|
Plagegeister aller Art und deren Bekämpfung: Bundestrojaner, Klappe die 439.Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
17.03.2012, 14:21 | #16 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Bundestrojaner, Klappe die 439. Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten => http://www.trojaner-board.de/82358-t...entfernen.html Hinweis: Bitte den Virenscanner abstellen bevor du den TDSS-Killer ausführst, denn v.a. Avira meldet im TDSS-Tool oft einen Fehalalrm! Das Tool so einstellen wie unten im Bild angegeben - klick auf change parameters und setze die Haken wie im folgenden Screenshot abgebildet, Dann auf Start Scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten. Wenn du das Log nicht findest oder den Inhalt kopieren und in dein Posting übertragen kannst, dann schau bitte direkt auf deiner Windows-Systempartition (meistens Laufwerk C nach, da speichert der TDSS-Killer seine Logs. Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten!
__________________ Logfiles bitte immer in CODE-Tags posten |
18.03.2012, 08:55 | #17 |
| Bundestrojaner, Klappe die 439.Code:
ATTFilter 08:51:16.0347 4424 TDSS rootkit removing tool 2.7.20.0 Mar 9 2012 17:10:43 08:51:16.0581 4424 ============================================================ 08:51:16.0581 4424 Current date / time: 2012/03/18 08:51:16.0581 08:51:16.0581 4424 SystemInfo: 08:51:16.0581 4424 08:51:16.0581 4424 OS Version: 6.0.6002 ServicePack: 2.0 08:51:16.0581 4424 Product type: Workstation 08:51:16.0581 4424 ComputerName: LADYSIRENETY 08:51:16.0581 4424 UserName: Lady Sirenety 08:51:16.0581 4424 Windows directory: C:\Windows 08:51:16.0581 4424 System windows directory: C:\Windows 08:51:16.0581 4424 Processor architecture: Intel x86 08:51:16.0581 4424 Number of processors: 2 08:51:16.0581 4424 Page size: 0x1000 08:51:16.0581 4424 Boot type: Normal boot 08:51:16.0581 4424 ============================================================ 08:51:19.0733 4424 Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050 08:51:19.0748 4424 \Device\Harddisk0\DR0: 08:51:19.0748 4424 MBR used 08:51:19.0748 4424 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x6, StartLBA 0x1385000, BlocksNum 0x8B8C000 08:51:19.0748 4424 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x9F11000, BlocksNum 0x8B08000 08:51:19.0826 4424 Initialize success 08:51:19.0826 4424 ============================================================ 08:51:31.0464 6084 ============================================================ 08:51:31.0464 6084 Scan started 08:51:31.0464 6084 Mode: Manual; SigCheck; TDLFS; 08:51:31.0464 6084 ============================================================ 08:51:32.0696 6084 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys 08:51:32.0805 6084 ACPI - ok 08:51:32.0868 6084 adp94xx (2edc5bbac6c651ece337bde8ed97c9fb) C:\Windows\system32\drivers\adp94xx.sys 08:51:32.0993 6084 adp94xx - ok 08:51:33.0351 6084 adpahci (b84088ca3cdca97da44a984c6ce1ccad) C:\Windows\system32\drivers\adpahci.sys 08:51:33.0367 6084 adpahci - ok 08:51:33.0476 6084 adpu160m (7880c67bccc27c86fd05aa2afb5ea469) C:\Windows\system32\drivers\adpu160m.sys 08:51:33.0492 6084 adpu160m - ok 08:51:33.0523 6084 adpu320 (9ae713f8e30efc2abccd84904333df4d) C:\Windows\system32\drivers\adpu320.sys 08:51:33.0539 6084 adpu320 - ok 08:51:33.0617 6084 AFD (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys 08:51:33.0695 6084 AFD - ok 08:51:33.0819 6084 agp440 (ef23439cdd587f64c2c1b8825cead7d8) C:\Windows\system32\drivers\agp440.sys 08:51:33.0835 6084 agp440 - ok 08:51:33.0882 6084 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys 08:51:33.0897 6084 aic78xx - ok 08:51:34.0038 6084 aliide (90395b64600ebb4552e26e178c94b2e4) C:\Windows\system32\drivers\aliide.sys 08:51:34.0053 6084 aliide - ok 08:51:34.0100 6084 amdagp (2b13e304c9dfdfa5eb582f6a149fa2c7) C:\Windows\system32\drivers\amdagp.sys 08:51:34.0116 6084 amdagp - ok 08:51:34.0131 6084 amdide (0577df1d323fe75a739c787893d300ea) C:\Windows\system32\drivers\amdide.sys 08:51:34.0147 6084 amdide - ok 08:51:34.0178 6084 AmdK7 (dc487885bcef9f28eece6fac0e5ddfc5) C:\Windows\system32\drivers\amdk7.sys 08:51:34.0350 6084 AmdK7 - ok 08:51:34.0662 6084 AmdK8 (93ae7f7dd54ab986a6f1a1b37be7442d) C:\Windows\system32\DRIVERS\amdk8.sys 08:51:34.0787 6084 AmdK8 - ok 08:51:34.0958 6084 ApfiltrService (db8ea68e5864adf61b73516788659e71) C:\Windows\system32\DRIVERS\Apfiltr.sys 08:51:35.0005 6084 ApfiltrService - ok 08:51:35.0067 6084 arc (5f673180268bb1fdb69c99b6619fe379) C:\Windows\system32\drivers\arc.sys 08:51:35.0083 6084 arc - ok 08:51:35.0192 6084 arcsas (957f7540b5e7f602e44648c7de5a1c05) C:\Windows\system32\drivers\arcsas.sys 08:51:35.0208 6084 arcsas - ok 08:51:35.0255 6084 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys 08:51:35.0317 6084 AsyncMac - ok 08:51:35.0364 6084 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys 08:51:35.0379 6084 atapi - ok 08:51:35.0535 6084 athr (acdb46b1a467752a2f280c68c8461556) C:\Windows\system32\DRIVERS\athr.sys 08:51:35.0645 6084 athr - ok 08:51:35.0816 6084 avgntflt (7713e4eb0276702faa08e52a6e23f2a6) C:\Windows\system32\DRIVERS\avgntflt.sys 08:51:35.0847 6084 avgntflt - ok 08:51:35.0879 6084 avipbb (13b02b9b969dde270cd7c351203dad3c) C:\Windows\system32\DRIVERS\avipbb.sys 08:51:35.0894 6084 avipbb - ok 08:51:35.0941 6084 avkmgr (271cfd1a989209b1964e24d969552bf7) C:\Windows\system32\DRIVERS\avkmgr.sys 08:51:35.0957 6084 avkmgr - ok 08:51:36.0097 6084 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys 08:51:36.0159 6084 Beep - ok 08:51:36.0191 6084 blbdrive - ok 08:51:36.0237 6084 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys 08:51:36.0284 6084 bowser - ok 08:51:36.0409 6084 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys 08:51:36.0518 6084 BrFiltLo - ok 08:51:36.0627 6084 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys 08:51:36.0659 6084 BrFiltUp - ok 08:51:36.0705 6084 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys 08:51:36.0768 6084 Brserid - ok 08:51:36.0877 6084 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys 08:51:36.0955 6084 BrSerWdm - ok 08:51:36.0986 6084 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys 08:51:37.0033 6084 BrUsbMdm - ok 08:51:37.0049 6084 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys 08:51:37.0127 6084 BrUsbSer - ok 08:51:37.0251 6084 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys 08:51:37.0314 6084 BTHMODEM - ok 08:51:37.0361 6084 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys 08:51:37.0392 6084 cdfs - ok 08:51:37.0532 6084 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys 08:51:37.0579 6084 cdrom - ok 08:51:37.0610 6084 circlass (e5d4133f37219dbcfe102bc61072589d) C:\Windows\system32\DRIVERS\circlass.sys 08:51:37.0657 6084 circlass - ok 08:51:37.0766 6084 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys 08:51:37.0782 6084 CLFS - ok 08:51:37.0860 6084 CmBatt (99afc3795b58cc478fbbbcdc658fcb56) C:\Windows\system32\DRIVERS\CmBatt.sys 08:51:37.0907 6084 CmBatt - ok 08:51:38.0000 6084 cmdide (45201046c776ffdaf3fc8a0029c581c8) C:\Windows\system32\drivers\cmdide.sys 08:51:38.0000 6084 cmdide - ok 08:51:38.0047 6084 Compbatt (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\DRIVERS\compbatt.sys 08:51:38.0063 6084 Compbatt - ok 08:51:38.0109 6084 crcdisk (2a213ae086bbec5e937553c7d9a2b22c) C:\Windows\system32\drivers\crcdisk.sys 08:51:38.0109 6084 crcdisk - ok 08:51:38.0141 6084 Crusoe (22a7f883508176489f559ee745b5bf5d) C:\Windows\system32\drivers\crusoe.sys 08:51:38.0203 6084 Crusoe - ok 08:51:38.0687 6084 DfsC (622c41a07ca7e6dd91770f50d532cb6c) C:\Windows\system32\Drivers\dfsc.sys 08:51:38.0749 6084 DfsC - ok 08:51:38.0874 6084 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys 08:51:38.0889 6084 disk - ok 08:51:39.0014 6084 DKbFltr (73baf270d24fe726b9cd7f80bb17a23d) C:\Windows\system32\DRIVERS\DKbFltr.sys 08:51:39.0030 6084 DKbFltr - ok 08:51:39.0092 6084 DritekPortIO (5c918d413f5837e67a85775c9873775e) C:\PROGRA~1\LAUNCH~1\DPortIO.sys 08:51:39.0092 6084 DritekPortIO - ok 08:51:39.0264 6084 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys 08:51:39.0295 6084 drmkaud - ok 08:51:39.0357 6084 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys 08:51:39.0404 6084 DXGKrnl - ok 08:51:39.0545 6084 E1G60 (f88fb26547fd2ce6d0a5af2985892c48) C:\Windows\system32\DRIVERS\E1G60I32.sys 08:51:39.0607 6084 E1G60 - ok 08:51:39.0747 6084 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys 08:51:39.0763 6084 Ecache - ok 08:51:39.0935 6084 elxstor (e8f3f21a71720c84bcf423b80028359f) C:\Windows\system32\drivers\elxstor.sys 08:51:39.0950 6084 elxstor - ok 08:51:39.0997 6084 enecir (29dcaeb81dde6f154aa4d36b18ecbb1f) C:\Windows\system32\DRIVERS\enecir.sys 08:51:40.0044 6084 enecir - ok 08:51:40.0215 6084 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys 08:51:40.0247 6084 exfat - ok 08:51:40.0325 6084 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys 08:51:40.0449 6084 fastfat - ok 08:51:40.0481 6084 fdc (63bdada84951b9c03e641800e176898a) C:\Windows\system32\DRIVERS\fdc.sys 08:51:40.0559 6084 fdc - ok 08:51:40.0683 6084 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys 08:51:40.0699 6084 FileInfo - ok 08:51:40.0730 6084 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys 08:51:40.0777 6084 Filetrace - ok 08:51:40.0808 6084 flpydisk (6603957eff5ec62d25075ea8ac27de68) C:\Windows\system32\DRIVERS\flpydisk.sys 08:51:40.0871 6084 flpydisk - ok 08:51:40.0980 6084 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys 08:51:40.0995 6084 FltMgr - ok 08:51:41.0058 6084 Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys 08:51:41.0089 6084 Fs_Rec - ok 08:51:41.0120 6084 gagp30kx (4e1cd0a45c50a8882616cae5bf82f3c5) C:\Windows\system32\drivers\gagp30kx.sys 08:51:41.0136 6084 gagp30kx - ok 08:51:41.0307 6084 HdAudAddService (cb04c744be0a61b1d648faed182c3b59) C:\Windows\system32\drivers\HdAudio.sys 08:51:41.0385 6084 HdAudAddService - ok 08:51:41.0448 6084 HDAudBus (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys 08:51:41.0510 6084 HDAudBus - ok 08:51:41.0619 6084 HidBth (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys 08:51:41.0666 6084 HidBth - ok 08:51:41.0713 6084 HidIr (d8df3722d5e961baa1292aa2f12827e2) C:\Windows\system32\DRIVERS\hidir.sys 08:51:41.0760 6084 HidIr - ok 08:51:41.0822 6084 HidUsb (cca4b519b17e23a00b826c55716809cc) C:\Windows\system32\DRIVERS\hidusb.sys 08:51:41.0853 6084 HidUsb - ok 08:51:41.0963 6084 HpCISSs (df353b401001246853763c4b7aaa6f50) C:\Windows\system32\drivers\hpcisss.sys 08:51:41.0978 6084 HpCISSs - ok 08:51:42.0056 6084 HSFHWAZL (46d67209550973257601a533e2ac5785) C:\Windows\system32\DRIVERS\VSTAZL3.SYS 08:51:42.0087 6084 HSFHWAZL - ok 08:51:42.0134 6084 HSF_DPV (7bc42c65b5c6281777c1a7605b253ba8) C:\Windows\system32\DRIVERS\HSX_DPV.sys 08:51:42.0228 6084 HSF_DPV - ok 08:51:42.0384 6084 HSXHWAZL (9ebf2d102ccbb6bcdfbf1b7922f8ba2e) C:\Windows\system32\DRIVERS\HSXHWAZL.sys 08:51:42.0415 6084 HSXHWAZL - ok 08:51:42.0509 6084 HTTP (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys 08:51:42.0571 6084 HTTP - ok 08:51:42.0711 6084 hwdatacard (ab7f23c6563e5cafe861b857ef330f76) C:\Windows\system32\DRIVERS\ewusbmdm.sys 08:51:42.0758 6084 hwdatacard - ok 08:51:42.0805 6084 i2omp (324c2152ff2c61abae92d09f3cca4d63) C:\Windows\system32\drivers\i2omp.sys 08:51:42.0821 6084 i2omp - ok 08:51:42.0899 6084 i8042prt (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys 08:51:42.0945 6084 i8042prt - ok 08:51:43.0039 6084 iaStorV (c957bf4b5d80b46c5017bf0101e6c906) C:\Windows\system32\drivers\iastorv.sys 08:51:43.0055 6084 iaStorV - ok 08:51:43.0117 6084 iirsp (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys 08:51:43.0133 6084 iirsp - ok 08:51:43.0226 6084 int15 (9d64201c9e5ac8d1f088762ba00ff3ab) C:\Acer\Empowering Technology\eRecovery\int15.sys 08:51:43.0242 6084 int15 - ok 08:51:43.0413 6084 IntcAzAudAddService (6f62bafe6150f3952f877051c65786fe) C:\Windows\system32\drivers\RTKVHDA.sys 08:51:43.0491 6084 IntcAzAudAddService - ok 08:51:43.0616 6084 intelide (97469037714070e45194ed318d636401) C:\Windows\system32\drivers\intelide.sys 08:51:43.0632 6084 intelide - ok 08:51:43.0663 6084 intelppm (ce44cc04262f28216dd4341e9e36a16f) C:\Windows\system32\DRIVERS\intelppm.sys 08:51:43.0725 6084 intelppm - ok 08:51:43.0757 6084 IpFilterDriver (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys 08:51:43.0803 6084 IpFilterDriver - ok 08:51:43.0944 6084 IpInIp - ok 08:51:43.0975 6084 IPMIDRV (40f34f8aba2a015d780e4b09138b6c17) C:\Windows\system32\drivers\ipmidrv.sys 08:51:44.0053 6084 IPMIDRV - ok 08:51:44.0100 6084 IPNAT (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys 08:51:44.0131 6084 IPNAT - ok 08:51:44.0256 6084 IRENUM (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys 08:51:44.0287 6084 IRENUM - ok 08:51:44.0334 6084 isapnp (350fca7e73cf65bcef43fae1e4e91293) C:\Windows\system32\drivers\isapnp.sys 08:51:44.0334 6084 isapnp - ok 08:51:44.0396 6084 iScsiPrt (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys 08:51:44.0412 6084 iScsiPrt - ok 08:51:44.0521 6084 iteatapi (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys 08:51:44.0537 6084 iteatapi - ok 08:51:44.0568 6084 iteraid (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys 08:51:44.0583 6084 iteraid - ok 08:51:44.0615 6084 kbdclass (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys 08:51:44.0630 6084 kbdclass - ok 08:51:44.0677 6084 kbdhid (ede59ec70e25c24581add1fbec7325f7) C:\Windows\system32\DRIVERS\kbdhid.sys 08:51:44.0708 6084 kbdhid - ok 08:51:44.0833 6084 KSecDD (2b2f1638466e8cb091400c9019cc730e) C:\Windows\system32\Drivers\ksecdd.sys 08:51:44.0864 6084 KSecDD - ok 08:51:44.0942 6084 lltdio (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys 08:51:44.0958 6084 lltdio - ok 08:51:45.0020 6084 LSI_FC (a2262fb9f28935e862b4db46438c80d2) C:\Windows\system32\drivers\lsi_fc.sys 08:51:45.0036 6084 LSI_FC - ok 08:51:45.0129 6084 LSI_SAS (30d73327d390f72a62f32c103daf1d6d) C:\Windows\system32\drivers\lsi_sas.sys 08:51:45.0145 6084 LSI_SAS - ok 08:51:45.0176 6084 LSI_SCSI (e1e36fefd45849a95f1ab81de0159fe3) C:\Windows\system32\drivers\lsi_scsi.sys 08:51:45.0192 6084 LSI_SCSI - ok 08:51:45.0223 6084 luafv (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys 08:51:45.0254 6084 luafv - ok 08:51:45.0348 6084 mdmxsdk (0cea2d0d3fa284b85ed5b68365114f76) C:\Windows\system32\DRIVERS\mdmxsdk.sys 08:51:45.0395 6084 mdmxsdk - ok 08:51:45.0473 6084 megasas (d153b14fc6598eae8422a2037553adce) C:\Windows\system32\drivers\megasas.sys 08:51:45.0488 6084 megasas - ok 08:51:45.0566 6084 Modem (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys 08:51:45.0597 6084 Modem - ok 08:51:45.0629 6084 monitor (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys 08:51:45.0675 6084 monitor - ok 08:51:45.0753 6084 mouclass (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys 08:51:45.0769 6084 mouclass - ok 08:51:45.0816 6084 mouhid (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys 08:51:45.0831 6084 mouhid - ok 08:51:45.0878 6084 MountMgr (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys 08:51:45.0894 6084 MountMgr - ok 08:51:45.0925 6084 mpio (583a41f26278d9e0ea548163d6139397) C:\Windows\system32\drivers\mpio.sys 08:51:45.0925 6084 mpio - ok 08:51:46.0034 6084 mpsdrv (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys 08:51:46.0065 6084 mpsdrv - ok 08:51:46.0112 6084 Mraid35x (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys 08:51:46.0128 6084 Mraid35x - ok 08:51:46.0175 6084 MRxDAV (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys 08:51:46.0206 6084 MRxDAV - ok 08:51:46.0331 6084 mrxsmb (1e94971c4b446ab2290deb71d01cf0c2) C:\Windows\system32\DRIVERS\mrxsmb.sys 08:51:46.0377 6084 mrxsmb - ok 08:51:46.0440 6084 mrxsmb10 (4fccb34d793b116423209c0f8b7a3b03) C:\Windows\system32\DRIVERS\mrxsmb10.sys 08:51:46.0471 6084 mrxsmb10 - ok 08:51:46.0565 6084 mrxsmb20 (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\Windows\system32\DRIVERS\mrxsmb20.sys 08:51:46.0580 6084 mrxsmb20 - ok 08:51:46.0627 6084 msahci (742aed7939e734c36b7e8d6228ce26b7) C:\Windows\system32\drivers\msahci.sys 08:51:46.0643 6084 msahci - ok 08:51:46.0705 6084 msdsm (3fc82a2ae4cc149165a94699183d3028) C:\Windows\system32\drivers\msdsm.sys 08:51:46.0705 6084 msdsm - ok 08:51:46.0752 6084 Msfs (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys 08:51:46.0814 6084 Msfs - ok 08:51:46.0939 6084 msisadrv (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys 08:51:46.0939 6084 msisadrv - ok 08:51:47.0001 6084 MSKSSRV (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys 08:51:47.0048 6084 MSKSSRV - ok 08:51:47.0095 6084 MSPCLOCK (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys 08:51:47.0142 6084 MSPCLOCK - ok 08:51:47.0220 6084 MSPQM (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys 08:51:47.0251 6084 MSPQM - ok 08:51:47.0329 6084 MsRPC (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys 08:51:47.0345 6084 MsRPC - ok 08:51:47.0391 6084 mssmbios (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys 08:51:47.0391 6084 mssmbios - ok 08:51:47.0516 6084 MSTEE (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys 08:51:47.0547 6084 MSTEE - ok 08:51:47.0610 6084 Mup (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys 08:51:47.0625 6084 Mup - ok 08:51:47.0703 6084 NativeWifiP (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys 08:51:47.0735 6084 NativeWifiP - ok 08:51:47.0844 6084 NDIS (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys 08:51:47.0875 6084 NDIS - ok 08:51:47.0969 6084 NdisTapi (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys 08:51:47.0984 6084 NdisTapi - ok 08:51:48.0031 6084 Ndisuio (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys 08:51:48.0062 6084 Ndisuio - ok 08:51:48.0156 6084 NdisWan (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys 08:51:48.0187 6084 NdisWan - ok 08:51:48.0218 6084 NDProxy (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys 08:51:48.0265 6084 NDProxy - ok 08:51:48.0312 6084 NetBIOS (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys 08:51:48.0343 6084 NetBIOS - ok 08:51:48.0452 6084 netbt (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys 08:51:48.0499 6084 netbt - ok 08:51:48.0561 6084 nfrd960 (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys 08:51:48.0561 6084 nfrd960 - ok 08:51:48.0686 6084 Npfs (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys 08:51:48.0717 6084 Npfs - ok 08:51:48.0764 6084 nsiproxy (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys 08:51:48.0795 6084 nsiproxy - ok 08:51:48.0951 6084 Ntfs (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys 08:51:49.0232 6084 Ntfs - ok 08:51:49.0451 6084 NTIDrvr (7f1c1f78d709c4a54cbb46ede7e0b48d) C:\Windows\system32\DRIVERS\NTIDrvr.sys 08:51:49.0482 6084 NTIDrvr ( UnsignedFile.Multi.Generic ) - warning 08:51:49.0482 6084 NTIDrvr - detected UnsignedFile.Multi.Generic (1) 08:51:49.0560 6084 ntrigdigi (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys 08:51:49.0607 6084 ntrigdigi - ok 08:51:49.0653 6084 Null (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys 08:51:49.0685 6084 Null - ok 08:51:49.0778 6084 NVENETFD (d668632606d1cebf0b6ec64c1df7ed6f) C:\Windows\system32\DRIVERS\nvmfdx32.sys 08:51:49.0825 6084 NVENETFD - ok 08:51:50.0168 6084 nvlddmkm (b36c3b866b0d47e2e2856ec8fd746e39) C:\Windows\system32\DRIVERS\nvlddmkm.sys 08:51:50.0699 6084 nvlddmkm ( UnsignedFile.Multi.Generic ) - warning 08:51:50.0699 6084 nvlddmkm - detected UnsignedFile.Multi.Generic (1) 08:51:50.0823 6084 nvraid (e69e946f80c1c31c53003bfbf50cbb7c) C:\Windows\system32\drivers\nvraid.sys 08:51:50.0839 6084 nvraid - ok 08:51:50.0855 6084 nvsmu (9aebc32f9d6e02ebee0369ab296fe7c8) C:\Windows\system32\DRIVERS\nvsmu.sys 08:51:50.0901 6084 nvsmu - ok 08:51:50.0933 6084 nvstor (9e0ba19a28c498a6d323d065db76dffc) C:\Windows\system32\drivers\nvstor.sys 08:51:50.0933 6084 nvstor - ok 08:51:51.0073 6084 nv_agp (07c186427eb8fcc3d8d7927187f260f7) C:\Windows\system32\drivers\nv_agp.sys 08:51:51.0089 6084 nv_agp - ok 08:51:51.0104 6084 NwlnkFlt - ok 08:51:51.0120 6084 NwlnkFwd - ok 08:51:51.0167 6084 ohci1394 (6f310e890d46e246e0e261a63d9b36b4) C:\Windows\system32\DRIVERS\ohci1394.sys 08:51:51.0198 6084 ohci1394 - ok 08:51:51.0229 6084 Parport (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys 08:51:51.0291 6084 Parport - ok 08:51:51.0447 6084 partmgr (57389fa59a36d96b3eb09d0cb91e9cdc) C:\Windows\system32\drivers\partmgr.sys 08:51:51.0463 6084 partmgr - ok 08:51:51.0494 6084 Parvdm (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys 08:51:51.0557 6084 Parvdm - ok 08:51:51.0822 6084 pci (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys 08:51:51.0853 6084 pci - ok 08:51:52.0134 6084 pciide (1636d43f10416aeb483bc6001097b26c) C:\Windows\system32\drivers\pciide.sys 08:51:52.0165 6084 pciide - ok 08:51:52.0446 6084 pcmcia (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys 08:51:52.0477 6084 pcmcia - ok 08:51:52.0914 6084 PEAUTH (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys 08:51:53.0023 6084 PEAUTH - ok 08:51:53.0429 6084 PptpMiniport (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys 08:51:53.0475 6084 PptpMiniport - ok 08:51:53.0569 6084 Processor (0e3cef5d28b40cf273281d620c50700a) C:\Windows\system32\drivers\processr.sys 08:51:53.0616 6084 Processor - ok 08:51:53.0678 6084 PSched (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys 08:51:53.0709 6084 PSched - ok 08:51:53.0756 6084 PSDFilter (e801d5cc24e1cf18fa87d24d7074b876) C:\Windows\system32\DRIVERS\psdfilter.sys 08:51:53.0772 6084 PSDFilter - ok 08:51:53.0881 6084 PSDNServ (24b5e3429f7f0e779fc2e6e36a0a5f73) C:\Windows\system32\drivers\PSDNServ.sys 08:51:53.0897 6084 PSDNServ - ok 08:51:53.0912 6084 psdvdisk (01cbfd08c0e8a6106bb26fcda297154e) C:\Windows\system32\drivers\psdvdisk.sys 08:51:53.0928 6084 psdvdisk - ok 08:51:54.0006 6084 ql2300 (ccdac889326317792480c0a67156a1ec) C:\Windows\system32\drivers\ql2300.sys 08:51:54.0053 6084 ql2300 - ok 08:51:54.0146 6084 ql40xx (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys 08:51:54.0162 6084 ql40xx - ok 08:51:54.0302 6084 QWAVEdrv (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys 08:51:54.0349 6084 QWAVEdrv - ok 08:51:54.0443 6084 RasAcd (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys 08:51:54.0489 6084 RasAcd - ok 08:51:54.0552 6084 Rasl2tp (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys 08:51:54.0599 6084 Rasl2tp - ok 08:51:55.0035 6084 RasPppoe (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys 08:51:55.0082 6084 RasPppoe - ok 08:51:55.0347 6084 RasSstp (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys 08:51:55.0379 6084 RasSstp - ok 08:51:55.0722 6084 rdbss (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys 08:51:55.0769 6084 rdbss - ok 08:51:56.0018 6084 RDPCDD (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys 08:51:56.0065 6084 RDPCDD - ok 08:51:56.0299 6084 rdpdr (e8bd98d46f2ed77132ba927fccb47d8b) C:\Windows\system32\drivers\rdpdr.sys 08:51:56.0361 6084 rdpdr - ok 08:51:56.0486 6084 RDPENCDD (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys 08:51:56.0533 6084 RDPENCDD - ok 08:51:56.0642 6084 RDPWD (79c6df8477250f5c54f7c5ae1d6b814e) C:\Windows\system32\drivers\RDPWD.sys 08:51:56.0705 6084 RDPWD - ok 08:51:56.0985 6084 rimmptsk (355aac141b214bef1dbc1483afd9bd50) C:\Windows\system32\DRIVERS\rimmptsk.sys 08:51:57.0048 6084 rimmptsk - ok 08:51:57.0251 6084 rimsptsk (a4216c71dd4f60b26418ccfd99cd0815) C:\Windows\system32\DRIVERS\rimsptsk.sys 08:51:57.0360 6084 rimsptsk - ok 08:51:57.0672 6084 rismxdp (d231b577024aa324af13a42f3a807d10) C:\Windows\system32\DRIVERS\rixdptsk.sys 08:51:57.0719 6084 rismxdp - ok 08:51:57.0999 6084 rspndr (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys 08:51:58.0062 6084 rspndr - ok 08:51:58.0389 6084 sbp2port (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys 08:51:58.0421 6084 sbp2port - ok 08:51:58.0639 6084 sdbus (8f36b54688c31eed4580129040c6a3d3) C:\Windows\system32\DRIVERS\sdbus.sys 08:51:58.0670 6084 sdbus - ok 08:51:58.0826 6084 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys 08:51:58.0904 6084 secdrv - ok 08:51:58.0951 6084 Serenum (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys 08:51:58.0998 6084 Serenum - ok 08:51:59.0169 6084 Serial (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys 08:51:59.0216 6084 Serial - ok 08:51:59.0419 6084 sermouse (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys 08:51:59.0435 6084 sermouse - ok 08:51:59.0825 6084 sffdisk (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\DRIVERS\sffdisk.sys 08:51:59.0856 6084 sffdisk - ok 08:51:59.0887 6084 sffp_mmc (8fd08a310645fe872eeec6e08c6bf3ee) C:\Windows\system32\drivers\sffp_mmc.sys 08:51:59.0949 6084 sffp_mmc - ok 08:52:00.0121 6084 sffp_sd (9f66a46c55d6f1ccabc79bb7afccc545) C:\Windows\system32\DRIVERS\sffp_sd.sys 08:52:00.0168 6084 sffp_sd - ok 08:52:00.0449 6084 sfloppy (46ed8e91793b2e6f848015445a0ac188) C:\Windows\system32\drivers\sfloppy.sys 08:52:00.0527 6084 sfloppy - ok 08:52:00.0807 6084 sisagp (d2a595d6eebeeaf4334f8e50efbc9931) C:\Windows\system32\drivers\sisagp.sys 08:52:00.0839 6084 sisagp - ok 08:52:01.0119 6084 SiSRaid2 (cedd6f4e7d84e9f98b34b3fe988373aa) C:\Windows\system32\drivers\sisraid2.sys 08:52:01.0151 6084 SiSRaid2 - ok 08:52:01.0369 6084 SiSRaid4 (df843c528c4f69d12ce41ce462e973a7) C:\Windows\system32\drivers\sisraid4.sys 08:52:01.0400 6084 SiSRaid4 - ok 08:52:01.0619 6084 Smb (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys 08:52:01.0665 6084 Smb - ok 08:52:01.0977 6084 spldr (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys 08:52:01.0993 6084 spldr - ok 08:52:02.0321 6084 srv (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys 08:52:02.0383 6084 srv - ok 08:52:02.0742 6084 srv2 (ff33aff99564b1aa534f58868cbe41ef) C:\Windows\system32\DRIVERS\srv2.sys 08:52:02.0804 6084 srv2 - ok 08:52:02.0960 6084 srvnet (7605c0e1d01a08f3ecd743f38b834a44) C:\Windows\system32\DRIVERS\srvnet.sys 08:52:02.0991 6084 srvnet - ok 08:52:03.0038 6084 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\Windows\system32\DRIVERS\ssmdrv.sys 08:52:03.0054 6084 ssmdrv - ok 08:52:03.0381 6084 swenum (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys 08:52:03.0397 6084 swenum - ok 08:52:03.0709 6084 Symc8xx (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys 08:52:03.0725 6084 Symc8xx - ok 08:52:03.0959 6084 SymIMMP - ok 08:52:04.0349 6084 Sym_hi (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys 08:52:04.0380 6084 Sym_hi - ok 08:52:04.0754 6084 Sym_u3 (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys 08:52:04.0770 6084 Sym_u3 - ok 08:52:05.0238 6084 Tcpip (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\drivers\tcpip.sys 08:52:05.0300 6084 Tcpip - ok 08:52:05.0550 6084 Tcpip6 (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\DRIVERS\tcpip.sys 08:52:05.0597 6084 Tcpip6 - ok 08:52:05.0799 6084 tcpipreg (608c345a255d82a6289c2d468eb41fd7) C:\Windows\system32\drivers\tcpipreg.sys 08:52:05.0846 6084 tcpipreg - ok 08:52:06.0018 6084 TDPIPE (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys 08:52:06.0080 6084 TDPIPE - ok 08:52:06.0127 6084 TDTCP (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys 08:52:06.0174 6084 TDTCP - ok 08:52:06.0330 6084 tdx (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys 08:52:06.0392 6084 tdx - ok 08:52:06.0455 6084 TermDD (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys 08:52:06.0470 6084 TermDD - ok 08:52:06.0751 6084 tssecsrv (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys 08:52:06.0798 6084 tssecsrv - ok 08:52:07.0063 6084 tunmp (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys 08:52:07.0125 6084 tunmp - ok 08:52:07.0313 6084 tunnel (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys 08:52:07.0359 6084 tunnel - ok 08:52:07.0391 6084 uagp35 (c3ade15414120033a36c0f293d4a4121) C:\Windows\system32\drivers\uagp35.sys 08:52:07.0422 6084 uagp35 - ok 08:52:07.0765 6084 udfs (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys 08:52:07.0796 6084 udfs - ok 08:52:08.0046 6084 UIUSys - ok 08:52:08.0217 6084 uliagpkx (75e6890ebfce0841d3291b02e7a8bdb0) C:\Windows\system32\drivers\uliagpkx.sys 08:52:08.0249 6084 uliagpkx - ok 08:52:08.0576 6084 uliahci (3cd4ea35a6221b85dcc25daa46313f8d) C:\Windows\system32\drivers\uliahci.sys 08:52:08.0607 6084 uliahci - ok 08:52:08.0841 6084 UlSata (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys 08:52:08.0857 6084 UlSata - ok 08:52:08.0935 6084 ulsata2 (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys 08:52:08.0951 6084 ulsata2 - ok 08:52:09.0013 6084 umbus (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys 08:52:09.0060 6084 umbus - ok 08:52:09.0138 6084 usbccgp (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys 08:52:09.0169 6084 usbccgp - ok 08:52:09.0387 6084 usbcir (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys 08:52:09.0465 6084 usbcir - ok 08:52:09.0762 6084 usbehci (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys 08:52:09.0809 6084 usbehci - ok 08:52:10.0214 6084 usbhub (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys 08:52:10.0355 6084 usbhub - ok 08:52:10.0791 6084 usbohci (ce697fee0d479290d89bec80dfe793b7) C:\Windows\system32\DRIVERS\usbohci.sys 08:52:10.0838 6084 usbohci - ok 08:52:10.0947 6084 usbprint (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys 08:52:10.0994 6084 usbprint - ok 08:52:11.0057 6084 usbscan (a508c9bd8724980512136b039bba65e9) C:\Windows\system32\DRIVERS\usbscan.sys 08:52:11.0088 6084 usbscan - ok 08:52:11.0337 6084 USBSTOR (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS 08:52:11.0384 6084 USBSTOR - ok 08:52:11.0509 6084 usbuhci (325dbbacb8a36af9988ccf40eac228cc) C:\Windows\system32\DRIVERS\usbuhci.sys 08:52:11.0571 6084 usbuhci - ok 08:52:11.0649 6084 vga (7d92be0028ecdedec74617009084b5ef) C:\Windows\system32\DRIVERS\vgapnp.sys 08:52:11.0727 6084 vga - ok 08:52:11.0946 6084 VgaSave (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys 08:52:12.0008 6084 VgaSave - ok 08:52:12.0289 6084 viaagp (045d9961e591cf0674a920b6ba3ba5cb) C:\Windows\system32\drivers\viaagp.sys 08:52:12.0320 6084 viaagp - ok 08:52:12.0585 6084 ViaC7 (56a4de5f02f2e88182b0981119b4dd98) C:\Windows\system32\drivers\viac7.sys 08:52:12.0648 6084 ViaC7 - ok 08:52:12.0851 6084 viaide (fd2e3175fcada350c7ab4521dca187ec) C:\Windows\system32\drivers\viaide.sys 08:52:12.0866 6084 viaide - ok 08:52:12.0897 6084 volmgr (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys 08:52:12.0913 6084 volmgr - ok 08:52:12.0991 6084 volmgrx (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys 08:52:13.0007 6084 volmgrx - ok 08:52:13.0131 6084 volsnap (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys 08:52:13.0163 6084 volsnap - ok 08:52:13.0194 6084 vsmraid (d984439746d42b30fc65a4c3546c6829) C:\Windows\system32\drivers\vsmraid.sys 08:52:13.0209 6084 vsmraid - ok 08:52:13.0272 6084 WacomPen (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys 08:52:13.0334 6084 WacomPen - ok 08:52:13.0428 6084 Wanarp (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys 08:52:13.0459 6084 Wanarp - ok 08:52:13.0459 6084 Wanarpv6 (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys 08:52:13.0490 6084 Wanarpv6 - ok 08:52:13.0553 6084 Wd (afc5ad65b991c1e205cf25cfdbf7a6f4) C:\Windows\system32\drivers\wd.sys 08:52:13.0568 6084 Wd - ok 08:52:13.0599 6084 Wdf01000 (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys 08:52:13.0631 6084 Wdf01000 - ok 08:52:13.0771 6084 winachsf (5a77ac34a0ffb70ce8b35b524fede9ba) C:\Windows\system32\DRIVERS\HSX_CNXT.sys 08:52:13.0833 6084 winachsf - ok 08:52:13.0911 6084 WmiAcpi (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\DRIVERS\wmiacpi.sys 08:52:13.0943 6084 WmiAcpi - ok 08:52:14.0099 6084 ws2ifsl (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys 08:52:14.0130 6084 ws2ifsl - ok 08:52:14.0177 6084 WSVD (2584df81cc9f7e7bd3545691106f8cae) C:\Windows\system32\drivers\WSVD.sys 08:52:14.0192 6084 WSVD - ok 08:52:14.0270 6084 WUDFRd (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys 08:52:14.0317 6084 WUDFRd - ok 08:52:14.0411 6084 XAudio (88af537264f2b818da15479ceeaf5d7c) C:\Windows\system32\DRIVERS\xaudio.sys 08:52:14.0426 6084 XAudio - ok 08:52:14.0520 6084 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796} (8098180b3f6c430a4e60333bc036f936) C:\Program Files\Acer Arcade Deluxe\Play Movie\000.fcl 08:52:14.0520 6084 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796} - ok 08:52:14.0582 6084 MBR (0x1B8) (a863475757cc50891aa8458c415e4b25) \Device\Harddisk0\DR0 08:52:18.0108 6084 \Device\Harddisk0\DR0 - ok 08:52:18.0139 6084 Boot (0x1200) (4f391be68cde7d98c830baf4c779ece3) \Device\Harddisk0\DR0\Partition0 08:52:18.0139 6084 \Device\Harddisk0\DR0\Partition0 - ok 08:52:18.0155 6084 Boot (0x1200) (9b298b6e2b9644492c292feb68439d92) \Device\Harddisk0\DR0\Partition1 08:52:18.0155 6084 \Device\Harddisk0\DR0\Partition1 - ok 08:52:18.0155 6084 ============================================================ 08:52:18.0155 6084 Scan finished 08:52:18.0155 6084 ============================================================ 08:52:18.0186 4260 Detected object count: 2 08:52:18.0186 4260 Actual detected object count: 2 08:52:29.0449 4260 NTIDrvr ( UnsignedFile.Multi.Generic ) - skipped by user 08:52:29.0449 4260 NTIDrvr ( UnsignedFile.Multi.Generic ) - User select action: Skip 08:52:29.0465 4260 nvlddmkm ( UnsignedFile.Multi.Generic ) - skipped by user 08:52:29.0465 4260 nvlddmkm ( UnsignedFile.Multi.Generic ) - User select action: Skip 08:53:29.0041 5916 Deinitialize success |
19.03.2012, 16:10 | #18 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Bundestrojaner, Klappe die 439. Dann bitte jetzt CF ausführen:
__________________ComboFix Ein Leitfaden und Tutorium zur Nutzung von ComboFix
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat! Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie Zitat:
__________________ |
21.03.2012, 14:45 | #19 |
| Bundestrojaner, Klappe die 439. Combofix Logfile: Code:
ATTFilter ComboFix 12-03-20.02 - Lady Sirenety 21.03.2012 14:10:03.1.2 - x86 Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.49.1031.18.1790.1103 [GMT 1:00] ausgeführt von:: c:\users\Lady Sirenety\Desktop\ComboFix.exe AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\users\Public\Azureus_2.5.0.4_Win32.setup.exe c:\users\Public\SetupCloneCD5313.exe c:\windows\system32\drivers\etc\hosts.ics . Infizierte Kopie von c:\windows\system32\userinit.exe wurde gefunden und desinfiziert Kopie von - c:\windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.0.6001.18000_none_dc28ba15d1aff80b\userinit.exe wurde wiederhergestellt . . ((((((((((((((((((((((((((((((((((((((( Treiber/Dienste ))))))))))))))))))))))))))))))))))))))))))))))))) . . -------\Service_usnjsvc . . ((((((((((((((((((((((( Dateien erstellt von 2012-02-21 bis 2012-03-21 )))))))))))))))))))))))))))))) . . 2012-03-21 10:43 . 2012-03-21 10:43 -------- d-----w- c:\users\Lady Sirenety\AppData\Local\AskToolbar 2012-03-20 10:21 . 2012-02-08 06:03 6552120 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{22CE8932-618C-4F16-8821-7A57BA21ACC8}\mpengine.dll 2012-03-19 21:23 . 2012-03-19 21:23 592824 ----a-w- c:\program files\Mozilla Firefox\gkmedias.dll 2012-03-19 21:23 . 2012-03-19 21:23 44472 ----a-w- c:\program files\Mozilla Firefox\mozglue.dll 2012-03-18 07:31 . 2012-02-14 15:45 219648 ----a-w- c:\windows\system32\d3d10_1core.dll 2012-03-18 07:31 . 2012-02-13 14:12 1172480 ----a-w- c:\windows\system32\d3d10warp.dll 2012-03-18 07:31 . 2012-02-13 13:44 1068544 ----a-w- c:\windows\system32\DWrite.dll 2012-03-18 07:31 . 2012-02-14 15:45 160768 ----a-w- c:\windows\system32\d3d10_1.dll 2012-03-18 07:31 . 2012-02-13 13:47 683008 ----a-w- c:\windows\system32\d2d1.dll 2012-03-16 19:57 . 2012-03-16 19:57 -------- d-----w- c:\users\Lady Sirenety\AppData\Roaming\Avira 2012-03-16 19:51 . 2012-03-16 19:51 -------- d-----w- c:\program files\Ask.com 2012-03-16 19:50 . 2012-01-31 07:56 74640 ----a-w- c:\windows\system32\drivers\avgntflt.sys 2012-03-16 19:50 . 2012-01-31 07:56 137416 ----a-w- c:\windows\system32\drivers\avipbb.sys 2012-03-16 19:50 . 2011-09-16 15:08 36000 ----a-w- c:\windows\system32\drivers\avkmgr.sys 2012-03-16 19:50 . 2012-03-16 19:50 -------- d-----w- c:\program files\Avira 2012-03-16 19:29 . 2012-03-16 19:29 -------- d-----w- C:\_OTL 2012-03-16 18:43 . 2012-03-16 18:43 -------- d-----w- c:\program files\Windows Portable Devices 2012-03-16 09:48 . 2009-09-10 02:00 92672 ----a-w- c:\windows\system32\UIAnimation.dll 2012-03-16 09:48 . 2009-09-10 02:01 3023360 ----a-w- c:\windows\system32\UIRibbon.dll 2012-03-16 09:48 . 2009-09-10 02:00 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll 2012-03-16 09:47 . 2009-10-01 01:02 31232 ----a-w- c:\windows\system32\BthMtpContextHandler.dll 2012-03-16 09:47 . 2009-10-01 01:01 60928 ----a-w- c:\windows\system32\PortableDeviceConnectApi.dll 2012-03-16 09:47 . 2009-10-01 01:02 334848 ----a-w- c:\windows\system32\PortableDeviceApi.dll 2012-03-16 09:47 . 2009-10-01 01:01 160256 ----a-w- c:\windows\system32\PortableDeviceTypes.dll 2012-03-16 09:47 . 2009-10-01 01:01 196608 ----a-w- c:\windows\system32\PortableDeviceWMDRM.dll 2012-03-16 09:47 . 2009-10-01 01:01 100864 ----a-w- c:\windows\system32\PortableDeviceClassExtension.dll 2012-03-16 09:47 . 2009-10-01 01:01 227840 ----a-w- c:\windows\system32\drivers\UMDF\WpdFs.dll 2012-03-16 09:36 . 2012-03-16 09:36 979456 ----a-w- c:\windows\system32\MFH264Dec.dll 2012-03-16 09:35 . 2012-03-16 09:35 252928 ----a-w- c:\windows\system32\dxdiag.exe 2012-03-16 09:35 . 2012-03-16 09:35 195584 ----a-w- c:\windows\system32\dxdiagn.dll 2012-03-16 09:35 . 2012-03-16 09:35 519680 ----a-w- c:\windows\system32\d3d11.dll 2012-03-16 09:35 . 2012-03-16 09:35 321024 ----a-w- c:\windows\system32\PhotoMetadataHandler.dll 2012-03-16 09:35 . 2012-03-16 09:35 189440 ----a-w- c:\windows\system32\WindowsCodecsExt.dll 2012-03-16 09:35 . 2012-03-16 09:35 974848 ----a-w- c:\windows\system32\WindowsCodecs.dll 2012-03-16 07:50 . 2011-10-14 16:03 189952 ----a-w- c:\windows\system32\winmm.dll 2012-03-16 07:50 . 2011-10-14 16:00 23552 ----a-w- c:\windows\system32\mciseq.dll 2012-03-16 07:50 . 2011-07-29 16:01 293376 ----a-w- c:\windows\system32\psisdecd.dll 2012-03-16 07:50 . 2011-07-29 16:01 217088 ----a-w- c:\windows\system32\psisrndr.ax 2012-03-16 07:50 . 2011-07-29 16:00 57856 ----a-w- c:\windows\system32\MSDvbNP.ax 2012-03-16 07:50 . 2011-07-29 16:00 69632 ----a-w- c:\windows\system32\Mpeg2Data.ax 2012-03-16 07:50 . 2011-10-27 08:01 3602816 ----a-w- c:\windows\system32\ntkrnlpa.exe 2012-03-16 07:50 . 2011-10-27 08:01 3550080 ----a-w- c:\windows\system32\ntoskrnl.exe 2012-03-16 07:50 . 2012-02-02 15:16 2044416 ----a-w- c:\windows\system32\win32k.sys 2012-03-16 07:50 . 2011-11-18 20:23 1205064 ----a-w- c:\windows\system32\ntdll.dll 2012-03-16 07:50 . 2011-10-14 16:02 429056 ----a-w- c:\windows\system32\EncDec.dll 2012-03-16 07:48 . 2011-08-25 16:15 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll 2012-03-16 07:48 . 2011-08-25 16:14 563712 ----a-w- c:\windows\system32\oleaut32.dll 2012-03-16 07:48 . 2011-08-25 16:14 238080 ----a-w- c:\windows\system32\oleacc.dll 2012-03-16 07:48 . 2011-08-25 13:31 4096 ----a-w- c:\windows\system32\oleaccrc.dll 2012-03-16 07:48 . 2011-09-30 15:57 707584 ----a-w- c:\program files\Common Files\System\wab32.dll 2012-03-16 07:47 . 2012-01-31 10:59 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat 2012-03-16 07:35 . 2010-05-04 19:13 231424 ----a-w- c:\windows\system32\msshsq.dll 2012-03-16 07:33 . 2012-01-09 15:54 613376 ----a-w- c:\windows\system32\rdpencom.dll 2012-03-16 07:33 . 2012-01-09 13:58 180736 ----a-w- c:\windows\system32\drivers\rdpwd.sys 2012-03-15 11:42 . 2012-03-15 11:44 -------- d-----w- c:\windows\system32\ca-ES 2012-03-15 11:42 . 2012-03-15 11:44 -------- d-----w- c:\windows\system32\eu-ES 2012-03-15 11:42 . 2012-03-15 11:44 -------- d-----w- c:\windows\system32\vi-VN 2012-03-15 09:57 . 2012-03-15 09:57 -------- d-----w- c:\windows\system32\EventProviders 2012-03-14 20:24 . 2012-03-14 20:27 -------- d-----w- c:\users\Lady Sirenety\AppData\Roaming\AVG 2012-03-14 19:52 . 2012-03-14 19:52 -------- d--h--w- c:\programdata\Common Files 2012-03-14 19:47 . 2012-03-16 19:32 -------- d-----w- c:\programdata\AVG2012 2012-03-14 19:45 . 2012-03-14 20:23 -------- d-----w- c:\program files\AVG 2012-03-14 19:43 . 2012-03-16 19:16 -------- d-----w- c:\programdata\MFAData 2012-03-14 19:41 . 2010-02-18 13:30 200704 ----a-w- c:\windows\system32\iphlpsvc.dll 2012-03-14 19:41 . 2010-02-18 11:28 25088 ----a-w- c:\windows\system32\drivers\tunnel.sys 2012-03-13 10:33 . 2012-03-13 10:33 -------- d-----w- c:\program files\ESET 2012-03-13 09:14 . 2012-03-13 09:14 -------- d-----w- c:\users\Lady Sirenety\AppData\Roaming\Malwarebytes 2012-03-13 09:14 . 2012-03-13 09:14 -------- d-----w- c:\programdata\Malwarebytes 2012-03-13 09:14 . 2012-03-13 09:14 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2012-03-13 09:14 . 2011-12-10 14:24 20464 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-03-09 09:34 . 2012-03-16 19:50 -------- d-----w- c:\programdata\Avira 2012-03-08 19:19 . 2012-03-08 19:19 -------- d-----w- c:\users\Lady Sirenety\AppData\Roaming\StreamTorrent 2012-03-08 19:19 . 2012-03-08 19:19 -------- d-----w- c:\program files\StreamTorrent 1.0 2012-02-29 13:58 . 2012-02-29 13:58 -------- d-----w- c:\programdata\McAfee 2012-02-26 20:00 . 2012-02-26 20:02 -------- d-----w- c:\program files\Common Files\Steam 2012-02-25 16:43 . 2012-02-25 16:43 -------- d-----w- c:\users\Lady Sirenety\AppData\Local\Ilivid Player 2012-02-25 16:36 . 2012-02-25 16:47 -------- d-----w- c:\program files\iLivid 2012-02-25 16:35 . 2012-02-25 16:35 -------- d-----w- c:\users\Lady Sirenety\AppData\Local\PackageAware 2012-02-24 09:33 . 2012-03-19 21:23 97208 ----a-w- c:\program files\Mozilla Firefox\components\browsercomps.dll 2012-02-24 09:33 . 2012-03-19 21:23 16824 ----a-w- c:\program files\Mozilla Firefox\plugin-container.exe 2012-02-24 09:33 . 2012-02-16 10:41 626688 ----a-w- c:\program files\Mozilla Firefox\msvcr80.dll 2012-02-24 09:33 . 2012-02-16 10:41 548864 ----a-w- c:\program files\Mozilla Firefox\msvcp80.dll 2012-02-24 09:33 . 2012-03-19 21:23 101304 ----a-w- c:\program files\Mozilla Firefox\libEGL.dll 2012-02-24 09:33 . 2012-03-19 21:23 818104 ----a-w- c:\program files\Mozilla Firefox\mozsqlite3.dll 2012-02-24 09:33 . 2012-03-19 21:23 441272 ----a-w- c:\program files\Mozilla Firefox\libGLESv2.dll 2012-02-24 09:33 . 2012-03-19 21:23 1969080 ----a-w- c:\program files\Mozilla Firefox\mozjs.dll 2012-02-24 09:33 . 2012-03-19 21:23 16312 ----a-w- c:\program files\Mozilla Firefox\mozalloc.dll 2012-02-24 09:33 . 2012-02-16 10:42 2106216 ----a-w- c:\program files\Mozilla Firefox\D3DCompiler_43.dll 2012-02-24 09:33 . 2012-02-16 10:42 1998168 ----a-w- c:\program files\Mozilla Firefox\d3dx9_43.dll 2012-02-24 09:33 . 2012-02-16 10:41 479232 ----a-w- c:\program files\Mozilla Firefox\msvcm80.dll 2012-02-22 10:49 . 2012-02-22 10:49 -------- d-----w- c:\users\Lady Sirenety\AppData\Local\APN . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-03-16 09:36 . 2012-03-16 09:36 135680 ----a-w- c:\windows\system32\XpsRasterService.dll 2012-03-16 09:36 . 2012-03-16 09:36 1554432 ----a-w- c:\windows\system32\xpsservices.dll 2012-03-16 09:35 . 2012-03-16 09:35 4096 ----a-w- c:\windows\system32\drivers\de-DE\dxgkrnl.sys.mui 2012-03-16 09:35 . 2012-03-16 09:35 369664 ----a-w- c:\windows\system32\WMPhoto.dll 2012-02-29 13:58 . 2011-12-02 12:05 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2012-02-23 08:18 . 2011-04-28 09:51 237072 ------w- c:\windows\system32\MpSigStub.exe 2012-03-19 21:23 . 2012-02-24 09:33 97208 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] 2012-01-04 19:20 1514152 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] "{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2012-01-04 1514152] . [HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1] [HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd] . [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser] "{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2012-01-04 1514152] . [HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1] [HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2011-02-18 05:12 94208 ----a-w- c:\users\Lady Sirenety\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2011-02-18 05:12 94208 ----a-w- c:\users\Lady Sirenety\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2011-02-18 05:12 94208 ----a-w- c:\users\Lady Sirenety\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920] "ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="RtHDVCpl.exe" [2007-07-06 4669440] "eDataSecurity Loader"="c:\acer\Empowering Technology\eDataSecurity\eDSloader.exe" [2007-04-25 457216] "eAudio"="c:\acer\Empowering Technology\eAudio\eAudio.exe" [2007-06-11 1286144] "LManager"="c:\progra~1\LAUNCH~1\LManager.exe" [2007-08-15 772616] "PlayMovie"="c:\program files\Acer Arcade Deluxe\Play Movie\PMVService.exe" [2007-05-24 206952] "Apoint"="c:\program files\Apoint2K\Apoint.exe" [2007-06-06 159744] "Acer Tour Reminder"="c:\acer\AcerTour\Reminder.exe" [2007-05-22 151552] "WarReg_PopUp"="c:\acer\WR_PopUp\WarReg_PopUp.exe" [2006-11-05 57344] "Skytel"="Skytel.exe" [2007-06-15 1826816] "NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648] "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2008-11-10 136600] "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-10-14 39792] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-12-03 13556256] "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-12-03 92704] "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-01-05 413696] "ApnUpdater"="c:\program files\Ask.com\Updater\Updater.exe" [2012-01-04 1391272] "avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2012-01-31 258512] . c:\users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Dropbox.lnk - c:\users\Lady Sirenety\AppData\Roaming\Dropbox\bin\Dropbox.exe [2012-2-15 24246216] OpenOffice.org 2.4.lnk - c:\program files\OpenOffice.org 2.4\program\quickstart.exe [2008-1-21 393216] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acer Tour Reminder] 2007-05-22 13:49 151552 ----a-w- c:\acer\AcerTour\Reminder.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr] 2007-10-18 09:34 5724184 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring] "DisableMonitoring"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus] "DisableMonitoring"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall] "DisableMonitoring"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache . Inhalt des "geplante Tasks" Ordners . 2012-03-21 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2011-04-28 10:30] . 2012-03-21 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2011-04-28 10:30] . . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://www.google.de/ uSearchMigratedDefaultURL = mStart Page = mLocal Page = uSearchURL,(Default) = hxxp://de.rd.yahoo.com/customize/ycomp/defaults/su/*hxxp://de.yahoo.com IE: Free YouTube Download - c:\users\Lady Sirenety\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm IE: Web-Suche - c:\program files\SweetIM\Toolbars\Internet Explorer\resources\menuext.html IE: {{7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - c:\program files\ICQ7.5\ICQ.exe LSP: c:\program files\Avira\AntiVir Desktop\avsda.dll TCP: DhcpNameServer = 10.0.0.1 FF - ProfilePath - c:\users\Lady Sirenety\AppData\Roaming\Mozilla\Firefox\Profiles\nuqmv2sc.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.google.de/ . - - - - Entfernte verwaiste Registrierungseinträge - - - - . WebBrowser-{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - (no file) HKLM-Run-SweetIM - c:\program files\SweetIM\Messenger\SweetIM.exe SafeBoot-Wdf01000.sys MSConfigStartUp-ICQ - d:\program files\ICQ6\ICQ.exe AddRemove-PriceGong - c:\program files\PriceGong\uninst.exe . . . ************************************************************************** Scanne versteckte Prozesse... . Scanne versteckte Autostarteinträge... . Scanne versteckte Dateien... . Scan erfolgreich abgeschlossen versteckte Dateien: . ************************************************************************** . [HKEY_LOCAL_MACHINE\system\ControlSet001\Services\{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}] "ImagePath"="\??\c:\program files\Acer Arcade Deluxe\Play Movie\000.fcl" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . --------------------- Durch laufende Prozesse gestartete DLLs --------------------- . - - - - - - - > 'Explorer.exe'(3988) c:\users\Lady Sirenety\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll . ------------------------ Weitere laufende Prozesse ------------------------ . c:\windows\system32\nvvsvc.exe c:\windows\system32\rundll32.exe c:\program files\Avira\AntiVir Desktop\sched.exe c:\acer\ALaunch\ALaunchSvc.exe c:\program files\Avira\AntiVir Desktop\avguard.exe c:\acer\Empowering Technology\eDataSecurity\eDSService.exe c:\acer\Empowering Technology\eLock\Service\eLockServ.exe c:\acer\Empowering Technology\eNet\eNet Service.exe c:\program files\ICQ6Toolbar\ICQ Service.exe c:\program files\Common Files\LightScribe\LSSrvc.exe c:\acer\Mobility Center\MobilityService.exe c:\program files\CyberLink\Shared Files\RichVideo.exe c:\windows\system32\DRIVERS\xaudio.exe c:\acer\Empowering Technology\eRecovery\eRecoveryService.exe c:\acer\Empowering Technology\eSettings\Service\capuserv.exe c:\acer\Empowering Technology\ePower\ePowerSvc.exe c:\windows\system32\wbem\unsecapp.exe c:\program files\Avira\AntiVir Desktop\avshadow.exe c:\program files\Avira\AntiVir Desktop\AVWEBGRD.EXE c:\windows\system32\conime.exe c:\windows\servicing\TrustedInstaller.exe . ************************************************************************** . Zeit der Fertigstellung: 2012-03-21 14:31:44 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2012-03-21 13:30 . Vor Suchlauf: 12 Verzeichnis(se), 13.944.213.504 Bytes frei Nach Suchlauf: 14 Verzeichnis(se), 13.774.012.416 Bytes frei . - - End Of File - - 4E77799760EABA1B690FBABDEF441F2E |
21.03.2012, 16:15 | #20 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Bundestrojaner, Klappe die 439. Bitte nun Logs mit GMER und OSAM erstellen und posten. GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen. Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst. Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM! Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none).
__________________ Logfiles bitte immer in CODE-Tags posten |
22.03.2012, 13:42 | #21 |
| Bundestrojaner, Klappe die 439. Mit GMER wars tatsächlich Essig. Hier OSAM: Code:
ATTFilter Report of OSAM: Autorun Manager v5.0.11926.0 hxxp://www.online-solutions.ru/en/ Saved at 13:31:16 on 22.03.2012 OS: Windows Vista Home Premium Edition Service Pack 2 (Build 6002), 32-bit Default Browser: Mozilla Corporation Firefox 11.0 Scanner Settings [x] Rootkits detection (hidden registry) [x] Rootkits detection (hidden files) [x] Retrieve files information [x] Check Microsoft signatures Filters [ ] Trusted entries [ ] Empty entries [x] Hidden registry entries (rootkit activity) [x] Exclusively opened files [x] Not found files [x] Files without detailed information [x] Existing files [ ] Non-startable services [ ] Non-startable drivers [x] Active entries [x] Disabled entries [Common] -----( %SystemRoot%\Tasks )----- "GoogleUpdateTaskMachineCore.job" - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe "GoogleUpdateTaskMachineUA.job" - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe [Control Panel Objects] -----( %SystemRoot%\system32 )----- "FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\Windows\system32\FlashPlayerCPLApp.cpl "nvcpl.cpl" - "NVIDIA Corporation" - C:\Windows\system32\nvcpl.cpl -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )----- "QuickTime" - "Apple Inc." - C:\Program Files\QuickTime\QTSystem\QuickTime.cpl [Drivers] -----( HKLM\SYSTEM\CurrentControlSet\Services )----- "avgntflt" (avgntflt) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avgntflt.sys "avipbb" (avipbb) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avipbb.sys "avkmgr" (avkmgr) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avkmgr.sys "catchme" (catchme) - ? - C:\ComboFix\catchme.sys (File not found) "Dritek General Port I/O" (DritekPortIO) - "Dritek System Inc." - C:\PROGRA~1\LAUNCH~1\DPortIO.sys "fwlyraoc" (fwlyraoc) - ? - C:\Users\LADYSI~1\AppData\Local\Temp\fwlyraoc.sys (Hidden registry entry, rootkit activity | File not found) "int15" (int15) - ? - C:\Acer\Empowering Technology\eRecovery\int15.sys (File found, but it contains no detailed information) "IP in IP Tunnel Driver" (IpInIp) - ? - C:\Windows\System32\DRIVERS\ipinip.sys (File not found) "IPX Traffic Filter Driver" (NwlnkFlt) - ? - C:\Windows\System32\DRIVERS\nwlnkflt.sys (File not found) "IPX Traffic Forwarder Driver" (NwlnkFwd) - ? - C:\Windows\System32\DRIVERS\nwlnkfwd.sys (File not found) "nvlddmkm" (nvlddmkm) - "NVIDIA Corporation" - C:\Windows\System32\DRIVERS\nvlddmkm.sys "PSDFilter" (PSDFilter) - "HiTRUST" - C:\Windows\System32\DRIVERS\psdfilter.sys "PSDNSERVER" (PSDNServ) - "HiTRUST" - C:\Windows\System32\drivers\PSDNServ.sys "psdvdisk" (psdvdisk) - "HiTRUST" - C:\Windows\System32\drivers\psdvdisk.sys "ssmdrv" (ssmdrv) - "Avira GmbH" - C:\Windows\System32\DRIVERS\ssmdrv.sys "SymIMMP" (SymIMMP) - ? - C:\Windows\System32\DRIVERS\SymIM.sys (File not found) "Upper Class Filter Driver" (NTIDrvr) - "NewTech Infosystems, Inc." - C:\Windows\System32\DRIVERS\NTIDrvr.sys "WSVD" (WSVD) - "Wasay" - C:\Windows\system32\drivers\WSVD.sys "{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}" ({49DE1C67-83F8-4102-99E0-C16DCC7EEC796}) - "Cyberlink Corp." - C:\Program Files\Acer Arcade Deluxe\Play Movie\000.fcl [Explorer] -----( HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )----- {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" - ? - (File not found | COM-object registry key not found) {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" - ? - (File not found | COM-object registry key not found) {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" - ? - (File not found | COM-object registry key not found) {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" - ? - (File not found | COM-object registry key not found) -----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )----- {F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll {C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} "{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}" - ? - C:\Program Files\OpenOffice.org 2.4\program\shlxthdl.dll -----( HKLM\Software\Classes\Protocols\Handler )----- {828030A1-22C1-4009-854F-8E305202313F} "livecall" - "Microsoft Corporation" - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL {0A9007C0-4076-11D3-8789-0000F8105754} "Microsoft Infotech Storage Protocol for IE 4.0" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll {828030A1-22C1-4009-854F-8E305202313F} "msnim" - "Microsoft Corporation" - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )----- {911051fa-c21c-4246-b470-070cd8df6dc4} ".cab or .zip files" - ? - (File not found | COM-object registry key not found) {1b24a030-9b20-49bc-97ac-1be4426f9e59} "ActiveDirectory Folder" - ? - (File not found | COM-object registry key not found) {34449847-FD14-4fc8-A75A-7432F5181EFB} "ActiveDirectory Folder" - ? - (File not found | COM-object registry key not found) {0F8604A5-4ECE-4DE1-BA7D-CF10F8AA4F48} "Contacts folder" - ? - (File not found | COM-object registry key not found) {A70C977A-BF00-412C-90B7-034C51DA2439} "DesktopContext Class" - "NVIDIA Corporation" - C:\Windows\system32\nvcpl.dll {2b45bd21-71f8-4c8c-a87a-7eeb25a1a3e0} "EPM-PO Shell Extensions" - ? - epm-po.dll (File not found) {2C2577C2-63A7-40e3-9B7F-586602617ECB} "Explorer Query Band" - ? - (File not found | COM-object registry key not found) {FAC3CBF6-8697-43d0-BAB9-DCD1FCE19D75} "IE User Assist" - ? - (File not found | COM-object registry key not found) {00020d75-0000-0000-c000-000000000046} "lnkfile" - ? - (File not found | COM-object registry key not found) {FC9FB64A-1EB2-4CCF-AF5E-1A497A9B5C2D} "Meine freigegebenen Ordner" - "Microsoft Corporation" - C:\Program Files\Windows Live\Messenger\fsshext.8.5.1302.1018.dll {FFB699E0-306A-11d3-8BD1-00104B6F7516} "NVIDIA CPL Extension" - "NVIDIA Corporation" - C:\Windows\system32\nvcpl.dll {C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} "OpenOffice.org Column Handler" - ? - C:\Program Files\OpenOffice.org 2.4\program\shlxthdl.dll {087B3AE3-E237-4467-B8DB-5A38AB959AC9} "OpenOffice.org Infotip Handler" - ? - C:\Program Files\OpenOffice.org 2.4\program\shlxthdl.dll {63542C48-9552-494A-84F7-73AA6A7C99C1} "OpenOffice.org Property Sheet Handler" - ? - C:\Program Files\OpenOffice.org 2.4\program\shlxthdl.dll {3B092F0C-7696-40E3-A80F-68D74DA84210} "OpenOffice.org Thumbnail Viewer" - ? - C:\Program Files\OpenOffice.org 2.4\program\shlxthdl.dll {C8494E42-ACDD-4739-B0FB-217361E4894F} "Sam Account Folder" - ? - (File not found | COM-object registry key not found) {E29F9716-5C08-4FCD-955A-119FDB5A522D} "Sam Account Folder" - ? - (File not found | COM-object registry key not found) {45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\shlext.dll {280CFDE1-1354-4431-92F3-03073BA593FB} "TotalConverter Context Menu Shell Extension" - ? - D:\Program Files\TotalAudioConverter\axTotalConverter.dll {da67b8ad-e81b-4c70-9b91b417b5e33527} "Windows Search Shell Service" - ? - (File not found | COM-object registry key not found) {B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" - ? - D:\Program Files\WinRAR\rarext.dll (File found, but it contains no detailed information) [Internet Explorer] -----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )----- <binary data> "Avira SearchFree Toolbar plus Web Protection" - "Ask" - C:\Program Files\Ask.com\GenericAskToolbar.dll ITBar7Height "ITBar7Height" - ? - (File not found | COM-object registry key not found) <binary data> "ITBar7Layout" - ? - (File not found | COM-object registry key not found) <binary data> "ITBarLayout" - ? - (File not found | COM-object registry key not found) -----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )----- {8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_11" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} "Java Plug-in 1.6.0_11" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_11" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\npjpi160_11.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab {D0C0F75C-683A-4390-A791-1ACFD5599AB8} "Oberon Flash Game Host" - ? - C:\Windows\Downloaded Program Files\OberonGameHost.dll (File not found) / hxxp://icq.oberon-media.com/Gameshell/GameHost/1.0/OberonGameHost.cab -----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )----- "ICQ7.5" - "ICQ, LLC." - C:\Program Files\ICQ7.5\ICQ.exe -----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar )----- <binary data> "Acer eDataSecurity Management" - "HiTRUST" - C:\Windows\system32\eDStoolbar.dll <binary data> "Avira SearchFree Toolbar plus Web Protection" - "Ask" - C:\Program Files\Ask.com\GenericAskToolbar.dll -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )----- {D4027C7F-154A-4066-A1AD-4243D8127440} "Avira SearchFree Toolbar plus Web Protection" - "Ask" - C:\Program Files\Ask.com\GenericAskToolbar.dll {DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2ssv.dll {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} "Java(tm) Plug-In SSV Helper" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\ssv.dll [Logon] -----( %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup )----- "desktop.ini" - ? - C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini "Dropbox.lnk" - "Dropbox, Inc." - C:\Users\Lady Sirenety\AppData\Roaming\Dropbox\bin\Dropbox.exe (Shortcut exists | File exists) "OpenOffice.org 2.4.lnk" - ? - C:\Program Files\OpenOffice.org 2.4\program\quickstart.exe (Shortcut exists | File found, but it contains no detailed information | File exists) -----( %AllUsersProfile%\Microsoft\Windows\Start Menu\Programs\Startup )----- "desktop.ini" - ? - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini -----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )----- "StartupPrograms" - ? - rdpclip (File not found) -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )----- "Acer Tour Reminder" - "Acer Inc." - C:\Acer\AcerTour\Reminder.exe "Adobe Reader Speed Launcher" - "Adobe Systems Incorporated" - "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" "ApnUpdater" - "Ask" - "C:\Program Files\Ask.com\Updater\Updater.exe" "avgnt" - "Avira Operations GmbH & Co. KG" - "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min "eAudio" - "CyberLink" - "C:\Acer\Empowering Technology\eAudio\eAudio.exe" "eDataSecurity Loader" - "HiTRUST" - C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe "LManager" - "Dritek System Inc." - C:\PROGRA~1\LAUNCH~1\LManager.exe "NeroFilterCheck" - "Ahead Software Gmbh" - C:\Windows\system32\NeroCheck.exe "NvCplDaemon" - "NVIDIA Corporation" - RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup "NvMediaCenter" - "NVIDIA Corporation" - RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit "PlayMovie" - "CyberLink Corp." - "C:\Program Files\Acer Arcade Deluxe\Play Movie\PMVService.exe" "QuickTime Task" - "Apple Inc." - "C:\Program Files\QuickTime\QTTask.exe" -atboottime "SunJavaUpdateSched" - "Sun Microsystems, Inc." - "C:\Program Files\Java\jre6\bin\jusched.exe" "WarReg_PopUp" - "Acer Inc." - C:\Acer\WR_PopUp\WarReg_PopUp.exe [Print Monitors] -----( HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors )----- "EPSON Stylus Photo RX420 Series 2KMonitor5E" - "SEIKO EPSON CORPORATION" - C:\Windows\system32\E_FLM9CE.DLL [Services] -----( HKLM\SYSTEM\CurrentControlSet\Services )----- "@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100" (WPFFontCache_v0400) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe "ALaunch Service" (ALaunchService) - ? - C:\Acer\ALaunch\ALaunchSvc.exe "Avira Browser Schutz" (AntiVirWebService) - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE "Avira Echtzeit Scanner" (AntiVirService) - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\avguard.exe "Avira Planer" (AntiVirSchedulerService) - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\sched.exe "Cyberlink RichVideo Service(CRVS)" (RichVideo) - ? - C:\Program Files\CyberLink\Shared Files\RichVideo.exe "eDSService.exe" (eDataSecurity Service) - "HiTRSUT" - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe "eLock Service" (eLockService) - "Acer Inc." - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe "eNet Service" (eNet Service) - "Acer Inc." - C:\Acer\Empowering Technology\eNet\eNet Service.exe "ePower Service" (WMIService) - "acer" - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe "eRecovery Service" (eRecoveryService) - "Acer Inc." - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe "eSettings Service" (eSettingsService) - ? - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe "Google Update Service (gupdate)" (gupdate) - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe "Google Update-Dienst (gupdatem)" (gupdatem) - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe "ICQ Service" (ICQ Service) - ? - C:\Program Files\ICQ6Toolbar\ICQ Service.exe "LightScribeService Direct Disc Labeling Service" (LightScribeService) - "Hewlett-Packard Company" - C:\Program Files\Common Files\LightScribe\LSSrvc.exe "Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe "MobilityService" (MobilityService) - ? - C:\Acer\Mobility Center\MobilityService.exe (File found, but it contains no detailed information) "NVIDIA Display Driver Service" (nvsvc) - "NVIDIA Corporation" - C:\Windows\system32\nvvsvc.exe [Winlogon] -----( HKCU\Control Panel\Desktop )----- "SCRNSAVE.EXE" - "Swearware" - C:\Users\LADYSI~1\Desktop\dds.scr [Winsock Providers] -----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries )----- "AVSDA" - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\avsda.dll ===[ Logfile end ]=========================================[ Logfile end ]=== If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru Code:
ATTFilter aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software Run date: 2012-03-22 13:32:35 ----------------------------- 13:32:35.209 OS Version: Windows 6.0.6002 Service Pack 2 13:32:35.209 Number of processors: 2 586 0x6802 13:32:35.209 ComputerName: LADYSIRENETY UserName: 13:32:36.332 Initialize success 13:32:44.638 AVAST engine download error: 0 13:32:56.791 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 13:32:56.791 Disk 0 Vendor: TOSHIBA_MK1646GSX LB113J Size: 152627MB BusType: 3 13:32:56.978 Disk 0 MBR read successfully 13:32:56.978 Disk 0 MBR scan 13:32:56.978 Disk 0 unknown MBR code 13:32:57.071 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 9993 MB offset 63 13:32:57.103 Disk 0 Partition 2 80 (A) 06 FAT16 NTFS 71448 MB offset 20467712 13:32:57.134 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 71184 MB offset 166793216 13:32:57.352 Disk 0 scanning sectors +312578048 13:32:57.805 Disk 0 scanning C:\Windows\system32\drivers 13:33:28.942 Service scanning 13:33:51.157 Modules scanning 13:34:05.056 Disk 0 trace - called modules: 13:34:05.618 ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll ataport.SYS pciide.sys PCIIDEX.SYS atapi.sys 13:34:05.618 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8515b100] 13:34:05.618 3 CLASSPNP.SYS[877c48b3] -> nt!IofCallDriver -> [0x84a3d918] 13:34:05.633 5 acpi.sys[8260e6bc] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x84a20820] 13:34:05.633 Scan finished successfully 13:34:45.944 Disk 0 MBR has been saved successfully to "C:\Users\Lady Sirenety\Desktop\MBR.dat" 13:34:45.944 The log file has been saved successfully to "C:\Users\Lady Sirenety\Desktop\aswMBR.txt" |
22.03.2012, 15:26 | #22 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Bundestrojaner, Klappe die 439. Wir sollten den MBR fixen, sichere für den Fall der Fälle ALLE wichtigen Daten, auch wenn meistens alles glatt geht. Hinweis: Mach bitte NICHT den MBR-Fix, wenn du noch andere Betriebssysteme wie zB Ubuntu installiert hast, ein MBR-Fix mit Windows-Tools macht ein parallel installiertes (Dualboot) Linux unbootbar. Mach den Fix auch dann nicht, wenn du zB mit TrueCrypt oder anderen Verschlüsselungsprogrammen eine Vollverschlüsselung der Windowspartition bzw. gesamten Festplatte hast Starte nach der Datensicherung aswmbr erneut und klick auf den Button FIXMBR. Hinweis: Bitte den Virenscanner abstellen bevor du aswMBR ausführst, denn v.a. Avira meldet darin oft einen Fehalalrm! Anschließend Windows neu starten und ein neues Log mit aswMBR machen.
__________________ Logfiles bitte immer in CODE-Tags posten |
27.03.2012, 10:34 | #23 |
| Bundestrojaner, Klappe die 439. Sorry für die lange Abwesenheit. Hatte private Verpflichtungen. Ich war mir nicht ganz sicher, was du genau wolltest, also habe ich nach dem Fix Create a log gedrückt, neu gestartet und dann wieder gescannt. Hier beide Logs in chronologischer Abfolge Code:
ATTFilter aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software Run date: 2012-03-27 11:08:31 ----------------------------- 11:08:31.678 OS Version: Windows 6.0.6002 Service Pack 2 11:08:31.678 Number of processors: 2 586 0x6802 11:08:31.678 ComputerName: LADYSIRENETY UserName: 11:08:53.097 Initialize success 11:09:15.831 Verifying 11:09:25.877 Disk 0 Windows 600 MBR fixed successfully 11:13:14.418 Verifying 11:13:24.464 Disk 0 Windows 600 MBR fixed successfully 11:13:54.369 Disk 0 MBR has been saved successfully to "C:\Users\Lady Sirenety\Desktop\MBR.dat" 11:13:54.369 The log file has been saved successfully to "C:\Users\Lady Sirenety\Desktop\aswMBR.txt" Code:
ATTFilter aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software Run date: 2012-03-27 11:22:10 ----------------------------- 11:22:10.646 OS Version: Windows 6.0.6002 Service Pack 2 11:22:10.646 Number of processors: 2 586 0x6802 11:22:10.646 ComputerName: LADYSIRENETY UserName: 11:22:31.597 Initialize success 11:22:42.165 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 11:22:42.165 Disk 0 Vendor: TOSHIBA_MK1646GSX LB113J Size: 152627MB BusType: 3 11:22:42.181 Disk 0 MBR read successfully 11:22:42.181 Disk 0 MBR scan 11:22:42.197 Disk 0 Windows VISTA default MBR code 11:22:42.197 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 9993 MB offset 63 11:22:42.212 Disk 0 Partition 2 80 (A) 06 FAT16 NTFS 71448 MB offset 20467712 11:22:42.228 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 71184 MB offset 166793216 11:22:42.243 Disk 0 scanning sectors +312578048 11:22:42.306 Disk 0 scanning C:\Windows\system32\drivers 11:22:51.510 Service scanning 11:23:16.626 Modules scanning 11:23:26.064 Disk 0 trace - called modules: 11:23:26.079 ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll ataport.SYS pciide.sys PCIIDEX.SYS atapi.sys 11:23:26.079 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x852c9ac8] 11:23:26.095 3 CLASSPNP.SYS[877bd8b3] -> nt!IofCallDriver -> [0x84a3ef08] 11:23:26.095 5 acpi.sys[826146bc] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x84a41840] 11:23:26.111 Scan finished successfully 11:27:35.679 Disk 0 MBR has been saved successfully to "C:\Users\Lady Sirenety\Desktop\MBR.dat" 11:27:35.679 The log file has been saved successfully to "C:\Users\Lady Sirenety\Desktop\aswMBRscanlog.txt" |
27.03.2012, 12:27 | #24 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Bundestrojaner, Klappe die 439. Sieht ok aus. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs. Denk dran beide Tools zu updaten vor dem Scan!!
__________________ Logfiles bitte immer in CODE-Tags posten |
30.03.2012, 15:46 | #25 |
| Bundestrojaner, Klappe die 439. alter..............ich hab grad beschlossen meinen Laptop in Zukunft passwort zu schützen und auf die Frage meiner lieben Mitbewohner "Kann ich mal deinen Laptop benutzen während du auf der Arbeit bist? Meiner spinnt irgendwie" Mit "NEEEEEEIIIIIIIIIIIN!!!!!!" zu antworten. Die meisten Seiten/Cookies kannte ich nicht mal. Hier war grad ein Donnerwetter sondersgleichen. Guck dir den zweiten Log an und du weißt wieso Code:
ATTFilter Malwarebytes Anti-Malware 1.60.1.1000 www.malwarebytes.org Datenbank Version: v2012.03.30.02 Windows Vista Service Pack 2 x86 NTFS Internet Explorer 9.0.8112.16421 Lady Sirenety :: LADYSIRENETY [Administrator] 30.03.2012 12:03:18 mbam-log-2012-03-30 (12-03-18).txt Art des Suchlaufs: Vollständiger Suchlauf Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 312326 Laufzeit: 1 Stunde(n), 51 Minute(n), 40 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) Code:
ATTFilter SUPERAntiSpyware Scan Log hxxp://www.superantispyware.com Generated 03/30/2012 at 04:07 PM Application Version : 5.0.1146 Core Rules Database Version : 8402 Trace Rules Database Version: 6214 Scan type : Complete Scan Total Scan Time : 02:05:38 Operating System Information Windows Vista Home Premium 32-bit, Service Pack 2 (Build 6.00.6002) UAC On - Administrator Memory items scanned : 815 Memory threats detected : 0 Registry items scanned : 33273 Registry threats detected : 0 File items scanned : 223974 File threats detected : 735 Adware.Tracking Cookie C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\lady_sirenety@ad2.adfarm1.adition[1].txt [ /ad2.adfarm1.adition ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\lady_sirenety@ad3.adfarm1.adition[1].txt [ /ad3.adfarm1.adition ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\lady_sirenety@ad4.adfarm1.adition[1].txt [ /ad4.adfarm1.adition ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\lady_sirenety@adform[1].txt [ /adform ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\lady_sirenety@content.yieldmanager[1].txt [ /content.yieldmanager ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\lady_sirenety@content.yieldmanager[3].txt [ /content.yieldmanager ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\lady_sirenety@doubleclick[2].txt [ /doubleclick ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\lady_sirenety@imrworldwide[2].txt [ /imrworldwide ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\lady_sirenety@invitemedia[1].txt [ /invitemedia ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\lady_sirenety@sevenoneintermedia.112.2o7[1].txt [ /sevenoneintermedia.112.2o7 ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\lady_sirenety@track.adform[2].txt [ /track.adform ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\KQ4ERVBH.txt [ /zanox.com ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\HZ8NSMS6.txt [ /revsci.net ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\NV3ZOA3A.txt [ /smartadserver.com ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\526RKEL2.txt [ /fl01.ct2.comclick.com ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\YJ91RHE8.txt [ /dyntracker.com ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\SL2DYUW9.txt [ /mediaplex.com ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\2W0VN5FE.txt [ /serving-sys.com ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\22P6Z1HK.txt [ /traffictrack.de ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\515T1QTK.txt [ /adfarm1.adition.com ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\ECVDUKV7.txt [ /atdmt.com ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\L0EOD6V3.txt [ /tradedoubler.com ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\1O53EXU3.txt [ /apmebf.com ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\4VNVY1JZ.txt [ /ad.yieldmanager.com ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\UM3Y61M5.txt [ /webmasterplan.com ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\0586J3MU.txt [ /ads.creative-serving.com ] C:\Users\Lady Sirenety\AppData\Roaming\Microsoft\Windows\Cookies\V44CIKHC.txt [ /bs.serving-sys.com ] C:\USERS\LADY SIRENETY\Cookies\lady_sirenety@ad2.adfarm1.adition[1].txt [ Cookie:lady sirenety@ad2.adfarm1.adition.com/ ] C:\USERS\LADY SIRENETY\Cookies\lady_sirenety@track.adform[2].txt [ Cookie:lady sirenety@track.adform.net/ ] C:\USERS\LADY SIRENETY\Cookies\KQ4ERVBH.txt [ Cookie:lady sirenety@zanox.com/ ] C:\USERS\LADY SIRENETY\Cookies\lady_sirenety@doubleclick[2].txt [ Cookie:lady sirenety@doubleclick.net/ ] C:\USERS\LADY SIRENETY\Cookies\lady_sirenety@ad4.adfarm1.adition[1].txt [ Cookie:lady sirenety@ad4.adfarm1.adition.com/ ] C:\USERS\LADY SIRENETY\Cookies\NV3ZOA3A.txt [ Cookie:lady sirenety@smartadserver.com/ ] C:\USERS\LADY SIRENETY\Cookies\526RKEL2.txt [ Cookie:lady sirenety@fl01.ct2.comclick.com/ ] C:\USERS\LADY SIRENETY\Cookies\YJ91RHE8.txt [ Cookie:lady sirenety@dyntracker.com/ ] C:\USERS\LADY SIRENETY\Cookies\SL2DYUW9.txt [ Cookie:lady sirenety@mediaplex.com/ ] C:\USERS\LADY SIRENETY\Cookies\lady_sirenety@ad3.adfarm1.adition[1].txt [ Cookie:lady sirenety@ad3.adfarm1.adition.com/ ] C:\USERS\LADY SIRENETY\Cookies\lady_sirenety@sevenoneintermedia.112.2o7[1].txt [ Cookie:lady sirenety@sevenoneintermedia.112.2o7.net/ ] C:\USERS\LADY SIRENETY\Cookies\2W0VN5FE.txt [ Cookie:lady sirenety@serving-sys.com/ ] C:\USERS\LADY SIRENETY\Cookies\22P6Z1HK.txt [ Cookie:lady sirenety@traffictrack.de/ ] C:\USERS\LADY SIRENETY\Cookies\515T1QTK.txt [ Cookie:lady sirenety@adfarm1.adition.com/ ] C:\USERS\LADY SIRENETY\Cookies\lady_sirenety@imrworldwide[2].txt [ Cookie:lady sirenety@imrworldwide.com/cgi-bin ] C:\USERS\LADY SIRENETY\Cookies\lady_sirenety@content.yieldmanager[1].txt [ Cookie:lady sirenety@content.yieldmanager.com/ ] C:\USERS\LADY SIRENETY\Cookies\L0EOD6V3.txt [ Cookie:lady sirenety@tradedoubler.com/ ] C:\USERS\LADY SIRENETY\Cookies\lady_sirenety@invitemedia[1].txt [ Cookie:lady sirenety@invitemedia.com/ ] C:\USERS\LADY SIRENETY\Cookies\4VNVY1JZ.txt [ Cookie:lady sirenety@ad.yieldmanager.com/ ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .microsoftinternetexplorer.112.2o7.net [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .atdmt.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .atdmt.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .doubleclick.net [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .traffictrack.de [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .c.gigcount.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .imrworldwide.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .imrworldwide.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .statcounter.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adserver.gesichterparty.de [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad3.adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .rambler.ru [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .rambler.ru [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .yadro.ru [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .yadro.ru [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] studivz.adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .apmebf.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .mediaplex.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.pointroll.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .pointroll.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .pointroll.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.pointroll.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.pointroll.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.pointroll.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.pointroll.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.pointroll.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ads.pointroll.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .112.2o7.net [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] flagcounter.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] eas4.emediate.eu [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .247realmedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .server.cpmstar.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ru4.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .apmebf.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adbrite.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .specificclick.net [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adviva.net [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.dyntracker.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adxvalue.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .serving-sys.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .serving-sys.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .bs.serving-sys.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .media6degrees.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .lucidmedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .advertising.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] eas.apm.emediate.eu [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] track.adform.net [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .serving-sys.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tradedoubler.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tradedoubler.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tradedoubler.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .media6degrees.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .media6degrees.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ru4.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.youporn.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.youporn.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] rts.pgmediaserve.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] rts.pgmediaserve.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] rts.pgmediaserve.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .de.partypoker.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .partypoker.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .youporn.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .youporn.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .youporn.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .advertising.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .at.atwola.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .advertising.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .advertising.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] eas.apm.emediate.eu [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] eas.apm.emediate.eu [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .fastclick.net [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zanox-affiliate.de [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.zanox-affiliate.de [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.dyntracker.de [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] eas.apm.emediate.eu [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] track.adform.net [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adform.net [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .longporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .longporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .longporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.longporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.longporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.longporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .freepornsubmits.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .freepornsubmits.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .freepornsubmits.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .freepornsubmits.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.pornrabbit.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.longporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] boomporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] boomporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] boomporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] boomporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.porn2012.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.porn2012.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.porn2012.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.porn2012.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] streampornvideo.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] streampornvideo.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .ero-advertising.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ads.trafficjunky.net [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .sexad.net [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ads.crakmedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adbrite.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .casalemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .casalemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .casalemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .casalemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .casalemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .casalemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .unitymedia.de [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .unitymedia.de [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .technoratimedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .technoratimedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad1.adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .advertising.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .advertising.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tradetracker.net [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad4.adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.active-tracking.de [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.active-tracking.de [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.active-tracking.de [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad2.adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .yieldmanager.net [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .mediaplex.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .micklemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zedo.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zedo.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zedo.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zedo.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zedo.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .accounts.google.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .accounts.google.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] accounts.google.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] accounts.google.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .server.cpmstar.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .micklemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .micklemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .serving-sys.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .serving-sys.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .micklemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adlegend.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adlegend.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .zanox.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ad.zanox.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .server.cpmstar.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .server.cpmstar.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .server.cpmstar.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .syndication.traffichaus.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .syndication.traffichaus.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .syndication.traffichaus.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .girlsteachsex.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] ads2.zeusclicks.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .purpleporno.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .purpleporno.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .purpleporno.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.bustyteenstgp.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] www.bustyteenstgp.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .adxpansion.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .exoclick.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .officecunts.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .officecunts.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .officecunts.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .uniformcunts.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .uniformcunts.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] .uniformcunts.com [ C:\USERS\LADY SIRENETY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] data-ero-advertising.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\LQMBR8Y9 ] delivery.ibanner.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\LQMBR8Y9 ] files.youporn.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\LQMBR8Y9 ] .atdmt.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] fidelity.rotator.hadj7.adjuggler.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] fidelity.rotator.hadj7.adjuggler.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] fidelity.rotator.hadj7.adjuggler.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] accounts.youtube.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .yadro.ru [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] tracking.mlsat02.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .a.revenuemax.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .ad-emea.doubleclick.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .ad-emea.doubleclick.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .ad-emea.doubleclick.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .ad-emea.doubleclick.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .247realmedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adxpose.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .lucidmedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .yieldmanager.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .rambler.ru [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .technoratimedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .technoratimedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .sexlist.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] counter8.sextracker.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .sextracker.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .banners.fuckbookhookups.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .banners.fuckbookhookups.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .banners.fuckbookhookups.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .banners.fuckbookhookups.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .banners.fuckbookhookups.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .banners.fuckbookhookups.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .exoclick.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.netdebit-counter.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .stats.ilivid.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .histats.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .histats.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] topmedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] topmedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .harrenmedianetwork.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad.adition.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad.adition.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .histats.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] topmedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .topmedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .topmedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .topmedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] e2.emediate.se [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .xiti.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad1.adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.usenext.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adinterax.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adinterax.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .tradetracker.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.solocpm.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .guj.122.2o7.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .ero-advertising.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] s08.flagcounter.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .ero-advertising.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .statcounter.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] audit.median.hu [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] banners.victor.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad.dyntracker.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] banners.victor.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] banners.victor.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] banners.victor.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .kontera.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] banners.victor.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .pro-market.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .pro-market.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ww251.smartadserver.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .dyntracker.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.usenext.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.usenext.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] tracking.hostgator.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adviva.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .unitymedia.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .unitymedia.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adlegend.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adlegend.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] banners.victor.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .banners.victor.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .rambler.ru [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] adserver2.clipkit.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.tldadserv.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .counter.sexsuche.tv [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] counter2.sexmoney.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .liveperson.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .liveperson.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] sales.liveperson.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] edates.traffective-tracking.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] edates.traffective-tracking.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] edates.traffective-tracking.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] edates.traffective-tracking.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.pregnantandfucked.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.pregnantandfucked.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.pregnantandfucked.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.pregnantandfucked.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.pregnantandfucked.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.pregnantandfucked.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.pregnantandfucked.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.pregnantandfucked.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.allofteens.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.allofteens.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.allofteens.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.allofteens.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .pornpros.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .pornpros.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .pornpros.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .crocoporn.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .crocoporn.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .crocoporn.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .crocoporn.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .allofteens.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .allofteens.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .allofteens.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.allofteens.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .hellporno.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .hellporno.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .hellporno.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .hellporno.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] galleries.adult-empire.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.allofteens.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] galleries2.adult-empire.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.allofteens.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.allofteens.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .exoclick.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] lpa.trackfox2.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .a.trackfox2.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .a.trackfox2.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .bs.serving-sys.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .tribalfusion.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad3.adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] e2.emediate.se [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .c.gigcount.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.zanox-affiliate.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad.dyntracker.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .mobildiscounter.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad.adserver01.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adform.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .zanox.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.active-tracking.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.active-tracking.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.active-tracking.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .avgtechnologies.112.2o7.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad4.adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] ad2.adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] a.visualrevenue.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.youngpornvideos.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .youngpornvideos.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .youngpornvideos.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .youngpornvideos.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .freepornstv.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .freepornstv.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .zoosextv.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] zoosextv.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .sexxxyteentube.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] sexxxyteentube.net [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .maturetubeporn.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .maturetubeporn.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .maturetubeporn.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .porn.sc [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .porn.sc [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .porn.sc [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .porn.sc [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .trafficholder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .trafficholder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .trafficholder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .trafficholder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .trafficholder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .trafficholder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .trafficholder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .witchsextube.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .trafficholder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .gfporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .gfporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .gfporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .gfporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .trafficholder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .sushiporntube.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .trafficholder.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .allofadult.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .allofadult.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .allofadult.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] stats.mmpg.de [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] accounts.youtube.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .accounts.google.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .accounts.google.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] .accounts.google.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] accounts.google.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] accounts.google.com [ C:\USERS\LADY SIRENETY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NUQMV2SC.DEFAULT\COOKIES.SQLITE ] Trojan.Agent/Gen-Malintent D:\PROGRAM FILES\WINRAR\DEFAULT.SFX |
30.03.2012, 15:52 | #26 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Bundestrojaner, Klappe die 439. Ja solche Seiten treiben den ein oder anderen schonmal gern die Schamesröte ins Gesicht Sieht ok aus, da wurden nur Cookies gefunden. Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie ) Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme? Wegen Cookies und anderer Dinge im Web: Um die Pest von vornherein zu blocken (also TrackingCookies, Werbebanner etc.) müsstest du dir mal sowas wie MVPS Hosts File anschauen => Blocking Unwanted Parasites with a Hosts File - sinnvollerweise solltest du alle 4 Wochen mal bei MVPS nachsehen, ob er eine neue Hosts Datei herausgebracht hat. Ansonsten gibt es noch gute Cookiemanager, Erweiterungen für den Firefox zB wäre da CookieCuller http://filepony.de/download-cookie_culler/ Wenn du aber damit leben kannst, dich bei jeder Browsersession überall neu einzuloggen (zB Facebook, Ebay, GMX, oder auch Trojaner-Board) dann stell den Browser einfach so ein, dass einfach alles beim Beenden des Browser inkl. Cookies gelöscht wird. Ich halte es so, dass ich zum "wilden Surfen" den Opera-Browser oder Chromium unter meinem Linux verwende. Mein Hauptbrowser (Firefox) speichert nur die Cookies von den Sites die ich auch will, alles andere lehne ich manuell ab (der FF fragt mich immer) - die anderen Browser nehmen alles an Cookies zwar an, aber spätestens beim nächsten Start von Opera oder Chromium sind keine Cookies mehr da.
__________________ Logfiles bitte immer in CODE-Tags posten |
12.04.2012, 10:45 | #27 |
| Bundestrojaner, Klappe die 439. Sorry, mein e-mail programm hat mich nicht informiert, dass es eine Antwort gab. System läuft wieder rund. Danke für den Tipp mit den Cookies. Werds so machen wie du, mit zwei versch. Browsern |
12.04.2012, 15:07 | #28 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Bundestrojaner, Klappe die 439. Dann wären wir durch! Die Programme, die hier zum Einsatz kamen, können alle wieder runter. CF kann über Start, Ausführen mit combofix /uninstall entfernt werden. Melde dich falls es da Fehlermeldungen zu gibt. Mit Hilfe von OTL kannst du auch viele Tools entfernen: Starte bitte OTL und klicke auf Bereinigung. Dies wird die meisten Tools entfernen, die wir zur Bereinigung benötigt haben. Sollte etwas bestehen bleiben, bitte mit Rechtsklick --> Löschen entfernen. Malwarebytes zu behalten ist zu empfehlen. Kannst ja 1x im Monat damit einen Vollscan machen, aber immer vorher ans Update denken. Bitte abschließend die Updates prüfen, unten mein Leitfaden dazu. Um in Zukunft die Aktualität der installierten Programme besser im Überblick zu halten, kannst du zB Secunia PSI verwenden. Für noch mehr Sicherheit solltest Du nach der beseitigten Infektion auch möglichst alle Passwörter ändern. Microsoftupdate Windows XP: Besuch mit dem IE die MS-Updateseite und lass Dir alle wichtigen Updates installieren. Windows Vista/7: Anleitung Windows-Update PDF-Reader aktualisieren Ein veralteter AdobeReader stellt ein großes Sicherheitsrisiko dar. Du solltest daher besser alte Versionen vom AdobeReader über Systemsteuerung => Software bzw. Programme und Funktionen deinstallieren, indem Du dort auf "Adobe Reader x.0" klickst und das Programm entfernst. (falls du AdobeReader installiert hast) Ich empfehle einen alternativen PDF-Reader wie PDF Xchange Viewer, SumatraPDF oder Foxit PDF Reader, die sind sehr viel schlanker und flotter als der AdobeReader. Bitte überprüf bei der Gelegenheit auch die Aktualität des Flashplayers: Adobe - Andere Version des Adobe Flash Player installieren Notfalls kann man auch von Chip.de runterladen => http://filepony.de/?q=Flash+Player Natürlich auch darauf achten, dass andere installierte Browser wie zB Firefox, Opera oder Chrome aktuell sind. Java-Update Veraltete Java-Installationen sind ein Sicherheitsrisiko, daher solltest Du die alten Versionen löschen (falls vorhanden, am besten mit JavaRa) und auf die neuste aktualisieren. Beende dazu alle Programme (v.a. die Browser), klick danach auf Start, Systemsteuerung, Software und deinstalliere darüber alle aufgelisteten Java-Versionen. Lad Dir danach von hier das aktuelle Java SE Runtime Environment (JRE) herunter und installiere es.
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Bundestrojaner, Klappe die 439. |
acrobat, adobe, appdata, avira, avira searchfree toolbar, boot, defender, desktop, download, explorer, firefox, google earth, home, link, messenger, mozilla, netzwerk, pdf, plug-in, pop-up-blocker, popup, rundll, rundll32.exe, svchost.exe, sweetim, sweetpacks, system, system32, windows, windows media player, wmp |