Bambalouni | 09.01.2015 16:51 | Ausgeführt.. Alle Schritte ausgeführt. Hier die Files...
MBMA: Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 09.01.2015
Scan Time: 10:03:38
Logfile: mbma.txt
Administrator: No
Version: 2.00.4.1028
Malware Database: v2015.01.09.08
Rootkit Database: v2015.01.07.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Nutzer
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 444310
Time Elapsed: 31 min, 24 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 11
PUP.Optional.CinemaPlus, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Cinema-P+-1.2, Quarantined, [095346af5b2e989ed58d334d768d2ad6],
PUP.Optional.BrowserExtensions.A, HKU\S-1-5-21-3560105611-281025289-2399811915-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\BROWSER EXTENSIONS, Quarantined, [77e543b2e5a464d2597b3b31a65d06fa],
PUP.Optional.CinemaPlus, HKU\S-1-5-21-3560105611-281025289-2399811915-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Cinema-P+-1.2, Quarantined, [2636c82dcabf46f0df837b054fb4a35d],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3560105611-281025289-2399811915-1004-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, Quarantined, [f4684baa4a3f1125c34524b311f355ab],
PUP.Optional.CinemaPlus, HKU\S-1-5-21-3560105611-281025289-2399811915-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Cinema-P+-1.2, Quarantined, [d8849e573455cb6bf66c750b16edf010],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3560105611-281025289-2399811915-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, Quarantined, [c4984fa693f6a59147c19641e71da55b],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3560105611-281025289-2399811915-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\19979, Quarantined, [60fc42b32c5d6bcb64546514b94a0ef2],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3560105611-281025289-2399811915-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\CinemaP, Quarantined, [66f60aeb7d0ca096e704680d7390dc24],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{11111111-1111-1111-1111-110611171162}, Quarantined, [421a9461b6d339fdf1a1aee69174d62a],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\CLASSES\CLSID\{11111111-1111-1111-1111-110611171162}, Quarantined, [421a9461b6d339fdf1a1aee69174d62a],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3560105611-281025289-2399811915-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{11111111-1111-1111-1111-110611171162}, Quarantined, [421a9461b6d339fdf1a1aee69174d62a],
Registry Values: 1
PUP.Optional.BrowserExtensions.A, HKU\S-1-5-21-3560105611-281025289-2399811915-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\BROWSER EXTENSIONS|SS_Ver, 2.2, Quarantined, [77e543b2e5a464d2597b3b31a65d06fa]
Registry Data: 0
(No malicious items detected)
Folders: 13
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\defaults, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\defaults\preferences, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\userCode, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\locale, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\locale\en-US, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin, Quarantined, [39231fd63257251149213e1338cb23dd],
Files: 97
PUP.Optional.Spigot, C:\Users\Mama&Papa\Downloads\YTD483Setup.exe, Quarantined, [d48805f01673152149f0c0fcaf526d93],
PUP.Optional.Spigot.A, C:\Users\Nutzer\AppData\Roaming\Mozilla\Firefox\Profiles\p36artnb.default\searchplugins\yahoo_ff.xml, Quarantined, [b5a7e015c5c41c1adea648205da660a0],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome.manifest, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\install.rdf, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\123c8955b5918df1d145e04e259f6a39.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\185526958dfe96cffd54f6643b611fb1.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\1b5b56ab4a521da6bc5264109d2125fd.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\4183d76289e001e7dddb894ad4d33cee.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\4398374838f2db7dc0410d4065383bb2.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\b18c50cf8470dc98d386d12417870818.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\background.html, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\browser.xul, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\dialog.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\ffCoreFilesIndex.txt, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\options.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\options.xul, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\search_dialog.xul, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\77e02089e27a5fa8882e1ca794d4d28a.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\09c46bafad315a0eb876ad1f36860f30.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\206c0f41a63b197e9e42d53c8cb8bbcc.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\2622d7651574f1813ad0348791a4065f.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\2da842483a145ca85781e63d103e1b07.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\327f348f7db14f01d96e7449632cd804.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\3371cc7b68717d163a259a19b17c05cd.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\380ca0163b00a328915e30a871843f5a.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\57c519fc5c5470e76a8c1b8e206f04a2.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\81d378dacf1d63162898970ab1d1857a.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\82eed0eb762a687040f072a1213a73a7.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\bc52b298209e38e1d0cf52cb2aea4c66.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\d6b168b0fbfa4373a7afdb752f7353b8.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\e129d8f2b6870fbcfaedff4d8a5cba5f.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\e2ff0354be3ec94938a156a2dfa0526e.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\f5b96bea423dad7c675bea5689712ebb.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\aca0e9aaa441e829091ffc8222e18650.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\2c448ba4622ae8976aec449c12c0cb25.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\4aef1d1c159758d46bd163fb8705db54.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\4bc6b9736c2a887b634ea2c33f6d1799.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\50c391c84d15d874fa730ba983a5cc9e.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\5da69dc2935437a8d89cee590f44998b.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\6b78d4474c1a5ff1857538b4f565f3f9.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\7b71f793a7488a97b5059cdabc3870c8.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\7efbf663bdac0110c60313ae0f2b6b28.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\84ea24ea008a8285f978cc176d3c1bab.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\8a30198cca81977602daffc71586868b.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\a051b83a7902f8834f443f8cbd8c5e28.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\a08e23c5625c9fe1bc1493fb15bb858a.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\aa1b7eb7e8a4f78d3d794884143f322e.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\dc6c2951c80a3c39aee494e8e1eaab89.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\e47d15a39dfa1cbcde43c2052834d4c9.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\e8067e1275b7abffbb3a7e9892f309e6.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\ea8800cb5f0b49157feabbc6e0bd7f81.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\ef353469d09c6fbcf74a11d4c2b8bb5c.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\f0e3c0d721401745d61537a731597bea.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\installer.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\defaults\preferences\prefs.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\manifest.xml, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins.json, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\17.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\102.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\119.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\13.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\14.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\16.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\190.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\195.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\220.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\221.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\226.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\244.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\246.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\345.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\354.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\356.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\4.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\47.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\64.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\7.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\78.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\9.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\91.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\userCode\background.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\userCode\extension.js, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\locale\en-US\translations.dtd, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\button1.png, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\button2.png, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\button3.png, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\button4.png, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\button5.png, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\crossrider_statusbar.png, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\icon128.png, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\icon16.png, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\icon24.png, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\icon48.png, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\panelarrow-up.png, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\popup.html, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\skin.css, Quarantined, [39231fd63257251149213e1338cb23dd],
PUP.Optional.CrossRider, C:\Users\Mama&Papa\AppData\Roaming\Mozilla\Firefox\Profiles\y56pekkl.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\update.css, Quarantined, [39231fd63257251149213e1338cb23dd],
Physical Sectors: 0
(No malicious items detected)
(end) ADW-Cleaner:
AdwCleaner Logfile: Code:
# AdwCleaner v4.107 - Bericht erstellt am 09/01/2015 um 13:16:56
# Aktualisiert 07/01/2015 von Xplode
# Database : 2015-01-03.1 [Live]
# Betriebssystem : Windows 7 Professional Service Pack 1 (64 bits)
# Benutzername : Nutzer - NUTZER-PC
# Gestartet von : C:\Users\Mama&Papa\Downloads\AdwCleaner_4.107.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
***** [ Tasks ] *****
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.17496
-\\ Mozilla Firefox v34.0 (x86 de)
-\\ Google Chrome v39.0.2171.95
*************************
AdwCleaner[R0].txt - [6967 octets] - [14/09/2014 22:05:41]
AdwCleaner[R1].txt - [940 octets] - [09/01/2015 13:09:29]
AdwCleaner[S0].txt - [6211 octets] - [14/09/2014 22:08:27]
AdwCleaner[S1].txt - [864 octets] - [09/01/2015 13:16:56]
########## EOF - \AdwCleaner\AdwCleaner[S1].txt - [923 octets] ########## --- --- ---
[/CODE]
JRT: Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.1 (12.28.2014:1)
OS: Windows 7 Professional x64
Ran by Nutzer on 09.01.2015 at 16:26:22,30
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ FireFox
Emptied folder: C:\Users\Nutzer\AppData\Roaming\mozilla\firefox\profiles\p36artnb.default\minidumps [13 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 09.01.2015 at 16:32:57,09
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Uninstall.exe wird vom Virenscanner weiterhin zwei Mal gefunden. Der dritte Virus dagegen ist weg. |