![]() |
|
Log-Analyse und Auswertung: Windows blockiert - 50€ TrojanerWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() |
|
![]() | #1 | |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows blockiert - 50€ TrojanerZitat:
![]() ![]() Die Downloadlinks sind alle sauber in der Anleitung zu sehen
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() | #2 | |
![]() ![]() | ![]() Windows blockiert - 50€ TrojanerZitat:
![]() leider wirklich bei softonic ... ![]() Deswegen, kann ich auf der Seite auch nicht posten ![]() ![]() ![]() |
![]() | #3 |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows blockiert - 50€ Trojaner sry aber
__________________![]() ![]() ![]() ![]() Finger weg von Softonic!! Softonic ist eine Toolbar- und Adwareschleuder! Finger weg! Software lädt man sich mit oberster Priorität direkt vom Hersteller und nicht von solchen Toolbarklitschen wie Softonic! Im Notfall würde natürlich chip.de gehen
__________________ |
![]() | #4 | |
![]() ![]() | ![]() Windows blockiert - 50€ TrojanerZitat:
![]() ![]() ![]() Hab alle Häkchen entfernt gehabt, mich da aber auch schon gewundert. Sollte mehr uff meinen Bauch hören. Ist jetzt soweit aber alles ok mit dem letzten post? oder muss ich noch irgendwas ändern? Geändert von Sunshine_Mel (13.01.2012 um 00:00 Uhr) |
![]() | #5 | |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows blockiert - 50€ Trojaner Dann bitte jetzt CF ausführen: ComboFix Ein Leitfaden und Tutorium zur Nutzung von ComboFix
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat! Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie Zitat:
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() | #6 |
![]() ![]() | ![]() Windows blockiert - 50€ Trojaner Hallöchen Arne, hier die Combofix.log Code:
ATTFilter ComboFix 12-01-13.03 - Administrator 13.01.2012 17:43:55.1.2 - x86 Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.49.1031.18.3070.1601 [GMT 1:00] ausgeführt von:: c:\users\Administrator\Desktop\ComboFix.exe AV: AntiVir Desktop *Disabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7} SP: AntiVir Desktop *Disabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A} SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\users\Jenny\AppData\Roaming\Desktopicon c:\users\Jenny\AppData\Roaming\Desktopicon\eBay.ico c:\users\Jenny\AppData\Roaming\Desktopicon\uninst.exe . . ((((((((((((((((((((((( Dateien erstellt von 2011-12-13 bis 2012-01-13 )))))))))))))))))))))))))))))) . . 2012-01-13 16:49 . 2012-01-13 16:49 -------- d-----w- c:\users\Jenny\AppData\Local\temp 2012-01-13 16:49 . 2012-01-13 16:49 -------- d-----w- c:\users\Gast\AppData\Local\temp 2012-01-13 16:49 . 2012-01-13 16:49 -------- d-----w- c:\users\Default\AppData\Local\temp 2012-01-12 20:49 . 2012-01-12 20:49 -------- d-----w- C:\_OTL 2012-01-11 19:30 . 2012-01-11 19:30 -------- d-----w- c:\program files\ESET 2012-01-09 20:41 . 2012-01-09 20:41 -------- d-----w- c:\users\Jenny\AppData\Roaming\Malwarebytes 2012-01-09 20:40 . 2012-01-09 20:40 -------- d-----w- c:\programdata\Malwarebytes 2012-01-09 20:40 . 2012-01-09 20:41 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2012-01-09 20:40 . 2011-12-10 14:24 20464 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-01-09 20:12 . 2012-01-10 18:24 -------- d-----w- c:\users\Administrator 2012-01-06 13:11 . 2009-06-22 19:01 112128 ----a-w- c:\windows\system32\drivers\ewusbnet.sys 2012-01-06 13:11 . 2009-06-22 18:38 102912 ----a-w- c:\windows\system32\drivers\ewusbmdm.sys 2012-01-06 13:11 . 2009-06-22 18:26 100736 ----a-w- c:\windows\system32\drivers\ewusbdev.sys 2012-01-06 13:11 . 2007-08-09 03:06 23424 ----a-w- c:\windows\system32\drivers\ewdcsc.sys 2012-01-06 13:11 . 2012-01-06 13:13 -------- d-----w- c:\program files\Mobile Partner 2011-12-30 23:20 . 2011-11-21 10:47 6823496 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{13C4E3AE-75B9-4F63-9EBA-0E65F0197AA2}\mpengine.dll 2011-12-24 16:30 . 2011-12-24 16:30 1207568 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll 2011-12-15 20:29 . 2011-10-27 08:01 3602816 ----a-w- c:\windows\system32\ntkrnlpa.exe 2011-12-15 20:29 . 2011-10-27 08:01 3550080 ----a-w- c:\windows\system32\ntoskrnl.exe 2011-12-15 20:29 . 2011-11-23 13:37 2043904 ----a-w- c:\windows\system32\win32k.sys 2011-12-15 20:29 . 2011-10-14 16:02 429056 ----a-w- c:\windows\system32\EncDec.dll 2011-12-15 20:29 . 2011-11-08 12:10 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat 2011-12-15 20:29 . 2011-10-25 15:56 49152 ----a-w- c:\windows\system32\csrsrv.dll 2011-12-15 20:29 . 2011-11-08 14:42 2048 ----a-w- c:\windows\system32\tzres.dll . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-01-12 21:39 . 2008-11-10 23:58 45056 ----a-w- c:\windows\system32\acovcnt.exe 2011-12-11 19:08 . 2011-12-11 19:08 161792 ----a-w- c:\windows\system32\msls31.dll 2011-12-11 19:07 . 2011-12-11 19:07 86528 ----a-w- c:\windows\system32\iesysprep.dll 2011-12-11 19:07 . 2011-12-11 19:07 76800 ----a-w- c:\windows\system32\SetIEInstalledDate.exe 2011-12-11 19:07 . 2011-12-11 19:07 74752 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe 2011-12-11 19:07 . 2011-12-11 19:07 48640 ----a-w- c:\windows\system32\mshtmler.dll 2011-12-11 19:07 . 2011-12-11 19:07 63488 ----a-w- c:\windows\system32\tdc.ocx 2011-12-11 19:07 . 2011-12-11 19:07 367104 ----a-w- c:\windows\system32\html.iec 2011-12-11 19:07 . 2011-12-11 19:07 74752 ----a-w- c:\windows\system32\iesetup.dll 2011-12-11 19:07 . 2011-12-11 19:07 420864 ----a-w- c:\windows\system32\vbscript.dll 2011-12-11 19:07 . 2011-12-11 19:07 23552 ----a-w- c:\windows\system32\licmgr10.dll 2011-12-11 19:07 . 2011-12-11 19:07 152064 ----a-w- c:\windows\system32\wextract.exe 2011-12-11 19:07 . 2011-12-11 19:07 150528 ----a-w- c:\windows\system32\iexpress.exe 2011-12-11 19:07 . 2011-12-11 19:07 35840 ----a-w- c:\windows\system32\imgutil.dll 2011-12-11 19:07 . 2011-12-11 19:07 142848 ----a-w- c:\windows\system32\ieUnatt.exe 2011-12-11 19:07 . 2011-12-11 19:07 11776 ----a-w- c:\windows\system32\mshta.exe 2011-12-11 19:07 . 2011-12-11 19:07 101888 ----a-w- c:\windows\system32\admparse.dll 2011-12-11 19:07 . 2011-12-11 19:07 110592 ----a-w- c:\windows\system32\IEAdvpack.dll 2011-11-19 19:05 . 2011-06-14 22:50 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2009-12-05 13:28 . 2009-07-26 14:31 119808 ----a-w- c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "WindowsWelcomeCenter"="oobefldr.dll" [2009-04-11 2153472] "LightScribe Control Panel"="c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe" [2008-06-09 2363392] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-11-29 421888] "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2011-03-07 421160] "Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2011-12-24 460872] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=c:\progra~1\Google\GOOGLE~1\GOEC62~1.DLL . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "aux"=wdmaud.drv . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] 2009-12-11 14:57 948672 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher] 2009-12-18 07:58 40368 ----a-w- c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver] 2008-11-10 23:53 47672 ----a-w- c:\windows\AsScrProlog.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector] 2008-11-10 23:53 3054136 ----a-w- c:\windows\AsScrPro.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATKOSD2] 2008-01-23 23:34 7766016 ----a-w- c:\program files\ATKOSD2\ATKOSD2.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\avgnt] 2009-03-02 11:08 209153 ----a-w- c:\program files\Avira\AntiVir Desktop\avgnt.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer] 2008-07-19 03:52 104936 ----a-w- c:\program files\CyberLink\Power2Go\CLMLSvc.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate] 2010-09-01 06:39 1164584 ----a-w- c:\program files\DivX\DivX Update\DivXUpdate.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe] 2008-01-21 02:25 125952 ----a-w- c:\windows\ehome\ehtray.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus SX200 Series] 2007-12-13 15:00 188928 ----a-w- c:\windows\System32\spool\drivers\w32x86\3\E_FATIEFE.EXE . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search] 2009-12-05 13:28 30192 ----a-w- c:\program files\Google\Google Desktop Search\GoogleDesktop.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HControlUser] 2008-01-12 06:40 98304 ----a-w- c:\program files\ATK Hotkey\HControlUser.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper] 2011-03-07 14:33 421160 ----a-w- c:\program files\iTunes\iTunesHelper.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel] 2008-06-09 18:16 2363392 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr] 2010-04-16 20:12 3872080 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NSSInstallation] 2010-03-08 18:00 497016 ----a-w- c:\program files\DivX\Symantec\scstubinstaller.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon] 2008-07-25 08:30 13548064 ----a-w- c:\windows\System32\nvcpl.dll . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter] 2008-07-25 08:30 92704 ----a-w- c:\windows\System32\nvmctray.dll . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P2Go_Menu] 2008-06-14 02:11 210216 ----a-w- c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] 2010-11-29 16:38 421888 ----a-w- c:\program files\QuickTime\QTTask.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl] 2008-08-12 08:21 6265376 ----a-w- c:\windows\RtHDVCpl.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar] 2009-04-11 06:28 1233920 ----a-w- c:\program files\Windows Sidebar\sidebar.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel] 2008-08-12 08:21 1833504 ----a-w- c:\windows\SkyTel.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPStart] 2007-08-17 06:40 102400 ----a-w- c:\program files\Synaptics\SynTP\SynTPStart.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WindowsWelcomeCenter] 2009-04-11 06:28 2153472 ----a-w- c:\windows\System32\oobefldr.dll . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring] "DisableMonitoring"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus] "DisableMonitoring"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall] "DisableMonitoring"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache . [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] 2008-06-09 18:14 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe . Inhalt des "geplante Tasks" Ordners . 2011-02-07 c:\windows\Tasks\Install_NSS.job - c:\program files\DivX\Symantec\scstubinstaller.exe [2010-03-08 18:00] . . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://www.google.com/ig/redirectdomain?brand=ASUS&bmod=ASUS mStart Page = hxxp://alice.aol.de IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000 . - - - - Entfernte verwaiste Registrierungseinträge - - - - . MSConfigStartUp-swg - c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe AddRemove-Free Audio CD Burner_is1 - c:\program files\DVDVideoSoft\Free Audio CD Burner\unins000.exe AddRemove-Uninstall_is1 - c:\program files\Common Files\DVDVideoSoft\unins000.exe . . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net Rootkit scan 2012-01-13 17:50 Windows 6.0.6002 Service Pack 2 NTFS . Scanne versteckte Prozesse... . Scanne versteckte Autostarteinträge... . Scanne versteckte Dateien... . Scan erfolgreich abgeschlossen versteckte Dateien: 0 . ************************************************************************** . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Internet Explorer\Approved Extensions] @Denied: (2) (Administrator) "{FF059E31-CC5A-4E2E-BF3B-96E929D65503}"=hex:51,66,7a,6c,4c,1d,3b,1b,21,87,1f, e1,6c,9b,49,03,ab,36,c9,b5,29,9c,15,1a "{BDEADE7F-C265-11D0-BCED-00A0C90AB50F}"=hex:51,66,7a,6c,4c,1d,3b,1b,6f,c7,f0, a3,53,95,b7,5c,a8,e0,5f,fc,c9,40,f5,16 "{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}"=hex:51,66,7a,6c,4c,1d,3b,1b,8f,87,9e, 18,e1,9f,3e,00,ac,70,27,17,7d,21,a0,aa "{9030D464-4C02-4ABF-8ECC-5164760863C6}"=hex:51,66,7a,6c,4c,1d,3b,1b,74,cd,2a, 8e,34,1b,d8,07,9a,c1,0e,38,76,42,23,df "{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}"=hex:51,66,7a,6c,4c,1d,3b,1b,79,41,9a, b0,6a,79,b3,03,9b,76,ae,ab,85,50,04,8e . [HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration] @Denied: (2) (Administrator) "Timestamp"=hex:80,62,72,9f,b8,cf,cc,01 . [HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Internet Explorer\User Preferences] @Denied: (2) (Administrator) "88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15, d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,e5,55,96,3c,30,5e,52,48,bc,65,1a,\ "2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15, d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,e5,55,96,3c,30,5e,52,48,bc,65,1a,\ . [HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice] @Denied: (2) (Administrator) "Progid"="IE.AssocFile.HTM" . [HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice] @Denied: (2) (Administrator) "Progid"="IE.AssocFile.HTM" . [HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mht\UserChoice] @Denied: (2) (Administrator) "Progid"="IE.AssocFile.MHT" . [HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mhtml\UserChoice] @Denied: (2) (Administrator) "Progid"="IE.AssocFile.MHT" . [HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.partial\UserChoice] @Denied: (2) (Administrator) "Progid"="IE.AssocFile.PARTIAL" . [HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.svg\UserChoice] @Denied: (2) (Administrator) "Progid"="IE.AssocFile.SVG" . [HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.url\UserChoice] @Denied: (2) (Administrator) "Progid"="IE.AssocFile.URL" . [HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.website\UserChoice] @Denied: (2) (Administrator) "Progid"="IE.AssocFile.WEBSITE" . [HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice] @Denied: (2) (Administrator) "Progid"="IE.AssocFile.XHT" . [HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice] @Denied: (2) (Administrator) "Progid"="IE.AssocFile.XHT" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 "MSCurrentCountry"=dword:000000b5 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . Zeit der Fertigstellung: 2012-01-13 17:52:10 ComboFix-quarantined-files.txt 2012-01-13 16:52 . Vor Suchlauf: 7 Verzeichnis(se), 85.263.802.368 Bytes frei Nach Suchlauf: 12 Verzeichnis(se), 89.161.097.216 Bytes frei . - - End Of File - - 311E4CBA2E3E7DCA8047922C9643F269 ![]() |
![]() | #7 |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows blockiert - 50€ Trojaner Ok. Bitte nun Logs mit GMER und OSAM erstellen und posten. GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen. Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst. Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM! Downloade dir bitte ![]()
Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none).
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() | #8 |
![]() ![]() | ![]() Windows blockiert - 50€ Trojaner Hallöchen Arne, Code:
ATTFilter GMER 1.0.15.15641 - hxxp://www.gmer.net Rootkit scan 2012-01-15 15:35:18 Windows 6.0.6002 Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 ST9320320AS rev.0303 Running: gmer.exe; Driver: C:\Users\ADMINI~1\AppData\Local\Temp\fwtoypog.sys ---- System - GMER 1.0.15 ---- SSDT 9ED7A9CC ZwCreateThread SSDT 9ED7A9B8 ZwOpenProcess SSDT 9ED7A9BD ZwOpenThread SSDT 9ED7A9C7 ZwTerminateProcess ---- Kernel code sections - GMER 1.0.15 ---- .text ntkrnlpa.exe!KeSetEvent + 221 824E99A4 4 Bytes [CC, A9, D7, 9E] .text ntkrnlpa.exe!KeSetEvent + 3F1 824E9B74 4 Bytes [B8, A9, D7, 9E] .text ntkrnlpa.exe!KeSetEvent + 40D 824E9B90 4 Bytes [BD, A9, D7, 9E] .text ntkrnlpa.exe!KeSetEvent + 621 824E9DA4 4 Bytes [C7, A9, D7, 9E] .text C:\Windows\system32\DRIVERS\nvlddmkm.sys section is writeable [0x8E206340, 0x3EE587, 0xE8000020] ---- Devices - GMER 1.0.15 ---- AttachedDevice \Driver\kbdclass \Device\KeyboardClass0 Wdf01000.sys (WDF Dynamic/Microsoft Corporation) AttachedDevice \Driver\kbdclass \Device\KeyboardClass1 Wdf01000.sys (WDF Dynamic/Microsoft Corporation) Device \Driver\ACPI_HAL \Device\00000077 halmacpi.dll (Hardware Abstraction Layer DLL/Microsoft Corporation) AttachedDevice \FileSystem\fastfat \Fat fltmgr.sys (Microsoft Dateisystem-Filter-Manager/Microsoft Corporation) ---- EOF - GMER 1.0.15 ---- Code:
ATTFilter Report of OSAM: Autorun Manager v5.0.11926.0 hxxp://www.online-solutions.ru/en/ Saved at 16:39:20 on 15.01.2012 OS: Windows Vista Home Premium Edition Service Pack 2 (Build 6002), 32-bit Default Browser: Microsoft Corporation Internet Explorer 9.00.8112.16421 Scanner Settings [x] Rootkits detection (hidden registry) [x] Rootkits detection (hidden files) [x] Retrieve files information [x] Check Microsoft signatures Filters [ ] Trusted entries [ ] Empty entries [x] Hidden registry entries (rootkit activity) [x] Exclusively opened files [x] Not found files [x] Files without detailed information [x] Existing files [ ] Non-startable services [ ] Non-startable drivers [x] Active entries [x] Disabled entries [AppInit DLLs] -----( HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows )----- "AppInit_DLLs" - "Google" - C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL [Control Panel Objects] -----( %SystemRoot%\system32 )----- "DivXControlPanelApplet.cpl" - "DivX, Inc." - C:\Windows\system32\DivXControlPanelApplet.cpl "FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\Windows\system32\FlashPlayerCPLApp.cpl -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )----- "mlcfg32.cpl" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\MLCFG32.CPL "QuickTime" - "Apple Inc." - C:\Program Files\QuickTime\QTSystem\QuickTime.cpl [Drivers] -----( HKLM\SYSTEM\CurrentControlSet\Services )----- "ASMMAP" (ASMMAP) - ? - C:\Program Files\ATKGFNEX\ASMMAP.sys "avgio" (avgio) - "Avira GmbH" - C:\Program Files\Avira\AntiVir Desktop\avgio.sys "avgntflt" (avgntflt) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avgntflt.sys "avipbb" (avipbb) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avipbb.sys "catchme" (catchme) - ? - C:\Users\ADMINI~1\AppData\Local\Temp\catchme.sys (File not found) "ghaio" (ghaio) - ? - C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys (File found, but it contains no detailed information) "IP in IP Tunnel Driver" (IpInIp) - ? - C:\Windows\System32\DRIVERS\ipinip.sys (File not found) "IPX Traffic Filter Driver" (NwlnkFlt) - ? - C:\Windows\System32\DRIVERS\nwlnkflt.sys (File not found) "IPX Traffic Forwarder Driver" (NwlnkFwd) - ? - C:\Windows\System32\DRIVERS\nwlnkfwd.sys (File not found) "MBAMProtector" (MBAMProtector) - "Malwarebytes Corporation" - C:\Windows\system32\drivers\mbam.sys "PxHelp20" (PxHelp20) - "Sonic Solutions" - C:\Windows\System32\Drivers\PxHelp20.sys "ssmdrv" (ssmdrv) - "Avira GmbH" - C:\Windows\System32\DRIVERS\ssmdrv.sys [Explorer] -----( HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components )----- {10880D85-AAD9-4558-ABDC-2AB1552D831F} "LightScribe Control Panel" - "Hewlett-Packard Company" - "C:\Program Files\Common Files\LightScribe\LSRunOnce.exe" -----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )----- {F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll -----( HKLM\Software\Classes\Protocols\Filter )----- {807563E5-5146-11D5-A672-00B0D022E945} "Microsoft Office InfoPath XML Mime Filter" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL -----( HKLM\Software\Classes\Protocols\Handler )----- {314111c7-a502-11d2-bbca-00c04f8ec294} "HxProtocol Class" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll {828030A1-22C1-4009-854F-8E305202313F} "livecall" - "Microsoft Corporation" - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL {828030A1-22C1-4009-854F-8E305202313F} "msnim" - "Microsoft Corporation" - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL {91774881-D725-4E58-B298-07617B9B86A8} "Skype IE add-on Pluggable Protocol" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll {03C514A3-1EFB-4856-9F99-10D7BE1653C0} "Windows Live Mail HTML Asynchronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\Program Files\Windows Live\Mail\mailcomm.dll -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )----- {911051fa-c21c-4246-b470-070cd8df6dc4} ".cab or .zip files" - ? - (File not found | COM-object registry key not found) {1b24a030-9b20-49bc-97ac-1be4426f9e59} "ActiveDirectory Folder" - ? - (File not found | COM-object registry key not found) {34449847-FD14-4fc8-A75A-7432F5181EFB} "ActiveDirectory Folder" - ? - (File not found | COM-object registry key not found) {0563DB41-F538-4B37-A92D-4659049B7766} "CLSID_WLMCMimeFilter" - "Microsoft Corporation" - C:\Program Files\Windows Live\Mail\mailcomm.dll {0F8604A5-4ECE-4DE1-BA7D-CF10F8AA4F48} "Contacts folder" - ? - (File not found | COM-object registry key not found) {2C2577C2-63A7-40e3-9B7F-586602617ECB} "Explorer Query Band" - ? - (File not found | COM-object registry key not found) {FAC3CBF6-8697-43d0-BAB9-DCD1FCE19D75} "IE User Assist" - ? - (File not found | COM-object registry key not found) {B9E1D2CB-CCFF-4AA6-9579-D7A4754030EF} "iTunes" - "Apple Inc." - C:\Program Files\iTunes\iTunesMiniPlayer.dll {42042206-2D85-11D3-8CFF-005004838597} "Microsoft Office HTML Icon Handler" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office12\msohevi.dll {993BE281-6695-4BA5-8A2A-7AACBFAAB69E} "Microsoft Office Metadata Handler" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll {00020d75-0000-0000-c000-000000000046} "Microsoft Office Outlook" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\MLSHEXT.DLL {C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} "Microsoft Office Thumbnail Handler" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll {0006F045-0000-0000-C000-000000000046} "Outlook File Icon Extension" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\OLKFSTUB.DLL {C8494E42-ACDD-4739-B0FB-217361E4894F} "Sam Account Folder" - ? - (File not found | COM-object registry key not found) {E29F9716-5C08-4FCD-955A-119FDB5A522D} "Sam Account Folder" - ? - (File not found | COM-object registry key not found) {45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" - "Avira GmbH" - C:\Program Files\Avira\AntiVir Desktop\shlext.dll {da67b8ad-e81b-4c70-9b91b417b5e33527} "Windows Search Shell Service" - ? - (File not found | COM-object registry key not found) {B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" - "Alexander Roshal" - C:\Program Files\WinRAR\rarext.dll [Internet Explorer] -----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )----- {7530BFB8-7293-4D34-9923-61A11451AFC5} "OnlineScanner Control" - "ESET" - C:\PROGRA~1\ESET\ESETON~1\ONLINE~1.OCX / hxxp://download.eset.com/special/eos/OnlineScanner.cab -----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )----- {FF059E31-CC5A-4E2E-BF3B-96E929D65503} "Research" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL {898EA8C8-E7FF-479B-8935-AEC46303B9E5} "Skype Click to Call" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )----- {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} "Adobe PDF Reader Link Helper" - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} "Skype Browser Helper" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll {9030D464-4C02-4ABF-8ECC-5164760863C6} "Windows Live ID-Anmelde-Hilfsprogramm" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll {5C255C8A-E604-49b4-9D64-90988571CECB} "{5C255C8A-E604-49b4-9D64-90988571CECB}" - ? - (File not found | COM-object registry key not found) [Logon] -----( %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup )----- "desktop.ini" - ? - C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini -----( %AllUsersProfile%\Microsoft\Windows\Start Menu\Programs\Startup )----- "desktop.ini" - ? - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini -----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )----- "LightScribe Control Panel" - "Hewlett-Packard Company" - C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden -----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )----- "StartupPrograms" - ? - rdpclip (File not found) -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )----- "iTunesHelper" - "Apple Inc." - "C:\Program Files\iTunes\iTunesHelper.exe" "Malwarebytes' Anti-Malware" - "Malwarebytes Corporation" - "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray "QuickTime Task" - "Apple Inc." - "C:\Program Files\QuickTime\QTTask.exe" -atboottime [Services] -----( HKLM\SYSTEM\CurrentControlSet\Services )----- "@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100" (WPFFontCache_v0400) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe "Apple Mobile Device" (Apple Mobile Device) - "Apple Inc." - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe "ASLDR Service" (ASLDRService) - ? - C:\Program Files\ATK Hotkey\ASLDRSrv.exe "ATKGFNEX Service" (ATKGFNEXSrv) - ? - C:\Program Files\ATKGFNEX\GFNEXSrv.exe "Avira AntiVir Guard" (AntiVirService) - "Avira GmbH" - C:\Program Files\Avira\AntiVir Desktop\avguard.exe "Avira AntiVir Planer" (AntiVirSchedulerService) - "Avira GmbH" - C:\Program Files\Avira\AntiVir Desktop\sched.exe "Dienst "Bonjour"" (Bonjour Service) - "Apple Inc." - C:\Program Files\Bonjour\mDNSResponder.exe "Google Desktop Manager 5.9.911.3589" (GoogleDesktopManager-110309-193829) - "Google" - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe "Google Software Updater" (gusvc) - "Google" - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe "iPod-Dienst" (iPod Service) - "Apple Inc." - C:\Program Files\iPod\bin\iPodService.exe "LightScribeService Direct Disc Labeling Service" (LightScribeService) - "Hewlett-Packard Company" - C:\Program Files\Common Files\LightScribe\LSSrvc.exe "MBAMService" (MBAMService) - "Malwarebytes Corporation" - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe "Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe "Microsoft Office Diagnostics Service" (odserv) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE "Office Source Engine" (ose) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE "spmgr" (spmgr) - ? - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe "Windows Live ID Sign-in Assistant" (wlidsvc) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [Winsock Providers] -----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries )----- "mdnsNSP" - "Apple Inc." - C:\Program Files\Bonjour\mdnsNSP.dll ===[ Logfile end ]=========================================[ Logfile end ]=== If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru Code:
ATTFilter aswMBR version 0.9.9.1297 Copyright(c) 2011 AVAST Software Run date: 2012-01-15 16:50:40 ----------------------------- 16:50:40.200 OS Version: Windows 6.0.6002 Service Pack 2 16:50:40.200 Number of processors: 2 586 0xF0D 16:50:40.200 ComputerName: JENNY-PC UserName: 16:50:41.651 Initialize success 16:50:57.504 AVAST engine download error: 0 16:51:05.273 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 16:51:05.273 Disk 0 Vendor: ST9320320AS 0303 Size: 305245MB BusType: 3 16:51:05.289 Disk 0 MBR read successfully 16:51:05.304 Disk 0 MBR scan 16:51:05.304 Disk 0 unknown MBR code 16:51:05.304 Disk 0 Partition 1 00 1C Hidd FAT32 LBA MSDOS5.0 10001 MB offset 63 16:51:05.336 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 152622 MB offset 20484096 16:51:05.336 Disk 0 Partition - 00 0F Extended LBA 142620 MB offset 333053952 16:51:05.382 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 142619 MB offset 333056000 16:51:05.382 Disk 0 scanning sectors +625139712 16:51:05.507 Disk 0 scanning C:\Windows\system32\drivers 16:51:13.526 Service scanning 16:51:15.008 Modules scanning 16:51:32.448 Disk 0 trace - called modules: 16:51:32.480 ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys halmacpi.dll ataport.SYS PCIIDEX.SYS msahci.sys 16:51:32.480 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x858ddac8] 16:51:32.495 3 CLASSPNP.SYS[8a7af8b3] -> nt!IofCallDriver -> [0x85769860] 16:51:32.495 5 acpi.sys[8069a6bc] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x85732390] 16:51:32.511 Scan finished successfully 16:52:04.085 Disk 0 MBR has been saved successfully to "C:\Users\Administrator\Desktop\MBR.dat" 16:52:04.101 The log file has been saved successfully to "C:\Users\Administrator\Desktop\aswMBR.txt" ![]() |
![]() | #9 |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows blockiert - 50€ Trojaner Wir sollten den MBR fixen, sichere für den Fall der Fälle ALLE wichtigen Daten, auch wenn meistens alles glatt geht. Hinweis: Mach bitte NICHT den MBR-Fix, wenn du noch andere Betriebssysteme wie zB Ubuntu installiert hast, ein MBR-Fix mit Windows-Tools macht ein parallel installiertes (Dualboot) Linux unbootbar. Mach den Fix auch dann nicht, wenn du zB mit TrueCrypt oder anderen Verschlüsselungsprogrammen eine Vollverschlüsselung der Windowspartition bzw. gesamten Festplatte hast Starte nach der Datensicherung aswmbr erneut und klick auf den Button FIXMBR. Anschließend Windows neu starten und ein neues Log mit aswMBR machen.
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() | #10 |
![]() ![]() | ![]() Windows blockiert - 50€ Trojaner Hallo Arne, MBR fixen ging ohne Probleme Code:
ATTFilter aswMBR version 0.9.9.1297 Copyright(c) 2011 AVAST Software Run date: 2012-01-17 15:48:15 ----------------------------- 15:48:15.616 OS Version: Windows 6.0.6002 Service Pack 2 15:48:15.616 Number of processors: 2 586 0xF0D 15:48:15.619 ComputerName: JENNY-PC UserName: 15:48:17.062 Initialize success 15:48:32.333 AVAST engine download error: 0 15:49:10.879 Verifying 15:49:20.895 Disk 0 Windows 600 MBR fixed successfully 15:49:43.999 Disk 0 MBR has been saved successfully to "C:\Users\Administrator\Desktop\MBR.dat" 15:49:44.001 The log file has been saved successfully to "C:\Users\Administrator\Desktop\aswMBR Fix.txt" Erneut Scan mit MBR, da hat dann alles geklappt: Code:
ATTFilter aswMBR version 0.9.9.1297 Copyright(c) 2011 AVAST Software Run date: 2012-01-17 16:03:22 ----------------------------- 16:03:22.860 OS Version: Windows 6.0.6002 Service Pack 2 16:03:22.860 Number of processors: 2 586 0xF0D 16:03:22.864 ComputerName: JENNY-PC UserName: 16:03:24.738 Initialize success 16:08:00.615 AVAST engine defs: 12011700 16:09:12.970 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 16:09:12.975 Disk 0 Vendor: ST9320320AS 0303 Size: 305245MB BusType: 3 16:09:13.068 Disk 0 MBR read successfully 16:09:13.072 Disk 0 MBR scan 16:09:13.081 Disk 0 Windows VISTA default MBR code 16:09:13.157 Disk 0 Partition 1 00 1C Hidd FAT32 LBA MSDOS5.0 10001 MB offset 63 16:09:13.204 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 152622 MB offset 20484096 16:09:13.214 Disk 0 Partition - 00 0F Extended LBA 142620 MB offset 333053952 16:09:13.253 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 142619 MB offset 333056000 16:09:13.266 Disk 0 scanning sectors +625139712 16:09:13.389 Disk 0 scanning C:\Windows\system32\drivers 16:09:27.663 Service scanning 16:09:29.155 Modules scanning 16:09:38.087 Disk 0 trace - called modules: 16:09:38.119 ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys halmacpi.dll ataport.SYS PCIIDEX.SYS msahci.sys 16:09:38.129 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x85e58ac8] 16:09:38.140 3 CLASSPNP.SYS[8a7a88b3] -> nt!IofCallDriver -> [0x84d76860] 16:09:38.151 5 acpi.sys[8069f6bc] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x85750b98] 16:09:39.083 AVAST engine scan C:\Windows 16:09:47.123 AVAST engine scan C:\Windows\system32 16:12:49.961 AVAST engine scan C:\Windows\system32\drivers 16:13:04.605 AVAST engine scan C:\Users\Administrator 16:13:37.486 AVAST engine scan C:\ProgramData 16:14:48.744 Scan finished successfully 16:15:09.750 Disk 0 MBR has been saved successfully to "C:\Users\Administrator\Desktop\MBR.dat" 16:15:09.762 The log file has been saved successfully to "C:\Users\Administrator\Desktop\aswMBR 17.1..txt" |
![]() | #11 |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows blockiert - 50€ Trojaner Sieht ok aus. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs. Denk dran beide Tools zu updaten vor dem Scan!! Anschließend über den OnlineScanner von ESET eine zusätzliche Meinung zu holen ist auch nicht verkehrt: ESET Online Scanner
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() | #12 |
![]() ![]() | ![]() Windows blockiert - 50€ Trojaner Nabend Arne, hatte leichte Internetprobleme ... Hier die Logs Code:
ATTFilter Malwarebytes Anti-Malware (Test) 1.60.0.1800 www.malwarebytes.org Datenbank Version: v2012.01.18.03 Windows Vista Service Pack 2 x86 NTFS Internet Explorer 9.0.8112.16421 Administrator :: JENNY-PC [Administrator] Schutz: Aktiviert 18.01.2012 14:33:28 mbam-log-2012-01-18 (14-33-28).txt Art des Suchlaufs: Vollständiger Suchlauf Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 341139 Laufzeit: 1 Stunde(n), 19 Minute(n), 27 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) Code:
ATTFilter SUPERAntiSpyware Scan Log hxxp://www.superantispyware.com Generated 01/18/2012 at 06:36 PM Application Version : 5.0.1142 Core Rules Database Version : 8139 Trace Rules Database Version: 5951 Scan type : Complete Scan Total Scan Time : 01:53:59 Operating System Information Windows Vista Home Premium 32-bit, Service Pack 2 (Build 6.00.6002) UAC Off - Administrator Memory items scanned : 700 Memory threats detected : 0 Registry items scanned : 36465 Registry threats detected : 0 File items scanned : 132607 File threats detected : 719 Adware.Tracking Cookie C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\CHL7I6P2.txt [ /atdmt.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\HBRLD41N.txt [ /apmebf.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\EIU1TM4H.txt [ /fl01.ct2.comclick.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\QKQ47ZVG.txt [ /tradedoubler.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\NQ42885A.txt [ /ads.creative-serving.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\V2AJ7YOL.txt [ /ad.ad-srv.net ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\1TSZ47Y2.txt [ /ad3.adfarm1.adition.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\Y37AX6VM.txt [ /webmasterplan.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\ZD3JA483.txt [ /ad4.adfarm1.adition.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\9W5XKSN1.txt [ /ad.zanox.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\XAGOPBC0.txt [ /tracking.quisma.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\EDGHRAOI.txt [ /2o7.net ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\6O2VQ11F.txt [ /e-2dj6aekowjd5wkq.stats.esomniture.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\ES827MPX.txt [ /adfarm1.adition.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\4XAOK79C.txt [ /invitemedia.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\A4VTMP88.txt [ /ad2.adfarm1.adition.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\RTJMS325.txt [ /ad.dyntracker.de ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\N5QC9ZUJ.txt [ /unitymedia.de ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\XUN0GE3O.txt [ /doubleclick.net ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\3LNJXRF0.txt [ /traffictrack.de ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\88IVSJBZ.txt [ /adx.chip.de ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\31ET807R.txt [ /zanox-affiliate.de ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\K7M05HDA.txt [ /mediaplex.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\KUBOL2AX.txt [ /advertising.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\RBWHYWXI.txt [ /www.zanox-affiliate.de ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\9KA1XJ2F.txt [ /ad1.adfarm1.adition.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\2J141RN0.txt [ /zanox.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\TF1A520R.txt [ /ad.yieldmanager.com ] C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\1ACI49OY.txt [ /ad.adc-serv.net ] C:\USERS\ADMINISTRATOR\Cookies\CHL7I6P2.txt [ Cookie:administrator@atdmt.com/ ] C:\USERS\ADMINISTRATOR\Cookies\HBRLD41N.txt [ Cookie:administrator@apmebf.com/ ] C:\USERS\ADMINISTRATOR\Cookies\EIU1TM4H.txt [ Cookie:administrator@fl01.ct2.comclick.com/ ] C:\USERS\ADMINISTRATOR\Cookies\QKQ47ZVG.txt [ Cookie:administrator@tradedoubler.com/ ] C:\USERS\ADMINISTRATOR\Cookies\1TSZ47Y2.txt [ Cookie:administrator@ad3.adfarm1.adition.com/ ] C:\USERS\ADMINISTRATOR\Cookies\Y37AX6VM.txt [ Cookie:administrator@webmasterplan.com/ ] C:\USERS\ADMINISTRATOR\Cookies\ZD3JA483.txt [ Cookie:administrator@ad4.adfarm1.adition.com/ ] C:\USERS\ADMINISTRATOR\Cookies\9W5XKSN1.txt [ Cookie:administrator@ad.zanox.com/ ] C:\USERS\ADMINISTRATOR\Cookies\XAGOPBC0.txt [ Cookie:administrator@tracking.quisma.com/ ] C:\USERS\ADMINISTRATOR\Cookies\EDGHRAOI.txt [ Cookie:administrator@2o7.net/ ] C:\USERS\ADMINISTRATOR\Cookies\ES827MPX.txt [ Cookie:administrator@adfarm1.adition.com/ ] C:\USERS\ADMINISTRATOR\Cookies\A4VTMP88.txt [ Cookie:administrator@ad2.adfarm1.adition.com/ ] C:\USERS\ADMINISTRATOR\Cookies\N5QC9ZUJ.txt [ Cookie:administrator@unitymedia.de/ ] C:\USERS\ADMINISTRATOR\Cookies\XUN0GE3O.txt [ Cookie:administrator@doubleclick.net/ ] C:\USERS\ADMINISTRATOR\Cookies\K7M05HDA.txt [ Cookie:administrator@mediaplex.com/ ] C:\USERS\ADMINISTRATOR\Cookies\KUBOL2AX.txt [ Cookie:administrator@advertising.com/ ] C:\USERS\ADMINISTRATOR\Cookies\RBWHYWXI.txt [ Cookie:administrator@www.zanox-affiliate.de/ ] C:\USERS\ADMINISTRATOR\Cookies\9KA1XJ2F.txt [ Cookie:administrator@ad1.adfarm1.adition.com/ ] C:\USERS\ADMINISTRATOR\Cookies\TF1A520R.txt [ Cookie:administrator@ad.yieldmanager.com/ ] C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@smartadserver[2].txt [ Cookie:jenny@smartadserver.com/ ] C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@tradedoubler[2].txt [ Cookie:jenny@tradedoubler.com/ ] C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\BH5VZIQR.txt [ Cookie:jenny@atdmt.com/ ] C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\TFC1OPPI.txt [ Cookie:jenny@doubleclick.net/ ] C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\6C08DY61.txt [ Cookie:jenny@clkads.com/adServe/banners/ ] C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\7IJJCG97.txt [ Cookie:jenny@clkads.com/adServe/banners ] C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@bs.serving-sys[1].txt [ Cookie:jenny@bs.serving-sys.com/ ] C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@weborama[1].txt [ Cookie:jenny@weborama.fr/ ] C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@mediaplex[3].txt [ Cookie:jenny@mediaplex.com/ ] C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@apmebf[2].txt [ Cookie:jenny@apmebf.com/ ] C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\U1G65Z0W.txt [ Cookie:jenny@microsoftwllivemkt.112.2o7.net/ ] C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@adfarm1.adition[1].txt [ Cookie:jenny@adfarm1.adition.com/ ] C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@ad2.adfarm1.adition[1].txt [ Cookie:jenny@ad2.adfarm1.adition.com/ ] C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\Low\QNSQ85YN.txt [ Cookie:jenny@doubleclick.net/ ] C:\USERS\JENNY\Cookies\jenny@smartadserver[2].txt [ Cookie:jenny@smartadserver.com/ ] C:\USERS\JENNY\Cookies\jenny@tradedoubler[2].txt [ Cookie:jenny@tradedoubler.com/ ] C:\USERS\JENNY\Cookies\BH5VZIQR.txt [ Cookie:jenny@atdmt.com/ ] C:\USERS\JENNY\Cookies\TFC1OPPI.txt [ Cookie:jenny@doubleclick.net/ ] C:\USERS\JENNY\Cookies\6C08DY61.txt [ Cookie:jenny@clkads.com/adServe/banners/ ] C:\USERS\JENNY\Cookies\7IJJCG97.txt [ Cookie:jenny@clkads.com/adServe/banners ] C:\USERS\JENNY\Cookies\jenny@bs.serving-sys[1].txt [ Cookie:jenny@bs.serving-sys.com/ ] C:\USERS\JENNY\Cookies\jenny@weborama[1].txt [ Cookie:jenny@weborama.fr/ ] C:\USERS\JENNY\Cookies\jenny@mediaplex[3].txt [ Cookie:jenny@mediaplex.com/ ] C:\USERS\JENNY\Cookies\jenny@apmebf[2].txt [ Cookie:jenny@apmebf.com/ ] C:\USERS\JENNY\Cookies\U1G65Z0W.txt [ Cookie:jenny@microsoftwllivemkt.112.2o7.net/ ] C:\USERS\JENNY\Cookies\jenny@adfarm1.adition[1].txt [ Cookie:jenny@adfarm1.adition.com/ ] C:\USERS\JENNY\Cookies\jenny@ad2.adfarm1.adition[1].txt [ Cookie:jenny@ad2.adfarm1.adition.com/ ] vht.tradedoubler.com [ C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\WJ9DX3KN ] track.webtrekk.net [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] track.webtrekk.net [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] .zanox.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] .tracking.mindshare.de [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] .content.yieldmanager.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ] ad.adserver01.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.tldadserv.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .doubleclick.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zedo.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .atdmt.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .atdmt.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zanox-affiliate.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .specificclick.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adtech.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] tracking.dc-storm.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] adserv.kwick.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] adserv.kwick.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.usenext.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .apmebf.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .mediaplex.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .azjmp.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .azjmp.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .azjmp.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .mediaplex.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .server.cpmstar.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .server.cpmstar.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .server.cpmstar.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .server.cpmstar.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] media.gan-online.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .myroitracking.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .clicksor.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .clicksor.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .clicksor.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .clicksor.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .clicksor.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .media6degrees.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .media6degrees.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .media6degrees.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .media6degrees.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .statcounter.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ads.247activemedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] adsrv1.admediate.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .interclick.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .lucidmedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .interclick.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .interclick.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ad.adnet.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .content.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zanox.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zedo.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adxpose.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .stats.ilivid.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zedo.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zedo.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .fastclick.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.zanox.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.zanox.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .de.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .de.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .de.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .de.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .de.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adbrite.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adbrite.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .imrworldwide.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .imrworldwide.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.counterstatistik.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .revsci.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .invitemedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad2.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .serving-sys.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .serving-sys.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] track.adform.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] track.adform.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adform.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .lfstmedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .lfstmedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .lfstmedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .lfstmedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tradedoubler.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] tracking.mlsat02.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .bs.serving-sys.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .mediaplex.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad1.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ad.adnet.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tradedoubler.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tradedoubler.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .traffictrack.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .revsci.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .revsci.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adviva.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .serving-sys.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .serving-sys.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad3.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] adultcyberfun.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] delivery.ibanner.de [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] ia.media-imdb.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] imagesrv.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] media.kyte.tv [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] media.mtvnservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] media.onsugar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] media.whosay.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] media1.shufuni.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] media8.onsugar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] msnbcmedia.msn.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] s0.2mdn.net [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] secure-us.imrworldwide.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] tracking.deal69.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] www.99counters.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] www.adservercentral.info [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] wwwstatic.megaporn.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@SERVING-SYS[2].TXT [ /SERVING-SYS ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@VDWP.SOLUTION.WEBORAMA[2].TXT [ /VDWP.SOLUTION.WEBORAMA ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@REVSCI[2].TXT [ /REVSCI ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@MEDIAPLEX[2].TXT [ /MEDIAPLEX ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@SMARTADSERVER[1].TXT [ /SMARTADSERVER ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@APMEBF[1].TXT [ /APMEBF ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@ATDMT[2].TXT [ /ATDMT ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@ATDMT[3].TXT [ /ATDMT ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@ATDMT[4].TXT [ /ATDMT ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@ADX.CHIP[2].TXT [ /ADX.CHIP ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@TRAFFICTRACK[2].TXT [ /TRAFFICTRACK ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@AD.YIELDMANAGER[2].TXT [ /AD.YIELDMANAGER ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ADS2.IT-POLAND[1].TXT [ /ADS2.IT-POLAND ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ETARGETNET[1].TXT [ /ETARGETNET ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ZANOX[1].TXT [ /ZANOX ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@DOUBLECLICK[1].TXT [ /DOUBLECLICK ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@AD2.ADFARM1.ADITION[2].TXT [ /AD2.ADFARM1.ADITION ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ADFARM1.ADITION[2].TXT [ /ADFARM1.ADITION ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@STATCOUNTER[2].TXT [ /STATCOUNTER ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@A.REVENUEMAX[1].TXT [ /A.REVENUEMAX ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@CONTENT.YIELDMANAGER[3].TXT [ /CONTENT.YIELDMANAGER ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@CONTENT.YIELDMANAGER[1].TXT [ /CONTENT.YIELDMANAGER ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ATDMT[1].TXT [ /ATDMT ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@WEBMASTERPLAN[2].TXT [ /WEBMASTERPLAN ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@TRADEDOUBLER[1].TXT [ /TRADEDOUBLER ] C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ADTECH[1].TXT [ /ADTECH ] in.getclicky.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .getclicky.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .static.getclicky.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] adsrv1.admediate.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adviva.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adviva.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] track.webtrekk.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] track.webtrekk.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.adition.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] stats.internet-yadro.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .kontera.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] stats.kroogy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] stats.kroogy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .www.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tto2.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .xm.xtendmedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] tracking.klicktel.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] tracking.klicktel.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] www9.addfreestats.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .rambler.ru [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.adserver01.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .realmedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adcentriconline.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .openstat.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] www.digital-eliteboard.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] www.digital-eliteboard.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adtechus.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adserver.adtechus.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .bravenet.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .clickaider.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .pubads.g.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] us.2.cqcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ads.247activemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .celebrity-sunglasses-finder.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .linksynergy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .linksynergy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .linksynergy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .linksynergy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] wstat.wibiya.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ads.rokatraffic.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .xiti.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .stats.complex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .stats.complex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .mediabrandsww.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .atomicwarez.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .cdn.atomicwarez.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .histats.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .histats.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] counter.hitslink.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] www.zanox-affiliate.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .trafficmp.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .trafficmp.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .trafficmp.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] s1.trafficmaxx.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] rgadvert.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .yieldmanager.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .c.gigcount.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .modepilot.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .modepilot.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ibanner.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .media.photobucket.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adxpose.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] fl01.ct2.comclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] fl01.ct2.comclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] fl01.ct2.comclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] warezleech.org [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] warezleech.org [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .pornmap.tv [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .aim4media.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .countomat.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .pro-market.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .eyewonder.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .eyewonder.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] tracking.dc-storm.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] adserver.vistery.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adserver.gs [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] www.ontoplist.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .warezcz.cz [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .warezcz.cz [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .warezcz.cz [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .warezcz.cz [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] upvalue1.easymedia-adserver.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] adservercentral.info [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] tracking.sim-technik.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] f.blogads.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .elitepartner.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] www.elitepartner.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ads.adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tracking.deal69.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .a.revenuemax.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .liveperson.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .yadro.ru [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .usenext.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .at.atwola.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .at.atwola.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tacoda.at.atwola.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tacoda.at.atwola.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .chitika.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] adserver.adreactor.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .sevenoneintermedia.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .122.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .122.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .snapfish.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .iscout24.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .germanwings.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .beiersdorf.122.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .nike.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .msnportal.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tns-counter.ru [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] advert.istanbul.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] dc.tremormedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] adserv.kwick.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] adserv.kwick.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ads.quartermedia.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ads.quartermedia.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] adserver2.clipkit.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .estat.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .liveperson.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .burstnet.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] www.mediamarkt.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .mediamarkt.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .e-2dj6wgmiwpd5ecp.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] testdata.coremetrics.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .atrack.allposters.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] statse.webtrendslive.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .c.atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .c.atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] fl01.ct2.comclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] fl01.ct2.comclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .viewablemedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] keyword-advertising.gmx.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ad-emea.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ad-emea.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] adserver.kauperts.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] adserver.kauperts.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .mmotraffic.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .mmotraffic.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] tracking.gameforge.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .dyntracker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .azjmp.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .azjmp.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] edates.traffective-tracking.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] edates.traffective-tracking.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] edates.traffective-tracking.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .www.burstnet.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .gostats.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .aim4media.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .aim4media.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad4.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adviva.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .e-2dj6aeloqkcpseo.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .e-2dj6aemiohdzacp.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ad-emea.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.adition.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.adition.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ad-emea.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .e-2dj6aelyopd5klo.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .e-2dj6wdkoaoczeao.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .e-2dj6wjmyugcpagq.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .burstnet.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .e-2dj6wgl4ohdjsko.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] clicks.stylefruits.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .gostats.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .f.megaclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .f.megaclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .f.megaclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .megaclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .de.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .generaltracking.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .generaltracking.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .generaltracking.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .generaltracking.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .generaltracking.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adform.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .bs.serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] media.gan-online.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .clickfuse.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad2.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .zanox.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] www.counterstatistik.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ww251.smartadserver.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad3.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad1.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ] Code:
ATTFilter ESETSmartInstaller@High as CAB hook log: OnlineScanner.ocx - registred OK # version=7 # iexplore.exe=9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) # OnlineScanner.ocx=1.0.0.6583 # api_version=3.0.2 # EOSSerial=d9ef1d72dcfe674f9e1aeb0196b23913 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2012-01-11 08:58:57 # local_time=2012-01-11 09:58:57 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1031 # osver=6.0.6002 NT Service Pack 2 # compatibility_mode=1797 16775165 100 100 26711 101825879 79961 0 # compatibility_mode=5892 16776573 100 100 4409 163843300 0 0 # compatibility_mode=8192 67108863 100 0 3918 3918 0 0 # scanned=144022 # found=2 # cleaned=0 # scan_time=4965 C:\Users\Jenny\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\eBay.lnk Win32/Adware.ADON Anwendung (Säubern nicht möglich) 00000000000000000000000000000000 I C:\Users\Jenny\AppData\Roaming\Microsoft\Windows\Start Menu\eBay.lnk Win32/Adware.ADON Anwendung (Säubern nicht möglich) 00000000000000000000000000000000 I esets_scanner_update returned -1 esets_gle=53251 # version=7 # iexplore.exe=9.00.8112.16421 (WIN7_IE9_RTM.110308-0330) # OnlineScanner.ocx=1.0.0.6583 # api_version=3.0.2 # EOSSerial=d9ef1d72dcfe674f9e1aeb0196b23913 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2012-01-18 08:26:17 # local_time=2012-01-18 09:26:17 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.0.6002 NT Service Pack 2 # compatibility_mode=1797 16775165 100 100 94758 102426239 1271 0 # compatibility_mode=5892 16776573 100 100 15565 164443660 0 0 # compatibility_mode=8192 67108863 100 0 604278 604278 0 0 # scanned=140570 # found=2 # cleaned=0 # scan_time=7445 C:\Users\Jenny\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\eBay.lnk Win32/Adware.ADON application (unable to clean) 00000000000000000000000000000000 I C:\Users\Jenny\AppData\Roaming\Microsoft\Windows\Start Menu\eBay.lnk Win32/Adware.ADON application (unable to clean) 00000000000000000000000000000000 I |
![]() | #13 |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows blockiert - 50€ Trojaner Sieht ok aus, da wurden nur Cookies gefunden. Die können weg. Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie ) Noch Probleme oder weitere Funde in der Zwischenzeit?
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() | #14 | |
![]() ![]() | ![]() Windows blockiert - 50€ TrojanerZitat:
Ich würde jetzt mal im normalen Konto alles testen und nochmal Bescheid geben. Meinste denn, das wir dann durch sind??? |
![]() | #15 |
![]() ![]() | ![]() Windows blockiert - 50€ Trojaner Bin jetzt in das normale Benutzerkonto gegangen (vorher Admin). Es erscheint noch immer www.conduit.de als Startseite, statt Google ... kurz danach ist der Rechner immer abgeschmiert! Ging bisher aber seit juten 10 Minuten gut. Macht es denn einen Unterschied in welchem Benutzerkonto ich bin?! Ich habe jetzt Avast! Antivirus und Avira AntiVir drauf. Beißen die sich? Sollte ich eins runterkicken??? Geändert von Sunshine_Mel (18.01.2012 um 22:37 Uhr) |
![]() |
Themen zu Windows blockiert - 50€ Trojaner |
50€ trojaner, 50€-trojaner, abgesicherten, berlin, blockiert, desktop, direkt, erkennt, forum, frage, freundin, infizierte, internet, kaufen, laptop, lösung, modus, netzwerk, programme, scan, speicher, suche, system, trojane, trojaner, upgrade, windows, zusammen |