Hey,
habe AdwCleaner und Malwarebytes laufen lassen. Außer weniger Kleinigkeiten (insbesondere Registry Keys) wurde da nicht gefunden. So zumindest meine Interpretaton. Vielleicht sehr/versteht ihr da mehr?!
AdwCleaner:
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Users\Stephan S\AppData\Roaming\pdfforge
***** [ Scheduled tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
***** [ Web browsers ] *****
-\\ Internet Explorer v11.0.9600.17416
-\\ Mozilla Firefox v29.0.1 (de)
-\\ Opera v0.0.0.0
Und Malwarebytes:
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 31.03.2015
Scan Time: 09:49:31
Logfile:
Administrator: Yes
Version: 2.01.4.1018
Malware Database: v2015.03.31.03
Rootkit Database: v2015.03.26.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled
OS: Windows 8.1
CPU: x64
File System: NTFS
User: Stephan S
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 378889
Time Elapsed: 39 min, 29 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 3
PUP.Optional.BrowseFox.A, HKLM\SOFTWARE\CLASSES\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}, Quarantined, [7e916edee1a9d95dcd79fe69679ce11f],
PUP.Optional.AtuZi.A, HKLM\SOFTWARE\WOW6432NODE\AtuZi, Quarantined, [ed2218343753f93d6799a156c83b6a96],
PUP.Optional.AtuZi.A, HKU\S-1-5-21-3853012518-764768069-3507123479-1001\SOFTWARE\AtuZi, Quarantined, [af604dff1971be78b649c036aa595ea2],
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 1
PUP.Optional.AtuZi.A, C:\Program Files (x86)\AtuZi, Quarantined, [30dfbb91deac9f97bf3fd22449bad927],
Files: 3
PUP.Optional.AtuZi.A, C:\Program Files (x86)\AtuZi\AtuZi.ico, Quarantined, [30dfbb91deac9f97bf3fd22449bad927],
PUP.Optional.AtuZi.A, C:\Program Files (x86)\AtuZi\7za.exe, Quarantined, [30dfbb91deac9f97bf3fd22449bad927],
PUP.Optional.AtuZi.A, C:\Program Files (x86)\AtuZi\tlg, Quarantined, [30dfbb91deac9f97bf3fd22449bad927],
Physical Sectors: 0
(No malicious items detected)
(end)
Sieht so aus als müsste ich doch mal nen kompletten Refresh machen...