE475B7D40 ft=0 fh=0000000000000000 vn="JS/Kryptik.ATB Trojaner" ac=I fn="C:\Users\******\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpnmncjdpbehanjnmpmodhbheohhcpdn\182\xq.js"
sh=29784503483FA39B69DC037416155FE028EE58DE ft=0 fh=0000000000000000 vn="JS/Kryptik.ATB Trojaner" ac=I fn="C:\Users\******\AppData\Local\Google\Chrome\User Data\Default\Extensions\peconnficnlajdpgfcjfmhjibkoijlbp\184\yRkM.js"
sh=E2B622E9815E9BC537F2BFF723EEA340BFB7EB6A ft=0 fh=0000000000000000 vn="Win32/BrowseFox.Q evtl. unerwünschte Anwendung" ac=I fn="C:\Users\******\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnaeackconkmhppdoemdbhohlkbjfggd\1.0.1_0\background.js"
sh=73BC47D655C4BE86ACF2015C9828A7EB01188827 ft=0 fh=0000000000000000 vn="Win32/BrowseFox.Q evtl. unerwünschte Anwendung" ac=I fn="C:\Users\******\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnaeackconkmhppdoemdbhohlkbjfggd\1.0.1_0\content.js"
sh=AA92BC878974CB71E4592F49A70A92CE475B7D40 ft=0 fh=0000000000000000 vn="JS/Kryptik.ATB Trojaner" ac=I fn="C:\Users\******\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpnmncjdpbehanjnmpmodhbheohhcpdn\182\xq.js"
sh=29784503483FA39B69DC037416155FE028EE58DE ft=0 fh=0000000000000000 vn="JS/Kryptik.ATB Trojaner" ac=I fn="C:\Users\******\AppData\Local\Google\Chrome\User Data\Default\Extensions\peconnficnlajdpgfcjfmhjibkoijlbp\184\yRkM.js"
sh=7424E5A3EEA00C4B57D4675A112033A01F146794 ft=0 fh=0000000000000000 vn="Win32/BrowseFox.X evtl. unerwünschte Anwendung" ac=I fn="C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\{e7ea42ad-4fa4-4fce-a37a-c42931f721e3}.xpi"
sh=995EB7699FFA691FB537CC4B6AD5D330B3DB3DF1 ft=0 fh=0000000000000000 vn="JS/Kryptik.ATB Trojaner" ac=I fn="C:\Users\******\AppData\Roaming\Mozilla\Firefox\Profiles\5pzluep6.default-1407710099692\extensions\staged\z@buV6LBX3.net\content\bg.js"
sh=3972109B1974BEA7EAA2CFCAF92269548E9C2E72 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\******\Desktop\Alte Firefox-Daten\4zo20cia.default\extensions\aba3db73-c9bd-47b3-99c1-ebaf0b0b87ad@c4364137-5195-4339-81dd-ebf2e8579728.com\extensionData\plugins\91_monetizationLoader.js.js"
sh=F5AE01197AF9D8425D7A5FF6B76BFE06AD8CF248 ft=0 fh=0000000000000000 vn="OSX/Adware.Genieo.A Anwendung" ac=I fn="C:\Users\******\Downloads\installtinyumbrella.dmg"
sh=EC9525C36D090176AB061CE64CB6060CE39ACA1D ft=1 fh=1083b042f0fb3be7 vn="Variante von Win32/InstallCore.QD evtl. unerwünschte Anwendung" ac=I fn="C:\Users\******\Downloads\tinyumbrella.exe"
Eine Frage: Hätte ich bei ESET nicht auswählen sollen, dass er die Infektionen auch gleich beseitigt?
Vielen Dank bisher und viele Grüße! |