[✅] Protokoll ANTI-MALWARE

Hier wird Dir geholfen, Viren, Trojaner und andere unerwünschte Programme von Deinem Rechner zu entfernen.
Benutzeravatar
nordlicht
Beiträge: 29
Registriert: Mo 4. Mai 2015, 13:33
Betriebssystem: win7 professional, 64bit
Virenscanner: Avira Antivirus Pro 2015
Wohnort: BauersHof

[✅] Protokoll ANTI-MALWARE

Beitrag von nordlicht »

Code: Alles auswählen

Malwarebytes Anti-Malware
http://www.malwarebytes.org

Suchlauf Datum: 04.05.2015
Suchlauf-Zeit: 13:45:36
Logdatei: 
Administrator: Ja

Version: 2.01.6.1022
Malware Datenbank: v2015.05.04.02
Rootkit Datenbank: v2015.04.21.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: kat

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 415758
Verstrichene Zeit: 23 Min, 7 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 1
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Bandoo.exe, 3396, , [287a94fb177339fd8e695a7b53b0a65a]

Module: 1
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\CrashRpt.dll, , [287a94fb177339fd8e695a7b53b0a65a], 

Registrierungsschlüssel: 134
PUP.Optional.Babylon.A, HKU\S-1-5-21-1361787199-2202592243-3570642382-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}, , [0a985e31dbaf47ef1ed33218b3505da3], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{4410C118-B23C-406C-9F52-9CDABD90A5EA}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{01222E21-6BD0-4EB3-94F1-967EB09CCED5}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{266294D5-5A0D-46E8-9294-BCB6EAFA478F}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{33DDFC61-F531-4982-8C32-4212B7835D44}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{518CA0FD-F755-4F98-A2A8-CD450FB203AB}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{5E9B4D72-C58D-48BF-AC09-68182D472160}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{72434BC1-E46D-47A1-A597-8749DFBCC24A}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{7DBA2B02-EA31-4B98-812B-C6E8AE5C2972}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{929FCA79-44E2-4408-83E7-F93AAE0B0909}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{94FBDF11-676E-42E5-A516-1FD39970386B}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{9932C738-5580-4408-A0E8-5EA03BE5FB18}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A288B32D-1001-479F-8DA2-E259010B7A31}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A5D99259-ADA3-48A5-B861-39813B713DCB}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A9005ED5-4A1D-4606-A4DF-1A25E7D7B417}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{AFFA986E-4B0F-4F15-9DDC-19FE8129602A}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{B348A16C-64A6-4EAE-A42A-722623572C7E}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{D60A7941-4F69-4A79-BED7-72ADA784B8F7}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{DFF35F25-E783-4E26-8DA6-EBB66B8B0E39}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{E57D3C8D-ADD0-4AE0-8A14-0D0F6A3487FB}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{01222E21-6BD0-4EB3-94F1-967EB09CCED5}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{266294D5-5A0D-46E8-9294-BCB6EAFA478F}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{33DDFC61-F531-4982-8C32-4212B7835D44}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{518CA0FD-F755-4F98-A2A8-CD450FB203AB}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{5E9B4D72-C58D-48BF-AC09-68182D472160}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{72434BC1-E46D-47A1-A597-8749DFBCC24A}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{7DBA2B02-EA31-4B98-812B-C6E8AE5C2972}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{929FCA79-44E2-4408-83E7-F93AAE0B0909}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{94FBDF11-676E-42E5-A516-1FD39970386B}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{9932C738-5580-4408-A0E8-5EA03BE5FB18}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{A288B32D-1001-479F-8DA2-E259010B7A31}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{A5D99259-ADA3-48A5-B861-39813B713DCB}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{A9005ED5-4A1D-4606-A4DF-1A25E7D7B417}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{AFFA986E-4B0F-4F15-9DDC-19FE8129602A}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{B348A16C-64A6-4EAE-A42A-722623572C7E}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{D60A7941-4F69-4A79-BED7-72ADA784B8F7}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{DFF35F25-E783-4E26-8DA6-EBB66B8B0E39}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{E57D3C8D-ADD0-4AE0-8A14-0D0F6A3487FB}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{01222E21-6BD0-4EB3-94F1-967EB09CCED5}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{266294D5-5A0D-46E8-9294-BCB6EAFA478F}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{33DDFC61-F531-4982-8C32-4212B7835D44}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{518CA0FD-F755-4F98-A2A8-CD450FB203AB}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{5E9B4D72-C58D-48BF-AC09-68182D472160}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{72434BC1-E46D-47A1-A597-8749DFBCC24A}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{7DBA2B02-EA31-4B98-812B-C6E8AE5C2972}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{929FCA79-44E2-4408-83E7-F93AAE0B0909}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{94FBDF11-676E-42E5-A516-1FD39970386B}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{9932C738-5580-4408-A0E8-5EA03BE5FB18}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{A288B32D-1001-479F-8DA2-E259010B7A31}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{A5D99259-ADA3-48A5-B861-39813B713DCB}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{A9005ED5-4A1D-4606-A4DF-1A25E7D7B417}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{AFFA986E-4B0F-4F15-9DDC-19FE8129602A}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{B348A16C-64A6-4EAE-A42A-722623572C7E}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{D60A7941-4F69-4A79-BED7-72ADA784B8F7}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{DFF35F25-E783-4E26-8DA6-EBB66B8B0E39}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{E57D3C8D-ADD0-4AE0-8A14-0D0F6A3487FB}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{4410C118-B23C-406C-9F52-9CDABD90A5EA}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{4410C118-B23C-406C-9F52-9CDABD90A5EA}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\Bandoo Coordinator, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{477F210A-2A86-4666-9C4B-1189634D2C84}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{6F43FA77-C18F-4D0C-9C7E-958876FE2061}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{DF948646-8BF4-450E-A059-CF8A4E0FE2BE}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{E96B49B0-E11F-48FC-984A-EEC29A4F57E1}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{FF871E51-2655-4D06-AED5-745962A96B32}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{477F210A-2A86-4666-9C4B-1189634D2C84}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{6F43FA77-C18F-4D0C-9C7E-958876FE2061}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{DF948646-8BF4-450E-A059-CF8A4E0FE2BE}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{E96B49B0-E11F-48FC-984A-EEC29A4F57E1}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{FF871E51-2655-4D06-AED5-745962A96B32}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{477F210A-2A86-4666-9C4B-1189634D2C84}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{6F43FA77-C18F-4D0C-9C7E-958876FE2061}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{DF948646-8BF4-450E-A059-CF8A4E0FE2BE}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{E96B49B0-E11F-48FC-984A-EEC29A4F57E1}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{FF871E51-2655-4D06-AED5-745962A96B32}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{CE1CB632-6817-47b3-8587-D05AF75D6D5A}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{3AD7A5B6-610D-4A82-979E-0AED20920690}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{3AD7A5B6-610D-4A82-979E-0AED20920690}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{3AD7A5B6-610D-4A82-979E-0AED20920690}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\BFlashAnimator.BFlashAnimatorCtrl.1, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\BFlashAnimator.BFlashAnimatorCtrl, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\BFlashAnimator.BFlashAnimatorCtrl, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\BFlashAnimator.BFlashAnimatorCtrl, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\BFlashAnimator.BFlashAnimatorCtrl.1, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\BFlashAnimator.BFlashAnimatorCtrl.1, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{CE1CB632-6817-47B3-8587-D05AF75D6D5A}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{CE1CB632-6817-47B3-8587-D05AF75D6D5A}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{872F3C0B-4462-424c-BB9F-74C6899B9F92}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{9C123289-82E1-4DA7-A3C2-B8D28AAD114B}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{C29CF951-7F4F-4B8D-ACA8-C4EE934C27DC}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{C29CF951-7F4F-4B8D-ACA8-C4EE934C27DC}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{C29CF951-7F4F-4B8D-ACA8-C4EE934C27DC}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{9C123289-82E1-4DA7-A3C2-B8D28AAD114B}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{9C123289-82E1-4DA7-A3C2-B8D28AAD114B}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\BGIFAnimator.BGIFAnimatorCtrl.1, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\BGIFAnimator.BGIFAnimatorCtrl, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\BGIFAnimator.BGIFAnimatorCtrl, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\BGIFAnimator.BGIFAnimatorCtrl, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\BGIFAnimator.BGIFAnimatorCtrl.1, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\BGIFAnimator.BGIFAnimatorCtrl.1, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{872F3C0B-4462-424C-BB9F-74C6899B9F92}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{872F3C0B-4462-424C-BB9F-74C6899B9F92}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\BandooIEPlugin.BandooIEPlugin.1, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\BandooIEPlugin.BandooIEPlugin, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\BandooIEPlugin.BandooIEPlugin, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\BandooIEPlugin.BandooIEPlugin, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\BandooIEPlugin.BandooIEPlugin.1, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\BandooIEPlugin.BandooIEPlugin.1, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKU\S-1-5-21-1361787199-2202592243-3570642382-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKU\S-1-5-21-1361787199-2202592243-3570642382-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EB5CEE80-030A-4ED8-8E20-454E9C68380F}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{62E5C9E1-A0E8-4F8C-8EAF-0F9250CC5786}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{62E5C9E1-A0E8-4F8C-8EAF-0F9250CC5786}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{62E5C9E1-A0E8-4F8C-8EAF-0F9250CC5786}, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.DataMangr.A, HKLM\SOFTWARE\DataMngr, , [2c760a8593f72d0989da45bba55f0df3], 
PUP.Optional.Babylon.A, HKLM\SOFTWARE\WOW6432NODE\BabylonToolbar, , [237f93fc107aa0961e6735fc778e619f], 
PUP.Optional.DataMangr.A, HKLM\SOFTWARE\WOW6432NODE\Datamngr, , [e5bd1f70eb9f0a2cc3a05aa6e42044bc], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\aaaajhhckaajldjhmbpgleomemmpopjp, , [4d55a4eb177352e47286fed735ce8b75], 
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\dloejdefkancmfajekobpfoacecnhpgp, , [f0b25f304248a492ef0724b18b781be5], 
PUP.Optional.Spigot.A, HKLM\SOFTWARE\WOW6432NODE\SEARCH SETTINGS, , [7929721dcebc7cba107b3daff50e956b], 
PUP.Optional.MusicToolBar.A, HKU\S-1-5-18\SOFTWARE\bandoomusictoolbar, , [dfc3efa08901b58143b9b86245bff50b], 
PUP.Optional.DataMngr.A, HKU\S-1-5-21-1361787199-2202592243-3570642382-1000\SOFTWARE\Datamngr, , [ffa34e415b2f9c9adc0063cc4cb97e82], 
PUP.Optional.DataMngr.A, HKU\S-1-5-21-1361787199-2202592243-3570642382-1001\SOFTWARE\Datamngr, , [049e6a25612983b3b12b8ca3a065e11f], 
PUP.Optional.Spigot.A, HKU\S-1-5-21-1361787199-2202592243-3570642382-1001\SOFTWARE\SEARCH SETTINGS, , [e2c0e4ab622860d696f2e4080ff4ce32], 

Registrierungswerte: 12
PUP.Optional.SearchResults.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2101}|URL, http://dts.search-results.com/sr?src=ieb&appid=289&systemid=101&sr=0&q={searchTerms}, , [ecb6048b5d2da39389513f8b37ccd22e]
PUP.Optional.SearchQu.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2101}|SuggestionsURL_JSON, http://www.searchqu.com/suggest.php?src=ieb&appid=289&systemid=101&qu={searchTerms}&ft=json, , [534f226d0d7d9d99b306df81c63f728e]
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\aaaajhhckaajldjhmbpgleomemmpopjp|path, C:\Windows\system32\config\systemprofile\AppData\Local\bandoomusictoolbar\GC\toolbar.crx, , [4f53325d008a80b6999f7ce447be49b7]
PUP.Optional.SearchResults.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2101}|URL, http://dts.search-results.com/sr?src=ieb&appid=289&systemid=101&sr=0&q={searchTerms}, , [cdd592fd5238989e37a3993110f3f709]
PUP.Optional.SearchQu.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2101}|SuggestionsURL_JSON, http://www.searchqu.com/suggest.php?src=ieb&appid=289&systemid=101&qu={searchTerms}&ft=json, , [1f832f602367cc6a12a7cf91fc09926e]
PUP.Optional.Spigot.A, HKLM\SOFTWARE\WOW6432NODE\SEARCH SETTINGS|installDir, C:\Program Files (x86)\Common Files\Spigot\Search Settings\, , [7929721dcebc7cba107b3daff50e956b]
PUP.Optional.Babylon.A, HKU\S-1-5-21-1361787199-2202592243-3570642382-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}|DisplayName, Search the web (Babylon), , [841e9bf4eaa00531ebd3e37a7a8b39c7]
PUP.Optional.Babylon.A, HKU\S-1-5-21-1361787199-2202592243-3570642382-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}|URL, http://search.babylon.com/?q={searchTerms}&affID=110021&tt=220512_53all&babsrc=SP_ss&mntrId=60cd8eae0000000000000024d7e04cc9, , [0d955f304f3b6dc9ffbf332aec19e11f]
PUP.Optional.Spigot.A, HKU\S-1-5-21-1361787199-2202592243-3570642382-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{8E9DD0F6-6148-4A72-B9AE-FAF98E5C8355}|URL, http://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=827316&p={searchTerms}, , [7d2517786e1c70c62dce0bc13dc639c7]
PUP.Optional.SearchResults.A, HKU\S-1-5-21-1361787199-2202592243-3570642382-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2101}|URL, http://dts.search-results.com/sr?src=ieb&appid=289&systemid=101&sr=0&q={searchTerms}, , [d4ce37584e3c1f17f4e54a80e023fb05]
PUP.Optional.SearchQu.A, HKU\S-1-5-21-1361787199-2202592243-3570642382-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2101}|SuggestionsURL_JSON, http://www.searchqu.com/suggest.php?src=ieb&appid=289&systemid=101&qu={searchTerms}&ft=json, , [297989065535e3538c2c67f9c342fd03]
PUP.Optional.Spigot.A, HKU\S-1-5-21-1361787199-2202592243-3570642382-1001\SOFTWARE\SEARCH SETTINGS|GCProtected, 0, , [e2c0e4ab622860d696f2e4080ff4ce32]

Registrierungsdaten: 1
PUP.Optional.Datamngr.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINDOWS|AppInit_DLLs, C:\PROGRA~3\Wincert\WIN64C~1.DLL                                                                  C:\Windows\system32\nvinitx.dll, Gut: (), Schlecht: (C:\PROGRA~3\Wincert\WIN64C~1.DLL),,[6f33eca3a6e462d4085ea0bb887dd22e]

Ordner: 37
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\IE, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\IE\Resources, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\IE\Resources\HTML, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\HTML, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\Toolbar, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\Toolbar\Images, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\HTML, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\Images, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\tutorial, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\tutorial\images, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Datamngr.A, C:\ProgramData\Datamngr, , [277b4c43761477bf7c9088ad37ce956b], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Roaming\Babylon, , [4a58018ebcce072f120a4c1630d555ab], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.OpenCandy, C:\Users\kat\AppData\Roaming\OpenCandy, , [148e800fed9d2511e5e0663213f0bd43], 
PUP.Optional.OpenCandy, C:\Users\kat\AppData\Roaming\OpenCandy\3900DE48ED484289B519C8C520AA3A42, , [148e800fed9d2511e5e0663213f0bd43], 
PUP.Optional.OpenCandy, C:\Users\kat\AppData\Roaming\OpenCandy\54AE65589F4649FD924CD0063DFD4719, , [148e800fed9d2511e5e0663213f0bd43], 
PUP.Optional.OpenCandy, C:\Users\kat\AppData\Roaming\OpenCandy\671A58CB81614EECBB1D76F3FF25F9B3, , [148e800fed9d2511e5e0663213f0bd43], 
PUP.Optional.OpenCandy, C:\Users\kat\AppData\Roaming\OpenCandy\7A1B171BF48B4F64954C1EFBFA2E54B1, , [148e800fed9d2511e5e0663213f0bd43], 
PUP.Optional.Datamngr.A, C:\Users\kat\AppData\LocalLow\DataMngr, , [00a2028d3654da5cfa59e7b7f70c4eb2], 
PUP.Optional.MusicToolBar.A, C:\Users\systemprofile\AppData\LocalLow\bandoomusictoolbar, , [ebb7d0bf23676dc91d7a2185887bea16], 
PUP.Optional.SearchQu.A, C:\Users\kat\AppData\LocalLow\searchquband, , [544eaae58dfd88ae2f5102a5c53e9f61], 
PUP.Optional.Spigot.A, C:\Users\kat\AppData\LocalLow\Search Settings, , [9909b1de2a603bfb9ac5f9b39e6509f7], 
PUP.Optional.Spigot.A, C:\Users\kat\AppData\LocalLow\Search Settings\res, , [9909b1de2a603bfb9ac5f9b39e6509f7], 
PUP.Optional.Spigot.A, C:\Users\kat\AppData\LocalLow\Search Settings\temp, , [9909b1de2a603bfb9ac5f9b39e6509f7], 
PUP.Optional.Bandoo.A, C:\Windows\SysWOW64\config\systemprofile\AppData\Local\bandoomusictoolbar, , [455d3f50a7e3191dc850507644bfc23e], 
PUP.Optional.Bandoo.A, C:\Windows\SysWOW64\config\systemprofile\AppData\Local\bandoomusictoolbar\GC, , [455d3f50a7e3191dc850507644bfc23e], 

Dateien: 139
PUP.Optional.OpenCandy.A, C:\Users\kat\AppData\Roaming\OpenCandy\671A58CB81614EECBB1D76F3FF25F9B3\LatestDLMgr.exe, , [11910887a3e73afc5366be933fc23dc3], 
PUP.Optional.OpenCandy.A, C:\Users\kat\AppData\Roaming\OpenCandy\7A1B171BF48B4F64954C1EFBFA2E54B1\LatestDLMgr.exe, , [cfd3355ab5d590a611a80c45f70a0ff1], 
PUP.Optional.Spigot.A, C:\Windows\Installer\57bed.msi, , [4161048bf89220166902b9234db4f50b], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\ChromePackage.crx, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Bandoo.exe, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Bandoo.exe.crash, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Bandoo.exe.recent.crash, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\BandooGo.exe, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\BandooRes.dll, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\BandooUI.exe, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\BndCore.exe, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\BndHook.dll, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\CrashRpt.dll, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\ExtensionsManager.exe, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\FlashAnimator.dll, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\ftalk.ico, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\GIFAnimator.dll, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\InstallerNsisHelper.dll, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\libungif4.dll, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\license.rtf, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins.ini, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\uninstall.log, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\IE\ieplugin.dll, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\IE\Resources\bandoo.js, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\IE\Resources\HTML\blank.html, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\IE\Resources\HTML\error.html, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\msnplugin.dll, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\HTML\blank.html, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\HTML\error.html, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\Toolbar\BandooToolbar.xml, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\Toolbar\Images\1001.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\Toolbar\Images\1002.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\Toolbar\Images\1003.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\Toolbar\Images\1004.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\Toolbar\Images\1005.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\Toolbar\Images\1006.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\Toolbar\Images\1011.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\Toolbar\Images\1012.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\Toolbar\Images\1013.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\MSN\Resources\Toolbar\Images\1014.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\YahooPlugin.dll, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\HTML\blank.html, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\HTML\error.html, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\BandooToolbar.xml, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\BandooToolbarV9.xml, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\Images\1001.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\Images\1002.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\Images\1003.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\Images\1004.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\Images\1005.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\Images\1006.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\Images\1051.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\Images\1052.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\Images\1053.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\Images\1054.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\Images\1055.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\Images\1056.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Plugins\Yahoo\Resources\Toolbar\Images\1057.dat, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\BandooMessages.xml, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\downloading.gif, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\nudge0.wav, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\nudge1.wav, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\nudge2.wav, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\nudge3.wav, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\nudge4.wav, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\nudge5.wav, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\tutorial\tutorial.html, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\tutorial\images\bottomBg.gif, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\tutorial\images\close.gif, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\tutorial\images\contentBg.gif, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\tutorial\images\installation_page_frame.swf, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\tutorial\images\screen.jpg, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\tutorial\images\startMenuTopText.gif, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\tutorial\images\topBg.gif, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Bandoo.A, C:\Program Files (x86)\Bandoo\Resources\tutorial\images\what_next.gif, , [287a94fb177339fd8e695a7b53b0a65a], 
PUP.Optional.Datamngr.A, C:\ProgramData\Datamngr\coordinator.cfg, , [277b4c43761477bf7c9088ad37ce956b], 
PUP.Optional.Datamngr.A, C:\ProgramData\Datamngr\general.cfg, , [277b4c43761477bf7c9088ad37ce956b], 
PUP.Optional.Datamngr.A, C:\ProgramData\Datamngr\S-1-5-21-1361787199-2202592243-3570642382-1001.cfg, , [277b4c43761477bf7c9088ad37ce956b], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\win32cert.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\del_64DLL_nsb109B.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\del_64DLL_nsb5529.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\del_64DLL_nscE5DA.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\del_64DLL_nsdA82B.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\del_64DLL_nsg398E.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\del_64DLL_nsg41B8.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\del_64DLL_nsl33E3.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\del_64DLL_nsl92A5.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\del_64DLL_nsr7EA9.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\del_64DLL_nstA461.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\del_64DLL_nsyB514.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\del_DLL_nsg41B8.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\del_DLL_nsyB514.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\win32prop.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\win64cert.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Datamngr.A, C:\ProgramData\Wincert\win64prop.dll, , [6f33eca3a6e462d4085ea0bb887dd22e], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Roaming\Babylon\log_file.txt, , [4a58018ebcce072f120a4c1630d555ab], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\Babylon.dat, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\53.zpb, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\bab033.tbinst.dat, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\bab091.norecovericon.dat, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\BExternal.dll, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\IECookieLow.dll, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\Setup-tbmntr903.zpb, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\Setup.exe, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\SetupStrings.dat, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\sign, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\sqlite3.dll, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\blueStar.png, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\eula.html, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\globe.png, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\options.js, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\page0.html, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\page2.css, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\page2.html, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\page2Lrg.css, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\page3.css, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\page3.html, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\page3Lrg.css, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\pBar.gif, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\progress.png, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\setup.js, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\title.png, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.Babylon.C, C:\Users\kat\AppData\Local\Babylon\Setup\HtmlScreens\toolBar.jpg, , [a8fa612e39518aace33a283a5da8d12f], 
PUP.Optional.OpenCandy, C:\Users\kat\AppData\Roaming\OpenCandy\3900DE48ED484289B519C8C520AA3A42\TuneUpUtilities2013_2200217_de-DE.exe, , [148e800fed9d2511e5e0663213f0bd43], 
PUP.Optional.OpenCandy, C:\Users\kat\AppData\Roaming\OpenCandy\54AE65589F4649FD924CD0063DFD4719\TuneUpUtilities2013-2200217_de-DE.exe, , [148e800fed9d2511e5e0663213f0bd43], 
PUP.Optional.OpenCandy, C:\Users\kat\AppData\Roaming\OpenCandy\671A58CB81614EECBB1D76F3FF25F9B3\3135.ico, , [148e800fed9d2511e5e0663213f0bd43], 
PUP.Optional.OpenCandy, C:\Users\kat\AppData\Roaming\OpenCandy\671A58CB81614EECBB1D76F3FF25F9B3\TuneUpUtilities2013-2200218-p2v1.exe, , [148e800fed9d2511e5e0663213f0bd43], 
PUP.Optional.OpenCandy, C:\Users\kat\AppData\Roaming\OpenCandy\7A1B171BF48B4F64954C1EFBFA2E54B1\47A647BD-4905-48C7-9539-A95F199019A4, , [148e800fed9d2511e5e0663213f0bd43], 
PUP.Optional.OpenCandy, C:\Users\kat\AppData\Roaming\OpenCandy\7A1B171BF48B4F64954C1EFBFA2E54B1\B8DCC36F-4F05-445F-B1EE-FD8FC38CBBDA, , [148e800fed9d2511e5e0663213f0bd43], 
PUP.Optional.Datamngr.A, C:\Users\kat\AppData\LocalLow\DataMngr\{7CA1F051-A4FB-4143-B263-02B41E571EED}, , [00a2028d3654da5cfa59e7b7f70c4eb2], 
PUP.Optional.Datamngr.A, C:\Users\kat\AppData\LocalLow\DataMngr\{7CA1F051-A4FB-4143-B263-02B41E571EED}64, , [00a2028d3654da5cfa59e7b7f70c4eb2], 
PUP.Optional.MusicToolBar.A, C:\Users\systemprofile\AppData\LocalLow\bandoomusictoolbar\apnuserid.dat, , [ebb7d0bf23676dc91d7a2185887bea16], 
PUP.Optional.MusicToolBar.A, C:\Users\systemprofile\AppData\LocalLow\bandoomusictoolbar\appid.dat, , [ebb7d0bf23676dc91d7a2185887bea16], 
PUP.Optional.MusicToolBar.A, C:\Users\systemprofile\AppData\LocalLow\bandoomusictoolbar\geodata.xml, , [ebb7d0bf23676dc91d7a2185887bea16], 
PUP.Optional.MusicToolBar.A, C:\Users\systemprofile\AppData\LocalLow\bandoomusictoolbar\guid.dat, , [ebb7d0bf23676dc91d7a2185887bea16], 
PUP.Optional.MusicToolBar.A, C:\Users\systemprofile\AppData\LocalLow\bandoomusictoolbar\setupCfg.xml, , [ebb7d0bf23676dc91d7a2185887bea16], 
PUP.Optional.MusicToolBar.A, C:\Users\systemprofile\AppData\LocalLow\bandoomusictoolbar\sysid.dat, , [ebb7d0bf23676dc91d7a2185887bea16], 
PUP.Optional.MusicToolBar.A, C:\Users\systemprofile\AppData\LocalLow\bandoomusictoolbar\trackid.dat, , [ebb7d0bf23676dc91d7a2185887bea16], 
PUP.Optional.Bandoo.A, C:\Windows\SysWOW64\config\systemprofile\AppData\Local\bandoomusictoolbar\GC\toolbar.crx, , [455d3f50a7e3191dc850507644bfc23e], 

Physische Sektoren: 0
(Keine schädliche Elemente gefunden)


(end)
*********
Beitrag in Code symbol gesetzt - rajo
Benutzeravatar
rajo
Moderator
Beiträge: 795
Registriert: So 24. Aug 2014, 15:19
Betriebssystem: Linux und Windows -
Wohnort: zur Pforte des Glücks ( Hamminkeln ) :)

Re: Protokoll ANTI-MALWARE

Beitrag von rajo »

Hallo Nordlicht

willkommen bei uns hier in der Klinik -

lass uns als nächstes mit Adwcleaner weiterarbeiten der Durchlauf ist rel. schnell gemacht - ca 15 Minuten max

Anleitung hier :
http://www.pc-notfallklinik.de/viewtopic.php?f=7&t=643" onclick="window.open(this.href);return false;

Gruss Rajo :)
Sandra78
Beiträge: 3503
Registriert: So 24. Aug 2014, 17:07
Betriebssystem: Windows 10 Home 64 Bit
Virenscanner: McAfee SecurityCenter

Re: Protokoll ANTI-MALWARE

Beitrag von Sandra78 »

Hi Nordlicht, die Funde von MBAM müssen noch in die Quarantäne verschoben werden, wenn du das noch nicht gemacht hast. Weisst du wie das geht?
Danach Rajo folgen ;)
Wir sind alle Engel mit nur einem Flügel und um zu fliegen, müssen wir uns gegenseitig umarmen.
Benutzeravatar
rajo
Moderator
Beiträge: 795
Registriert: So 24. Aug 2014, 15:19
Betriebssystem: Linux und Windows -
Wohnort: zur Pforte des Glücks ( Hamminkeln ) :)

Re: Protokoll ANTI-MALWARE

Beitrag von rajo »

hu hu ihr zwei ..

Ich denke das sollte laut Anleitung schon passiert sein :shock:

Rajo :D
Sandra78
Beiträge: 3503
Registriert: So 24. Aug 2014, 17:07
Betriebssystem: Windows 10 Home 64 Bit
Virenscanner: McAfee SecurityCenter

Re: Protokoll ANTI-MALWARE

Beitrag von Sandra78 »

Ja normal schon, aber hatte sie denn die Anleitung ;) normal sieht man doch dann beim Log das sie in Quarantäne sind....hier nicht.

Zitat aus der Anleitung:
Dann erscheint folgendes Bild wenn nichts gefunden wurde, oder es werden dort die Funde angezeigt. Bei Fund erscheint zusätzlich ein Satz "identifizierte Bedrohungen zeigen" im Fenster. Klicke bitte dort drauf und klick anschließend auf "Auswahl entfernen", damit sind die Funde dann in die Quarantäne verschoben und können nichts mehr anrichten.
http://www.pc-notfallklinik.de/viewtopic.php?f=7&t=631" onclick="window.open(this.href);return false;

Erst danach macht man das Log.
Wir sind alle Engel mit nur einem Flügel und um zu fliegen, müssen wir uns gegenseitig umarmen.
Benutzeravatar
rajo
Moderator
Beiträge: 795
Registriert: So 24. Aug 2014, 15:19
Betriebssystem: Linux und Windows -
Wohnort: zur Pforte des Glücks ( Hamminkeln ) :)

Re: Protokoll ANTI-MALWARE

Beitrag von rajo »

Hallo Nordlicht

Schau bitte einfach hier :
C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Quarantine
nach

sind die Dateien dort ? - wenn ja ist es gut
wenn nein suchlauf bitte wiederholen dann in quara verschieben - 30 Minuten ....

diesmal dann den grossen Knopf unten bedienen
http://abload.de/img/auswahlentfernen1074kd9.jpg

Rajo
Sandra78
Beiträge: 3503
Registriert: So 24. Aug 2014, 17:07
Betriebssystem: Windows 10 Home 64 Bit
Virenscanner: McAfee SecurityCenter

Re: Protokoll ANTI-MALWARE

Beitrag von Sandra78 »

:kaffee:
Wir sind alle Engel mit nur einem Flügel und um zu fliegen, müssen wir uns gegenseitig umarmen.
Benutzeravatar
nordlicht
Beiträge: 29
Registriert: Mo 4. Mai 2015, 13:33
Betriebssystem: win7 professional, 64bit
Virenscanner: Avira Antivirus Pro 2015
Wohnort: BauersHof

Re: Protokoll ANTI-MALWARE

Beitrag von nordlicht »

musste unterbrechen...hier das adw-protokoll

# AdwCleaner v4.203 - Bericht erstellt 04/05/2015 um 21:32:14
# Aktualisiert 30/04/2015 von Xplode
# Datenbank : 2015-05-02.1 [Server]
# Betriebssystem : Windows 7 Professional Service Pack 1 (x64)
# Benutzername : kat - KAT-THINK
# Gestarted von : C:\Users\kat\Downloads\adwcleaner_4.203.exe
# Option : Suchlauf

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****

Datei Gefunden : C:\Users\kat\AppData\Roaming\Mozilla\Firefox\Profiles\zqiypk5b.default\user.js
Ordner Gefunden : C:\Program Files (x86)\AVG Secure Search
Ordner Gefunden : C:\Program Files (x86)\SuperEasy Software
Ordner Gefunden : C:\ProgramData\Babylon
Ordner Gefunden : C:\ProgramData\Bandoo
Ordner Gefunden : C:\ProgramData\Browser Manager
Ordner Gefunden : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bandoo
Ordner Gefunden : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SuperEasy Software
Ordner Gefunden : C:\Users\kat\AppData\Local\apn
Ordner Gefunden : C:\Users\kat\AppData\Local\pdfforge
Ordner Gefunden : C:\Users\kat\AppData\LocalLow\Bandoo
Ordner Gefunden : C:\Users\kat\AppData\LocalLow\pdfforge
Ordner Gefunden : C:\Users\kat\AppData\Roaming\Bandoo
Ordner Gefunden : C:\Users\kat\AppData\Roaming\pdfforge
Ordner Gefunden : C:\Users\kat\AppData\Roaming\SuperEasy Software

***** [ Geplante Tasks ] *****

Task Gefunden : SuperEasyDriverUpdater_UPDATES

***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Daten Gefunden : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\bandoo\bndhook.dll,
Daten Gefunden : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~3\wincert\win32c~1.dll
Schlüssel Gefunden : HKCU\Software\AppDataLow\Software\searchqutoolbar
Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Schlüssel Gefunden : HKCU\Software\Myfree Codec
Schlüssel Gefunden : HKCU\Software\OCS
Schlüssel Gefunden : HKCU\Software\pdfforge
Schlüssel Gefunden : HKCU\Software\Softonic
Schlüssel Gefunden : HKCU\Software\SuperEasy Software
Schlüssel Gefunden : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2101}
Schlüssel Gefunden : [x64] HKCU\Software\Myfree Codec
Schlüssel Gefunden : [x64] HKCU\Software\OCS
Schlüssel Gefunden : [x64] HKCU\Software\pdfforge
Schlüssel Gefunden : [x64] HKCU\Software\Softonic
Schlüssel Gefunden : [x64] HKCU\Software\SuperEasy Software
Schlüssel Gefunden : HKLM\SOFTWARE\Babylon
Schlüssel Gefunden : HKLM\SOFTWARE\Bandoo
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{3AD7A5B6-610D-4A82-979E-0AED20920690}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{9C123289-82E1-4DA7-A3C2-B8D28AAD114B}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{A01A3335-0C30-4312-A430-92356CC37A92}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{EDE2C296-2458-4E3B-A846-4B512C0703B5}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\BandooCoordinator.EXE
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\BandooCore.EXE
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\FlashAnimator.DLL
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\GIFAnimator.DLL
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\IEPlugin.DLL
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCoordinator.BandooCoordinator
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCoordinator.BandooCoordinator.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCoordinator.CoordinatorUI
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCoordinator.CoordinatorUI.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCoordinator.hxxpAsyncResult
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCoordinator.hxxpAsyncResult.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCoordinator.PlugInNotifier
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCoordinator.PlugInNotifier.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCore.BandooCore
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCore.BandooCore.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCore.ResourcesMngr.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCore.SettingsMngr.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\BandooCore.StatisticMngr.1
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{074E4EFE-81BB-4EA4-866E-082CB0E01070}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{0CE5B352-9D9C-41E1-9551-FCCD92820217}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{167B2B5F-2757-434A-BBDA-2FDB2003F14F}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{27F69C85-64E1-43CE-98B5-3C9F22FB408E}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{2E9A60EA-5554-49C3-BC9D-D0404DBACC62}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{3E63C9BC-DD51-4E83-ABA6-B350EAD28531}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{44CFFEF4-E7E1-44BD-B1F5-29F828ADA1B8}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{B543EF05-9758-464E-9F37-4C28525B4A4C}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{BB76A90B-2B4C-4378-8506-9A2B6E16943C}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{C3AB94A4-BFD0-4BBA-A331-DE504F07D2DB}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{EF2B6317-C367-401B-83B8-80302D6588A7}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{F5379B4B-24D8-432A-9A96-BE75EE5117DB}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{F7FB2BC4-6C27-4EAC-B5E2-037B71FDE101}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{FD53FE35-4368-4B71-89D6-F29F3DB29DF1}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Prod.cap
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{424624F4-C5DD-4E1D-BDD0-1E9C9B7799CC}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F000001-DB8E-F89C-2FEC-49BF726F8C12}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C8A3CA5-889E-4554-BEEC-EC0876E4E96A}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9189560-573A-4FDE-B055-AE7B0F4CF080}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B6F8DA9F-2696-419E-A8A3-19BE41EF51BD}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{039BC111-D60F-A6FF-85F4-7992EA886B8D}_is1
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Music Toolbar
Schlüssel Gefunden : HKLM\SOFTWARE\Myfree Codec
Schlüssel Gefunden : HKLM\SOFTWARE\pdfforge
Schlüssel Gefunden : HKLM\SOFTWARE\SuperEasy Software
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{424624F4-C5DD-4E1D-BDD0-1E9C9B7799CC}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F000001-DB8E-F89C-2FEC-49BF726F8C12}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C8A3CA5-889E-4554-BEEC-EC0876E4E96A}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F9189560-573A-4FDE-B055-AE7B0F4CF080}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2101}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00E944CB89111313EAF35A0553F547F9
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\30C16B15B255BD349A1157B8A83E2AF9
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\53F55AF3F4049ED3FA6EA6F88E414E24
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E4BF4B11615E03C97732FD581AB607
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CE3DDAB2D152683FBCEB4866BCD2B0F
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF6CE16AFEA5C9A39B766468A8B35C21
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1CAE30F47D14B41B5FC8FA53658044
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB1E44269B58F433A8C8E671E37CFDCF
Schlüssel Gefunden : HKU\.DEFAULT\Software\APN DTX
Wert Gefunden : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Wert Gefunden : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{B922D405-6D13-4A2B-AE89-08A030DA4402}]

***** [ Internetbrowser ] *****

-\\ Internet Explorer v11.0.9600.17728


-\\ Mozilla Firefox v20.0.1 (de)

[zqiypk5b.default] - Zeile Gefunden : user_pref("keyword.URL", "hxxp://dts.search-results.com/sr?src=ffb&appid=289&systemid=101&sr=0&q=");

-\\ Opera v29.0.1795.47


*************************

AdwCleaner[R0].txt - [11188 Bytes] - [04/05/2015 21:32:14]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [11248 Bytes] ##########
Benutzeravatar
nordlicht
Beiträge: 29
Registriert: Mo 4. Mai 2015, 13:33
Betriebssystem: win7 professional, 64bit
Virenscanner: Avira Antivirus Pro 2015
Wohnort: BauersHof

Re: Protokoll ANTI-MALWARE

Beitrag von nordlicht »

beschäftige mich grad mit der deinstallation von Bandoo
Benutzeravatar
rajo
Moderator
Beiträge: 795
Registriert: So 24. Aug 2014, 15:19
Betriebssystem: Linux und Windows -
Wohnort: zur Pforte des Glücks ( Hamminkeln ) :)

Re: Protokoll ANTI-MALWARE

Beitrag von rajo »

Bitte einen erneuten ADWcleaner scan zur Kontrolle -
und auch dieses log posten -
Danke
Rajo
beschäftige mich grad mit der deinstallation von Bandoo
das macht das Programm adwcleaner - Reste davon machen wir später - so es welche gibt :)
Benutzeravatar
Carlus
Beiträge: 643
Registriert: So 24. Aug 2014, 14:40
Wohnort: Das Tor zur Welt

Re: Protokoll ANTI-MALWARE

Beitrag von Carlus »

"mal kurz einmischen tu"

öhm rajo, sie müßte evtl erst löschen und dann erst ein neues log erstellen.
Gruß Carlus

Die Stimme ist eine menschliche Gabe. Sie sollte geschätzt und benutzt werden.
Kraftlosigkeit und Schweigen gehören zusammen.
Benutzeravatar
rajo
Moderator
Beiträge: 795
Registriert: So 24. Aug 2014, 15:19
Betriebssystem: Linux und Windows -
Wohnort: zur Pforte des Glücks ( Hamminkeln ) :)

Re: Protokoll ANTI-MALWARE

Beitrag von rajo »

Richtig der Löschknopf ist ziemlich gross der zweite von Links.

http://abload.de/img/adwlschsmt9p6p.jpg

danach erfolgt bitte ein Neustart - dann wird Alles gut .....

:kaffee: :kaffee: :kaffee:

Hofft Rajo
Benutzeravatar
rajo
Moderator
Beiträge: 795
Registriert: So 24. Aug 2014, 15:19
Betriebssystem: Linux und Windows -
Wohnort: zur Pforte des Glücks ( Hamminkeln ) :)

Re: Protokoll ANTI-MALWARE

Beitrag von rajo »

gib uns dann mal einen Bericht - die Logs mit den Löschungen und wie der Rechner läuft -

Das wäre :) nett

Rajo
Benutzeravatar
nordlicht
Beiträge: 29
Registriert: Mo 4. Mai 2015, 13:33
Betriebssystem: win7 professional, 64bit
Virenscanner: Avira Antivirus Pro 2015
Wohnort: BauersHof

Re: Protokoll ANTI-MALWARE

Beitrag von nordlicht »

sauber :top:
grad läuft noch spyhunter...der findet weitere Schädlinge...

danke euch für das finden der richtigen Fährte! :denk:
bin enttäuscht von Avira, das ja in der Bezahlversion das Auffinden von Malware verspricht :evil:

# AdwCleaner v4.203 - Bericht erstellt 04/05/2015 um 23:31:16
# Aktualisiert 30/04/2015 von Xplode
# Datenbank : 2015-05-02.1 [Server]
# Betriebssystem : Windows 7 Professional Service Pack 1 (x64)
# Benutzername : kat - KAT-THINK
# Gestarted von : C:\Users\kat\Downloads\adwcleaner_4.203.exe
# Option : Suchlauf

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****


***** [ Geplante Tasks ] *****


***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****


***** [ Internetbrowser ] *****

-\\ Internet Explorer v11.0.9600.17728


-\\ Mozilla Firefox v20.0.1 (de)


-\\ Opera v29.0.1795.47


*************************

AdwCleaner[R0].txt - [11420 Bytes] - [04/05/2015 21:32:14]
AdwCleaner[R1].txt - [11480 Bytes] - [04/05/2015 22:06:31]
AdwCleaner[R2].txt - [800 Bytes] - [04/05/2015 23:31:16]
AdwCleaner[S0].txt - [11285 Bytes] - [04/05/2015 22:20:00]

########## EOF - C:\AdwCleaner\AdwCleaner[R2].txt - [918 Bytes] ##########
Benutzeravatar
rajo
Moderator
Beiträge: 795
Registriert: So 24. Aug 2014, 15:19
Betriebssystem: Linux und Windows -
Wohnort: zur Pforte des Glücks ( Hamminkeln ) :)

Re: Protokoll ANTI-MALWARE

Beitrag von rajo »

Bitte Spyhunter stoppen - das Programm ist Müll und gehört in die Gruppe mal / rogueware die funde sind eigenproduzierte Malware - zum Schluss sollst du fürs Löschen der Fakes bezahlen
kürzer und schneller gehts nicht zu sagen. FINGER WEG !


Mach bitte nur die Scans die wir vorschlagen
für heute gute Nacht - sleep well

morgen weiter mit Bereinigung - unter anderem dann auch Spyhunter was zu entfernen ist :(
Rajo
NoG
Moderator
Beiträge: 7383
Registriert: So 24. Aug 2014, 15:02
Betriebssystem: Windows 8.1
Virenscanner: GData
Wohnort: Pinneberg

Re: Protokoll ANTI-MALWARE

Beitrag von NoG »

We have bugs the likes of which even God has never seen!
Benutzeravatar
nordlicht
Beiträge: 29
Registriert: Mo 4. Mai 2015, 13:33
Betriebssystem: win7 professional, 64bit
Virenscanner: Avira Antivirus Pro 2015
Wohnort: BauersHof

Re: Protokoll ANTI-MALWARE

Beitrag von nordlicht »

danke für die hilfe, werde mich jetzt an eure 'anweisungen' halten und hoffe, wir kriegen den spyhunter :alien: weg!
den prozess hatte ich beendet, darf ich ihn schon mal deinstallieren?
Benutzeravatar
rajo
Moderator
Beiträge: 795
Registriert: So 24. Aug 2014, 15:19
Betriebssystem: Linux und Windows -
Wohnort: zur Pforte des Glücks ( Hamminkeln ) :)

Re: Protokoll ANTI-MALWARE

Beitrag von rajo »

Ja bitte deinstallieren - dann einen neuen scan mit adwcleaner -
Log bitte posten - dann

FRST -
Anleitung gibts es hier :
http://www.pc-notfallklinik.de/viewtopic.php?f=7&t=656" onclick="window.open(this.href);return false;
auch hier bitte das log posten

Bis dann

Rajo
Benutzeravatar
nordlicht
Beiträge: 29
Registriert: Mo 4. Mai 2015, 13:33
Betriebssystem: win7 professional, 64bit
Virenscanner: Avira Antivirus Pro 2015
Wohnort: BauersHof

Re: Protokoll ANTI-MALWARE

Beitrag von nordlicht »

# AdwCleaner v4.203 - Bericht erstellt 05/05/2015 um 16:00:35
# Aktualisiert 30/04/2015 von Xplode
# Datenbank : 2015-05-02.1 [Server]
# Betriebssystem : Windows 7 Professional Service Pack 1 (x64)
# Benutzername : kat - KAT-THINK
# Gestarted von : C:\Users\kat\Desktop\Werkzeug\mal+spyware\adwcleaner_4.203.exe
# Option : Suchlauf

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****


***** [ Geplante Tasks ] *****


***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****


***** [ Internetbrowser ] *****

-\\ Internet Explorer v11.0.9600.17728


-\\ Mozilla Firefox v20.0.1 (de)


-\\ Opera v29.0.1795.47


*************************

AdwCleaner[R0].txt - [11420 Bytes] - [04/05/2015 21:32:14]
AdwCleaner[R1].txt - [11480 Bytes] - [04/05/2015 22:06:31]
AdwCleaner[R2].txt - [996 Bytes] - [04/05/2015 23:31:16]
AdwCleaner[R3].txt - [1054 Bytes] - [05/05/2015 10:21:30]
AdwCleaner[R4].txt - [1133 Bytes] - [05/05/2015 15:56:57]
AdwCleaner[R5].txt - [995 Bytes] - [05/05/2015 16:00:35]
AdwCleaner[S0].txt - [11285 Bytes] - [04/05/2015 22:20:00]

########## EOF - C:\AdwCleaner\AdwCleaner[R5].txt - [1113 Bytes] ##########
Sandra78
Beiträge: 3503
Registriert: So 24. Aug 2014, 17:07
Betriebssystem: Windows 10 Home 64 Bit
Virenscanner: McAfee SecurityCenter

Re: Protokoll ANTI-MALWARE

Beitrag von Sandra78 »

AdwCleaner schaut doch schon mal gut aus :top:

Kleine Info noch für Dich. Die PUP (potentiell unerwünschte Programme) die du dir eingefangen hast, sind keine Viren oder Trojaner, das ist Adware. Das sind nervige Werbeeinblendungen wie z.b Toolbars im Browser, oder Programm die dich auf bestimmte Seiten umleiten usw. Also nichts wirklich schlimmes sondern nur Dinge die man nicht unbedingt haben will, weil sie nerven. Diese PUPs werden oft von den größeren Virenscannern nicht erkannt, weil sie nicht als so schlimm eingestuft werden und weil man sich die meist selber installiert. Diese kommen nämlich oft als ärgerliche Zusatzsoftware mit wenn man ein Programm runterläd z.b bei Chip. Ich hab z.b nicht Avira aber ne Bezahlversion der Konkurrenz und ich hatte auch schon PUP drauf ...Daher solltest du dir zukünftig die kostenlose Variante von MBAM auf dem Computer lassen und ab und an auch damit scannen, der sucht gezielt nach so PUPs. Und Programme möglichs nur vom Hersteller runterladen.

So aber nun halte ich mich wieder zurück und bin gespannt auf dein FRST Log ....
Wir sind alle Engel mit nur einem Flügel und um zu fliegen, müssen wir uns gegenseitig umarmen.
Gesperrt