Also hier die ADCleaner.txt Code:
# AdwCleaner v5.201 - Bericht erstellt am 10/07/2016 um 08:06:56
# Aktualisiert am 30/06/2016 von ToolsLib
# Datenbank : 2016-07-09.2 [Server]
# Betriebssystem : Windows 7 Professional Service Pack 1 (X64)
# Benutzername : Mas - MAS-HP
# Gestartet von : C:\Users\Mas\Desktop\AdwCleaner_5.201.exe
# Option : Löschen
# Unterstützung : https://toolslib.net/forum
***** [ Dienste ] *****
***** [ Ordner ] *****
[-] Ordner gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverWhiz
[-] Ordner gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileOpener
[-] Ordner gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoPlayer
[#] Ordner gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoPlayer
[-] Ordner gelöscht : C:\Program Files (x86)\DriverWhiz
[-] Ordner gelöscht : C:\Program Files (x86)\jfilemanager
[-] Ordner gelöscht : C:\Program Files (x86)\Tweaks
[-] Ordner gelöscht : C:\Program Files (x86)\VideoPlayer
[#] Ordner gelöscht : C:\Program Files (x86)\JFileManager
[#] Ordner gelöscht : C:\Program Files (x86)\VideoPlayer
[-] Ordner gelöscht : C:\Users\Mas\AppData\Local\Temp\OCS
[-] Ordner gelöscht : C:\Users\Mas\AppData\Roaming\1H1Q
[-] Ordner gelöscht : C:\Users\Mas\AppData\Roaming\DealPly
[-] Ordner gelöscht : C:\Program Files\Uninstaller
***** [ Dateien ] *****
[-] Datei gelöscht : C:\windows\SysNative\drivers\netfilter64.sys
***** [ DLLs ] *****
***** [ WMI ] *****
***** [ Verknüpfungen ] *****
***** [ Aufgabenplanung ] *****
[-] Geplante Aufgabe gelöscht : Dealply
[-] Geplante Aufgabe gelöscht : DealPly
***** [ Registrierungsdatenbank ] *****
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\Record\{425E7597-03A2-338D-B72A-0E51FFE77A7E}
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\Record\{915BB7D5-082E-3B91-B1E0-45B5FDE01F24}
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\Record\{2009AF2F-5786-3067-8799-B97F7832FDD6}
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\Record\{FB2E65F4-5687-33EF-9BBF-4E3C9C98D3B9}
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\Applications\iLividSetup_D-r429-t-bf.exe
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\CLSID\{00B11DA2-75ED-4364-ABA5-9A95B1F5E946}
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\CLSID\{10AD2C61-0898-4348-8600-14A342F22AC3}
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
[-] Wert gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}]
[-] Wert gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
[-] Wert gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
[-] Schlüssel gelöscht : HKCU\Software\distromatic
[-] Schlüssel gelöscht : HKCU\Software\DriverWhiz
[-] Schlüssel gelöscht : HKCU\Software\eSupport.com
[-] Schlüssel gelöscht : HKCU\Software\InstalledThirdPartyPrograms
[-] Schlüssel gelöscht : HKCU\Software\OCS
[-] Schlüssel gelöscht : HKLM\SOFTWARE\JFileManager
[-] Schlüssel gelöscht : HKLM\SOFTWARE\VideoPlayer
[-] Schlüssel gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\File Opener Packages
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DMUninstaller
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\JFileManager
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Tweaks FileOpener
[-] Schlüssel gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VideoPlayer
[-] Schlüssel gelöscht : [x64] HKLM\SOFTWARE\CouponDownloader
[-] Schlüssel gelöscht : [x64] HKLM\SOFTWARE\InstalledThirdPartyPrograms
[-] Schlüssel gelöscht : [x64] HKLM\SOFTWARE\LevelQualityWatcher
[-] Schlüssel gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964
[-] Schlüssel gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467
[-] Wert gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{98198916-D35F-427E-98AF-2CBE45B48F1A}]
[-] Wert gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{78DCC148-34C5-4F57-8238-266B4C421FA7}]
[-] Schlüssel gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Shared Tools\MsConfig\StartupReg\iLivid
[-] Schlüssel gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Shared Tools\MsConfig\StartupReg\Optimizer Pro
[-] Schlüssel gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\IePluginServices
[-] Schlüssel gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\rqpbhevlkc64
[-] Schlüssel gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\WajamUpdaterV3
[-] Schlüssel gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Wpm
***** [ Internetbrowser ] *****
[-] [C:\Users\Mas\AppData\Roaming\Mozilla\Firefox\Profiles\cvlvrze3.default\prefs.js] gelöscht : user_pref("extensions.crossrider.bic", "14219eae5eba28a7ba9abde1f90840f2");
[-] [C:\Users\Mas\AppData\Roaming\Mozilla\Firefox\Profiles\cvlvrze3.default\prefs.js] gelöscht : user_pref("extensions.helperbar.DockingPositionDown", false);
[-] [C:\Users\Mas\AppData\Roaming\Mozilla\Firefox\Profiles\cvlvrze3.default\prefs.js] gelöscht : user_pref("extensions.helperbar.SmartbarDisabled", false);
[-] [C:\Users\Mas\AppData\Roaming\Mozilla\Firefox\Profiles\cvlvrze3.default\prefs.js] gelöscht : user_pref("extensions.helperbar.SmartbarStateMinimaized", false);
[-] [C:\Users\Mas\AppData\Roaming\Mozilla\Firefox\Profiles\cvlvrze3.default\prefs.js] gelöscht : user_pref("extensions.helperbar.Visibility", true);
[-] [C:\Users\Mas\AppData\Roaming\Mozilla\Firefox\Profiles\cvlvrze3.default\prefs.js] gelöscht : user_pref("extensions.helperbar.countryiso", "de");
[-] [C:\Users\Mas\AppData\Roaming\Mozilla\Firefox\Profiles\cvlvrze3.default\prefs.js] gelöscht : user_pref("extensions.helperbar.downloadprovider", "tuguucr");
[-] [C:\Users\Mas\AppData\Roaming\Mozilla\Firefox\Profiles\cvlvrze3.default\prefs.js] gelöscht : user_pref("extensions.helperbar.installationid", "0835c2e9-9075-6cb0-a41d-a136f1e4a0ce");
[-] [C:\Users\Mas\AppData\Roaming\Mozilla\Firefox\Profiles\cvlvrze3.default\prefs.js] gelöscht : user_pref("extensions.helperbar.installdate", "02/11/2013");
[-] [C:\Users\Mas\AppData\Roaming\Mozilla\Firefox\Profiles\cvlvrze3.default\prefs.js] gelöscht : user_pref("extensions.helperbar.publisher", "tuguu");
[-] [C:\Users\Mas\AppData\Roaming\Mozilla\Firefox\Profiles\cvlvrze3.default\prefs.js] gelöscht : user_pref("extensions.quick_start.enable_search1", false);
[-] [C:\Users\Mas\AppData\Roaming\Mozilla\Firefox\Profiles\cvlvrze3.default\prefs.js] gelöscht : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false);
*************************
:: "Tracing" Schlüssel gelöscht
:: Proxy Einstellungen zurückgesetzt
:: Winsock Einstellungen zurückgesetzt
:: Internet Explorer Richtlinien gelöscht
:: Chrome Richtlinien gelöscht
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [7461 Bytes] - [10/07/2016 08:06:56]
C:\AdwCleaner\AdwCleaner[S1].txt - [7868 Bytes] - [10/07/2016 08:04:28]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [7607 Bytes] ########## So, dann die mbam.txt Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 10.07.2016
Suchlaufzeit: 08:15
Protokolldatei: mbam.txt
Administrator: Ja
Version: 2.2.1.1043
Malware-Datenbank: v2016.07.10.02
Rootkit-Datenbank: v2016.05.27.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Mas
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 326942
Abgelaufene Zeit: 23 Min., 11 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(keine bösartigen Elemente erkannt)
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 15
PUP.Optional.Lyrics, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\SuperLyrics-16, In Quarantäne, [203a0022099180b69cc07138907347b9],
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{16C5AB29-75CA-4850-A0FD-245FE8546F62}, In Quarantäne, [500a3ce6dac00b2b4f2af8a7da29d828],
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{19086A2E-44AE-4772-B8C1-87A1A9ECEA21}, In Quarantäne, [114933ef0e8c48ee4f2a920d3ac956aa],
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1D800FDE-6609-451D-9FAD-64BD6E8B4746}, In Quarantäne, [99c1b76b4a5056e05227bee1c93a06fa],
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2D4575AB-36A8-4EA6-B8E9-C3883D51FDCF}, In Quarantäne, [5bff4ed42674f93d98e016890cf746ba],
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{50473079-F46D-44A5-96B1-1D35C183D7CF}, In Quarantäne, [104a34ee980280b6a8d0a5fac83ba55b],
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8EF802BE-EF86-43F5-8067-4936C022D36A}, In Quarantäne, [1d3d6db5841637fffc7cf8a7d1321ce4],
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8F508DC6-1484-4E08-A622-9DD393F099C0}, In Quarantäne, [80dad64c722850e67bfecbd432d1c040],
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{AD24F852-9D76-4B2A-A6E5-671FDE5B517D}, In Quarantäne, [104a59c9891166d0d0a8c8d78380b848],
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B2041DD1-320D-44FF-BE29-6B55B6461BDE}, In Quarantäne, [01595fc34357a88eea8ff0af7b8840c0],
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B56B62F4-36A6-4D58-97D7-AB5617E8E6B8}, In Quarantäne, [94c65fc33e5c999dde9b574854af7f81],
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BBB0ED90-8A6D-4870-80B8-8BEE73C92FE3}, In Quarantäne, [71e9ca58b9e18caa483038678b78da26],
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CB08ED3D-E766-4879-A4B0-5D8ACB1B6D64}, In Quarantäne, [3b1fe53de2b8979fec8cf7a8db28e719],
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E0898125-E724-40A9-8384-6821929CAD10}, In Quarantäne, [08521e04128860d680f9633c0df6817f],
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E8D94377-8AD5-4732-BE9F-201F76E6B397}, In Quarantäne, [e47632f05f3b072f81f8346bb44fe11f],
Registrierungswerte: 14
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{16C5AB29-75CA-4850-A0FD-245FE8546F62}|AppName, SuperLyrics-16-enabler.exe-codedownloader.exe, In Quarantäne, [500a3ce6dac00b2b4f2af8a7da29d828]
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{19086A2E-44AE-4772-B8C1-87A1A9ECEA21}|AppName, Plus-HD-1.3-enabler.exe-codedownloader.exe, In Quarantäne, [114933ef0e8c48ee4f2a920d3ac956aa]
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1D800FDE-6609-451D-9FAD-64BD6E8B4746}|AppName, Plus-HD-1.3-enabler.exe-codedownloader.exe, In Quarantäne, [99c1b76b4a5056e05227bee1c93a06fa]
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2D4575AB-36A8-4EA6-B8E9-C3883D51FDCF}|AppName, Plus-HD-1.3-enabler.exe-buttonutil.exe, In Quarantäne, [5bff4ed42674f93d98e016890cf746ba]
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{50473079-F46D-44A5-96B1-1D35C183D7CF}|AppName, Plus-HD-1.3-enabler.exe-buttonutil.exe, In Quarantäne, [104a34ee980280b6a8d0a5fac83ba55b]
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8EF802BE-EF86-43F5-8067-4936C022D36A}|AppName, SuperLyrics-16-enabler.exe-buttonutil.exe, In Quarantäne, [1d3d6db5841637fffc7cf8a7d1321ce4]
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8F508DC6-1484-4E08-A622-9DD393F099C0}|AppName, Plus-HD-1.3-enabler.exe-codedownloader.exe, In Quarantäne, [80dad64c722850e67bfecbd432d1c040]
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{AD24F852-9D76-4B2A-A6E5-671FDE5B517D}|AppName, Plus-HD-1.3-enabler.exe-buttonutil.exe, In Quarantäne, [104a59c9891166d0d0a8c8d78380b848]
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B2041DD1-320D-44FF-BE29-6B55B6461BDE}|AppName, Plus-HD-1.3-enabler.exe-codedownloader.exe, In Quarantäne, [01595fc34357a88eea8ff0af7b8840c0]
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B56B62F4-36A6-4D58-97D7-AB5617E8E6B8}|AppName, Plus-HD-1.3-enabler.exe-codedownloader.exe, In Quarantäne, [94c65fc33e5c999dde9b574854af7f81]
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BBB0ED90-8A6D-4870-80B8-8BEE73C92FE3}|AppName, Plus-HD-1.3-enabler.exe-buttonutil.exe, In Quarantäne, [71e9ca58b9e18caa483038678b78da26]
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CB08ED3D-E766-4879-A4B0-5D8ACB1B6D64}|AppName, Plus-HD-1.3-enabler.exe-buttonutil.exe, In Quarantäne, [3b1fe53de2b8979fec8cf7a8db28e719]
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E0898125-E724-40A9-8384-6821929CAD10}|AppName, Plus-HD-1.3-enabler.exe-codedownloader.exe, In Quarantäne, [08521e04128860d680f9633c0df6817f]
PUP.Optional.CrossRider, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E8D94377-8AD5-4732-BE9F-201F76E6B397}|AppName, SuperLyrics-16-enabler.exe-codedownloader.exe, In Quarantäne, [e47632f05f3b072f81f8346bb44fe11f]
Registrierungsdaten: 4
PUP.Optional.SnapDo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|Default, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=0835c2e9-9075-6cb0-a41d-a136f1e4a0ce&searchtype=ds&q={searchTerms}&installDate=02/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=0835c2e9-9075-6cb0-a41d-a136f1e4a0ce&searchtype=ds&q={searchTerms}&installDate=02/11/2013),Ersetzt,[6feb49d96c2ea393ec0ced8b8381fd03]
PUP.Optional.SnapDo, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=0835c2e9-9075-6cb0-a41d-a136f1e4a0ce&searchtype=ds&q={searchTerms}&installDate=02/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=0835c2e9-9075-6cb0-a41d-a136f1e4a0ce&searchtype=ds&q={searchTerms}&installDate=02/11/2013),Ersetzt,[372360c2dac0f640af47294f61a3b749]
PUP.Optional.SnapDo, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Bar, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=0835c2e9-9075-6cb0-a41d-a136f1e4a0ce&searchtype=ds&q={searchTerms}&installDate=02/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=0835c2e9-9075-6cb0-a41d-a136f1e4a0ce&searchtype=ds&q={searchTerms}&installDate=02/11/2013),Ersetzt,[4b0fae74ff9bb58104f278005ca81ae6]
PUP.Optional.SnapDo, HKU\S-1-5-21-2856982752-327615534-2607958787-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|Default, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=0835c2e9-9075-6cb0-a41d-a136f1e4a0ce&searchtype=ds&q={searchTerms}&installDate=02/11/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=0835c2e9-9075-6cb0-a41d-a136f1e4a0ce&searchtype=ds&q={searchTerms}&installDate=02/11/2013),Ersetzt,[332748da8a10bb7b1bdcf484887c50b0]
Ordner: 17
Rogue.Multiple, C:\ProgramData\374311380, In Quarantäne, [b4a637eb7f1b181e34346335ce341de3],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\Aartemis, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\Dealply, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\exe, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\Feven DE, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\HDplus, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\Lollipop, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\MyBackupPc, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\OptimizerPro, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\PlusHD shopping, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\Qone8, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\SaltarSmart, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\SpeedUpMyPc, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\Wajam, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
Dateien: 117
PUP.Optional.Bandoo, C:\$Recycle.Bin\S-1-5-21-2856982752-327615534-2607958787-1001\$RR81W7M\iLivid.exe, In Quarantäne, [5cfe34ee7c1e89ad673a32667e86d22e],
PUP.Optional.Bandoo, C:\$Recycle.Bin\S-1-5-21-2856982752-327615534-2607958787-1001\$RR81W7M\libeay32.dll, In Quarantäne, [eb6ff2308a107abc554ca7f146be8b75],
PUP.Optional.Bandoo, C:\$Recycle.Bin\S-1-5-21-2856982752-327615534-2607958787-1001\$RR81W7M\msvcp100.dll, In Quarantäne, [73e7ae74940624124c557325ea1a7888],
PUP.Optional.Bandoo, C:\$Recycle.Bin\S-1-5-21-2856982752-327615534-2607958787-1001\$RR81W7M\msvcr100.dll, In Quarantäne, [89d138ea2179979f346d910736cedc24],
PUP.Optional.Bandoo, C:\$Recycle.Bin\S-1-5-21-2856982752-327615534-2607958787-1001\$RR81W7M\python27.dll, In Quarantäne, [65f58d950595171f346d8315669e7c84],
PUP.Optional.Bandoo, C:\$Recycle.Bin\S-1-5-21-2856982752-327615534-2607958787-1001\$RR81W7M\QtCore4.dll, In Quarantäne, [8cced64cc5d556e07d247f195da77888],
PUP.Optional.Bandoo, C:\$Recycle.Bin\S-1-5-21-2856982752-327615534-2607958787-1001\$RR81W7M\QtGui4.dll, In Quarantäne, [2436140e54460f27752c692f9a6ae21e],
PUP.Optional.Bandoo, C:\$Recycle.Bin\S-1-5-21-2856982752-327615534-2607958787-1001\$RR81W7M\QtNetwork4.dll, In Quarantäne, [90caea3888122e086839a7f1b15321df],
PUP.Optional.Bandoo, C:\$Recycle.Bin\S-1-5-21-2856982752-327615534-2607958787-1001\$RR81W7M\QtWebKit4.dll, In Quarantäne, [0b4f78aaf6a4f343b9e8732553b1fd03],
PUP.Optional.Bandoo, C:\$Recycle.Bin\S-1-5-21-2856982752-327615534-2607958787-1001\$RR81W7M\QtXml4.dll, In Quarantäne, [0753af739ffba492dbc60494a75d7090],
PUP.Optional.Bandoo, C:\$Recycle.Bin\S-1-5-21-2856982752-327615534-2607958787-1001\$RR81W7M\ssleay32.dll, In Quarantäne, [fc5e80a2d7c396a04f52b9dfea1ad62a],
PUP.Optional.CouponDownloader, C:\Users\Mas\AppData\Local\Temp\nsfE583.tmp.exe, In Quarantäne, [2535be64efabf04654a8a17ff90727d9],
Trojan.Dropper.NS, C:\Users\Mas\AppData\Local\Temp\is1242154493\257202203_stp.EXE, In Quarantäne, [db7f64be1c7e88ae9954f33fc242a15f],
PUP.Optional.CouponDownloader, C:\Users\Mas\AppData\Local\Temp\is1242154493\257202546_stp\coupondownloader.exe, In Quarantäne, [3c1e968c237752e4898fa09efa0a3ac6],
PUP.Optional.V9, C:\Users\Mas\AppData\Local\Temp\794138237\794138237.zipDir\qSE.exe, In Quarantäne, [c39780a25e3c1d19b0dad179946c7d83],
PUP.Optional.APNToolBar, C:\Users\Mas\AppData\Local\TempDIR\Offercast2821_NDV_.exe, In Quarantäne, [da808c96e1b9e74f9c396ebbea17a759],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\bin.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\Aartemis\info.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\position2A.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\aartemis.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\base.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\dealply.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\dosearches.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\feven.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\hdplus.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\lollipop.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\mypcbackup.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\optimizerpro.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\position1A.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\position2B.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\position2C.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\position3A.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\position3B.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\position3C.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\position3D.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\position4A.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\saltarsmart.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\speedupmypc.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\style.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\wajam.css, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\dealply-logo2.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\screen-vafmusic.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\bg_app.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\boton.jpg, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\boton_xl.jpg, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\bullet-short.gif, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\bullet-shortw.gif, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\bullet.gif, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\butpause.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\butplay.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\check-close.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\check.jpg, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\check.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\cross.jpg, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\dealply-logo-gris.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\dealply-logo.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\progress.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\progress_small.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\progress_small_bg.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\screen-geaudioconverter.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\screen-gevideoconverter.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\screen-ifish.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\screen-miul.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\screen-olivebrowser.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\screen-printpdf.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\screen-vafplayer.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\screen-zipper.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\show.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\speedupmypc-icon.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\speedupmypc-img.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\speedupmypc-img2.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\speedupmypc-logo.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\speedupmypc-logo2.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\wajam-big.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\wajam-img1-gris.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\wajam-img1-small.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\wajam-img1.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\wajam-img1a.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\wajam-img2-gris-small.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\wajam-img2-gris.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\wajam-img2.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\wajam-logo.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\wajam-logo2.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\wajam-logo3.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\hide.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\less.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\logo-win.jpg, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\lollipop-img.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\lollipop-logo-big.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\lollipop-logo.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\lollipop-logo2.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\more.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\mypcbackup.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\optimizerpro-img.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\optimizerpro-logo-big.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\optimizerpro-logo.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\css\images\percentage-bg.png, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\Dealply\info.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\exe\box.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\exe\close.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\exe\finish.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\exe\group.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\exe\instalando.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\exe\options.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\exe\welcome.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\Feven DE\info.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\HDplus\info.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\Lollipop\info.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\MyBackupPc\info.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\OptimizerPro\info.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\PlusHD shopping\info.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\Qone8\info.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\SaltarSmart\info.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\SpeedUpMyPc\info.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.BundleInstaller, C:\Users\Mas\AppData\Local\Temp\DM\bin\Wajam\info.html, In Quarantäne, [2b2f73af9cfe67cf3906f1be8a7818e8],
PUP.Optional.CrossRider, C:\Users\Mas\AppData\Roaming\Mozilla\Firefox\Profiles\cvlvrze3.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.crossrider.bic", "14219eae5eba28a7ba9abde1f90840f2");), Ersetzt,[7bdfba682773f6409de686138e764cb4]
PUP.Optional.SnapDo, C:\Users\Mas\AppData\Roaming\Mozilla\Firefox\Profiles\cvlvrze3.default\prefs.js, Gut: (), Schlecht: (user_pref("keyword.URL", "hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=0835c2e9-9075-6cb0-a41d-a136f1e4a0ce&searchtype=ds&installDate=02/11/2013&q=");), Ersetzt,[6bef4dd5009ab1852adf6f2b18ec53ad]
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) ...und das jrt.txt Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.7 (07.03.2016)
Operating System: Windows 7 Professional x64
Ran by Mas (Administrator) on 10.07.2016 at 9:28:47,42
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
File System: 18
Successfully deleted: C:\Users\Mas\AppData\Local\tempdir (Folder)
Successfully deleted: C:\Program Files\004 (Folder)
Successfully deleted: C:\Users\Mas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Mas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Mas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E93304AY (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Mas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EUZ7C3HW (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Mas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Mas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I63F7OTC (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Mas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Mas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YVLV21P1 (Temporary Internet Files Folder)
Successfully deleted: C:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder)
Successfully deleted: C:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder)
Successfully deleted: C:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E93304AY (Temporary Internet Files Folder)
Successfully deleted: C:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EUZ7C3HW (Temporary Internet Files Folder)
Successfully deleted: C:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder)
Successfully deleted: C:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I63F7OTC (Temporary Internet Files Folder)
Successfully deleted: C:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder)
Successfully deleted: C:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YVLV21P1 (Temporary Internet Files Folder)
Deleted the following from C:\Users\Mas\AppData\Roaming\Mozilla\Firefox\Profiles\cvlvrze3.default\prefs.js
user_pref(browser.newtabpage.pinned, [null,{\url\:\hxxp://www.tvtv.de/\,\title\:\tvtv.de – Alles andere ist nur Fernsehen | Startseite\},{\url\:\hxxps://startp
user_pref(extensions.crossrider.bic, 14219eae5eba28a7ba9abde1f90840f2);
user_pref(extensions.helperbar.publisher, tuguu);
user_pref(extensions.quick_start.sd.closeWindowWithLastTab_prev_state, false);
user_pref(keyword.URL, hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=0835c2e9-9075-6cb0-a41d-a136f1e4a0ce&searchtype=ds&installDate=02/11/2013&q=);
Registry: 4
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Search\\Default_Search_URL (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Search\\SearchAssistant (Registry Value)
Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} (Registry Key)
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 10.07.2016 at 9:31:35,51
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |