|
Plagegeister aller Art und deren Bekämpfung: Aus Sicherheitsgründen wurde ihr Windowssystem blockiertWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
28.11.2011, 18:37 | #16 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Aus Sicherheitsgründen wurde ihr Windowssystem blockiert Mach einen OTL-Fix, beende alle evtl. geöffneten Programme, auch Virenscanner deaktivieren (!), starte OTL und kopiere folgenden Text in die "Custom Scan/Fixes" Box (unten in OTL): (das ":OTL" muss mitkopiert werden!!!) Code:
ATTFilter :OTL PRC - [2011.08.23 21:20:18 | 000,887,976 | ---- | M] (Ask) -- C:\Program Files (x86)\Ask.com\Updater\Updater.exe PRC - [2010.11.21 10:49:24 | 000,247,608 | ---- | M] () -- C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\..\URLSearchHook: - No CLSID value found IE - HKLM\..\URLSearchHook: {0f369707-379f-46df-a5c5-d04390f3459b} - C:\Program Files (x86)\Funload.de\prxtbFun0.dll (Conduit Ltd.) IE - HKLM\..\URLSearchHook: {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Program Files (x86)\BittorrentBar_DE\tbBitt.dll (Conduit Ltd.) IE - HKLM\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ) IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.iminent.com/?appId=5ed22dba-04f5-4512-a058-e77e9a879393&ref=homepage IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://de.msn.com/?ocid=iehp IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 80 03 9E 08 67 A7 CB 01 [binary data] IE - HKCU\..\URLSearchHook: - No CLSID value found IE - HKCU\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) IE - HKCU\..\URLSearchHook: {0f369707-379f-46df-a5c5-d04390f3459b} - C:\Program Files (x86)\Funload.de\prxtbFun0.dll (Conduit Ltd.) IE - HKCU\..\URLSearchHook: {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Program Files (x86)\BittorrentBar_DE\tbBitt.dll (Conduit Ltd.) IE - HKCU\..\URLSearchHook: {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No CLSID value found IE - HKCU\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ) IE - HKCU\..\URLSearchHook: {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM, Inc.) IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 FF - prefs.js..browser.search.defaultengine: "Ask.com" FF - prefs.js..browser.search.defaultenginename: "Ask.com" FF - prefs.js..browser.search.defaultthis.engineName: "Funload.de Customized Web Search" FF - prefs.js..browser.search.defaulturl: "http://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.3.1&q=" FF - prefs.js..browser.search.order.1: "Ask.com" FF - prefs.js..browser.startup.homepage: "http://search.iminent.com/?appId=5ed22dba-04f5-4512-a058-e77e9a879393&ref=homepage" FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.2.5.2 FF - prefs.js..extensions.enabledItems: DTToolbar@toolbarnet.com:1.1.7.0190 FF - prefs.js..keyword.URL: "http://websearch.ask.com/redirect?client=ff&src=kw&tb=MYC-ST&o=102869&locale=de_DE&apn_uid=12d67ad8-68d7-45f6-8667-6b496b09c3a5&apn_ptnrs=5J&apn_sauid=9E79BFAC-AB4A-4701-8895-925B3F975BDB&apn_dtid=YYYYYYYYDE&&q=" FF - prefs.js..network.proxy.type: 0 FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}: C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker FF - HKLM\Software\MozillaPlugins\@checkpoint.com/FFApi: C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\npFFApi.dll File not found FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) [2011.11.12 00:42:46 | 000,000,000 | ---D | M] (Funload.de Community Toolbar) -- C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{0f369707-379f-46df-a5c5-d04390f3459b} [2011.11.12 00:42:51 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} [2011.11.12 00:42:54 | 000,000,000 | ---D | M] (BittorrentBar_DE Community Toolbar) -- C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4} [2011.11.12 00:43:07 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2010.12.30 10:57:21 | 000,000,000 | ---D | M] (Softonic Deutsch Toolbar) -- C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{8dbb6d8e-e4a6-4e3b-9753-af78b226441c} [2011.07.04 14:54:25 | 000,000,000 | ---D | M] (IMinent Toolbar) -- C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{C9B68337-E93A-44EA-94DC-CB300EC06444} [2011.05.18 22:24:36 | 000,000,000 | ---D | M] ("DAEMON Tools Toolbar") -- C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\DTToolbar@toolbarnet.com [2011.05.28 14:16:08 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\engine@conduit.com [2011.11.14 05:51:19 | 000,000,000 | ---D | M] ("Ask Toolbar") -- C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com [2011.11.27 19:21:07 | 000,002,405 | ---- | M] () -- C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\askcom.xml [2010.10.27 15:22:38 | 000,000,923 | ---- | M] () -- C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\conduit.xml [2011.05.18 22:24:29 | 000,002,055 | ---- | M] () -- C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\daemon-search.xml [2010.12.30 11:07:33 | 000,002,342 | ---- | M] () -- C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icq-search.xml [2011.05.01 17:23:31 | 000,000,950 | ---- | M] () -- C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icqplugin-1.xml [2011.05.03 16:45:27 | 000,000,950 | ---- | M] () -- C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icqplugin-2.xml [2011.07.11 11:34:54 | 000,000,950 | ---- | M] () -- C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icqplugin-3.xml [2011.08.18 12:22:18 | 000,000,950 | ---- | M] () -- C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icqplugin-4.xml [2011.08.19 21:08:37 | 000,000,950 | ---- | M] () -- C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icqplugin-5.xml [2011.11.13 08:02:05 | 000,000,950 | ---- | M] () -- C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icqplugin-6.xml [2011.03.30 14:14:34 | 000,001,042 | ---- | M] () -- C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icqplugin.xml [2011.11.21 17:10:43 | 000,002,230 | ---- | M] () -- C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\SearchTheWeb.xml [2011.08.26 15:58:10 | 000,000,000 | ---D | M] (Iminent WebBooster) -- C:\Program Files (x86)\mozilla firefox\extensions\webbooster@iminent.com [2011.08.21 23:09:52 | 000,002,157 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\SearchTheWeb.xml O2 - BHO: (Funload.de Toolbar) - {0f369707-379f-46df-a5c5-d04390f3459b} - C:\Program Files (x86)\Funload.de\prxtbFun0.dll (Conduit Ltd.) O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll (Conduit Ltd.) O2 - BHO: (TBSB01620 Class) - {58124A0B-DC32-4180-9BFF-E0E21AE34026} - C:\Program Files (x86)\IMinent Toolbar\tbcore3.dll () O2 - BHO: (BittorrentBar_DE Toolbar) - {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Program Files (x86)\BittorrentBar_DE\tbBitt.dll (Conduit Ltd.) O2 - BHO: (no name) - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No CLSID value found. O2 - BHO: (IMinent WebBooster (BHO)) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files (x86)\Iminent\IMBooster4Web\Iminent.WebBooster.dll (Iminent) O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) O3:64bit: - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll () O3 - HKLM\..\Toolbar: (Funload.de Toolbar) - {0f369707-379f-46df-a5c5-d04390f3459b} - C:\Program Files (x86)\Funload.de\prxtbFun0.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll () O3 - HKLM\..\Toolbar: (BittorrentBar_DE Toolbar) - {64ead72b-ffd4-4e01-aa3a-4c71665d73e4} - C:\Program Files (x86)\BittorrentBar_DE\tbBitt.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll (ICQ) O3 - HKLM\..\Toolbar: (IMinent Toolbar) - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} - C:\Program Files (x86)\IMinent Toolbar\tbcore3.dll () O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) O3 - HKCU\..\Toolbar\WebBrowser: (Funload.de Toolbar) - {0F369707-379F-46DF-A5C5-D04390F3459B} - C:\Program Files (x86)\Funload.de\prxtbFun0.dll (Conduit Ltd.) O3:64bit: - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll () O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll () O3 - HKCU\..\Toolbar\WebBrowser: (BittorrentBar_DE Toolbar) - {64EAD72B-FFD4-4E01-AA3A-4C71665D73E4} - C:\Program Files (x86)\BittorrentBar_DE\tbBitt.dll (Conduit Ltd.) O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) O4 - HKLM..\Run: [] File not found O4 - HKLM..\Run: [ApnUpdater] C:\Program Files (x86)\Ask.com\Updater\Updater.exe (Ask) O4 - HKLM..\Run: [EKIJ5000StatusMonitor] C:\Windows\System32\spool\drivers\x64\3\EKIJ5000MUI.exe File not found O4 - HKLM..\Run: [IMBooster] C:\Program Files (x86)\Iminent\IMBooster\imbooster.exe (Iminent) O4 - HKCU..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe () O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\{76247229-8130-11e0-aae8-1c6f6582f360}\Shell - "" = AutoRun O33 - MountPoints2\{76247229-8130-11e0-aae8-1c6f6582f360}\Shell\AutoRun\command - "" = G:\setup.exe MsConfig:64bit - StartUpReg: LogMeIn Hamachi Ui - hkey= - key= - File not found [2011.01.18 17:43:31 | 000,000,000 | ---D | M] -- C:\Users\Laner\AppData\Roaming\CheckPoint :Files C:\Program Files\CheckPoint C:\Program Files (x86)\Ask.com C:\Program Files (x86)\ICQ6Toolbar :Commands [emptytemp] [resethosts] Das Logfile müsste geöffnet werden, wenn Du nach dem Fixen auf ok klickst, poste das bitte. Evtl. wird der Rechner neu gestartet. Die mit diesem Script gefixten Einträge, Dateien und Ordner werden zur Sicherheit nicht vollständig gelöscht, es wird eine Sicherheitskopie auf der Systempartition im Ordner "_OTL" erstellt. Hinweis: Das obige Script ist nur für diesen einen User in dieser Situtation erstellt worden. Es ist auf keinen anderen Rechner portierbar und darf nicht anderweitig verwandt werden, da es das System nachhaltig schädigen kann!
__________________ Logfiles bitte immer in CODE-Tags posten |
29.11.2011, 19:45 | #17 |
| Aus Sicherheitsgründen wurde ihr Windowssystem blockiert Hab alles gemacht, hier der Log:
__________________Code:
ATTFilter All processes killed ========== OTL ========== No active process named Updater.exe was found! Process ICQ Service.exe killed successfully! HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully! Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{0f369707-379f-46df-a5c5-d04390f3459b} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0f369707-379f-46df-a5c5-d04390f3459b}\ deleted successfully. C:\Program Files (x86)\Funload.de\prxtbFun0.dll moved successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4}\ deleted successfully. C:\Program Files (x86)\BittorrentBar_DE\tbBitt.dll moved successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{855F3B16-6D32-4fe6-8A56-BBB695989046} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4fe6-8A56-BBB695989046}\ deleted successfully. C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll moved successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully! HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache| /E : value set successfully! HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache AcceptLangs| /E : value set successfully! HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache_TIMESTAMP| /E : value set successfully! Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully. Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{00000000-6E41-4FD3-8538-502F5495E5FC} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}\ deleted successfully. C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll moved successfully. Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{0f369707-379f-46df-a5c5-d04390f3459b} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0f369707-379f-46df-a5c5-d04390f3459b}\ not found. File C:\Program Files (x86)\Funload.de\prxtbFun0.dll not found. Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4}\ not found. File C:\Program Files (x86)\BittorrentBar_DE\tbBitt.dll not found. Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{84FF7BD6-B47F-46F8-9130-01B2696B36CB} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}\ not found. Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{855F3B16-6D32-4fe6-8A56-BBB695989046} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4fe6-8A56-BBB695989046}\ not found. File C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll not found. Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BC86E1AB-EDA5-4059-938F-CE307B0C6F0A}\ deleted successfully. C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll moved successfully. HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully! Prefs.js: "Ask.com" removed from browser.search.defaultengine Prefs.js: "Ask.com" removed from browser.search.defaultenginename Prefs.js: "Funload.de Customized Web Search" removed from browser.search.defaultthis.engineName Prefs.js: "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.3.1&q=" removed from browser.search.defaulturl Prefs.js: "Ask.com" removed from browser.search.order.1 Prefs.js: "hxxp://search.iminent.com/?appId=5ed22dba-04f5-4512-a058-e77e9a879393&ref=homepage" removed from browser.startup.homepage Prefs.js: engine@conduit.com:3.2.5.2 removed from extensions.enabledItems Prefs.js: DTToolbar@toolbarnet.com:1.1.7.0190 removed from extensions.enabledItems Prefs.js: "hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=MYC-ST&o=102869&locale=de_DE&apn_uid=12d67ad8-68d7-45f6-8667-6b496b09c3a5&apn_ptnrs=5J&apn_sauid=9E79BFAC-AB4A-4701-8895-925B3F975BDB&apn_dtid=YYYYYYYYDE&&q=" removed from keyword.URL Prefs.js: 0 removed from network.proxy.type File HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}: C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker not found. Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@checkpoint.com/FFApi\ deleted successfully. Registry key HKEY_CURRENT_USER\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin\ deleted successfully. C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{0f369707-379f-46df-a5c5-d04390f3459b}\searchplugin folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{0f369707-379f-46df-a5c5-d04390f3459b}\modules folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{0f369707-379f-46df-a5c5-d04390f3459b}\META-INF folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{0f369707-379f-46df-a5c5-d04390f3459b}\defaults folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{0f369707-379f-46df-a5c5-d04390f3459b}\components folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{0f369707-379f-46df-a5c5-d04390f3459b}\chrome folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{0f369707-379f-46df-a5c5-d04390f3459b} folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\META-INF folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\defaults\preferences folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\defaults folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\components folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\chrome folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4}\searchplugin folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4}\modules folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4}\META-INF folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4}\defaults folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4}\components folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4}\chrome folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4} folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\search_engine folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\META-INF folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults\preferences folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\components folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\skin folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\tr folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\sk folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\ru folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\it folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\he folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\fr folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\es folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\en-US folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\de folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\cs folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\bg folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\content\img folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\content folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{8dbb6d8e-e4a6-4e3b-9753-af78b226441c}\searchplugin folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{8dbb6d8e-e4a6-4e3b-9753-af78b226441c}\META-INF folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{8dbb6d8e-e4a6-4e3b-9753-af78b226441c}\lib folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{8dbb6d8e-e4a6-4e3b-9753-af78b226441c}\defaults folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{8dbb6d8e-e4a6-4e3b-9753-af78b226441c}\components folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{8dbb6d8e-e4a6-4e3b-9753-af78b226441c}\chrome folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{8dbb6d8e-e4a6-4e3b-9753-af78b226441c} folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{C9B68337-E93A-44EA-94DC-CB300EC06444}\components folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{C9B68337-E93A-44EA-94DC-CB300EC06444}\chrome\content\id_imbooster4web_v6 folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{C9B68337-E93A-44EA-94DC-CB300EC06444}\chrome\content folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{C9B68337-E93A-44EA-94DC-CB300EC06444}\chrome folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\{C9B68337-E93A-44EA-94DC-CB300EC06444} folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\DTToolbar@toolbarnet.com\components\Resources folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\DTToolbar@toolbarnet.com\components folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\DTToolbar@toolbarnet.com\chrome\content folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\DTToolbar@toolbarnet.com\chrome folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\DTToolbar@toolbarnet.com folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\engine@conduit.com\searchplugin folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\engine@conduit.com\META-INF folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\engine@conduit.com\lib folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\engine@conduit.com\DualPackage folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\engine@conduit.com\defaults folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\engine@conduit.com\components folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\engine@conduit.com\chrome folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\engine@conduit.com folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com\searchplugins folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com\logs folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com\defaults\preferences folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com\defaults folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com\datastore folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Wed-16-Nov-2011-16-09-52-GMT folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Tue-06-Sep-2011-09-08-17-GMT folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Thu-04-Aug-2011-16-58-50-GMT folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sun-13-Nov-2011-04-28-27-GMT folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Mon-11-Jul-2011-10-35-01-GMT folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Fri-11-Nov-2011-21-00-08-GMT folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com\chrome\temp folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com\chrome\skin folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com\chrome\content folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com\chrome folder moved successfully. C:\Users\Laner\AppData\Roaming\mozilla\Firefox\Profiles\mq82ssea.default\extensions\toolbar@ask.com folder moved successfully. C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\askcom.xml moved successfully. C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\conduit.xml moved successfully. C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\daemon-search.xml moved successfully. C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icq-search.xml moved successfully. C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icqplugin-1.xml moved successfully. C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icqplugin-2.xml moved successfully. C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icqplugin-3.xml moved successfully. C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icqplugin-4.xml moved successfully. C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icqplugin-5.xml moved successfully. C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icqplugin-6.xml moved successfully. C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\icqplugin.xml moved successfully. C:\Users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\searchplugins\SearchTheWeb.xml moved successfully. C:\Program Files (x86)\mozilla firefox\extensions\webbooster@iminent.com\defaults\preferences folder moved successfully. C:\Program Files (x86)\mozilla firefox\extensions\webbooster@iminent.com\defaults folder moved successfully. C:\Program Files (x86)\mozilla firefox\extensions\webbooster@iminent.com\components_20 folder moved successfully. C:\Program Files (x86)\mozilla firefox\extensions\webbooster@iminent.com\components folder moved successfully. C:\Program Files (x86)\mozilla firefox\extensions\webbooster@iminent.com\chrome\content folder moved successfully. C:\Program Files (x86)\mozilla firefox\extensions\webbooster@iminent.com\chrome folder moved successfully. C:\Program Files (x86)\mozilla firefox\extensions\webbooster@iminent.com folder moved successfully. C:\Program Files (x86)\mozilla firefox\searchplugins\SearchTheWeb.xml moved successfully. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0f369707-379f-46df-a5c5-d04390f3459b}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0f369707-379f-46df-a5c5-d04390f3459b}\ not found. File C:\Program Files (x86)\Funload.de\prxtbFun0.dll not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}\ deleted successfully. C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll moved successfully. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{58124A0B-DC32-4180-9BFF-E0E21AE34026}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58124A0B-DC32-4180-9BFF-E0E21AE34026}\ deleted successfully. C:\Program Files (x86)\IMinent Toolbar\tbcore3.dll moved successfully. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4}\ not found. File C:\Program Files (x86)\BittorrentBar_DE\tbBitt.dll not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}\ not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}\ deleted successfully. C:\Program Files (x86)\Iminent\IMBooster4Web\Iminent.WebBooster.dll moved successfully. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully. File C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll not found. 64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully. 64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ deleted successfully. C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll moved successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{0f369707-379f-46df-a5c5-d04390f3459b} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0f369707-379f-46df-a5c5-d04390f3459b}\ not found. File C:\Program Files (x86)\Funload.de\prxtbFun0.dll not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{30F9B915-B755-4826-820B-08FBA6BD249D} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}\ not found. File C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ deleted successfully. C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll moved successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64ead72b-ffd4-4e01-aa3a-4c71665d73e4}\ not found. File C:\Program Files (x86)\BittorrentBar_DE\tbBitt.dll not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{855F3B16-6D32-4FE6-8A56-BBB695989046} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4FE6-8A56-BBB695989046}\ not found. File C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{977AE9CC-AF83-45E8-9E03-E2798216E2D5} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{977AE9CC-AF83-45E8-9E03-E2798216E2D5}\ deleted successfully. File C:\Program Files (x86)\IMinent Toolbar\tbcore3.dll not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found. File C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll not found. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{0F369707-379F-46DF-A5C5-D04390F3459B} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F369707-379F-46DF-A5C5-D04390F3459B}\ not found. File C:\Program Files (x86)\Funload.de\prxtbFun0.dll not found. 64bit-Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully. 64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found. File C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll not found. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found. File C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll not found. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{64EAD72B-FFD4-4E01-AA3A-4C71665D73E4} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64EAD72B-FFD4-4E01-AA3A-4C71665D73E4}\ not found. File C:\Program Files (x86)\BittorrentBar_DE\tbBitt.dll not found. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found. File C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ApnUpdater deleted successfully. C:\Program Files (x86)\Ask.com\Updater\Updater.exe moved successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\EKIJ5000StatusMonitor deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\IMBooster deleted successfully. C:\Program Files (x86)\Iminent\IMBooster\imbooster.exe moved successfully. Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Pando Media Booster deleted successfully. C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe moved successfully. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom\\AutoRun|DWORD:1 /E : value set successfully! Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{76247229-8130-11e0-aae8-1c6f6582f360}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{76247229-8130-11e0-aae8-1c6f6582f360}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{76247229-8130-11e0-aae8-1c6f6582f360}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{76247229-8130-11e0-aae8-1c6f6582f360}\ not found. File G:\setup.exe not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\StartUpReg\LogMeIn Hamachi Ui\ not found. C:\Users\Laner\AppData\Roaming\CheckPoint\ZoneAlarm Toolbar\TrustChecker folder moved successfully. C:\Users\Laner\AppData\Roaming\CheckPoint\ZoneAlarm Toolbar\PTPCACHE folder moved successfully. C:\Users\Laner\AppData\Roaming\CheckPoint\ZoneAlarm Toolbar folder moved successfully. C:\Users\Laner\AppData\Roaming\CheckPoint folder moved successfully. ========== FILES ========== C:\Program Files\CheckPoint\ZAForceField folder moved successfully. C:\Program Files\CheckPoint folder moved successfully. C:\Program Files (x86)\Ask.com\Updater folder moved successfully. C:\Program Files (x86)\Ask.com\assets\oobe folder moved successfully. C:\Program Files (x86)\Ask.com\assets folder moved successfully. C:\Program Files (x86)\Ask.com folder moved successfully. C:\Program Files (x86)\ICQ6Toolbar folder moved successfully. ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: AppData User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Laner ->Temp folder emptied: 4530621349 bytes ->Temporary Internet Files folder emptied: 75069634 bytes ->Java cache emptied: 12115719 bytes ->FireFox cache emptied: 101094654 bytes ->Google Chrome cache emptied: 6301159 bytes ->Flash cache emptied: 246323 bytes User: Public User: UpdatusUser ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 401408 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 224066698 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 67832 bytes %systemroot%\sysnative\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 749 bytes RecycleBin emptied: 327427296 bytes Total Files Cleaned = 5.033,00 mb C:\Windows\System32\drivers\etc\Hosts moved successfully. HOSTS file reset successfully OTL by OldTimer - Version 3.2.31.0 log created on 11292011_192505 Files\Folders moved on Reboot... C:\Users\Laner\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. Registry entries deleted on Reboot... |
29.11.2011, 20:23 | #18 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Aus Sicherheitsgründen wurde ihr Windowssystem blockiert Bitte nun dieses Tool von Kaspersky ausführen und das Log posten => http://www.trojaner-board.de/82358-t...entfernen.html
__________________Das Tool so einstellen wie unten im Bild angegeben - klick auf change parameters und setze die Haken wie im folgenden Screenshot abgebildet, Dann auf Start Scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten. Wenn du das Log nicht findest oder den Inhalt kopieren und in dein Posting übertragen kannst, dann schau bitte direkt auf deiner Windows-Systempartition nach, da speichert der TDSS-Killer seine Logs. Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten! Falls du durch die Infektion auf deine Dokumente/Eigenen Dateien nicht zugreifen kannst, Verknüpfungen auf dem Desktop oder im Startmenü unter "alle Programme" fehlen, bitte unhide ausführen: Downloade dir bitte unhide.exe und speichere diese Datei auf deinem Desktop. Starte das Tool und es sollten alle Dateien und Ordner wieder sichtbar sein. ( Könnte eine Weile dauern ) Windows-Vista und Windows-7-User müssen das Tool per Rechtsklick als Administrator ausführen!
__________________ |
30.11.2011, 12:08 | #19 |
| Aus Sicherheitsgründen wurde ihr Windowssystem blockiert Auf meine Dokumente und Eigene Dateien kann ich noch ohne Probleme zugreifen. TDSSKiller Log: Code:
ATTFilter 11:42:15.0329 2244 TDSS rootkit removing tool 2.6.21.0 Nov 24 2011 12:32:44 11:42:15.0579 2244 ============================================================ 11:42:15.0579 2244 Current date / time: 2011/11/30 11:42:15.0579 11:42:15.0579 2244 SystemInfo: 11:42:15.0579 2244 11:42:15.0579 2244 OS Version: 6.1.7600 ServicePack: 0.0 11:42:15.0579 2244 Product type: Workstation 11:42:15.0579 2244 ComputerName: LANER-PC 11:42:15.0579 2244 UserName: Laner 11:42:15.0579 2244 Windows directory: C:\Windows 11:42:15.0579 2244 System windows directory: C:\Windows 11:42:15.0579 2244 Running under WOW64 11:42:15.0579 2244 Processor architecture: Intel x64 11:42:15.0579 2244 Number of processors: 4 11:42:15.0579 2244 Page size: 0x1000 11:42:15.0579 2244 Boot type: Normal boot 11:42:15.0579 2244 ============================================================ 11:42:18.0230 2244 Initialize success 11:42:39.0462 3968 ============================================================ 11:42:39.0462 3968 Scan started 11:42:39.0462 3968 Mode: Manual; SigCheck; TDLFS; 11:42:39.0462 3968 ============================================================ 11:42:43.0462 3968 1394ohci (1b00662092f9f9568b995902f0cc40d5) C:\Windows\system32\DRIVERS\1394ohci.sys 11:42:43.0507 3968 1394ohci - ok 11:42:43.0534 3968 ACPI (6f11e88748cdefd2f76aa215f97ddfe5) C:\Windows\system32\DRIVERS\ACPI.sys 11:42:43.0545 3968 ACPI - ok 11:42:43.0568 3968 AcpiPmi (63b05a0420ce4bf0e4af6dcc7cada254) C:\Windows\system32\DRIVERS\acpipmi.sys 11:42:43.0588 3968 AcpiPmi - ok 11:42:43.0615 3968 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys 11:42:43.0633 3968 adp94xx - ok 11:42:43.0652 3968 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys 11:42:43.0668 3968 adpahci - ok 11:42:43.0692 3968 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys 11:42:43.0705 3968 adpu320 - ok 11:42:43.0744 3968 AFD (6ef20ddf3172e97d69f596fb90602f29) C:\Windows\system32\drivers\afd.sys 11:42:43.0777 3968 AFD - ok 11:42:43.0789 3968 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\DRIVERS\agp440.sys 11:42:43.0799 3968 agp440 - ok 11:42:43.0816 3968 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\DRIVERS\aliide.sys 11:42:43.0825 3968 aliide - ok 11:42:43.0836 3968 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\DRIVERS\amdide.sys 11:42:43.0844 3968 amdide - ok 11:42:43.0862 3968 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys 11:42:43.0897 3968 AmdK8 - ok 11:42:43.0924 3968 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys 11:42:43.0959 3968 AmdPPM - ok 11:42:43.0973 3968 amdsata (53d8d46d51d390abdb54eca623165cb7) C:\Windows\system32\DRIVERS\amdsata.sys 11:42:44.0000 3968 amdsata - ok 11:42:44.0019 3968 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys 11:42:44.0031 3968 amdsbs - ok 11:42:44.0048 3968 amdxata (75c51148154e34eb3d7bb84749a758d5) C:\Windows\system32\DRIVERS\amdxata.sys 11:42:44.0055 3968 amdxata - ok 11:42:44.0112 3968 AppID (42fd751b27fa0e9c69bb39f39e409594) C:\Windows\system32\drivers\appid.sys 11:42:44.0146 3968 AppID - ok 11:42:44.0202 3968 AppleCharger (301aa64f9643bc453d90a66c4c0e7204) C:\Windows\system32\DRIVERS\AppleCharger.sys 11:42:44.0209 3968 AppleCharger - ok 11:42:44.0224 3968 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys 11:42:44.0235 3968 arc - ok 11:42:44.0248 3968 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys 11:42:44.0260 3968 arcsas - ok 11:42:44.0298 3968 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys 11:42:44.0334 3968 AsyncMac - ok 11:42:44.0361 3968 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\DRIVERS\atapi.sys 11:42:44.0370 3968 atapi - ok 11:42:44.0389 3968 AtiPcie (7c5d273e29dcc5505469b299c6f29163) C:\Windows\system32\DRIVERS\AtiPcie.sys 11:42:44.0395 3968 AtiPcie - ok 11:42:44.0433 3968 avgntflt (aa8f79a1bdfc03b3bc70c44ab00589b4) C:\Windows\system32\DRIVERS\avgntflt.sys 11:42:44.0443 3968 avgntflt - ok 11:42:44.0462 3968 avipbb (d959309ececca73fc79f8ef8521346b2) C:\Windows\system32\DRIVERS\avipbb.sys 11:42:44.0473 3968 avipbb - ok 11:42:44.0489 3968 avkmgr (248db59fc86de44d2779f4c7fb1a567d) C:\Windows\system32\DRIVERS\avkmgr.sys 11:42:44.0497 3968 avkmgr - ok 11:42:44.0530 3968 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys 11:42:44.0560 3968 b06bdrv - ok 11:42:44.0576 3968 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys 11:42:44.0601 3968 b57nd60a - ok 11:42:44.0630 3968 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys 11:42:44.0662 3968 Beep - ok 11:42:44.0689 3968 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys 11:42:44.0708 3968 blbdrive - ok 11:42:44.0751 3968 bowser (19d20159708e152267e53b66677a4995) C:\Windows\system32\DRIVERS\bowser.sys 11:42:44.0779 3968 bowser - ok 11:42:44.0795 3968 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys 11:42:44.0815 3968 BrFiltLo - ok 11:42:44.0826 3968 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys 11:42:44.0836 3968 BrFiltUp - ok 11:42:44.0858 3968 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys 11:42:44.0879 3968 Brserid - ok 11:42:44.0898 3968 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys 11:42:44.0919 3968 BrSerWdm - ok 11:42:44.0939 3968 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys 11:42:44.0969 3968 BrUsbMdm - ok 11:42:44.0981 3968 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys 11:42:44.0991 3968 BrUsbSer - ok 11:42:45.0014 3968 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys 11:42:45.0029 3968 BTHMODEM - ok 11:42:45.0051 3968 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys 11:42:45.0116 3968 cdfs - ok 11:42:45.0164 3968 cdrom (83d2d75e1efb81b3450c18131443f7db) C:\Windows\system32\DRIVERS\cdrom.sys 11:42:45.0178 3968 cdrom - ok 11:42:45.0192 3968 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys 11:42:45.0211 3968 circlass - ok 11:42:45.0237 3968 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys 11:42:45.0248 3968 CLFS - ok 11:42:45.0287 3968 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys 11:42:45.0305 3968 CmBatt - ok 11:42:45.0317 3968 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\DRIVERS\cmdide.sys 11:42:45.0326 3968 cmdide - ok 11:42:45.0343 3968 CNG (f95fd4cb7da00ba2a63ce9f6b5c053e1) C:\Windows\system32\Drivers\cng.sys 11:42:45.0365 3968 CNG - ok 11:42:45.0382 3968 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys 11:42:45.0391 3968 Compbatt - ok 11:42:45.0414 3968 CompositeBus (f26b3a86f6fa87ca360b879581ab4123) C:\Windows\system32\DRIVERS\CompositeBus.sys 11:42:45.0440 3968 CompositeBus - ok 11:42:45.0455 3968 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys 11:42:45.0464 3968 crcdisk - ok 11:42:45.0512 3968 DfsC (9c253ce7311ca60fc11c774692a13208) C:\Windows\system32\Drivers\dfsc.sys 11:42:45.0535 3968 DfsC - ok 11:42:45.0555 3968 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys 11:42:45.0580 3968 discache - ok 11:42:45.0597 3968 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys 11:42:45.0607 3968 Disk - ok 11:42:45.0646 3968 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys 11:42:45.0670 3968 drmkaud - ok 11:42:45.0720 3968 dtsoftbus01 (fb9bef3401ee5ecc2603311b9c64f44a) C:\Windows\system32\DRIVERS\dtsoftbus01.sys 11:42:45.0737 3968 dtsoftbus01 - ok 11:42:45.0774 3968 DXGKrnl (1633b9abf52784a1331476397a48cbef) C:\Windows\System32\drivers\dxgkrnl.sys 11:42:45.0803 3968 DXGKrnl - ok 11:42:45.0863 3968 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys 11:42:45.0936 3968 ebdrv - ok 11:42:45.0966 3968 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys 11:42:45.0983 3968 elxstor - ok 11:42:45.0993 3968 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\DRIVERS\errdev.sys 11:42:46.0022 3968 ErrDev - ok 11:42:46.0055 3968 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys 11:42:46.0092 3968 exfat - ok 11:42:46.0107 3968 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys 11:42:46.0150 3968 fastfat - ok 11:42:46.0165 3968 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys 11:42:46.0182 3968 fdc - ok 11:42:46.0206 3968 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys 11:42:46.0216 3968 FileInfo - ok 11:42:46.0229 3968 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys 11:42:46.0265 3968 Filetrace - ok 11:42:46.0279 3968 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys 11:42:46.0289 3968 flpydisk - ok 11:42:46.0314 3968 FltMgr (f7866af72abbaf84b1fa5aa195378c59) C:\Windows\system32\drivers\fltmgr.sys 11:42:46.0329 3968 FltMgr - ok 11:42:46.0347 3968 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys 11:42:46.0358 3968 FsDepends - ok 11:42:46.0372 3968 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys 11:42:46.0380 3968 Fs_Rec - ok 11:42:46.0409 3968 fvevol (ae87ba80d0ec3b57126ed2cdc15b24ed) C:\Windows\system32\DRIVERS\fvevol.sys 11:42:46.0419 3968 fvevol - ok 11:42:46.0438 3968 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys 11:42:46.0448 3968 gagp30kx - ok 11:42:46.0465 3968 gdrv (7907e14f9bcf3a4689c9a74a1a873cb6) C:\Windows\gdrv.sys 11:42:46.0472 3968 gdrv - ok 11:42:46.0536 3968 hamachi (1e6438d4ea6e1174a3b3b1edc4de660b) C:\Windows\system32\DRIVERS\hamachi.sys 11:42:46.0544 3968 hamachi - ok 11:42:46.0569 3968 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys 11:42:46.0584 3968 hcw85cir - ok 11:42:46.0616 3968 HdAudAddService (6410f6f415b2a5a9037224c41da8bf12) C:\Windows\system32\drivers\HdAudio.sys 11:42:46.0646 3968 HdAudAddService - ok 11:42:46.0675 3968 HDAudBus (0a49913402747a0b67de940fb42cbdbb) C:\Windows\system32\DRIVERS\HDAudBus.sys 11:42:46.0696 3968 HDAudBus - ok 11:42:46.0707 3968 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys 11:42:46.0724 3968 HidBatt - ok 11:42:46.0738 3968 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys 11:42:46.0765 3968 HidBth - ok 11:42:46.0783 3968 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys 11:42:46.0801 3968 HidIr - ok 11:42:46.0825 3968 HidUsb (b3bf6b5b50006def50b66306d99fcf6f) C:\Windows\system32\DRIVERS\hidusb.sys 11:42:46.0849 3968 HidUsb - ok 11:42:46.0901 3968 hotcore3 (c227dfcf703d02ead4d7e44b0ba7c181) C:\Windows\system32\DRIVERS\hotcore3.sys 11:42:46.0909 3968 hotcore3 - ok 11:42:46.0928 3968 HpSAMD (0886d440058f203eba0e1825e4355914) C:\Windows\system32\DRIVERS\HpSAMD.sys 11:42:46.0939 3968 HpSAMD - ok 11:42:46.0960 3968 HTTP (cee049cac4efa7f4e1e4ad014414a5d4) C:\Windows\system32\drivers\HTTP.sys 11:42:47.0005 3968 HTTP - ok 11:42:47.0023 3968 hwpolicy (f17766a19145f111856378df337a5d79) C:\Windows\system32\drivers\hwpolicy.sys 11:42:47.0029 3968 hwpolicy - ok 11:42:47.0046 3968 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys 11:42:47.0059 3968 i8042prt - ok 11:42:47.0089 3968 iaStorV (b75e45c564e944a2657167d197ab29da) C:\Windows\system32\drivers\iaStorV.sys 11:42:47.0106 3968 iaStorV - ok 11:42:47.0125 3968 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys 11:42:47.0134 3968 iirsp - ok 11:42:47.0210 3968 IntcAzAudAddService (0adf714079ae174a39d69036143e4c50) C:\Windows\system32\drivers\RTKVHD64.sys 11:42:47.0245 3968 IntcAzAudAddService - ok 11:42:47.0257 3968 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\DRIVERS\intelide.sys 11:42:47.0265 3968 intelide - ok 11:42:47.0284 3968 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys 11:42:47.0302 3968 intelppm - ok 11:42:47.0323 3968 IpFilterDriver (722dd294df62483cecaae6e094b4d695) C:\Windows\system32\DRIVERS\ipfltdrv.sys 11:42:47.0372 3968 IpFilterDriver - ok 11:42:47.0391 3968 IPMIDRV (e2b4a4494db7cb9b89b55ca268c337c5) C:\Windows\system32\DRIVERS\IPMIDrv.sys 11:42:47.0410 3968 IPMIDRV - ok 11:42:47.0424 3968 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys 11:42:47.0457 3968 IPNAT - ok 11:42:47.0487 3968 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys 11:42:47.0500 3968 IRENUM - ok 11:42:47.0512 3968 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\DRIVERS\isapnp.sys 11:42:47.0522 3968 isapnp - ok 11:42:47.0545 3968 iScsiPrt (fa4d2557de56d45b0a346f93564be6e1) C:\Windows\system32\DRIVERS\msiscsi.sys 11:42:47.0559 3968 iScsiPrt - ok 11:42:47.0600 3968 JRAID (1c368c1a2733dcc5b8e15420aa2b0f6d) C:\Windows\system32\DRIVERS\jraid.sys 11:42:47.0611 3968 JRAID - ok 11:42:47.0639 3968 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys 11:42:47.0648 3968 kbdclass - ok 11:42:47.0659 3968 kbdhid (6def98f8541e1b5dceb2c822a11f7323) C:\Windows\system32\DRIVERS\kbdhid.sys 11:42:47.0678 3968 kbdhid - ok 11:42:47.0698 3968 KSecDD (e8b6fcc9c83535c67f835d407620bd27) C:\Windows\system32\Drivers\ksecdd.sys 11:42:47.0709 3968 KSecDD - ok 11:42:47.0733 3968 KSecPkg (a8c63880ef6f4d3fec7b616b9c060215) C:\Windows\system32\Drivers\ksecpkg.sys 11:42:47.0746 3968 KSecPkg - ok 11:42:47.0759 3968 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys 11:42:47.0799 3968 ksthunk - ok 11:42:47.0875 3968 L8042Kbd (bbd9bbed0de036b2297e6434b26d1ae9) C:\Windows\system32\DRIVERS\L8042Kbd.sys 11:42:47.0893 3968 L8042Kbd - ok 11:42:47.0977 3968 LHidFilt (aa3d903c5a7538803f2400a8391f1881) C:\Windows\system32\DRIVERS\LHidFilt.Sys 11:42:47.0985 3968 LHidFilt - ok 11:42:48.0024 3968 libusb0 - ok 11:42:48.0053 3968 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys 11:42:48.0100 3968 lltdio - ok 11:42:48.0125 3968 LMouFilt (90b4b2b0b5f05abb9fb365405a7b825b) C:\Windows\system32\DRIVERS\LMouFilt.Sys 11:42:48.0133 3968 LMouFilt - ok 11:42:48.0157 3968 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys 11:42:48.0179 3968 LSI_FC - ok 11:42:48.0194 3968 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys 11:42:48.0205 3968 LSI_SAS - ok 11:42:48.0229 3968 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys 11:42:48.0239 3968 LSI_SAS2 - ok 11:42:48.0259 3968 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys 11:42:48.0278 3968 LSI_SCSI - ok 11:42:48.0316 3968 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys 11:42:48.0355 3968 luafv - ok 11:42:48.0372 3968 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys 11:42:48.0387 3968 megasas - ok 11:42:48.0445 3968 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys 11:42:48.0499 3968 MegaSR - ok 11:42:48.0519 3968 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys 11:42:48.0566 3968 Modem - ok 11:42:48.0608 3968 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys 11:42:48.0640 3968 monitor - ok 11:42:48.0661 3968 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys 11:42:48.0670 3968 mouclass - ok 11:42:48.0724 3968 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys 11:42:48.0743 3968 mouhid - ok 11:42:48.0759 3968 mountmgr (791af66c4d0e7c90a3646066386fb571) C:\Windows\system32\drivers\mountmgr.sys 11:42:48.0766 3968 mountmgr - ok 11:42:48.0806 3968 mpio (609d1d87649ecc19796f4d76d4c15cea) C:\Windows\system32\DRIVERS\mpio.sys 11:42:48.0830 3968 mpio - ok 11:42:48.0849 3968 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys 11:42:48.0899 3968 mpsdrv - ok 11:42:48.0916 3968 MRxDAV (30524261bb51d96d6fcbac20c810183c) C:\Windows\system32\drivers\mrxdav.sys 11:42:48.0974 3968 MRxDAV - ok 11:42:49.0007 3968 mrxsmb (040d62a9d8ad28922632137acdd984f2) C:\Windows\system32\DRIVERS\mrxsmb.sys 11:42:49.0020 3968 mrxsmb - ok 11:42:49.0107 3968 mrxsmb10 (f0067552f8f9b33d7c59403ab808a3cb) C:\Windows\system32\DRIVERS\mrxsmb10.sys 11:42:49.0139 3968 mrxsmb10 - ok 11:42:49.0158 3968 mrxsmb20 (3c142d31de9f2f193218a53fe2632051) C:\Windows\system32\DRIVERS\mrxsmb20.sys 11:42:49.0183 3968 mrxsmb20 - ok 11:42:49.0194 3968 msahci (5c37497276e3b3a5488b23a326a754b7) C:\Windows\system32\DRIVERS\msahci.sys 11:42:49.0203 3968 msahci - ok 11:42:49.0220 3968 msdsm (8d27b597229aed79430fb9db3bcbfbd0) C:\Windows\system32\DRIVERS\msdsm.sys 11:42:49.0232 3968 msdsm - ok 11:42:49.0254 3968 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys 11:42:49.0280 3968 Msfs - ok 11:42:49.0286 3968 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys 11:42:49.0321 3968 mshidkmdf - ok 11:42:49.0341 3968 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\DRIVERS\msisadrv.sys 11:42:49.0350 3968 msisadrv - ok 11:42:49.0393 3968 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys 11:42:49.0430 3968 MSKSSRV - ok 11:42:49.0450 3968 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys 11:42:49.0495 3968 MSPCLOCK - ok 11:42:49.0511 3968 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys 11:42:49.0546 3968 MSPQM - ok 11:42:49.0568 3968 MsRPC (89cb141aa8616d8c6a4610fa26c60964) C:\Windows\system32\drivers\MsRPC.sys 11:42:49.0583 3968 MsRPC - ok 11:42:49.0597 3968 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys 11:42:49.0604 3968 mssmbios - ok 11:42:49.0615 3968 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys 11:42:49.0651 3968 MSTEE - ok 11:42:49.0666 3968 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys 11:42:49.0686 3968 MTConfig - ok 11:42:49.0707 3968 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys 11:42:49.0717 3968 Mup - ok 11:42:49.0742 3968 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys 11:42:49.0779 3968 NativeWifiP - ok 11:42:49.0855 3968 NDIS (cad515dbd07d082bb317d9928ce8962c) C:\Windows\system32\drivers\ndis.sys 11:42:49.0889 3968 NDIS - ok 11:42:49.0908 3968 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys 11:42:49.0944 3968 NdisCap - ok 11:42:49.0979 3968 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys 11:42:50.0017 3968 NdisTapi - ok 11:42:50.0034 3968 Ndisuio (f105ba1e22bf1f2ee8f005d4305e4bec) C:\Windows\system32\DRIVERS\ndisuio.sys 11:42:50.0074 3968 Ndisuio - ok 11:42:50.0094 3968 NdisWan (557dfab9ca1fcb036ac77564c010dad3) C:\Windows\system32\DRIVERS\ndiswan.sys 11:42:50.0123 3968 NdisWan - ok 11:42:50.0131 3968 NDProxy (659b74fb74b86228d6338d643cd3e3cf) C:\Windows\system32\drivers\NDProxy.sys 11:42:50.0170 3968 NDProxy - ok 11:42:50.0195 3968 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys 11:42:50.0234 3968 NetBIOS - ok 11:42:50.0280 3968 NetBT (9162b273a44ab9dce5b44362731d062a) C:\Windows\system32\DRIVERS\netbt.sys 11:42:50.0307 3968 NetBT - ok 11:42:50.0344 3968 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys 11:42:50.0354 3968 nfrd960 - ok 11:42:50.0367 3968 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys 11:42:50.0394 3968 Npfs - ok 11:42:50.0415 3968 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys 11:42:50.0462 3968 nsiproxy - ok 11:42:50.0515 3968 Ntfs (378e0e0dfea67d98ae6ea53adbbd76bc) C:\Windows\system32\drivers\Ntfs.sys 11:42:50.0565 3968 Ntfs - ok 11:42:50.0582 3968 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys 11:42:50.0609 3968 Null - ok 11:42:50.0655 3968 nusb3hub (785298579b5f9b4032152dfbb992fdb6) C:\Windows\system32\DRIVERS\nusb3hub.sys 11:42:50.0666 3968 nusb3hub - ok 11:42:50.0708 3968 nusb3xhc (df2750481b4964814467c974f2b0eef1) C:\Windows\system32\DRIVERS\nusb3xhc.sys 11:42:50.0720 3968 nusb3xhc - ok 11:42:50.0776 3968 NVHDA (10204955027011e08a9dc27737a48a54) C:\Windows\system32\drivers\nvhda64v.sys 11:42:50.0807 3968 NVHDA - ok 11:42:51.0005 3968 nvlddmkm (b15258b1f45f9571758ac6bb2f043b01) C:\Windows\system32\DRIVERS\nvlddmkm.sys 11:42:51.0164 3968 nvlddmkm - ok 11:42:51.0213 3968 nvraid (a4d9c9a608a97f59307c2f2600edc6a4) C:\Windows\system32\drivers\nvraid.sys 11:42:51.0226 3968 nvraid - ok 11:42:51.0244 3968 nvstor (6c1d5f70e7a6a3fd1c90d840edc048b9) C:\Windows\system32\drivers\nvstor.sys 11:42:51.0256 3968 nvstor - ok 11:42:51.0308 3968 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\DRIVERS\nv_agp.sys 11:42:51.0320 3968 nv_agp - ok 11:42:51.0332 3968 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\DRIVERS\ohci1394.sys 11:42:51.0363 3968 ohci1394 - ok 11:42:51.0383 3968 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys 11:42:51.0396 3968 Parport - ok 11:42:51.0412 3968 partmgr (7daa117143316c4a1537e074a5a9eaf0) C:\Windows\system32\drivers\partmgr.sys 11:42:51.0423 3968 partmgr - ok 11:42:51.0476 3968 pci (f36f6504009f2fb0dfd1b17a116ad74b) C:\Windows\system32\DRIVERS\pci.sys 11:42:51.0515 3968 pci - ok 11:42:51.0533 3968 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\DRIVERS\pciide.sys 11:42:51.0542 3968 pciide - ok 11:42:51.0579 3968 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys 11:42:51.0593 3968 pcmcia - ok 11:42:51.0634 3968 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys 11:42:51.0644 3968 pcw - ok 11:42:51.0788 3968 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys 11:42:51.0845 3968 PEAUTH - ok 11:42:51.0930 3968 PptpMiniport (27cc19e81ba5e3403c48302127bda717) C:\Windows\system32\DRIVERS\raspptp.sys 11:42:51.0971 3968 PptpMiniport - ok 11:42:52.0415 3968 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys 11:42:52.0488 3968 Processor - ok 11:42:52.0654 3968 Psched (ee992183bd8eaefd9973f352e587a299) C:\Windows\system32\DRIVERS\pacer.sys 11:42:52.0704 3968 Psched - ok 11:42:52.0813 3968 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys 11:42:52.0882 3968 ql2300 - ok 11:42:52.0923 3968 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys 11:42:52.0974 3968 ql40xx - ok 11:42:53.0035 3968 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys 11:42:53.0090 3968 QWAVEdrv - ok 11:42:53.0160 3968 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys 11:42:53.0209 3968 RasAcd - ok 11:42:53.0269 3968 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys 11:42:53.0371 3968 RasAgileVpn - ok 11:42:53.0432 3968 Rasl2tp (87a6e852a22991580d6d39adc4790463) C:\Windows\system32\DRIVERS\rasl2tp.sys 11:42:53.0513 3968 Rasl2tp - ok 11:42:53.0642 3968 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys 11:42:53.0699 3968 RasPppoe - ok 11:42:53.0749 3968 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys 11:42:53.0804 3968 RasSstp - ok 11:42:53.0871 3968 rdbss (3bac8142102c15d59a87757c1d41dce5) C:\Windows\system32\DRIVERS\rdbss.sys 11:42:53.0977 3968 rdbss - ok 11:42:54.0020 3968 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys 11:42:54.0046 3968 rdpbus - ok 11:42:54.0090 3968 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys 11:42:54.0127 3968 RDPCDD - ok 11:42:54.0169 3968 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys 11:42:54.0216 3968 RDPENCDD - ok 11:42:54.0244 3968 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys 11:42:54.0269 3968 RDPREFMP - ok 11:42:54.0298 3968 RDPWD (8a3e6bea1c53ea6177fe2b6eba2c80d7) C:\Windows\system32\drivers\RDPWD.sys 11:42:54.0359 3968 RDPWD - ok 11:42:54.0574 3968 rdyboost (634b9a2181d98f15941236886164ec8b) C:\Windows\system32\drivers\rdyboost.sys 11:42:54.0644 3968 rdyboost - ok 11:42:54.0700 3968 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys 11:42:54.0764 3968 rspndr - ok 11:42:54.0857 3968 RTL8167 (4fbda07ef0a3097ce14c5cabf723b278) C:\Windows\system32\DRIVERS\Rt64win7.sys 11:42:54.0868 3968 RTL8167 - ok 11:42:54.0918 3968 sbp2port (e3bbb89983daf5622c1d50cf49f28227) C:\Windows\system32\DRIVERS\sbp2port.sys 11:42:54.0929 3968 sbp2port - ok 11:42:54.0971 3968 scfilter (c94da20c7e3ba1dca269bc8460d98387) C:\Windows\system32\DRIVERS\scfilter.sys 11:42:55.0022 3968 scfilter - ok 11:42:55.0072 3968 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys 11:42:55.0119 3968 secdrv - ok 11:42:55.0190 3968 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys 11:42:55.0211 3968 Serenum - ok 11:42:55.0288 3968 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys 11:42:55.0329 3968 Serial - ok 11:42:55.0381 3968 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys 11:42:55.0418 3968 sermouse - ok 11:42:55.0470 3968 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\DRIVERS\sffdisk.sys 11:42:55.0504 3968 sffdisk - ok 11:42:55.0558 3968 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\DRIVERS\sffp_mmc.sys 11:42:55.0591 3968 sffp_mmc - ok 11:42:55.0640 3968 sffp_sd (5588b8c6193eb1522490c122eb94dffa) C:\Windows\system32\DRIVERS\sffp_sd.sys 11:42:55.0688 3968 sffp_sd - ok 11:42:55.0731 3968 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys 11:42:55.0786 3968 sfloppy - ok 11:42:55.0833 3968 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys 11:42:55.0865 3968 SiSRaid2 - ok 11:42:55.0929 3968 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys 11:42:55.0968 3968 SiSRaid4 - ok 11:42:56.0002 3968 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys 11:42:56.0064 3968 Smb - ok 11:42:56.0131 3968 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys 11:42:56.0140 3968 spldr - ok 11:42:56.0208 3968 srv (2408c0366d96bcdf63e8f1c78e4a29c5) C:\Windows\system32\DRIVERS\srv.sys 11:42:56.0249 3968 srv - ok 11:42:56.0371 3968 srv2 (76548f7b818881b47d8d1ae1be9c11f8) C:\Windows\system32\DRIVERS\srv2.sys 11:42:56.0453 3968 srv2 - ok 11:42:56.0523 3968 srvnet (0af6e19d39c70844c5caa8fb0183c36e) C:\Windows\system32\DRIVERS\srvnet.sys 11:42:56.0598 3968 srvnet - ok 11:42:56.0723 3968 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys 11:42:56.0743 3968 stexstor - ok 11:42:56.0799 3968 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys 11:42:56.0811 3968 swenum - ok 11:42:57.0047 3968 Tcpip (f18f56efc0bfb9c87ba01c37b27f4da5) C:\Windows\system32\drivers\tcpip.sys 11:42:57.0190 3968 Tcpip - ok 11:42:57.0300 3968 TCPIP6 (f18f56efc0bfb9c87ba01c37b27f4da5) C:\Windows\system32\DRIVERS\tcpip.sys 11:42:57.0344 3968 TCPIP6 - ok 11:42:57.0388 3968 tcpipreg (76d078af6f587b162d50210f761eb9ed) C:\Windows\system32\drivers\tcpipreg.sys 11:42:57.0426 3968 tcpipreg - ok 11:42:57.0479 3968 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys 11:42:57.0527 3968 TDPIPE - ok 11:42:57.0570 3968 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys 11:42:57.0643 3968 TDTCP - ok 11:42:57.0690 3968 tdx (079125c4b17b01fcaeebce0bcb290c0f) C:\Windows\system32\DRIVERS\tdx.sys 11:42:57.0729 3968 tdx - ok 11:42:57.0773 3968 TermDD (c448651339196c0e869a355171875522) C:\Windows\system32\DRIVERS\termdd.sys 11:42:57.0798 3968 TermDD - ok 11:42:57.0850 3968 tssecsrv (61b96c26131e37b24e93327a0bd1fb95) C:\Windows\system32\DRIVERS\tssecsrv.sys 11:42:57.0907 3968 tssecsrv - ok 11:42:57.0989 3968 tunnel (3836171a2cdf3af8ef10856db9835a70) C:\Windows\system32\DRIVERS\tunnel.sys 11:42:58.0063 3968 tunnel - ok 11:42:58.0099 3968 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys 11:42:58.0110 3968 uagp35 - ok 11:42:58.0160 3968 udfs (d47baead86c65d4f4069d7ce0a4edceb) C:\Windows\system32\DRIVERS\udfs.sys 11:42:58.0227 3968 udfs - ok 11:42:58.0284 3968 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\DRIVERS\uliagpkx.sys 11:42:58.0320 3968 uliagpkx - ok 11:42:58.0386 3968 umbus (eab6c35e62b1b0db0d1b48b671d3a117) C:\Windows\system32\DRIVERS\umbus.sys 11:42:58.0421 3968 umbus - ok 11:42:58.0466 3968 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys 11:42:58.0503 3968 UmPass - ok 11:42:58.0599 3968 usbccgp (7b6a127c93ee590e4d79a5f2a76fe46f) C:\Windows\system32\DRIVERS\usbccgp.sys 11:42:58.0639 3968 usbccgp - ok 11:42:58.0818 3968 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\DRIVERS\usbcir.sys 11:42:58.0865 3968 usbcir - ok 11:42:58.0901 3968 usbehci (92969ba5ac44e229c55a332864f79677) C:\Windows\system32\DRIVERS\usbehci.sys 11:42:58.0926 3968 usbehci - ok 11:42:59.0000 3968 usbfilter (2c780746dc44a28fe67004dc58173f05) C:\Windows\system32\DRIVERS\usbfilter.sys 11:42:59.0023 3968 usbfilter - ok 11:42:59.0086 3968 usbhub (e7df1cfd28ca86b35ef5add0735ceef3) C:\Windows\system32\DRIVERS\usbhub.sys 11:42:59.0160 3968 usbhub - ok 11:42:59.0208 3968 usbohci (f1bb1e55f1e7a65c5839ccc7b36d773e) C:\Windows\system32\DRIVERS\usbohci.sys 11:42:59.0254 3968 usbohci - ok 11:42:59.0314 3968 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys 11:42:59.0357 3968 usbprint - ok 11:42:59.0422 3968 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys 11:42:59.0449 3968 usbscan - ok 11:42:59.0495 3968 USBSTOR (f39983647bc1f3e6100778ddfe9dce29) C:\Windows\system32\DRIVERS\USBSTOR.SYS 11:42:59.0535 3968 USBSTOR - ok 11:42:59.0563 3968 usbuhci (bc3070350a491d84b518d7cca9abd36f) C:\Windows\system32\drivers\usbuhci.sys 11:42:59.0601 3968 usbuhci - ok 11:42:59.0637 3968 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\DRIVERS\vdrvroot.sys 11:42:59.0653 3968 vdrvroot - ok 11:42:59.0694 3968 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys 11:42:59.0727 3968 vga - ok 11:42:59.0776 3968 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys 11:42:59.0816 3968 VgaSave - ok 11:42:59.0845 3968 vhdmp (c82e748660f62a242b2dfac1442f22a4) C:\Windows\system32\DRIVERS\vhdmp.sys 11:42:59.0859 3968 vhdmp - ok 11:42:59.0892 3968 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\DRIVERS\viaide.sys 11:42:59.0901 3968 viaide - ok 11:42:59.0913 3968 volmgr (2b1a3dae2b4e70dbba822b7a03fbd4a3) C:\Windows\system32\DRIVERS\volmgr.sys 11:42:59.0929 3968 volmgr - ok 11:42:59.0949 3968 volmgrx (99b0cbb569ca79acaed8c91461d765fb) C:\Windows\system32\drivers\volmgrx.sys 11:42:59.0960 3968 volmgrx - ok 11:42:59.0983 3968 volsnap (58f82eed8ca24b461441f9c3e4f0bf5c) C:\Windows\system32\DRIVERS\volsnap.sys 11:42:59.0999 3968 volsnap - ok 11:43:00.0031 3968 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys 11:43:00.0044 3968 vsmraid - ok 11:43:00.0068 3968 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys 11:43:00.0081 3968 vwifibus - ok 11:43:00.0106 3968 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys 11:43:00.0123 3968 WacomPen - ok 11:43:00.0155 3968 WANARP (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys 11:43:00.0211 3968 WANARP - ok 11:43:00.0215 3968 Wanarpv6 (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys 11:43:00.0240 3968 Wanarpv6 - ok 11:43:00.0288 3968 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys 11:43:00.0306 3968 Wd - ok 11:43:00.0336 3968 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys 11:43:00.0356 3968 Wdf01000 - ok 11:43:00.0415 3968 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys 11:43:00.0448 3968 WfpLwf - ok 11:43:00.0468 3968 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys 11:43:00.0487 3968 WIMMount - ok 11:43:00.0549 3968 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\DRIVERS\wmiacpi.sys 11:43:00.0583 3968 WmiAcpi - ok 11:43:00.0636 3968 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys 11:43:00.0700 3968 ws2ifsl - ok 11:43:00.0723 3968 WudfPf (7cadc74271dd6461c452c271b30bd378) C:\Windows\system32\drivers\WudfPf.sys 11:43:00.0766 3968 WudfPf - ok 11:43:00.0799 3968 WUDFRd (3b197af0fff08aa66b6b2241ca538d64) C:\Windows\system32\DRIVERS\WUDFRd.sys 11:43:00.0829 3968 WUDFRd - ok 11:43:00.0864 3968 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0 11:43:01.0010 3968 \Device\Harddisk0\DR0 - ok 11:43:01.0037 3968 Boot (0x1200) (492f91f8c7593c3e4bb6b1f3efe974ee) \Device\Harddisk0\DR0\Partition0 11:43:01.0038 3968 \Device\Harddisk0\DR0\Partition0 - ok 11:43:01.0055 3968 Boot (0x1200) (da8a73c2472fe7a29521139fd8cfd323) \Device\Harddisk0\DR0\Partition1 11:43:01.0068 3968 \Device\Harddisk0\DR0\Partition1 - ok 11:43:01.0083 3968 Boot (0x1200) (591f7815221627b07fef288d83fa4614) \Device\Harddisk0\DR0\Partition2 11:43:01.0098 3968 \Device\Harddisk0\DR0\Partition2 - ok 11:43:01.0099 3968 ============================================================ 11:43:01.0099 3968 Scan finished 11:43:01.0099 3968 ============================================================ 11:43:01.0110 2384 Detected object count: 0 11:43:01.0110 2384 Actual detected object count: 0 |
30.11.2011, 12:18 | #20 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Aus Sicherheitsgründen wurde ihr Windowssystem blockiert Dann bitte jetzt CF ausführen: ComboFix Ein Leitfaden und Tutorium zur Nutzung von ComboFix
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat! Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie Zitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
30.11.2011, 16:00 | #21 |
| Aus Sicherheitsgründen wurde ihr Windowssystem blockiert Da ist er auch schon: Code:
ATTFilter ComboFix 11-11-30.01 - Laner 30.11.2011 15:49:03.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7600.0.1252.49.1031.18.4093.2728 [GMT 1:00] ausgeführt von:: c:\users\Laner\Desktop\ComboFix.exe AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\program files (x86)\Funload.de c:\program files (x86)\Funload.de\Funload.deToolbarHelper.exe c:\program files (x86)\Funload.de\Funload.deToolbarHelper1.exe c:\program files (x86)\Funload.de\GottenAppsContextMenu.xml c:\program files (x86)\Funload.de\INSTALL.LOG c:\program files (x86)\Funload.de\OtherAppsContextMenu.xml c:\program files (x86)\Funload.de\SharedAppsContextMenu.xml c:\program files (x86)\Funload.de\tbFun0.dll c:\program files (x86)\Funload.de\tbFun1.dll c:\program files (x86)\Funload.de\tbFunl.dll c:\program files (x86)\Funload.de\toolbar.cfg c:\program files (x86)\Funload.de\ToolbarContextMenu.xml c:\program files (x86)\Funload.de\uninstall.exe c:\program files (x86)\Funload.de\UNWISE.EXE c:\program files (x86)\Funload.de\UNWISE.INI c:\users\Laner\AppData\Roaming\Microsoft\Windows\Recent\Total War SHOGUN 2 (2).url c:\users\Laner\AppData\Roaming\Microsoft\Windows\Recent\Total War SHOGUN 2.url c:\users\Laner\Documents\Downloads\Integrated_CT2629906.exe D:\install.exe . . ((((((((((((((((((((((( Dateien erstellt von 2011-10-28 bis 2011-11-30 )))))))))))))))))))))))))))))) . . 2011-11-30 14:53 . 2011-11-30 14:53 -------- d-----w- c:\users\Default\AppData\Local\temp 2011-11-29 18:25 . 2011-11-29 18:25 -------- d-----w- C:\_OTL 2011-11-29 13:18 . 2011-10-18 00:27 8570192 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{FDC35495-4AF9-4C9E-8646-A0F4D15E437A}\mpengine.dll 2011-11-27 23:57 . 2011-11-28 00:26 -------- d-----w- c:\program files (x86)\Simple Port Forwarding 2011-11-27 23:57 . 2011-11-27 23:57 -------- d-----w- c:\windows\Simple Port Forwarding 2011-11-25 18:41 . 2011-11-25 18:41 -------- d-----w- c:\users\Laner\AppData\Roaming\Avira 2011-11-25 18:20 . 2011-10-19 15:56 97312 ----a-w- c:\windows\system32\drivers\avgntflt.sys 2011-11-25 18:20 . 2011-10-19 15:56 27760 ----a-w- c:\windows\system32\drivers\avkmgr.sys 2011-11-25 18:20 . 2011-10-19 15:56 130760 ----a-w- c:\windows\system32\drivers\avipbb.sys 2011-11-25 18:20 . 2011-11-25 18:20 -------- d-----w- c:\programdata\Avira 2011-11-25 18:20 . 2011-11-25 18:20 -------- d-----w- c:\program files (x86)\Avira 2011-11-24 17:50 . 2011-11-24 17:50 -------- d-----w- c:\program files (x86)\ESET 2011-11-24 17:43 . 2011-11-25 18:18 -------- d-----w- c:\programdata\Spybot - Search & Destroy 2011-11-24 17:43 . 2011-11-25 18:18 -------- d-----w- c:\program files (x86)\Spybot - Search & Destroy 2011-11-24 17:16 . 2011-11-24 17:16 -------- d-----w- c:\users\Laner\AppData\Roaming\Malwarebytes 2011-11-24 17:16 . 2011-11-24 17:16 -------- d-----w- c:\programdata\Malwarebytes 2011-11-24 17:16 . 2011-11-24 17:16 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2011-11-24 17:16 . 2011-08-31 16:00 25416 ----a-w- c:\windows\system32\drivers\mbam.sys 2011-11-20 13:23 . 2011-11-20 18:29 -------- d-----w- c:\users\Laner\AppData\Local\ESN Sonar 2011-11-19 21:29 . 2011-11-20 13:15 -------- d-----w- c:\users\UpdatusUser 2011-11-19 21:28 . 2011-10-15 08:53 837952 ----a-w- c:\windows\system32\easyupdatusapiu64.dll 2011-11-19 19:29 . 2011-11-29 22:34 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr 2011-11-19 19:29 . 2011-11-19 19:29 -------- d-----w- c:\users\Laner\AppData\Local\PunkBuster 2011-11-19 19:27 . 2011-11-19 19:27 -------- d-----w- c:\program files (x86)\Battlelog Web Plugins 2011-11-19 18:50 . 2011-11-19 18:50 -------- d--h--w- c:\program files (x86)\Common Files\EAInstaller 2011-11-19 18:50 . 2011-11-29 22:34 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.exe 2011-11-19 18:50 . 2011-11-29 20:39 280904 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0 2011-11-19 18:50 . 2011-11-19 19:02 75136 ----a-w- c:\windows\SysWow64\PnkBstrA.exe 2011-11-19 17:38 . 2011-11-19 17:46 -------- d-----w- c:\users\Laner\AppData\Roaming\Origin 2011-11-19 17:37 . 2011-11-19 17:37 -------- d-----w- c:\users\Laner\AppData\Local\Origin 2011-11-19 17:37 . 2011-11-19 19:25 -------- d-----w- c:\programdata\Origin 2011-11-19 17:37 . 2011-11-19 18:18 -------- d-----w- c:\program files (x86)\Origin Games 2011-11-19 17:37 . 2011-11-19 17:41 -------- d-----w- c:\program files (x86)\Origin 2011-11-17 18:09 . 2011-11-28 23:05 -------- d-----w- c:\users\Laner\AppData\Local\CrashDumps 2011-11-17 17:22 . 2011-11-18 01:19 -------- d-----w- c:\users\Laner\AppData\Local\NPE 2011-11-17 17:22 . 2011-11-17 17:23 -------- d-----w- c:\programdata\Norton 2011-11-12 00:04 . 2011-11-12 00:04 -------- d-----w- c:\users\Laner\AppData\Local\Skyrim 2011-11-11 20:08 . 2011-10-01 05:28 886784 ----a-w- c:\program files\Common Files\System\wab32.dll 2011-11-11 20:08 . 2011-10-01 04:43 708608 ----a-w- c:\program files (x86)\Common Files\System\wab32.dll 2011-11-11 19:52 . 2011-09-29 04:09 3141120 ----a-w- c:\windows\system32\win32k.sys 2011-11-11 19:49 . 2011-08-17 05:32 613888 ----a-w- c:\windows\system32\psisdecd.dll 2011-11-11 19:49 . 2011-08-17 05:27 75776 ----a-w- c:\windows\system32\MSDvbNP.ax 2011-11-11 19:49 . 2011-08-17 05:27 288256 ----a-w- c:\windows\system32\MSNP.ax 2011-11-11 19:49 . 2011-08-17 05:27 108032 ----a-w- c:\windows\system32\psisrndr.ax 2011-11-11 19:49 . 2011-08-17 05:27 104960 ----a-w- c:\windows\system32\Mpeg2Data.ax 2011-11-11 19:49 . 2011-08-17 04:26 465408 ----a-w- c:\windows\SysWow64\psisdecd.dll 2011-11-11 19:49 . 2011-08-17 04:22 75776 ----a-w- c:\windows\SysWow64\psisrndr.ax 2011-11-11 19:49 . 2011-08-17 04:22 72704 ----a-w- c:\windows\SysWow64\Mpeg2Data.ax 2011-11-11 19:49 . 2011-08-17 04:22 59904 ----a-w- c:\windows\SysWow64\MSDvbNP.ax 2011-11-11 19:49 . 2011-08-17 04:22 204288 ----a-w- c:\windows\SysWow64\MSNP.ax 2011-11-11 19:47 . 2011-08-15 05:08 6144 ----a-w- c:\program files\Internet Explorer\iecompat.dll 2011-11-11 19:47 . 2011-08-15 04:25 6144 ----a-w- c:\program files (x86)\Internet Explorer\iecompat.dll 2011-11-11 19:42 . 2011-08-27 05:40 861184 ----a-w- c:\windows\system32\oleaut32.dll 2011-11-11 19:42 . 2011-08-27 05:40 331776 ----a-w- c:\windows\system32\oleacc.dll 2011-11-11 19:42 . 2011-08-27 04:43 571904 ----a-w- c:\windows\SysWow64\oleaut32.dll 2011-11-11 19:42 . 2011-08-27 04:43 233472 ----a-w- c:\windows\SysWow64\oleacc.dll . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-11-30 14:54 . 2010-12-28 10:27 25640 ----a-w- c:\windows\gdrv.sys 2011-10-15 08:53 . 2010-12-28 10:24 8791360 ----a-w- c:\windows\system32\nvwgf2umx.dll 2011-10-15 08:53 . 2010-12-28 10:24 7041856 ----a-w- c:\windows\SysWow64\nvwgf2um.dll 2011-10-15 08:53 . 2010-12-28 10:24 2808128 ----a-w- c:\windows\system32\nvapi64.dll 2011-10-15 08:53 . 2010-12-28 10:24 2458432 ----a-w- c:\windows\SysWow64\nvapi.dll 2011-10-15 08:53 . 2010-12-28 10:24 13205312 ----a-w- c:\windows\SysWow64\nvd3dum.dll 2011-10-15 08:53 . 2010-10-16 12:13 10406208 ----a-w- c:\windows\system32\nvcpl.dll 2011-10-15 08:53 . 2010-10-16 12:13 5067584 ----a-w- c:\windows\system32\nvsvc64.dll 2011-10-15 08:53 . 2010-10-16 12:13 222528 ----a-w- c:\windows\system32\nvmctray.dll 2011-10-15 08:53 . 2010-10-16 12:13 3074368 ----a-w- c:\windows\system32\nvsvcr.dll 2011-10-15 08:53 . 2010-10-16 12:13 1640768 ----a-w- c:\windows\system32\nvvsvc.exe 2011-10-15 08:53 . 2010-10-16 12:13 137536 ----a-w- c:\windows\system32\nvshext.dll 2011-10-14 23:54 . 2011-10-14 23:54 321856 ----a-w- c:\windows\SysWow64\nvStreaming.exe . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1475072] "Steam"="c:\program files (x86)\Steam\steam.exe" [2011-08-04 1242448] "DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2011-01-20 1305408] "BitTorrent"="c:\program files (x86)\BitTorrent\BitTorrent.exe" [2010-12-29 397688] "ManyCam"="c:\program files (x86)\ManyCam\Bin\ManyCam.exe" [2011-03-21 1752136] "Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2011-10-13 17351304] "EADM"="c:\program files (x86)\Origin\Origin.exe" [2011-11-07 28846216] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "BCU"="c:\program files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe" [2009-10-15 375000] "JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2010-01-19 43632] "NUSB3MON"="c:\program files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2009-11-20 106496] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2010-10-29 249064] "DivXUpdate"="c:\program files (x86)\DivX\DivX Update\DivXUpdate.exe" [2011-03-21 1230704] "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2011-10-19 258512] "EKIJ5000StatusMonitor"="c:\windows\System32\spool\drivers\x64\3\EKIJ5000MUI.exe" [2010-09-02 2045440] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2010-12-31 1196048] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 136176] R2 ICQ Service;ICQ Service;c:\program files (x86)\ICQ6Toolbar\ICQ Service.exe [x] R3 AppleChargerSrv;AppleChargerSrv;c:\windows\system32\AppleChargerSrv.exe [x] R3 gupdatem;Google Update-Dienst (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 136176] R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe [x] S0 hotcore3;hc3ServiceName;c:\windows\system32\DRIVERS\hotcore3.sys [x] S1 AppleCharger;AppleCharger;c:\windows\system32\DRIVERS\AppleCharger.sys [x] S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [x] S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [x] S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2011-10-19 86224] S2 BCUService;Browser Configuration Utility Service;c:\program files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe [2009-10-15 223464] S2 ES lite Service;ES lite Service for program management.;c:\program files (x86)\Gigabyte\EasySaver\ESSVR.EXE [2009-08-24 68136] S2 JMB36X;JMB36X;c:\windows\SysWOW64\XSrvSetup.exe [2010-01-19 72304] S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-10-15 2253120] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-10-14 381248] S3 nusb3hub;NEC Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [x] S3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [x] S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x] S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [x] . . Inhalt des "geplante Tasks" Ordners . 2011-11-30 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 09:31] . 2011-11-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-01-26 09:31] . . --------- x86-64 ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-04-06 10144288] "Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2008-02-29 242192] "EKIJ5000StatusMonitor"="c:\windows\system32\spool\DRIVERS\x64\3\EKIJ5000MUI.exe" [2010-09-02 2045440] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "LoadAppInit_DLLs"=0x0 . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = mLocal Page = IE: {{7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - c:\program files (x86)\ICQ7.5\ICQ.exe TCP: DhcpNameServer = 192.168.2.1 FF - ProfilePath - c:\users\Laner\AppData\Roaming\Mozilla\Firefox\Profiles\mq82ssea.default\ FF - prefs.js: browser.search.defaulturl - FF - prefs.js: browser.search.selectedEngine - Google pref('extensions.shownSelectionUI',true); pref('extensions.autoDisableScopes',0); . - - - - Entfernte verwaiste Registrierungseinträge - - - - . AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe AddRemove-Funload.de Toolbar - c:\program files (x86)\Funload.de\uninstall.exe AddRemove-ICQToolbar - c:\program files (x86)\ICQ6Toolbar\ICQUnToolbar.exe . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-128432448-2284216070-1018584416-1000\Software\SecuROM\License information*] "datasecu"=hex:d3,af,df,c7,41,bb,30,8f,b0,c4,91,d6,e2,92,ba,44,08,39,7a,99,29, 63,18,7e,ad,89,2d,d4,50,63,7b,2b,0c,73,13,bf,d0,42,be,52,4c,4d,d7,ca,b3,8e,\ "rkeysecu"=hex:35,1c,4f,ee,99,72,0d,b8,74,7a,68,8b,8e,ae,85,49 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10o_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10o_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10o.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10o.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10o.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10o.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}] @Denied: (A 2) (Everyone) @="IFlashBroker3" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib] @="{6EF568F4-D437-4466-AA63-A3645136D93E}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}] @Denied: (A 2) (Everyone) @="IFlashBroker" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\TypeLib] @="{6EF568F4-D437-4466-AA63-A3645136D93E}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{DDF4CE26-4BDA-42BC-B0F0-0E75243AD285}] @Denied: (A 2) (Everyone) @="IFlashBroker2" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{DDF4CE26-4BDA-42BC-B0F0-0E75243AD285}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{DDF4CE26-4BDA-42BC-B0F0-0E75243AD285}\TypeLib] @="{6EF568F4-D437-4466-AA63-A3645136D93E}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe c:\windows\SysWOW64\PnkBstrA.exe c:\program files\Logitech\SetPoint\x86\SetPoint32.exe c:\program files (x86)\Common Files\Steam\SteamService.exe . ************************************************************************** . Zeit der Fertigstellung: 2011-11-30 15:59:18 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2011-11-30 14:59 . Vor Suchlauf: 11 Verzeichnis(se), 20.602.621.952 Bytes frei Nach Suchlauf: 15 Verzeichnis(se), 20.487.979.008 Bytes frei . - - End Of File - - 5AE2FA5B3C4E5AD550E6AFD03D8B3556 |
30.11.2011, 16:03 | #22 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Aus Sicherheitsgründen wurde ihr Windowssystem blockiert Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
__________________ Logfiles bitte immer in CODE-Tags posten |
30.11.2011, 16:25 | #23 |
| Aus Sicherheitsgründen wurde ihr Windowssystem blockiertCode:
ATTFilter aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software Run date: 2011-11-30 16:11:04 ----------------------------- 16:11:04.901 OS Version: Windows x64 6.1.7600 16:11:04.901 Number of processors: 4 586 0x403 16:11:04.902 ComputerName: LANER-PC UserName: Laner 16:11:05.200 Initialize success 16:12:50.079 AVAST engine defs: 11113000 16:13:08.444 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000058 16:13:08.450 Disk 0 Vendor: SAMSUNG_ 1AJ1 Size: 953869MB BusType: 11 16:13:10.461 Disk 0 MBR read successfully 16:13:10.468 Disk 0 MBR scan 16:13:10.475 Disk 0 Windows 7 default MBR code 16:13:10.478 Service scanning 16:13:11.699 Modules scanning 16:13:11.707 Disk 0 trace - called modules: 16:13:11.717 ntoskrnl.exe CLASSPNP.SYS disk.sys amdxata.sys ACPI.sys storport.sys hal.dll amdsata.sys 16:13:11.725 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80039fb790] 16:13:11.733 3 CLASSPNP.SYS[fffff8800180143f] -> nt!IofCallDriver -> [0xfffffa80039fa6a0] 16:13:11.736 5 amdxata.sys[fffff880011337a8] -> nt!IofCallDriver -> [0xfffffa800458bbc0] 16:13:11.740 7 ACPI.sys[fffff88000e35781] -> nt!IofCallDriver -> \Device\00000058[0xfffffa800458e9c0] 16:13:12.085 AVAST engine scan C:\Windows 16:13:15.561 AVAST engine scan C:\Windows\system32 16:14:47.278 AVAST engine scan C:\Windows\system32\drivers 16:14:55.226 AVAST engine scan C:\Users\Laner 16:19:32.480 AVAST engine scan C:\ProgramData 16:21:37.276 Scan finished successfully 16:24:37.966 Disk 0 MBR has been saved successfully to "C:\Users\Laner\Desktop\MBR.dat" 16:24:37.971 The log file has been saved successfully to "C:\Users\Laner\Desktop\aswMBR.txt" |
30.11.2011, 16:30 | #24 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Aus Sicherheitsgründen wurde ihr Windowssystem blockiert Sieht ok aus. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs. Denk dran beide Tools zu updaten vor dem Scan!! Anschließend über den OnlineScanner von ESET eine zusätzliche Meinung zu holen ist auch nicht verkehrt: ESET Online Scanner
__________________ Logfiles bitte immer in CODE-Tags posten |
30.11.2011, 19:54 | #25 |
| Aus Sicherheitsgründen wurde ihr Windowssystem blockiert Hier der SUPERAntiSpyware Log: Code:
ATTFilter SUPERAntiSpyware Scan Log hxxp://www.superantispyware.com Generated 11/30/2011 at 05:30 PM Application Version : 5.0.1136 Core Rules Database Version : 7997 Trace Rules Database Version: 5809 Scan type : Complete Scan Total Scan Time : 00:54:03 Operating System Information Windows 7 Home Premium 64-bit (Build 6.01.7600) UAC On - Administrator Memory items scanned : 661 Memory threats detected : 0 Registry items scanned : 74705 Registry threats detected : 4 File items scanned : 61198 File threats detected : 539 Browser Hijacker.Deskbar (x86) HKCR\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B} (x86) HKCR\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}\ProxyStubClsid32 (x86) HKCR\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}\TypeLib (x86) HKCR\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}\TypeLib#Version Adware.Tracking Cookie C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\laner@ads.intergi[2].txt [ /ads.intergi ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\laner@paypal.112.2o7[1].txt [ /paypal.112.2o7 ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\laner@server.cpmstar[2].txt [ /server.cpmstar ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\laner@stats.paypal[2].txt [ /stats.paypal ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\laner@youporn[1].txt [ /youporn ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\J8FYUI8U.txt [ /imrworldwide.com ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\KQOAKQ10.txt [ /ad2.adfarm1.adition.com ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\HR7E3SIS.txt [ /zanox.com ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\9UY2I7MJ.txt [ /zanox-affiliate.de ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\BLAUCMWQ.txt [ /im.banner.t-online.de ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\3JAZD4IB.txt [ /traffictrack.de ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\9IG1ZGMT.txt [ /eas.apm.emediate.eu ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\5ORUFDEV.txt [ /xiti.com ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\KG1E4X7P.txt [ /webmasterplan.com ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\ARJWY9Z4.txt [ /invitemedia.com ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\9Y6Z3C3Q.txt [ /adx.chip.de ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\392F3N06.txt [ /ad.zanox.com ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\TWC9EJF3.txt [ /doubleclick.net ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\BTTC1CA6.txt [ /adfarm1.adition.com ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\UWP02TZY.txt [ /tracking.quisma.com ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\AC46ED52.txt [ /adtech.de ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\G3X3YAED.txt [ /serving-sys.com ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\M792DIEZ.txt [ /ad3.adfarm1.adition.com ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\NB60WZML.txt [ /ad.ad-srv.net ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\5WD1D5AP.txt [ /ad.360yield.com ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\00TDSGSS.txt [ /smartadserver.com ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\6XMPEHCD.txt [ /ad4.adfarm1.adition.com ] C:\Users\Laner\AppData\Roaming\Microsoft\Windows\Cookies\Q27FLCR0.txt [ /atdmt.com ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@ads.youporn[2].txt [ Cookie:laner@ads.youporn.com/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@msnportal.112.2o7[1].txt [ Cookie:laner@msnportal.112.2o7.net/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@zanox[1].txt [ Cookie:laner@zanox.com/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\169QP61M.txt [ Cookie:laner@ad.yieldmanager.com/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@content.yieldmanager[1].txt [ Cookie:laner@content.yieldmanager.com/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@bs.serving-sys[2].txt [ Cookie:laner@bs.serving-sys.com/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@traffictrack[1].txt [ Cookie:laner@traffictrack.de/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@tracking.mindshare[1].txt [ Cookie:laner@tracking.mindshare.de/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@myaccount.turbine[1].txt [ Cookie:laner@myaccount.turbine.com/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\85D9OXU0.txt [ Cookie:laner@invitemedia.com/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@webmasterplan[2].txt [ Cookie:laner@webmasterplan.com/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@adx.chip[1].txt [ Cookie:laner@adx.chip.de/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\LGNECUR6.txt [ Cookie:laner@www.burstnet.com/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@yadro[2].txt [ Cookie:laner@yadro.ru/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\LGCXBTTY.txt [ Cookie:laner@collective-media.net/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\3KOMELLN.txt [ Cookie:laner@doubleclick.net/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@fastclick[1].txt [ Cookie:laner@fastclick.net/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@adfarm1.adition[2].txt [ Cookie:laner@adfarm1.adition.com/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@ero-advertising[1].txt [ Cookie:laner@ero-advertising.com/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@serving-sys[1].txt [ Cookie:laner@serving-sys.com/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@adultfriendfinder[2].txt [ Cookie:laner@adultfriendfinder.com/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\laner@youporn[1].txt [ Cookie:laner@youporn.com/ ] C:\USERS\LANER\AppData\Roaming\Microsoft\Windows\Cookies\Low\Q8WVNOMV.txt [ Cookie:laner@mediaplex.com/ ] C:\USERS\LANER\Cookies\KQOAKQ10.txt [ Cookie:laner@ad2.adfarm1.adition.com/ ] C:\USERS\LANER\Cookies\laner@server.cpmstar[2].txt [ Cookie:laner@server.cpmstar.com/ ] C:\USERS\LANER\Cookies\HR7E3SIS.txt [ Cookie:laner@zanox.com/ ] C:\USERS\LANER\Cookies\9UY2I7MJ.txt [ Cookie:laner@zanox-affiliate.de/ ] C:\USERS\LANER\Cookies\BLAUCMWQ.txt [ Cookie:laner@im.banner.t-online.de/ ] C:\USERS\LANER\Cookies\3JAZD4IB.txt [ Cookie:laner@traffictrack.de/ ] C:\USERS\LANER\Cookies\9IG1ZGMT.txt [ Cookie:laner@eas.apm.emediate.eu/ ] C:\USERS\LANER\Cookies\5ORUFDEV.txt [ Cookie:laner@xiti.com/ ] C:\USERS\LANER\Cookies\KG1E4X7P.txt [ Cookie:laner@webmasterplan.com/ ] C:\USERS\LANER\Cookies\ARJWY9Z4.txt [ Cookie:laner@invitemedia.com/ ] C:\USERS\LANER\Cookies\9Y6Z3C3Q.txt [ Cookie:laner@adx.chip.de/ ] C:\USERS\LANER\Cookies\392F3N06.txt [ Cookie:laner@ad.zanox.com/ ] C:\USERS\LANER\Cookies\TWC9EJF3.txt [ Cookie:laner@doubleclick.net/ ] C:\USERS\LANER\Cookies\BTTC1CA6.txt [ Cookie:laner@adfarm1.adition.com/ ] C:\USERS\LANER\Cookies\AC46ED52.txt [ Cookie:laner@adtech.de/ ] C:\USERS\LANER\Cookies\laner@paypal.112.2o7[1].txt [ Cookie:laner@paypal.112.2o7.net/ ] C:\USERS\LANER\Cookies\G3X3YAED.txt [ Cookie:laner@serving-sys.com/ ] C:\USERS\LANER\Cookies\laner@youporn[1].txt [ Cookie:laner@youporn.com/ ] C:\USERS\LANER\Cookies\laner@stats.paypal[2].txt [ Cookie:laner@stats.paypal.com/ ] C:\USERS\LANER\Cookies\6XMPEHCD.txt [ Cookie:laner@ad4.adfarm1.adition.com/ ] media.mtvnservices.com [ C:\USERS\LANER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\AC7Z5YB2 ] secure-us.imrworldwide.com [ C:\USERS\LANER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\AC7Z5YB2 ] .tracking.percentmobile.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .hotlog.ru [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .girlsteachsex.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] dc.tremormedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .ads.crakmedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .ads.crakmedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adultswim.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.adultswim.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adultswim.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.adultswim.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] tracking.sim-technik.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] rts.pgmediaserve.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] rts.pgmediaserve.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] rts.pgmediaserve.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tto2.traffictrack.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .track.bannedcelebs.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .track.bannedcelebs.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .pro-market.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .pro-market.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www9.addfreestats.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .rambler.ru [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .traffichaus.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .statcounter.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] fl01.ct2.comclick.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] fl01.ct2.comclick.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] fl01.ct2.comclick.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] fl01.ct2.comclick.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] adv.arubamediamarketing.it [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] statse.webtrendslive.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] tracking.oe24.at [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .pubads.g.doubleclick.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .pubads.g.doubleclick.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .chrisonemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] imagevenue.advertserve.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] imagevenue.advertserve.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .indieclick.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .optimize.indieclick.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .optimize.indieclick.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] optimize.indieclick.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] optimize.indieclick.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .cracked.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .cracked.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .cracked.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .cracked.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .cracked.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .cracked.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .cracked.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad.adserver01.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] wstat.wibiya.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .xiti.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .stats.complex.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .stats.complex.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .histats.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .histats.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .mm.chitika.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ads.audience2media.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .audience2media.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ads.audience2media.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .yieldmanager.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .dmtracker.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] media.gan-online.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .gostats.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .youporn.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .toplist.cz [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .eyewonder.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .eyewonder.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .viacom.adbureau.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .viacom.adbureau.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .amazon-adsystem.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .amazon-adsystem.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ww251.smartadserver.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adinterax.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adinterax.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] adserver1.mokono.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ads.trafficjunky.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .lucidmedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .ero-advertising.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] adultadincome.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .pointroll.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .pointroll.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .harrenmedianetwork.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] tomtailor.dyntracker.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] adserver.sevenload.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .estat.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .kontera.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.sexkiste.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .sexkiste.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .sexkiste.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .myroitracking.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] auth.breakmedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ads.adxvalue.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ads.adxvalue.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ads.adxvalue.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ads.adxvalue.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ads.adxvalue.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ads.adxvalue.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .a.revenuemax.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .gametracker.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adxpose.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] adserver.twitpic.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .interclick.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .interclick.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .a1.interclick.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .interclick.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.tldadserv.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .yadro.ru [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adserver.adtechus.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .burstnet.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .www.burstnet.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .at.atwola.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tacoda.at.atwola.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tacoda.at.atwola.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tacoda.at.atwola.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .at.atwola.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .eaeacom.112.2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .guj.122.2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .hearstugo.112.2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .mtvn.112.2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .hearstmagazines.112.2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ads.zeusclicks.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] spielerstats.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.statshow.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.statshow.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.statshow.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.statshow.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.statshow.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.statshow.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.statshow.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.statshow.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .de.partypoker.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .enoratraffic.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ads.crakmedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .youporn.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .youporn.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adxpansion.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .eset.122.2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .account.swtor.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.faktmedia.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad.jdtracker.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] adsrv1.admediate.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ads.247activemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adlegend.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.elitepvpers.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.elitepvpers.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.elitepvpers.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .elitepvpers.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .elitepvpers.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .elitepvpers.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .eyewonder.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .eyewonder.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] accounts.google.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .getclicky.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .static.getclicky.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] in.getclicky.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .lfstmedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .lfstmedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .lfstmedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .lfstmedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tracking.mindshare.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .medialeopard.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tribalfusion.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] s0.2mdn.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .hightraffic.hugoboss.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .hightraffic.hugoboss.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .hightraffic.hugoboss.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.usenext.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .viewablemedia.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] www.zanox-affiliate.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .bs.serving-sys.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .bs.serving-sys.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] stats.computecmedia.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adviva.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] stats.computecmedia.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .unitymedia.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .unitymedia.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad1.adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adform.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .zanox.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad4.adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad2.adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] ad3.adfarm1.adition.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\LANER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MQ82SSEA.DEFAULT\COOKIES.SQLITE ] Code:
ATTFilter Malwarebytes' Anti-Malware 1.51.2.1300 www.malwarebytes.org Datenbank Version: 8279 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 30.11.2011 17:41:49 mbam-log-2011-11-30 (17-41-49).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|) Durchsuchte Objekte: 385229 Laufzeit: 1 Stunde(n), 9 Minute(n), 54 Sekunde(n) Infizierte Speicherprozesse: 0 Infizierte Speichermodule: 0 Infizierte Registrierungsschlüssel: 0 Infizierte Registrierungswerte: 0 Infizierte Dateiobjekte der Registrierung: 0 Infizierte Verzeichnisse: 0 Infizierte Dateien: 0 Infizierte Speicherprozesse: (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: (Keine bösartigen Objekte gefunden) Infizierte Dateien: (Keine bösartigen Objekte gefunden) Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok ESETSmartInstaller@High as downloader log: all ok # version=7 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6583 # api_version=3.0.2 # EOSSerial=340f105c26d1524eb8853574bb1feee3 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2011-11-27 02:54:32 # local_time=2011-11-27 03:54:32 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7600 NT # compatibility_mode=1280 16777215 100 0 0 0 0 0 # compatibility_mode=1792 16777215 100 0 159321 159321 0 0 # compatibility_mode=5893 16776573 100 94 12669 74806635 0 0 # compatibility_mode=8192 67108863 100 0 247512 247512 0 0 # scanned=225121 # found=2 # cleaned=0 # scan_time=4750 C:\Users\Laner\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\11\7ed88b0b-2abbea11 Java/TrojanDownloader.OpenStream.NBW trojan (unable to clean) 00000000000000000000000000000000 I C:\Users\Laner\Downloads\SoftonicDownloader_fuer_kaspersky-tdsskiller.exe Win32/SoftonicDownloader application (unable to clean) 00000000000000000000000000000000 I ESETSmartInstaller@High as downloader log: all ok ESETSmartInstaller@High as downloader log: all ok # version=7 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6583 # api_version=3.0.2 # EOSSerial=340f105c26d1524eb8853574bb1feee3 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2011-11-30 06:48:28 # local_time=2011-11-30 07:48:28 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7600 NT # compatibility_mode=1280 16777215 100 0 0 0 0 0 # compatibility_mode=1792 16777215 100 0 429905 429905 0 0 # compatibility_mode=5893 16776573 100 94 10071 75077219 0 0 # compatibility_mode=8192 67108863 100 0 518096 518096 0 0 # scanned=210137 # found=1 # cleaned=0 # scan_time=7360 C:\Users\Laner\Downloads\SoftonicDownloader_fuer_kaspersky-tdsskiller.exe Win32/SoftonicDownloader application (unable to clean) 00000000000000000000000000000000 I LG dieFackel |
30.11.2011, 21:54 | #26 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Aus Sicherheitsgründen wurde ihr Windowssystem blockiert Nur ein paar Überreste und Cookies. Kann alles weg. Zitat:
Beschreib mal kurz was du unter brain.exe verstehst.
__________________ Logfiles bitte immer in CODE-Tags posten |
30.11.2011, 22:08 | #27 |
| Aus Sicherheitsgründen wurde ihr Windowssystem blockiert hxxp://brain.yubb.de/ undorial hat das in seiner Signatur... Mit welchem Programm soll ich die sachen nun löschen? |
30.11.2011, 22:12 | #28 | ||
/// Winkelfunktion /// TB-Süch-Tiger™ | Aus Sicherheitsgründen wurde ihr Windowssystem blockiertZitat:
Vllt solltest du da mal RICHTIG lesen Zitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
01.12.2011, 13:07 | #29 |
| Aus Sicherheitsgründen wurde ihr Windowssystem blockiert Hätte ich tatsächlich nicht nur überfliegen sollen, geschieht mir aber recht^^ Habs jetzt entfernt, haben wir damit mein Problem gelöst? |
02.12.2011, 11:26 | #30 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Aus Sicherheitsgründen wurde ihr Windowssystem blockiert Ja ist der Rechner denn nun wieder ok? Wenn ja wären wir durch! Die Programme, die hier zum Einsatz kamen, können alle wieder runter. CF kann über Start, Ausführen mit combofix /uninstall entfernt werden. Melde dich falls es da Fehlermeldungen zu gibt. Malwarebytes zu behalten ist kein Fehler. Kannst ja 1x im Monat damit scannen, aber immer vorher ans Update denken. Bitte abschließend die Updates prüfen, unten mein Leitfaden dazu. Um in Zukunft die Aktualität der installierten Programme besser im Überblick zu halten, kannst du zB Secunia PSI verwenden. Für noch mehr Sicherheit solltest Du nach der beseitigten Infektion auch möglichst alle Passwörter ändern. Microsoftupdate Windows XP: Besuch mit dem IE die MS-Updateseite und lass Dir alle wichtigen Updates installieren. Windows Vista/7: Anleitung Windows-Update PDF-Reader aktualisieren Ein veralteter AdobeReader stellt ein großes Sicherheitsrisiko dar. Du solltest daher besser alte Versionen vom AdobeReader über Systemsteuerung => Software bzw. Programme und Funktionen deinstallieren, indem Du dort auf "Adobe Reader x.0" klickst und das Programm entfernst. (falls du AdobeReader installiert hast) Ich empfehle einen alternativen PDF-Reader wie PDF Xchange Viewer, SumatraPDF oder Foxit PDF Reader, die sind sehr viel schlanker und flotter als der AdobeReader. Bitte überprüf bei der Gelegenheit auch die Aktualität des Flashplayers, hier der direkte Downloadlink: Mozilla und andere Browser => http://filepony.de/?q=Flash+Player Internet Explorer => http://fpdownload.adobe.com/get/flas..._player_ax.exe Natürlich auch darauf achten, dass andere installierte Browser wie zB Firefox, Opera oder Chrome aktuell sind. Java-Update Veraltete Java-Installationen sind ein Sicherheitsrisiko, daher solltest Du die alten Versionen löschen (falls vorhanden, am besten mit JavaRa) und auf die neuste aktualisieren. Beende dazu alle Programme (v.a. die Browser), klick danach auf Start, Systemsteuerung, Software und deinstalliere darüber alle aufgelisteten Java-Versionen. Lad Dir danach von hier das aktuelle Java SE Runtime Environment (JRE) herunter und installiere es.
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Aus Sicherheitsgründen wurde ihr Windowssystem blockiert |
abgesicherte, abgesicherten, aus sicherheitsgründen wurde ihr windowssystem blockiert, avira, bezahlen, bezahlen und runterladen, bildschirm, blockiert, brauche, button, dringend, entfernt, erscheint, gefunde, helfer, laufen, liebe, malwarebytes, modus, nichts, nutze, runterladen, schwarzer, schwarzer bildschirm, sicherheitsgründe, start, tagen, virus windowssystem blockiert, windowssystem, worte, wurde ihr |