Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Scan-Datum: 18.01.18
Scan-Zeit: 10:24
Protokolldatei: 65746e8c-fc31-11e7-8ffc-08606e70476e.json
Administrator: Ja
-Softwaredaten-
Version: 3.3.1.2183
Komponentenversion: 1.0.262
Version des Aktualisierungspakets: 1.0.3721
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 10 (Build 16299.192)
CPU: x64
Dateisystem: NTFS
Benutzer: test-PC\test
-Scan-Übersicht-
Scan-Typ: Bedrohungs-Scan
Ergebnis: Abgeschlossen
Gescannte Objekte: 313769
Erkannte Bedrohungen: 162
In die Quarantäne verschobene Bedrohungen: 162
Abgelaufene Zeit: 3 Min., 57 Sek.
-Scan-Optionen-
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Erkennung
PUM: Erkennung
-Scan-Details-
Prozess: 0
(keine bösartigen Elemente erkannt)
Modul: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 10
PUP.Optional.MediaDrug, HKU\S-1-5-21-2817266910-149042844-4178602098-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\4C6927B3-61F1-4EBF-A5C7-68B60E4F40B9, In Quarantäne, [6129], [178126],1.0.3721
PUP.Optional.SweetSearch, HKU\S-1-5-21-2817266910-149042844-4178602098-1000\SOFTWARE\MOZILLA\EXTENDS, In Quarantäne, [11062], [243782],1.0.3721
PUP.Optional.TuneupPro, HKU\S-1-5-21-2817266910-149042844-4178602098-1000\SOFTWARE\TUNE\up, In Quarantäne, [702], [478984],1.0.3721
PUP.Optional.IHProtect, HKLM\SOFTWARE\WOW6432NODE\IHProtect, In Quarantäne, [12557], [239373],1.0.3721
Adware.IStartSurf, HKLM\SOFTWARE\WOW6432NODE\istartsurfSoftware, In Quarantäne, [638], [399553],1.0.3721
PUP.Optional.SupTab, HKLM\SOFTWARE\WOW6432NODE\supTab, In Quarantäne, [3235], [254403],1.0.3721
PUP.Optional.WPM, HKLM\SOFTWARE\WOW6432NODE\supWindowsMangerProtect, In Quarantäne, [8254], [245116],1.0.3721
PUP.Optional.ChipDe, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\chip 1-click download service, In Quarantäne, [8503], [463412],1.0.3721
PUP.Optional.WindowsMangerProtect, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, In Quarantäne, [13064], [245008],1.0.3721
PUP.Optional.TuneupPro, HKLM\SOFTWARE\WOW6432NODE\TUNE\up, In Quarantäne, [702], [478982],1.0.3721
Registrierungswert: 2
PUP.Optional.SweetSearch, HKU\S-1-5-21-2817266910-149042844-4178602098-1000\SOFTWARE\MOZILLA\EXTENDS|APPID, In Quarantäne, [11062], [243782],1.0.3721
PUP.Optional.SupTab, HKLM\SOFTWARE\WOW6432NODE\SUPTAB|PTID, In Quarantäne, [3235], [243702],1.0.3721
Registrierungsdaten: 2
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DEFAULTSCOPE, Ersetzt, [12153], [292819],1.0.3721
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DEFAULTSCOPE, Ersetzt, [12153], [292819],1.0.3721
Daten-Stream: 0
(keine bösartigen Elemente erkannt)
Ordner: 59
PUP.Optional.MindSpark, C:\USERS\TEST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZFBN0OPN.DEFAULT\VideoDownloadConverter_4z, In Quarantäne, [228], [240302],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\include\tools, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\js\module, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\include, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\js\pack, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\js\lib, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\es-419, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\defaults\preferences, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\it-CH, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-CA, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\en-US, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-CH, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-LU, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-BE, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\pt-BR, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\ru-MO, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\zh-CN, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\zh-TW, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\en, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\ru, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\es, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\tr, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\vi, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\fr, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\it, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\pl, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\skin, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\defaults, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\modules, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\USERS\TEST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZFBN0OPN.DEFAULT\EXTENSIONS\DEFAULT_NEWTABFF@GMAIL.COM, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.IHProtectUpDate, C:\ProgramData\IHProtectUpDate\update, In Quarantäne, [10758], [177733],1.0.3721
PUP.Optional.IHProtectUpDate, C:\PROGRAMDATA\IHPROTECTUPDATE, In Quarantäne, [10758], [177733],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\prepared, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\0, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\1, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\2, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\3, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\4, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\5, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\6, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\7, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\8, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\9, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\a, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\b, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\c, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\d, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\e, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7\f, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache\data7, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\queries, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\cache, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\log, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\USERS\TEST\APPDATA\LOCAL\MEDIADRUG, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\MEDIADRUG, In Quarantäne, [6129], [178126],1.0.3721
Datei: 89
PUP.Optional.MindSpark, C:\USERS\TEST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZFBN0OPN.DEFAULT\VideoDownloadConverter_4z\473C4079-6229-41AC-92D6-578ADE445BD0.sqlite, In Quarantäne, [228], [240302],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\include\tools\about_blank_hook.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\include\tools\misc.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\include\tools\popup_image_helper.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\include\tools\urlrequestor.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\include\speed_dial.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\js\lib\doT.min.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\js\lib\jquery-2.1.0.min.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\js\lib\jquery.autocomplete.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\js\module\hotSearch.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\js\module\mostgrid.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\js\module\search.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\js\module\stat.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\js\pack\common.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\js\pack\ga.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\js\pack\xagainit.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\awesome.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\awesome.xul, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\index.html, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\quick_start.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\content\quick_start.xul, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\en\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\en-US\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\es\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\es-419\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\fr\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-BE\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-CA\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-CH\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-LU\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\it\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\it-CH\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\pl\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\pt-BR\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\ru\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\ru-MO\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\tr\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\vi\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\zh-CN\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\locale\zh-TW\locale.properties, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\skin\default_logo.png, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\skin\googlelogo.png, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\skin\google_trends.png, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\skin\icon.png, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\skin\loading.gif, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\skin\logo.png, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\skin\luck.png, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\skin\newtab.ico, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\skin\simple.css, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome\skin\style.css, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\defaults\preferences\fvd.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\defaults\preferences\preferences.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\modules\addonmanager.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\modules\aes.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\modules\config.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\modules\dialogs.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\modules\last_tab.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\modules\misc.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\modules\properties.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\modules\remoterequest.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\modules\restoreprefs.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\modules\settings.js, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\chrome.manifest, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.DefaultNewTab, C:\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\extensions\default_newtabff@gmail.com\install.rdf, In Quarantäne, [10598], [176787],1.0.3721
PUP.Optional.IHProtectUpDate, C:\ProgramData\IHProtectUpDate\update\conf, In Quarantäne, [10758], [177733],1.0.3721
PUP.Optional.SysTweak, C:\WINDOWS\SYSTEM32\ROBOOT64.EXE, In Quarantäne, [210], [395666],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\log\log_2014-08-04.txt, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\queries\What she´s doing now.xml, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\.settings, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\dm.xml, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\playlists.xml, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\Users\test\AppData\Local\MediaDrug\radio.xml, In Quarantäne, [6129], [178124],1.0.3721
PUP.Optional.MediaDrug, C:\MediaDrug\bass.dll, In Quarantäne, [6129], [178126],1.0.3721
PUP.Optional.MediaDrug, C:\MediaDrug\libeay32.dll, In Quarantäne, [6129], [178126],1.0.3721
PUP.Optional.MediaDrug, C:\MediaDrug\libgcc_s_dw2-1.dll, In Quarantäne, [6129], [178126],1.0.3721
PUP.Optional.MediaDrug, C:\MediaDrug\libtag.dll, In Quarantäne, [6129], [178126],1.0.3721
PUP.Optional.MediaDrug, C:\MediaDrug\mediadrug.exe, In Quarantäne, [6129], [178126],1.0.3721
PUP.Optional.MediaDrug, C:\MediaDrug\mingwm10.dll, In Quarantäne, [6129], [178126],1.0.3721
PUP.Optional.MediaDrug, C:\MediaDrug\qjson0.dll, In Quarantäne, [6129], [178126],1.0.3721
PUP.Optional.MediaDrug, C:\MediaDrug\QtCore4.dll, In Quarantäne, [6129], [178126],1.0.3721
PUP.Optional.MediaDrug, C:\MediaDrug\QtGui4.dll, In Quarantäne, [6129], [178126],1.0.3721
PUP.Optional.MediaDrug, C:\MediaDrug\QtNetwork4.dll, In Quarantäne, [6129], [178126],1.0.3721
PUP.Optional.MediaDrug, C:\MediaDrug\QtXml4.dll, In Quarantäne, [6129], [178126],1.0.3721
PUP.Optional.MediaDrug, C:\MediaDrug\ssleay32.dll, In Quarantäne, [6129], [178126],1.0.3721
PUP.Optional.MediaDrug, C:\MediaDrug\uninstall.exe, In Quarantäne, [6129], [178126],1.0.3721
PUP.Optional.QuickStart, C:\USERS\TEST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZFBN0OPN.DEFAULT\PREFS.JS, Ersetzt, [10933], [301610],1.0.3721
PUP.Optional.DeltaHomes.ShrtCln, C:\USERS\TEST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZFBN0OPN.DEFAULT\PREFS.JS, Ersetzt, [14380], [301734],1.0.3721
PUP.Optional.DeltaHomes.ShrtCln, C:\USERS\TEST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZFBN0OPN.DEFAULT\PREFS.JS, Ersetzt, [14380], [301735],1.0.3721
PUP.Optional.OpenCandy, C:\USERS\TEST\DOWNLOADS\POWERISO6.EXE, In Quarantäne, [461], [297667],1.0.3721
Physischer Sektor: 0
(keine bösartigen Elemente erkannt)
(end) Code:
10:49:33 # product=EOS
# version=8
# flags=0
# esetonlinescanner_deu.exe=2.0.19.0
# EOSSerial=
# end=init
# utc_time=2018-01-18 09:49:33
# local_time=2018-01-18 10:49:33 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# osver=10.0.16299 NT
10:50:16 # product=EOS
# version=8
# flags=0
# esetonlinescanner_deu.exe=2.0.19.0
# EOSSerial=1b45a2faeb69a249b3755f78162702f2
# end=init
# utc_time=2018-01-18 09:50:16
# local_time=2018-01-18 10:50:16 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# osver=10.0.16299 NT
10:51:28 Updating
10:51:28 Update Init
10:51:30 Update Download
10:53:17 esets_scanner_reload returned 0
10:53:17 g_uiModuleBuild: 36102
10:53:17 Update Finalize
10:53:17 Call m_esets_charon_send
10:53:17 Call m_esets_charon_destroy
10:53:17 Updated modules version: 36102
10:53:28 Call m_esets_charon_setup_create
10:53:28 Call m_esets_charon_create
10:53:28 m_esets_charon_create OK
10:53:28 Call m_esets_charon_start_send_thread
10:53:28 Call m_esets_charon_setup_set
10:53:28 m_esets_charon_setup_set OK
10:53:28 Scanner engine: 36102
11:01:51 # product=EOS
# version=8
# flags=0
# esetonlinescanner_deu.exe=2.0.19.0
# EOSSerial=1b45a2faeb69a249b3755f78162702f2
# engine=36102
# end=stopped
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# sfx_checked=true
# utc_time=2018-01-18 10:01:50
# local_time=2018-01-18 11:01:50 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=10.0.16299 NT
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 1069 9577231 0 0
# scanned=0
# found=1
# cleaned=0
# scan_time=512
sh=C8FECB74E99CD093772ECD980A6845443B088D99 ft=0 fh=0000000000000000 vn="Win32/Toolbar.TNT2.I eventuell unerwünschte Anwendung" ac=I fn="C:\FRST\Quarantine\C\Users\test\AppData\Roaming\Mozilla\Firefox\Profiles\zfbn0opn.default\Extensions\yahooprotected@gmail.com.xpi.xBAD"
11:05:07 Call m_esets_charon_send
11:05:07 Call m_esets_charon_destroy
11:05:08 RecursiveRemoveDirectoryAndAllFiles: C:\Users\test\AppData\Local\ESET\ESETOnlineScanner\Quarantine\ Code:
Results of screen317's Security Check version 1.009
x64 (UAC is enabled)
Internet Explorer 11 ``````````````Antivirus/Firewall Check:``````````````
Windows Defender
WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:`````````
Adobe Flash Player 10 Flash Player out of Date!
Adobe Flash Player 28.0.0.137 ````````Process Check: objlist.exe by Laurent````````
Windows Defender MSMpEng.exe
Malwarebytes Anti-Malware mbamservice.exe
Malwarebytes Anti-Malware mbamtray.exe
Windows Defender MSASCuiL.exe `````````````````System Health check`````````````````
Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` |