# AdwCleaner v5.110 - Bericht erstellt am 13/04/2016 um 18:10:04
# Aktualisiert am 10/04/2016 von Xplode
# Datenbank : 2016-04-11.4 [Server]
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (X64)
# Benutzername : Name - Name-PC
# Gestartet von : C:\Users\Name\Desktop\adwcleaner_5.110.exe
# Option : Suchlauf
# Unterstützung :
***** [ Dienste ] *****
***** [ Ordner ] *****
Ordner gefunden : C:\Program Files (x86)\myfree codec
Ordner gefunden : C:\Program Files (x86)\Common Files\DVDVideoSoft\TB
Ordner gefunden : C:\ProgramData\Partner
Ordner gefunden : C:\ProgramData\SecurityUtility
Ordner gefunden : C:\ProgramData\Application Data\Partner
Ordner gefunden : C:\ProgramData\Application Data\SecurityUtility
Ordner gefunden : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
Ordner gefunden : C:\Users\Name\AppData\LocalLow\HPAppData
Ordner gefunden : C:\Users\Name\AppData\Roaming\dvdvideosoftiehelper s
Ordner gefunden : C:\Users\Name\AppData\Roaming\OpenCandy
***** [ Dateien ] *****
Datei gefunden : C:\Windows\SysNative\LavasoftTcpService64.dll
Datei gefunden : C:\Windows\SysNative\LavasoftTcpServiceOff.ini
Datei gefunden : C:\Windows\SysWOW64\lavasofttcpservice.dll
Datei gefunden : C:\Windows\SysWOW64\LavasoftTcpServiceOff.ini
***** [ DLL ] *****
***** [ Verknüpfungen ] *****
***** [ Aufgabenplanung ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel gefunden : HKLM\SOFTWARE\Classes\Record\{425E7597-03A2-338D-B72A-0E51FFE77A7E}
Schlüssel gefunden : HKLM\SOFTWARE\Classes\Record\{915BB7D5-082E-3B91-B1E0-45B5FDE01F24}
Schlüssel gefunden : HKLM\SOFTWARE\Classes\Record\{2009AF2F-5786-3067-8799-B97F7832FDD6}
Schlüssel gefunden : HKLM\SOFTWARE\Classes\Record\{FB2E65F4-5687-33EF-9BBF-4E3C9C98D3B9}
Wert gefunden : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{ACAA314B-EEBA-48E4-AD47-84E31C44796C}]
Schlüssel gefunden : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel gefunden : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
Schlüssel gefunden : HKLM\SOFTWARE\Classes\TypeLib\{ED62BC6E-64F1-46BE-866F-4C8DC0DF7057}
Wert gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Schlüssel gefunden : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Wert gefunden : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Schlüssel gefunden : HKCU\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}
Schlüssel gefunden : HKCU\Software\Myfree Codec
Schlüssel gefunden : HKCU\Software\OCS
Schlüssel gefunden : HKCU\Software\AppDataLow\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}
Schlüssel gefunden : HKLM\SOFTWARE\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}
Schlüssel gefunden : HKLM\SOFTWARE\Myfree Codec
Schlüssel gefunden : HKLM\SOFTWARE\SecurityUtility
Schlüssel gefunden : HKLM\SOFTWARE\Lavasoft\Web Companion
Schlüssel gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Uni nstall\MyFreeCodec
Schlüssel gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall\{EE171732-BEB4-4576-887D-CB62727F01CA}
Schlüssel gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni nstall\SecurityUtility
Schlüssel gefunden : [x64] HKLM\SOFTWARE\SecurityUtility
Schlüssel gefunden : HKU\S-1-5-21-2884279647-1126821354-3647711694-1000\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}
Schlüssel gefunden : HKU\S-1-5-21-2884279647-1126821354-3647711694-1000\Software\Myfree Codec
Schlüssel gefunden : HKU\S-1-5-21-2884279647-1126821354-3647711694-1000\Software\OCS
Schlüssel gefunden : HKU\S-1-5-21-2884279647-1126821354-3647711694-1000\Software\AppDataLow\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}
Schlüssel gefunden : HKU\S-1-5-21-2884279647-1126821354-3647711694-1000\Software\Microsoft\Windows\CurrentVersion\Uni nstall\MyFreeCodec
Schlüssel gefunden : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ins taller\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964
Schlüssel gefunden : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ins taller\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467
Daten gefunden : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.bing.com/?pc=COSP&ptag=D110915-A6B219395BABB4E59ADF&form=CONMHP&conlogo=CT3332005
Daten gefunden : HKU\S-1-5-21-2884279647-1126821354-3647711694-1000\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www.bing.com/?pc=COSP&ptag=D110915-A6B219395BABB4E59ADF&form=CONMHP&conlogo=CT3332005
Schlüssel gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}
Daten gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] - {006ee092-9658-4fd6-bd8e-a21a348e59f5}
Schlüssel gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Schlüssel gefunden : HKU\S-1-5-21-2884279647-1126821354-3647711694-1000\Software\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}
Daten gefunden : HKU\S-1-5-21-2884279647-1126821354-3647711694-1000\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] - {006ee092-9658-4fd6-bd8e-a21a348e59f5}
Schlüssel gefunden : HKU\S-1-5-21-2884279647-1126821354-3647711694-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Daten gefunden : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\ProgramData\SecurityUtility\SecurityUtility32.d ll
Daten gefunden : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\ProgramData\SecurityUtility\SecurityUtility64.d ll
***** [ Internetbrowser ] *****
*************************
C:\AdwCleaner\AdwCleaner[S1].txt - [5886 Bytes] - [13/04/2016 18:10:04]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [5959 Bytes] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.4 (03.14.2016)
Operating System: Windows 7 Home Premium x64
Ran by Name (Administrator) on 13.04.2016 at 18:28:43,36
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~~~~~~~~
File System: 21
Failed to delete: C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder)
Successfully deleted: C:\ProgramData\7b24ec7cc000461ebe26d116b88142c8 (Folder)
Successfully deleted: C:\Windows\system32\Tasks\HARAPNPKMD1 (Task)
Successfully deleted: C:\Windows\Tasks\HARAPNPKMD1.job (Task)
Successfully deleted: C:\Windows\wininit.ini (File)
Successfully deleted: C:\Program Files\reviversoft (Folder)
Successfully deleted: C:\Users\Name\AppData\Local\Microsoft\Windows\Temp orary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Name\AppData\Local\Microsoft\Windows\Temp orary Internet Files\Content.IE5\1WAELEKE (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Name\AppData\Local\Microsoft\Windows\Temp orary Internet Files\Content.IE5\5EEKXFDP (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Name\AppData\Local\Microsoft\Windows\Temp orary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Name\AppData\Local\Microsoft\Windows\Temp orary Internet Files\Content.IE5\EV8GU37R (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Name\AppData\Local\Microsoft\Windows\Temp orary Internet Files\Content.IE5\FLUO4D5M (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Name\AppData\Local\Microsoft\Windows\Temp orary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Name\AppData\Local\Microsoft\Windows\Temp orary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\Temporary Internet Files\Content.IE5\1WAELEKE (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\Temporary Internet Files\Content.IE5\5EEKXFDP (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\Temporary Internet Files\Content.IE5\EV8GU37R (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\Temporary Internet Files\Content.IE5\FLUO4D5M (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\L ocal\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder)
Registry: 7
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Main\\Search Bar (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Search\\Default_Search_URL (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Search\\SearchAssistant (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchUrl\\Default (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page (Registry Value)
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~~~~~~~~
Scan was completed on 13.04.2016 at 18:30:45,43
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~~~~~~~~
Malwarebytes Anti-Malware
Suchlaufdatum: 13.04.2016
Suchlaufzeit: 19:06
Protokolldatei:
Administrator: Ja
Version: 2.2.1.1043
Malware-Datenbank: v2016.04.13.04
Rootkit-Datenbank: v2016.04.09.01
Lizenz: Testversion
Malware-Schutz: Aktiviert
Schutz vor bösartigen Websites: Aktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Name
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 399599
Abgelaufene Zeit: 48 Min., 19 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(keine bösartigen Elemente erkannt)
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)
Registrierungswerte: 0
(keine bösartigen Elemente erkannt)
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 0
(keine bösartigen Elemente erkannt)
Dateien: 0
(keine bösartigen Elemente erkannt)
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end)