Instant Access: wie löschen?

#0
10.06.2008, 23:31
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#31 Hallo Schlitz

1.
lösche mit cleaner die temporären Dateien
http://www.ccleaner.de/?protecus.de

2.
mit dem HijackThis löschen ("fixen")
Klicke: "Do a system scan only"
Setze ein Häckchen in das Kästchen vor den genannten Eintrag
und wähle fix checked

Zitat

R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - D:\Mein Zeuch\ICQToolbar\toolbaru.dll (file missing)

O4 - HKCU\..\Run: [Instant Access] C:\WINDOWS\system32\nsinet.exe /res

O4 - HKCU\..\Run: [gqugqmyqs] c:\dokumente und einstellungen\schlitz\lokale einstellungen\anwendungsdaten\gqugqmyqs.exe gqugqmyqs

O16 - DPF: {DF1C8E21-4045-4D67-B528-335F1A4F0DE9} - http://es6-scripts.dlv4.com/binaries/egaccess4/egaccess4_1073_em_XP.cab
3.
PC neustarten

4.
wende navilog an - Option 1, dann Option 2 - poste hier den Report von Option2
http://virus-protect.org/artikel/tools/navilog.html

5.
Den folgenden Text in den Editor (Start - Zubehör - Editor) kopieren und als listen.bat mit "Speichern unter" auf dem Desktop. Gebe bei Dateityp "Alle Dateien" an. Du solltest jetzt auf dem Desktop diese Datei finden. --> die listen.bat doppelt klicken--> kopiere den Text, der erscheint

Zitat

cd\
dir "C:\Dokumente und Einstellungen\schlitz\Eigene Dateien" >>files.txt
dir "C:\Dokumente und Einstellungen\All Users\Desktop" >>files.txt
dir "C:\Dokumente und Einstellungen\%UserName%\Desktop" >>files.txt
dir "C:\Dokumente und Einstellungen\schlitz\Startmenü\Programme" >>files.txt
dir "C:\WINDOWS\Downloaded Program Files" >>files.txt
dir "C:\Programme\Common Files" >>files.txt
dir "C:\Dokumente und Einstellungen\%UserName%" >>files.txt
dir "C:\Program Files" >>files.txt
dir "C:\Dokumente und Einstellungen\%UserName%\Lokale Einstellungen\Temporary Internet Files\Content.IE5" >>files.txt
dir "C:\Dokumente und Einstellungen\%UserName%\Lokale Einstellungen\Temp" >>files.txt
dir "C:\WINDOWS\Temp" >>files.txt
dir "C:\Temp" >>files.txt
dir "C:\Programme" >>files.txt
dir "C:\Dokumente und Einstellungen\%UserName%\Lokale Einstellungen\Anwendungsdaten" >>files.txt
dir "C:\Dokumente und Einstellungen\%UserName%\Anwendungsdaten" >>files.txt
dir "C:\Dokumente und Einstellungen\All Users\Anwendungsdaten" >>files.txt
dir "C:\Programme\Gemeinsame Dateien" >>files.txt
dir "C:\Windows\tasks" >>files.txt
notepad files.txt
6.
wende Windowsscan an + poste den report
http://virus-protect.org/artikel/tools/windowsscan.html

7.
wende Combofix an, klicke die Warnmeldung weg + poste hier den report
http://virus-protect.org/artikel/tools/combofix.html
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
11.06.2008, 00:47
...neu hier

Beiträge: 10
#32 Hallo Sabina,
Hier ist d. siet die ich bekomme beim Xp neuinstallation:


gibt es noch eine Hoffnung?

MfG Kawin

Anhang: DSC00363.JPG
Seitenanfang Seitenende
11.06.2008, 10:59
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#33 Kawin
du willst also formatieren, und es fehlt ein Treiber... du solltest eine CD mit den Treibern haben. (VIA AGP-Filter Drive) - Ist Bestandteil der VIA-Chipsatztreiber
Ist die sys wahrscheinlich auf der Motherboard-CD ?
Oder findest du sie mit "Durchsuchen" ?
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
11.06.2008, 21:40
...neu hier

Beiträge: 5
#34 also punkt vier hab ich gemacht und hier der report

Navipromo Removal version 3.5.8 started on 11.06.2008 at 21:31:44,56

Fix running from C:\Programme\navilog1
Actual User Account : "Schlitz"

Updated on 06.06.2008 at 18h00 by IL-MAFIOSO


Microsoft Windows XP [Version 5.1.2600]
Internet Explorer : 6.0.2900.2180
Filesystem type : NTFS

Automatic removal
with Catchme and GNS results


Cleanning stage done on Reboot


*** fsbl1.txt not found ***
(Check that Catchme found nothing in Search Mode)


*** Deleting with Backups GenericNaviSearch results ***

* Deletion in "C:\WINDOWS\System32" *

C:\WINDOWS\prefetch\gqugqmyqs*.pf found !
Copy C:\WINDOWS\prefetch\gqugqmyqs*.pf done !
C:\WINDOWS\prefetch\gqugqmyqs*.pf deleted !


* Deletion in "C:\Dokumente und Einstellungen\Schlitz\lokale~1\anwend~1" *

gqugqmyqs.exe found !
Copy gqugqmyqs.exe done !
gqugqmyqs.exe deleted !

gqugqmyqs.dat found !
Copy gqugqmyqs.dat done !
gqugqmyqs.dat deleted !

gqugqmyqs_nav.dat found !
Copy gqugqmyqs_nav.dat done !
gqugqmyqs_nav.dat deleted !

gqugqmyqs_navps.dat found !
Copy gqugqmyqs_navps.dat done !
gqugqmyqs_navps.dat deleted !


* Deletion in "C:\DOKUME~1\User\lokale~1\anwend~1" *



*** Deleting folders in "C:\WINDOWS" ***


*** Deleting folders in "C:\Programme" ***


*** Deleting folders in "c:\dokume~1\alluse~1\anwend~1" ***


*** Deleting folders in "c:\dokume~1\alluse~1\startm~1\progra~1" ***


*** Deleting folders in "C:\Dokumente und Einstellungen\Schlitz\anwend~1" ***


*** Deleting folders in "C:\DOKUME~1\User\anwend~1" ***


*** Deleting folders in "C:\Dokumente und Einstellungen\Schlitz\lokale~1\anwend~1" ***


*** Deleting folders in "C:\DOKUME~1\User\lokale~1\anwend~1" ***


*** Deleting folders in "C:\Dokumente und Einstellungen\Schlitz\startm~1\progra~1" ***


*** Deleting folders in "C:\DOKUME~1\User\startm~1\progra~1" ***



*** Deleting files ***

C:\WINDOWS\system32\nvs2.inf deleted !

*** Deleting temporary files ***

Cleaning of C:\WINDOWS\Temp done !
Cleaning of C:\Dokumente und Einstellungen\Schlitz\lokale~1\Temp done !

*** Complementary Search ***
(Search specific files)

1)Deletion with backups new Instant Access files:

C:\WINDOWS\system32\nsinet.exe found !
Copy C:\WINDOWS\system32\nsinet.exe done !
C:\WINDOWS\system32\nsinet.exe deleted !

2)Heuristic search and deletion with backups :


* In "C:\WINDOWS\system32" *


* In "C:\Dokumente und Einstellungen\Schlitz\lokale~1\anwend~1" *


* In "C:\DOKUME~1\User\lokale~1\anwend~1" *


*** Copy Registry to Safebackup folder ***

Backing up Registry done !

*** Cleaning Registry ***

Registry cleaned


*** Certificates ***

Egroup Certificate deleted !
Electronic-Group Certificate deleted !
OOO-Favorit Certificate deleted !
Sunny-Day-Design-Ltd Certificate not found !

*** Cleaning stage complete on 11.06.2008 at 21:37:32,95 ***











so zu punkt sechs:
Die 30 neuesten Dateien im Ordner Windows:

***** ***** ***** ***** *****
***** Scanning C:\WINDOWS *****
***** ***** ***** ***** *****

11.06.2008 WindowsUpdate.log 21 37:1.197.169
11.06.2008 0.log 21 35:0
11.06.2008 bootstat.dat 21 34:2.048
11.06.2008 SchedLgU.Txt 21 33:32.626
09.06.2008 iis6.log 00 27:866.786
09.06.2008 ntdtcsetup.log 00 27:153.433
09.06.2008 comsetup.log 00 27:252.224
09.06.2008 ocmsn.log 00 27:41.070
09.06.2008 tsoc.log 00 27:341.440
09.06.2008 tabletoc.log 00 27:35.582
09.06.2008 imsins.log 00 27:1.355
09.06.2008 KB950749.log 00 27:14.246
09.06.2008 medctroc.Log 00 27:51.994
09.06.2008 netfxocm.log 00 27:125.357
09.06.2008 msgsocm.log 00 27:37.043
09.06.2008 ocgen.log 00 27:368.431
09.06.2008 FaxSetup.log 00 27:720.499
09.06.2008 msmqinst.log 00 27:237.126
04.06.2008 NeroDigital.ini 23 15:116
02.06.2008 wiaservc.log 23 29:50
02.06.2008 wiadebug.log 23 29:215
04.05.2008 imsins.BAK 23 51:1.355
04.05.2008 KB948881.log 23 51:8.741
04.05.2008 KB941693.log 23 50:13.242
04.05.2008 KB948590.log 23 50:13.098
04.05.2008 updspapi.log 23 50:30.148
04.05.2008 KB944338.log 23 47:13.971


Die 50 neuesten Dateien im Ordner Windows\system32:

***** ***** ***** ***** *****
***** Scanning C:\WINDOWS\system32 *****
***** ***** ***** ***** *****

10.06.2008 wpa.dbl 22 08:2.206
09.05.2008 MRT.exe 23 35:16.863.864
05.05.2008 FNTCACHE.DAT 02 01:250.288
29.04.2008 perfh009.dat 00 44:395.200
29.04.2008 perfc009.dat 00 44:59.440
29.04.2008 perfh007.dat 00 44:408.618
29.04.2008 perfc007.dat 00 44:71.598
31.03.2008 PerfStringBackup.INI 19 27:951.190
28.03.2008 jupdate-1.6.0_05-b13.log 17 15:6.641
25.03.2008 msjint40.dll 06 51:187.168
25.03.2008 mswstr10.dll 06 51:621.344
25.03.2008 msxbde40.dll 06 50:355.104
25.03.2008 mswdat10.dll 06 50:838.432
25.03.2008 mstext40.dll 06 50:264.992
25.03.2008 msrepl40.dll 06 50:559.904
25.03.2008 msrd3x40.dll 06 50:322.336
25.03.2008 msrd2x40.dll 06 50:432.928
25.03.2008 mspbde40.dll 06 50:355.104
25.03.2008 msltus40.dll 06 50:219.936
25.03.2008 msjtes40.dll 06 50:248.608
25.03.2008 msjter40.dll 06 50:60.192
25.03.2008 msjetoledb40.dll 06 50:355.112
25.03.2008 msjet40.dll 06 50:1.516.568
25.03.2008 msexcl40.dll 06 50:326.432
25.03.2008 msexch40.dll 06 50:518.944
22.03.2008 CmdLineExt.dll 22 24:98.304
20.03.2008 win32k.sys 10 03:1.845.376
29.02.2008 jupdate-1.6.0_03-b05.log 21 57:5.686
22.02.2008 javaws.exe 03 33:139.264
22.02.2008 javacpl.cpl 03 33:69.632
22.02.2008 javaw.exe 02 23:135.168
22.02.2008 java.exe 02 23:135.168
20.02.2008 gdi32.dll 08 50:282.624
20.02.2008 dnsapi.dll 07 33:148.992
20.02.2008 dnsrslvr.dll 07 33:45.568
10.01.2008 dvmsg.dll 12 49:554.496
19.12.2007 MRT.INI 22 12:118
19.12.2007 TZLog.log 22 10:259.512
18.12.2007 vbscript.dll 16 41:417.792
18.12.2007 jscript.dll 16 41:450.560
12.12.2007 libdivx.dll 00 34:1.044.480
12.12.2007 ssldivx.dll 00 34:200.704
04.12.2007 oleaut32.dll 20 40:550.912
13.11.2007 tzchange.exe 13 31:60.416
07.11.2007 lsasrv.dll 11 27:729.600
30.10.2007 quartz.dll 00 42:1.293.312
29.10.2007 xpsp3res.dll 17 35:123.904


***** ***** ***** ***** *****
***** Scanning C:\WINDOWS\system32\drivers\etc\hosts *****
***** ***** ***** ***** *****

# Copyright (c) 1993-1999 Microsoft Corp.
#
# Dies ist eine HOSTS-Beispieldatei, die von Microsoft TCP/IP
# für Windows 2000 verwendet wird.
#
# Diese Datei enthält die Zuordnungen der IP-Adressen zu Hostnamen.
# Jeder Eintrag muss in einer eigenen Zeile stehen. Die IP-
# Adresse sollte in der ersten Spalte gefolgt vom zugehörigen
# Hostnamen stehen.
# Die IP-Adresse und der Hostname müssen durch mindestens ein
# Leerzeichen getrennt sein.
#
# Zusätzliche Kommentare (so wie in dieser Datei) können in
# einzelnen Zeilen oder hinter dem Computernamen eingefügt werden,
# aber müssen mit dem Zeichen '#' eingegeben werden.
#
# Zum Beispiel:
#
# 102.54.94.97 rhino.acme.com # Quellserver
# 38.25.63.10 x.acme.com # x-Clienthost

127.0.0.1 localhost



***** ***** ***** ***** *****
***** Scanning Processe *****
***** ***** ***** ***** *****


Abbildname PID Sitzungsname Sitz.-Nr. Speichernutzung
========================= ===== ================ ========== ===============
System Idle Process 0 Console 0 16 K
System 4 Console 0 220 K
smss.exe 500 Console 0 404 K
csrss.exe 564 Console 0 4.292 K
winlogon.exe 592 Console 0 2.936 K
services.exe 640 Console 0 4.060 K
lsass.exe 652 Console 0 1.688 K
ati2evxx.exe 804 Console 0 2.160 K
svchost.exe 816 Console 0 4.688 K
svchost.exe 888 Console 0 4.208 K
svchost.exe 964 Console 0 23.076 K
svchost.exe 1016 Console 0 3.428 K
svchost.exe 1176 Console 0 4.380 K
spoolsv.exe 1304 Console 0 4.772 K
AVGUARD.EXE 1476 Console 0 5.964 K
AVWUPSRV.EXE 1500 Console 0 1.220 K
ClipInc-Server.exe 1544 Console 0 7.540 K
MDM.EXE 1616 Console 0 2.824 K
wdfmgr.exe 1804 Console 0 1.684 K
alg.exe 828 Console 0 3.500 K
ati2evxx.exe 1716 Console 0 2.992 K
explorer.exe 268 Console 0 25.952 K
wmiprvse.exe 456 Console 0 4.868 K
SOUNDMAN.EXE 3624 Console 0 3.288 K
AVGNT.EXE 3632 Console 0 1.648 K
jusched.exe 3748 Console 0 2.476 K
ctfmon.exe 3756 Console 0 3.060 K
ClipIncTray.exe 3964 Console 0 5.196 K
wuauclt.exe 256 Console 0 3.960 K
kernel.exe 1044 Console 0 5.220 K
sc_watch.exe 748 Console 0 2.396 K
PROFIL~1.EXE 1944 Console 0 5.424 K
firefox.exe 1116 Console 0 40.492 K
cmd.exe 3356 Console 0 1.736 K
notepad.exe 3328 Console 0 3.476 K
cmd.exe 3448 Console 0 1.852 K
tasklist.exe 2152 Console 0 4.464 K
wmiprvse.exe 2204 Console 0 5.556 K



Microsoft Windows XP [Version 5.1.2600]


http://www.paules-pc-forum.de
***** Malware Team *****


***** Ende des Scans 11.06.2008 um 21:43:15,34 ***





zu punkt nummero sieben:
ComboFix 08-06-10.5 - Schlitz 2008-06-11 21:49:21.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1031.18.300 [GMT 2:00]
ausgeführt von:: C:\Dokumente und Einstellungen\Schlitz\Desktop\ComboFix.exe
* Neuer Wiederherstellungspunkt wurde erstellt

[color=red]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/color]
.

(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Dokumente und Einstellungen\Schlitz\Startmenü\crazy girls.lnk

.
((((((((((((((((((((((( Dateien erstellt von 2008-05-11 bis 2008-06-11 ))))))))))))))))))))))))))))))
.

2008-06-11 21:23 . 2008-06-11 21:37 <DIR> d-------- C:\Programme\Navilog1
2008-06-10 22:48 . 2008-06-10 22:48 <DIR> d-------- C:\Programme\Trend Micro

.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-06-11 19:03 --------- d-----w C:\Programme\AVPersonal
2008-05-03 15:26 --------- d-----w C:\Programme\Winamp
2008-05-02 14:56 --------- d-----w C:\Programme\Gemeinsame Dateien\InstallShield
2008-04-28 22:43 --------- d-----w C:\Programme\Java
2008-04-28 13:16 1,541,896 ----a-w C:\WINDOWS\CISUnins.exe
2008-04-28 13:16 1,541,896 ----a-w C:\WINDOWS\CICUnins.exe
2008-04-26 00:36 --------- d-----w C:\Programme\Gemeinsame Dateien\DVDVideoSoft
2008-03-25 04:51 621,344 ----a-w C:\WINDOWS\system32\mswstr10.dll
2008-03-25 04:51 187,168 ----a-w C:\WINDOWS\system32\msjint40.dll
2008-03-23 02:27 0 ----a-r C:\logwmemory.bin
2008-03-22 20:24 98,304 ----a-w C:\WINDOWS\system32\CmdLineExt.dll
2008-03-20 08:03 1,845,376 ----a-w C:\WINDOWS\system32\win32k.sys
.

((((((((((((((((((((((((((((((((((((((((((((( AWF ))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
-c--a-w 94,208 2005-09-03 14:18:30 C:\Programme\Gemeinsame Dateien\Ahead\Lib\bak\NMBgMonitor.exe

-c--a-w 212,992 2003-07-01 10:33:56 C:\Programme\T-Online\T-Online_Software_5\Basis-Software\Basis1\bak\ToADiMon.exe

-c--a-w 15,360 2004-08-03 23:57:50 C:\WINDOWS\system32\bak\ctfmon.exe
----a-w 15,360 2004-08-03 23:57:50 C:\WINDOWS\system32\ctfmon.exe

-c--a-w 155,648 2001-07-09 10:50:42 C:\WINDOWS\system32\bak\NeroCheck.exe

.
(((((((((((((((((((((((((((( Autostart Punkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Hinweis* leere Eintrage & legitime Standardeintrage werden nicht angezeigt.

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 01:57 15360]
"ClipIncSrvTray"="D:\Tobit ClipInc\Player\ClipIncTray.exe" [2008-04-18 18:08 584704]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NWEReboot"="" []
"SoundMan"="SOUNDMAN.EXE" [2002-10-28 08:38 47104 C:\WINDOWS\SOUNDMAN.EXE]
"AVGCtrl"="C:\Programme\AVPersonal\AVGNT.exe" [2004-01-16 16:02 118824]
"Anti-Blaxx Manager"="D:\mehr games\battlefield2\Anti-Blaxx 1.18\Anti-Blaxx.exe" [ ]
"Adobe Reader Speed Launcher"="D:\Adobe\Reader\Reader_sl.exe" [2008-01-11 23:16 39792]
"SunJavaUpdateSched"="C:\Programme\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 05:25 144784]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-04 01:57 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ Lite]
--a------ 2006-07-11 12:15 3144800 D:\Mein Zeuch\ICQLite\ICQLite.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"D:\\Mein Zeuch\\ICQLite\\ICQLite.exe"=
"D:\\games\\Soldat\\Soldat\\Soldat.exe"=
"D:\\Tobit ClipInc\\Server\\ClipInc-Server.exe"=
"D:\\Tobit ClipInc\\Player\\ClipInc-Player.exe"=
"E:\\games\\CS\\SteamApps\\schlitz666\\counter-strike\\hl.exe"=
"E:\\games\\CS\\SteamApps\\schlitz666\\day of defeat\\hl.exe"=
"E:\\games\\CS\\SteamApps\\schlitz666\\condition zero\\hl.exe"=

R1 sdcplh;sdcplh;C:\WINDOWS\system32\drivers\sdcplh.sys [2005-11-09 17:07]
R2 ClipInc001;ClipInc 001;D:\Tobit ClipInc\Server\ClipInc-Server.exe 001 []
R3 avgntdd;avgntdd;C:\Programme\AVPersonal\AVGNTDD.SYS [2003-08-12 21:07]
S2 AVWUpSrv;AntiVir Update;C:\Programme\AVPersonal\AVWUPSRV.EXE [2003-09-12 09:12]
S3 c5c0f32b-23ae-4a19-a4c6-1f78eade2ec7;c5c0f32b-23ae-4a19-a4c6-1f78eade2ec7;F:\Player\cds300.dll []

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e973e736-e51c-11db-bceb-0010dce39eaa}]
\Shell\AutoRun\command - G:\travel&work.exe
\Shell\Shell00\Command - G:\travel&work.exe

.
**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-06-11 21:51:18
Windows 5.1.2600 Service Pack 2 NTFS

Scanne versteckte Prozesse...

Scanne versteckte Autostart Einträge...

Scanne versteckte Dateien...

Scan erfolgreich abgeschlossen
versteckte Dateien: 0

**************************************************************************
.
Zeit der Fertigstellung: 2008-06-11 21:55:15
ComboFix-quarantined-files.txt 2008-06-11 19:54:54

8 Verzeichnis(se), 923,848,704 Bytes frei
10 Verzeichnis(se), 2,918,940,672 Bytes frei

94 --- E O F --- 2008-06-08 22:27:08
Dieser Beitrag wurde am 11.06.2008 um 21:57 Uhr von Schlitz editiert.
Seitenanfang Seitenende
11.06.2008, 22:29
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#35 Hallo Schlitz
das sieht ja wunderbar aus ;)

«
scanne + poste den report
http://virus-protect.org/artikel/tools/malwarebytes.html

««
nun müssen wir nur noch sehen, ob eventuell ein USB-Stick verseucht ist....

Virustotal http://www.virustotal.com/flash/index_en.html

G:\travel&work.exe

Auf Durchsuchen klicken --> Datei aussuchen (oder gleich die Datei mit korrektem Pfad einkopieren mit Strg V) --> Klick auf die zu prüfende Datei und öffnen--> klick auf "Senden der Datei"... jetzt abwarten - dann mit der rechten Maustaste den Text markieren -> kopieren
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
12.06.2008, 02:38
...neu hier

Beiträge: 10
#36 Hallo Sabina,

In die Moment wo das Fenster scheint, wirden die Maus und Tastatur geblockt,
ist da vieleicht was kaput?
MfG

Kawin

Anhang: DSC00364.JPG
Seitenanfang Seitenende
12.06.2008, 12:35
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#37 Hallo kawin
hab dir eine PN geschrieben
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
12.06.2008, 22:14
...neu hier

Beiträge: 5
#38 so zum ersten punkt habe gescannt und die 7 dateien gelöscht
hier der logfile

Malwarebytes' Anti-Malware 1.17
Datenbank Version: 850

22:13:36 12.06.2008
mbam-log-6-12-2008 (22-13-36).txt

Scan Art: Komplett Scan (C:\|D:\|E:\|)
Objekte gescannt: 75691
Scan Dauer: 30 minute(s), 45 second(s)

Infizierte Speicher Prozesse: 0
Infizierte Speicher Module: 0
Infizierte Registrierungsschlüssel: 1
Infizierte Registrierungswerte: 0
Infizierte Datei Objekte der Registrierung: 0
Infizierte Verzeichnisse: 4
Infizierte Dateien: 2

Infizierte Speicher Prozesse:
(Keine Malware Objekte gefunden)

Infizierte Speicher Module:
(Keine Malware Objekte gefunden)

Infizierte Registrierungsschlüssel:
HKEY_LOCAL_MACHINE\SOFTWARE\MySearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.

Infizierte Registrierungswerte:
(Keine Malware Objekte gefunden)

Infizierte Datei Objekte der Registrierung:
(Keine Malware Objekte gefunden)

Infizierte Verzeichnisse:
C:\Programme\MySearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Programme\MySearch\bar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Programme\MySearch\bar\History (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Programme\MySearch\bar\Settings (Adware.MyWebSearch) -> Quarantined and deleted successfully.

Infizierte Dateien:
C:\Programme\MySearch\bar\History\search2 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Programme\MySearch\bar\Settings\prevcfg2.htm (Adware.MyWebSearch) -> Quarantined and deleted successfully.








zu dem usb stick:
0 bytes size received / Se ha recibido un archivo vacio
Dieser Beitrag wurde am 12.06.2008 um 22:18 Uhr von Schlitz editiert.
Seitenanfang Seitenende
12.06.2008, 23:52
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#39 Hallo Schlitz

über die G:\travel&work.exe kann ich im net nichts finden, aber es ist eine eigenartige exe.
Wie lange hast du den USB-Stick dort schon angeschlossen ? Was ist auf dem USB drauf ?
Macht es dir was aus, ihn zu formatieren ?
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
13.06.2008, 13:54
...neu hier

Beiträge: 5
#40 also ich hab zwei usb sticks gestern noch formatiert waren nur lieder drauf
und dann hab ich noch ne xterne festplatte mit nem haufen lieder und filmen und bilder und den zu fromatieren fänd ich ehrlich gesagt nich so rosig!
was is denn dieses travel undwork??
auch malware?

also wenns gar ncih anders geht dann formatier ich die platte eben !
und angeschlossen is die immer aba meistens ausgeschaltet und nur wenn ich musik hör mach ich se an und lass direkt von ihr abspielen!
Seitenanfang Seitenende
13.06.2008, 13:59
Ehrenmitglied
Avatar Sabina

Beiträge: 29434
#41 der rechner ist wieder sauber, es geht mir nur um den USB-Stick. (G:\travel&work.exe)
Lasse es erst mal dabei, wenn es noch Probleme geben sollte, melde dich wieder
«
und du kannst noch einen Onlinescan mit Bitdefender machen
http://virus-protect.org/onlinescan.html
__________
MfG Sabina

rund um die PC-Sicherheit
Seitenanfang Seitenende
01.07.2008, 01:14
...neu hier

Beiträge: 5
#42 hey sabine danke nochmal für alles bei mir is bisher das problem nichmehr aufgetreten echt cool dass du mir geholfen hast merci für alles!!
Seitenanfang Seitenende
31.07.2008, 14:34
...neu hier

Beiträge: 4
#43 Hey Sabina,
ich bräuchte auch mal deine Hilfe, wegen des Instant Access - Dialers!

Hier ist mein Hijackthis - Protokoll:


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:32:14, on 31.07.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\VTtrayp.exe
C:\WINDOWS\system32\VTTimer.exe
C:\Programme\VIAudioi\SBADeck\ADeck.exe
C:\Programme\Netropa\Multimedia Keyboard\MMKeybd.exe
C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe
C:\Programme\Ulead Systems\Ulead Photo Explorer 8.0 SE Basic\Monitor.exe
C:\Programme\QuickTime\QTTask.exe
C:\Programme\Ulead Systems\Ulead Photo Express 5 SE\calcheck.exe
C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe
C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe
C:\Programme\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programme\Messenger\msmsgs.exe
C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Programme\Home Cinema\Power2Go\Power2GoExpress.exe
C:\dokumente und einstellungen\horst\lokale einstellungen\anwendungsdaten\kamukow.exe
C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe
C:\Programme\Telekom\Eumex 704PC LAN\Capictrl.exe
C:\Programme\Netropa\Multimedia Keyboard\TrayMon.exe
C:\Programme\Netropa\Onscreen Display\OSD.exe
C:\Programme\Telekom\Eumex 704PC LAN\HNetCtrl.exe
C:\Programme\Netropa\Multimedia Keyboard\nhksrv.exe
C:\Programme\a-squared Anti-Malware\a2service.exe
C:\Programme\AntiVir PersonalEdition Classic\sched.exe
C:\Programme\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Programme\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\System32\svchost.exe
C:\Programme\Gemeinsame Dateien\Ulead Systems\DVD\ULCDRSvr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Programme\Java\jre1.6.0_03\bin\jucheck.exe
C:\WINDOWS\system32\nsinet.exe
C:\Programme\Internet Explorer\iexplore.exe
C:\Programme\Adobe\Acrobat 7.0\Reader\AcroRd32.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.t-online.de/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Dokumente und Einstellungen\horst\Eigene Dateien\Sarah's Zeug\ICQ\ICQToolbar\toolbaru.dll (file missing)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (file missing)
O2 - BHO: GamesBar - {6F282B65-56BF-4BD1-A8B2-A4449A05863D} - C:\Programme\GamesBar\oberontb.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programme\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programme\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programme\google\googletoolbar2.dll
O3 - Toolbar: GamesBar - {6F282B65-56BF-4BD1-A8B2-A4449A05863D} - C:\Programme\GamesBar\oberontb.dll
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [AudioDeck] C:\Programme\VIAudioi\SBADeck\ADeck.exe 1
O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Programme\Netropa\Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [avgnt] "C:\Programme\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [Ulead AutoDetector] C:\Programme\Ulead Systems\Ulead Photo Explorer 8.0 SE Basic\Monitor.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programme\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Ulead Photo Express 5 SE Calendar Checker] C:\Programme\Ulead Systems\Ulead Photo Express 5 SE\calcheck.exe
O4 - HKLM\..\Run: [ICQ Lite] "C:\Dokumente und Einstellungen\horst\Eigene Dateien\Sarah's Zeug\ICQ\ICQLite\ICQLite.exe" -minimize
O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programme\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Programme\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] C:\Programme\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [Power2GoExpress] "C:\Programme\Home Cinema\Power2Go\Power2GoExpress.exe" /Startup
O4 - HKCU\..\Run: [kamukow] c:\dokumente und einstellungen\horst\lokale einstellungen\anwendungsdaten\kamukow.exe kamukow
O4 - HKCU\..\Run: [Instant Access] C:\WINDOWS\system32\nsinet.exe /res
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETZWERKDIENST')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Action Manager 32.lnk = C:\Programme\ScannerU\AM32.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Programme\Gemeinsame Dateien\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader - Schnellstart.lnk = C:\Programme\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: CAPIControl.lnk = ?
O4 - Global Startup: Denk dran!.lnk = C:\Programme\DATA BECKER\Denk dran!\BdR.exe
O4 - Global Startup: HomeNet Control.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Programme\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {1A93C934-025B-4c3a-B38E-9654A7003239} - C:\Programme\GamesBar\oberontb.dll
O9 - Extra 'Tools' menuitem: GamesBar - {1A93C934-025B-4c3a-B38E-9654A7003239} - C:\Programme\GamesBar\oberontb.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Dokumente und Einstellungen\horst\Eigene Dateien\Sarah's Zeug\ICQ\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Dokumente und Einstellungen\horst\Eigene Dateien\Sarah's Zeug\ICQ\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.versatel.de/internet-cd/
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {916CCBE5-C8C5-4F34-AEF8-064504454C75} (AtlAsianataCtlAttrib Class) - http://kraisoft.com/files/online/asianata.cab
O16 - DPF: {DEB21AD3-FDA4-42F6-B57D-EE696A675EE8} (IPSUploader Control) - http://as.photoprintit.de/ips-opdata/layout/default01/activex/IPSUploader.cab
O16 - DPF: {DF1C8E21-4045-4D67-B528-335F1A4F0DE9} - http://es6-scripts.dlv4.com/binaries/egaccess4/egaccess4_1073_em_XP.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{FBD10412-FE86-4E20-AE01-9D1B4D0DBB0E}: NameServer = 62.220.18.8 89.246.64.8
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O23 - Service: a-squared Anti-Malware Service (a2AntiMalware) - Emsi Software GmbH - C:\Programme\a-squared Anti-Malware\a2service.exe
O23 - Service: AntiVir Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programme\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Service (AntiVirService) - Avira GmbH - C:\Programme\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Boonty Games - BOONTY - C:\Programme\Gemeinsame Dateien\BOONTY Shared\Service\Boonty.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: GoogleDesktopManager - Google - C:\Programme\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Programme\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Programme\Netropa\Multimedia Keyboard\nhksrv.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Programme\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Programme\Gemeinsame Dateien\Ulead Systems\DVD\ULCDRSvr.exe
O24 - Desktop Component 0: (no name) - http://www.t-online.de/bg.gif
O24 - Desktop Component 1: (no name) - http://www.t-online.de/international/images/bg.gif

--
End of file - 10123 bytes


Danke schonmal!

LG Sarah
Seitenanfang Seitenende
01.08.2008, 10:29
Ehrenmitglied
Avatar Argus

Beiträge: 6028
#44 Start-->Ausführen kopiere rein:
sc stop "Boonty Games"
Klicke OK

Mach dasselbe mit
sc delete "Boonty Games"
Klicke OK

Schliesse alle Fenster und starte Hijack This
Klicke: Do a Systemscan only
Setze ein Häckchen in das Kästchen vor den genannten Eintrag bei

Zitat

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (file missing)
O2 - BHO: GamesBar - {6F282B65-56BF-4BD1-A8B2-A4449A05863D} - C:\Programme\GamesBar\oberontb.dll
O3 - Toolbar: GamesBar - {6F282B65-56BF-4BD1-A8B2-A4449A05863D} - C:\Programme\GamesBar\oberontb.dll
O4 - HKCU\..\Run: [kamukow] c:\dokumente und einstellungen\horst\lokale einstellungen\anwendungsdaten\kamukow.exe kamukow
O4 - HKCU\..\Run: [Instant Access] C:\WINDOWS\system32\nsinet.exe /res
O9 - Extra button: (no name) - {1A93C934-025B-4c3a-B38E-9654A7003239} - C:\Programme\GamesBar\oberontb.dll
O9 - Extra 'Tools' menuitem: GamesBar - {1A93C934-025B-4c3a-B38E-9654A7003239} - C:\Programme\GamesBar\oberontb.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Dokumente und Einstellungen\horst\Eigene Dateien\Sarah's Zeug\ICQ\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Dokumente und Einstellungen\horst\Eigene Dateien\Sarah's Zeug\ICQ\ICQLite\ICQLite.exe (file missing)
O16 - DPF: {DF1C8E21-4045-4D67-B528-335F1A4F0DE9} - http://es6-scripts.dlv4.com/binaries/egaccess4/egaccess4_1073_em_XP.cab
klicke: Fix checked
Dein Internet Explorer muss geschlossen wenn Du Fix Checked klickst

Malwarebytes Anti-Malware
Malwarebytes Anti-Malware fuer Windows 2000,XP und Vista
Download MBAM
Doppelklick mbam-setup und waehle Deutsch ,das Program wird jetzt ge-updatet
Waehle bei Reiter “Scanner”> "Schnell Scan durchfuehren" .
Waehle alle Laufwerke>Scan laufen lassen
Wenn am Ende infizierungen gefunden werden,anhaacken und entfernen lassen
Unter Scanberichte stet das log (mbam-log-XX-XX-XXXX.txt)
Poste dessen inhalt hier ins Forum
Note:
Wenn MBAM Schwierigkeiten damit hat Daten zu entfernen wird es gemeldet und klicke OK
Danach wird gefragt den Rechner neu zu starten,lass es zu
Nehme als Update Spiegel >>It-mate.co.uk
Malwarebytes Anti-Malware kann man nachher behalten !

ComboFix
Download ComboFix und speichert es auf den Desktop!
Alle Fenster schliessen und combofix.exe starten
Folge den Instruktionen in das Fenster
Waehrend Combofix lauft NICHT ins Fenster klicken sonst erfriert dein Rechner
Wenn das Tool fertig ist,oeffnet sich ein logfile (C:\ combofix.txt)
nun das KOMPLETTE Log mit rechtem Mausklick abkopieren und ins Forum mit rechtem Mausklick "einfügen"
Wenn dein Virenscanner meckert,ignorieren !

zusammen mit ein neuen log von HijackThis
__________
MfG Argus
Seitenanfang Seitenende
01.08.2008, 17:34
...neu hier

Beiträge: 4
#45 Das ist der Logfile des Malware-Scans:

Malwarebytes' Anti-Malware 1.24
Datenbank Version: 1014
Windows 5.1.2600 Service Pack 2

16:59:39 01.08.2008
mbam-log-8-1-2008 (16-59-39).txt

Scan-Methode: Quick-Scan
Durchsuchte Objekte: 43921
Laufzeit: 11 minute(s), 47 second(s)

Infizierte Speicherprozesse: 0
Infizierte Speichermodule: 0
Infizierte Registrierungsschlüssel: 4
Infizierte Registrierungswerte: 0
Infizierte Dateiobjekte der Registrierung: 0
Infizierte Verzeichnisse: 163
Infizierte Dateien: 178

Infizierte Speicherprozesse:
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel:
HKEY_CLASSES_ROOT\oberontb.band (Adware.Gamesbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\oberontb.band.1 (Adware.Gamesbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\egdhtml (Adware.NaviPromo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Trymedia Systems (Adware.Trymedia) -> Quarantined and deleted successfully.

Infizierte Registrierungswerte:
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung:
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse:
C:\Programme\Instant Access (Adware.EGDAccess) -> Delete on reboot.
C:\Programme\Instant Access\Center (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer (Adware.EGDAccess) -> Delete on reboot.
C:\Programme\Instant Access\Dialer\106446382 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\50280 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\50280\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\50280\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\1 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\3020 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\3020\DE (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\www.waypointcash.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\www.waypointcash.com\conversion (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\custom\4242 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\custom\4242\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\50282 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\50282\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\50282\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom\4242 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom\4242\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom\4239 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom\4239\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images\EN (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.

Infizierte Dateien:
C:\Programme\Instant Access\Center\Crazy Girls.upd (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Center\LAST SOFTWARES.upd (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Center\NoCreditCard.upd (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Center\tray1.ico (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\Crazy Girls.lnk (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\es6-external-api.dlv4.com\js\ecdbad9d3321d04dd56c8ab19fac2616 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\Common\f068544e1b748e2b5f0a47bb395ddf73.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\e0f14ad0554e723c3b2361e87c5750b6.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\e0f14ad0554e723c3b2361e87c5750b6.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\50280\images\background.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\50280\images\index_01.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\50280\images\index_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\106446382\fp.pc-on-internet.com\50280\images\EN\index_02.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\NoCreditCard.lnk (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\es6-external-api.dlv4.com\js\8d851b17943d9be87fe7d7ac37bee7d8 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\Common\bd8a8eee3f5bb40abf18dca6b08971d2.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\1\dialer.ico (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\3020\DE\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\3020\DE\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\3020\DE\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\es6-scripts.nccgateway.com\custom\3020\DE\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\b2a2c467f71efaa9ca82062bdb3fd563.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\b2a2c467f71efaa9ca82062bdb3fd563.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_01.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_02.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_05.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_06.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_07.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_09.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_10.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_11.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\traffic.waypointcash.com\emoticonsplanet.com\enter\8\en\emoticonsplanet_12.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\207397101\www.waypointcash.com\conversion\160856259f6ef5fda936840b058c1fdb (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\Crazy Girls.lnk (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\es6-external-api.dlv4.com\js\b9895f4d66fef5627642ee5a87c8bf97 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\Common\b5a7967148e9b2fb2d47eac2ba57662e.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images\index_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images\index_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images\index_06.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images\index_07.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images\EN\index_01.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\210375576\fp.pc-on-internet.com\50285\images\EN\index_02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\es6-external-api.dlv4.com\js\a4725225df7fefac2b123ab019c4b02b (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\Common\6cf44bff09597e7ebf3119f900e530a5.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\e97d1ab95866ef2514aa9d8d925d03bf.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\e97d1ab95866ef2514aa9d8d925d03bf.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\AC_RunActiveContent.js (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\reflection.js (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\video.swf (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images\01.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images\decob.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images\decot.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images\EN\slogan.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images\EN\slogan02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\473451603\fp.pc-on-internet.com\50329\images\EN\slogan03.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\es6-external-api.dlv4.com\js\3c85860603a4057b32e165a916cc5fb5 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\Common\4927fb24a3817acd617c3e85e7cd9052.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images\index_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images\index_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images\index_06.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images\index_07.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images\EN\index_01.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\53637542\fp.pc-on-internet.com\50285\images\EN\index_02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\Crazy Girls.lnk (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\es6-external-api.dlv4.com\js\7862eeb48deaa7b7df3ec2e5deacc044 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\Common\379b49299cca07be22a7366f1a95eb0a.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\613786178fd0687d1de167be4435addc.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\613786178fd0687d1de167be4435addc.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images\index_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images\index_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images\index_06.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images\index_07.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images\EN\index_01.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\628533623\fp.pc-on-internet.com\50285\images\EN\index_02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\Crazy Girls.lnk (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\es6-external-api.dlv4.com\js\79c632e03638439dbd3af541ccab6e33 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\Common\3c500e112a77ea83d6f1c9f748b0703e.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\80c06a771d548005c3e42de06fd81ac4.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\80c06a771d548005c3e42de06fd81ac4.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\50282\images\index_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\50282\images\EN\index_01.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\745116137\fp.pc-on-internet.com\50282\images\EN\index_02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\Crazy Girls.lnk (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\es6-external-api.dlv4.com\js\b9895f4d66fef5627642ee5a87c8bf97 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\Common\b5a7967148e9b2fb2d47eac2ba57662e.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom\4239\4239_dialer.ico (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images\index_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images\index_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images\index_06.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images\index_07.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images\EN\index_01.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\78324808\fp.pc-on-internet.com\50285\images\EN\index_02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\es6-external-api.dlv4.com\js\5d4c072ec769e9931aabf93812ddfb1e (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\Common\ee37c8b8c159e22778feb32e25fe0ec1.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom\4242\4242_dialer.ico (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\es6-www.0texkax7c6hzuidk.com\custom\4242\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\2cd10a7e7f2aa20e2d6c8b6132ce9d69.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\2cd10a7e7f2aa20e2d6c8b6132ce9d69.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\AC_RunActiveContent.js (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\reflection.js (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\video.swf (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images\01.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images\decob.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images\decot.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images\EN\slogan.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images\EN\slogan02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\842150081\fp.pc-on-internet.com\50329\images\EN\slogan03.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\es6-external-api.dlv4.com\js\3c85860603a4057b32e165a916cc5fb5 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\Common\4927fb24a3817acd617c3e85e7cd9052.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom\4239\4239_dialer.ico (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images\index_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images\index_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images\index_06.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images\index_07.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images\EN\index_01.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\843055763\fp.pc-on-internet.com\50285\images\EN\index_02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\es6-external-api.dlv4.com\js\3c85860603a4057b32e165a916cc5fb5 (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\Common\4927fb24a3817acd617c3e85e7cd9052.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom\4239\4239_dialer.ico (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button1.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button2.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button3.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\es6-www.0texkax7c6hzuidk.com\custom\4239\EN\button4.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\02cae45e8d10cb569f248e2e6dd35003.html_0.loginvis (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images\index_03.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images\index_04.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images\index_06.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images\index_07.jpg (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images\EN\index_01.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Programme\Instant Access\Dialer\928508627\fp.pc-on-internet.com\50285\images\EN\index_02.gif (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\nsinet.exe (Adware.NaviPromo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\nvs2.inf (Adware.EGDAccess) -> Quarantined and deleted successfully.


Dein Link zu Combofix ist leider veraltet, aber ich hab mein eine Version runtergeladen!
Habs jedoch noch nicht gestartet! Da scheint ja ein ziemlich großes Riskio dabei zu sein, dass es den Rechner schrottet!
Kann ich das Risiko irgendwie vermeiden und meine Daten sichern?
Seitenanfang Seitenende
Um auf dieses Thema zu ANTWORTEN
bitte erst » hier kostenlos registrieren!!

Folgende Themen könnten Dich auch interessieren: