|
Plagegeister aller Art und deren Bekämpfung: Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/SchreibgeschWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
09.01.2012, 15:24 | #16 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/Schreibgesch Wiederhol den Fix. OTL muss per Rechtsklicks => als Administrator ausgeführt werden!
__________________ Logfiles bitte immer in CODE-Tags posten |
09.01.2012, 15:26 | #17 |
| Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/Schreibgesch Ich hebe e nochmal probiert, wieder das gleiche, die Möglichkeit auf ok z klicken bekam ich nicht. Auch lassen sich manche Seiten in Firefox nichtmehr adäquat aufrufen, so wie z.B. mein T-Online E-Mail account. Screenshot liegt bei. Gruß Sebastian |
09.01.2012, 15:31 | #18 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/Schreibgesch Joa, das bringt mir so nichts. Probier den Fix im abgesicherten Modus:
__________________Abgesicherter Modus zur Bereinigung
__________________ |
09.01.2012, 15:43 | #19 |
| Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/Schreibgesch Das mit dem abgesicherten Modus sah besser aus. Das bekam ich: Code:
ATTFilter All processes killed ========== OTL ========== No active process named ApplicationUpdater.exe was found! No active process named SearchSettings.exe was found! No active process named winampa.exe was found! HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully! HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully! HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully! Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{ba14329e-9550-4989-b3f2-9732e92d17cc} not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ba14329e-9550-4989-b3f2-9732e92d17cc}\ not found. File C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully! HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully! Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{B922D405-6D13-4A2B-AE89-08A030DA4402} not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B922D405-6D13-4A2B-AE89-08A030DA4402}\ not found. File C:\Program Files (x86)\pdfforge Toolbar\IE\4.9\pdfforgeToolbarIE.dll not found. Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{ba14329e-9550-4989-b3f2-9732e92d17cc} not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ba14329e-9550-4989-b3f2-9732e92d17cc}\ not found. File C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll not found. Prefs.js: "Yahoo" removed from browser.search.defaultenginename Prefs.js: "chr-greentree_ff&type=827316&ilc=12" removed from browser.search.param.yahoo-fr Prefs.js: "Yahoo" removed from browser.search.selectedEngine Prefs.js: true removed from browser.search.useDBForOrder Prefs.js: "hxxp://de.search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=827316&p=" removed from keyword.URL Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B922D405-6D13-4A2B-AE89-08A030DA4402}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B922D405-6D13-4A2B-AE89-08A030DA4402}\ not found. File C:\Program Files (x86)\pdfforge Toolbar\IE\4.9\pdfforgeToolbarIE.dll not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ba14329e-9550-4989-b3f2-9732e92d17cc}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ba14329e-9550-4989-b3f2-9732e92d17cc}\ not found. File C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}\ not found. File C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll not found. 64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{8dcb7100-df86-4384-8842-8fa844297b3f} not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f}\ not found. File C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{B922D405-6D13-4A2B-AE89-08A030DA4402} not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B922D405-6D13-4A2B-AE89-08A030DA4402}\ not found. File C:\Program Files (x86)\pdfforge Toolbar\IE\4.9\pdfforgeToolbarIE.dll not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{ba14329e-9550-4989-b3f2-9732e92d17cc} not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ba14329e-9550-4989-b3f2-9732e92d17cc}\ not found. File C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked not found. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{BA14329E-9550-4989-B3F2-9732E92D17CC} not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA14329E-9550-4989-B3F2-9732E92D17CC}\ not found. File C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SearchSettings not found. File C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\WinampAgent not found. File C:\Program Files (x86)\Winamp\winampa.exe not found. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom\\AutoRun|DWORD:1 /E : value set successfully! File not found. File F:\autorun.inf not found. Folder C:\Users\Sebastian\AppData\Roaming\cYo\ not found. Folder C:\Users\Sebastian\AppData\Local\cYo\ not found. File C:\ProgramData\FullRemove.exe not found. Item C:\Windows\explorer.exe is whitelisted and cannot be moved. Folder C:\Users\Sebastian\AppData\Roaming\pdfforge\ not found. ========== FILES ========== File\Folder C:\Program Files (x86)\Application Updater not found. File\Folder C:\Program Files (x86)\Common Files\Spigot not found. ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Public User: Sebastian ->Temp folder emptied: 2913 bytes ->Temporary Internet Files folder emptied: 43810 bytes ->FireFox cache emptied: 8714287 bytes ->Flash cache emptied: 671 bytes User: UpdatusUser ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 5364 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes RecycleBin emptied: 216538 bytes Total Files Cleaned = 9,00 mb C:\Windows\System32\drivers\etc\Hosts moved successfully. HOSTS file reset successfully OTL by OldTimer - Version 3.2.31.0 log created on 01092012_153840 Files\Folders moved on Reboot... C:\Users\Sebastian\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. Registry entries deleted on Reboot... Gruß Sebastian |
09.01.2012, 16:01 | #20 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/Schreibgesch Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten => http://www.trojaner-board.de/82358-t...entfernen.html Das Tool so einstellen wie unten im Bild angegeben - klick auf change parameters und setze die Haken wie im folgenden Screenshot abgebildet, Dann auf Start Scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten. Wenn du das Log nicht findest oder den Inhalt kopieren und in dein Posting übertragen kannst, dann schau bitte direkt auf deiner Windows-Systempartition (meistens Laufwerk C nach, da speichert der TDSS-Killer seine Logs. Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten! Falls du durch die Infektion auf deine Dokumente/Eigenen Dateien nicht zugreifen kannst, Verknüpfungen auf dem Desktop oder im Startmenü unter "alle Programme" fehlen, bitte unhide ausführen: Downloade dir bitte unhide.exe und speichere diese Datei auf deinem Desktop. Starte das Tool und es sollten alle Dateien und Ordner wieder sichtbar sein. ( Könnte eine Weile dauern ) Windows-Vista und Windows-7-User müssen das Tool per Rechtsklick als Administrator ausführen!
__________________ Logfiles bitte immer in CODE-Tags posten |
09.01.2012, 16:21 | #21 |
| Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/Schreibgesch Hier wäre dann das Log: Code:
ATTFilter 16:13:56.0223 4796 TDSS rootkit removing tool 2.6.25.0 Dec 23 2011 14:51:16 16:13:56.0574 4796 ============================================================ 16:13:56.0574 4796 Current date / time: 2012/01/09 16:13:56.0574 16:13:56.0574 4796 SystemInfo: 16:13:56.0574 4796 16:13:56.0574 4796 OS Version: 6.1.7601 ServicePack: 1.0 16:13:56.0574 4796 Product type: Workstation 16:13:56.0574 4796 ComputerName: SEBASTIAN-PC 16:13:56.0574 4796 UserName: Sebastian 16:13:56.0574 4796 Windows directory: C:\Windows 16:13:56.0574 4796 System windows directory: C:\Windows 16:13:56.0574 4796 Running under WOW64 16:13:56.0574 4796 Processor architecture: Intel x64 16:13:56.0574 4796 Number of processors: 4 16:13:56.0574 4796 Page size: 0x1000 16:13:56.0574 4796 Boot type: Normal boot 16:13:56.0574 4796 ============================================================ 16:13:57.0420 4796 Initialize success 16:14:30.0289 0876 ============================================================ 16:14:30.0289 0876 Scan started 16:14:30.0289 0876 Mode: Manual; SigCheck; TDLFS; 16:14:30.0289 0876 ============================================================ 16:14:30.0582 0876 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys 16:14:30.0720 0876 1394ohci - ok 16:14:30.0779 0876 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys 16:14:30.0790 0876 ACPI - ok 16:14:30.0815 0876 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys 16:14:30.0908 0876 AcpiPmi - ok 16:14:30.0967 0876 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\drivers\adp94xx.sys 16:14:31.0038 0876 adp94xx - ok 16:14:31.0069 0876 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\drivers\adpahci.sys 16:14:31.0098 0876 adpahci - ok 16:14:31.0121 0876 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\drivers\adpu320.sys 16:14:31.0144 0876 adpu320 - ok 16:14:31.0218 0876 AFD (d5b031c308a409a0a576bff4cf083d30) C:\Windows\system32\drivers\afd.sys 16:14:31.0292 0876 AFD - ok 16:14:31.0339 0876 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys 16:14:31.0366 0876 agp440 - ok 16:14:31.0416 0876 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys 16:14:31.0429 0876 aliide - ok 16:14:31.0445 0876 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys 16:14:31.0458 0876 amdide - ok 16:14:31.0482 0876 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\drivers\amdk8.sys 16:14:31.0543 0876 AmdK8 - ok 16:14:31.0561 0876 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\drivers\amdppm.sys 16:14:31.0602 0876 AmdPPM - ok 16:14:31.0650 0876 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys 16:14:31.0676 0876 amdsata - ok 16:14:31.0712 0876 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\drivers\amdsbs.sys 16:14:31.0730 0876 amdsbs - ok 16:14:31.0748 0876 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys 16:14:31.0758 0876 amdxata - ok 16:14:31.0850 0876 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys 16:14:32.0112 0876 AppID - ok 16:14:32.0263 0876 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\drivers\arc.sys 16:14:32.0290 0876 arc - ok 16:14:32.0322 0876 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\drivers\arcsas.sys 16:14:32.0354 0876 arcsas - ok 16:14:32.0441 0876 ASMMAP64 (4c016fd76ed5c05e84ca8cab77993961) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys 16:14:32.0501 0876 ASMMAP64 - ok 16:14:32.0547 0876 asmthub3 (0aa7a996792fb0287b33a57a8093ae44) C:\Windows\system32\DRIVERS\asmthub3.sys 16:14:32.0570 0876 asmthub3 - ok 16:14:32.0598 0876 asmtxhci (125dc3abf5bfccfe82ad17d078e0b9ec) C:\Windows\system32\DRIVERS\asmtxhci.sys 16:14:32.0623 0876 asmtxhci - ok 16:14:32.0673 0876 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys 16:14:32.0873 0876 AsyncMac - ok 16:14:32.0908 0876 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys 16:14:32.0917 0876 atapi - ok 16:14:32.0973 0876 athr (0acc06fcf46f64ed4f11e57ee461c1f4) C:\Windows\system32\DRIVERS\athrx.sys 16:14:33.0174 0876 athr - ok 16:14:33.0286 0876 ATKWMIACPIIO (ac31727f9946e9009480708e4d1b9986) C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys 16:14:33.0308 0876 ATKWMIACPIIO - ok 16:14:33.0445 0876 avgntflt (aa8f79a1bdfc03b3bc70c44ab00589b4) C:\Windows\system32\DRIVERS\avgntflt.sys 16:14:33.0462 0876 avgntflt - ok 16:14:33.0507 0876 avipbb (f1c9db5f7b2a56a0b29667d22ba540fc) C:\Windows\system32\DRIVERS\avipbb.sys 16:14:33.0532 0876 avipbb - ok 16:14:33.0558 0876 avkmgr (248db59fc86de44d2779f4c7fb1a567d) C:\Windows\system32\DRIVERS\avkmgr.sys 16:14:33.0576 0876 avkmgr - ok 16:14:33.0630 0876 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\drivers\bxvbda.sys 16:14:33.0735 0876 b06bdrv - ok 16:14:33.0769 0876 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys 16:14:33.0844 0876 b57nd60a - ok 16:14:33.0898 0876 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys 16:14:33.0955 0876 Beep - ok 16:14:33.0999 0876 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys 16:14:34.0052 0876 blbdrive - ok 16:14:34.0079 0876 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys 16:14:34.0148 0876 bowser - ok 16:14:34.0187 0876 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\drivers\BrFiltLo.sys 16:14:34.0266 0876 BrFiltLo - ok 16:14:34.0277 0876 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\drivers\BrFiltUp.sys 16:14:34.0319 0876 BrFiltUp - ok 16:14:34.0333 0876 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys 16:14:34.0378 0876 Brserid - ok 16:14:34.0387 0876 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys 16:14:34.0423 0876 BrSerWdm - ok 16:14:34.0439 0876 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys 16:14:34.0483 0876 BrUsbMdm - ok 16:14:34.0493 0876 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys 16:14:34.0531 0876 BrUsbSer - ok 16:14:34.0592 0876 BthEnum (cf98190a94f62e405c8cb255018b2315) C:\Windows\system32\drivers\BthEnum.sys 16:14:34.0664 0876 BthEnum - ok 16:14:34.0700 0876 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\drivers\bthmodem.sys 16:14:34.0744 0876 BTHMODEM - ok 16:14:34.0770 0876 BthPan (02dd601b708dd0667e1331fa8518e9ff) C:\Windows\system32\DRIVERS\bthpan.sys 16:14:34.0836 0876 BthPan - ok 16:14:34.0907 0876 BTHPORT (64c198198501f7560ee41d8d1efa7952) C:\Windows\System32\Drivers\BTHport.sys 16:14:34.0995 0876 BTHPORT - ok 16:14:35.0056 0876 BTHUSB (f188b7394d81010767b6df3178519a37) C:\Windows\System32\Drivers\BTHUSB.sys 16:14:35.0111 0876 BTHUSB - ok 16:14:35.0151 0876 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys 16:14:35.0228 0876 cdfs - ok 16:14:35.0271 0876 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys 16:14:35.0325 0876 cdrom - ok 16:14:35.0387 0876 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\drivers\circlass.sys 16:14:35.0453 0876 circlass - ok 16:14:35.0488 0876 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys 16:14:35.0517 0876 CLFS - ok 16:14:35.0557 0876 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys 16:14:35.0585 0876 CmBatt - ok 16:14:35.0600 0876 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys 16:14:35.0610 0876 cmdide - ok 16:14:35.0634 0876 CNG (d5fea92400f12412b3922087c09da6a5) C:\Windows\system32\Drivers\cng.sys 16:14:35.0653 0876 CNG - ok 16:14:35.0676 0876 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\drivers\compbatt.sys 16:14:35.0683 0876 Compbatt - ok 16:14:35.0724 0876 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\DRIVERS\CompositeBus.sys 16:14:35.0797 0876 CompositeBus - ok 16:14:35.0846 0876 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\drivers\crcdisk.sys 16:14:35.0855 0876 crcdisk - ok 16:14:35.0889 0876 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys 16:14:35.0921 0876 DfsC - ok 16:14:35.0941 0876 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys 16:14:35.0985 0876 discache - ok 16:14:36.0027 0876 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\drivers\disk.sys 16:14:36.0049 0876 Disk - ok 16:14:36.0109 0876 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys 16:14:36.0162 0876 drmkaud - ok 16:14:36.0197 0876 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys 16:14:36.0229 0876 DXGKrnl - ok 16:14:36.0316 0876 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\drivers\evbda.sys 16:14:36.0473 0876 ebdrv - ok 16:14:36.0517 0876 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\drivers\elxstor.sys 16:14:36.0539 0876 elxstor - ok 16:14:36.0547 0876 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys 16:14:36.0599 0876 ErrDev - ok 16:14:36.0676 0876 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys 16:14:36.0773 0876 exfat - ok 16:14:36.0796 0876 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys 16:14:36.0856 0876 fastfat - ok 16:14:36.0876 0876 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\drivers\fdc.sys 16:14:36.0904 0876 fdc - ok 16:14:36.0939 0876 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys 16:14:36.0946 0876 FileInfo - ok 16:14:36.0968 0876 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys 16:14:37.0061 0876 Filetrace - ok 16:14:37.0081 0876 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\drivers\flpydisk.sys 16:14:37.0104 0876 flpydisk - ok 16:14:37.0133 0876 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys 16:14:37.0142 0876 FltMgr - ok 16:14:37.0167 0876 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys 16:14:37.0178 0876 FsDepends - ok 16:14:37.0230 0876 fssfltr (6c06701bf1db05405804d7eb610991ce) C:\Windows\system32\DRIVERS\fssfltr.sys 16:14:37.0256 0876 fssfltr - ok 16:14:37.0282 0876 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys 16:14:37.0303 0876 Fs_Rec - ok 16:14:37.0337 0876 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys 16:14:37.0363 0876 fvevol - ok 16:14:37.0390 0876 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\drivers\gagp30kx.sys 16:14:37.0402 0876 gagp30kx - ok 16:14:37.0421 0876 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys 16:14:37.0468 0876 hcw85cir - ok 16:14:37.0504 0876 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys 16:14:37.0570 0876 HdAudAddService - ok 16:14:37.0618 0876 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\DRIVERS\HDAudBus.sys 16:14:37.0660 0876 HDAudBus - ok 16:14:37.0670 0876 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\drivers\HidBatt.sys 16:14:37.0699 0876 HidBatt - ok 16:14:37.0714 0876 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\drivers\hidbth.sys 16:14:37.0748 0876 HidBth - ok 16:14:37.0757 0876 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\drivers\hidir.sys 16:14:37.0824 0876 HidIr - ok 16:14:37.0887 0876 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys 16:14:37.0932 0876 HidUsb - ok 16:14:37.0950 0876 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys 16:14:37.0969 0876 HpSAMD - ok 16:14:38.0034 0876 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys 16:14:38.0124 0876 HTTP - ok 16:14:38.0139 0876 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys 16:14:38.0146 0876 hwpolicy - ok 16:14:38.0167 0876 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys 16:14:38.0182 0876 i8042prt - ok 16:14:38.0237 0876 iaStor (f7ce9be72edac499b713eca6dae5d26f) C:\Windows\system32\DRIVERS\iaStor.sys 16:14:38.0264 0876 iaStor - ok 16:14:38.0314 0876 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys 16:14:38.0339 0876 iaStorV - ok 16:14:38.0602 0876 igfx (0089b53f1befd34b7d8ca4ab021335fa) C:\Windows\system32\DRIVERS\igdkmd64.sys 16:14:38.0980 0876 igfx - ok 16:14:39.0108 0876 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\drivers\iirsp.sys 16:14:39.0134 0876 iirsp - ok 16:14:39.0282 0876 IntcAzAudAddService (9f573c952961f444f400489e81eca381) C:\Windows\system32\drivers\RTKVHD64.sys 16:14:39.0332 0876 IntcAzAudAddService - ok 16:14:39.0401 0876 IntcDAud (fc727061c0f47c8059e88e05d5c8e381) C:\Windows\system32\DRIVERS\IntcDAud.sys 16:14:39.0470 0876 IntcDAud - ok 16:14:39.0497 0876 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys 16:14:39.0522 0876 intelide - ok 16:14:39.0557 0876 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys 16:14:39.0598 0876 intelppm - ok 16:14:39.0610 0876 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys 16:14:39.0670 0876 IpFilterDriver - ok 16:14:39.0681 0876 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys 16:14:39.0720 0876 IPMIDRV - ok 16:14:39.0751 0876 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys 16:14:39.0789 0876 IPNAT - ok 16:14:39.0815 0876 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys 16:14:39.0838 0876 IRENUM - ok 16:14:39.0870 0876 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys 16:14:39.0880 0876 isapnp - ok 16:14:39.0904 0876 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys 16:14:39.0920 0876 iScsiPrt - ok 16:14:39.0968 0876 ivusb (bd5bf20ec242e003a2f570b8754a56d1) C:\Windows\system32\DRIVERS\ivusb.sys 16:14:39.0988 0876 ivusb - ok 16:14:40.0033 0876 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys 16:14:40.0062 0876 kbdclass - ok 16:14:40.0096 0876 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys 16:14:40.0129 0876 kbdhid - ok 16:14:40.0158 0876 kbfiltr (e63ef8c3271d014f14e2469ce75fecb4) C:\Windows\system32\DRIVERS\kbfiltr.sys 16:14:40.0168 0876 kbfiltr - ok 16:14:40.0197 0876 KSecDD (ccd53b5bd33ce0c889e830d839c8b66e) C:\Windows\system32\Drivers\ksecdd.sys 16:14:40.0209 0876 KSecDD - ok 16:14:40.0230 0876 KSecPkg (9ff918a261752c12639e8ad4208d2c2f) C:\Windows\system32\Drivers\ksecpkg.sys 16:14:40.0243 0876 KSecPkg - ok 16:14:40.0282 0876 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys 16:14:40.0335 0876 ksthunk - ok 16:14:40.0375 0876 L1C (033b4aed2c5519072c0d81e00804d003) C:\Windows\system32\DRIVERS\L1C62x64.sys 16:14:40.0415 0876 L1C - ok 16:14:40.0550 0876 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys 16:14:40.0644 0876 lltdio - ok 16:14:40.0757 0876 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\drivers\lsi_fc.sys 16:14:40.0787 0876 LSI_FC - ok 16:14:40.0830 0876 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\drivers\lsi_sas.sys 16:14:40.0850 0876 LSI_SAS - ok 16:14:40.0867 0876 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\drivers\lsi_sas2.sys 16:14:40.0885 0876 LSI_SAS2 - ok 16:14:40.0900 0876 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\drivers\lsi_scsi.sys 16:14:40.0912 0876 LSI_SCSI - ok 16:14:40.0944 0876 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys 16:14:40.0981 0876 luafv - ok 16:14:40.0999 0876 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\drivers\megasas.sys 16:14:41.0009 0876 megasas - ok 16:14:41.0036 0876 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\drivers\MegaSR.sys 16:14:41.0052 0876 MegaSR - ok 16:14:41.0103 0876 MEIx64 (1c6e73fc46b509eff9d0086aa37132df) C:\Windows\system32\DRIVERS\HECIx64.sys 16:14:41.0125 0876 MEIx64 - ok 16:14:41.0173 0876 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys 16:14:41.0268 0876 Modem - ok 16:14:41.0375 0876 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys 16:14:41.0417 0876 monitor - ok 16:14:41.0468 0876 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys 16:14:41.0487 0876 mouclass - ok 16:14:41.0514 0876 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys 16:14:41.0567 0876 mouhid - ok 16:14:41.0589 0876 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys 16:14:41.0600 0876 mountmgr - ok 16:14:41.0638 0876 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys 16:14:41.0657 0876 mpio - ok 16:14:41.0677 0876 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys 16:14:41.0743 0876 mpsdrv - ok 16:14:41.0762 0876 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys 16:14:41.0834 0876 MRxDAV - ok 16:14:41.0870 0876 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys 16:14:41.0922 0876 mrxsmb - ok 16:14:41.0955 0876 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys 16:14:41.0995 0876 mrxsmb10 - ok 16:14:42.0020 0876 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys 16:14:42.0067 0876 mrxsmb20 - ok 16:14:42.0100 0876 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys 16:14:42.0115 0876 msahci - ok 16:14:42.0140 0876 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys 16:14:42.0165 0876 msdsm - ok 16:14:42.0194 0876 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys 16:14:42.0258 0876 Msfs - ok 16:14:42.0287 0876 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys 16:14:42.0325 0876 mshidkmdf - ok 16:14:42.0347 0876 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys 16:14:42.0353 0876 msisadrv - ok 16:14:42.0380 0876 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys 16:14:42.0440 0876 MSKSSRV - ok 16:14:42.0448 0876 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys 16:14:42.0480 0876 MSPCLOCK - ok 16:14:42.0490 0876 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys 16:14:42.0537 0876 MSPQM - ok 16:14:42.0562 0876 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys 16:14:42.0574 0876 MsRPC - ok 16:14:42.0591 0876 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys 16:14:42.0597 0876 mssmbios - ok 16:14:42.0622 0876 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys 16:14:42.0685 0876 MSTEE - ok 16:14:42.0694 0876 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\drivers\MTConfig.sys 16:14:42.0717 0876 MTConfig - ok 16:14:42.0743 0876 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys 16:14:42.0750 0876 Mup - ok 16:14:42.0888 0876 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys 16:14:42.0973 0876 NativeWifiP - ok 16:14:43.0121 0876 NDIS (c38b8ae57f78915905064a9a24dc1586) C:\Windows\system32\drivers\ndis.sys 16:14:43.0177 0876 NDIS - ok 16:14:43.0223 0876 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys 16:14:43.0291 0876 NdisCap - ok 16:14:43.0422 0876 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys 16:14:43.0503 0876 NdisTapi - ok 16:14:43.0549 0876 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys 16:14:43.0642 0876 Ndisuio - ok 16:14:43.0664 0876 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys 16:14:43.0712 0876 NdisWan - ok 16:14:43.0736 0876 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys 16:14:43.0816 0876 NDProxy - ok 16:14:43.0855 0876 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys 16:14:43.0914 0876 NetBIOS - ok 16:14:44.0047 0876 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys 16:14:44.0109 0876 NetBT - ok 16:14:44.0405 0876 NETwNs64 (ac69618de5bcce8747c9ab0aae1003c1) C:\Windows\system32\DRIVERS\NETwNs64.sys 16:14:44.0696 0876 NETwNs64 - ok 16:14:44.0847 0876 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\drivers\nfrd960.sys 16:14:44.0870 0876 nfrd960 - ok 16:14:44.0918 0876 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys 16:14:44.0984 0876 Npfs - ok 16:14:45.0010 0876 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys 16:14:45.0055 0876 nsiproxy - ok 16:14:45.0135 0876 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys 16:14:45.0201 0876 Ntfs - ok 16:14:45.0238 0876 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys 16:14:45.0325 0876 Null - ok 16:14:45.0749 0876 nvlddmkm (b15258b1f45f9571758ac6bb2f043b01) C:\Windows\system32\DRIVERS\nvlddmkm.sys 16:14:45.0902 0876 nvlddmkm - ok 16:14:46.0087 0876 nvpciflt (682ea9ed3399d6066f0daecf7938727e) C:\Windows\system32\DRIVERS\nvpciflt.sys 16:14:46.0099 0876 nvpciflt - ok 16:14:46.0203 0876 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys 16:14:46.0238 0876 nvraid - ok 16:14:46.0373 0876 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys 16:14:46.0410 0876 nvstor - ok 16:14:46.0630 0876 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys 16:14:46.0664 0876 nv_agp - ok 16:14:46.0878 0876 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys 16:14:46.0946 0876 ohci1394 - ok 16:14:47.0184 0876 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\drivers\parport.sys 16:14:47.0250 0876 Parport - ok 16:14:47.0457 0876 partmgr (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys 16:14:47.0479 0876 partmgr - ok 16:14:47.0591 0876 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys 16:14:47.0622 0876 pci - ok 16:14:47.0685 0876 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys 16:14:47.0706 0876 pciide - ok 16:14:47.0798 0876 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\drivers\pcmcia.sys 16:14:47.0836 0876 pcmcia - ok 16:14:47.0903 0876 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys 16:14:47.0923 0876 pcw - ok 16:14:47.0993 0876 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys 16:14:48.0113 0876 PEAUTH - ok 16:14:48.0314 0876 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys 16:14:48.0402 0876 PptpMiniport - ok 16:14:48.0466 0876 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\drivers\processr.sys 16:14:48.0525 0876 Processor - ok 16:14:48.0612 0876 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys 16:14:48.0691 0876 Psched - ok 16:14:48.0762 0876 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\drivers\ql2300.sys 16:14:48.0902 0876 ql2300 - ok 16:14:48.0926 0876 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\drivers\ql40xx.sys 16:14:48.0938 0876 ql40xx - ok 16:14:48.0957 0876 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys 16:14:48.0988 0876 QWAVEdrv - ok 16:14:49.0025 0876 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys 16:14:49.0080 0876 RasAcd - ok 16:14:49.0217 0876 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys 16:14:49.0297 0876 RasAgileVpn - ok 16:14:49.0368 0876 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys 16:14:49.0449 0876 Rasl2tp - ok 16:14:49.0553 0876 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys 16:14:49.0651 0876 RasPppoe - ok 16:14:49.0737 0876 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys 16:14:49.0817 0876 RasSstp - ok 16:14:49.0891 0876 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys 16:14:49.0964 0876 rdbss - ok 16:14:50.0018 0876 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\drivers\rdpbus.sys 16:14:50.0063 0876 rdpbus - ok 16:14:50.0199 0876 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys 16:14:50.0264 0876 RDPCDD - ok 16:14:50.0430 0876 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys 16:14:50.0497 0876 RDPENCDD - ok 16:14:50.0584 0876 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys 16:14:50.0657 0876 RDPREFMP - ok 16:14:50.0756 0876 RDPWD (15b66c206b5cb095bab980553f38ed23) C:\Windows\system32\drivers\RDPWD.sys 16:14:50.0859 0876 RDPWD - ok 16:14:51.0034 0876 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys 16:14:51.0058 0876 rdyboost - ok 16:14:51.0251 0876 RFCOMM (3dd798846e2c28102b922c56e71b7932) C:\Windows\system32\DRIVERS\rfcomm.sys 16:14:51.0311 0876 RFCOMM - ok 16:14:51.0488 0876 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys 16:14:51.0552 0876 rspndr - ok 16:14:51.0635 0876 RSUSBVSTOR (e57fac2cdb73f06586ed2ed310b80932) C:\Windows\system32\Drivers\RTSUVSTOR.sys 16:14:51.0662 0876 RSUSBVSTOR - ok 16:14:51.0772 0876 RTL8167 (6d3c7e7d82d3dc92dc2a8b0df9f20f8a) C:\Windows\system32\DRIVERS\Rt64win7.sys 16:14:51.0809 0876 RTL8167 - ok 16:14:51.0868 0876 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys 16:14:51.0901 0876 sbp2port - ok 16:14:51.0941 0876 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys 16:14:52.0023 0876 scfilter - ok 16:14:52.0175 0876 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys 16:14:52.0257 0876 secdrv - ok 16:14:52.0384 0876 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\drivers\serenum.sys 16:14:52.0427 0876 Serenum - ok 16:14:52.0565 0876 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\drivers\serial.sys 16:14:52.0613 0876 Serial - ok 16:14:52.0673 0876 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\drivers\sermouse.sys 16:14:52.0716 0876 sermouse - ok 16:14:52.0776 0876 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys 16:14:52.0814 0876 sffdisk - ok 16:14:52.0838 0876 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys 16:14:52.0901 0876 sffp_mmc - ok 16:14:52.0929 0876 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys 16:14:52.0960 0876 sffp_sd - ok 16:14:52.0970 0876 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\drivers\sfloppy.sys 16:14:52.0990 0876 sfloppy - ok 16:14:53.0129 0876 SiSGbeLH (1bc348cf6baa90ec8e533ef6e6a69933) C:\Windows\system32\DRIVERS\SiSG664.sys 16:14:53.0177 0876 SiSGbeLH - ok 16:14:53.0246 0876 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\drivers\SiSRaid2.sys 16:14:53.0277 0876 SiSRaid2 - ok 16:14:53.0330 0876 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\drivers\sisraid4.sys 16:14:53.0357 0876 SiSRaid4 - ok 16:14:53.0402 0876 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys 16:14:53.0471 0876 Smb - ok 16:14:53.0600 0876 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys 16:14:53.0621 0876 spldr - ok 16:14:53.0697 0876 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys 16:14:53.0761 0876 srv - ok 16:14:53.0926 0876 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys 16:14:53.0961 0876 srv2 - ok 16:14:54.0044 0876 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys 16:14:54.0088 0876 srvnet - ok 16:14:54.0294 0876 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\drivers\stexstor.sys 16:14:54.0322 0876 stexstor - ok 16:14:54.0495 0876 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys 16:14:54.0520 0876 swenum - ok 16:14:54.0650 0876 SynTP (7e8902f9929a5d9ffd0f545332ce0f10) C:\Windows\system32\DRIVERS\SynTP.sys 16:14:54.0697 0876 SynTP - ok 16:14:54.0856 0876 Tcpip (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys 16:14:54.0909 0876 Tcpip - ok 16:14:55.0101 0876 TCPIP6 (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys 16:14:55.0129 0876 TCPIP6 - ok 16:14:55.0206 0876 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys 16:14:55.0245 0876 tcpipreg - ok 16:14:55.0297 0876 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys 16:14:55.0336 0876 TDPIPE - ok 16:14:55.0373 0876 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys 16:14:55.0417 0876 TDTCP - ok 16:14:55.0437 0876 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys 16:14:55.0477 0876 tdx - ok 16:14:55.0517 0876 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\DRIVERS\termdd.sys 16:14:55.0527 0876 TermDD - ok 16:14:55.0658 0876 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys 16:14:55.0745 0876 tssecsrv - ok 16:14:55.0871 0876 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys 16:14:55.0926 0876 TsUsbFlt - ok 16:14:56.0082 0876 TsUsbGD (9cc2ccae8a84820eaecb886d477cbcb8) C:\Windows\system32\drivers\TsUsbGD.sys 16:14:56.0126 0876 TsUsbGD - ok 16:14:56.0296 0876 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys 16:14:56.0377 0876 tunnel - ok 16:14:56.0507 0876 TurboB (b355581a9da34c92e2dbafa410d2f829) C:\Windows\system32\DRIVERS\TurboB.sys 16:14:56.0521 0876 TurboB - ok 16:14:56.0608 0876 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\drivers\uagp35.sys 16:14:56.0642 0876 uagp35 - ok 16:14:56.0711 0876 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys 16:14:56.0800 0876 udfs - ok 16:14:56.0951 0876 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys 16:14:56.0982 0876 uliagpkx - ok 16:14:57.0079 0876 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys 16:14:57.0126 0876 umbus - ok 16:14:57.0218 0876 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\drivers\umpass.sys 16:14:57.0259 0876 UmPass - ok 16:14:57.0425 0876 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys 16:14:57.0491 0876 usbccgp - ok 16:14:57.0590 0876 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys 16:14:57.0653 0876 usbcir - ok 16:14:57.0800 0876 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys 16:14:57.0844 0876 usbehci - ok 16:14:57.0923 0876 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys 16:14:58.0004 0876 usbhub - ok 16:14:58.0128 0876 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys 16:14:58.0167 0876 usbohci - ok 16:14:58.0278 0876 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys 16:14:58.0335 0876 usbprint - ok 16:14:58.0526 0876 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS 16:14:58.0584 0876 USBSTOR - ok 16:14:58.0775 0876 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys 16:14:58.0820 0876 usbuhci - ok 16:14:59.0066 0876 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\system32\Drivers\usbvideo.sys 16:14:59.0097 0876 usbvideo - ok 16:14:59.0299 0876 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys 16:14:59.0320 0876 vdrvroot - ok 16:14:59.0499 0876 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys 16:14:59.0535 0876 vga - ok 16:14:59.0629 0876 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys 16:14:59.0676 0876 VgaSave - ok 16:14:59.0761 0876 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys 16:14:59.0803 0876 vhdmp - ok 16:14:59.0881 0876 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys 16:14:59.0906 0876 viaide - ok 16:15:00.0027 0876 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys 16:15:00.0049 0876 volmgr - ok 16:15:00.0130 0876 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys 16:15:00.0159 0876 volmgrx - ok 16:15:00.0222 0876 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys 16:15:00.0255 0876 volsnap - ok 16:15:00.0350 0876 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\drivers\vsmraid.sys 16:15:00.0386 0876 vsmraid - ok 16:15:00.0429 0876 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys 16:15:00.0488 0876 vwifibus - ok 16:15:00.0608 0876 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys 16:15:00.0665 0876 vwififlt - ok 16:15:00.0747 0876 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys 16:15:00.0804 0876 vwifimp - ok 16:15:00.0883 0876 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\drivers\wacompen.sys 16:15:00.0922 0876 WacomPen - ok 16:15:01.0090 0876 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 16:15:01.0177 0876 WANARP - ok 16:15:01.0193 0876 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys 16:15:01.0218 0876 Wanarpv6 - ok 16:15:01.0387 0876 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\drivers\wd.sys 16:15:01.0417 0876 Wd - ok 16:15:01.0523 0876 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys 16:15:01.0550 0876 Wdf01000 - ok 16:15:01.0743 0876 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys 16:15:01.0782 0876 WfpLwf - ok 16:15:01.0957 0876 WimFltr (52ded146e4797e6ccf94799e8e22bb2a) C:\Windows\system32\DRIVERS\wimfltr.sys 16:15:01.0971 0876 WimFltr - ok 16:15:02.0051 0876 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys 16:15:02.0062 0876 WIMMount - ok 16:15:02.0257 0876 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\DRIVERS\wmiacpi.sys 16:15:02.0280 0876 WmiAcpi - ok 16:15:02.0370 0876 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys 16:15:02.0426 0876 ws2ifsl - ok 16:15:02.0487 0876 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys 16:15:02.0559 0876 WudfPf - ok 16:15:02.0689 0876 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys 16:15:02.0730 0876 WUDFRd - ok 16:15:02.0800 0876 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0 16:15:03.0050 0876 \Device\Harddisk0\DR0 - ok 16:15:03.0053 0876 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk1\DR1 16:15:03.0592 0876 \Device\Harddisk1\DR1 - ok 16:15:03.0594 0876 Boot (0x1200) (bb69d4944dda73609404ede4e6ed9b58) \Device\Harddisk0\DR0\Partition0 16:15:03.0595 0876 \Device\Harddisk0\DR0\Partition0 - ok 16:15:03.0612 0876 Boot (0x1200) (17dccddbc59e76ce0a57b3e17ca52314) \Device\Harddisk0\DR0\Partition1 16:15:03.0613 0876 \Device\Harddisk0\DR0\Partition1 - ok 16:15:03.0616 0876 Boot (0x1200) (2adf972efc799214e795e6a1395948f3) \Device\Harddisk1\DR1\Partition0 16:15:03.0617 0876 \Device\Harddisk1\DR1\Partition0 - ok 16:15:03.0617 0876 ============================================================ 16:15:03.0617 0876 Scan finished 16:15:03.0617 0876 ============================================================ 16:15:03.0625 1708 Detected object count: 0 16:15:03.0625 1708 Actual detected object count: 0 Und Zugriff hatte ich im Grunde schon, nur waren die Dateien versteckt. Gruß und Dank Sebastian. Geändert von bulker1983 (09.01.2012 um 16:28 Uhr) |
09.01.2012, 16:30 | #22 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/Schreibgesch Dann bitte jetzt CF ausführen: ComboFix Ein Leitfaden und Tutorium zur Nutzung von ComboFix
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat! Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie Zitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
09.01.2012, 16:59 | #23 |
| Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/Schreibgesch Folges Log hat Combofix ausgespuckt: Code:
ATTFilter ComboFix 12-01-09.03 - Sebastian 09.01.2012 16:46:27.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.8103.6497 [GMT 1:00] ausgeführt von:: c:\users\Sebastian\Desktop\ComboFix.exe SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\programdata\Roaming . . ((((((((((((((((((((((( Dateien erstellt von 2011-12-09 bis 2012-01-09 )))))))))))))))))))))))))))))) . . 2012-01-09 13:11 . 2012-01-09 13:11 -------- d-----w- C:\_OTL 2012-01-07 13:28 . 2012-01-07 13:29 -------- d-----w- c:\program files\ComicRack 2012-01-07 13:11 . 2012-01-07 13:14 -------- d-----w- c:\program files (x86)\YACReader 2012-01-07 09:58 . 2012-01-07 09:58 -------- d-----w- c:\program files (x86)\ESET 2012-01-06 21:26 . 2012-01-06 21:26 -------- d-----w- c:\users\Sebastian\AppData\Roaming\Malwarebytes 2012-01-06 21:26 . 2012-01-06 21:26 -------- d-----w- c:\programdata\Malwarebytes 2012-01-06 21:26 . 2012-01-06 21:26 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2012-01-06 21:26 . 2011-12-10 14:24 23152 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-01-06 10:27 . 2011-11-30 01:21 8822856 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{1C353D44-33DF-4DC5-8D39-4EBB74DBF50E}\mpengine.dll 2012-01-02 19:45 . 2012-01-02 19:45 -------- d-----w- C:\NVIDIA 2011-12-29 17:08 . 2011-12-29 19:30 -------- d-----w- c:\users\Sebastian\Calibre Bibliothek 2011-12-29 17:08 . 2011-12-29 19:28 -------- d-----w- c:\users\Sebastian\AppData\Roaming\calibre 2011-12-29 17:05 . 2011-12-29 17:05 -------- d-----w- c:\program files (x86)\Calibre2 2011-12-26 17:17 . 2011-12-26 17:17 -------- d-----w- C:\Programme 2011-12-20 17:58 . 2011-12-20 17:59 -------- d-----w- c:\program files (x86)\The KMPlayer 2011-12-20 17:19 . 2011-12-20 17:42 -------- d-----w- c:\users\Sebastian\AppData\Roaming\vlc 2011-12-19 22:13 . 2011-12-19 22:13 -------- d-----w- c:\program files (x86)\pdfforge Toolbar 2011-12-17 18:55 . 2011-12-17 18:55 -------- d-----w- c:\users\Sebastian\AppData\Roaming\DVDVideoSoft 2011-12-17 18:54 . 2011-12-17 18:54 -------- d-----w- c:\program files (x86)\Common Files\DVDVideoSoft 2011-12-17 18:54 . 2011-12-17 18:54 -------- d-----w- c:\program files (x86)\DVDVideoSoft 2011-12-17 13:18 . 2011-12-17 13:18 -------- d-----w- c:\program files (x86)\FreeTime 2011-12-15 22:14 . 2011-12-15 22:14 -------- d-----w- c:\users\Sebastian\AppData\Local\Google 2011-12-15 20:57 . 2011-12-15 20:57 1248080 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll 2011-12-15 18:06 . 2011-11-15 13:29 270720 ------w- c:\windows\system32\MpSigStub.exe 2011-12-14 18:17 . 2011-11-24 04:52 3145216 ----a-w- c:\windows\system32\win32k.sys 2011-12-14 18:17 . 2011-10-26 05:21 43520 ----a-w- c:\windows\system32\csrsrv.dll 2011-12-14 18:17 . 2011-10-15 06:31 723456 ----a-w- c:\windows\system32\EncDec.dll 2011-12-14 18:17 . 2011-10-15 05:38 534528 ----a-w- c:\windows\SysWow64\EncDec.dll 2011-12-14 18:17 . 2011-11-05 05:32 2048 ----a-w- c:\windows\system32\tzres.dll 2011-12-14 18:17 . 2011-11-05 04:26 2048 ----a-w- c:\windows\SysWow64\tzres.dll 2011-12-13 19:36 . 2011-12-13 19:47 -------- d-----w- C:\ubuntu . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-01-09 15:43 . 2011-11-27 09:07 45056 ----a-w- c:\windows\system32\acovcnt.exe 2011-12-09 11:07 . 2011-12-09 11:07 2300696 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll 2011-12-09 11:06 . 2011-12-09 11:06 42776 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll 2011-12-09 11:06 . 2011-12-09 11:06 1092400 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll 2011-11-29 08:55 . 2011-11-29 08:55 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2011-11-28 16:47 . 2011-11-28 16:47 80512 ----a-w- c:\windows\ASUS K3 Series ScreenSaver Uninstaller.exe 2011-11-28 16:47 . 2011-11-28 16:47 3058304 ----a-w- c:\windows\AsScrPro.exe 2011-11-27 09:07 . 2010-06-24 18:33 18328 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2011-10-21 16:41 . 2011-10-21 16:41 510232 ----a-w- c:\windows\system32\igfxsrvc.exe 2011-10-21 16:41 . 2011-10-21 16:41 167704 ----a-w- c:\windows\system32\igfxtray.exe 2011-10-21 16:41 . 2011-10-21 16:41 416024 ----a-w- c:\windows\system32\igfxpers.exe 2011-10-21 16:41 . 2011-10-21 16:41 239896 ----a-w- c:\windows\system32\igfxext.exe 2011-10-21 16:41 . 2011-10-21 16:41 392472 ----a-w- c:\windows\system32\hkcmd.exe 2011-10-21 16:41 . 2011-10-21 16:41 4378392 ----a-w- c:\windows\system32\GfxUI.exe 2011-10-21 16:41 . 2011-10-21 16:41 184600 ----a-w- c:\windows\system32\difx64.exe 2011-10-21 16:36 . 2011-10-21 16:36 90112 ----a-w- c:\windows\system32\igfxCoIn_v2559.dll 2011-10-21 16:30 . 2011-10-21 16:30 8313856 ----a-w- c:\windows\system32\igdumd64.dll 2011-10-21 16:30 . 2011-10-21 16:30 12310112 ----a-w- c:\windows\system32\drivers\igdkmd64.sys 2011-10-21 16:27 . 2011-10-21 16:27 963116 ----a-w- c:\windows\system32\igkrng600.bin 2011-10-21 16:27 . 2011-10-21 16:27 217536 ----a-w- c:\windows\system32\igfcg600m.bin 2011-10-21 16:27 . 2011-10-21 16:27 75776 ----a-w- c:\windows\system32\igdde64.dll 2011-10-21 16:25 . 2011-07-07 06:12 6323712 ----a-w- c:\windows\SysWow64\igdumd32.dll 2011-10-21 16:22 . 2011-10-21 16:22 56832 ----a-w- c:\windows\SysWow64\igdde32.dll 2011-10-21 16:21 . 2011-07-07 06:12 581120 ----a-w- c:\windows\SysWow64\igdumdx32.dll 2011-10-21 16:19 . 2011-10-21 16:19 14592512 ----a-w- c:\windows\system32\igd10umd64.dll 2011-10-21 16:13 . 2011-07-07 06:12 12340224 ----a-w- c:\windows\SysWow64\igd10umd32.dll 2011-10-21 16:08 . 2011-10-21 16:08 18651648 ----a-w- c:\windows\system32\ig4icd64.dll 2011-10-21 16:03 . 2011-10-21 16:03 13903872 ----a-w- c:\windows\SysWow64\ig4icd32.dll 2011-10-21 15:59 . 2011-10-21 15:59 286720 ----a-w- c:\windows\system32\igfxrrom.lrc 2011-10-21 15:59 . 2011-10-21 15:59 286720 ----a-w- c:\windows\system32\igfxrsky.lrc 2011-10-21 15:59 . 2011-10-21 15:59 286720 ----a-w- c:\windows\system32\igfxrhrv.lrc 2011-10-21 15:59 . 2011-10-21 15:59 286208 ----a-w- c:\windows\system32\igfxrslv.lrc 2011-10-21 15:59 . 2011-10-21 15:59 286208 ----a-w- c:\windows\system32\igfxrtrk.lrc 2011-10-21 15:59 . 2011-10-21 15:59 286208 ----a-w- c:\windows\system32\igfxrsve.lrc 2011-10-21 15:59 . 2011-10-21 15:59 285696 ----a-w- c:\windows\system32\igfxrtha.lrc 2011-10-21 15:59 . 2011-10-21 15:59 287232 ----a-w- c:\windows\system32\igfxresn.lrc 2011-10-21 15:59 . 2011-10-21 15:59 286720 ----a-w- c:\windows\system32\igfxrrus.lrc 2011-10-21 15:59 . 2011-10-21 15:59 286720 ----a-w- c:\windows\system32\igfxrptg.lrc 2011-10-21 15:59 . 2011-10-21 15:59 286720 ----a-w- c:\windows\system32\igfxrplk.lrc 2011-10-21 15:59 . 2011-10-21 15:59 286208 ----a-w- c:\windows\system32\igfxrptb.lrc 2011-10-21 15:59 . 2011-10-21 15:59 286720 ----a-w- c:\windows\system32\igfxrita.lrc 2011-10-21 15:59 . 2011-10-21 15:59 286208 ----a-w- c:\windows\system32\igfxrnor.lrc 2011-10-21 15:59 . 2011-10-21 15:59 283648 ----a-w- c:\windows\system32\igfxrjpn.lrc 2011-10-21 15:59 . 2011-10-21 15:59 283136 ----a-w- c:\windows\system32\igfxrkor.lrc 2011-10-21 15:59 . 2011-10-21 15:59 287232 ----a-w- c:\windows\system32\igfxrell.lrc 2011-10-21 15:59 . 2011-10-21 15:59 286208 ----a-w- c:\windows\system32\igfxrhun.lrc 2011-10-21 15:59 . 2011-10-21 15:59 285184 ----a-w- c:\windows\system32\igfxrheb.lrc 2011-10-21 15:59 . 2011-10-21 15:59 287232 ----a-w- c:\windows\system32\igfxrfra.lrc 2011-10-21 15:59 . 2011-10-21 15:59 286720 ----a-w- c:\windows\system32\igfxrdeu.lrc 2011-10-21 15:59 . 2011-10-21 15:59 286208 ----a-w- c:\windows\system32\igfxrfin.lrc 2011-10-21 15:58 . 2011-10-21 15:58 286720 ----a-w- c:\windows\system32\igfxrnld.lrc 2011-10-21 15:58 . 2011-10-21 15:58 286720 ----a-w- c:\windows\system32\igfxrcsy.lrc 2011-10-21 15:58 . 2011-10-21 15:58 285696 ----a-w- c:\windows\system32\igfxrdan.lrc 2011-10-21 15:58 . 2011-10-21 15:58 285184 ----a-w- c:\windows\system32\igfxrara.lrc 2011-10-21 15:58 . 2011-10-21 15:58 282624 ----a-w- c:\windows\system32\igfxrcht.lrc 2011-10-21 15:58 . 2011-10-21 15:58 282624 ----a-w- c:\windows\system32\igfxrchs.lrc 2011-10-21 15:58 . 2011-10-21 15:58 126976 ----a-w- c:\windows\system32\igfxcpl.cpl 2011-10-21 15:58 . 2011-07-07 06:12 375808 ----a-w- c:\windows\system32\igfxpph.dll 2011-10-21 15:58 . 2011-10-21 15:58 378368 ----a-w- c:\windows\system32\igfxTMM.dll 2011-10-21 15:58 . 2011-10-21 15:58 28672 ----a-w- c:\windows\system32\igfxexps.dll 2011-10-21 15:57 . 2011-07-07 06:12 62464 ----a-w- c:\windows\system32\igfxsrvc.dll 2011-10-21 15:57 . 2011-07-07 06:12 110080 ----a-w- c:\windows\system32\hccutils.dll 2011-10-21 15:57 . 2011-10-21 15:57 146432 ----a-w- c:\windows\system32\gfxSrvc.dll 2011-10-21 15:57 . 2011-10-21 15:57 4096 ----a-w- c:\windows\system32\IGFXDEVLib.dll 2011-10-21 15:57 . 2011-10-21 15:57 390144 ----a-w- c:\windows\system32\igfxdev.dll 2011-10-21 15:56 . 2011-10-21 15:56 285696 ----a-w- c:\windows\system32\igfxrenu.lrc 2011-10-21 15:56 . 2011-10-21 15:56 142336 ----a-w- c:\windows\system32\igfxdo.dll 2011-10-21 15:56 . 2011-07-07 06:12 9014784 ----a-w- c:\windows\system32\igfxress.dll 2011-10-21 15:52 . 2011-10-21 15:52 24576 ----a-w- c:\windows\SysWow64\igfxexps32.dll 2011-10-21 15:52 . 2011-10-21 15:52 294400 ----a-w- c:\windows\SysWow64\igfxdv32.dll 2011-10-21 15:50 . 2011-10-21 15:50 98304 ----a-w- c:\windows\SysWow64\iglhcp32.dll 2011-10-21 15:50 . 2011-10-21 15:50 98304 ----a-w- c:\windows\system32\iglhcp64.dll 2011-10-21 15:50 . 2011-10-21 15:50 376832 ----a-w- c:\windows\SysWow64\iglhsip32.dll 2011-10-21 15:50 . 2011-10-21 15:50 376832 ----a-w- c:\windows\system32\iglhsip64.dll 2011-10-21 15:50 . 2011-10-21 15:50 2177536 ----a-w- c:\windows\system32\igfxcmjit64.dll 2011-10-21 15:50 . 2011-10-21 15:50 171520 ----a-w- c:\windows\SysWow64\igfxcmrt32.dll 2011-10-21 15:50 . 2011-10-21 15:50 1663488 ----a-w- c:\windows\SysWow64\igfxcmjit32.dll 2011-10-21 15:50 . 2011-10-21 15:50 148480 ----a-w- c:\windows\system32\igfxcmrt64.dll 2011-10-15 08:53 . 2011-11-28 16:33 241984 ----a-w- c:\windows\system32\nvinitx.dll 2011-10-15 08:53 . 2011-11-28 16:33 203072 ----a-w- c:\windows\SysWow64\nvinit.dll 2011-10-15 08:53 . 2011-05-11 11:53 55616 ----a-w- c:\windows\system32\nv3dappshextr.dll 2011-10-15 08:53 . 2011-05-11 11:53 539456 ----a-w- c:\windows\system32\nvhotkey.dll 2011-10-15 08:53 . 2011-05-11 11:53 3074368 ----a-w- c:\windows\system32\nvsvcr.dll 2011-10-15 08:53 . 2011-05-11 11:53 222528 ----a-w- c:\windows\system32\nvmctray.dll 2011-10-15 08:53 . 2011-05-11 11:53 1640768 ----a-w- c:\windows\system32\nvvsvc.exe 2011-10-15 08:53 . 2011-05-11 11:53 137536 ----a-w- c:\windows\system32\nvshext.dll 2011-10-15 08:53 . 2011-05-11 11:53 1349440 ----a-w- c:\windows\system32\nv3dappshext.dll 2011-10-15 08:53 . 2011-05-11 11:53 1985841 ----a-w- c:\windows\system32\nvcoproc.bin 2011-10-15 08:53 . 2011-05-11 11:53 837952 ----a-w- c:\windows\system32\easyUpdatusAPIU64.dll 2011-10-15 08:53 . 2011-05-11 11:53 10406208 ----a-w- c:\windows\system32\nvcpl.dll 2011-10-15 08:53 . 2011-05-11 11:52 5067584 ----a-w- c:\windows\system32\nvsvc64.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2011-10-13 17351304] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Nuance PDF Reader-reminder"="c:\program files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" [2008-11-03 328992] "ASUSPRP"="c:\program files (x86)\ASUS\APRP\APRP.EXE" [2011-04-13 2018032] "ASUSWebStorage"="c:\program files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe" [2011-02-23 731472] "SonicMasterTray"="c:\program files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe" [2010-07-10 984400] "ATKOSD2"="c:\program files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe" [2010-08-17 5732992] "ATKMEDIA"="c:\program files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" [2010-10-07 170624] "HControlUser"="c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016] "Wireless Console 3"="c:\program files (x86)\ASUS\Wireless Console 3\wcourier.exe" [2010-09-24 1601536] "UpdateLBPShortCut"="c:\program files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504] "UpdateP2GoShortCut"="c:\program files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ AsusVibeLauncher.lnk - c:\program files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe [2011-4-13 548528] FancyStart daemon.lnk - c:\windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe [2011-11-28 12862] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . R2 Application Updater;Application Updater;c:\program files (x86)\Application Updater\ApplicationUpdater.exe [x] R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-03-02 183560] R3 ivusb;Initio Driver for USB Default Controller;c:\windows\system32\DRIVERS\ivusb.sys [x] R3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20);c:\windows\system32\DRIVERS\L1C62x64.sys [x] R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [2011-05-02 340240] R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184] R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RTSUVSTOR.sys [x] R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSG664.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [x] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184] S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [x] S1 ATKWMIACPIIO;ATKWMIACPI Driver;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-05-26 17536] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x] S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952] S2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe [x] S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416] S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-10-15 2253120] S2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys [x] S2 TurboBoost;Intel(R) Turbo Boost Technology Monitor;c:\program files\Intel\TurboBoost\TurboBoost.exe [2010-04-17 134928] S3 asmthub3;ASMedia USB3 Hub Service;c:\windows\system32\DRIVERS\asmthub3.sys [x] S3 asmtxhci;ASMEDIA XHCI Service;c:\windows\system32\DRIVERS\asmtxhci.sys [x] S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [x] S3 MEIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x] S3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit;c:\windows\system32\DRIVERS\NETwNs64.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x] S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x] . . . --------- x86-64 ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_B] @="{6D4133E5-0742-4ADC-8A8C-9303440F7190}" [HKEY_CLASSES_ROOT\CLSID\{6D4133E5-0742-4ADC-8A8C-9303440F7190}] 2010-09-02 08:41 220160 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSShellExt64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\AsusWSShellExt_O] @="{64174815-8D98-4CE6-8646-4C039977D808}" [HKEY_CLASSES_ROOT\CLSID\{64174815-8D98-4CE6-8646-4C039977D808}] 2010-09-02 08:41 220160 ----a-w- c:\program files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSShellExt64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-05-17 2226280] "IntelPAN"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2011-05-02 1935120] "IntelTBRunOnce"="wscript.exe" [2009-07-14 168960] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-10-21 167704] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-10-21 392472] "Persistence"="c:\windows\system32\igfxpers.exe" [2011-10-21 416024] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "LoadAppInit_DLLs"=0x1 "AppInit_DLLs"=c:\windows\System32\nvinitx.dll . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = mStart Page = mLocal Page = IE: An OneNote s&enden - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105 IE: Free YouTube to MP3 Converter - c:\users\Sebastian\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm IE: Nach Microsoft E&xcel exportieren - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000 TCP: DhcpNameServer = 192.168.1.1 FF - ProfilePath - c:\users\Sebastian\AppData\Roaming\Mozilla\Firefox\Profiles\7va1jk35.default\ FF - prefs.js: browser.search.selectedEngine - . - - - - Entfernte verwaiste Registrierungseinträge - - - - . HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe HKLM-Run-SynAsusAcpi - c:\program files (x86)\Synaptics\SynTP\SynAsusAcpi.exe HKLM-Run-Setwallpaper - c:\programdata\SetWallpaper.cmd . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10k_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10k_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10k.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10k.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10k.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10k.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\DbgagD\1*] "value"="?\0b\00\1b\0a\07!¨" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}] @Denied: (A) (Everyone) "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0] "Key"="ActionsPane3" "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2012-01-09 16:53:36 ComboFix-quarantined-files.txt 2012-01-09 15:53 . Vor Suchlauf: 18 Verzeichnis(se), 125.398.917.120 Bytes frei Nach Suchlauf: 22 Verzeichnis(se), 125.031.206.912 Bytes frei . - - End Of File - - E5E60B989DFD23C744051392BB4ECD48 Sebastian |
09.01.2012, 18:44 | #24 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/Schreibgesch Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
__________________ Logfiles bitte immer in CODE-Tags posten |
09.01.2012, 18:58 | #25 |
| Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/Schreibgesch aswMBR.txt: Code:
ATTFilter aswMBR version 0.9.9.1297 Copyright(c) 2011 AVAST Software Run date: 2012-01-09 18:51:51 ----------------------------- 18:51:51.770 OS Version: Windows x64 6.1.7601 Service Pack 1 18:51:51.770 Number of processors: 4 586 0x2A07 18:51:51.770 ComputerName: SEBASTIAN-PC UserName: Sebastian 18:51:52.694 Initialize success 18:52:49.109 AVAST engine defs: 12010900 18:52:53.856 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 18:52:53.860 Disk 0 Vendor: WDC_WD50 01.0 Size: 476940MB BusType: 3 18:52:53.914 Disk 0 MBR read successfully 18:52:53.919 Disk 0 MBR scan 18:52:53.926 Disk 0 Windows 7 default MBR code 18:52:53.933 Disk 0 Partition 1 00 1C Hidd FAT32 LBA MSDOS5.0 25600 MB offset 2048 18:52:53.975 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 190776 MB offset 52430848 18:52:53.984 Disk 0 Partition - 00 0F Extended LBA 260562 MB offset 443140096 18:52:54.026 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 260561 MB offset 443142144 18:52:54.033 Service scanning 18:52:55.095 Modules scanning 18:52:55.104 Disk 0 trace - called modules: 18:52:55.135 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys iaStor.sys hal.dll 18:52:55.482 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8009a0b060] 18:52:55.492 3 CLASSPNP.SYS[fffff8800185143f] -> nt!IofCallDriver -> [0xfffffa8007afe700] 18:52:55.502 5 ACPI.sys[fffff88000f997a1] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8007e63050] 18:52:58.036 AVAST engine scan C:\Windows 18:52:59.244 File: C:\Windows\PEV.exe **INFECTED** Win32:Rootkit-gen [Rtk] 18:53:00.403 AVAST engine scan C:\Windows\system32 18:54:00.331 AVAST engine scan C:\Windows\system32\drivers 18:54:07.608 AVAST engine scan C:\Users\Sebastian 18:55:10.716 AVAST engine scan C:\ProgramData 18:55:36.664 Scan finished successfully 18:56:48.626 Disk 0 MBR has been saved successfully to "C:\Users\Sebastian\Desktop\MBR.dat" 18:56:48.631 The log file has been saved successfully to "C:\Users\Sebastian\Desktop\aswMBR.txt" Sebastian |
09.01.2012, 20:34 | #26 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/Schreibgesch Sieht ok aus. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs. Denk dran beide Tools zu updaten vor dem Scan!! Anschließend über den OnlineScanner von ESET eine zusätzliche Meinung zu holen ist auch nicht verkehrt: ESET Online Scanner
__________________ Logfiles bitte immer in CODE-Tags posten |
09.01.2012, 20:56 | #27 |
| Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/Schreibgesch Superantispyware: Code:
ATTFilter SUPERAntiSpyware Scan Log hxxp://www.superantispyware.com Generated 01/09/2012 at 08:52 PM Application Version : 5.0.1142 Core Rules Database Version : 8114 Trace Rules Database Version: 5926 Scan type : Quick Scan Total Scan Time : 00:06:54 Operating System Information Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601) UAC On - Limited User Memory items scanned : 626 Memory threats detected : 0 Registry items scanned : 63790 Registry threats detected : 0 File items scanned : 10842 File threats detected : 503 Adware.Tracking Cookie C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Cookies\810TD91F.txt [ /serving-sys.com ] C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Cookies\6ON8ILAZ.txt [ /doubleclick.net ] C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Cookies\48HJST86.txt [ /ad2.adfarm1.adition.com ] C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Cookies\67QZGY4M.txt [ /adfarm1.adition.com ] C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Cookies\2WF6RPKI.txt [ /eyewonder.com ] C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Cookies\0T7CTPMB.txt [ /atdmt.com ] C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Cookies\R76R1GWP.txt [ /c.atdmt.com ] C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Cookies\A0TPOQU1.txt [ /imrworldwide.com ] C:\Users\Sebastian\AppData\Roaming\Microsoft\Windows\Cookies\GPNWNAR9.txt [ /ad3.adfarm1.adition.com ] .at.atwola.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] wstat.wibiya.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .mmotraffic.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .xiti.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] C:\USERS\SEBASTIAN\AppData\Roaming\Microsoft\Windows\Cookies\Low\sebastian@atdmt[2].txt [ Cookie:sebastian@atdmt.com/ ] de.sitestat.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] C:\USERS\SEBASTIAN\AppData\Roaming\Microsoft\Windows\Cookies\Low\sebastian@c.atdmt[2].txt [ Cookie:sebastian@c.atdmt.com/ ] .serving-sys.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .amazon-adsystem.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .amazon-adsystem.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .gostats.cn [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ads.247activemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] adsrv1.admediate.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] C:\USERS\SEBASTIAN\Cookies\810TD91F.txt [ Cookie:sebastian@serving-sys.com/ ] eas4.emediate.eu [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] C:\USERS\SEBASTIAN\Cookies\48HJST86.txt [ Cookie:sebastian@ad2.adfarm1.adition.com/ ] .yieldmanager.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] C:\USERS\SEBASTIAN\Cookies\67QZGY4M.txt [ Cookie:sebastian@adfarm1.adition.com/ ] .serving-sys.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] C:\USERS\SEBASTIAN\Cookies\2WF6RPKI.txt [ Cookie:sebastian@eyewonder.com/ ] C:\USERS\SEBASTIAN\Cookies\0T7CTPMB.txt [ Cookie:sebastian@atdmt.com/ ] s07.flagcounter.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] C:\USERS\SEBASTIAN\Cookies\R76R1GWP.txt [ Cookie:sebastian@c.atdmt.com/ ] C:\USERS\SEBASTIAN\Cookies\A0TPOQU1.txt [ Cookie:sebastian@imrworldwide.com/cgi-bin ] C:\USERS\SEBASTIAN\Cookies\GPNWNAR9.txt [ Cookie:sebastian@ad3.adfarm1.adition.com/ ] pornhuhub.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ads.zeusclicks.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ads2.zeusclicks.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .deutschepostag.112.2o7.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .mediafire.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] adserver1.mokono.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .libri.112.2o7.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .pubads.g.doubleclick.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .pubads.g.doubleclick.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] adserver.seedpeer.me [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .gostats.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] adserver.evania.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .hightraffic.hugoboss.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] live.realtimewebstats.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .mediafire.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] pfatracking.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.warezusa.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.warezusa.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] warezusa.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] warezusa.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] warezusa.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .waz-warez.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .atomicwarez.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .cdn.atomicwarez.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .warezusa.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .warezusa.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .eyewonder.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .estat.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .histats.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .wegotmedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .wegotmedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .histats.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .findthatfile.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .findthatfile.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] wmedia.rotator.hadj7.adjuggler.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] wmedia.rotator.hadj7.adjuggler.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] wmedia.rotator.hadj7.adjuggler.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adinterax.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .weborama.fr [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .lanes.solution.weborama.fr [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .lanes.solution.weborama.fr [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .lanes.solution.weborama.fr [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .lanes.solution.weborama.fr [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .rambler.ru [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tns-counter.ru [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .aim4media.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .mmotraffic.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] tracking.gameforge.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] 3rabwarez.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] 3rabwarez.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] 3rabwarez.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] 3rabwarez.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] 3rabwarez.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] 3rabwarez.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] 3rabwarez.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .microsoftsto.112.2o7.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adxpansion.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] count.rbc.ru [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .medialand.ru [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .medialand.ru [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .engine.mediamir.medialand.ru [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .kontera.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .getclicky.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .static.getclicky.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] in.getclicky.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad.adserver01.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .spylog.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .ad-emea.doubleclick.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .ad-emea.doubleclick.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] studivz.adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.trafficmaxx.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .mediafire.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .mediafire.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .lucidmedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .banner.kiev.ua [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] openx.sexsearchcom.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .bs.serving-sys.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .openstat.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .pornografish.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .pornografish.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] pornografish.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .technoratimedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .linksynergy.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .linksynergy.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .linksynergy.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .gostats.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www4.smartadserver.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .interclick.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .interclick.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .harrenmedianetwork.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .velmedia.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .ad.velmedia.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .ad.velmedia.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .bs.serving-sys.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] igotporn.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] igotporn.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .ero-advertising.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .igotporn.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .igotporn.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adultadworld.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adultadworld.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adultadworld.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adultadworld.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ox-d.yadomedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tracking.mindshare.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adserver.adtechus.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] statse.webtrendslive.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] track.webtrekk.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adxpose.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] gotacha.rotator.hadj7.adjuggler.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .mm.chitika.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .xm.xtendmedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .pornhub.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .pornhub.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .pornhub.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] spenden.wikimedia.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] spenden.wikimedia.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] gotacha.rotator.hadj7.adjuggler.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .indieclick.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .pro-market.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .pro-market.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .r1-ads.ace.advertising.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .indieclick.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] optimize.indieclick.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] optimize.indieclick.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] optimize.indieclick.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ads.saymedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adinterax.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .dyntracker.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] banner.testberichte.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] teufel-media.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] banner.slashcam.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .247activemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ww251.smartadserver.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] httptrack.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] accounts.youtube.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] accounts.google.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .accounts.google.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .accounts.google.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] accounts.google.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] accounts.google.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .beta-ads.ace.advertising.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.usenext.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad.adition.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad.adition.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .de.partypoker.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] adserver.adreactor.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .yadro.ru [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tribalfusion.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adviva.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] mediaservices-d.openxenterprise.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .paypal.112.2o7.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .ad.yieldmanager.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .ad.yieldmanager.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad1.adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .eyewonder.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adform.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .sexad.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tacoda.at.atwola.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .ar.atwola.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .comicrack.cyolito.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .comicrack.cyolito.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .comicrack.cyolito.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .statcounter.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .c1.atdmt.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] stats.computecmedia.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .at.atwola.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tacoda.at.atwola.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tacoda.at.atwola.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tacoda.at.atwola.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tacoda.at.atwola.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .at.atwola.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .toplist.cz [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .toplist.eu [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.zanox-affiliate.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.netdebit-counter.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .gostats.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.pornhub.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.pornhub.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .pornhub.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .pornhub.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .pornhub.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .pornhub.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .pornhub.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ads.trafficjunky.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.pornhub.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ads.crakmedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] rts.pgmediaserve.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] rts.pgmediaserve.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] rts.pgmediaserve.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.warez-bb.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .warez-bb.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .warez-bb.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .warez-bb.org [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .zanox.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad3.adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad4.adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] ad2.adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\SEBASTIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\7VA1JK35.DEFAULT\COOKIES.SQLITE ] Gruß Sebastian |
09.01.2012, 21:05 | #28 |
| Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/Schreibgesch Und eine grundsätzliche Frage habe ich noch: Ich habe eine externe Platte auf der ich hin und wieder Sicherungen vornehme, an die ich jetzt nicht herankomme, ich sie also nicht mitgescannt habe. Das letzte Mal habe ich sie an Weihnachten beschrieben, und ich gehe davon aus, dass ich mir diese Infektion vor Weihnachten zugezogen habe. Muss ich mir jetzt Gedanken machen wenn ich sie wieder anschließe? Gruß Sebastian |
09.01.2012, 22:10 | #29 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/Schreibgesch Das sind keine Bedrohungen sondern nur Cookies. Aber die können weg. Mach bitte die anderen Scans, wenn die externe Platte auch noch angeschlossen ist. Zitat:
Windows XP: Zur Vereinfachung hab ich mal die noautoplay.reg hochgeladen. Lad das auf dem Desktop herunter, führ die Datei aus und bestätige mit ja. Nach einem Neustart des Rechners ist die automatische Wiedergabe (von Datenträgern) auf allen Laufwerken deaktiviert, d.h. keine CD, kein Stick oder sonstwas startet nach dem Einstecken mehr automatisch. Windows Vista/7: In der Systemsteuerung unter automatische Wiedergabe von CDs und anderen Medien alles deaktivieren. => siehe auch Einstellungen für automatische Wiedergabe ändern
__________________ Logfiles bitte immer in CODE-Tags posten |
09.01.2012, 22:30 | #30 | |
| Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/SchreibgeschZitat:
Ich mache die Scans selbstverständlich mit meinen Externen, nur eben diese eine liegt bei meinen Eltern. Ich meine, ich könnte sie auch erst formatieren, es handelt sich bei dieser Platte nur um Notfallsicherungen außer Haus, ich will nur wissen wie ich am sichersten vorgehen soll, um mich nicht zu infizieren. Gruß und Dank Sebastian Geändert von bulker1983 (09.01.2012 um 22:50 Uhr) |
Themen zu Virus/Trojaner - kopierte Dateien auf USB-Stick sind nur Verknüpfungen, bzw Versteckt/Schreibgesch |
anfang, bedrohungen, dateien, einfach, formatiere, formatieren, gemeldet, gen, infizierte, löschen, malwarebytes, problem, scan, scanne, scannen, thread, verknüpfungen, verlinkte, virus/trojaner, wechseldatenträger, windows, wissen, würde, überhaupt, ziemlich, zugreife, zugreifen |