Jump to content

Change

Members
  • Posts

    7
  • Joined

  • Last visited

Posts posted by Change

  1. Hello,
    in the last days i noticed sometimes a command-window opened up and closes immediately.
    I was not able to see the content and since now i was not able to reproduce.

    Because of that i ran MWB and it found a WOW6432Updater.

    By searching for that i found the post of a user with the same problem.
    https://forums.malwarebytes.com/topic/241531-wow6432node-updater/

    I did the workaround from kevinf80's first answer and hope anybody can help me now, that im safe for now.
    I hope its not a problem, that my programs run on german.


    MWB Scan

    Spoiler

    Malwarebytes
    www.malwarebytes.com

    -Protokolldetails-
    Scan-Datum: 23.03.20
    Scan-Zeit: 01:42
    Protokolldatei: 3675e47c-6c9f-11ea-81ff-fcaa1431cd6f.json

    -Softwaredaten-
    Version: 4.1.0.56
    Komponentenversion: 1.0.854
    Version des Aktualisierungspakets: 1.0.21204
    Lizenz: Testversion

    -Systemdaten-
    Betriebssystem: Windows 10 (Build 18362.720)
    CPU: x64
    Dateisystem: NTFS
    Benutzer: DESKTOP-L2UNOPE\Jonas

    -Scan-Übersicht-
    Scan-Typ: Bedrohungs-Scan
    Scan gestartet von: Manuell
    Ergebnis: Abgeschlossen
    Gescannte Objekte: 312872
    Erkannte Bedrohungen: 6
    In die Quarantäne verschobene Bedrohungen: 6
    Abgelaufene Zeit: 1 Min., 49 Sek.

    -Scan-Optionen-
    Speicher: Aktiviert
    Start: Aktiviert
    Dateisystem: Aktiviert
    Archive: Aktiviert
    Rootkits: Aktiviert
    Heuristik: Aktiviert
    PUP: Erkennung
    PUM: Erkennung

    -Scan-Details-
    Prozess: 0
    (keine bösartigen Elemente erkannt)

    Modul: 0
    (keine bösartigen Elemente erkannt)

    Registrierungsschlüssel: 2
    Adware.KeenValue, HKLM\SOFTWARE\WOW6432NODE\Updater, Löschen bei Neustart, 6965, 212959, 1.0.21204, , ame,
    PUP.Optional.StartFenster, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Updater, Löschen bei Neustart, 481, 541219, , , ,

    Registrierungswert: 0
    (keine bösartigen Elemente erkannt)

    Registrierungsdaten: 0
    (keine bösartigen Elemente erkannt)

    Daten-Stream: 0
    (keine bösartigen Elemente erkannt)

    Ordner: 1
    PUP.Optional.StartFenster, C:\PROGRAMDATA\UPDATER, Löschen bei Neustart, 481, 541219, 1.0.21204, , ame,

    Datei: 3
    PUP.Optional.StartFenster, C:\PROGRAMDATA\UPDATER\CHECK-UPDATE.EXE, Löschen bei Neustart, 481, 541219, 1.0.21204, , ame,
    PUP.Optional.StartFenster, C:\ProgramData\Updater\setup.ico, Löschen bei Neustart, 481, 541219, , , ,
    PUP.Optional.StartFenster, C:\ProgramData\Updater\uninstall.exe, Löschen bei Neustart, 481, 541219, , , ,

    Physischer Sektor: 0
    (keine bösartigen Elemente erkannt)

    WMI: 0
    (keine bösartigen Elemente erkannt)


    (end)

     

    AdwCleaner Scan

    Spoiler

    # -------------------------------
    # Malwarebytes AdwCleaner 8.0.3.0
    # -------------------------------
    # Build:    03-03-2020
    # Database: 2020-03-13.1 (Cloud)
    # Support:  https://www.malwarebytes.com/support
    #
    # -------------------------------
    # Mode: Clean
    # -------------------------------
    # Start:    03-23-2020
    # Duration: 00:00:00
    # OS:       Windows 10 Pro
    # Cleaned:  0
    # Failed:   0


    ***** [ Services ] *****

    No malicious services cleaned.

    ***** [ Folders ] *****

    No malicious folders cleaned.

    ***** [ Files ] *****

    No malicious files cleaned.

    ***** [ DLL ] *****

    No malicious DLLs cleaned.

    ***** [ WMI ] *****

    No malicious WMI cleaned.

    ***** [ Shortcuts ] *****

    No malicious shortcuts cleaned.

    ***** [ Tasks ] *****

    No malicious tasks cleaned.

    ***** [ Registry ] *****

    No malicious registry entries cleaned.

    ***** [ Chromium (and derivatives) ] *****

    No malicious Chromium entries cleaned.

    ***** [ Chromium URLs ] *****

    No malicious Chromium URLs cleaned.

    ***** [ Firefox (and derivatives) ] *****

    No malicious Firefox entries cleaned.

    ***** [ Firefox URLs ] *****

    No malicious Firefox URLs cleaned.

    ***** [ Hosts File Entries ] *****

    No malicious hosts file entries cleaned.

    ***** [ Preinstalled Software ] *****

    No Preinstalled Software cleaned.


    *************************

    [+] Delete Tracing Keys
    [+] Reset Winsock

    *************************

    AdwCleaner[S02].txt - [1588 octets] - [23/03/2020 01:51:02]

    ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C02].txt ##########

     

    Thank you very much in advance!

    Addition.txt FRST.txt

Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.