Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: 100 Tan Trojaner

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 23.11.2011, 11:09   #16
uttella
 
100 Tan Trojaner - Standard

100 Tan Trojaner



Mit dem Combofix hab ich Probleme.
Nachdem Durchlauf gestern konnte ich nichts mehr öffnen(z.B. E-mail, Browser etc.)
Es kam die Meldung:Es wurde versucht ein Registrierungsschlüssel einem unzulässigen LOGIN unterzeichnen, der zum Löschen markiert wurde.

Musste darauf Systemwiederherstellung nutzen.
Heute das gleiche. Wenn ich CFscript rüberziehen will kommt gleiche Meldung. Hab wieder System wiederhergestellt

Alt 23.11.2011, 17:21   #17
Chris4You
 
100 Tan Trojaner - Standard

100 Tan Trojaner



Hi,

Interessant, wird ausgegeben welcher Key zum Löschen markiert ist?
D. h. Combofix ist gelaufen und anschließend funktionierten Browser etc. nicht mehr und es kam diese Meldung?
Hast Du versucht nochmal zu booten?

Fixen mit OTL:
Fix für OTL:
  • Doppelklick auf die OTL.exe, um das Programm auszuführen.
  • Vista/Win7-User bitte per Rechtsklick und "Ausführen als Administrator" starten.
  • Kopiere den Inhalt der folgenden Codebox komplett in die OTL-Box unter "Custom Scan/Fixes"

Code:
ATTFilter
:OTL
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - No CLSID value found.
O2 - BHO: (no name) - {ee1babcf-cbe2-4c07-8e18-dfe6fc08c30a}  - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {043C5167-00BB-4324-AF7E-62013FAEDACF} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {7E111A5C-3D11-4F56-9463-5310C3C69025} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {F4E6547E-325B-403C-A3BB-AD29ED37A92F} - No CLSID value found.
O4 - HKCU..\Run: [{5DC3DC96-99A1-7F67-D792-706463EB81AC}] C:\Users\utti\AppData\Roaming\Babew\udlanoz.exe File not found
MOD - C:\Users\utti\AppData\Roaming\5045\components\AcroFF0458.dll ()
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\extensions\\{184AA5E6-741D-464a-820E-94B3ABC2F3B4}: C:\Users\utti\AppData\Roaming\5045 [2011.11.21 12:38:16 | 000,000,000 | ---D | M]
DRV - (Hotkey) -- C:\Windows\System32\drivers\HOTKEY.sys ()
[2011.11.21 12:38:15 | 000,000,000 | ---D | C] -- C:\Users\utti\AppData\Roaming\5045
[2011.11.20 14:48:36 | 000,000,000 | ---D | C] -- C:\Users\utti\AppData\Roaming\5044
[2011.11.19 19:23:39 | 000,000,000 | ---D | C] -- C:\Users\utti\AppData\Roaming\Yhawid
[2011.11.19 19:23:39 | 000,000,000 | ---D | C] -- C:\Users\utti\AppData\Roaming\Babew
[2011.11.18 19:55:21 | 000,000,000 | ---D | C] -- C:\Users\utti\AppData\Roaming\5043
[2011.11.18 19:54:54 | 000,000,000 | ---D | C] -- C:\Users\utti\AppData\Roaming\xmldm
[2011.11.18 19:54:51 | 000,000,000 | ---D | C] -- C:\Users\utti\AppData\Roaming\kock

@Alternate Data Stream - 229 bytes -> C:\ProgramData\TEMP:8FF81EB0
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:6152D44C



:Files
ipconfig /flushdns /c

:Commands
[EMPTYFLASH]
[emptytemp]
[CREATERESTOREPOINT]
[Reboot]
         
  • Den roten Run Fixes! Button anklicken.
  • Bitte alles aus dem Ergebnisfenster (Results) herauskopieren.
  • Eine Kopie eines OTL-Fix-Logs wird in einer Textdatei in folgendem Ordner gespeichert:
  • %systemroot%\_OTL

MBR-Check
Lade Dir http://ad13.geekstogo.com/MBRCheck.exe und speichere die Datei auf dem Desktop.
  • Doppelklick auf die MBRCheck.exe.
  • Vista und Win7 User mit Rechtsklick "als Administrator starten"
  • Das Tool braucht nur eine Sekunde.
  • Danach solltest du eine MBRCheck_<Datum>_<Uhrzeit>.txt auf dem Desktop finden.
Poste bitte den Inhalt des .txt Dokumentes

Superantispyware (SASW):
http://www.trojaner-board.de/51871-a...tispyware.html

chris
__________________

__________________

Alt 23.11.2011, 17:54   #18
uttella
 
100 Tan Trojaner - Standard

100 Tan Trojaner



All processes killed
========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E853D72-626A-48EC-A868-BA8D5E23E045}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ee1babcf-cbe2-4c07-8e18-dfe6fc08c30a}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ee1babcf-cbe2-4c07-8e18-dfe6fc08c30a}\ deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{043C5167-00BB-4324-AF7E-62013FAEDACF} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{043C5167-00BB-4324-AF7E-62013FAEDACF}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7E111A5C-3D11-4F56-9463-5310C3C69025} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E111A5C-3D11-4F56-9463-5310C3C69025}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{C55BBCD6-41AD-48AD-9953-3609C48EACC7} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C55BBCD6-41AD-48AD-9953-3609C48EACC7}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{F4E6547E-325B-403C-A3BB-AD29ED37A92F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F4E6547E-325B-403C-A3BB-AD29ED37A92F}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\{5DC3DC96-99A1-7F67-D792-706463EB81AC} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5DC3DC96-99A1-7F67-D792-706463EB81AC}\ not found.
File HKEY_CURRENT_USER\software\mozilla\Firefox\extensions\\{184AA5E6-741D-464a-820E-94B3ABC2F3B4}: C:\Users\utti\AppData\Roaming\5045 not found.
Error: Unable to stop service Hotkey!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Hotkey deleted successfully.
C:\Windows\System32\drivers\HOTKEY.sys moved successfully.
C:\Users\utti\AppData\Roaming\5045\components folder moved successfully.
C:\Users\utti\AppData\Roaming\5045 folder moved successfully.
C:\Users\utti\AppData\Roaming\5044\components folder moved successfully.
C:\Users\utti\AppData\Roaming\5044 folder moved successfully.
C:\Users\utti\AppData\Roaming\Yhawid folder moved successfully.
C:\Users\utti\AppData\Roaming\Babew folder moved successfully.
C:\Users\utti\AppData\Roaming\5043\components folder moved successfully.
C:\Users\utti\AppData\Roaming\5043 folder moved successfully.
C:\Users\utti\AppData\Roaming\xmldm folder moved successfully.
C:\Users\utti\AppData\Roaming\kock folder moved successfully.
ADS C:\ProgramData\TEMP:8FF81EB0 deleted successfully.
ADS C:\ProgramData\TEMP:6152D44C deleted successfully.
========== FILES ==========
< ipconfig /flushdns /c >
Windows-IP-Konfiguration
Der DNS-Aufl”sungscache wurde geleert.
C:\Users\utti\Downloads\cmd.bat deleted successfully.
C:\Users\utti\Downloads\cmd.txt deleted successfully.
========== COMMANDS ==========

[EMPTYFLASH]

User: All Users

User: Default
->Flash cache emptied: 41620 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: madmax
->Flash cache emptied: 1229 bytes

User: Public

User: utti
->Flash cache emptied: 621 bytes

Total Flash Files Cleaned = 0,00 mb


[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 402 bytes
->Flash cache emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: madmax
->Temp folder emptied: 2605008 bytes
->Temporary Internet Files folder emptied: 42900402 bytes
->Java cache emptied: 53681 bytes
->FireFox cache emptied: 48360569 bytes
->Flash cache emptied: 0 bytes

User: Public
->Temp folder emptied: 0 bytes

User: utti
->Temp folder emptied: 2686913 bytes
->Temporary Internet Files folder emptied: 68857905 bytes
->Java cache emptied: 545 bytes
->FireFox cache emptied: 43748823 bytes
->Flash cache emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 95278 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 200,00 mb



OTL by OldTimer - Version 3.2.31.0 log created on 11232011_174640

Files\Folders moved on Reboot...
File\Folder C:\Users\utti\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low(6)\Content.IE5\ACW0A2QH\TNFgplm4,5CrCUuUjvZfKkQU4_z5a5xobRvXTYtB7Svvh0WyM0nutMq8UST6cqIg-VzgSTC2Mudoqdr-ZDCpzaAWIOM3-cJAPSWhQjSXKCgeK7zoXscW8h3N07w&callback=google.LU[1].loadFeaturemap0 not found!
File\Folder C:\Windows\temp\JET8FFF.tmp not found!
C:\Windows\temp\JETB1D1.tmp moved successfully.

Registry entries deleted on Reboot...
__________________

Alt 23.11.2011, 17:58   #19
uttella
 
100 Tan Trojaner - Standard

100 Tan Trojaner



MBRCheck, version 1.2.3
(c) 2010, AD

Command-line:
Windows Version: Windows Vista Home Premium Edition
Windows Information: Service Pack 2 (build 6002), 32-bit
Base Board Manufacturer: MEDION
BIOS Manufacturer: Phoenix Technologies LTD
System Manufacturer: MEDION
System Product Name: WIM2160
Logical Drives Mask: 0x0000001c

Kernel Drivers (total 157):
0x82848000 \SystemRoot\system32\ntoskrnl.exe
0x82815000 \SystemRoot\system32\hal.dll
0x83000000 \SystemRoot\system32\kdcom.dll
0x83007000 \SystemRoot\system32\mcupdate_GenuineIntel.dll
0x83077000 \SystemRoot\system32\PSHED.dll
0x83088000 \SystemRoot\system32\BOOTVID.dll
0x83090000 \SystemRoot\system32\CLFS.SYS
0x830D1000 \SystemRoot\system32\CI.dll
0x831B1000 \SystemRoot\system32\drivers\Wdf01000.sys
0x83222000 \SystemRoot\system32\drivers\WDFLDR.SYS
0x83230000 \SystemRoot\system32\drivers\acpi.sys
0x83276000 \SystemRoot\system32\drivers\WMILIB.SYS
0x8327F000 \SystemRoot\system32\drivers\msisadrv.sys
0x83287000 \SystemRoot\system32\drivers\pci.sys
0x832AE000 \SystemRoot\System32\drivers\partmgr.sys
0x832BD000 \SystemRoot\system32\DRIVERS\compbatt.sys
0x832C0000 \SystemRoot\system32\DRIVERS\BATTC.SYS
0x832CA000 \SystemRoot\system32\drivers\volmgr.sys
0x832D9000 \SystemRoot\System32\drivers\volmgrx.sys
0x83323000 \SystemRoot\system32\drivers\intelide.sys
0x8332A000 \SystemRoot\system32\drivers\PCIIDEX.SYS
0x83338000 \SystemRoot\System32\drivers\mountmgr.sys
0x83348000 \SystemRoot\system32\DRIVERS\iaStor.sys
0x88402000 \SystemRoot\system32\drivers\atapi.sys
0x8840A000 \SystemRoot\system32\drivers\ataport.SYS
0x88428000 \SystemRoot\system32\drivers\fltmgr.sys
0x8845A000 \SystemRoot\system32\drivers\fileinfo.sys
0x8846A000 \SystemRoot\System32\Drivers\ksecdd.sys
0x884DB000 \SystemRoot\system32\drivers\ndis.sys
0x885E6000 \SystemRoot\system32\drivers\msrpc.sys
0x88611000 \SystemRoot\system32\drivers\NETIO.SYS
0x8864C000 \SystemRoot\System32\drivers\tcpip.sys
0x88736000 \SystemRoot\System32\drivers\fwpkclnt.sys
0x88806000 \SystemRoot\System32\Drivers\Ntfs.sys
0x88916000 \SystemRoot\system32\drivers\volsnap.sys
0x8894F000 \SystemRoot\system32\DRIVERS\uagp35.sys
0x88960000 \SystemRoot\System32\Drivers\spldr.sys
0x88968000 \SystemRoot\System32\Drivers\mup.sys
0x88977000 \SystemRoot\System32\drivers\ecache.sys
0x8899E000 \SystemRoot\system32\drivers\disk.sys
0x889AF000 \SystemRoot\system32\drivers\CLASSPNP.SYS
0x889D0000 \SystemRoot\system32\drivers\crcdisk.sys
0x88AA9000 \SystemRoot\system32\DRIVERS\tunnel.sys
0x88AB4000 \SystemRoot\system32\DRIVERS\tunmp.sys
0x88ABD000 \SystemRoot\system32\DRIVERS\intelppm.sys
0x88ACC000 \SystemRoot\system32\DRIVERS\wmiacpi.sys
0x8D002000 \SystemRoot\system32\DRIVERS\igdkmd32.sys
0x8D64F000 \SystemRoot\System32\drivers\dxgkrnl.sys
0x8D6EF000 \SystemRoot\System32\drivers\watchdog.sys
0x8D6FB000 \SystemRoot\system32\DRIVERS\HDAudBus.sys
0x8D788000 \SystemRoot\system32\DRIVERS\Rtlh86.sys
0x8D7A0000 \SystemRoot\system32\DRIVERS\usbuhci.sys
0x8D7AB000 \SystemRoot\system32\DRIVERS\USBPORT.SYS
0x8D7E9000 \SystemRoot\system32\DRIVERS\usbehci.sys
0x88AD5000 \SystemRoot\system32\DRIVERS\ohci1394.sys
0x88AE5000 \SystemRoot\system32\DRIVERS\1394BUS.SYS
0x88AF3000 \SystemRoot\system32\DRIVERS\sdbus.sys
0x88B0D000 \SystemRoot\system32\DRIVERS\rimmptsk.sys
0x88B1B000 \SystemRoot\system32\DRIVERS\rimsptsk.sys
0x88B2F000 \SystemRoot\system32\DRIVERS\rixdptsk.sys
0x8D7F8000 \SystemRoot\system32\DRIVERS\CmBatt.sys
0x88B80000 \SystemRoot\system32\DRIVERS\i8042prt.sys
0x88B93000 \SystemRoot\system32\DRIVERS\kbdclass.sys
0x88B9E000 \SystemRoot\system32\DRIVERS\SynTP.sys
0x8D7FC000 \SystemRoot\system32\DRIVERS\USBD.SYS
0x88BC9000 \SystemRoot\system32\DRIVERS\mouclass.sys
0x88BD4000 \SystemRoot\system32\drivers\iviaspi.sys
0x88BD7000 \SystemRoot\system32\DRIVERS\cdrom.sys
0x88BEF000 \SystemRoot\system32\DRIVERS\GEARAspiWDM.sys
0x88751000 \SystemRoot\system32\DRIVERS\dne2000.sys
0x8876F000 \SystemRoot\system32\DRIVERS\msiscsi.sys
0x8879E000 \SystemRoot\system32\DRIVERS\storport.sys
0x88BF5000 \SystemRoot\system32\DRIVERS\TDI.SYS
0x887DF000 \SystemRoot\system32\DRIVERS\rasl2tp.sys
0x88A9E000 \SystemRoot\system32\DRIVERS\ndistapi.sys
0x8DC0C000 \SystemRoot\system32\DRIVERS\ndiswan.sys
0x8DC2F000 \SystemRoot\system32\DRIVERS\raspppoe.sys
0x8DC3E000 \SystemRoot\system32\DRIVERS\raspptp.sys
0x8DC52000 \SystemRoot\system32\DRIVERS\rassstp.sys
0x8DC67000 \SystemRoot\system32\DRIVERS\termdd.sys
0x8DC77000 \SystemRoot\system32\DRIVERS\swenum.sys
0x8DC79000 \SystemRoot\system32\DRIVERS\ks.sys
0x8DCA3000 \SystemRoot\system32\DRIVERS\mssmbios.sys
0x8DCAD000 \SystemRoot\system32\DRIVERS\umbus.sys
0x8DCBA000 \SystemRoot\system32\DRIVERS\usbhub.sys
0x8DCEF000 \SystemRoot\System32\Drivers\NDProxy.SYS
0x8DD00000 \SystemRoot\system32\drivers\RTKVHDA.sys
0x8DEA8000 \SystemRoot\system32\drivers\portcls.sys
0x8DED5000 \SystemRoot\system32\drivers\drmk.sys
0x8DEFA000 \SystemRoot\system32\DRIVERS\smserial.sys
0x8DFF1000 \SystemRoot\system32\drivers\modem.sys
0x8DC00000 \SystemRoot\System32\Drivers\Fs_Rec.SYS
0x887F6000 \SystemRoot\System32\Drivers\Null.SYS
0x8E00B000 \SystemRoot\System32\Drivers\Beep.SYS
0x8E012000 \SystemRoot\System32\drivers\vga.sys
0x8E01E000 \SystemRoot\System32\drivers\VIDEOPRT.SYS
0x8E03F000 \SystemRoot\System32\DRIVERS\RDPCDD.sys
0x8E047000 \SystemRoot\system32\drivers\rdpencdd.sys
0x8E04F000 \SystemRoot\System32\Drivers\Msfs.SYS
0x8E05A000 \SystemRoot\System32\Drivers\Npfs.SYS
0x8E068000 \SystemRoot\System32\DRIVERS\rasacd.sys
0x8E071000 \SystemRoot\system32\DRIVERS\tdx.sys
0x8E087000 \SystemRoot\system32\DRIVERS\smb.sys
0x8E09B000 \SystemRoot\system32\drivers\afd.sys
0x8E0E3000 \SystemRoot\System32\DRIVERS\netbt.sys
0x8E115000 \??\C:\Windows\system32\Drivers\pssdklbf.sys
0x8E125000 \SystemRoot\system32\DRIVERS\pacer.sys
0x8E13B000 \??\C:\Windows\system32\Drivers\pssdk42.sys
0x8E147000 \SystemRoot\system32\DRIVERS\netbios.sys
0x8E155000 \SystemRoot\system32\DRIVERS\wanarp.sys
0x8E168000 \SystemRoot\system32\DRIVERS\ssmdrv.sys
0x8E16E000 \SystemRoot\system32\DRIVERS\rdbss.sys
0x8E1AA000 \SystemRoot\system32\drivers\nsiproxy.sys
0x8E1B4000 \SystemRoot\System32\Drivers\dfsc.sys
0x8E1CB000 \SystemRoot\system32\DRIVERS\avkmgr.sys
0x8E1D7000 \SystemRoot\system32\DRIVERS\avipbb.sys
0x8E1FC000 \SystemRoot\System32\Drivers\fastfat.SYS
0x8E224000 \SystemRoot\system32\DRIVERS\usbccgp.sys
0x8E23B000 \SystemRoot\system32\DRIVERS\hidusb.sys
0x8E244000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
0x8E254000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
0x8E25B000 \SystemRoot\system32\DRIVERS\mouhid.sys
0x8F002000 \SystemRoot\system32\DRIVERS\snp2uvc.sys
0x8F1A9000 \SystemRoot\system32\DRIVERS\STREAM.SYS
0x8F1B6000 \SystemRoot\system32\DRIVERS\sncduvc.SYS
0x8F1BD000 \SystemRoot\System32\Drivers\crashdmp.sys
0x8F1CA000 \SystemRoot\System32\Drivers\dump_iaStor.sys
0x8F282000 \SystemRoot\system32\DRIVERS\RTL8187B.sys
0x93CE0000 \SystemRoot\System32\win32k.sys
0x8F2CF000 \SystemRoot\System32\drivers\Dxapi.sys
0x8F2D9000 \SystemRoot\system32\DRIVERS\monitor.sys
0x93F00000 \SystemRoot\System32\TSDDD.dll
0x93F20000 \SystemRoot\System32\cdd.dll
0x93F30000 \SystemRoot\System32\ATMFD.DLL
0x8F2E8000 \SystemRoot\system32\drivers\luafv.sys
0x8F303000 \SystemRoot\system32\DRIVERS\avgntflt.sys
0x8F324000 \SystemRoot\system32\drivers\spsys.sys
0x8F3D4000 \SystemRoot\system32\DRIVERS\lltdio.sys
0x8E263000 \SystemRoot\system32\DRIVERS\nwifi.sys
0x8F3E4000 \SystemRoot\system32\DRIVERS\ndisuio.sys
0x8E28D000 \SystemRoot\system32\DRIVERS\rspndr.sys
0x8E2A0000 \SystemRoot\system32\drivers\HTTP.sys
0x8E30D000 \SystemRoot\System32\DRIVERS\srvnet.sys
0x8E32A000 \SystemRoot\system32\DRIVERS\bowser.sys
0x8E343000 \SystemRoot\System32\drivers\mpsdrv.sys
0x8E358000 \SystemRoot\system32\drivers\mrxdav.sys
0x8E379000 \SystemRoot\system32\DRIVERS\mrxsmb.sys
0x8E398000 \SystemRoot\system32\DRIVERS\mrxsmb10.sys
0x8E3D1000 \SystemRoot\system32\DRIVERS\mrxsmb20.sys
0x889D9000 \SystemRoot\System32\DRIVERS\srv2.sys
0x88A01000 \SystemRoot\System32\DRIVERS\srv.sys
0xB0409000 \??\C:\Windows\system32\Drivers\CVPNDRVA.sys
0xB0499000 \SystemRoot\system32\drivers\peauth.sys
0xB0577000 \SystemRoot\System32\Drivers\secdrv.SYS
0xB0581000 \SystemRoot\System32\drivers\tcpipreg.sys
0xB058D000 \SystemRoot\system32\DRIVERS\cdfs.sys
0x779E0000 \Windows\System32\ntdll.dll

Processes (total 78):
0 System Idle Process
4 System
504 C:\Windows\System32\smss.exe
596 csrss.exe
644 C:\Windows\System32\wininit.exe
652 csrss.exe
688 C:\Windows\System32\services.exe
700 C:\Windows\System32\lsass.exe
712 C:\Windows\System32\lsm.exe
736 C:\Windows\System32\winlogon.exe
928 C:\Windows\System32\svchost.exe
996 C:\Windows\System32\svchost.exe
1044 C:\Windows\System32\svchost.exe
1124 C:\Windows\System32\svchost.exe
1156 C:\Windows\System32\svchost.exe
1204 C:\Windows\System32\svchost.exe
1296 C:\Windows\System32\audiodg.exe
1320 C:\Windows\System32\svchost.exe
1340 C:\Windows\System32\SLsvc.exe
1412 C:\Windows\System32\svchost.exe
1596 C:\Windows\System32\svchost.exe
1784 C:\Windows\System32\spoolsv.exe
1808 C:\Program Files\Avira\AntiVir Desktop\sched.exe
1820 C:\Windows\System32\svchost.exe
2028 C:\Program Files\Avira\AntiVir Desktop\avguard.exe
268 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
340 C:\Program Files\Videoload Manager\ContentManager.exe
380 C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
516 C:\Program Files\Common Files\Gnab\Service\ServiceController.exe
924 C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
1052 C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
1284 C:\Program Files\Common Files\LightScribe\LSSrvc.exe
1332 C:\Program Files\Medion\MEDIONbox\Program\GCS.exe
1536 C:\Windows\System32\NLSSRV32.EXE
1548 C:\Windows\System32\svchost.exe
1876 C:\Program Files\Sceneo\Bonavista\Services\PVR\pvrservice.exe
368 C:\Windows\System32\svchost.exe
1552 C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
2072 C:\Windows\System32\svchost.exe
2092 C:\Windows\System32\SearchIndexer.exe
2392 C:\Windows\System32\taskeng.exe
2816 C:\Windows\System32\taskeng.exe
2860 C:\Windows\System32\dwm.exe
2916 C:\Windows\explorer.exe
3424 C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
3752 C:\Windows\notepad.exe
3844 C:\Program Files\Windows Defender\MSASCui.exe
3872 C:\Windows\RtHDVCpl.exe
2736 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
2808 C:\Program Files\Sceneo\Bonavista\Services\ODSBC\ODSBCApp.exe
2888 C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
3016 C:\Program Files\Launch Manager\LaunchAp.exe
2760 C:\Program Files\Launch Manager\HotkeyApp.exe
3100 C:\Program Files\Launch Manager\OSD.exe
3124 C:\Program Files\Launch Manager\WButton.exe
3084 C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
3164 C:\Windows\System32\hkcmd.exe
3172 C:\Windows\System32\igfxpers.exe
3184 C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
3220 C:\Program Files\iTunes\iTunesHelper.exe
3244 C:\Windows\System32\igfxsrvc.exe
3252 C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
1500 C:\Windows\ehome\ehtray.exe
3748 C:\Program Files\Launch Manager\WisLMSvc.exe
3684 WmiPrvSE.exe
1076 C:\Windows\ehome\ehmsas.exe
3936 C:\Program Files\Windows Mail\WinMail.exe
2872 C:\Program Files\iPod\bin\iPodService.exe
3108 C:\Windows\System32\svchost.exe
4524 C:\Program Files\Mozilla Firefox\firefox.exe
4856 C:\Program Files\Mozilla Firefox\plugin-container.exe
5464 WmiPrvSE.exe
5784 C:\Windows\System32\SearchProtocolHost.exe
5808 C:\Windows\System32\SearchFilterHost.exe
6052 dllhost.exe
6088 dllhost.exe
6116 C:\Users\utti\Downloads\MBRCheck.exe
6132 C:\Windows\System32\conime.exe

\\.\C: --> \\.\PhysicalDrive0 at offset 0x00000000`00007e00 (NTFS)
\\.\D: --> \\.\PhysicalDrive0 at offset 0x0000001d`bfc6da00 (FAT32)

PhysicalDrive0 Model Number: WDCWD1600BEVS-22RST0, Rev: 04.01G04

Size Device Name MBR Status
--------------------------------------------
149 GB \\.\PhysicalDrive0 Windows 2008 MBR code detected
SHA1: 8DF43F2BDE2D9451948FA14B5279969C777A7979


Done!

Alt 23.11.2011, 18:01   #20
uttella
 
100 Tan Trojaner - Standard

100 Tan Trojaner



Key zu Löschen kam bei Combofix nicht, soweit ich das noch weiss.
Hab nochmal gebootet, hat aber nichts gebracht.

Siehts jetzt schon besser aus??


Alt 23.11.2011, 18:33   #21
Chris4You
 
100 Tan Trojaner - Standard

100 Tan Trojaner



Hi,

bitte noch ein neues OTL-Log und zwar wie folgt:
  • Vista/Win7-User mit Rechtsklick "als Administrator starten"
  • Kopiere nun den Inhalt in die Textbox

Code:
ATTFilter
netsvcs
msconfig
safebootminimal
safebootnetwork
activex
drivers32
%SYSTEMDRIVE%\*.exe
/md5start
eventlog.dll
scecli.dll
netlogon.dll
cngaudit.dll
sceclt.dll
ntelogon.dll
logevent.dll
iaStor.sys
nvstor.sys
atapi.sys
IdeChnDr.sys
viasraid.sys
AGP440.sys
vaxscsi.sys
nvatabus.sys
viamraid.sys
nvata.sys
nvgts.sys
iastorv.sys
ViPrt.sys
eNetHook.dll
ahcix86.sys
KR10N.sys
nvstor32.sys
mv61xx.sys
winlogon.exe
userinit.exe
WS2_32.dll
/md5stop
c:\windows\system32\drivers\*.sys /lockedfiles
c:\windows\system32\*.dll /lockedfiles
%systemroot%\*. /mp /s
%PROGRAMFILES%\*.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs
         
  • Schliesse bitte nun alle Programme. (Wichtig)
  • Klicke nun bitte auf den Quick Scan Button
  • Klick auf OK
  • Kopiere nun den Inhalt aus OTL.txt und Extra.txt hier in Deinen Thread

Poste dann bitte auch noch das Log von Superantispyware...

chris
__________________
--> 100 Tan Trojaner

Alt 23.11.2011, 19:36   #22
uttella
 
100 Tan Trojaner - Standard

100 Tan Trojaner



Spuckt jetzt nur diese Otl.txt Datei aus:OTL Logfile:
Code:
ATTFilter
OTL logfile created on: 23.11.2011 19:14:08 - Run 3
OTL by OldTimer - Version 3.2.31.0     Folder = C:\Users\utti\Downloads
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
1,99 Gb Total Physical Memory | 1,21 Gb Available Physical Memory | 60,78% Memory free
4,21 Gb Paging File | 3,19 Gb Available in Paging File | 75,71% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 119,00 Gb Total Space | 14,67 Gb Free Space | 12,33% Space Free | Partition Type: NTFS
Drive D: | 30,04 Gb Total Space | 20,56 Gb Free Space | 68,45% Space Free | Partition Type: FAT32
 
Computer Name: UTTI-PC | User Name: utti | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - C:\Users\utti\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Windows\System32\NLSSRV32.EXE (Nalpeiron Ltd.)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Windows\System32\conime.exe (Microsoft Corporation)
PRC - C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe (Cisco Systems, Inc.)
PRC - C:\Program Files\Videoload Manager\ContentManager.exe (ACE GmbH)
PRC - C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
PRC - C:\Program Files\Sceneo\Bonavista\Services\ODSBC\ODSBCApp.exe (ODSoft multimedia)
PRC - C:\Program Files\Sceneo\Bonavista\Services\PVR\pvrservice.exe (Buhl Data Service GmbH)
PRC - C:\Program Files\Medion\MEDIONbox\Program\GCS.exe (Empolis GmbH)
PRC - c:\Program Files\Common Files\Gnab\Service\ServiceController.exe (Empolis GmbH)
PRC - C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
PRC - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe (InterVideo)
PRC - C:\Program Files\Launch Manager\OSD.exe (Wistron Corp.)
PRC - C:\Program Files\Launch Manager\HotkeyApp.exe (Wistron)
PRC - C:\Program Files\Launch Manager\WisLMSvc.exe (Wistron Corp.)
PRC - C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
PRC - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
PRC - C:\Program Files\Launch Manager\WButton.exe ()
PRC - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
PRC - C:\Program Files\Launch Manager\LaunchAp.exe ()
 
 
========== Modules (No Company Name) ==========
 
MOD - C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Program Files\Launch Manager\WButton.exe ()
MOD - C:\Program Files\Launch Manager\LaunchAp.exe ()
 
 
========== Win32 Services (SafeList) ==========
 
SRV - (AntiVirSchedulerService) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG)
SRV - (AntiVirService) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG)
SRV - (nlsX86cc) -- C:\Windows\System32\NLSSRV32.EXE (Nalpeiron Ltd.)
SRV - (WinHttpAutoProxySvc) -- winhttp.dll (Microsoft Corporation)
SRV - (CVPND) -- C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe (Cisco Systems, Inc.)
SRV - (ContentMgrService) -- C:\Program Files\Videoload Manager\ContentManager.exe (ACE GmbH)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (srvcPVR) -- C:\Program Files\Sceneo\Bonavista\Services\PVR\pvrservice.exe (Buhl Data Service GmbH)
SRV - (GnabService) -- c:\Program Files\Common Files\Gnab\Service\ServiceController.exe (Empolis GmbH)
SRV - (IviRegMgr) -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe (InterVideo)
SRV - (WisLMSvc) -- C:\Program Files\Launch Manager\WisLMSvc.exe (Wistron Corp.)
SRV - (IAANTMON) Intel(R) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Intel Corporation)
SRV - (UleadBurningHelper) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Ulead Systems, Inc.)
SRV - (FirebirdServerMAGIXInstance) -- C:\Program Files\ALDI Sued Foto Service\Common\Database\bin\fbserver.exe (MAGIX®)
 
 
========== Driver Services (SafeList) ==========
 
DRV - (avipbb) -- C:\Windows\System32\drivers\avipbb.sys (Avira GmbH)
DRV - (avgntflt) -- C:\Windows\System32\drivers\avgntflt.sys (Avira GmbH)
DRV - (avkmgr) -- C:\Windows\System32\drivers\avkmgr.sys (Avira GmbH)
DRV - (Netaapl) -- C:\Windows\System32\drivers\netaapl.sys (Apple Inc.)
DRV - (ssmdrv) -- C:\Windows\System32\drivers\ssmdrv.sys (Avira GmbH)
DRV - (PSSDK42) -- C:\Windows\System32\drivers\pssdk42.sys (microOLAP Technologies LTD)
DRV - (PSSDKLBF) -- C:\Windows\System32\drivers\pssdklbf.sys (microOLAP Technologies LTD)
DRV - (CVPNDRVA) -- C:\Windows\System32\drivers\CVPNDRVA.sys (Cisco Systems, Inc.)
DRV - (LTXMD_VAC) Litex Media Virtual Audio Cable (WDM) -- C:\Windows\System32\drivers\lmvac.sys (Windows (R) Codename Longhorn DDK provider)
DRV - (DNE) -- C:\Windows\System32\drivers\dne2000.sys (Deterministic Networks, Inc.)
DRV - (RTL8187B) -- C:\Windows\System32\drivers\rtl8187B.sys (Realtek Semiconductor Corporation                           )
DRV - (RTL8169) -- C:\Windows\System32\drivers\Rtlh86.sys (Realtek Corporation                                            )
DRV - (SNP2UVC) USB2.0 PC Camera (SNP2UVC) -- C:\Windows\System32\drivers\snp2uvc.sys ()
DRV - (CVirtA) -- C:\Windows\System32\drivers\CVirtA.sys (Cisco Systems, Inc.)
DRV - (rimmptsk) -- C:\Windows\System32\drivers\rimmptsk.sys (REDC)
DRV - (rimsptsk) -- C:\Windows\System32\drivers\rimsptsk.sys (REDC)
DRV - (rismxdp) -- C:\Windows\System32\drivers\rixdptsk.sys (REDC)
DRV - (smserial) -- C:\Windows\System32\drivers\smserial.sys (Motorola Inc.)
DRV - (R300) -- C:\Windows\System32\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV - (w810obex) -- C:\Windows\System32\drivers\w810obex.sys (MCCI)
DRV - (w810mgmt) Sony Ericsson W810 USB WMC Device Management Drivers (WDM) -- C:\Windows\System32\drivers\w810mgmt.sys (MCCI)
DRV - (w810mdm) -- C:\Windows\System32\drivers\w810mdm.sys (MCCI)
DRV - (w810mdfl) -- C:\Windows\System32\drivers\w810mdfl.sys (MCCI)
DRV - (w810bus) Sony Ericsson W810 Driver driver (WDM) -- C:\Windows\System32\drivers\w810bus.sys (MCCI)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Welcome to ALDI
 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Welcome to ALDI
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = comdirect.de
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\..\URLSearchHook: {7e111a5c-3d11-4f56-9463-5310c3c69025} - No CLSID value found
IE - HKCU\..\URLSearchHook: {f4e6547e-325b-403c-a3bb-ad29ed37a92f} - No CLSID value found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 192.168.2.1:80
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "AutoConfigURL" = 192.168.2.1
 
========== FireFox ==========
 
FF - prefs.js..browser.startup.homepage: "hxxp://www.comdirect.de/"
FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.9.5
FF - prefs.js..extensions.enabledItems: {ACAA314B-EEBA-48e4-AD47-84E31C44796C}:1.0.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: firefox@tvunetworks.com:2
FF - prefs.js..extensions.enabledItems: 5
FF - prefs.js..extensions.enabledItems: 3
FF - prefs.js..extensions.enabledItems: 1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {AB2CE124-6272-4b12-94A9-7303C7397BD1}:5.0.0.6778
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26
FF - prefs.js..extensions.enabledItems: youtube2mp3@mondayx.de:1.2.3
 
 
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX,Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0:  File not found
FF - HKLM\Software\MozillaPlugins\@fluxdvd.com/NPAPIX: C:\Program Files\Common Files\fluxDVD\APIX\NPAPIX.dll ()
FF - HKLM\Software\MozillaPlugins\@fluxdvd.com/NPFluxBrowserHelper: C:\Program Files\Common Files\fluxDVD\BrowserIntegration\NPFluxBrowserHelper.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pages.tvunetworks.com/WebPlayer: C:\Windows\system32\TVUAx\npTVUAx.dll (TVU networks)
FF - HKLM\Software\MozillaPlugins\@protectdisc.com/NPMPDRM: C:\Program Files\Common Files\mpDRM\NPMPDRM.dll ()
FF - HKLM\Software\MozillaPlugins\@protectdisc.com/NPWMDRMWrapper: C:\Program Files\Common Files\mpDRM\NPWMDRMWrapper.dll ()
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@veetle.com/vbp;version=0.9.17: C:\Program Files\Veetle\VLCBroadcast\npvbp.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.17: C:\Program Files\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.17: C:\Program Files\Veetle\Player\npvlc.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{400F0BDB-6C49-43A4-BE1F-76D7327A604D}: C:\Program Files\Common Files\fluxDVD\Download Manager\Mozilla [2008.05.07 23:16:26 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.11.11 11:48:28 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.09.09 06:03:47 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\extensions\\{184AA5E6-741D-464a-820E-94B3ABC2F3B4}: C:\Users\utti\AppData\Roaming\5045
FF - HKEY_CURRENT_USER\software\mozilla\Thunderbird\Extensions\\{0E810812-F4BB-4309-942A-755587587A5E}: C:\Program Files\BullGuard Software\BullGuard\antispam\tbspamfilter
 
[2009.07.07 09:46:01 | 000,000,000 | ---D | M] (No name found) -- C:\Users\utti\AppData\Roaming\mozilla\Extensions
[2011.11.11 11:48:52 | 000,000,000 | ---D | M] (No name found) -- C:\Users\utti\AppData\Roaming\mozilla\Firefox\Profiles\38rjua60.default\extensions
[2010.07.19 06:02:55 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\utti\AppData\Roaming\mozilla\Firefox\Profiles\38rjua60.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.07.28 10:20:54 | 000,000,000 | ---D | M] ("DVDVideoSoft Menu") -- C:\Users\utti\AppData\Roaming\mozilla\Firefox\Profiles\38rjua60.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
[2011.11.11 11:48:37 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\utti\AppData\Roaming\mozilla\Firefox\Profiles\38rjua60.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2009.12.02 07:07:10 | 000,000,000 | ---D | M] (TVU Web Player) -- C:\Users\utti\AppData\Roaming\mozilla\Firefox\Profiles\38rjua60.default\extensions\firefox@tvunetworks.com
[2011.08.27 09:00:20 | 000,000,000 | ---D | M] (YouTube to MP3) -- C:\Users\utti\AppData\Roaming\mozilla\Firefox\Profiles\38rjua60.default\extensions\youtube2mp3@mondayx.de
[2011.11.11 11:48:37 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010.12.17 12:13:47 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2011.11.11 11:48:27 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011.05.04 03:52:23 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2011.10.14 07:29:16 | 000,001,392 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazondotcom-de.xml
[2011.10.14 07:29:16 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2011.10.14 07:29:16 | 000,001,153 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-de.xml
[2011.10.14 07:29:16 | 000,006,805 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\leo_ende_de.xml
[2011.10.14 07:29:16 | 000,001,178 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-de.xml
[2011.10.14 07:29:16 | 000,001,105 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-de.xml
 
O1 HOSTS File: ([2008.04.16 20:37:52 | 000,000,054 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1       localhost
O1 - Hosts: ::1             localhost
O2 - BHO: (Download Manager Browser Helper Object) - {19C8E43B-07B3-49CB-BFFC-6777B593E6F8} - C:\Program Files\Common Files\fluxDVD\Download Manager\XEBDLHelper.dll (Protect Software GmbH)
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (no name) - {ee1babcf-cbe2-4c07-8e18-dfe6fc08c30a}  - No CLSID value found.
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [HotkeyApp] C:\Program Files\Launch Manager\HotkeyApp.exe (Wistron)
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe (Intel Corporation)
O4 - HKLM..\Run: [LaunchAp] C:\Program Files\Launch Manager\LaunchAp.exe ()
O4 - HKLM..\Run: [LexwareInfoService] C:\Program Files\Common Files\Lexware\Update Manager\LxUpdateManager.exe (Haufe-Lexware GmbH & Co. KG)
O4 - HKLM..\Run: [LMgrOSD] C:\Program Files\Launch Manager\OSD.exe (Wistron Corp.)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [toolbar_eula_launcher] C:\Program Files\GoogleEULA\EULALauncher.exe ( )
O4 - HKLM..\Run: [TVBroadcast] C:\Program Files\Sceneo\Bonavista\Services\ODSBC\ODSBCApp.exe (ODSoft multimedia)
O4 - HKLM..\Run: [UVS10 Preload] C:\Program Files\Ulead Systems\Ulead VideoStudio SE DVD\uvPL.exe (Ulead Systems, Inc.)
O4 - HKLM..\Run: [Wbutton] C:\Program Files\Launch Manager\Wbutton.exe ()
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O8 - Extra context menu item: Free YouTube to Mp3 Converter - C:\Users\utti\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm ()
O9 - Extra Button: eBay - Der weltweite Online-Marktplatz - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay - eine der größten deutschen Shopping-Websites File not found
O9 - Extra 'Tools' menuitem : eBay - {0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - eBay - eine der größten deutschen Shopping-Websites File not found
O13 - gopher Prefix: missing
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} hxxp://download.divx.com/player/DivXBrowserPlugin.cab (DivXBrowserPlugin Object)
O16 - DPF: {888078C6-70B2-4F88-8EE7-1F50DDEA6120} https://as.photoprintit.de/ips-opdata/activex/ImageUploader6.cab (CeWe Color AG & Co. OHG Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {C1FDEE68-98D5-4F42-A4DD-D0BECF5077EB} hxxp://tools.ebayimg.com/eps/wl/activex/eBay_Enhanced_Picture_Control_v1-0-29-0.cab (EPUImageControl Class)
O16 - DPF: {CAC677B6-4963-4305-9066-0BD135CD9233} https://as.photoprintit.de/ips-opdata/layout/default_cms01/activex/IPSUploader4.cab (IPSUploader4 Control)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{8889191D-50CE-4244-92A6-A164F2FAB58C}: DhcpNameServer = 10.129.32.1 10.111.81.129
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E2538822-8FA8-4FB7-BABD-7A7E81D14206}: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\fluxhttp {8E2D00A0-82C6-4821-90BC-07F290841BB6} - C:\Program Files\Common Files\fluxDVD\Lib\XEB\xebnavigation.ax ()
O18 - Protocol\Handler\fluxhttp\0x00000007 {8E2D00A0-82C6-4821-90BC-07F290841BB6} - C:\Program Files\Common Files\fluxDVD\Lib\XEB\xebnavigation.ax ()
O18 - Protocol\Handler\haufereader - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - igfxdev.dll (Intel Corporation)
O24 - Desktop WallPaper: C:\Users\Public\Pictures\Sample Pictures\Dock.jpg
O24 - Desktop BackupWallPaper: C:\Users\Public\Pictures\Sample Pictures\Dock.jpg
O29 - HKLM SecurityProviders - (credssp.dll) -credssp.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006.09.18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
NetSvcs: FastUserSwitchingCompatibility -  File not found
NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
NetSvcs: Nla -  File not found
NetSvcs: Ntmssvc -  File not found
NetSvcs: NWCWorkstation -  File not found
NetSvcs: Nwsapagent -  File not found
NetSvcs: SRService -  File not found
NetSvcs: WmdmPmSp -  File not found
NetSvcs: LogonHours -  File not found
NetSvcs: PCAudit -  File not found
NetSvcs: helpsvc -  File not found
NetSvcs: uploadmgr -  File not found
 
MsConfig - StartUpReg: DivXUpdate - hkey= - key= - C:\Program Files\DivX\DivX Update\DivXUpdate.exe ()
MsConfig - StartUpReg: iTunesHelper - hkey= - key= - C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.)
MsConfig - StartUpReg: LexwareInfoService - hkey= - key= - C:\Program Files\Common Files\Lexware\Update Manager\LxUpdateManager.exe (Haufe-Lexware GmbH & Co. KG)
MsConfig - StartUpReg: NeroFilterCheck - hkey= - key= - C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG)
MsConfig - StartUpReg: QuickTime Task - hkey= - key= - C:\Program Files\QuickTime\QTTask.exe (Apple Inc.)
MsConfig - State: "startup" - 2
 
SafeBootMin: AppMgmt - Service
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: NTDS -  File not found
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
 
SafeBootNet: AppMgmt - Service
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: Messenger - Service
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: NTDS -  File not found
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: rdsessmgr - Service
SafeBootNet: sacsvr - Service
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootNet: WudfPf - Driver
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
 
ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun)
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - 
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\System32\Microsoft
ActiveX: {233C1507-6A77-46A4-9443-F871F945D258} - C:\Windows\System32\Adobe
ActiveX: {25FFAAD0-F4A3-4164-95FF-4461E9F35D51} - .NET Framework
ActiveX: {2A202491-F00D-11cf-87CC-0020AFEECF20} - Adobe Shockwave Director 11.0
ActiveX: {2A3320D6-C805-4280-B423-B665BDE33D8F} - Microsoft .NET Framework 1.1 Security Update (KB979906)
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {3C3901C5-3455-3E0A-A214-0B093A5070A6} - .NET Framework
ActiveX: {411EDCF7-755D-414E-A74B-3DCD6583F589} - Microsoft .NET Framework 1.1 Service Pack 1 (KB867460)
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - 
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - C:\Windows\System32\Microsoft
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\system32\ie4uinit.exe -BaseSettings
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} - .NET Framework
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1
ActiveX: {D27CDB6E-AE6D-11CF-96B8-444553540000} - C:\Windows\System32\Adobe
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: {EFCE7BE0-510E-4932-9475-F44CD90DE16A} - Microsoft .NET Framework 1.1 Security Update (KB2572067)
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\Windows\system32\unregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\system32\ie4uinit.exe -UserIconConfig
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
 
Drivers32: aux - wdmaud.drv (Microsoft Corporation)
Drivers32: midi - wdmaud.drv (Microsoft Corporation)
Drivers32: midimapper - midimap.dll (Microsoft Corporation)
Drivers32: mixer - wdmaud.drv (Microsoft Corporation)
Drivers32: msacm.dvacm - C:\Program Files\Common Files\Ulead Systems\VIO\DVACM.acm (Ulead Systems, Inc.)
Drivers32: msacm.imaadpcm - imaadp32.acm (Microsoft Corporation)
Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.MPEGacm - C:\Program Files\Common Files\Ulead Systems\MPEG\MPEGACM.acm (Ulead Systems, Inc.)
Drivers32: msacm.msadpcm - msadp32.acm (Microsoft Corporation)
Drivers32: msacm.msaudio1 - msaud32.acm (Microsoft Corporation)
Drivers32: msacm.msg711 - msg711.acm (Microsoft Corporation)
Drivers32: msacm.msgsm610 - msgsm32.acm (Microsoft Corporation)
Drivers32: msacm.siren - sirenacm.dll (Microsoft Corp.)
Drivers32: msacm.ulmp3acm - C:\Program Files\Common Files\Ulead Systems\MPEG\ulmp3acm.acm (Ulead systems)
Drivers32: MSVideo8 - VfWWDM32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - DivX.dll (DivX, Inc.)
Drivers32: vidc.i420 - i420vfw.dll (www.helixcommunity.org)
Drivers32: VIDC.IYUV - iyuv_32.dll (Microsoft Corporation)
Drivers32: vidc.mrle - msrle32.dll (Microsoft Corporation)
Drivers32: vidc.msvc - msvidc32.dll (Microsoft Corporation)
Drivers32: VIDC.UYVY - msyuv.dll (Microsoft Corporation)
Drivers32: VIDC.YUY2 - msyuv.dll (Microsoft Corporation)
Drivers32: vidc.yv12 - yv12vfw.dll (www.helixcommunity.org)
Drivers32: VIDC.YVU9 - tsbyuv.dll (Microsoft Corporation)
Drivers32: VIDC.YVYU - msyuv.dll (Microsoft Corporation)
Drivers32: wave - wdmaud.drv (Microsoft Corporation)
Drivers32: wavemapper - msacm32.drv (Microsoft Corporation)
 
========== Files/Folders - Created Within 30 Days ==========
 
[2011.11.23 17:46:40 | 000,000,000 | ---D | C] -- C:\_OTL
[2011.11.23 10:24:57 | 000,000,000 | ---D | C] -- C:\Users\utti\AppData\Local\Temp(12)
[2011.11.23 09:59:30 | 000,000,000 | ---D | C] -- C:\ComboFix
[2011.11.23 09:37:04 | 000,000,000 | ---D | C] -- C:\Users\utti\AppData\Local\Temp(11)
[2011.11.22 23:30:43 | 000,000,000 | ---D | C] -- C:\Users\utti\AppData\Local\Temp(6)
[2011.11.22 22:52:33 | 000,000,000 | ---D | C] -- C:\Users\utti\AppData\Roaming\TuneUp Software
[2011.11.22 22:52:11 | 000,000,000 | ---D | C] -- C:\Program Files\TuneUp Utilities 2012
[2011.11.22 22:51:45 | 000,000,000 | ---D | C] -- C:\ProgramData\TuneUp Software
[2011.11.22 22:50:25 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011.11.22 13:58:47 | 000,000,000 | ---D | C] -- C:\TDSS
[2011.11.21 20:26:40 | 000,000,000 | ---D | C] -- C:\Users\utti\AppData\Roaming\Malwarebytes
[2011.11.21 20:26:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011.11.21 20:26:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011.11.21 20:26:24 | 000,022,216 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2011.11.21 20:26:23 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011.11.17 20:51:22 | 000,000,000 | ---D | C] -- C:\Users\utti\AppData\Roaming\webex
[2011.11.17 20:48:42 | 000,000,000 | -HSD | C] -- C:\Users\utti\Documents\Documents\cache
[2011.11.17 20:48:07 | 000,000,000 | ---D | C] -- C:\ProgramData\WebEx
[2011.11.02 09:44:18 | 000,000,000 | ---D | C] -- C:\Users\utti\Documents\Documents\Videos
[2011.11.02 09:44:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kastor Free Vimeo Downloader
[2011.11.02 09:44:06 | 000,000,000 | ---D | C] -- C:\Users\utti\AppData\Roaming\KastorFreeVimeoDownloader
[2011.11.02 09:44:06 | 000,000,000 | ---D | C] -- C:\Program Files\Kastor Free Vimeo Downloader
[2011.11.02 09:42:46 | 003,264,831 | ---- | C] (KastorSoft                                                  ) -- C:\Users\utti\Desktop\Setup_FreeVimeoDownloader.exe
[2009.06.16 13:03:56 | 000,126,976 | ---- | C] ( ) -- C:\Windows\System32\Interop.SHDocVw.dll
[2007.07.12 03:57:45 | 000,053,248 | ---- | C] ( ) -- C:\Windows\System32\csnp2uvc.dll
 
========== Files - Modified Within 30 Days ==========
 
[2011.11.23 18:40:00 | 000,001,094 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011.11.23 17:55:19 | 000,642,258 | ---- | M] () -- C:\Windows\System32\perfh007.dat
[2011.11.23 17:55:19 | 000,607,228 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011.11.23 17:55:19 | 000,131,678 | ---- | M] () -- C:\Windows\System32\perfc007.dat
[2011.11.23 17:55:19 | 000,108,604 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011.11.23 17:51:10 | 000,001,090 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011.11.23 17:50:58 | 000,003,696 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011.11.23 17:50:57 | 000,003,696 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011.11.23 17:50:49 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.11.21 20:39:13 | 000,000,072 | ---- | M] () -- C:\Users\utti\AppData\Roaming\blckdom.res
[2011.11.21 20:26:29 | 000,000,870 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.11.02 09:52:52 | 000,086,528 | ---- | M] () -- C:\Users\utti\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.11.02 09:44:09 | 000,000,963 | ---- | M] () -- C:\Users\utti\Desktop\Kastor Free Vimeo Downloader.lnk
[2011.11.02 09:42:50 | 003,264,831 | ---- | M] (KastorSoft                                                  ) -- C:\Users\utti\Desktop\Setup_FreeVimeoDownloader.exe
[2011.10.31 15:29:59 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_netaapl_01009.Wdf
[2011.10.31 15:29:40 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
 
========== Files Created - No Company Name ==========
 
[2011.11.21 20:26:29 | 000,000,870 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.11.18 19:55:15 | 000,000,072 | ---- | C] () -- C:\Users\utti\AppData\Roaming\blckdom.res
[2011.11.02 09:44:09 | 000,000,963 | ---- | C] () -- C:\Users\utti\Desktop\Kastor Free Vimeo Downloader.lnk
[2011.10.31 15:29:59 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_netaapl_01009.Wdf
[2011.10.31 15:29:40 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2011.10.31 15:28:52 | 000,000,003 | ---- | C] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01009_Inbox_Critical.Wdf
[2011.09.17 14:13:45 | 000,000,054 | ---- | C] () -- C:\Windows\Player.INI
[2010.12.17 15:09:17 | 000,027,648 | ---- | C] () -- C:\Windows\System32\AVSredirect.dll
[2010.11.19 14:53:43 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2009.09.17 08:28:38 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009.09.17 08:28:38 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2009.09.16 16:27:58 | 000,508,224 | ---- | C] () -- C:\Windows\System32\ICCProfiles.dll
[2009.07.13 12:15:35 | 000,000,253 | ---- | C] () -- C:\Windows\tm.ini
[2009.07.13 12:14:58 | 000,000,092 | ---- | C] () -- C:\Windows\d2hnav.ini
[2009.07.13 12:14:03 | 000,000,027 | ---- | C] () -- C:\Windows\stwin05.ini
[2009.06.16 13:03:58 | 000,053,248 | ---- | C] () -- C:\Windows\System32\dossec.dll
[2009.06.14 21:18:20 | 000,097,992 | ---- | C] () -- C:\Windows\System32\canvidplayer8.dll
[2008.10.29 06:25:20 | 000,000,941 | ---- | C] () -- C:\Windows\uninst.ini
[2008.08.29 13:58:26 | 000,197,408 | ---- | C] () -- C:\Windows\System32\vpnapi.dll
[2008.08.29 07:38:45 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2008.03.17 08:14:36 | 000,000,121 | ---- | C] () -- C:\Windows\cdplayer.ini
[2008.02.09 15:59:42 | 000,000,020 | ---- | C] () -- C:\Windows\powerplayer.ini
[2008.02.09 15:59:37 | 000,000,360 | ---- | C] () -- C:\Windows\psnetwork.ini
[2008.01.02 08:57:36 | 000,147,456 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1409.dll
[2007.12.11 06:54:39 | 000,000,305 | ---- | C] () -- C:\ProgramData\addr_file.html
[2007.09.19 17:39:25 | 000,086,528 | ---- | C] () -- C:\Users\utti\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2007.09.06 12:49:50 | 000,000,092 | ---- | C] () -- C:\Users\utti\AppData\Local\fusioncache.dat
[2007.08.24 11:46:48 | 000,147,456 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1322.dll
[2007.07.12 03:57:45 | 001,729,152 | ---- | C] () -- C:\Windows\System32\drivers\snp2uvc.sys
[2007.07.09 16:32:04 | 000,087,312 | ---- | C] () -- C:\Windows\mws.exe
[2007.07.06 06:39:12 | 000,006,642 | ---- | C] () -- C:\Windows\mgxoschk.ini
[2007.07.06 06:39:06 | 000,000,049 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2007.07.06 05:41:51 | 000,204,800 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1283.dll
[2007.06.20 12:39:38 | 000,299,008 | ---- | C] () -- C:\Windows\System32\midas.dll
[2007.06.20 12:39:38 | 000,120,320 | ---- | C] () -- C:\Windows\System32\UnzDll.dll
[2007.06.11 13:43:56 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
[2007.06.11 13:43:51 | 000,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll
[2006.12.11 05:06:31 | 000,000,000 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat
[2006.11.02 16:33:31 | 000,642,258 | ---- | C] () -- C:\Windows\System32\perfh007.dat
[2006.11.02 16:33:31 | 000,290,748 | ---- | C] () -- C:\Windows\System32\perfi007.dat
[2006.11.02 16:33:31 | 000,131,678 | ---- | C] () -- C:\Windows\System32\perfc007.dat
[2006.11.02 16:33:31 | 000,036,916 | ---- | C] () -- C:\Windows\System32\perfd007.dat
[2006.11.02 13:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006.11.02 13:47:37 | 003,790,920 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006.11.02 13:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006.11.02 11:33:01 | 000,607,228 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006.11.02 11:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006.11.02 11:33:01 | 000,108,604 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006.11.02 11:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006.11.02 11:25:44 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
[2006.11.02 11:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006.11.02 09:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006.11.02 09:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006.11.02 08:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006.11.02 08:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2006.09.20 06:34:10 | 000,000,000 | ---- | C] () -- C:\Windows\Buhl.ini
[2006.04.21 10:08:22 | 000,253,952 | ---- | C] () -- C:\Windows\System32\HtmlHelp.dll
[2002.05.16 00:38:40 | 000,091,136 | ---- | C] () -- C:\Windows\System32\mp4fil32.dll
[2002.05.04 14:19:00 | 000,049,152 | ---- | C] () -- C:\Windows\System32\avisynthEx.dll
 
========== LOP Check ==========
 
[2010.09.02 14:30:45 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\AnvSoft
[2010.12.17 15:45:59 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\Audacity
[2007.09.19 17:36:47 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\Azureus
[2007.11.09 18:24:04 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\BullGuard
[2011.02.23 16:57:45 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\Canneverbe Limited
[2010.12.16 10:26:23 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2010.06.21 18:30:30 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\Downloaded Installations
[2011.08.25 08:51:21 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\DVDVideoSoft
[2010.12.18 14:45:28 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\DVDVideoSoftIEHelpers
[2011.10.19 07:29:44 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\elsterformular
[2010.12.17 16:20:28 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\GetRightToGo
[2010.01.24 21:01:42 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\GrabPro
[2007.10.22 17:40:28 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\InterVideo
[2011.11.02 09:44:17 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\KastorFreeVimeoDownloader
[2010.03.17 07:32:51 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\Lexware
[2011.02.17 12:33:54 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\LimeWire
[2007.11.02 17:10:37 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\MAGIX
[2010.03.30 15:36:28 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\MyPhoneExplorer
[2010.06.21 18:42:55 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\Nitro PDF
[2010.01.24 21:32:40 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\Orbit
[2007.11.06 21:48:18 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\PPMate
[2008.02.09 15:59:36 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\ppStream
[2010.09.07 23:54:03 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\Smart PC Solutions
[2010.06.21 17:41:42 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\Smart PDF Converter
[2010.04.21 07:26:16 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\Software4u
[2011.11.22 22:52:33 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\TuneUp Software
[2007.09.06 12:50:20 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\Ulead Systems
[2010.07.01 14:17:28 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\Uniblue
[2011.11.17 20:51:22 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\webex
[2011.08.12 09:30:11 | 000,000,000 | ---D | M] -- C:\Users\utti\AppData\Roaming\WordToPDF
[2011.11.23 17:49:13 | 000,032,530 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
 
========== Purity Check ==========
 
 
 
========== Custom Scans ==========
 
 
< %SYSTEMDRIVE%\*.exe >
 
 
< MD5 for: AGP440.SYS  >
[2008.01.19 08:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_51b95d75\AGP440.sys
[2008.01.19 08:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_f750e484\AGP440.sys
[2008.01.19 08:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6001.18000_none_ba12ed3bbeb0d97a\AGP440.sys
[2008.01.19 08:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6002.18005_none_bbfe6647bbd2a4c6\AGP440.sys
[2006.11.02 10:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\drivers\AGP440.sys
[2006.11.02 10:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_920a2c1f\AGP440.sys
 
< MD5 for: ATAPI.SYS  >
[2009.04.11 07:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\System32\drivers\atapi.sys
[2009.04.11 07:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_b12d8e84\atapi.sys
[2009.04.11 07:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6002.18005_none_df23a1261eab99e8\atapi.sys
[2008.01.19 08:41:30 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_cc18792d\atapi.sys
[2008.01.19 08:41:30 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9c\atapi.sys
[2006.11.02 10:49:36 | 000,019,048 | ---- | M] (Microsoft Corporation) MD5=4F4FCB8B6EA06784FB6D475B7EC7300F -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_c6c2e699\atapi.sys
[2007.04.17 09:30:38 | 000,021,688 | ---- | M] (Microsoft Corporation) MD5=78620BDA3EC87816E5D1FA86F920BC3A -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_c2a1b5ae\atapi.sys
[2007.04.17 09:30:38 | 000,021,688 | ---- | M] (Microsoft Corporation) MD5=78620BDA3EC87816E5D1FA86F920BC3A -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.20518_none_dbd8b4d73d81c9d0\atapi.sys
[2008.02.13 22:17:09 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_7de13c21\atapi.sys
[2008.02.13 22:17:09 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.16632_none_db337a442479c42c\atapi.sys
[2008.02.13 22:17:09 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=E03E8C99D15D0381E02743C36AFC7C6F -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_64dfd8ea\atapi.sys
[2008.02.13 22:17:09 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=E03E8C99D15D0381E02743C36AFC7C6F -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.20757_none_dbac78a93da31a8b\atapi.sys
 
< MD5 for: CNGAUDIT.DLL  >
[2006.11.02 10:46:03 | 000,011,776 | ---- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D -- C:\Windows\System32\cngaudit.dll
[2006.11.02 10:46:03 | 000,011,776 | ---- | M] (Microsoft Corporation) MD5=7F15B4953378C8B5161D65C26D5FED4D -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.0.6000.16386_none_e62d292932a96ce6\cngaudit.dll
 
< MD5 for: IASTOR.SYS  >
[2006.10.31 13:13:46 | 000,495,896 | ---- | M] (Intel Corporation) MD5=81EC16AFD70E3432B8C573782CCFEE6D -- C:\Program Files\Intel\Intel Matrix Storage Manager\Driver64\IaStor.sys
[2006.10.31 12:46:36 | 000,250,368 | ---- | M] (Intel Corporation) MD5=DE01BF14FFB150C779FD561BD0E3C5C5 -- C:\Program Files\Intel\Intel Matrix Storage Manager\Driver\iaStor.sys
[2006.10.31 12:46:36 | 000,250,368 | ---- | M] (Intel Corporation) MD5=DE01BF14FFB150C779FD561BD0E3C5C5 -- C:\Windows\System32\drivers\iaStor.sys
[2006.10.31 12:46:36 | 000,250,368 | ---- | M] (Intel Corporation) MD5=DE01BF14FFB150C779FD561BD0E3C5C5 -- C:\Windows\System32\DriverStore\FileRepository\iaahci.inf_3bb7bc45\iaStor.sys
 
< MD5 for: IASTORV.SYS  >
[2008.01.19 08:42:51 | 000,235,064 | ---- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 -- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_c9df7691\iaStorV.sys
[2008.01.19 08:42:51 | 000,235,064 | ---- | M] (Intel Corporation) MD5=54155EA1B0DF185878E0FC9EC3AC3A14 -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.0.6001.18000_none_af11527887c7fa8f\iaStorV.sys
[2006.11.02 10:51:25 | 000,232,040 | ---- | M] (Intel Corporation) MD5=C957BF4B5D80B46C5017BF0101E6C906 -- C:\Windows\System32\drivers\iaStorV.sys
[2006.11.02 10:51:25 | 000,232,040 | ---- | M] (Intel Corporation) MD5=C957BF4B5D80B46C5017BF0101E6C906 -- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_37cdafa4\iaStorV.sys
 
< MD5 for: NETLOGON.DLL  >
[2006.11.02 10:46:11 | 000,559,616 | ---- | M] (Microsoft Corporation) MD5=889A2C9F2AACCD8F64EF50AC0B3D553B -- C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6000.16386_none_fb80f5473b0ed783\netlogon.dll
[2009.04.11 07:28:23 | 000,592,896 | ---- | M] (Microsoft Corporation) MD5=95DAECF0FB120A7B5DA679CC54E37DDE -- C:\Windows\System32\netlogon.dll
[2009.04.11 07:28:23 | 000,592,896 | ---- | M] (Microsoft Corporation) MD5=95DAECF0FB120A7B5DA679CC54E37DDE -- C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6002.18005_none_ffa3304f351bb3a3\netlogon.dll
[2008.01.19 08:35:36 | 000,592,384 | ---- | M] (Microsoft Corporation) MD5=A8EFC0B6E75B789F7FD3BA5025D4E37F -- C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6001.18000_none_fdb7b74337f9e857\netlogon.dll
 
< MD5 for: NVSTOR.SYS  >
[2006.11.02 10:50:13 | 000,040,040 | ---- | M] (NVIDIA Corporation) MD5=9E0BA19A28C498A6D323D065DB76DFFC -- C:\Windows\System32\drivers\nvstor.sys
[2006.11.02 10:50:13 | 000,040,040 | ---- | M] (NVIDIA Corporation) MD5=9E0BA19A28C498A6D323D065DB76DFFC -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_733654ff\nvstor.sys
[2008.01.19 08:42:09 | 000,045,112 | ---- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_31c3d71d\nvstor.sys
[2008.01.19 08:42:09 | 000,045,112 | ---- | M] (NVIDIA Corporation) MD5=ABED0C09758D1D97DB0042DBB2688177 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.0.6001.18000_none_39dac327befea467\nvstor.sys
 
< MD5 for: SCECLI.DLL  >
[2008.01.19 08:36:19 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=28B84EB538F7E8A0FE8B9299D591E0B9 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6001.18000_none_380de25bd91b6f12\scecli.dll
[2006.11.02 10:46:12 | 000,176,640 | ---- | M] (Microsoft Corporation) MD5=80E2839D05CA5970A86D7BE2A08BFF61 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6000.16386_none_35d7205fdc305e3e\scecli.dll
[2009.04.11 07:28:24 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=8FC182167381E9915651267044105EE1 -- C:\Windows\System32\scecli.dll
[2009.04.11 07:28:24 | 000,177,152 | ---- | M] (Microsoft Corporation) MD5=8FC182167381E9915651267044105EE1 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.0.6002.18005_none_39f95b67d63d3a5e\scecli.dll
 
< MD5 for: USERINIT.EXE  >
[2008.01.19 08:33:33 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows\System32\userinit.exe
[2008.01.19 08:33:33 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.0.6001.18000_none_dc28ba15d1aff80b\userinit.exe
[2006.11.02 10:45:50 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=22027835939F86C3E47AD8E3FBDE3D11 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.0.6000.16386_none_d9f1f819d4c4e737\userinit.exe
 
< MD5 for: WINLOGON.EXE  >
[2009.04.11 07:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\System32\winlogon.exe
[2009.04.11 07:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6002.18005_none_71ae7a22d2134741\winlogon.exe
[2006.11.02 10:45:57 | 000,308,224 | ---- | M] (Microsoft Corporation) MD5=9F75392B9128A91ABAFB044EA350BAAD -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6000.16386_none_6d8c3f1ad8066b21\winlogon.exe
[2008.01.19 08:33:37 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6001.18000_none_6fc30116d4f17bf5\winlogon.exe
 
< MD5 for: WS2_32.DLL  >
[2006.11.02 10:46:14 | 000,178,688 | ---- | M] (Microsoft Corporation) MD5=D99A071C1018BB3D4ABAAD4B62048AC2 -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.0.6000.16386_none_f080eec6d16af4f0\ws2_32.dll
[2008.01.19 08:37:09 | 000,179,200 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\ws2_32.dll
[2008.01.19 08:37:09 | 000,179,200 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.0.6001.18000_none_f2b7b0c2ce5605c4\ws2_32.dll
 
< c:\windows\system32\drivers\*.sys /lockedfiles >
 
< c:\windows\system32\*.dll /lockedfiles >
 
< %systemroot%\*. /mp /s >
 
< %PROGRAMFILES%\*. >
[2007.06.20 13:12:00 | 000,000,000 | ---D | M] -- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[2011.04.12 17:13:30 | 000,000,000 | ---D | M] -- C:\Program Files\Adobe
[2010.12.15 21:16:03 | 000,000,000 | ---D | M] -- C:\Program Files\Adobe Media Player
[2009.07.13 12:14:17 | 000,000,000 | ---D | M] -- C:\Program Files\Akademische Arbeitsgemeinschaft
[2010.12.16 08:39:52 | 000,000,000 | ---D | M] -- C:\Program Files\ALDI Sued Foto Service
[2007.07.11 02:42:23 | 000,000,000 | ---D | M] -- C:\Program Files\ALDI Süd Foto Service
[2010.09.02 14:30:41 | 000,000,000 | ---D | M] -- C:\Program Files\AnvSoft
[2011.06.21 13:24:00 | 000,000,000 | ---D | M] -- C:\Program Files\Apple Software Update
[2010.07.01 15:17:04 | 000,000,000 | ---D | M] -- C:\Program Files\Audacity 1.3 Beta (Unicode)
[2011.07.15 08:42:01 | 000,000,000 | ---D | M] -- C:\Program Files\audiograbber
[2011.10.17 05:55:01 | 000,000,000 | ---D | M] -- C:\Program Files\Avira
[2010.12.17 15:09:16 | 000,000,000 | ---D | M] -- C:\Program Files\AviSynth 2.5
[2010.12.17 10:06:10 | 000,000,000 | ---D | M] -- C:\Program Files\AVS4YOU
[2007.09.19 17:37:31 | 000,000,000 | ---D | M] -- C:\Program Files\Azureus
[2008.11.06 07:40:11 | 000,000,000 | ---D | M] -- C:\Program Files\CCleaner
[2011.03.19 10:36:36 | 000,000,000 | ---D | M] -- C:\Program Files\CDBurnerXP
[2008.11.27 13:12:11 | 000,000,000 | ---D | M] -- C:\Program Files\Cisco Systems
[2011.11.23 10:09:02 | 000,000,000 | ---D | M] -- C:\Program Files\Common Files
[2007.12.04 14:51:04 | 000,000,000 | ---D | M] -- C:\Program Files\Disc2Phone
[2010.09.02 07:29:19 | 000,000,000 | ---D | M] -- C:\Program Files\divx
[2011.03.18 08:19:44 | 000,000,000 | ---D | M] -- C:\Program Files\DVDVideoSoft
[2011.10.19 07:24:22 | 000,000,000 | ---D | M] -- C:\Program Files\ElsterFormular
[2008.12.02 12:31:21 | 000,000,000 | ---D | M] -- C:\Program Files\Erotic-Lounge Manager
[2010.07.01 09:33:00 | 000,000,000 | ---D | M] -- C:\Program Files\Free M4a to MP3 Converter
[2010.06.21 20:03:56 | 000,000,000 | ---D | M] -- C:\Program Files\Free PDF to Word Converter
[2007.09.06 12:42:54 | 000,000,000 | -HSD | M] -- C:\Program Files\Gemeinsame Dateien
[2011.09.27 07:06:15 | 000,000,000 | ---D | M] -- C:\Program Files\Google
[2007.07.16 19:50:27 | 000,000,000 | ---D | M] -- C:\Program Files\GoogleEULA
[2011.09.11 21:29:20 | 000,000,000 | ---D | M] -- C:\Program Files\Grips
[2009.02.10 15:32:33 | 000,000,000 | ---D | M] -- C:\Program Files\gs
[2011.04.12 17:16:42 | 000,000,000 | -H-D | M] -- C:\Program Files\InstallShield Installation Information
[2007.07.03 12:24:55 | 000,000,000 | ---D | M] -- C:\Program Files\Intel
[2011.10.14 07:17:10 | 000,000,000 | ---D | M] -- C:\Program Files\Internet Explorer
[2007.07.09 16:32:04 | 000,000,000 | ---D | M] -- C:\Program Files\InterVideo
[2010.07.01 09:16:35 | 000,000,000 | ---D | M] -- C:\Program Files\iPhone Explorer
[2011.06.21 13:30:14 | 000,000,000 | ---D | M] -- C:\Program Files\iPod
[2009.11.25 09:51:38 | 000,000,000 | ---D | M] -- C:\Program Files\IrfanView
[2011.06.21 13:31:44 | 000,000,000 | ---D | M] -- C:\Program Files\iTunes
[2011.06.15 08:57:01 | 000,000,000 | ---D | M] -- C:\Program Files\Java
[2008.10.20 07:55:23 | 000,000,000 | ---D | M] -- C:\Program Files\JB-lighting
[2011.11.02 09:44:08 | 000,000,000 | ---D | M] -- C:\Program Files\Kastor Free Vimeo Downloader
[2007.07.06 06:12:57 | 000,000,000 | ---D | M] -- C:\Program Files\Launch Manager
[2010.03.16 20:39:20 | 000,000,000 | ---D | M] -- C:\Program Files\Lexware
[2010.12.14 10:58:30 | 000,000,000 | ---D | M] -- C:\Program Files\Macromedia
[2011.11.22 13:23:40 | 000,000,000 | ---D | M] -- C:\Program Files\Malwarebytes' Anti-Malware
[2007.07.06 06:32:02 | 000,000,000 | ---D | M] -- C:\Program Files\Medion
[2006.11.02 13:37:34 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Games
[2011.09.09 07:17:51 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Office
[2011.10.14 07:21:57 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Silverlight
[2007.09.11 07:39:02 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Visual Studio
[2007.09.11 07:35:34 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Visual Studio 8
[2009.10.15 07:07:50 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft Works
[2010.06.26 06:20:40 | 000,000,000 | ---D | M] -- C:\Program Files\Microsoft.NET
[2011.09.09 07:56:00 | 000,000,000 | ---D | M] -- C:\Program Files\Movie Maker
[2011.11.11 11:48:28 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox
[2007.10.04 09:31:16 | 000,000,000 | ---D | M] -- C:\Program Files\MP3Gain
[2007.09.11 07:39:23 | 000,000,000 | ---D | M] -- C:\Program Files\MSBuild
[2008.02.09 15:59:37 | 000,000,000 | ---D | M] -- C:\Program Files\MSN Messenger
[2007.06.19 14:31:45 | 000,000,000 | ---D | M] -- C:\Program Files\MSXML 4.0
[2010.10.25 11:23:47 | 000,000,000 | ---D | M] -- C:\Program Files\MyPhoneExplorer
[2010.01.13 20:03:30 | 000,000,000 | ---D | M] -- C:\Program Files\Müller Foto
[2007.06.20 12:06:49 | 000,000,000 | ---D | M] -- C:\Program Files\Nero
[2011.09.18 11:14:13 | 000,000,000 | ---D | M] -- C:\Program Files\Notation
[2011.06.21 13:27:13 | 000,000,000 | ---D | M] -- C:\Program Files\QuickTime
[2010.03.31 16:18:41 | 000,000,000 | ---D | M] -- C:\Program Files\Real
[2007.06.19 14:22:02 | 000,000,000 | ---D | M] -- C:\Program Files\Realtek
[2007.07.16 19:27:33 | 000,000,000 | ---D | M] -- C:\Program Files\REALTEK RTL8187B Wireless LAN Driver
[2006.11.02 13:37:34 | 000,000,000 | ---D | M] -- C:\Program Files\Reference Assemblies
[2007.06.20 12:39:32 | 000,000,000 | ---D | M] -- C:\Program Files\Sceneo
[2010.12.17 12:13:47 | 000,000,000 | R--D | M] -- C:\Program Files\Skype
[2010.06.21 18:25:31 | 000,000,000 | ---D | M] -- C:\Program Files\Smart PDF Converter
[2010.07.01 09:17:42 | 000,000,000 | ---D | M] -- C:\Program Files\Software4u
[2007.06.20 12:42:35 | 000,000,000 | ---D | M] -- C:\Program Files\Sonavis
[2009.11.03 12:14:39 | 000,000,000 | ---D | M] -- C:\Program Files\SopCast
[2008.03.01 16:46:59 | 000,000,000 | ---D | M] -- C:\Program Files\SopCast_204[1]
[2010.01.13 19:45:18 | 000,000,000 | ---D | M] -- C:\Program Files\Spybot - Search & Destroy
[2007.07.14 10:34:30 | 000,000,000 | ---D | M] -- C:\Program Files\SUYIN
[2007.07.12 03:57:45 | 000,000,000 | ---D | M] -- C:\Program Files\Suyin OPTO
[2007.06.19 14:26:31 | 000,000,000 | ---D | M] -- C:\Program Files\Synaptics
[2007.09.19 12:14:14 | 000,000,000 | ---D | M] -- C:\Program Files\SystemRequirementsLab
[2010.09.02 15:38:53 | 000,000,000 | ---D | M] -- C:\Program Files\Total Video Converter
[2011.11.22 22:52:56 | 000,000,000 | ---D | M] -- C:\Program Files\TuneUp Utilities 2012
[2007.07.09 16:28:40 | 000,000,000 | ---D | M] -- C:\Program Files\Ulead Systems
[2006.11.02 14:01:55 | 000,000,000 | -H-D | M] -- C:\Program Files\Uninstall Information
[2010.09.28 20:56:01 | 000,000,000 | ---D | M] -- C:\Program Files\Veetle
[2010.01.24 22:03:38 | 000,000,000 | ---D | M] -- C:\Program Files\VideoLAN
[2008.05.07 23:16:42 | 000,000,000 | ---D | M] -- C:\Program Files\Videoload Manager
[2011.09.09 07:56:01 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Calendar
[2011.09.09 07:55:59 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Collaboration
[2011.09.09 07:55:54 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Defender
[2011.09.09 07:55:59 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Journal
[2011.11.09 11:39:11 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Mail
[2011.09.09 07:55:59 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media Player
[2007.06.20 12:25:42 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Media-Komponenten
[2007.09.06 12:42:54 | 000,000,000 | ---D | M] -- C:\Program Files\Windows NT
[2011.09.09 07:55:59 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Photo Gallery
[2011.09.10 11:02:17 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Portable Devices
[2011.11.22 22:53:09 | 000,000,000 | ---D | M] -- C:\Program Files\Windows Sidebar
[2010.12.13 18:35:24 | 000,000,000 | ---D | M] -- C:\Program Files\WinZip
[2008.08.26 09:09:31 | 000,000,000 | ---D | M] -- C:\Program Files\WMA-MP3.com
[2011.03.02 18:27:01 | 000,000,000 | ---D | M] -- C:\Program Files\WordToPDF
 
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2011-11-22 07:12:54

< End of report >
         
--- --- ---

Alt 23.11.2011, 21:14   #23
Chris4You
 
100 Tan Trojaner - Standard

100 Tan Trojaner



Hi,

sieht besser aus, hat SAS was gefunden?


Bitte folgende Files prüfen:

Dateien Online überprüfen lassen:
  • Suche die Seite Virtustotal auf, klicke auf den Button „Durchsuchen“
    und suche folgende Datei/Dateien:
Code:
ATTFilter
C:\Windows\System32\csnp2uvc.dll
         
  • Lade nun nacheinander jede/alle Datei/Dateien hoch, und warte bis der Scan vorbei ist. (kann bis zu 2 Minuten dauern.)
  • Poste im Anschluss das Ergebnis der Auswertung, alles abkopieren und in einen Beitrag einfügen.
  • Wichtig: Auch die Größenangabe sowie den HASH mit kopieren!

chris
__________________
Don't bring me down
Vor dem posten beachten!
Spenden
(Wer spenden will, kann sich gerne melden )

Alt 23.11.2011, 22:21   #24
uttella
 
100 Tan Trojaner - Standard

100 Tan Trojaner



SUPERAntiSpyware Scan Log
SUPERAntiSpyware.com | Remove Malware | Remove Spyware - AntiMalware, AntiSpyware, AntiAdware!

Generated 11/23/2011 at 10:13 PM

Application Version : 5.0.1136

Core Rules Database Version : 7980
Trace Rules Database Version: 5792

Scan type : Complete Scan
Total Scan Time : 02:21:38

Operating System Information
Windows Vista Home Premium 32-bit, Service Pack 2 (Build 6.00.6002)
UAC On - Limited User (Administrator User)

Memory items scanned : 825
Memory threats detected : 0
Registry items scanned : 39492
Registry threats detected : 0
File items scanned : 183346
File threats detected : 565

Adware.Tracking Cookie
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@e-2dj6wdkoaoczeao.stats.esomniture[1].txt [ Cookie:madmax@e-2dj6wdkoaoczeao.stats.esomniture.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@invitemedia[1].txt [ Cookie:madmax@invitemedia.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@ad.zanox[1].txt [ Cookie:madmax@ad.zanox.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@content.yieldmanager[2].txt [ Cookie:madmax@content.yieldmanager.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@tradedoubler[1].txt [ Cookie:madmax@tradedoubler.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@overture[1].txt [ Cookie:madmax@overture.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@zanox[1].txt [ Cookie:madmax@zanox.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@apmebf[2].txt [ Cookie:madmax@apmebf.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@tracking.hannoversche[1].txt [ Cookie:madmax@tracking.hannoversche.de/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@de.sitestat[1].txt [ Cookie:madmax@de.sitestat.com/is24/is24/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@adviva[1].txt [ Cookie:madmax@adviva.net/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@xiti[1].txt [ Cookie:madmax@xiti.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@doubleclick[1].txt [ Cookie:madmax@doubleclick.net/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@traffictrack[2].txt [ Cookie:madmax@traffictrack.de/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@zanox-affiliate[1].txt [ Cookie:madmax@zanox-affiliate.de/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@cdn5.specificclick[2].txt [ Cookie:madmax@cdn5.specificclick.net/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@content.yieldmanager[3].txt [ Cookie:madmax@content.yieldmanager.com/ak/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@adfarm1.adition[1].txt [ Cookie:madmax@adfarm1.adition.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@e-2dj6wmlikldjigp.stats.esomniture[1].txt [ Cookie:madmax@e-2dj6wmlikldjigp.stats.esomniture.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@ad2.adfarm1.adition[1].txt [ Cookie:madmax@ad2.adfarm1.adition.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@2o7[1].txt [ Cookie:madmax@2o7.net/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@e-2dj6whmiolazelp.stats.esomniture[2].txt [ Cookie:madmax@e-2dj6whmiolazelp.stats.esomniture.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@trackmatics[2].txt [ Cookie:madmax@trackmatics.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@e-2dj6wgkycmajagp.stats.esomniture[2].txt [ Cookie:madmax@e-2dj6wgkycmajagp.stats.esomniture.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@www.etracker[1].txt [ Cookie:madmax@www.etracker.de/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@webmasterplan[2].txt [ Cookie:madmax@webmasterplan.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@tracking.quisma[1].txt [ Cookie:madmax@tracking.quisma.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@mediaplex[1].txt [ Cookie:madmax@mediaplex.com/ ]
C:\USERS\MADMAX\AppData\Roaming\Microsoft\Windows\Cookies\Low\madmax@e-2dj6wmliepazmlp.stats.esomniture[2].txt [ Cookie:madmax@e-2dj6wmliepazmlp.stats.esomniture.com/ ]
C:\USERS\MADMAX\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MADMAX@AD.YIELDMANAGER[2].TXT [ /AD.YIELDMANAGER ]
C:\USERS\MADMAX\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MADMAX@WWW.ZANOX-AFFILIATE[1].TXT [ /WWW.ZANOX-AFFILIATE ]
C:\USERS\MADMAX\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MADMAX@AD.BOREUS[2].TXT [ /AD.BOREUS ]
C:\USERS\MADMAX\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MADMAX@ADS.PUBMATIC[1].TXT [ /ADS.PUBMATIC ]
C:\USERS\MADMAX\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MADMAX@ATDMT[1].TXT [ /ATDMT ]
C:\USERS\MADMAX\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MADMAX@UNITYMEDIA[1].TXT [ /UNITYMEDIA ]
C:\USERS\MADMAX\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MADMAX@ADS.IMMOBILIENSCOUT24[1].TXT [ /ADS.IMMOBILIENSCOUT24 ]
C:\USERS\MADMAX\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MADMAX@E-2DJ6WNLOUOD5SDO.STATS.ESOMNITURE[2].TXT [ /E-2DJ6WNLOUOD5SDO.STATS.ESOMNITURE ]
C:\USERS\MADMAX\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MADMAX@SPECIFICCLICK[1].TXT [ /SPECIFICCLICK ]
de.sitestat.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.tradedoubler.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.tradedoubler.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.tradedoubler.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.traffictrack.de [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.traffictrack.de [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.zanox.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
ad.zanox.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
www.zanox-affiliate.de [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.zanox-affiliate.de [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
Google [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
Google [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
ad1.adfarm1.adition.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
etracker Home - forget log-file analysis, this is real-time Web Analytics and online market research [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
etracker Home - forget log-file analysis, this is real-time Web Analytics and online market research [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
Google [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.ad.adnet.de [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.ad.adnet.de [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
etracker Home - forget log-file analysis, this is real-time Web Analytics and online market research [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
etracker Home - forget log-file analysis, this is real-time Web Analytics and online market research [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
ad2.adfarm1.adition.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.atdmt.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.atdmt.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.mediaplex.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
.mediaplex.com [ C:\USERS\MADMAX\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZHIP3ZJ4.DEFAULT\COOKIES.SQLITE ]
eas.apm.emediate.eu [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adultfriendfinder.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adultfriendfinder.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.rambler.ru [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
adserver.71i.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad1.emediate.dk [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.247realmedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.trackmatics.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.xiti.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.paypal.112.2o7.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.guj.122.2o7.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.112.2o7.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.fastclick.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.mediaplex.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.specificclick.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.specificclick.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.specificclick.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.specificclick.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adviva.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.specificclick.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.specificclick.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.traffictrack.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ad.adnet.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.adition.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
stat.dealtime.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ads.quartermedia.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.partypoker.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
de.sitestat.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
de.sitestat.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
rts.pgmediaserve.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.partypoker.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
de.partypoker.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.fastclick.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ads.quartermedia.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.imrworldwide.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.imrworldwide.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.xm.xtendmedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.sexpartnerclub.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
Sexkontakte - Sextreffen - Seitensprung - sexpartnerclub [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
track.effiliation.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.specificclick.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
Free Porn Videos & Sex Movies - Porno, XXX, Porn Tube and Pussy Porn [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
Free Porn Videos & Sex Movies - Porno, XXX, Porn Tube and Pussy Porn [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adxpansion.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.gostats.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
rgadvert.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.vinvest.122.2o7.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
Sexkontakte - Sextreffen - Seitensprung - sexpartnerclub [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.sexkino.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.sexkino.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.stepstone.112.2o7.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.yieldmanager.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adviva.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
tracking.gameforge.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
media.gan-online.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.trafficrevenue.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.traffictrack.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
adserver2.clipkit.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
de.sitestat.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.uk.doubleclick.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
track.effiliation.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.a.revenuemax.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ad.adnet.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.sevenoneintermedia.112.2o7.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
adserver.hostsuche.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ads5.wwe.biz [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
tracking.oe24.at [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.e-2dj6wnmychdjilo.stats.esomniture.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.eyewonder.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
pornit.org [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
pornit.org [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
pornit.org [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
pornit.org [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
pornit.org [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
pornit.org [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
pornit.org [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
pornit.org [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
pornit.org [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.pornit.org [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.tgppornos.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.xxx-sharestation.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.porn-reactor.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.youporn-deutsch.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
spenden.wikimedia.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.pornme.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.pornme.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.goldporntube.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.longporntube.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.bonusporntube.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.alphaporno.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
maturesexwhores.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.server.cpmstar.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
"+title+" [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
"+title+" [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webstats4u.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adserver.adtechus.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtechus.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.xmedia.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.cyonix.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.cyonix.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webstats4u.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
streamxxx.org [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
Meet Singles | Sex Toys | Fetish Personals | Free Porn at Streamxxx.org [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
xxx-blog.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.xxx-blog.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
stats.mpcnet.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.trafficmp.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
zbox.zanox.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.e-2dj6wnmiqkc5slp.stats.esomniture.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adxpose.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.shopping.112.2o7.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
media.gan-online.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.advert-layer.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.cdate.122.2o7.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
fl01.ct2.comclick.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
fl01.ct2.comclick.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
fl01.ct2.comclick.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.zieltrack.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
clicks.pangora.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.sportdiscount.biz [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
dfb.stats.yum.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.sexarena.tv [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
adserver.bfv.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.tracking.alternads.info [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.tracking.alternads.info [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.playporn.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.playporn.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
playporn.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.pornkino.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.pornkino.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.pornoeye.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.pornoeye.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.userporn.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.userporn.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
playporn.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
playporn.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
playporn.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ad.yieldmanager.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ad.yieldmanager.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
playporn.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
playporn.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
pornshare.biz [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.gostats.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.porn-reactor.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.Porn-Reactor.Net - Free Porn Amateur Porn Movies Clips Pictures Rapidshare downloads [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.xxx-sharestation.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.XXX-Sharestation - Free XXX Amateur Hardcore Porn Movies Clips Rapidshare downloads [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.hidefporn.ws [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.hidefporn.ws [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.hotlog.ru [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
playporn.to [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.premiumtv.122.2o7.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.pornme.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.traffichaus.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
img-cdn.mediaplex.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
de.sitestat.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.e-2dj6wfkogkdjclo.stats.esomniture.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.atdmt.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ads.247activemedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
adsrv1.admediate.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.nextag.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.nextag.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.nextag.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
secure.img-cdn.mediaplex.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
openx.motomedia.nl [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.e-2dj6wjmyejcpchq.stats.esomniture.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.e-2dj6aelowkd5gfp.stats.esomniture.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
beacons.hottraffic.nl [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
de.sitestat.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.cewecolor.112.2o7.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
Amateur Porno Videos direkt von echten Amateuren. Filme, Telefonsex, Privatnachrichten und LiveCams [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
tracking.sim-technik.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.liveperson.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.media-control.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.media-control.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.getclicky.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.static.getclicky.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
in.getclicky.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
de.sitestat.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.e-2dj6wgkikiazgko.stats.esomniture.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.countomat.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
adserver.bfv.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.stats.paypal.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.eyewonder.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
banner.testberichte.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
de.sitestat.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ads.mediaflite.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.fuckshow.org [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.fuckshow.org [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
Sexcams auf Fuckshow.org - Deine Erotik Community ! - Sexcam - Pornos - Sexvideos... [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
Sexcams auf Fuckshow.org - Deine Erotik Community ! - Sexcam - Pornos - Sexvideos... [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.accounts.google.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.accounts.google.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
accounts.google.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
adserver.anschlusstor.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.hogagastro-discount.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.hogagastro-discount.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.kontera.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
adserver.yopi.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
adx.chip.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
adserver.ip-phone-forum.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.adserver01.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
de.sitestat.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.atdmt.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.overture.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.overture.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
eas4.emediate.eu [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ero-advertising.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.mediaplex.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ad.adnet.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.mediaplex.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.insightexpressai.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ru4.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ads.adxvalue.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ads.adxvalue.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ads.adxvalue.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ads.adxvalue.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
www.zanox-affiliate.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
eas.apm.emediate.eu [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.azjmp.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.trafficmp.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.trafficmp.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.amazon-adsystem.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.amazon-adsystem.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
eas.apm.emediate.eu [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.weborama.fr [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.groupecarmignac.solution.weborama.fr [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.groupecarmignac.solution.weborama.fr [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.groupecarmignac.solution.weborama.fr [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.groupecarmignac.solution.weborama.fr [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.tracking.quisma.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.statcounter.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.tradedoubler.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.tradedoubler.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
track.adform.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ibanner.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ad.adnet.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
track.adform.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adform.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.pro-market.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.pro-market.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
eas.apm.emediate.eu [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.partypoker.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.partypoker.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.de.partypoker.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.partypoker.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.lucidmedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.tracking.mindshare.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.tracking.quisma.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.atdmt.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.atdmt.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
TLDAdserv.com - Ihr Partner für seriöse Auszahlungen [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
media.campartner.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
media.campartner.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
media.campartner.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
media.campartner.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.bs.serving-sys.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ru4.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adviva.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
stats.crsend.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
stats.crsend.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
stats.crsend.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ads.audience2media.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ads.audience2media.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.audience2media.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.dyntracker.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.tracking.quisma.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.questionmarket.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.questionmarket.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.tradedoubler.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
adserver.bfv.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
adserver.bfv.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.tracking.quisma.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.im.banner.t-online.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adultadworld.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adultadworld.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adultadworld.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adultadworld.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.sexad.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
etracker Home - forget log-file analysis, this is real-time Web Analytics and online market research [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
etracker Home - forget log-file analysis, this is real-time Web Analytics and online market research [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.bs.serving-sys.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
Google [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.clickfuse.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.BurstMedia [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
partners.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.fastclick.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
etracker Home - forget log-file analysis, this is real-time Web Analytics and online market research [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
etracker Home - forget log-file analysis, this is real-time Web Analytics and online market research [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
statse.webtrendslive.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.liveperson.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
de.sitestat.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
Google [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
UseNeXT | In vollem DSL-Speed aus dem Usenet downloaden! [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad1.adfarm1.adition.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.im.banner.t-online.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
rts.pgmediaserve.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
rts.pgmediaserve.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
rts.pgmediaserve.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.partypoker.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.partypoker.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.partypoker.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.partypoker.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
adfarm1.adition.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
www.zanox-affiliate.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.zanox.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.zanox.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.dyntracker.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
Free Porn Videos & Sex Movies - Porno, XXX, Porn Tube and Pussy Porn [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.pornhub.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
Free Porn Videos & Sex Movies - Porno, XXX, Porn Tube and Pussy Porn [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.pornhub.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.pornhub.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ads.crakmedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.youporn.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.youporn.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.youporn.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
Porn Videos, Sex, XXX, Free Porn - YouPorn [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.exoclick.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ads.crakmedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ads.crakmedia.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.youporn.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.youporn.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ads.trafficjunky.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.rambler.ru [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.yadro.ru [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.im.banner.t-online.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
eas.apm.emediate.eu [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.im.banner.t-online.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad4.adfarm1.adition.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad3.adfarm1.adition.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.zanox.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.tradedoubler.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.tradedoubler.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.tradedoubler.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.zanox-affiliate.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.traffictrack.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.hightraffic.hugoboss.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.hightraffic.hugoboss.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.hightraffic.hugoboss.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.im.banner.t-online.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ww251.smartadserver.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.im.banner.t-online.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ads.quartermedia.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.ads.quartermedia.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.mediaplex.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.im.banner.t-online.de [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.kaspersky.122.2o7.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad1.emediate.dk [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad1.emediate.dk [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.counter.sexsuche.tv [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
counter2.sexmoney.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.adition.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad.adition.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]
ad2.adfarm1.adition.com [ C:\USERS\UTTI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\38RJUA60.DEFAULT\COOKIES.SQLITE ]

Trojan.Agent/Gen-Bancos
C:\PROGRAM FILES\SCENEO\BONAVISTA\BDSUPDATE.DLL

Alt 23.11.2011, 22:23   #25
uttella
 
100 Tan Trojaner - Standard

100 Tan Trojaner



SUPERAntiSpyware Scan Log fand 565 verdächtige dateien.

Hab alle gelöscht

Alt 23.11.2011, 22:32   #26
uttella
 
100 Tan Trojaner - Standard

100 Tan Trojaner



File name:
AEF2FC7D804F986FE0C7004FF2D91D0087DADA96.sys
Submission date:
2011-11-06 18:29:38 (UTC)
Current status:
finished
Result:
0 /42 (0.0%)

VT Community

goodware
Safety score: 95.6%
Compact
Print results
Antivirus Version Last Update Result
AhnLab-V3 2011.11.05.02 2011.11.06 -
AntiVir 7.11.17.28 2011.11.06 -
Antiy-AVL 2.0.3.7 2011.11.06 -
Avast 6.0.1289.0 2011.11.06 -
AVG 10.0.0.1190 2011.11.06 -
BitDefender 7.2 2011.11.06 -
ByteHero 1.0.0.1 2011.11.04 -
CAT-QuickHeal 11.00 2011.11.06 -
ClamAV 0.97.3.0 2011.11.06 -
Commtouch 5.3.2.6 2011.11.06 -
Comodo 10688 2011.11.06 -
DrWeb 5.0.2.03300 2011.11.06 -
Emsisoft 5.1.0.11 2011.11.06 -
eTrust-Vet 36.1.8657 2011.11.05 -
F-Prot 4.6.5.141 2011.11.06 -
F-Secure 9.0.16440.0 2011.11.06 -
Fortinet 4.3.370.0 2011.11.06 -
GData 22 2011.11.06 -
Ikarus T3.1.1.107.0 2011.11.06 -
Jiangmin 13.0.900 2011.11.06 -
K7AntiVirus 9.117.5398 2011.11.05 -
Kaspersky 9.0.0.837 2011.11.06 -
McAfee 5.400.0.1158 2011.11.06 -
McAfee-GW-Edition 2010.1D 2011.11.06 -
Microsoft 1.7801 2011.11.06 -
NOD32 6605 2011.11.06 -
Norman 6.07.13 2011.11.06 -
nProtect 2011-11-06.01 2011.11.06 -
Panda 10.0.3.5 2011.11.06 -
PCTools 8.0.0.5 2011.11.06 -
Prevx 3.0 2011.11.06 -
Rising 23.82.02.02 2011.11.02 -
Sophos 4.71.0 2011.11.06 -
SUPERAntiSpyware 4.40.0.1006 2011.11.05 -
Symantec 20111.2.0.82 2011.11.06 -
TheHacker 6.7.0.1.338 2011.11.06 -
TrendMicro 9.500.0.1008 2011.11.06 -
TrendMicro-HouseCall 9.500.0.1008 2011.11.06 -
VBA32 3.12.16.4 2011.11.04 -
VIPRE 10981 2011.11.06 -
ViRobot 2011.11.5.4757 2011.11.06 -
VirusBuster 14.1.49.0 2011.11.06 -
Additional information
MD5 : b31b4588e4086d8d84adbf9845c2402b
SHA1 : a466a835e645163135d78da365d05960fa2cbb19
SHA256: 0b45979623b0ac774a9426c428954e7fb604fae0db187c402af6052906f4099a

Alt 23.11.2011, 22:33   #27
uttella
 
100 Tan Trojaner - Standard

100 Tan Trojaner



File name:
Trojan.BAT.Erro
Submission date:
2010-02-08 03:50:35 (UTC)
Current status:
finished
Result:
27 /40 (67.5%)

VT Community

not reviewed
Safety score: -
Compact
Print results
Antivirus Version Last Update Result
a-squared 4.5.0.50 2010.02.08 Trojan.BAT.Erro!IK
AhnLab-V3 5.0.0.2 2010.02.08 -
AntiVir 7.9.1.160 2010.02.07 TR/Windows-Destoyer
Antiy-AVL 2.0.3.7 2010.02.05 Trojan/BAT.BAT
Authentium 5.2.0.5 2010.02.07 Trojan!1897
Avast 4.8.1351.0 2010.02.08 BV:Erro-B
AVG 9.0.0.730 2010.02.07 Generic_c.BOAE
BitDefender 7.2 2010.02.08 Trojan.BAT.ERRO.A
CAT-QuickHeal 10.00 2010.02.06 -
ClamAV 0.96.0.0-git 2010.02.08 Trojan.Bat.Erro
Comodo 3857 2010.02.08 TrojWare.Win32.Trojan.Erro
DrWeb 5.0.1.12222 2010.02.08 Trojan.Deltree.1745
eSafe 7.0.17.0 2010.02.07 Win32.BAT.Erro
eTrust-Vet 35.2.7286 2010.02.05 -
F-Prot 4.5.1.85 2010.02.07 Trojan!1897
F-Secure 9.0.15370.0 2010.02.08 Trojan.BAT.ERRO.A
Fortinet 4.0.14.0 2010.02.08 BAT/Erro.A!tr
GData 19 2010.02.08 Trojan.BAT.ERRO.A
Ikarus T3.1.1.80.0 2010.02.08 Trojan.BAT.Erro
Jiangmin 13.0.900 2010.02.07 -
K7AntiVirus 7.10.968 2010.02.06 -
Kaspersky 7.0.0.125 2010.02.08 Trojan.BAT.Erro
McAfee 5885 2010.02.07 QDel153
McAfee+Artemis 5885 2010.02.07 QDel153
McAfee-GW-Edition 6.8.5 2010.02.07 Trojan.Windows-Destoyer
Microsoft 1.5406 2010.02.07 Trojan:BAT/Erro
NOD32 4845 2010.02.07 -
Norman 6.04.03 2010.02.07 -
nProtect 2009.1.8.0 2010.02.07 -
Panda 10.0.2.2 2010.02.07 Trj/Destroy
PCTools 7.0.3.5 2010.02.07 Trojan.Generic
Prevx 3.0 2010.02.08 -
Rising 22.34.00.01 2010.02.08 Trojan.BAT.Erro
Sophos 4.50.0 2010.02.08 Troj/Erro
Sunbelt 3.2.1858.2 2010.02.07 -
TheHacker 6.5.1.1.183 2010.02.08 -
TrendMicro 9.120.0.1004 2010.02.08 TROJ_WENDEL
VBA32 3.12.12.1 2010.02.05 Trojan.BAT.Erro
ViRobot 2010.2.5.2174 2010.02.05 -
VirusBuster 5.0.21.0 2010.02.07 -
Additional information
MD5 : 83d0a4ef71406fce0fcd1924f70c8600
SHA1 : 70b843aa065cdcd33263f8bb7e55be84a409734a
SHA256: 6f064269a7b26cd0dc01886965f00a2f88f50ad4abb1c3b396f728d82693cc4d

Alt 23.11.2011, 22:34   #28
uttella
 
100 Tan Trojaner - Standard

100 Tan Trojaner



File name:
11de907d66546c9255dbc585d56fb3f24aa54fb5
Submission date:
2011-11-01 09:49:46 (UTC)
Current status:
finished
Result:
0 /43 (0.0%)

VT Community

goodware
Safety score: 100.0%
Compact
Print results
Antivirus Version Last Update Result
AhnLab-V3 2011.10.31.00 2011.10.31 -
AntiVir 7.11.16.231 2011.11.01 -
Antiy-AVL 2.0.3.7 2011.11.01 -
Avast 6.0.1289.0 2011.11.01 -
AVG 10.0.0.1190 2011.11.01 -
BitDefender 7.2 2011.11.01 -
ByteHero 1.0.0.1 2011.09.23 -
CAT-QuickHeal 11.00 2011.11.01 -
ClamAV 0.97.3.0 2011.11.01 -
Commtouch 5.3.2.6 2011.11.01 -
Comodo 10627 2011.11.01 -
DrWeb 5.0.2.03300 2011.11.01 -
Emsisoft 5.1.0.11 2011.11.01 -
eSafe 7.0.17.0 2011.10.30 -
eTrust-Vet 36.1.8650 2011.11.01 -
F-Prot 4.6.5.141 2011.11.01 -
F-Secure 9.0.16440.0 2011.11.01 -
Fortinet 4.3.370.0 2011.11.01 -
GData 22 2011.11.01 -
Ikarus T3.1.1.107.0 2011.11.01 -
Jiangmin 13.0.900 2011.10.31 -
K7AntiVirus 9.116.5364 2011.10.31 -
Kaspersky 9.0.0.837 2011.11.01 -
McAfee 5.400.0.1158 2011.11.01 -
McAfee-GW-Edition 2010.1D 2011.10.31 -
Microsoft 1.7801 2011.11.01 -
NOD32 6591 2011.11.01 -
Norman 6.07.13 2011.10.31 -
nProtect 2011-11-01.01 2011.11.01 -
Panda 10.0.3.5 2011.10.31 -
PCTools 8.0.0.5 2011.11.01 -
Prevx 3.0 2011.11.01 -
Rising 23.82.01.02 2011.11.01 -
Sophos 4.70.0 2011.11.01 -
SUPERAntiSpyware 4.40.0.1006 2011.11.01 -
Symantec 20111.2.0.82 2011.11.01 -
TheHacker 6.7.0.1.336 2011.10.31 -
TrendMicro 9.500.0.1008 2011.11.01 -
TrendMicro-HouseCall 9.500.0.1008 2011.11.01 -
VBA32 3.12.16.4 2011.10.25 -
VIPRE 10933 2011.11.01 -
ViRobot 2011.11.1.4749 2011.11.01 -
VirusBuster 14.1.39.0 2011.10.31 -
Additional information
MD5 : 39e9aacc4c5fb3c3c0b12de6d491553d
SHA1 : 11de907d66546c9255dbc585d56fb3f24aa54fb5
SHA256: dbec3da68ea60467ce1e4ef2a556ac528c525be8ca0cdf58a845def8e2c6956d

Alt 23.11.2011, 22:34   #29
uttella
 
100 Tan Trojaner - Standard

100 Tan Trojaner



File name:
Activador windows xp & windows server.EXE
Submission date:
2011-11-22 12:42:37 (UTC)
Current status:
finished
Result:
9 /43 (20.9%)

VT Community

not reviewed
Safety score: -
Compact
Print results
Antivirus Version Last Update Result
AhnLab-V3 2011.11.21.00 2011.11.21 -
AntiVir 7.11.18.0 2011.11.22 -
Antiy-AVL 2.0.3.7 2011.11.22 -
Avast 6.0.1289.0 2011.11.22 -
AVG 10.0.0.1190 2011.11.22 -
BitDefender 7.2 2011.11.22 -
ByteHero 1.0.0.1 2011.11.14 -
CAT-QuickHeal 12.00 2011.11.22 -
ClamAV 0.97.3.0 2011.11.22 Trojan.Agent-26117
Commtouch 5.3.2.6 2011.11.22 W32/MalwareF.GITZ
Comodo 10781 2011.11.22 -
DrWeb 5.0.2.03300 2011.11.22 -
Emsisoft 5.1.0.11 2011.11.22 Riskware.Activator.Windows!IK
eSafe 7.0.17.0 2011.11.20 Win32.NewMalware.hi
eTrust-Vet 37.0.9581 2011.11.22 -
F-Prot 4.6.5.141 2011.11.22 W32/MalwareF.GITZ
F-Secure 9.0.16440.0 2011.11.22 -
Fortinet 4.3.370.0 2011.11.22 -
GData 22 2011.11.22 -
Ikarus T3.1.1.109.0 2011.11.22 not-a-virus.Activator.Windows
Jiangmin 13.0.900 2011.11.22 -
K7AntiVirus 9.119.5508 2011.11.21 Riskware
Kaspersky 9.0.0.837 2011.11.22 -
McAfee 5.400.0.1158 2011.11.22 -
McAfee-GW-Edition 2010.1D 2011.11.22 -
Microsoft 1.7801 2011.11.22 -
NOD32 6650 2011.11.22 -
Norman 6.07.13 2011.11.21 W32/Suspicious_Gen2.QOTGJ
nProtect 2011-11-22.01 2011.11.22 -
Panda 10.0.3.5 2011.11.21 -
PCTools 8.0.0.5 2011.11.22 -
Prevx 3.0 2011.11.22 -
Rising 23.85.01.02 2011.11.22 -
Sophos 4.71.0 2011.11.22 -
SUPERAntiSpyware 4.40.0.1006 2011.11.22 -
Symantec 20111.2.0.82 2011.11.22 -
TheHacker 6.7.0.1.346 2011.11.22 -
TrendMicro 9.500.0.1008 2011.11.22 -
TrendMicro-HouseCall 9.500.0.1008 2011.11.22 -
VBA32 3.12.16.4 2011.11.22 -
VIPRE 11115 2011.11.22 Trojan.Win32.Generic!BT
ViRobot 2011.11.22.4787 2011.11.22 -
VirusBuster 14.1.76.0 2011.11.21 -
Additional information
MD5 : f0d267d6025187615d0cd6e254531747
SHA1 : 8d668f9e872390cae5eb175e8e6058411e433a58
SHA256: a8973dff9599c80d51353bd1fbeb90d4c6778dcf6a50321d6d3a6b35a20b65b8

Alt 23.11.2011, 22:35   #30
uttella
 
100 Tan Trojaner - Standard

100 Tan Trojaner



File name:
smona132197320979623114412
Submission date:
2011-11-22 14:48:48 (UTC)
Current status:
finished
Result:
16 /43 (37.2%)

VT Community

goodware
Safety score: 99.9%
Compact
Print results
Antivirus Version Last Update Result
AhnLab-V3 2011.11.21.00 2011.11.21 -
AntiVir 7.11.18.4 2011.11.22 SPR/Tool.Keygen.227
Antiy-AVL 2.0.3.7 2011.11.22 Worm/Win32.AutoRun.gen
Avast 6.0.1289.0 2011.11.22 -
AVG 10.0.0.1190 2011.11.22 Generic3_c.AJJD
BitDefender 7.2 2011.11.22 -
ByteHero 1.0.0.1 2011.11.14 -
CAT-QuickHeal 12.00 2011.11.22 -
ClamAV 0.97.3.0 2011.11.22 -
Commtouch 5.3.2.6 2011.11.22 W32/MalwareF.XOMA
Comodo 10781 2011.11.22 -
DrWeb 5.0.2.03300 2011.11.22 -
Emsisoft 5.1.0.11 2011.11.22 Riskware.Hacktool.Windows!IK
eSafe 7.0.17.0 2011.11.22 -
eTrust-Vet 37.0.9581 2011.11.22 -
F-Prot 4.6.5.141 2011.11.22 W32/MalwareF.XOMA
F-Secure 9.0.16440.0 2011.11.22 -
Fortinet 4.3.370.0 2011.11.22 -
GData 22 2011.11.22 -
Ikarus T3.1.1.109.0 2011.11.22 not-a-virus.Hacktool.Windows
Jiangmin 13.0.900 2011.11.22 -
K7AntiVirus 9.119.5508 2011.11.21 Riskware
Kaspersky 9.0.0.837 2011.11.22 -
McAfee 5.400.0.1158 2011.11.22 Artemis!DD4BA2D1B33E
McAfee-GW-Edition 2010.1D 2011.11.22 Artemis!DD4BA2D1B33E
Microsoft 1.7801 2011.11.22 HackTool:Win32/Keygen
NOD32 6651 2011.11.22 -
Norman 6.07.13 2011.11.21 -
nProtect 2011-11-22.01 2011.11.22 -
Panda 10.0.3.5 2011.11.21 -
PCTools 8.0.0.5 2011.11.22 -
Prevx 3.0 2011.11.22 -
Rising 23.85.01.02 2011.11.22 -
Sophos 4.71.0 2011.11.22 -
SUPERAntiSpyware 4.40.0.1006 2011.11.22 -
Symantec 20111.2.0.82 2011.11.22 -
TheHacker 6.7.0.1.346 2011.11.22 -
TrendMicro 9.500.0.1008 2011.11.22 HKTL_KEYGEN
TrendMicro-HouseCall 9.500.0.1008 2011.11.22 HKTL_KEYGEN
VBA32 3.12.16.4 2011.11.22 Trojan.Agent2.empn
VIPRE 11116 2011.11.22 Trojan.Win32.Generic.pak!cobra
ViRobot 2011.11.22.4787 2011.11.22 Not_a_virus:HackTool.Keygen.3195511
VirusBuster 14.1.77.0 2011.11.22 -
Additional information
MD5 : dd4ba2d1b33e1e6d45ef343d1bfd7659
SHA1 : 11471d2dfd15e32c9881f97c4e3d6b61bde6b5b1
SHA256: cefd5c80b4e91860223da37664ea4cab5b6ee423b1f2e9b844fe52b18d2a9890

Antwort

Themen zu 100 Tan Trojaner
0x00000001, 100 tan, acroiehelpe.dll, aufsetzen, avira, browser, crypt, dateien, detected, down, error, explorer, fatal error, frage, frame, helper, hotspot, icon, infizierte, löschen, malware.gen, microsoft, neu, neu aufsetzen, plug-in, popup, registry, registry cleaner, rogue.freeregistrycleanerforvista, secur, software, system, system neu, system neu aufsetzen, system32, tan, trojane, trojaner, virtual machine, vista




Zum Thema 100 Tan Trojaner - Mit dem Combofix hab ich Probleme. Nachdem Durchlauf gestern konnte ich nichts mehr öffnen(z.B. E-mail, Browser etc.) Es kam die Meldung:Es wurde versucht ein Registrierungsschlüssel einem unzulässigen LOGIN unterzeichnen, der - 100 Tan Trojaner...
Archiv
Du betrachtest: 100 Tan Trojaner auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.