Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Windows blockiert - 50€ Trojaner

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

Antwort
Alt 12.01.2012, 23:28   #1
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Zitat:
wo anders runtergeladen,
Ich hoffe NICHT bei softonic
Die Downloadlinks sind alle sauber in der Anleitung zu sehen
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 12.01.2012, 23:40   #2
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Zitat:
Zitat von cosinus Beitrag anzeigen
Ich hoffe NICHT bei softonic
Die Downloadlinks sind alle sauber in der Anleitung zu sehen
Sorry, aber schön aneinander vorbei gequatscht

leider wirklich bei softonic ... als erstes, als zweites dann direkt bei kaspersky.

Deswegen, kann ich auf der Seite auch nicht posten
__________________


Alt 12.01.2012, 23:43   #3
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



sry aber

Finger weg von Softonic!!

Softonic ist eine Toolbar- und Adwareschleuder! Finger weg! Software lädt man sich mit oberster Priorität direkt vom Hersteller und nicht von solchen Toolbarklitschen wie Softonic! Im Notfall würde natürlich chip.de gehen
__________________
__________________

Alt 12.01.2012, 23:46   #4
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Zitat:
Zitat von cosinus Beitrag anzeigen
sry aber

Finger weg von Softonic!!

Softonic ist eine Toolbar- und Adwareschleuder! Finger weg! Software lädt man sich mit oberster Priorität direkt vom Hersteller und nicht von solchen Toolbarklitschen wie Softonic! Im Notfall würde natürlich chip.de gehen
Eyyyy, ist schon spät

Hab alle Häkchen entfernt gehabt, mich da aber auch schon gewundert. Sollte mehr uff meinen Bauch hören.


Ist jetzt soweit aber alles ok mit dem letzten post? oder muss ich noch irgendwas ändern?

Geändert von Sunshine_Mel (13.01.2012 um 00:00 Uhr)

Alt 13.01.2012, 01:20   #5
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Dann bitte jetzt CF ausführen:

ComboFix

Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Schliesse alle Programme, vor allem dein Antivirenprogramm und andere Hintergrundwächter sowie deinen Internetbrowser.
  • Starte cofi.exe von deinem Desktop aus, bestätige die Warnmeldungen, führe die Updates durch (falls vorgeschlagen), installiere die Wiederherstellungskonsole (falls vorgeschlagen) und lass dein System durchsuchen.
    Vermeide es auch während Combofix läuft die Maus und Tastatur zu benutzen.
  • Im Anschluss öffnet sich automatisch eine combofix.txt, diesen Inhalt bitte kopieren ([Strg]a, [Strg]c) und in deinen Beitrag einfügen ([Strg]v). Die Datei findest du außerdem unter: C:\ComboFix.txt.
Wichtiger Hinweis:
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!

Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich ziehen und eine Bereinigung der Infektion noch erschweren.

Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie

Zitat:
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
startest du Windows dann manuell neu und die Fehlermeldungen sollten nicht mehr auftauchen.

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 13.01.2012, 18:48   #6
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Hallöchen Arne,

hier die Combofix.log

Code:
ATTFilter
ComboFix 12-01-13.03 - Administrator 13.01.2012  17:43:55.1.2 - x86
Microsoft® Windows Vista™ Home Premium   6.0.6002.2.1252.49.1031.18.3070.1601 [GMT 1:00]
ausgeführt von:: c:\users\Administrator\Desktop\ComboFix.exe
AV: AntiVir Desktop *Disabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
SP: AntiVir Desktop *Disabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((   Weitere Löschungen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Jenny\AppData\Roaming\Desktopicon
c:\users\Jenny\AppData\Roaming\Desktopicon\eBay.ico
c:\users\Jenny\AppData\Roaming\Desktopicon\uninst.exe
.
.
(((((((((((((((((((((((   Dateien erstellt von 2011-12-13 bis 2012-01-13  ))))))))))))))))))))))))))))))
.
.
2012-01-13 16:49 . 2012-01-13 16:49	--------	d-----w-	c:\users\Jenny\AppData\Local\temp
2012-01-13 16:49 . 2012-01-13 16:49	--------	d-----w-	c:\users\Gast\AppData\Local\temp
2012-01-13 16:49 . 2012-01-13 16:49	--------	d-----w-	c:\users\Default\AppData\Local\temp
2012-01-12 20:49 . 2012-01-12 20:49	--------	d-----w-	C:\_OTL
2012-01-11 19:30 . 2012-01-11 19:30	--------	d-----w-	c:\program files\ESET
2012-01-09 20:41 . 2012-01-09 20:41	--------	d-----w-	c:\users\Jenny\AppData\Roaming\Malwarebytes
2012-01-09 20:40 . 2012-01-09 20:40	--------	d-----w-	c:\programdata\Malwarebytes
2012-01-09 20:40 . 2012-01-09 20:41	--------	d-----w-	c:\program files\Malwarebytes' Anti-Malware
2012-01-09 20:40 . 2011-12-10 14:24	20464	----a-w-	c:\windows\system32\drivers\mbam.sys
2012-01-09 20:12 . 2012-01-10 18:24	--------	d-----w-	c:\users\Administrator
2012-01-06 13:11 . 2009-06-22 19:01	112128	----a-w-	c:\windows\system32\drivers\ewusbnet.sys
2012-01-06 13:11 . 2009-06-22 18:38	102912	----a-w-	c:\windows\system32\drivers\ewusbmdm.sys
2012-01-06 13:11 . 2009-06-22 18:26	100736	----a-w-	c:\windows\system32\drivers\ewusbdev.sys
2012-01-06 13:11 . 2007-08-09 03:06	23424	----a-w-	c:\windows\system32\drivers\ewdcsc.sys
2012-01-06 13:11 . 2012-01-06 13:13	--------	d-----w-	c:\program files\Mobile Partner
2011-12-30 23:20 . 2011-11-21 10:47	6823496	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{13C4E3AE-75B9-4F63-9EBA-0E65F0197AA2}\mpengine.dll
2011-12-24 16:30 . 2011-12-24 16:30	1207568	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2011-12-15 20:29 . 2011-10-27 08:01	3602816	----a-w-	c:\windows\system32\ntkrnlpa.exe
2011-12-15 20:29 . 2011-10-27 08:01	3550080	----a-w-	c:\windows\system32\ntoskrnl.exe
2011-12-15 20:29 . 2011-11-23 13:37	2043904	----a-w-	c:\windows\system32\win32k.sys
2011-12-15 20:29 . 2011-10-14 16:02	429056	----a-w-	c:\windows\system32\EncDec.dll
2011-12-15 20:29 . 2011-11-08 12:10	2409784	----a-w-	c:\program files\Windows Mail\OESpamFilter.dat
2011-12-15 20:29 . 2011-10-25 15:56	49152	----a-w-	c:\windows\system32\csrsrv.dll
2011-12-15 20:29 . 2011-11-08 14:42	2048	----a-w-	c:\windows\system32\tzres.dll
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-01-12 21:39 . 2008-11-10 23:58	45056	----a-w-	c:\windows\system32\acovcnt.exe
2011-12-11 19:08 . 2011-12-11 19:08	161792	----a-w-	c:\windows\system32\msls31.dll
2011-12-11 19:07 . 2011-12-11 19:07	86528	----a-w-	c:\windows\system32\iesysprep.dll
2011-12-11 19:07 . 2011-12-11 19:07	76800	----a-w-	c:\windows\system32\SetIEInstalledDate.exe
2011-12-11 19:07 . 2011-12-11 19:07	74752	----a-w-	c:\windows\system32\RegisterIEPKEYs.exe
2011-12-11 19:07 . 2011-12-11 19:07	48640	----a-w-	c:\windows\system32\mshtmler.dll
2011-12-11 19:07 . 2011-12-11 19:07	63488	----a-w-	c:\windows\system32\tdc.ocx
2011-12-11 19:07 . 2011-12-11 19:07	367104	----a-w-	c:\windows\system32\html.iec
2011-12-11 19:07 . 2011-12-11 19:07	74752	----a-w-	c:\windows\system32\iesetup.dll
2011-12-11 19:07 . 2011-12-11 19:07	420864	----a-w-	c:\windows\system32\vbscript.dll
2011-12-11 19:07 . 2011-12-11 19:07	23552	----a-w-	c:\windows\system32\licmgr10.dll
2011-12-11 19:07 . 2011-12-11 19:07	152064	----a-w-	c:\windows\system32\wextract.exe
2011-12-11 19:07 . 2011-12-11 19:07	150528	----a-w-	c:\windows\system32\iexpress.exe
2011-12-11 19:07 . 2011-12-11 19:07	35840	----a-w-	c:\windows\system32\imgutil.dll
2011-12-11 19:07 . 2011-12-11 19:07	142848	----a-w-	c:\windows\system32\ieUnatt.exe
2011-12-11 19:07 . 2011-12-11 19:07	11776	----a-w-	c:\windows\system32\mshta.exe
2011-12-11 19:07 . 2011-12-11 19:07	101888	----a-w-	c:\windows\system32\admparse.dll
2011-12-11 19:07 . 2011-12-11 19:07	110592	----a-w-	c:\windows\system32\IEAdvpack.dll
2011-11-19 19:05 . 2011-06-14 22:50	414368	----a-w-	c:\windows\system32\FlashPlayerCPLApp.cpl
2009-12-05 13:28 . 2009-07-26 14:31	119808	----a-w-	c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WindowsWelcomeCenter"="oobefldr.dll" [2009-04-11 2153472]
"LightScribe Control Panel"="c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe" [2008-06-09 2363392]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-11-29 421888]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2011-03-07 421160]
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2011-12-24 460872]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~1\Google\GOOGLE~1\GOEC62~1.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2009-12-11 14:57	948672	----a-r-	c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-12-18 07:58	40368	----a-w-	c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
2008-11-10 23:53	47672	----a-w-	c:\windows\AsScrProlog.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2008-11-10 23:53	3054136	----a-w-	c:\windows\AsScrPro.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATKOSD2]
2008-01-23 23:34	7766016	----a-w-	c:\program files\ATKOSD2\ATKOSD2.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\avgnt]
2009-03-02 11:08	209153	----a-w-	c:\program files\Avira\AntiVir Desktop\avgnt.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
2008-07-19 03:52	104936	----a-w-	c:\program files\CyberLink\Power2Go\CLMLSvc.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
2010-09-01 06:39	1164584	----a-w-	c:\program files\DivX\DivX Update\DivXUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe]
2008-01-21 02:25	125952	----a-w-	c:\windows\ehome\ehtray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus SX200 Series]
2007-12-13 15:00	188928	----a-w-	c:\windows\System32\spool\drivers\w32x86\3\E_FATIEFE.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
2009-12-05 13:28	30192	----a-w-	c:\program files\Google\Google Desktop Search\GoogleDesktop.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HControlUser]
2008-01-12 06:40	98304	----a-w-	c:\program files\ATK Hotkey\HControlUser.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2011-03-07 14:33	421160	----a-w-	c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2008-06-09 18:16	2363392	----a-w-	c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
2010-04-16 20:12	3872080	----a-w-	c:\program files\Windows Live\Messenger\msnmsgr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NSSInstallation]
2010-03-08 18:00	497016	----a-w-	c:\program files\DivX\Symantec\scstubinstaller.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2008-07-25 08:30	13548064	----a-w-	c:\windows\System32\nvcpl.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2008-07-25 08:30	92704	----a-w-	c:\windows\System32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P2Go_Menu]
2008-06-14 02:11	210216	----a-w-	c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2010-11-29 16:38	421888	----a-w-	c:\program files\QuickTime\QTTask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
2008-08-12 08:21	6265376	----a-w-	c:\windows\RtHDVCpl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
2009-04-11 06:28	1233920	----a-w-	c:\program files\Windows Sidebar\sidebar.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel]
2008-08-12 08:21	1833504	----a-w-	c:\windows\SkyTel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPStart]
2007-08-17 06:40	102400	----a-w-	c:\program files\Synaptics\SynTP\SynTPStart.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WindowsWelcomeCenter]
2009-04-11 06:28	2153472	----a-w-	c:\windows\System32\oobefldr.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation	REG_MULTI_SZ   	FontCache
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 18:14	451872	----a-w-	c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Inhalt des "geplante Tasks" Ordners
.
2011-02-07 c:\windows\Tasks\Install_NSS.job
- c:\program files\DivX\Symantec\scstubinstaller.exe [2010-03-08 18:00]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://www.google.com/ig/redirectdomain?brand=ASUS&bmod=ASUS
mStart Page = hxxp://alice.aol.de
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
MSConfigStartUp-swg - c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
AddRemove-Free Audio CD Burner_is1 - c:\program files\DVDVideoSoft\Free Audio CD Burner\unins000.exe
AddRemove-Uninstall_is1 - c:\program files\Common Files\DVDVideoSoft\unins000.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net
Rootkit scan 2012-01-13 17:50
Windows 6.0.6002 Service Pack 2 NTFS
.
Scanne versteckte Prozesse... 
.
Scanne versteckte Autostarteinträge... 
.
Scanne versteckte Dateien... 
.
Scan erfolgreich abgeschlossen
versteckte Dateien: 0
.
**************************************************************************
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Internet Explorer\Approved Extensions]
@Denied: (2) (Administrator)
"{FF059E31-CC5A-4E2E-BF3B-96E929D65503}"=hex:51,66,7a,6c,4c,1d,3b,1b,21,87,1f,
   e1,6c,9b,49,03,ab,36,c9,b5,29,9c,15,1a
"{BDEADE7F-C265-11D0-BCED-00A0C90AB50F}"=hex:51,66,7a,6c,4c,1d,3b,1b,6f,c7,f0,
   a3,53,95,b7,5c,a8,e0,5f,fc,c9,40,f5,16
"{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}"=hex:51,66,7a,6c,4c,1d,3b,1b,8f,87,9e,
   18,e1,9f,3e,00,ac,70,27,17,7d,21,a0,aa
"{9030D464-4C02-4ABF-8ECC-5164760863C6}"=hex:51,66,7a,6c,4c,1d,3b,1b,74,cd,2a,
   8e,34,1b,d8,07,9a,c1,0e,38,76,42,23,df
"{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}"=hex:51,66,7a,6c,4c,1d,3b,1b,79,41,9a,
   b0,6a,79,b3,03,9b,76,ae,ab,85,50,04,8e
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration]
@Denied: (2) (Administrator)
"Timestamp"=hex:80,62,72,9f,b8,cf,cc,01
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (Administrator)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
   d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,e5,55,96,3c,30,5e,52,48,bc,65,1a,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
   d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,e5,55,96,3c,30,5e,52,48,bc,65,1a,\
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.HTM"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.HTM"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mht\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.MHT"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mhtml\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.MHT"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.partial\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.PARTIAL"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.svg\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.SVG"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.url\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.URL"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.website\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.WEBSITE"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.XHT"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.XHT"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Zeit der Fertigstellung: 2012-01-13  17:52:10
ComboFix-quarantined-files.txt  2012-01-13 16:52
.
Vor Suchlauf: 7 Verzeichnis(se), 85.263.802.368 Bytes frei
Nach Suchlauf: 12 Verzeichnis(se), 89.161.097.216 Bytes frei
.
- - End Of File - - 311E4CBA2E3E7DCA8047922C9643F269
         

Alt 13.01.2012, 19:25   #7
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Ok. Bitte nun Logs mit GMER und OSAM erstellen und posten.
GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen.
Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst.

Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM!

Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe - (aswMBR.exe Anleitung)
    Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten".
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen )
    Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS-Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort.

Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung

Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none).

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 15.01.2012, 17:08   #8
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Hallöchen Arne,

Code:
ATTFilter
GMER 1.0.15.15641 - hxxp://www.gmer.net
Rootkit scan 2012-01-15 15:35:18
Windows 6.0.6002 Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 ST9320320AS rev.0303
Running: gmer.exe; Driver: C:\Users\ADMINI~1\AppData\Local\Temp\fwtoypog.sys


---- System - GMER 1.0.15 ----

SSDT            9ED7A9CC                                  ZwCreateThread
SSDT            9ED7A9B8                                  ZwOpenProcess
SSDT            9ED7A9BD                                  ZwOpenThread
SSDT            9ED7A9C7                                  ZwTerminateProcess

---- Kernel code sections - GMER 1.0.15 ----

.text           ntkrnlpa.exe!KeSetEvent + 221             824E99A4 4 Bytes  [CC, A9, D7, 9E]
.text           ntkrnlpa.exe!KeSetEvent + 3F1             824E9B74 4 Bytes  [B8, A9, D7, 9E]
.text           ntkrnlpa.exe!KeSetEvent + 40D             824E9B90 4 Bytes  [BD, A9, D7, 9E]
.text           ntkrnlpa.exe!KeSetEvent + 621             824E9DA4 4 Bytes  [C7, A9, D7, 9E]
.text           C:\Windows\system32\DRIVERS\nvlddmkm.sys  section is writeable [0x8E206340, 0x3EE587, 0xE8000020]

---- Devices - GMER 1.0.15 ----

AttachedDevice  \Driver\kbdclass \Device\KeyboardClass0   Wdf01000.sys (WDF Dynamic/Microsoft Corporation)
AttachedDevice  \Driver\kbdclass \Device\KeyboardClass1   Wdf01000.sys (WDF Dynamic/Microsoft Corporation)

Device          \Driver\ACPI_HAL \Device\00000077         halmacpi.dll (Hardware Abstraction Layer DLL/Microsoft Corporation)

AttachedDevice  \FileSystem\fastfat \Fat                  fltmgr.sys (Microsoft Dateisystem-Filter-Manager/Microsoft Corporation)

---- EOF - GMER 1.0.15 ----
         
Code:
ATTFilter
Report of OSAM: Autorun Manager v5.0.11926.0
hxxp://www.online-solutions.ru/en/
Saved at 16:39:20 on 15.01.2012

OS: Windows Vista Home Premium Edition Service Pack 2 (Build 6002), 32-bit
Default Browser: Microsoft Corporation Internet Explorer 9.00.8112.16421

Scanner Settings
[x] Rootkits detection (hidden registry)
[x] Rootkits detection (hidden files)
[x] Retrieve files information
[x] Check Microsoft signatures

Filters
[ ] Trusted entries
[ ] Empty entries
[x] Hidden registry entries (rootkit activity)
[x] Exclusively opened files
[x] Not found files
[x] Files without detailed information
[x] Existing files
[ ] Non-startable services
[ ] Non-startable drivers
[x] Active entries
[x] Disabled entries


[AppInit DLLs]
-----( HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows )-----
"AppInit_DLLs" - "Google" - C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL

[Control Panel Objects]
-----( %SystemRoot%\system32 )-----
"DivXControlPanelApplet.cpl" - "DivX, Inc." - C:\Windows\system32\DivXControlPanelApplet.cpl
"FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\Windows\system32\FlashPlayerCPLApp.cpl
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )-----
"mlcfg32.cpl" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\MLCFG32.CPL
"QuickTime" - "Apple Inc." - C:\Program Files\QuickTime\QTSystem\QuickTime.cpl

[Drivers]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"ASMMAP" (ASMMAP) - ? - C:\Program Files\ATKGFNEX\ASMMAP.sys
"avgio" (avgio) - "Avira GmbH" - C:\Program Files\Avira\AntiVir Desktop\avgio.sys
"avgntflt" (avgntflt) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avgntflt.sys
"avipbb" (avipbb) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avipbb.sys
"catchme" (catchme) - ? - C:\Users\ADMINI~1\AppData\Local\Temp\catchme.sys  (File not found)
"ghaio" (ghaio) - ? - C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys  (File found, but it contains no detailed information)
"IP in IP Tunnel Driver" (IpInIp) - ? - C:\Windows\System32\DRIVERS\ipinip.sys  (File not found)
"IPX Traffic Filter Driver" (NwlnkFlt) - ? - C:\Windows\System32\DRIVERS\nwlnkflt.sys  (File not found)
"IPX Traffic Forwarder Driver" (NwlnkFwd) - ? - C:\Windows\System32\DRIVERS\nwlnkfwd.sys  (File not found)
"MBAMProtector" (MBAMProtector) - "Malwarebytes Corporation" - C:\Windows\system32\drivers\mbam.sys
"PxHelp20" (PxHelp20) - "Sonic Solutions" - C:\Windows\System32\Drivers\PxHelp20.sys
"ssmdrv" (ssmdrv) - "Avira GmbH" - C:\Windows\System32\DRIVERS\ssmdrv.sys

[Explorer]
-----( HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components )-----
{10880D85-AAD9-4558-ABDC-2AB1552D831F} "LightScribe Control Panel" - "Hewlett-Packard Company" - "C:\Program Files\Common Files\LightScribe\LSRunOnce.exe"
-----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )-----
{F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll
-----( HKLM\Software\Classes\Protocols\Filter )-----
{807563E5-5146-11D5-A672-00B0D022E945} "Microsoft Office InfoPath XML Mime Filter" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
-----( HKLM\Software\Classes\Protocols\Handler )-----
{314111c7-a502-11d2-bbca-00c04f8ec294} "HxProtocol Class" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
{828030A1-22C1-4009-854F-8E305202313F} "livecall" - "Microsoft Corporation" - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
{828030A1-22C1-4009-854F-8E305202313F} "msnim" - "Microsoft Corporation" - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
{91774881-D725-4E58-B298-07617B9B86A8} "Skype IE add-on Pluggable Protocol" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
{03C514A3-1EFB-4856-9F99-10D7BE1653C0} "Windows Live Mail HTML Asynchronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\Program Files\Windows Live\Mail\mailcomm.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{911051fa-c21c-4246-b470-070cd8df6dc4} ".cab or .zip files" - ? -   (File not found | COM-object registry key not found)
{1b24a030-9b20-49bc-97ac-1be4426f9e59} "ActiveDirectory Folder" - ? -   (File not found | COM-object registry key not found)
{34449847-FD14-4fc8-A75A-7432F5181EFB} "ActiveDirectory Folder" - ? -   (File not found | COM-object registry key not found)
{0563DB41-F538-4B37-A92D-4659049B7766} "CLSID_WLMCMimeFilter" - "Microsoft Corporation" - C:\Program Files\Windows Live\Mail\mailcomm.dll
{0F8604A5-4ECE-4DE1-BA7D-CF10F8AA4F48} "Contacts folder" - ? -   (File not found | COM-object registry key not found)
{2C2577C2-63A7-40e3-9B7F-586602617ECB} "Explorer Query Band" - ? -   (File not found | COM-object registry key not found)
{FAC3CBF6-8697-43d0-BAB9-DCD1FCE19D75} "IE User Assist" - ? -   (File not found | COM-object registry key not found)
{B9E1D2CB-CCFF-4AA6-9579-D7A4754030EF} "iTunes" - "Apple Inc." - C:\Program Files\iTunes\iTunesMiniPlayer.dll
{42042206-2D85-11D3-8CFF-005004838597} "Microsoft Office HTML Icon Handler" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office12\msohevi.dll
{993BE281-6695-4BA5-8A2A-7AACBFAAB69E} "Microsoft Office Metadata Handler" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll
{00020d75-0000-0000-c000-000000000046} "Microsoft Office Outlook" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\MLSHEXT.DLL
{C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} "Microsoft Office Thumbnail Handler" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll
{0006F045-0000-0000-C000-000000000046} "Outlook File Icon Extension" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\OLKFSTUB.DLL
{C8494E42-ACDD-4739-B0FB-217361E4894F} "Sam Account Folder" - ? -   (File not found | COM-object registry key not found)
{E29F9716-5C08-4FCD-955A-119FDB5A522D} "Sam Account Folder" - ? -   (File not found | COM-object registry key not found)
{45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" - "Avira GmbH" - C:\Program Files\Avira\AntiVir Desktop\shlext.dll
{da67b8ad-e81b-4c70-9b91b417b5e33527} "Windows Search Shell Service" - ? -   (File not found | COM-object registry key not found)
{B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" - "Alexander Roshal" - C:\Program Files\WinRAR\rarext.dll

[Internet Explorer]
-----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )-----
{7530BFB8-7293-4D34-9923-61A11451AFC5} "OnlineScanner Control" - "ESET" - C:\PROGRA~1\ESET\ESETON~1\ONLINE~1.OCX / hxxp://download.eset.com/special/eos/OnlineScanner.cab
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )-----
{FF059E31-CC5A-4E2E-BF3B-96E929D65503} "Research" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
{898EA8C8-E7FF-479B-8935-AEC46303B9E5} "Skype Click to Call" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )-----
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} "Adobe PDF Reader Link Helper" - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} "Skype Browser Helper" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
{9030D464-4C02-4ABF-8ECC-5164760863C6} "Windows Live ID-Anmelde-Hilfsprogramm" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
{5C255C8A-E604-49b4-9D64-90988571CECB} "{5C255C8A-E604-49b4-9D64-90988571CECB}" - ? -   (File not found | COM-object registry key not found)

[Logon]
-----( %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
-----( %AllUsersProfile%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
-----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )-----
"LightScribe Control Panel" - "Hewlett-Packard Company" - C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
-----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )-----
"StartupPrograms" - ? - rdpclip  (File not found)
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )-----
"iTunesHelper" - "Apple Inc." - "C:\Program Files\iTunes\iTunesHelper.exe"
"Malwarebytes' Anti-Malware" - "Malwarebytes Corporation" - "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"QuickTime Task" - "Apple Inc." - "C:\Program Files\QuickTime\QTTask.exe" -atboottime

[Services]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100" (WPFFontCache_v0400) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
"Apple Mobile Device" (Apple Mobile Device) - "Apple Inc." - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
"ASLDR Service" (ASLDRService) - ? - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
"ATKGFNEX Service" (ATKGFNEXSrv) - ? - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
"Avira AntiVir Guard" (AntiVirService) - "Avira GmbH" - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
"Avira AntiVir Planer" (AntiVirSchedulerService) - "Avira GmbH" - C:\Program Files\Avira\AntiVir Desktop\sched.exe
"Dienst "Bonjour"" (Bonjour Service) - "Apple Inc." - C:\Program Files\Bonjour\mDNSResponder.exe
"Google Desktop Manager 5.9.911.3589" (GoogleDesktopManager-110309-193829) - "Google" - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
"Google Software Updater" (gusvc) - "Google" - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
"iPod-Dienst" (iPod Service) - "Apple Inc." - C:\Program Files\iPod\bin\iPodService.exe
"LightScribeService Direct Disc Labeling Service" (LightScribeService) - "Hewlett-Packard Company" - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
"MBAMService" (MBAMService) - "Malwarebytes Corporation" - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
"Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
"Microsoft Office Diagnostics Service" (odserv) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
"Office Source Engine" (ose) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
"spmgr" (spmgr) - ? - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
"Windows Live ID Sign-in Assistant" (wlidsvc) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

[Winsock Providers]
-----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries )-----
"mdnsNSP" - "Apple Inc." - C:\Program Files\Bonjour\mdnsNSP.dll

===[ Logfile end ]=========================================[ Logfile end ]===

If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru
         
Code:
ATTFilter
aswMBR version 0.9.9.1297 Copyright(c) 2011 AVAST Software
Run date: 2012-01-15 16:50:40
-----------------------------
16:50:40.200    OS Version: Windows 6.0.6002 Service Pack 2
16:50:40.200    Number of processors: 2 586 0xF0D
16:50:40.200    ComputerName: JENNY-PC  UserName: 
16:50:41.651    Initialize success
16:50:57.504    AVAST engine download error: 0
16:51:05.273    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
16:51:05.273    Disk 0 Vendor: ST9320320AS 0303 Size: 305245MB BusType: 3
16:51:05.289    Disk 0 MBR read successfully
16:51:05.304    Disk 0 MBR scan
16:51:05.304    Disk 0 unknown MBR code
16:51:05.304    Disk 0 Partition 1 00     1C Hidd FAT32 LBA MSDOS5.0    10001 MB offset 63
16:51:05.336    Disk 0 Partition 2 80 (A) 07    HPFS/NTFS NTFS       152622 MB offset 20484096
16:51:05.336    Disk 0 Partition - 00     0F Extended LBA            142620 MB offset 333053952
16:51:05.382    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS       142619 MB offset 333056000
16:51:05.382    Disk 0 scanning sectors +625139712
16:51:05.507    Disk 0 scanning C:\Windows\system32\drivers
16:51:13.526    Service scanning
16:51:15.008    Modules scanning
16:51:32.448    Disk 0 trace - called modules:
16:51:32.480    ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys halmacpi.dll ataport.SYS PCIIDEX.SYS msahci.sys 
16:51:32.480    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x858ddac8]
16:51:32.495    3 CLASSPNP.SYS[8a7af8b3] -> nt!IofCallDriver -> [0x85769860]
16:51:32.495    5 acpi.sys[8069a6bc] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x85732390]
16:51:32.511    Scan finished successfully
16:52:04.085    Disk 0 MBR has been saved successfully to "C:\Users\Administrator\Desktop\MBR.dat"
16:52:04.101    The log file has been saved successfully to "C:\Users\Administrator\Desktop\aswMBR.txt"
         

Alt 15.01.2012, 18:35   #9
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Wir sollten den MBR fixen, sichere für den Fall der Fälle ALLE wichtigen Daten, auch wenn meistens alles glatt geht.

Hinweis: Mach bitte NICHT den MBR-Fix, wenn du noch andere Betriebssysteme wie zB Ubuntu installiert hast, ein MBR-Fix mit Windows-Tools macht ein parallel installiertes (Dualboot) Linux unbootbar.
Mach den Fix auch dann nicht, wenn du zB mit TrueCrypt oder anderen Verschlüsselungsprogrammen eine Vollverschlüsselung der Windowspartition bzw. gesamten Festplatte hast


Starte nach der Datensicherung aswmbr erneut und klick auf den Button FIXMBR.
Anschließend Windows neu starten und ein neues Log mit aswMBR machen.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 17.01.2012, 16:33   #10
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Hallo Arne,

MBR fixen ging ohne Probleme
Code:
ATTFilter
aswMBR version 0.9.9.1297 Copyright(c) 2011 AVAST Software
Run date: 2012-01-17 15:48:15
-----------------------------
15:48:15.616    OS Version: Windows 6.0.6002 Service Pack 2
15:48:15.616    Number of processors: 2 586 0xF0D
15:48:15.619    ComputerName: JENNY-PC  UserName: 
15:48:17.062    Initialize success
15:48:32.333    AVAST engine download error: 0
15:49:10.879    Verifying
15:49:20.895    Disk 0 Windows 600 MBR fixed successfully
15:49:43.999    Disk 0 MBR has been saved successfully to "C:\Users\Administrator\Desktop\MBR.dat"
15:49:44.001    The log file has been saved successfully to "C:\Users\Administrator\Desktop\aswMBR Fix.txt"
         
Nach dem Neustart dann MBR Scan gestartet. Programm ist mit BlueScreen abgestürzt. Laptop automatisch neugestartet.
Erneut Scan mit MBR, da hat dann alles geklappt:

Code:
ATTFilter
aswMBR version 0.9.9.1297 Copyright(c) 2011 AVAST Software
Run date: 2012-01-17 16:03:22
-----------------------------
16:03:22.860    OS Version: Windows 6.0.6002 Service Pack 2
16:03:22.860    Number of processors: 2 586 0xF0D
16:03:22.864    ComputerName: JENNY-PC  UserName: 
16:03:24.738    Initialize success
16:08:00.615    AVAST engine defs: 12011700
16:09:12.970    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
16:09:12.975    Disk 0 Vendor: ST9320320AS 0303 Size: 305245MB BusType: 3
16:09:13.068    Disk 0 MBR read successfully
16:09:13.072    Disk 0 MBR scan
16:09:13.081    Disk 0 Windows VISTA default MBR code
16:09:13.157    Disk 0 Partition 1 00     1C Hidd FAT32 LBA MSDOS5.0    10001 MB offset 63
16:09:13.204    Disk 0 Partition 2 80 (A) 07    HPFS/NTFS NTFS       152622 MB offset 20484096
16:09:13.214    Disk 0 Partition - 00     0F Extended LBA            142620 MB offset 333053952
16:09:13.253    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS       142619 MB offset 333056000
16:09:13.266    Disk 0 scanning sectors +625139712
16:09:13.389    Disk 0 scanning C:\Windows\system32\drivers
16:09:27.663    Service scanning
16:09:29.155    Modules scanning
16:09:38.087    Disk 0 trace - called modules:
16:09:38.119    ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys halmacpi.dll ataport.SYS PCIIDEX.SYS msahci.sys 
16:09:38.129    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x85e58ac8]
16:09:38.140    3 CLASSPNP.SYS[8a7a88b3] -> nt!IofCallDriver -> [0x84d76860]
16:09:38.151    5 acpi.sys[8069f6bc] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x85750b98]
16:09:39.083    AVAST engine scan C:\Windows
16:09:47.123    AVAST engine scan C:\Windows\system32
16:12:49.961    AVAST engine scan C:\Windows\system32\drivers
16:13:04.605    AVAST engine scan C:\Users\Administrator
16:13:37.486    AVAST engine scan C:\ProgramData
16:14:48.744    Scan finished successfully
16:15:09.750    Disk 0 MBR has been saved successfully to "C:\Users\Administrator\Desktop\MBR.dat"
16:15:09.762    The log file has been saved successfully to "C:\Users\Administrator\Desktop\aswMBR 17.1..txt"
         

Alt 17.01.2012, 20:27   #11
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Sieht ok aus. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs.
Denk dran beide Tools zu updaten vor dem Scan!!


Anschließend über den OnlineScanner von ESET eine zusätzliche Meinung zu holen ist auch nicht verkehrt:


ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 18.01.2012, 21:49   #12
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Nabend Arne,

hatte leichte Internetprobleme ...

Hier die Logs

Code:
ATTFilter
 Malwarebytes Anti-Malware  (Test) 1.60.0.1800
www.malwarebytes.org

Datenbank Version: v2012.01.18.03

Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 9.0.8112.16421
Administrator :: JENNY-PC [Administrator]

Schutz: Aktiviert

18.01.2012 14:33:28
mbam-log-2012-01-18 (14-33-28).txt

Art des Suchlaufs: Vollständiger Suchlauf
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 341139
Laufzeit: 1 Stunde(n), 19 Minute(n), 27 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)

(Ende)
         
SUPERAntiSpyware

Code:
ATTFilter
SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com

Generated 01/18/2012 at 06:36 PM

Application Version : 5.0.1142

Core Rules Database Version : 8139
Trace Rules Database Version: 5951

Scan type       : Complete Scan
Total Scan Time : 01:53:59

Operating System Information
Windows Vista Home Premium 32-bit, Service Pack 2 (Build 6.00.6002)
UAC Off - Administrator

Memory items scanned      : 700
Memory threats detected   : 0
Registry items scanned    : 36465
Registry threats detected : 0
File items scanned        : 132607
File threats detected     : 719

Adware.Tracking Cookie
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\CHL7I6P2.txt [ /atdmt.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\HBRLD41N.txt [ /apmebf.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\EIU1TM4H.txt [ /fl01.ct2.comclick.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\QKQ47ZVG.txt [ /tradedoubler.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\NQ42885A.txt [ /ads.creative-serving.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\V2AJ7YOL.txt [ /ad.ad-srv.net ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\1TSZ47Y2.txt [ /ad3.adfarm1.adition.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\Y37AX6VM.txt [ /webmasterplan.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\ZD3JA483.txt [ /ad4.adfarm1.adition.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\9W5XKSN1.txt [ /ad.zanox.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\XAGOPBC0.txt [ /tracking.quisma.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\EDGHRAOI.txt [ /2o7.net ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\6O2VQ11F.txt [ /e-2dj6aekowjd5wkq.stats.esomniture.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\ES827MPX.txt [ /adfarm1.adition.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\4XAOK79C.txt [ /invitemedia.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\A4VTMP88.txt [ /ad2.adfarm1.adition.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\RTJMS325.txt [ /ad.dyntracker.de ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\N5QC9ZUJ.txt [ /unitymedia.de ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\XUN0GE3O.txt [ /doubleclick.net ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\3LNJXRF0.txt [ /traffictrack.de ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\88IVSJBZ.txt [ /adx.chip.de ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\31ET807R.txt [ /zanox-affiliate.de ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\K7M05HDA.txt [ /mediaplex.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\KUBOL2AX.txt [ /advertising.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\RBWHYWXI.txt [ /www.zanox-affiliate.de ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\9KA1XJ2F.txt [ /ad1.adfarm1.adition.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\2J141RN0.txt [ /zanox.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\TF1A520R.txt [ /ad.yieldmanager.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\1ACI49OY.txt [ /ad.adc-serv.net ]
	C:\USERS\ADMINISTRATOR\Cookies\CHL7I6P2.txt [ Cookie:administrator@atdmt.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\HBRLD41N.txt [ Cookie:administrator@apmebf.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\EIU1TM4H.txt [ Cookie:administrator@fl01.ct2.comclick.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\QKQ47ZVG.txt [ Cookie:administrator@tradedoubler.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\1TSZ47Y2.txt [ Cookie:administrator@ad3.adfarm1.adition.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\Y37AX6VM.txt [ Cookie:administrator@webmasterplan.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\ZD3JA483.txt [ Cookie:administrator@ad4.adfarm1.adition.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\9W5XKSN1.txt [ Cookie:administrator@ad.zanox.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\XAGOPBC0.txt [ Cookie:administrator@tracking.quisma.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\EDGHRAOI.txt [ Cookie:administrator@2o7.net/ ]
	C:\USERS\ADMINISTRATOR\Cookies\ES827MPX.txt [ Cookie:administrator@adfarm1.adition.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\A4VTMP88.txt [ Cookie:administrator@ad2.adfarm1.adition.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\N5QC9ZUJ.txt [ Cookie:administrator@unitymedia.de/ ]
	C:\USERS\ADMINISTRATOR\Cookies\XUN0GE3O.txt [ Cookie:administrator@doubleclick.net/ ]
	C:\USERS\ADMINISTRATOR\Cookies\K7M05HDA.txt [ Cookie:administrator@mediaplex.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\KUBOL2AX.txt [ Cookie:administrator@advertising.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\RBWHYWXI.txt [ Cookie:administrator@www.zanox-affiliate.de/ ]
	C:\USERS\ADMINISTRATOR\Cookies\9KA1XJ2F.txt [ Cookie:administrator@ad1.adfarm1.adition.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\TF1A520R.txt [ Cookie:administrator@ad.yieldmanager.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@smartadserver[2].txt [ Cookie:jenny@smartadserver.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@tradedoubler[2].txt [ Cookie:jenny@tradedoubler.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\BH5VZIQR.txt [ Cookie:jenny@atdmt.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\TFC1OPPI.txt [ Cookie:jenny@doubleclick.net/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\6C08DY61.txt [ Cookie:jenny@clkads.com/adServe/banners/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\7IJJCG97.txt [ Cookie:jenny@clkads.com/adServe/banners ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@bs.serving-sys[1].txt [ Cookie:jenny@bs.serving-sys.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@weborama[1].txt [ Cookie:jenny@weborama.fr/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@mediaplex[3].txt [ Cookie:jenny@mediaplex.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@apmebf[2].txt [ Cookie:jenny@apmebf.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\U1G65Z0W.txt [ Cookie:jenny@microsoftwllivemkt.112.2o7.net/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@adfarm1.adition[1].txt [ Cookie:jenny@adfarm1.adition.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@ad2.adfarm1.adition[1].txt [ Cookie:jenny@ad2.adfarm1.adition.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\Low\QNSQ85YN.txt [ Cookie:jenny@doubleclick.net/ ]
	C:\USERS\JENNY\Cookies\jenny@smartadserver[2].txt [ Cookie:jenny@smartadserver.com/ ]
	C:\USERS\JENNY\Cookies\jenny@tradedoubler[2].txt [ Cookie:jenny@tradedoubler.com/ ]
	C:\USERS\JENNY\Cookies\BH5VZIQR.txt [ Cookie:jenny@atdmt.com/ ]
	C:\USERS\JENNY\Cookies\TFC1OPPI.txt [ Cookie:jenny@doubleclick.net/ ]
	C:\USERS\JENNY\Cookies\6C08DY61.txt [ Cookie:jenny@clkads.com/adServe/banners/ ]
	C:\USERS\JENNY\Cookies\7IJJCG97.txt [ Cookie:jenny@clkads.com/adServe/banners ]
	C:\USERS\JENNY\Cookies\jenny@bs.serving-sys[1].txt [ Cookie:jenny@bs.serving-sys.com/ ]
	C:\USERS\JENNY\Cookies\jenny@weborama[1].txt [ Cookie:jenny@weborama.fr/ ]
	C:\USERS\JENNY\Cookies\jenny@mediaplex[3].txt [ Cookie:jenny@mediaplex.com/ ]
	C:\USERS\JENNY\Cookies\jenny@apmebf[2].txt [ Cookie:jenny@apmebf.com/ ]
	C:\USERS\JENNY\Cookies\U1G65Z0W.txt [ Cookie:jenny@microsoftwllivemkt.112.2o7.net/ ]
	C:\USERS\JENNY\Cookies\jenny@adfarm1.adition[1].txt [ Cookie:jenny@adfarm1.adition.com/ ]
	C:\USERS\JENNY\Cookies\jenny@ad2.adfarm1.adition[1].txt [ Cookie:jenny@ad2.adfarm1.adition.com/ ]
	vht.tradedoubler.com [ C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\WJ9DX3KN ]
	track.webtrekk.net [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	track.webtrekk.net [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.tracking.mindshare.de [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.content.yieldmanager.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	ad.adserver01.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.tldadserv.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.doubleclick.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.atdmt.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.atdmt.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.zanox-affiliate.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	tracking.dc-storm.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	adserv.kwick.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	adserv.kwick.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.usenext.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.apmebf.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.mediaplex.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.azjmp.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.azjmp.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.azjmp.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.mediaplex.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	media.gan-online.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.myroitracking.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.clicksor.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.clicksor.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.clicksor.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.clicksor.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.clicksor.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.statcounter.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ads.247activemedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	adsrv1.admediate.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.interclick.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.lucidmedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.interclick.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.interclick.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.ad.adnet.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.content.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.zanox.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adxpose.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.stats.ilivid.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.fastclick.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.zanox.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.zanox.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.de.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.de.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.de.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.de.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.de.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adbrite.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adbrite.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.imrworldwide.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.imrworldwide.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.counterstatistik.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad2.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	track.adform.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	track.adform.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adform.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.lfstmedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.lfstmedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.lfstmedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.lfstmedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	tracking.mlsat02.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.bs.serving-sys.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.mediaplex.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad1.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.ad.adnet.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adviva.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad3.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	adultcyberfun.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	delivery.ibanner.de [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	ia.media-imdb.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	imagesrv.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	media.kyte.tv [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	media.mtvnservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	media.onsugar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	media.whosay.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	media1.shufuni.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	media8.onsugar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	msnbcmedia.msn.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	s0.2mdn.net [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	secure-us.imrworldwide.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	tracking.deal69.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	www.99counters.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	www.adservercentral.info [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	wwwstatic.megaporn.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@SERVING-SYS[2].TXT [ /SERVING-SYS ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@VDWP.SOLUTION.WEBORAMA[2].TXT [ /VDWP.SOLUTION.WEBORAMA ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@REVSCI[2].TXT [ /REVSCI ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@MEDIAPLEX[2].TXT [ /MEDIAPLEX ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@SMARTADSERVER[1].TXT [ /SMARTADSERVER ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@APMEBF[1].TXT [ /APMEBF ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@ATDMT[2].TXT [ /ATDMT ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@ATDMT[3].TXT [ /ATDMT ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@ATDMT[4].TXT [ /ATDMT ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@ADX.CHIP[2].TXT [ /ADX.CHIP ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@TRAFFICTRACK[2].TXT [ /TRAFFICTRACK ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@AD.YIELDMANAGER[2].TXT [ /AD.YIELDMANAGER ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ADS2.IT-POLAND[1].TXT [ /ADS2.IT-POLAND ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ETARGETNET[1].TXT [ /ETARGETNET ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ZANOX[1].TXT [ /ZANOX ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@DOUBLECLICK[1].TXT [ /DOUBLECLICK ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@AD2.ADFARM1.ADITION[2].TXT [ /AD2.ADFARM1.ADITION ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ADFARM1.ADITION[2].TXT [ /ADFARM1.ADITION ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@STATCOUNTER[2].TXT [ /STATCOUNTER ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@A.REVENUEMAX[1].TXT [ /A.REVENUEMAX ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@CONTENT.YIELDMANAGER[3].TXT [ /CONTENT.YIELDMANAGER ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@CONTENT.YIELDMANAGER[1].TXT [ /CONTENT.YIELDMANAGER ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ATDMT[1].TXT [ /ATDMT ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@WEBMASTERPLAN[2].TXT [ /WEBMASTERPLAN ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@TRADEDOUBLER[1].TXT [ /TRADEDOUBLER ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ADTECH[1].TXT [ /ADTECH ]
	in.getclicky.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.getclicky.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.static.getclicky.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adsrv1.admediate.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.webtrekk.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.webtrekk.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.adition.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	stats.internet-yadro.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adultfriendfinder.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.nextag.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.nextag.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.kontera.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	stats.kroogy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	stats.kroogy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.www.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tto2.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.xm.xtendmedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.klicktel.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.klicktel.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www9.addfreestats.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.rambler.ru [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.adserver01.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.realmedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adcentriconline.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.openstat.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.digital-eliteboard.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.digital-eliteboard.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtechus.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adserver.adtechus.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.bravenet.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.clickaider.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.pubads.g.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	us.2.cqcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ads.247activemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.celebrity-sunglasses-finder.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.linksynergy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.linksynergy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.linksynergy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.linksynergy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	wstat.wibiya.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ads.rokatraffic.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.xiti.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.stats.complex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.stats.complex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mediabrandsww.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.atomicwarez.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.cdn.atomicwarez.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.histats.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.histats.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	counter.hitslink.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.zanox-affiliate.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.trafficmp.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.trafficmp.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.trafficmp.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	s1.trafficmaxx.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	rgadvert.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.yieldmanager.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.c.gigcount.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.modepilot.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.modepilot.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ibanner.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.media.photobucket.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adxpose.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	warezleech.org [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	warezleech.org [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.pornmap.tv [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.aim4media.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.countomat.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.pro-market.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.eyewonder.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.eyewonder.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.dc-storm.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adserver.vistery.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adserver.gs [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.ontoplist.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.warezcz.cz [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.warezcz.cz [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.warezcz.cz [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.warezcz.cz [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	upvalue1.easymedia-adserver.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adservercentral.info [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.sim-technik.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	f.blogads.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.elitepartner.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.elitepartner.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ads.adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.deal69.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.a.revenuemax.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.liveperson.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.yadro.ru [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.usenext.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.at.atwola.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.at.atwola.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tacoda.at.atwola.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tacoda.at.atwola.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.chitika.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adserver.adreactor.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.sevenoneintermedia.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.122.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.122.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.snapfish.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.iscout24.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.germanwings.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.beiersdorf.122.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.nike.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.msnportal.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tns-counter.ru [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	advert.istanbul.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	dc.tremormedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adserv.kwick.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adserv.kwick.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ads.quartermedia.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ads.quartermedia.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adserver2.clipkit.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.estat.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.liveperson.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.burstnet.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.mediamarkt.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mediamarkt.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wgmiwpd5ecp.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	testdata.coremetrics.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.atrack.allposters.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	statse.webtrendslive.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.c.atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.c.atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.viewablemedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	keyword-advertising.gmx.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad-emea.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad-emea.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adserver.kauperts.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adserver.kauperts.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mmotraffic.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mmotraffic.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.gameforge.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.dyntracker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.azjmp.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.azjmp.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	edates.traffective-tracking.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	edates.traffective-tracking.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	edates.traffective-tracking.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.www.burstnet.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.gostats.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.aim4media.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.aim4media.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad4.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6aeloqkcpseo.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6aemiohdzacp.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad-emea.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.adition.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.adition.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad-emea.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6aelyopd5klo.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wdkoaoczeao.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wjmyugcpagq.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.burstnet.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wgl4ohdjsko.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	clicks.stylefruits.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.gostats.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.f.megaclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.f.megaclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.f.megaclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.megaclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.de.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.generaltracking.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.generaltracking.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.generaltracking.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.generaltracking.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.generaltracking.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adform.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.bs.serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.clickfuse.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad2.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.counterstatistik.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ww251.smartadserver.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad3.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad1.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
         
ESET

Code:
ATTFilter
ESETSmartInstaller@High as CAB hook log:
OnlineScanner.ocx - registred OK
# version=7
# iexplore.exe=9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)
# OnlineScanner.ocx=1.0.0.6583
# api_version=3.0.2
# EOSSerial=d9ef1d72dcfe674f9e1aeb0196b23913
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2012-01-11 08:58:57
# local_time=2012-01-11 09:58:57 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.0.6002 NT Service Pack 2
# compatibility_mode=1797 16775165 100 100 26711 101825879 79961 0
# compatibility_mode=5892 16776573 100 100 4409 163843300 0 0
# compatibility_mode=8192 67108863 100 0 3918 3918 0 0
# scanned=144022
# found=2
# cleaned=0
# scan_time=4965
C:\Users\Jenny\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\eBay.lnk	Win32/Adware.ADON Anwendung (Säubern nicht möglich)	00000000000000000000000000000000	I
C:\Users\Jenny\AppData\Roaming\Microsoft\Windows\Start Menu\eBay.lnk	Win32/Adware.ADON Anwendung (Säubern nicht möglich)	00000000000000000000000000000000	I
esets_scanner_update returned -1 esets_gle=53251
# version=7
# iexplore.exe=9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)
# OnlineScanner.ocx=1.0.0.6583
# api_version=3.0.2
# EOSSerial=d9ef1d72dcfe674f9e1aeb0196b23913
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2012-01-18 08:26:17
# local_time=2012-01-18 09:26:17 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1033
# osver=6.0.6002 NT Service Pack 2
# compatibility_mode=1797 16775165 100 100 94758 102426239 1271 0
# compatibility_mode=5892 16776573 100 100 15565 164443660 0 0
# compatibility_mode=8192 67108863 100 0 604278 604278 0 0
# scanned=140570
# found=2
# cleaned=0
# scan_time=7445
C:\Users\Jenny\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\eBay.lnk	Win32/Adware.ADON application (unable to clean)	00000000000000000000000000000000	I
C:\Users\Jenny\AppData\Roaming\Microsoft\Windows\Start Menu\eBay.lnk	Win32/Adware.ADON application (unable to clean)	00000000000000000000000000000000	I
         

Alt 18.01.2012, 21:51   #13
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Sieht ok aus, da wurden nur Cookies gefunden. Die können weg.
Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie )

Noch Probleme oder weitere Funde in der Zwischenzeit?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 18.01.2012, 22:11   #14
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Zitat:
Zitat von cosinus Beitrag anzeigen
Sieht ok aus, da wurden nur Cookies gefunden. Die können weg.

Noch Probleme oder weitere Funde in der Zwischenzeit?
Hab ich mir gedacht, hab die Cookies und Browserverlauf gelöscht.

Ich würde jetzt mal im normalen Konto alles testen und nochmal Bescheid geben.

Meinste denn, das wir dann durch sind???

Alt 18.01.2012, 22:31   #15
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Bin jetzt in das normale Benutzerkonto gegangen (vorher Admin).

Es erscheint noch immer www.conduit.de als Startseite, statt Google ...

kurz danach ist der Rechner immer abgeschmiert! Ging bisher aber seit juten 10 Minuten gut.

Macht es denn einen Unterschied in welchem Benutzerkonto ich bin?!

Ich habe jetzt Avast! Antivirus und Avira AntiVir drauf. Beißen die sich? Sollte ich eins runterkicken???

Geändert von Sunshine_Mel (18.01.2012 um 22:37 Uhr)

Antwort

Themen zu Windows blockiert - 50€ Trojaner
50€ trojaner, 50€-trojaner, abgesicherten, berlin, blockiert, desktop, direkt, erkennt, forum, frage, freundin, infizierte, internet, kaufen, laptop, lösung, modus, netzwerk, programme, scan, speicher, suche, system, trojane, trojaner, upgrade, windows, zusammen




Ähnliche Themen: Windows blockiert - 50€ Trojaner


  1. GVU Trojaner blockiert alles - Windows 7 64 bit
    Plagegeister aller Art und deren Bekämpfung - 05.09.2012 (9)
  2. Trojaner blockiert Windows start
    Plagegeister aller Art und deren Bekämpfung - 28.07.2012 (17)
  3. Trojaner blockiert Windows (Windows-Verschlüsselung)
    Log-Analyse und Auswertung - 20.05.2012 (1)
  4. 50-€-Trojaner, Windows 7 blockiert!
    Log-Analyse und Auswertung - 01.04.2012 (6)
  5. 50€ Trojaner, Windows blockiert
    Plagegeister aller Art und deren Bekämpfung - 29.03.2012 (6)
  6. Trojaner Windows blockiert
    Log-Analyse und Auswertung - 23.02.2012 (32)
  7. Trojaner :/ Windows-System ist blockiert..
    Plagegeister aller Art und deren Bekämpfung - 12.02.2012 (6)
  8. Trojaner Windows System ist blockiert
    Plagegeister aller Art und deren Bekämpfung - 12.02.2012 (3)
  9. 50 Euro Trojaner blockiert Windows 64 bit
    Log-Analyse und Auswertung - 30.01.2012 (27)
  10. Windows blockiert aus Sicherheitsgründen-Trojaner
    Log-Analyse und Auswertung - 30.01.2012 (30)
  11. 50 euro Trojaner blockiert windows 7
    Log-Analyse und Auswertung - 29.01.2012 (1)
  12. Windows blockiert aus Sicherheitsgründen - Trojaner
    Plagegeister aller Art und deren Bekämpfung - 25.01.2012 (18)
  13. Trojaner Windows blockiert eingefangen!
    Log-Analyse und Auswertung - 09.01.2012 (23)
  14. Trojaner, 50 € bezahlen, Windows blockiert
    Log-Analyse und Auswertung - 02.01.2012 (5)
  15. Windows blockiert. 50 Euro Trojaner.
    Log-Analyse und Auswertung - 29.12.2011 (7)
  16. Windows blockiert, 50€ Trojaner
    Plagegeister aller Art und deren Bekämpfung - 27.12.2011 (2)
  17. Windows blockiert! Virus/Trojaner
    Log-Analyse und Auswertung - 13.12.2011 (12)

Zum Thema Windows blockiert - 50€ Trojaner - Zitat: wo anders runtergeladen, Ich hoffe NICHT bei softonic Die Downloadlinks sind alle sauber in der Anleitung zu sehen - Windows blockiert - 50€ Trojaner...
Archiv
Du betrachtest: Windows blockiert - 50€ Trojaner auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.