![]() |
|
Log-Analyse und Auswertung: MS removal Tool vollständig entfernenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() |
|
![]() | #1 |
/// Malwareteam ![]() ![]() | ![]() MS removal Tool vollständig entfernen Hallo M-K-D-B, Ich bringe dir den nächsten Schwall an Informationen ![]()
![]() MFG, Deathkid |
![]() | #2 | |
/// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() MS removal Tool vollständig entfernen Hallo Deathkid535,
__________________![]() ![]() ![]() Die Logfiles sehen zwar schon besser aus, aber wir sind noch nicht fertig: Schritt # 1: Registry Cleaner Ich sehe, dass Du sogenannte Registry Cleaner am System hast. In deinem Fall Registry Mechanic 9.0. Wir empfehlen auf keinen Fall jegliche Art von Registry Cleaner. Der Grund ist ganz einfach: Die Registry ist das Hirn des Systems. Funktioniert das Hirn nicht, funktioniert der Rest nicht mehr wirklich. Wir lesen oft genug von Hilfesuchenden, dass deren System nach der Nutzung von Registry Cleanern nicht mehr booted.
Zerstörst Du die Registry, zerstörst Du Windows. Ich empfehle Dir hiermit die oben genannte Software zu deinstallieren und in Zukunft auf solche Art von Software zu verzichten. Schritt # 2: ComboFix ausführen Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!Lade ComboFix von einem dieser Download-Spiegel herunter: BleepingComputer - ForoSpyware * Wichtig !! Speichere ComboFix auf dem Desktop
![]() Sobald die Wiederherstellungskonsole durch ComboFix installiert wurde, solltest Du folgende Nachricht sehen: ![]() Klicke "Ja", um mit dem Suchlauf nach Malware fortzufahren. Wenn ComboFix fertig ist, wird es ein Log erstellen. Bitte füge die C:\ComboFix.txt Deiner nächsten Antwort bei. Schritt # 3: Fragen beantworten Bitte beantworte mir folgende Fragen:
Schritt # 4: Deine Rückmeldung Zur weiteren Analyse benötige ich zusammen mit deiner nächsten Antwort
|
![]() | #3 |
/// Malwareteam ![]() ![]() | ![]() MS removal Tool vollständig entfernen Hallo M-K-D-B
__________________Ich habe den AntiVir-Guard deaktiviert, und dann ComboFix gestartet, doch dieser schreibt, dass dieser noch immer aktiv ist. Könntest du mir bitte sagen, wie man ihn Deaktiviert, da ich durch google-suche auch nicht draufgekommen bin ![]() Zu der Frage: Nein, den habe ich nicht eingerichtet, ich weiss nicht einmal, was das ist. MFG, Deathkid |
![]() | #4 | |
/// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() MS removal Tool vollständig entfernen Hallo Deathkid, Zitat:
Es sollte genügen, wenn du rechts unten an der Taskleiste mit einem Rechtsklick auf das Icon von Avira klickst und darüber den AntiVir Guard deaktivierst. Auch wenn ComboFix meckert, sollte es dennoch in der Lage sein, durchzulaufen. Bitte nochmal versuchen und berichten. ![]() |
![]() | #5 |
/// Malwareteam ![]() ![]() | ![]() MS removal Tool vollständig entfernen Hallo M-K-D-B, Nach einigen Stunden des durchlaufen lassens(sollte wohl nicht so sein), ist bis jetzt genau GAR NICHTS passiert. Liegt das an dem AntiVir? MFG, Deathkid |
![]() | #6 |
/// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() MS removal Tool vollständig entfernen Hallo Dathkid, wir versuchen etwas anderes. Schritt # 1: ComboFix über Befehlszeile ausführen Lösche die vorhandene Combofix.exe von deinem Desktop und lade das Programm von einem der folgenden Download-Spiegel neu herunter: BleepingComputer.com - ForoSpyware.comund speichere es erneut auf dem Desktop (nicht woanders hin, das ist wichtig)! Drücke die Windows + R Taste und kopiere folgendes in die Ausführen Zeile Code:
ATTFilter "%userprofile%\Desktop\Combofix.exe" /killall Schritt # 2: Deine Rückmeldung Zur weiteren Analyse benötige ich zusammen mit deiner nächsten Antwort
|
![]() | #7 |
/// Malwareteam ![]() ![]() | ![]() MS removal Tool vollständig entfernen Hallo M-K-D-B, Bis jetzt ist noch immer nichts probiert, sieht auch so aus als würde auch die nächsten Stunden wieder nichts passieren. Gruß, Deathkid |
![]() | #8 |
/// Malwareteam ![]() ![]() | ![]() MS removal Tool vollständig entfernen Hallo M-K-D-B, Ich habe Avira deinstalliert, Computer neugestartet, aber Combofik bleibt bei "... kann sich die Zeit verdoppeln" hängen. Ich habe auch schon versucht, ComboFix über die Befehlszeile auszuführen. Ausserdem jammert das Programm noich immer rum, dass AntiVir Desktop aktiv ist. |
![]() | #9 | |
/// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() MS removal Tool vollständig entfernen Hallo Deathkid535, Wenns nicht will, dann wills halt nicht. ![]() Wir machen so weiter: Schritt # 1: Fix mit OTL
Code:
ATTFilter :OTL SRV - (PEVSystemStart) -- File not found FF - prefs.js..browser.search.defaulturl: "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2851647&SearchSource=3&q={searchTerms}" FF - prefs.js..keyword.URL: "hxxp://search.babylon.com/?babsrc=toolbar2&q=" [2010.12.16 13:56:14 | 000,000,931 | ---- | M] () -- C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\0q27vfov.default\searchplugins\conduit.xml [2010.10.14 20:01:12 | 000,010,017 | ---- | M] () -- C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\0q27vfov.default\searchplugins\mywebsearch.xml O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {872B5B88-9DB5-4310-BDD0-AC189557E5F5} - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No CLSID value found. O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HideSCAHealth = 1 [2011.06.26 21:29:44 | 000,000,000 | ---D | C] -- C:\ProgramData\bL28601DaMcK28601 @Alternate Data Stream - 126 bytes -> C:\ProgramData\Temp:D1B5B4F1 :commands [Emptytemp]
Schritt # 2: Kontrollscan mit Malwarebytes' Anti-Malware (MBAM)
Schritt # 3: Scan mit SuperAntiSpyware (SAS) Downloade Dir bitte SUPERAntiSpyware FREE Edition
Schritt # 4: Rootkitscan mit Rootkit Unhooker (RKU) Downloade Dir bitte RKUnhookerLE und speichere die Datei auf deinem Desktop.
Zitat:
Schritt # 5: Systemscan mit OTL
Schritt # 6: Fragen beantworten Bitte beantworte mir folgende Fragen:
Schritt # 7: Deine Rückmeldung Zur weiteren Analyse benötige ich zusammen mit deiner nächsten Antwort
|
![]() | #10 |
/// Malwareteam ![]() ![]() | ![]() MS removal Tool vollständig entfernen Hallo M-K-D-B,[LIST=1][*]Das OTL Fixfile: Code:
ATTFilter All processes killed ========== OTL ========== Error: No service named PEVSystemStart was found to stop! Service\Driver key PEVSystemStart not found. File File not found not found. Prefs.js: "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2851647&SearchSource=3&q={searchTerms}" removed from browser.search.defaulturl Prefs.js: "hxxp://search.babylon.com/?babsrc=toolbar2&q=" removed from keyword.URL C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\0q27vfov.default\searchplugins\conduit.xml moved successfully. C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\0q27vfov.default\searchplugins\mywebsearch.xml moved successfully. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{872B5B88-9DB5-4310-BDD0-AC189557E5F5} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{872B5B88-9DB5-4310-BDD0-AC189557E5F5}\ not found. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107}\ not found. Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\HideSCAHealth deleted successfully. Folder C:\ProgramData\bL28601DaMcK28601\ not found. ADS C:\ProgramData\Temp:D1B5B4F1 deleted successfully. ========== COMMANDS ========== [EMPTYTEMP] User: Administrator ->Temp folder emptied: 1300062 bytes ->Temporary Internet Files folder emptied: 1913495 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 118129490 bytes ->Google Chrome cache emptied: 0 bytes ->Flash cache emptied: 3025 bytes User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Dennis ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 0 bytes ->Google Chrome cache emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Public %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 6043 bytes RecycleBin emptied: 31299 bytes Total Files Cleaned = 116,00 mb OTL by OldTimer - Version 3.2.24.1 log created on 07012011_173215 Files\Folders moved on Reboot... Registry entries deleted on Reboot... Code:
ATTFilter Malwarebytes' Anti-Malware 1.51.0.1200 www.malwarebytes.org Datenbank Version: 6994 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 01.07.2011 17:47:28 mbam-log-2011-07-01 (17-47-28).txt Art des Suchlaufs: Quick-Scan Durchsuchte Objekte: 174446 Laufzeit: 6 Minute(n), 36 Sekunde(n) Infizierte Speicherprozesse: 0 Infizierte Speichermodule: 0 Infizierte Registrierungsschlüssel: 0 Infizierte Registrierungswerte: 0 Infizierte Dateiobjekte der Registrierung: 0 Infizierte Verzeichnisse: 0 Infizierte Dateien: 0 Infizierte Speicherprozesse: (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: (Keine bösartigen Objekte gefunden) Infizierte Dateien: (Keine bösartigen Objekte gefunden) Code:
ATTFilter SUPERAntiSpyware Scan Log hxxp://www.superantispyware.com Generated 07/01/2011 at 06:45 PM Application Version : 4.55.1000 Core Rules Database Version : 7363 Trace Rules Database Version: 5175 Scan type : Complete Scan Total Scan Time : 00:50:52 Memory items scanned : 680 Memory threats detected : 0 Registry items scanned : 9512 Registry threats detected : 0 File items scanned : 34598 File threats detected : 501 Adware.Tracking Cookie C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@clicksor[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ads.glispa[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ad.kukori[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@adsrv1.admediate[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@xm.xtendmedia[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@adserver.adtechus[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@find.10topsearches[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@adserving.versaneeds[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ad.ad-srv[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@online-tracking[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@www3.sentinelclean-strong.findhere[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@myroitracking[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@webmasterplan[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ad.zanox[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@komtrack[3].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@liveperson[3].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@komtrack[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ad.adserverplus[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@www.matrix-media[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@adfarm1.adition[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@adxpose[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ads.cpxcenter[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@invitemedia[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ads.gamersmedia[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ad2.adfarm1.adition[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ads.adk2[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@audit.median[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@advertise[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@harrenmedianetwork[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@server.lon.liveperson[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ads.inextmedia[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ads.247activemedia[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@zanox-affiliate[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@www.zanox-affiliate[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@servedby.adxpower[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@mediabrandsww[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@collective-media[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ad1.adfarm1.adition[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ad.harrenmedianetwork[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@da-tracking[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@zanox[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@liveperson[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@tracking1.aleadpay[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@click-lastminute[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@bidtraffic[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@m1.mediasrv[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@fidelity.rotator.hadj7.adjuggler[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ads.ad4game[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ad.adc-serv[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@vidasco.rotator.hadj7.adjuggler[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ad4.adfarm1.adition[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@adultfriendfinder[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ads.intergi[1].txt de.sitestat.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .im.banner.t-online.de [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .zanox.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.zanox.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.zanox.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .traffictrack.de [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .webmasterplan.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .webmasterplan.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .webmasterplan.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .traffictrack.de [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .mm.chitika.net [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.yieldmanager.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .revsci.net [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .revsci.net [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .revsci.net [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .revsci.net [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .track.parse.ly [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .invitemedia.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .invitemedia.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adbrite.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adbrite.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adbrite.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adbrite.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.yieldmanager.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .atdmt.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .atdmt.com [ C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Cookies ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@advertise[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@www3.sentinelclean-strong.findhere[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@www3.army-internet-personal.findhere[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ads.gamersmedia[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@bidtraffic[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ads.inextmedia[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@www.matrix-media[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ad4.adfarm1.adition[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@gamersmedia[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@adserving.versaneeds[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@ad2.adfarm1.adition[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@m1.mediasrv[1].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@myroitracking[2].txt C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\administrator@xm.xtendmedia[1].txt .vodafonegroup.122.2o7.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.elitepvpers.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .elitepvpers.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adserver.adtechus.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] de.sitestat.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .lfstmedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adverticum.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] audit.median.hu [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .tribalfusion.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] track.effiliation.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .eyewonder.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .eyewonder.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adverticum.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adverticum.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .etargetnet.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .etargetnet.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .etargetnet.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .tns-counter.ru [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] d.jambomedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .a.revenuemax.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .apmebf.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .mediaplex.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adtech.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .atdmt.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .atdmt.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] statse.webtrendslive.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .imrworldwide.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .imrworldwide.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .media.xfire.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .media.xfire.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .im.banner.t-online.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .advertising.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .crackfound.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .crackfound.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .crackfound.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.tldadserv.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .xiti.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .edsa.122.2o7.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .paypal.112.2o7.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] eas.apm.emediate.eu [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .divx.112.2o7.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .kontera.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .burstnet.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] gr.burstnet.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .webmasterplan.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .euros4click.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .partypoker.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .partypoker.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adxpose.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.etracker.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .casalemedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .casalemedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .casalemedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .casalemedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .casalemedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adbrite.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] adserver2.spele.nl [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .game-advertising-online.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .zedo.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .zedo.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .zedo.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .server.cpmstar.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .yieldmanager.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .partypoker.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .partypoker.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .partypoker.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.blogcounter.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .revsci.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .pro-market.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] fl01.ct2.comclick.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .technoratimedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .pro-market.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .ru4.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .ru4.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .legolas-media.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adtech.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adbrite.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .yadro.ru [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .elitepvpers.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] m1.webstats.motigo.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.zanox.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.etracker.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.etracker.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.etracker.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .elitepvpers.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .smartadserver.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .zedo.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .gostats.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .gostats.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .komtrack.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .komtrack.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .komtrack.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.dyntracker.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .at.atwola.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .webmasterplan.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .clickaider.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] eas.apm.emediate.eu [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .www.qitracking.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adviva.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adviva.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .invitemedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .invitemedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .invitemedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .mediafire.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] fidelity.rotator.hadj7.adjuggler.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] fidelity.rotator.hadj7.adjuggler.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] adserver1.mokono.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] in.getclicky.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adserver1.mokono.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adserver1.mokono.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adserver1.mokono.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .tradedoubler.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .tradedoubler.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.etracker.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .revsci.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] s03.flagcounter.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] s2.trafficmaxx.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] track.effiliation.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] track.effiliation.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] track.effiliation.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] track.effiliation.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] rotator.adjuggler.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] rotator.adjuggler.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] tracking.mlsat02.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] adsrv.admediate.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] adsrv.admediate.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] rotator.adjuggler.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] adsrv.admediate.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.googleadservices.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] rts.pgmediaserve.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] rts.pgmediaserve.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] rts.pgmediaserve.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .partypoker.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .partypoker.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] eas.apm.emediate.eu [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .revsci.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] adserver.adreactor.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .tacoda.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .tacoda.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .tacoda.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .tacoda.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .at.atwola.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .at.atwola.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .traffictrack.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .traffictrack.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .ice.112.2o7.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] s03.flagcounter.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .mediafire.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.mediafire.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.mediafire.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .mediafire.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .account.frogster-online.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] user.lucidmedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] tracking.gameforge.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.encyclomedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.encyclomedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .encyclomedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .encyclomedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .encyclomedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .encyclomedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.encyclomedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .encyclomedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.ez-tracks.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.ez-tracks.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .ez-tracks.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .ez-tracks.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .ez-tracks.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .ez-tracks.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .encyclomedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.encyclomedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .encyclomedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .encyclomedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .encyclomedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .ez-tracks.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.ez-tracks.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.zanox-affiliate.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .webmasterplan.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .zanox-affiliate.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .media6degrees.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .media6degrees.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .media6degrees.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .media6degrees.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .doubleclick.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .lfstmedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .lfstmedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .warcraftscreensavers.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .warcraftscreensavers.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .legolas-media.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .legolas-media.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .legolas-media.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .kontera.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ww251.smartadserver.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .zedo.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .zedo.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .zedo.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .technoratimedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .technoratimedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .technoratimedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .technoratimedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .specificclick.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .specificclick.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .specificclick.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .specificclick.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .specificclick.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .specificclick.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.warcraftscreensavers.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.warcraftscreensavers.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.warcraftscreensavers.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .warcraftscreensavers.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .warcraftscreensavers.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.warcraftscreensavers.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .kontera.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .kontera.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.googleadservices.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] media.fragster.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .technoratimedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .technoratimedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .technoratimedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .technoratimedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .advertising.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .advertising.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .advertising.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .legolas-media.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .chitika.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ssl.clickbank.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ssl.clickbank.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ssl.clickbank.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adinterax.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adinterax.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adscendmedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adscendmedia.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .statcounter.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .statcounter.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] click.mediadome.ru [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] click.mediadome.ru [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] click.mediadome.ru [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .himedia.individuad.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .himedia.individuad.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] fl01.ct2.comclick.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] fl01.ct2.comclick.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] delivery.atkmedia.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .webmasterplan.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .webmasterplan.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .webmasterplan.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .gametracker.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .web-stat.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .web-stat.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .web-stat.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] cn.clickable.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] cn.clickable.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] adfarm1.adition.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .server.cpmstar.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] adx.chip.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .revsci.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .revsci.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .revsci.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .revsci.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .revsci.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .clickbank.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .collective-media.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .collective-media.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .collective-media.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .collective-media.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .collective-media.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .collective-media.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .collective-media.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.elitepvpers.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] www.elitepvpers.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .elitepvpers.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .elitepvpers.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .tradedoubler.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .webmasterplan.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .fastclick.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .webmasterplan.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .webmasterplan.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .zanox.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] adserver.mmoga.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] adserver.mmoga.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] adserver.mmoga.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .smartadserver.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .smartadserver.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .smartadserver.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .smartadserver.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .smartadserver.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad3.adfarm1.adition.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad4.adfarm1.adition.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .tracking.quisma.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .tracking.hannoversche.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .mediaplex.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .serving-sys.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .serving-sys.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .serving-sys.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .serving-sys.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .serving-sys.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .serving-sys.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .serving-sys.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .bs.serving-sys.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adtech.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] s2.trafficmaxx.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .crackssite.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .content.yieldmanager.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .content.yieldmanager.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] adserver.unitedcolo.de [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .crackssite.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .crackssite.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] eas4.emediate.eu [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] eas4.emediate.eu [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adbrite.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adbrite.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adbrite.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .mediabrandsww.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adecn.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] click2go.org [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .azjmp.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .azjmp.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .azjmp.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .adfarm1.adition.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad2.adfarm1.adition.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .tradedoubler.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.zanox.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .tradedoubler.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .tradedoubler.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .fastclick.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .fastclick.net [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .advertising.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] .advertising.com [ C:\Users\Dennis\AppData\Local\Google\Chrome\User Data\Default\Cookies ] C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\dennis@atdmt[2].txt C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\dennis@www.elitepvpers[2].txt C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\dennis@server.cpmstar[2].txt C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\dennis@adserver.adtechus[4].txt C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\dennis@ads.intergi[1].txt C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\dennis@imrworldwide[2].txt C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\dennis@mywebsearch[1].txt C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\dennis@adserver.adtechus[2].txt C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\dennis@serving-sys[1].txt C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\dennis@adserver.adtechus[1].txt C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\dennis@atdmt[1].txt C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\dennis@fastclick[2].txt C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\dennis@doubleclick[2].txt C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\dennis@fastclick[1].txt C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\Low\dennis@doubleclick[1].txt C:\Users\Dennis\AppData\Roaming\Microsoft\Windows\Cookies\Low\dennis@mywebsearch[2].txt .tribalfusion.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .imrworldwide.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .imrworldwide.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .adserver.adtechus.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .doubleclick.net [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] ad.adserver01.de [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .apmebf.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .fastclick.net [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .fastclick.net [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .fastclick.net [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .fastclick.net [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .zanox.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .zanox-affiliate.de [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .adfarm1.adition.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] adfarm1.adition.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .adfarm1.adition.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] ad2.adfarm1.adition.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .adfarm1.adition.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .tradedoubler.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .tradedoubler.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .tradedoubler.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .webmasterplan.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .webmasterplan.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .webmasterplan.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .content.yieldmanager.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .mediaplex.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .mediaplex.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .adxpose.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .content.yieldmanager.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .xm.xtendmedia.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .partypoker.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .partypoker.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .partypoker.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .invitemedia.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .server.cpmstar.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .server.cpmstar.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .server.cpmstar.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .server.cpmstar.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .server.cpmstar.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .webmasterplan.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .webmasterplan.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .webmasterplan.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] www.zanox-affiliate.de [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .webmasterplan.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .server.cpmstar.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] .server.cpmstar.com [ C:\Users\Dennis\AppData\Roaming\Mozilla\Firefox\Profiles\8up7pvxa.default\cookies.sqlite ] Trojan.System32 C:\PROGRAM FILES\AXBX\VIRUSKEEPER 2011 PRO PROBEVERSION\QUARANTAINE\SYSTEM32.EXE Trojan.Agent/Gen-Bancos C:\PROGRAM FILES\WEBOCTON - SCRIPTLY\ORIGINALS\PLUGINS\WYSIWYG_EDITOR.DLL C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\WEBOCTON - SCRIPTLY\PLUGINS\WYSIWYG_EDITOR.DLL Trojan.Agent/Gen-FakeAlert[Local] C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\8 X 8 MEDIA AG\CHESSIMO\ENGINES\CRAFTY\WCRAFTY.EXE Code:
ATTFilter RkU Version: 3.8.389.593, Type LE (SR2) ============================================== OS Name: Windows 7 Version 6.1.7600 Number of processors #2 ============================================== >Drivers ============================================== 0x8E82F000 C:\Windows\system32\DRIVERS\atikmdag.sys 5468160 bytes (ATI Technologies Inc., ATI Radeon Kernel Mode Driver) 0x82C05000 C:\Windows\system32\ntkrnlpa.exe 4259840 bytes (Microsoft Corporation, NT Kernel & System) 0x82C05000 PnpManager 4259840 bytes 0x82C05000 RAW 4259840 bytes 0x82C05000 WMIxWDM 4259840 bytes 0x8F43D000 C:\Windows\system32\DRIVERS\bcmwl6.sys 2510848 bytes (Broadcom Corporation, Broadcom 802.11 Network Adapter wireless driver) 0x96C40000 Win32k 2404352 bytes 0x96C40000 C:\Windows\System32\win32k.sys 2404352 bytes (Microsoft Corporation, Mehrbenutzer-Win32-Treiber) 0x88636000 C:\Windows\System32\drivers\tcpip.sys 1347584 bytes (Microsoft Corporation, TCP/IP-Treiber) 0x8241D000 C:\Windows\System32\Drivers\BisonC07.sys 1257472 bytes (Bison Electronics. Inc. , Universal Serial Bus Camera Driver) 0x88209000 C:\Windows\System32\Drivers\Ntfs.sys 1241088 bytes (Microsoft Corporation, NT-Dateisystemtreiber) 0x8E605000 C:\Windows\System32\drivers\dxgkrnl.sys 749568 bytes (Microsoft Corporation, DirectX Graphics Kernel) 0x88429000 C:\Windows\system32\drivers\ndis.sys 749568 bytes (Microsoft Corporation, NDIS 6.20-Treiber) 0x8327B000 C:\Windows\system32\CI.dll 700416 bytes (Microsoft Corporation, Codeintegritätsmodul) 0x98352000 C:\Windows\system32\drivers\peauth.sys 618496 bytes (Microsoft Corporation, Protected Environment Authentication and Authorization Export Driver) 0x98211000 C:\Windows\system32\drivers\HTTP.sys 544768 bytes (Microsoft Corporation, HTTP-Protokollstapel) 0x9100F000 C:\Windows\system32\drivers\CHDRT32.sys 528384 bytes (Conexant Systems Inc., High Definition Audio Function Driver) 0x83326000 C:\Windows\system32\drivers\Wdf01000.sys 462848 bytes (Microsoft Corporation, Kernelmodustreiber-Frameworklaufzeit) 0x8E6F5000 C:\Windows\system32\drivers\SRS_AudioFusion_i386.sys 450560 bytes (-, SRS Premium Sound driver) 0x99AB8000 C:\Windows\system32\drivers\spsys.sys 434176 bytes (Microsoft Corporation, security processor) 0x88376000 C:\Windows\System32\Drivers\cng.sys 380928 bytes (Microsoft Corporation, Kernel Cryptography, Next Generation) 0x8D83F000 C:\Windows\system32\drivers\afd.sys 368640 bytes (Microsoft Corporation, Ancillary Function Driver for WinSock) 0x99A62000 C:\Windows\System32\DRIVERS\srv.sys 335872 bytes (Microsoft Corporation, Server driver) 0x99A13000 C:\Windows\System32\DRIVERS\srv2.sys 323584 bytes (Microsoft Corporation, Smb 2.0 Server driver) 0x8F6CE000 C:\Windows\system32\DRIVERS\USBPORT.SYS 307200 bytes (Microsoft Corporation, USB 1.1 & 2.0-Porttreiber) 0x8808D000 C:\Windows\System32\drivers\volmgrx.sys 307200 bytes (Microsoft Corporation, Treiber für Erweiterung des Volume-Managers) 0x833A5000 C:\Windows\system32\DRIVERS\ACPI.sys 294912 bytes (Microsoft Corporation, ACPI-Treiber für NT) 0x88143000 C:\Windows\system32\DRIVERS\storport.sys 290816 bytes (Microsoft Corporation, Microsoft Storage Port Driver) 0x91153000 C:\Windows\system32\DRIVERS\nwifi.sys 286720 bytes (Microsoft Corporation, Systemeigener WiFi-Miniporttreiber) 0x8ED66000 C:\Windows\system32\DRIVERS\usbhub.sys 278528 bytes (Microsoft Corporation, Default Hub Driver for USB) 0x83239000 C:\Windows\system32\CLFS.SYS 270336 bytes (Microsoft Corporation, Common Log File System Driver) 0x8D969000 C:\Windows\system32\DRIVERS\rdbss.sys 266240 bytes (Microsoft Corporation, Subsystemtreiber für Pufferung des umgeleiteten Laufwerks) 0x887B0000 C:\Windows\system32\DRIVERS\volsnap.sys 258048 bytes (Microsoft Corporation, Volumeschattenkopie-Treiber) 0x884E0000 C:\Windows\system32\drivers\NETIO.SYS 253952 bytes (Microsoft Corporation, Network I/O Subsystem) 0x982E4000 C:\Windows\system32\DRIVERS\mrxsmb10.sys 241664 bytes (Microsoft Corporation, Longhorn SMB Downlevel SubRdr) 0x8F774000 C:\Windows\system32\DRIVERS\Apfiltr.sys 233472 bytes (Alps Electric Co., Ltd., Alps Touch Pad Driver) 0x8E6BC000 C:\Windows\System32\drivers\dxgmms1.sys 233472 bytes (Microsoft Corporation, DirectX Graphics MMS) 0x83015000 ACPI_HAL 225280 bytes 0x83015000 C:\Windows\system32\halmacpi.dll 225280 bytes (Microsoft Corporation, Hardware Abstraction Layer DLL) 0x88193000 C:\Windows\system32\drivers\fltmgr.sys 212992 bytes (Microsoft Corporation, Microsoft Dateisystem-Filter-Manager) 0x8F400000 C:\Windows\system32\drivers\ks.sys 212992 bytes (Microsoft Corporation, Kernel CSA Library) 0x88553000 C:\Windows\System32\DRIVERS\fvevol.sys 204800 bytes (Microsoft Corporation, BitLocker Drive Encryption Driver) 0x8D899000 C:\Windows\System32\DRIVERS\netbt.sys 204800 bytes (Microsoft Corporation, MBT Transport driver) 0x8877F000 C:\Windows\System32\drivers\fwpkclnt.sys 200704 bytes (Microsoft Corporation, FWP/IPsec Kernel-Mode API) 0x91090000 C:\Windows\system32\drivers\portcls.sys 192512 bytes (Microsoft Corporation, Port Class (Class Driver for Port/Miniport Devices)) 0x88600000 C:\Windows\System32\drivers\rdyboost.sys 184320 bytes (Microsoft Corporation, ReadyBoost Driver) 0x88338000 C:\Windows\System32\Drivers\msrpc.sys 176128 bytes (Microsoft Corporation, Kernel Remote Procedure Call Provider) 0x8802F000 C:\Windows\system32\DRIVERS\pci.sys 172032 bytes (Microsoft Corporation, NT-Plug & Play PCI-Enumerator) 0x88596000 C:\Windows\system32\DRIVERS\CLASSPNP.SYS 151552 bytes (Microsoft Corporation, SCSI Class System Dll) 0x8851E000 C:\Windows\System32\Drivers\ksecpkg.sys 151552 bytes (Microsoft Corporation, Kernel Security Support Provider Interface Packages) 0x82562000 C:\Windows\system32\DRIVERS\SaiK0CFA.sys 151552 bytes (Saitek, Saitek Hid Driver) 0x880F7000 C:\Windows\system32\DRIVERS\ataport.SYS 143360 bytes (Microsoft Corporation, ATAPI Driver Extension) 0x982C1000 C:\Windows\system32\DRIVERS\mrxsmb.sys 143360 bytes (Microsoft Corporation, Windows NT SMB Minirdr) 0x8E76E000 C:\Windows\system32\DRIVERS\ndiswan.sys 139264 bytes (Microsoft Corporation, MS PPP Framing Driver (Strong Encryption)) 0x8D941000 C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS 139264 bytes (SUPERAdBlocker.com and SUPERAntiSpyware.com, SASKUTIL.SYS) 0x91199000 C:\Windows\System32\DRIVERS\srvnet.sys 135168 bytes (Microsoft Corporation, Server Network driver) 0x8D800000 C:\Windows\system32\DRIVERS\tunnel.sys 135168 bytes (Microsoft Corporation, Microsoft-Tunnelschnittstellentreiber) 0x881D8000 C:\Windows\System32\drivers\VIDEOPRT.SYS 135168 bytes (Microsoft Corporation, Video Port Driver) 0x885D5000 C:\Windows\system32\DRIVERS\cdrom.sys 126976 bytes (Microsoft Corporation, SCSI CD-ROM Driver) 0x8F730000 C:\Windows\system32\DRIVERS\HDAudBus.sys 126976 bytes (Microsoft Corporation, High Definition Audio Bus Driver) 0x8D8D2000 C:\Windows\system32\DRIVERS\pacer.sys 126976 bytes (Microsoft Corporation, QoS-Paketplaner) 0x96ED0000 C:\Windows\System32\cdd.dll 122880 bytes (Microsoft Corporation, Canonical Display Driver) 0x91135000 C:\Windows\system32\DRIVERS\SaiK0728.sys 122880 bytes (Saitek, Saitek Hid Driver) 0x8259B000 C:\Windows\system32\drivers\luafv.sys 110592 bytes (Microsoft Corporation, LUA-Filtertreiber zur Dateivirtualisierung) 0x9831F000 C:\Windows\system32\DRIVERS\mrxsmb20.sys 110592 bytes (Microsoft Corporation, Longhorn SMB 2.0 Redirector) 0x825B6000 C:\Windows\system32\drivers\WudfPf.sys 106496 bytes (Microsoft Corporation, Windows Driver Foundation - User-mode Driver Framework Platform Driver) 0x98296000 C:\Windows\system32\DRIVERS\bowser.sys 102400 bytes (Microsoft Corporation, NT Lan Manager Datagram Receiver Driver) 0x910BF000 C:\Windows\system32\drivers\drmk.sys 102400 bytes (Microsoft Corporation, Microsoft Trusted Audio Drivers) 0x8D9CA000 C:\Windows\System32\Drivers\dfsc.sys 98304 bytes (Microsoft Corporation, DFS Namespace Client Driver) 0x8F74F000 C:\Windows\system32\DRIVERS\i8042prt.sys 98304 bytes (Microsoft Corporation, i8042-Anschlusstreiber) 0x8F7E0000 C:\Windows\system32\DRIVERS\rasl2tp.sys 98304 bytes (Microsoft Corporation, RAS L2TP mini-port/call-manager driver) 0x8E790000 C:\Windows\system32\DRIVERS\raspppoe.sys 98304 bytes (Microsoft Corporation, RAS PPPoE mini-port/call-manager driver) 0x8E7A8000 C:\Windows\system32\DRIVERS\raspptp.sys 94208 bytes (Microsoft Corporation, Peer-to-Peer Tunneling Protocol) 0x8E7BF000 C:\Windows\system32\DRIVERS\rassstp.sys 94208 bytes (Microsoft Corporation, RAS SSTP Miniport Call Manager) 0x8800E000 C:\Windows\system32\DRIVERS\tdx.sys 94208 bytes (Microsoft Corporation, TDI Translation Driver) 0x91113000 C:\Windows\system32\DRIVERS\usbccgp.sys 94208 bytes (Microsoft Corporation, USB Common Class Generic Parent Driver) 0x880D8000 C:\Windows\System32\drivers\mountmgr.sys 90112 bytes (Microsoft Corporation, Bereitstellungspunkt-Manager) 0x82587000 C:\Windows\system32\drivers\usbaudio.sys 81920 bytes (Microsoft Corporation, USB Audio Class Driver) 0x8EDAA000 C:\Windows\system32\DRIVERS\HIDCLASS.SYS 77824 bytes (Microsoft Corporation, Hid Class Library) 0x88363000 C:\Windows\System32\Drivers\ksecdd.sys 77824 bytes (Microsoft Corporation, Kernel Security Support Provider Interface) 0x82400000 C:\Windows\system32\DRIVERS\rspndr.sys 77824 bytes (Microsoft Corporation, Link-Layer Topology Responder Driver for NDIS 6) 0x8D910000 C:\Windows\system32\DRIVERS\wanarp.sys 77824 bytes (Microsoft Corporation, MS Remote Access and Routing ARP Driver) 0x8F7CE000 C:\Windows\system32\DRIVERS\AgileVpn.sys 73728 bytes (Microsoft Corporation, RAS Agile Vpn Miniport Call Manager) 0x8F6AC000 C:\Windows\system32\DRIVERS\L1C62x86.sys 73728 bytes (Atheros Communications, Inc., Atheros L1c PCI-E Gigabit Ethernet Controller) 0x982AF000 C:\Windows\System32\drivers\mpsdrv.sys 73728 bytes (Microsoft Corporation, Microsoft Protection Service Driver) 0x8D821000 C:\Windows\system32\DRIVERS\amdppm.sys 69632 bytes (Microsoft Corporation, Processor Device Driver) 0x88132000 C:\Windows\system32\DRIVERS\amdsata.sys 69632 bytes (Advanced Micro Devices, AHCI 1.2 Device Driver) 0x88585000 C:\Windows\system32\DRIVERS\disk.sys 69632 bytes (Microsoft Corporation, PnP Disk Driver) 0x881C7000 C:\Windows\system32\drivers\fileinfo.sys 69632 bytes (Microsoft Corporation, FileInfo Filter Driver) 0x8E7EE000 C:\Windows\System32\Drivers\NDProxy.SYS 69632 bytes (Microsoft Corporation, NDIS Proxy) 0x88059000 C:\Windows\System32\drivers\partmgr.sys 69632 bytes (Microsoft Corporation, Partition Management Driver) 0x83220000 C:\Windows\system32\PSHED.dll 69632 bytes (Microsoft Corporation, Plattformspezifischer Hardwarefehlertreiber) 0x8D8F1000 C:\Windows\system32\DRIVERS\vwififlt.sys 69632 bytes (Microsoft Corporation, Virtual WiFi Filter Driver) 0x825D0000 C:\Windows\system32\DRIVERS\lltdio.sys 65536 bytes (Microsoft Corporation, Link-Layer Topology Mapper I/O Driver) 0x88543000 C:\Windows\System32\Drivers\mup.sys 65536 bytes (Microsoft Corporation, Multiple UNC Provider Driver) 0x825E0000 C:\Windows\system32\DRIVERS\ndisuio.sys 65536 bytes (Microsoft Corporation, E/A-Treiber für NDIS-Benutzermodus) 0x8D923000 C:\Windows\system32\DRIVERS\termdd.sys 65536 bytes (Microsoft Corporation, Remote Desktop Server Driver) 0x8807D000 C:\Windows\system32\DRIVERS\volmgr.sys 65536 bytes (Microsoft Corporation, Volume Manager Driver) 0x8F721000 C:\Windows\system32\DRIVERS\usbehci.sys 61440 bytes (Microsoft Corporation, EHCI eUSB Miniport Driver) 0x8D9E2000 C:\Windows\system32\DRIVERS\blbdrive.sys 57344 bytes (Microsoft Corporation, BLB Drive Driver) 0x8D902000 C:\Windows\system32\DRIVERS\netbios.sys 57344 bytes (Microsoft Corporation, NetBIOS interface driver) 0x88000000 C:\Windows\System32\Drivers\Npfs.SYS 57344 bytes (Microsoft Corporation, NPFS Driver) 0x88124000 C:\Windows\system32\DRIVERS\PCIIDEX.SYS 57344 bytes (Microsoft Corporation, PCI IDE Bus Driver Extension) 0x883D3000 C:\Windows\System32\drivers\pcw.sys 57344 bytes (Microsoft Corporation, Performance Counters for Windows Driver) 0x8D933000 C:\Windows\System32\Drivers\SCDEmu.SYS 57344 bytes (PowerISO Computing, Inc., PowerISO Virtual Drive) 0x8E7E0000 C:\Windows\system32\DRIVERS\umbus.sys 57344 bytes (Microsoft Corporation, User-Mode Bus Enumerator) 0x83397000 C:\Windows\system32\drivers\WDFLDR.SYS 57344 bytes (Microsoft Corporation, Kernel Mode Driver Framework Loader) 0x8F7C1000 C:\Windows\system32\DRIVERS\CompositeBus.sys 53248 bytes (Microsoft Corporation, Multi-Transport Composite Bus Enumerator) 0x8F767000 C:\Windows\system32\DRIVERS\kbdclass.sys 53248 bytes (Microsoft Corporation, Tastaturklassentreiber) 0x8F7AD000 C:\Windows\system32\DRIVERS\mouclass.sys 53248 bytes (Microsoft Corporation, Mausklassentreiber) 0x983F3000 C:\Windows\System32\drivers\tcpipreg.sys 53248 bytes (Microsoft Corporation, TCP/IP Registry Compatibility Driver) 0x88413000 C:\Windows\System32\drivers\watchdog.sys 53248 bytes (Microsoft Corporation, Watchdog Driver) 0x8D9BE000 C:\Windows\System32\drivers\discache.sys 49152 bytes (Microsoft Corporation, System Indexer/Cache Driver) 0x910D8000 C:\Windows\system32\DRIVERS\kbdhid.sys 49152 bytes (Microsoft Corporation, HID-Tastaturfiltertreiber) 0x88407000 C:\Windows\System32\drivers\vga.sys 49152 bytes (Microsoft Corporation, VGA/Super VGA Video Driver) 0x88072000 C:\Windows\system32\DRIVERS\BATTC.SYS 45056 bytes (Microsoft Corporation, Battery Class Driver) 0x9112A000 C:\Windows\system32\DRIVERS\hidusb.sys 45056 bytes (Microsoft Corporation, USB Miniport Driver for Input Devices) 0x83215000 C:\Windows\system32\mcupdate_AuthenticAMD.dll 45056 bytes (Microsoft Corporation, AMD Microcode Update Library) 0x82550000 C:\Windows\system32\DRIVERS\monitor.sys 45056 bytes (Microsoft Corporation, Monitor Driver) 0x910E4000 C:\Windows\system32\DRIVERS\mouhid.sys 45056 bytes (Microsoft Corporation, HID-Mausfiltertreiber) 0x883EA000 C:\Windows\System32\Drivers\Msfs.SYS 45056 bytes (Microsoft Corporation, Mailslot driver) 0x8E763000 C:\Windows\system32\DRIVERS\ndistapi.sys 45056 bytes (Microsoft Corporation, NDIS 3.0 connection wrapper driver) 0x883F5000 C:\Windows\system32\DRIVERS\TDI.SYS 45056 bytes (Microsoft Corporation, TDI Wrapper) 0x83200000 C:\Windows\system32\DRIVERS\vdrvroot.sys 45056 bytes (Microsoft Corporation, Stammenumerator für virtuelles Laufwerk) 0x910EF000 C:\Windows\System32\drivers\Dxapi.sys 40960 bytes (Microsoft Corporation, DirectX API Driver) 0x8811A000 C:\Windows\system32\DRIVERS\msahci.sys 40960 bytes (Microsoft Corporation, MS AHCI 1.0 Standard Driver) 0x8D9B4000 C:\Windows\system32\DRIVERS\mssmbios.sys 40960 bytes (Microsoft Corporation, System Management BIOS Driver) 0x8D9AA000 C:\Windows\system32\drivers\nsiproxy.sys 40960 bytes (Microsoft Corporation, NSI Proxy) 0x8E7D6000 C:\Windows\system32\drivers\SaiBus.sys 40960 bytes (Saitek, Smart Technology Helpers) 0x983E9000 C:\Windows\System32\Drivers\secdrv.SYS 40960 bytes (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K., Macrovision SECURITY Driver) 0x8F6C4000 C:\Windows\system32\DRIVERS\usbohci.sys 40960 bytes (Microsoft Corporation, OHCI USB Miniport Driver) 0x8F6A2000 C:\Windows\system32\DRIVERS\vwifibus.sys 40960 bytes (Microsoft Corporation, Virtueller WiFi-Bustreiber) 0x8818A000 C:\Windows\system32\DRIVERS\amdxata.sys 36864 bytes (Advanced Micro Devices, Stor Filter Driver) 0x99B22000 C:\Windows\system32\DRIVERS\asyncmac.sys 36864 bytes (Microsoft Corporation, MS Remote Access serial network driver) 0x880EE000 C:\Windows\system32\DRIVERS\atapi.sys 36864 bytes (Microsoft Corporation, ATAPI IDE Miniport Driver) 0x99B2B000 C:\Windows\System32\Drivers\BlackBox.SYS 36864 bytes (RKU Driver) 0x883E1000 C:\Windows\System32\Drivers\Fs_Rec.sys 36864 bytes (Microsoft Corporation, File System Recognizer Driver) 0x96EA0000 C:\Windows\System32\TSDDD.dll 36864 bytes (Microsoft Corporation, Framebuffer Display Driver) 0x833ED000 C:\Windows\system32\DRIVERS\WMILIB.SYS 36864 bytes (Microsoft Corporation, WMILIB WMI support library Dll) 0x887F7000 C:\Windows\system32\DRIVERS\AtiPcie.sys 32768 bytes (Advanced Micro Devices Inc., AMD PCIE Filter Driver for ATI PCIE chipset) 0x83231000 C:\Windows\system32\BOOTVID.dll 32768 bytes (Microsoft Corporation, VGA Boot Driver) 0x8806A000 C:\Windows\system32\DRIVERS\compbatt.sys 32768 bytes (Microsoft Corporation, Composite Battery Driver) 0x8862D000 C:\Windows\System32\drivers\hwpolicy.sys 32768 bytes (Microsoft Corporation, Hardware Policy Driver) 0x80BBB000 C:\Windows\system32\kdcom.dll 32768 bytes (Microsoft Corporation, Serial Kernel Debugger) 0x833F6000 C:\Windows\system32\DRIVERS\msisadrv.sys 32768 bytes (Microsoft Corporation, ISA Driver) 0x88420000 C:\Windows\System32\DRIVERS\RDPCDD.sys 32768 bytes (Microsoft Corporation, RDP Miniport) 0x885BB000 C:\Windows\system32\drivers\rdpencdd.sys 32768 bytes (Microsoft Corporation, RDP Encoder Miniport) 0x885C3000 C:\Windows\system32\drivers\rdprefmp.sys 32768 bytes (Microsoft Corporation, RDP Reflector Driver Miniport) 0x887EF000 C:\Windows\System32\Drivers\spldr.sys 32768 bytes (Microsoft Corporation, loader for security processor) 0x88400000 C:\Windows\System32\Drivers\Beep.SYS 28672 bytes (Microsoft Corporation, BEEP Driver) 0x8EDBD000 C:\Windows\system32\DRIVERS\HIDPARSE.SYS 28672 bytes (Microsoft Corporation, Hid Parsing Library) 0x885F4000 C:\Windows\System32\Drivers\Null.SYS 28672 bytes (Microsoft Corporation, NULL Driver) 0x8255B000 C:\Windows\system32\DRIVERS\SaiU0CFA.sys 28672 bytes (Saitek, Saitek Usb Driver) 0x8D8CB000 C:\Windows\system32\DRIVERS\wfplwf.sys 28672 bytes (Microsoft Corporation, WFP NDIS 6.20 Lightweight Filter Driver) 0x8F6BE000 C:\Windows\system32\DRIVERS\GEARAspiWDM.sys 24576 bytes (GEAR Software Inc., CD DVD Filter) 0x8F7F8000 C:\Windows\system32\DRIVERS\psadd.sys 24576 bytes (Lenovo (United States) Inc., SMBIOS Driver) 0x8D963000 C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS 24576 bytes (SUPERAdBlocker.com and SUPERAntiSpyware.com, SASDIFSV.SYS) 0x8F719000 C:\Windows\system32\DRIVERS\usbfilter.sys 24576 bytes (Advanced Micro Devices, AMD USB Filter Driver) 0x8F7BA000 C:\Windows\system32\DRIVERS\CmBatt.sys 16384 bytes (Microsoft Corporation, Control Method Battery Driver) 0x99AB4000 C:\Windows\system32\drivers\mbam.sys 16384 bytes (Malwarebytes Corporation, Malwarebytes' Anti-Malware) 0x8F434000 C:\Windows\system32\DRIVERS\SaiMini.sys 16384 bytes (Saitek, Saitek Magic Mini Driver) 0x8F7BE000 C:\Windows\system32\DRIVERS\AcpiVpc.sys 12288 bytes (Lenovo Corporation, ACPI Virtual Power Controller Driver) 0x8F7FE000 C:\Windows\system32\DRIVERS\swenum.sys 8192 bytes (Microsoft Corporation, Plug and Play Software Device Enumerator) 0x8F71F000 C:\Windows\system32\DRIVERS\USBD.SYS 8192 bytes (Microsoft Corporation, Universal Serial Bus Driver) ============================================== >Stealth ============================================== ============================================== >Hooks ============================================== [1668]rundll32.exe-->advapi32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77C617B8-->752A5E25 [apphelp.dll] [1668]rundll32.exe-->crypt32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x719B14EC-->752A5E25 [apphelp.dll] [1668]rundll32.exe-->gdi32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77B611B8-->752A5E25 [apphelp.dll] [1668]rundll32.exe-->user32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77D114E0-->752A5E25 [apphelp.dll] [1668]rundll32.exe-->wininet.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x71201454-->752A5E25 [apphelp.dll] [2720]realsched.exe-->kernel32.dll-->SetUnhandledExceptionFilter, Type: Inline - PushRet 0x76FC3162-->EC810004 [unknown_code_page] |
![]() |
Themen zu MS removal Tool vollständig entfernen |
entferne, entfernen, ms removal tool, problem, removal, titel, tool, vollständig, vollständig entfernen, überprüfe, überprüfen |