Malware + Startseitenänderung + Werbetab-Popups Guten Tag, ich habe letztens wohl eine falsche Datei erwischt und erst bei der Hälfte der Installation auf abbrechen geklickt und jetzt hab ich den Salat :headbang: Was ist passiert bzw. passiert? 1) Die Startseite hat sich geändert zu -> safebrowse.biz 1.1) Es öffnet sich PopUp-Werbung in den Tabs Was habe ich selber unternommen? 2) ZoneAlarm hat bei einem Komplettscan nichts entdeckt. 2.1) MalwareByte hat auch nichts erkannt. Jetzt nach 3 Tagen, hat es etwas gefunden. Sonstiges 3) Habe mir Tipps zu Safebrowse aus dem Internet geholt. Da nichts zum Deinstallieren da war, und auch nichts bei den Google Chrome Diensten, wurde ich später in der Verknüpfung selber fündig. 3.1) Nach dem "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe", gab es einen Anhängsel den ich gelöscht habe. Das Problem mit der Startseite war behoben für einen Tag, kam dann doch wieder, bis Malwarebyte heute etwas gefunden und bereinigt hat. 3.2) Das Letzte was nun noch über ist, ist die Popup-Werbung
Hier die Logs von MalwareByte Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 14.06.2016
Suchlaufzeit: 15:04
Protokolldatei: Pro1.txt
Administrator: Ja
Version: 2.2.1.1043
Malware-Datenbank: v2016.06.14.02
Rootkit-Datenbank: v2016.05.27.01
Lizenz: Testversion
Malware-Schutz: Aktiviert
Schutz vor bösartigen Websites: Aktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: DaUra
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 294395
Abgelaufene Zeit: 7 Min., 36 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(keine bösartigen Elemente erkannt)
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)
Registrierungswerte: 3
Hijack.AutoConfigURL.PrxySvrRST, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IPHLPSVC\PARAMETERS\PROXYMGR\{270E2D0E-8C28-46AC-9F21-5690F550B087}|AutoConfigUrl, hxxp://un-stop.info/wpad.dat?9220ab4c300d39419c6dfbac0076222f11320041, In Quarantäne, [f4e6f20a1a7fe05642ac1f9deb1724dc]
Hijack.AutoConfigURL.PrxySvrRST, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NLASVC\PARAMETERS\INTERNET\MANUALPROXIES, 0hxxp://un-stop.info/wpad.dat?9220ab4c300d39419c6dfbac0076222f11320041, In Quarantäne, [fae09a62cdcc053128c76953f70bb14f]
Hijack.AutoConfigURL.PrxySvrRST, HKU\S-1-5-21-3833861499-410864776-4231530817-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|AutoConfigUrl, hxxp://un-stop.info/wpad.dat?9220ab4c300d39419c6dfbac0076222f11320041, In Quarantäne, [ab2f01fb1b7e5adcf7f511abf70b3cc4]
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 0
(keine bösartigen Elemente erkannt)
Dateien: 0
(keine bösartigen Elemente erkannt)
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Detection, 14.06.2016 01:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, IP, 92.241.162.3, giraffetraffic.com, 64360, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 14.06.2016 01:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, IP, 92.241.162.3, giraffetraffic.com, 64360, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 14.06.2016 01:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, IP, 92.241.162.3, giraffetraffic.com, 64361, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Update, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Scheduler, IP Database, 2016.6.13.3, 2016.6.14.2,
Update, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.13.3, 2016.6.14.2,
Update, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.13.5, 2016.6.14.2,
Protection, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Scan, 14.06.2016 15:49, SYSTEM, DESKTOP-FASB6LE, Context, Start: 14.06.2016 15:04, Dauer: 7 Min. 36 Sek., Bedrohungssuchlauf, Abgeschlossen, 3 Malware-Erkennung, 0 Nicht-Malware-Erkennungen,
Protection, 14.06.2016 15:51, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Starting,
Protection, 14.06.2016 15:51, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Started,
Protection, 14.06.2016 15:51, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 14.06.2016 15:51, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
(end) Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Detection, 13.06.2016 01:09, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 54.208.53.86, zo1.november-lax.com, 65064, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 13.06.2016 01:09, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 54.208.53.86, zo1.november-lax.com, 65064, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 13.06.2016 01:16, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 52.20.36.222, zs1.november-lax.com, 49609, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 13.06.2016 01:16, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 52.20.36.222, zs1.november-lax.com, 49609, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 13.06.2016 02:39, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 146.148.46.20, www.liveadexchanger.com, 52748, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 13.06.2016 02:39, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 146.148.46.20, www.liveadexchanger.com, 52748, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 13.06.2016 02:39, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 146.148.46.20, www.liveadexchanger.com, 52749, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Update, 13.06.2016 10:34, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.12.4, 2016.6.13.2,
Protection, 13.06.2016 10:34, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 13.06.2016 10:34, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 13.06.2016 10:34, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 13.06.2016 10:34, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 13.06.2016 10:34, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 13.06.2016 10:34, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Update, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.12.6, 2016.6.13.2,
Update, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.13.2, 2016.6.13.3,
Protection, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Update, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Scheduler, IP Database, 2016.6.12.2, 2016.6.13.1,
Update, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.13.2, 2016.6.13.3,
Protection, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Update, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Scheduler, IP Database, 2016.6.13.1, 2016.6.13.3,
Update, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.13.3, 2016.6.13.4,
Protection, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Detection, 13.06.2016 21:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 52.204.54.103, zl1.november-lax.com, 53560, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 13.06.2016 21:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 52.204.54.103, zl1.november-lax.com, 53560, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 13.06.2016 21:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 52.204.54.103, zl1.november-lax.com, 53561, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 13.06.2016 22:52, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 23.21.252.84, sportsaddict.thewhizproducts.com, 56355, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 13.06.2016 22:52, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 23.21.252.84, sportsaddict.thewhizproducts.com, 56355, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 13.06.2016 22:52, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 23.21.252.84, sportsaddict.thewhizproducts.com, 56356, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Update, 13.06.2016 23:56, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.13.4, 2016.6.13.5,
Protection, 13.06.2016 23:56, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 13.06.2016 23:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 13.06.2016 23:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 13.06.2016 23:56, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 13.06.2016 23:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 13.06.2016 23:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
(end) Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Protection, 12.06.2016 13:07, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Starting,
Protection, 12.06.2016 13:07, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Started,
Protection, 12.06.2016 13:07, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 12.06.2016 13:07, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Update, 12.06.2016 13:07, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.11.3, 2016.6.12.1,
Update, 12.06.2016 13:08, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.11.4, 2016.6.12.2,
Protection, 12.06.2016 13:08, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 12.06.2016 13:08, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 12.06.2016 13:08, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 12.06.2016 13:08, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 12.06.2016 13:08, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 12.06.2016 13:08, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Scan, 12.06.2016 13:19, SYSTEM, DESKTOP-FASB6LE, Context, Start: 12.06.2016 13:08, Dauer: 10 Min. 55 Sek., Bedrohungssuchlauf, Abgeschlossen, 0 Malware-Erkennung, 0 Nicht-Malware-Erkennungen,
Update, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Scheduler, IP Database, 2016.6.10.1, 2016.6.12.1,
Update, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.12.1, 2016.6.12.2,
Protection, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Update, 12.06.2016 15:50, SYSTEM, DESKTOP-FASB6LE, Scheduler, IP Database, 2016.6.12.1, 2016.6.12.2,
Update, 12.06.2016 15:50, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.12.2, 2016.6.12.3,
Protection, 12.06.2016 15:50, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 12.06.2016 15:50, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 12.06.2016 15:50, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 12.06.2016 15:51, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 12.06.2016 15:51, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 12.06.2016 15:51, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Update, 12.06.2016 17:37, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.12.2, 2016.6.12.3,
Protection, 12.06.2016 17:37, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 12.06.2016 17:37, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 12.06.2016 17:37, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 12.06.2016 17:37, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 12.06.2016 17:37, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 12.06.2016 17:37, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Update, 12.06.2016 19:41, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.12.3, 2016.6.12.4,
Protection, 12.06.2016 19:41, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 12.06.2016 19:41, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 12.06.2016 19:41, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 12.06.2016 19:41, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 12.06.2016 19:41, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 12.06.2016 19:41, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Protection, 12.06.2016 19:42, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Starting,
Protection, 12.06.2016 19:42, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Started,
Protection, 12.06.2016 19:42, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 12.06.2016 19:42, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Update, 12.06.2016 19:56, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.12.4, 2016.6.12.5,
Protection, 12.06.2016 19:56, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 12.06.2016 19:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 12.06.2016 19:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 12.06.2016 19:56, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 12.06.2016 19:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 12.06.2016 19:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Update, 12.06.2016 23:27, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.12.5, 2016.6.12.6,
Update, 12.06.2016 23:27, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.12.3, 2016.6.12.4,
Protection, 12.06.2016 23:27, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 12.06.2016 23:27, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 12.06.2016 23:27, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 12.06.2016 23:27, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 12.06.2016 23:27, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 12.06.2016 23:28, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Detection, 12.06.2016 23:31, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 65.52.144.16, feed.helperbar.com, 56626, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 12.06.2016 23:31, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 65.52.144.16, feed.helperbar.com, 56626, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
Detection, 12.06.2016 23:31, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 65.52.144.16, feed.helperbar.com, 56627, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe,
(end) Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 12.06.2016
Suchlaufzeit: 13:08
Protokolldatei: Pro5.txt
Administrator: Ja
Version: 2.2.1.1043
Malware-Datenbank: v2016.06.12.02
Rootkit-Datenbank: v2016.05.27.01
Lizenz: Testversion
Malware-Schutz: Aktiviert
Schutz vor bösartigen Websites: Aktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: DaUra
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 294123
Abgelaufene Zeit: 10 Min., 55 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(keine bösartigen Elemente erkannt)
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)
Registrierungswerte: 0
(keine bösartigen Elemente erkannt)
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 0
(keine bösartigen Elemente erkannt)
Dateien: 0
(keine bösartigen Elemente erkannt)
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Starting,
Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Started,
Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Update, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Manual, Rootkit Database, 2016.2.8.1, 2016.5.27.1,
Update, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Manual, IP Database, 2016.2.8.1, 2016.6.10.1,
Update, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Manual, Remediation Database, 2016.2.12.1, 2016.5.25.1,
Update, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Manual, Domain Database, 2016.2.16.8, 2016.6.10.3,
Update, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Manual, Malware Database, 2016.2.16.6, 2016.6.11.1,
Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Scan, 11.06.2016 04:31, SYSTEM, DESKTOP-FASB6LE, Manual, Start: 11.06.2016 04:23, Dauer: 8 Min. 7 Sek., Bedrohungssuchlauf, Abgeschlossen, 0 Malware-Erkennung, 2 Nicht-Malware-Erkennungen,
Update, 11.06.2016 13:15, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.11.1, 2016.6.11.2,
Protection, 11.06.2016 13:15, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 11.06.2016 13:15, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 11.06.2016 13:15, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 11.06.2016 13:15, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 11.06.2016 13:16, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 11.06.2016 13:16, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Update, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.10.3, 2016.6.11.1,
Update, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.11.2, 2016.6.11.3,
Protection, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Update, 11.06.2016 17:04, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.11.1, 2016.6.11.2,
Protection, 11.06.2016 17:04, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 11.06.2016 17:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 11.06.2016 17:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 11.06.2016 17:04, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 11.06.2016 17:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 11.06.2016 17:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Update, 11.06.2016 17:52, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.11.2, 2016.6.11.3,
Protection, 11.06.2016 17:52, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 11.06.2016 17:52, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 11.06.2016 17:52, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 11.06.2016 17:52, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 11.06.2016 17:52, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 11.06.2016 17:53, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Update, 11.06.2016 19:55, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.11.3, 2016.6.11.4,
Protection, 11.06.2016 19:55, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting,
Protection, 11.06.2016 19:55, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 11.06.2016 19:55, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 11.06.2016 19:55, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success,
Protection, 11.06.2016 19:55, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting,
Protection, 11.06.2016 19:55, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started,
Protection, 11.06.2016 21:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping,
Protection, 11.06.2016 21:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped,
Protection, 11.06.2016 21:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Stopping,
Protection, 11.06.2016 21:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Stopped,
(end) Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 11.06.2016
Suchlaufzeit: 04:23
Protokolldatei: Pro7.txt
Administrator: Ja
Version: 2.2.1.1043
Malware-Datenbank: v2016.06.11.01
Rootkit-Datenbank: v2016.05.27.01
Lizenz: Testversion
Malware-Schutz: Aktiviert
Schutz vor bösartigen Websites: Aktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: DaUra
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 293949
Abgelaufene Zeit: 8 Min., 7 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(keine bösartigen Elemente erkannt)
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)
Registrierungswerte: 0
(keine bösartigen Elemente erkannt)
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 1
PUP.Optional.SpringFiles, C:\Users\DaUra\AppData\Roaming\SpringFiles, In Quarantäne, [97163bc0cecbe4521eeb4e67c14135cb],
Dateien: 1
PUP.Optional.ExpressFiles, C:\Users\DaUra\AppData\Local\Temp\BOpZGtX7FY.tmp, In Quarantäne, [14997f7c1386e650264863765aa731cf],
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) |