Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: #Nach Virus keine Icons auf dem Desktop mehr!

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 22.05.2012, 20:19   #16
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
#Nach Virus keine Icons auf dem Desktop mehr! - Standard

#Nach Virus keine Icons auf dem Desktop mehr!



Ist ziemlich unauffällig

Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten Anleitung und Downloadlink hier => http://www.trojaner-board.de/82358-t...entfernen.html

Hinweis: Bitte den Virenscanner abstellen bevor du den TDSS-Killer ausführst, denn v.a. Avira meldet im TDSS-Tool oft einen Fehalalrm!

Das Tool so einstellen wie unten im Bild angegeben - klick auf change parameters und setze die Haken wie im folgenden Screenshot abgebildet,
Dann auf Start Scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten.
Wenn du das Log nicht findest oder den Inhalt kopieren und in dein Posting übertragen kannst, dann schau bitte direkt auf deiner Windows-Systempartition (meistens Laufwerk C nach, da speichert der TDSS-Killer seine Logs.

Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten!

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 23.05.2012, 21:31   #17
Levi1
 
#Nach Virus keine Icons auf dem Desktop mehr! - Standard

#Nach Virus keine Icons auf dem Desktop mehr!



Holla,

hier das Log

Zitat:
22:29:04.0171 7536 TDSS rootkit removing tool 2.7.37.0 May 23 2012 08:15:30
22:29:04.0280 7536 ============================================================
22:29:04.0280 7536 Current date / time: 2012/05/23 22:29:04.0280
22:29:04.0280 7536 SystemInfo:
22:29:04.0280 7536
22:29:04.0281 7536 OS Version: 6.1.7600 ServicePack: 0.0
22:29:04.0281 7536 Product type: Workstation
22:29:04.0281 7536 ComputerName: LIANGPC
22:29:04.0281 7536 UserName: Zooey Deschanel
22:29:04.0281 7536 Windows directory: C:\Windows
22:29:04.0281 7536 System windows directory: C:\Windows
22:29:04.0281 7536 Processor architecture: Intel x86
22:29:04.0281 7536 Number of processors: 6
22:29:04.0281 7536 Page size: 0x1000
22:29:04.0281 7536 Boot type: Normal boot
22:29:04.0281 7536 ============================================================
22:29:04.0526 7536 Drive \Device\Harddisk1\DR1 - Size: 0xDF99E6000 (55.90 Gb), SectorSize: 0x200, Cylinders: 0x1C81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
22:29:04.0535 7536 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
22:29:04.0537 7536 ============================================================
22:29:04.0537 7536 \Device\Harddisk1\DR1:
22:29:04.0537 7536 MBR partitions:
22:29:04.0537 7536 \Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
22:29:04.0537 7536 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x6F99800
22:29:04.0537 7536 \Device\Harddisk0\DR0:
22:29:04.0537 7536 MBR partitions:
22:29:04.0537 7536 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705800
22:29:04.0537 7536 ============================================================
22:29:04.0538 7536 C: <-> \Device\Harddisk1\DR1\Partition1
22:29:04.0555 7536 F: <-> \Device\Harddisk0\DR0\Partition0
22:29:04.0555 7536 ============================================================
22:29:04.0555 7536 Initialize success
22:29:04.0555 7536 ============================================================
22:30:58.0589 4344 ============================================================
22:30:58.0589 4344 Scan started
22:30:58.0589 4344 Mode: Manual; SigCheck; TDLFS;
22:30:58.0589 4344 ============================================================
22:30:58.0783 4344 1394ohci (6d2aca41739bfe8cb86ee8e85f29697d) C:\Windows\system32\DRIVERS\1394ohci.sys
22:30:58.0828 4344 1394ohci - ok
22:30:58.0840 4344 ACPI (f0e07d144c8685b8774bc32fc8da4df0) C:\Windows\system32\DRIVERS\ACPI.sys
22:30:58.0853 4344 ACPI - ok
22:30:58.0855 4344 AcpiPmi (98d81ca942d19f7d9153b095162ac013) C:\Windows\system32\DRIVERS\acpipmi.sys
22:30:58.0868 4344 AcpiPmi - ok
22:30:58.0874 4344 AdobeARMservice (11a52cf7b265631deeb24c6149309eff) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
22:30:58.0881 4344 AdobeARMservice - ok
22:30:58.0897 4344 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
22:30:58.0910 4344 adp94xx - ok
22:30:58.0922 4344 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
22:30:58.0934 4344 adpahci - ok
22:30:58.0941 4344 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
22:30:58.0950 4344 adpu320 - ok
22:30:58.0955 4344 AeLookupSvc (8b5eefeec1e6d1a72a06c526628ad161) C:\Windows\System32\aelupsvc.dll
22:30:58.0965 4344 AeLookupSvc - ok
22:30:58.0979 4344 AFD (0db7a48388d54d154ebec120461a0fcd) C:\Windows\system32\drivers\afd.sys
22:30:58.0992 4344 AFD - ok
22:30:58.0996 4344 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\DRIVERS\agp440.sys
22:30:59.0004 4344 agp440 - ok
22:30:59.0009 4344 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
22:30:59.0017 4344 aic78xx - ok
22:30:59.0021 4344 ALG (18a54e132947cd98fea9accc57f98f13) C:\Windows\System32\alg.exe
22:30:59.0031 4344 ALG - ok
22:30:59.0033 4344 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\DRIVERS\aliide.sys
22:30:59.0041 4344 aliide - ok
22:30:59.0044 4344 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\DRIVERS\amdagp.sys
22:30:59.0052 4344 amdagp - ok
22:30:59.0055 4344 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\DRIVERS\amdide.sys
22:30:59.0062 4344 amdide - ok
22:30:59.0066 4344 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
22:30:59.0074 4344 AmdK8 - ok
22:30:59.0078 4344 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
22:30:59.0087 4344 AmdPPM - ok
22:30:59.0092 4344 amdsata (19ce906b4cdc11fc4fef5745f33a63b6) C:\Windows\system32\drivers\amdsata.sys
22:30:59.0101 4344 amdsata - ok
22:30:59.0108 4344 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
22:30:59.0117 4344 amdsbs - ok
22:30:59.0120 4344 amdxata (869e67d66be326a5a9159fba8746fa70) C:\Windows\system32\drivers\amdxata.sys
22:30:59.0128 4344 amdxata - ok
22:30:59.0137 4344 AntiVirSchedulerService (466a0d95960dad3222c896d2cea99993) C:\Program Files\Avira\AntiVir Desktop\sched.exe
22:30:59.0146 4344 AntiVirSchedulerService - ok
22:30:59.0151 4344 AntiVirService (a489be6bb0aa1ff406b488b60542314b) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
22:30:59.0158 4344 AntiVirService - ok
22:30:59.0162 4344 AppID (feb834c02ce1e84b6a38f953ca067706) C:\Windows\system32\drivers\appid.sys
22:30:59.0177 4344 AppID - ok
22:30:59.0180 4344 AppIDSvc (62a9c86cb6085e20db4823e4e97826f5) C:\Windows\System32\appidsvc.dll
22:30:59.0213 4344 AppIDSvc - ok
22:30:59.0217 4344 Appinfo (7dead9e3f65dcb2794f2711003bbf650) C:\Windows\System32\appinfo.dll
22:30:59.0226 4344 Appinfo - ok
22:30:59.0230 4344 Apple Mobile Device (3debbecf665dcdde3a95d9b902010817) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
22:30:59.0237 4344 Apple Mobile Device - ok
22:30:59.0243 4344 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
22:30:59.0252 4344 arc - ok
22:30:59.0257 4344 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
22:30:59.0265 4344 arcsas - ok
22:30:59.0278 4344 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
22:30:59.0311 4344 AsyncMac - ok
22:30:59.0314 4344 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\DRIVERS\atapi.sys
22:30:59.0321 4344 atapi - ok
22:30:59.0323 4344 AtiPcie (aca01c43d065e546c6dc88ea669ceca6) C:\Windows\system32\DRIVERS\AtiPcie.sys
22:30:59.0341 4344 AtiPcie - ok
22:30:59.0361 4344 AudioEndpointBuilder (510c873bfa135aa829f4180352772734) C:\Windows\System32\Audiosrv.dll
22:30:59.0384 4344 AudioEndpointBuilder - ok
22:30:59.0388 4344 Audiosrv (510c873bfa135aa829f4180352772734) C:\Windows\System32\Audiosrv.dll
22:30:59.0408 4344 Audiosrv - ok
22:30:59.0413 4344 avgntflt (d5541f0afb767e85fc412fc609d96a74) C:\Windows\system32\DRIVERS\avgntflt.sys
22:30:59.0421 4344 avgntflt - ok
22:30:59.0428 4344 avipbb (7d967a682d4694df7fa57d63a2db01fe) C:\Windows\system32\DRIVERS\avipbb.sys
22:30:59.0437 4344 avipbb - ok
22:30:59.0441 4344 avkmgr (271cfd1a989209b1964e24d969552bf7) C:\Windows\system32\DRIVERS\avkmgr.sys
22:30:59.0448 4344 avkmgr - ok
22:30:59.0453 4344 AxInstSV (dd6a431b43e34b91a767d1ce33728175) C:\Windows\System32\AxInstSV.dll
22:30:59.0467 4344 AxInstSV - ok
22:30:59.0483 4344 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
22:30:59.0495 4344 b06bdrv - ok
22:30:59.0505 4344 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
22:30:59.0516 4344 b57nd60x - ok
22:30:59.0522 4344 BDESVC (ee1e9c3bb8228ae423dd38db69128e71) C:\Windows\System32\bdesvc.dll
22:30:59.0533 4344 BDESVC - ok
22:30:59.0535 4344 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
22:30:59.0552 4344 Beep - ok
22:30:59.0572 4344 BFE (85ac71c045ceb054ed48a7841aae0c11) C:\Windows\System32\bfe.dll
22:30:59.0596 4344 BFE - ok
22:30:59.0619 4344 BITS (53f476476f55a27f580661bde09c4ec4) C:\Windows\system32\qmgr.dll
22:30:59.0641 4344 BITS - ok
22:30:59.0645 4344 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
22:30:59.0653 4344 blbdrive - ok
22:30:59.0670 4344 Bonjour Service (db5bea73edaf19ac68b2c0fad0f92b1a) C:\Program Files\Bonjour\mDNSResponder.exe
22:30:59.0681 4344 Bonjour Service - ok
22:30:59.0686 4344 bowser (9a5c671b7fbae4865149bb11f59b91b2) C:\Windows\system32\DRIVERS\bowser.sys
22:30:59.0695 4344 bowser - ok
22:30:59.0698 4344 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
22:30:59.0707 4344 BrFiltLo - ok
22:30:59.0709 4344 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
22:30:59.0718 4344 BrFiltUp - ok
22:30:59.0723 4344 BridgeMP (77361d72a04f18809d0efb6cceb74d4b) C:\Windows\system32\DRIVERS\bridge.sys
22:30:59.0741 4344 BridgeMP - ok
22:30:59.0746 4344 Browser (598e1280e7ff3744f4b8329366cc5635) C:\Windows\System32\browser.dll
22:30:59.0764 4344 Browser - ok
22:30:59.0775 4344 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
22:30:59.0788 4344 Brserid - ok
22:30:59.0793 4344 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
22:30:59.0802 4344 BrSerWdm - ok
22:30:59.0805 4344 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
22:30:59.0814 4344 BrUsbMdm - ok
22:30:59.0816 4344 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
22:30:59.0824 4344 BrUsbSer - ok
22:30:59.0828 4344 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
22:30:59.0837 4344 BTHMODEM - ok
22:30:59.0843 4344 bthserv (1df19c96eef6c29d1c3e1a8678e07190) C:\Windows\system32\bthserv.dll
22:30:59.0860 4344 bthserv - ok
22:30:59.0865 4344 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
22:30:59.0883 4344 cdfs - ok
22:30:59.0889 4344 cdrom (ba6e70aa0e6091bc39de29477d866a77) C:\Windows\system32\DRIVERS\cdrom.sys
22:30:59.0898 4344 cdrom - ok
22:30:59.0903 4344 CertPropSvc (628a9e30ec5e18dd5de6be4dbdc12198) C:\Windows\System32\certprop.dll
22:30:59.0921 4344 CertPropSvc - ok
22:30:59.0924 4344 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
22:30:59.0933 4344 circlass - ok
22:30:59.0944 4344 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
22:30:59.0956 4344 CLFS - ok
22:30:59.0963 4344 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:30:59.0972 4344 clr_optimization_v2.0.50727_32 - ok
22:30:59.0980 4344 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:30:59.0990 4344 clr_optimization_v4.0.30319_32 - ok
22:30:59.0993 4344 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
22:31:00.0000 4344 CmBatt - ok
22:31:00.0003 4344 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\DRIVERS\cmdide.sys
22:31:00.0010 4344 cmdide - ok
22:31:00.0025 4344 CNG (36c252e474b2ffa0f0fbbff20d92a640) C:\Windows\system32\Drivers\cng.sys
22:31:00.0043 4344 CNG - ok
22:31:00.0046 4344 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
22:31:00.0054 4344 Compbatt - ok
22:31:00.0057 4344 CompositeBus (f1724ba27e97d627f808fb0ba77a28a6) C:\Windows\system32\DRIVERS\CompositeBus.sys
22:31:00.0066 4344 CompositeBus - ok
22:31:00.0068 4344 COMSysApp - ok
22:31:00.0072 4344 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
22:31:00.0079 4344 crcdisk - ok
22:31:00.0088 4344 CryptSvc (9c231178ce4fb385f4b54b0a9080b8a4) C:\Windows\system32\cryptsvc.dll
22:31:00.0108 4344 CryptSvc - ok
22:31:00.0124 4344 DcomLaunch (b82cd39e336973359d7c9bf911e8e84f) C:\Windows\system32\rpcss.dll
22:31:00.0148 4344 DcomLaunch - ok
22:31:00.0157 4344 defragsvc (8d6e10a2d9a5eed59562d9b82cf804e1) C:\Windows\System32\defragsvc.dll
22:31:00.0178 4344 defragsvc - ok
22:31:00.0183 4344 DfsC (83d1ecea8faae75604c0fa49ac7ad996) C:\Windows\system32\Drivers\dfsc.sys
22:31:00.0193 4344 DfsC - ok
22:31:00.0204 4344 Dhcp (c56495fbd770712367cad35e5de72da6) C:\Windows\system32\dhcpcore.dll
22:31:00.0221 4344 Dhcp - ok
22:31:00.0225 4344 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
22:31:00.0257 4344 discache - ok
22:31:00.0261 4344 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
22:31:00.0269 4344 Disk - ok
22:31:00.0275 4344 Dnscache (b15be77a2bacf9c3177d27518afe26a9) C:\Windows\System32\dnsrslvr.dll
22:31:00.0286 4344 Dnscache - ok
22:31:00.0295 4344 dot3svc (4408c85c21eea48eb0ce486baeef0502) C:\Windows\System32\dot3svc.dll
22:31:00.0315 4344 dot3svc - ok
22:31:00.0321 4344 DPS (7fa81c6e11caa594adb52084da73a1e5) C:\Windows\system32\dps.dll
22:31:00.0341 4344 DPS - ok
22:31:00.0344 4344 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
22:31:00.0353 4344 drmkaud - ok
22:31:00.0380 4344 DXGKrnl (1679a4669326cb1a67cc95658d273234) C:\Windows\System32\drivers\dxgkrnl.sys
22:31:00.0398 4344 DXGKrnl - ok
22:31:00.0403 4344 EapHost (8600142fa91c1b96367d3300ad0f3f3a) C:\Windows\System32\eapsvc.dll
22:31:00.0422 4344 EapHost - ok
22:31:00.0515 4344 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
22:31:00.0557 4344 ebdrv - ok
22:31:00.0582 4344 EFS (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\System32\lsass.exe
22:31:00.0591 4344 EFS - ok
22:31:00.0610 4344 ehRecvr (1697c39978cd69f6fbc15302edcece1f) C:\Windows\ehome\ehRecvr.exe
22:31:00.0625 4344 ehRecvr - ok
22:31:00.0630 4344 ehSched (d389bff34f80caede417bf9d1507996a) C:\Windows\ehome\ehsched.exe
22:31:00.0641 4344 ehSched - ok
22:31:00.0659 4344 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
22:31:00.0673 4344 elxstor - ok
22:31:00.0675 4344 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\DRIVERS\errdev.sys
22:31:00.0683 4344 ErrDev - ok
22:31:00.0698 4344 EventSystem (f6916efc29d9953d5d0df06882ae8e16) C:\Windows\system32\es.dll
22:31:00.0719 4344 EventSystem - ok
22:31:00.0726 4344 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
22:31:00.0745 4344 exfat - ok
22:31:00.0752 4344 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
22:31:00.0771 4344 fastfat - ok
22:31:00.0790 4344 Fax (f7ea23cc5e6bf2181f3f399d54f6efc1) C:\Windows\system32\fxssvc.exe
22:31:00.0804 4344 Fax - ok
22:31:00.0808 4344 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
22:31:00.0816 4344 fdc - ok
22:31:00.0818 4344 fdPHost (f3222c893bd2f5821a0179e5c71e88fb) C:\Windows\system32\fdPHost.dll
22:31:00.0835 4344 fdPHost - ok
22:31:00.0839 4344 FDResPub (7dbe8cbfe79efbdeb98c9fb08d3a9a5b) C:\Windows\system32\fdrespub.dll
22:31:00.0857 4344 FDResPub - ok
22:31:00.0861 4344 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
22:31:00.0870 4344 FileInfo - ok
22:31:00.0873 4344 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
22:31:00.0890 4344 Filetrace - ok
22:31:00.0893 4344 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
22:31:00.0900 4344 flpydisk - ok
22:31:00.0909 4344 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
22:31:00.0919 4344 FltMgr - ok
22:31:00.0947 4344 FontCache (7fe4995528a7529a761875151ee3d512) C:\Windows\system32\FntCache.dll
22:31:00.0964 4344 FontCache - ok
22:31:00.0968 4344 FontCache3.0.0.0 (e56f39f6b7fda0ac77a79b0fd3de1a2f) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
22:31:00.0975 4344 FontCache3.0.0.0 - ok
22:31:00.0979 4344 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
22:31:00.0986 4344 FsDepends - ok
22:31:00.0989 4344 Fs_Rec (500a9814fd9446a8126858a5a7f7d273) C:\Windows\system32\drivers\Fs_Rec.sys
22:31:00.0997 4344 Fs_Rec - ok
22:31:01.0005 4344 fvevol (dafbd9fe39197495aed6d51f3b85b5d2) C:\Windows\system32\DRIVERS\fvevol.sys
22:31:01.0017 4344 fvevol - ok
22:31:01.0021 4344 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
22:31:01.0029 4344 gagp30kx - ok
22:31:01.0033 4344 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
22:31:01.0039 4344 GEARAspiWDM - ok
22:31:01.0061 4344 gpsvc (8ba3c04702bf8f927ab36ae8313ca4ee) C:\Windows\System32\gpsvc.dll
22:31:01.0079 4344 gpsvc - ok
22:31:01.0082 4344 hamachi (833051c6c6c42117191935f734cfbd97) C:\Windows\system32\DRIVERS\hamachi.sys
22:31:01.0089 4344 hamachi - ok
22:31:01.0107 4344 Hamachi2Svc - ok
22:31:01.0111 4344 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
22:31:01.0119 4344 hcw85cir - ok
22:31:01.0131 4344 HdAudAddService (3530cad25deba7dc7de8bb51632cbc5f) C:\Windows\system32\drivers\HdAudio.sys
22:31:01.0143 4344 HdAudAddService - ok
22:31:01.0149 4344 HDAudBus (717a2207fd6f13ad3e664c7d5a43c7bf) C:\Windows\system32\DRIVERS\HDAudBus.sys
22:31:01.0159 4344 HDAudBus - ok
22:31:01.0162 4344 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
22:31:01.0171 4344 HidBatt - ok
22:31:01.0176 4344 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
22:31:01.0186 4344 HidBth - ok
22:31:01.0189 4344 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
22:31:01.0198 4344 HidIr - ok
22:31:01.0202 4344 hidserv (2bc6f6a1992b3a77f5f41432ca6b3b6b) C:\Windows\System32\hidserv.dll
22:31:01.0220 4344 hidserv - ok
22:31:01.0223 4344 HidUsb (25072fb35ac90b25f9e4e3bacf774102) C:\Windows\system32\DRIVERS\hidusb.sys
22:31:01.0231 4344 HidUsb - ok
22:31:01.0235 4344 hkmsvc (741c2a45ca8407e374aaba3e330b7872) C:\Windows\system32\kmsvc.dll
22:31:01.0254 4344 hkmsvc - ok
22:31:01.0263 4344 HomeGroupListener (a768ca158bb06782a2835b907f4873c3) C:\Windows\system32\ListSvc.dll
22:31:01.0274 4344 HomeGroupListener - ok
22:31:01.0282 4344 HomeGroupProvider (fb08dec5ef43d0c66d83b8e9694e7549) C:\Windows\system32\provsvc.dll
22:31:01.0292 4344 HomeGroupProvider - ok
22:31:01.0297 4344 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\DRIVERS\HpSAMD.sys
22:31:01.0305 4344 HpSAMD - ok
22:31:01.0323 4344 HTTP (c531c7fd9e8b62021112787c4e2c5a5a) C:\Windows\system32\drivers\HTTP.sys
22:31:01.0347 4344 HTTP - ok
22:31:01.0350 4344 hwpolicy (8305f33cde89ad6c7a0763ed0b5a8d42) C:\Windows\system32\drivers\hwpolicy.sys
22:31:01.0357 4344 hwpolicy - ok
22:31:01.0362 4344 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\DRIVERS\i8042prt.sys
22:31:01.0370 4344 i8042prt - ok
22:31:01.0383 4344 iaStorV (71f1a494fedf4b33c02c4a6a28d6d9e9) C:\Windows\system32\drivers\iaStorV.sys
22:31:01.0395 4344 iaStorV - ok
22:31:01.0425 4344 idsvc (5af815eb5bc9802e5a064e2ba62bfc0c) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
22:31:01.0443 4344 idsvc - ok
22:31:01.0447 4344 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
22:31:01.0455 4344 iirsp - ok
22:31:01.0479 4344 IKEEXT (fac0ee6562b121b1399d6e855583f7a5) C:\Windows\System32\ikeext.dll
22:31:01.0506 4344 IKEEXT - ok
22:31:01.0622 4344 IntcAzAudAddService (6bea3c6c9b0dc7bb92a54154796895b7) C:\Windows\system32\drivers\RTKVHDA.sys
22:31:01.0679 4344 IntcAzAudAddService - ok
22:31:01.0707 4344 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\DRIVERS\intelide.sys
22:31:01.0715 4344 intelide - ok
22:31:01.0719 4344 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
22:31:01.0727 4344 intelppm - ok
22:31:01.0731 4344 IPBusEnum (acb364b9075a45c0736e5c47be5cae19) C:\Windows\system32\ipbusenum.dll
22:31:01.0750 4344 IPBusEnum - ok
22:31:01.0754 4344 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
22:31:01.0772 4344 IpFilterDriver - ok
22:31:01.0793 4344 iphlpsvc (477397b432a256a50ee7e4339eb9ea14) C:\Windows\System32\iphlpsvc.dll
22:31:01.0816 4344 iphlpsvc - ok
22:31:01.0821 4344 IPMIDRV (e4454b6c37d7ffd5649611f6496308a7) C:\Windows\system32\DRIVERS\IPMIDrv.sys
22:31:01.0829 4344 IPMIDRV - ok
22:31:01.0834 4344 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
22:31:01.0853 4344 IPNAT - ok
22:31:01.0886 4344 iPod Service (178fe38b7740f598391eb2f51ae4ccac) C:\Program Files\iPod\bin\iPodService.exe
22:31:01.0904 4344 iPod Service - ok
22:31:01.0907 4344 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
22:31:01.0916 4344 IRENUM - ok
22:31:01.0919 4344 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\DRIVERS\isapnp.sys
22:31:01.0927 4344 isapnp - ok
22:31:01.0935 4344 iScsiPrt (ed46c223ae46c6866ab77cdc41c404b7) C:\Windows\system32\DRIVERS\msiscsi.sys
22:31:01.0945 4344 iScsiPrt - ok
22:31:01.0949 4344 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\DRIVERS\kbdclass.sys
22:31:01.0957 4344 kbdclass - ok
22:31:01.0960 4344 kbdhid (3d9f0ebf350edcfd6498057301455964) C:\Windows\system32\DRIVERS\kbdhid.sys
22:31:01.0969 4344 kbdhid - ok
22:31:01.0972 4344 KeyIso (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\system32\lsass.exe
22:31:01.0979 4344 KeyIso - ok
22:31:01.0984 4344 KSecDD (0263364acb9c834ace52fb85c2c064ec) C:\Windows\system32\Drivers\ksecdd.sys
22:31:01.0992 4344 KSecDD - ok
22:31:01.0998 4344 KSecPkg (27391db553be2a4e2b0adeea2873b2af) C:\Windows\system32\Drivers\ksecpkg.sys
22:31:02.0008 4344 KSecPkg - ok
22:31:02.0020 4344 KtmRm (89a7b9cc98d0d80c6f31b91c0a310fcd) C:\Windows\system32\msdtckrm.dll
22:31:02.0042 4344 KtmRm - ok
22:31:02.0050 4344 LanmanServer (8f6bf790d3168224c16f2af68a84438c) C:\Windows\System32\srvsvc.dll
22:31:02.0061 4344 LanmanServer - ok
22:31:02.0066 4344 LanmanWorkstation (b9891f885dcf1f0513a51cb58493cb1f) C:\Windows\System32\wkssvc.dll
22:31:02.0086 4344 LanmanWorkstation - ok
22:31:02.0091 4344 LGBusEnum (170e7093a77ad586f3a012a3db651d94) C:\Windows\system32\drivers\LGBusEnum.sys
22:31:02.0098 4344 LGBusEnum - ok
22:31:02.0100 4344 LGVirHid (d2dd04d1c8df65eecd1f2c7fb947d43e) C:\Windows\system32\drivers\LGVirHid.sys
22:31:02.0107 4344 LGVirHid - ok
22:31:02.0111 4344 lltdio (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
22:31:02.0129 4344 lltdio - ok
22:31:02.0138 4344 lltdsvc (5700673e13a2117fa3b9020c852c01e2) C:\Windows\System32\lltdsvc.dll
22:31:02.0158 4344 lltdsvc - ok
22:31:02.0160 4344 lmhosts (55ca01ba19d0006c8f2639b6c045e08b) C:\Windows\System32\lmhsvc.dll
22:31:02.0178 4344 lmhosts - ok
22:31:02.0185 4344 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
22:31:02.0194 4344 LSI_FC - ok
22:31:02.0199 4344 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
22:31:02.0208 4344 LSI_SAS - ok
22:31:02.0212 4344 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
22:31:02.0220 4344 LSI_SAS2 - ok
22:31:02.0225 4344 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
22:31:02.0234 4344 LSI_SCSI - ok
22:31:02.0239 4344 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
22:31:02.0257 4344 luafv - ok
22:31:02.0260 4344 MBAMProtector (fb097bbc1a18f044bd17bd2fccf97865) C:\Windows\system32\drivers\mbam.sys
22:31:02.0268 4344 MBAMProtector - ok
22:31:02.0291 4344 MBAMService (ba400ed640bca1eae5c727ae17c10207) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
22:31:02.0306 4344 MBAMService - ok
22:31:02.0311 4344 Mcx2Svc (e2b0887816ed336685954e3d8fdaa51d) C:\Windows\system32\Mcx2Svc.dll
22:31:02.0320 4344 Mcx2Svc - ok
22:31:02.0323 4344 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
22:31:02.0331 4344 megasas - ok
22:31:02.0340 4344 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
22:31:02.0351 4344 MegaSR - ok
22:31:02.0355 4344 MMCSS (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
22:31:02.0374 4344 MMCSS - ok
22:31:02.0377 4344 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
22:31:02.0395 4344 Modem - ok
22:31:02.0398 4344 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
22:31:02.0407 4344 monitor - ok
22:31:02.0411 4344 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\DRIVERS\mouclass.sys
22:31:02.0418 4344 mouclass - ok
22:31:02.0421 4344 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
22:31:02.0429 4344 mouhid - ok
22:31:02.0434 4344 mountmgr (921c18727c5920d6c0300736646931c2) C:\Windows\system32\drivers\mountmgr.sys
22:31:02.0443 4344 mountmgr - ok
22:31:02.0449 4344 MozillaMaintenance (96aa8ba23142cc8e2b30f3cae0c80254) C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
22:31:02.0457 4344 MozillaMaintenance - ok
22:31:02.0463 4344 mpio (2af5997438c55fb79d33d015c30e1974) C:\Windows\system32\DRIVERS\mpio.sys
22:31:02.0473 4344 mpio - ok
22:31:02.0477 4344 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
22:31:02.0494 4344 mpsdrv - ok
22:31:02.0517 4344 MpsSvc (5cd996cecf45cbc3e8d109c86b82d69e) C:\Windows\system32\mpssvc.dll
22:31:02.0542 4344 MpsSvc - ok
22:31:02.0548 4344 MRxDAV (b1be47008d20e43da3adc37c24cdb89d) C:\Windows\system32\drivers\mrxdav.sys
22:31:02.0559 4344 MRxDAV - ok
22:31:02.0565 4344 mrxsmb (ca7570e42522e24324a12161db14ec02) C:\Windows\system32\DRIVERS\mrxsmb.sys
22:31:02.0575 4344 mrxsmb - ok
22:31:02.0585 4344 mrxsmb10 (f965c3ab2b2ae5c378f4562486e35051) C:\Windows\system32\DRIVERS\mrxsmb10.sys
22:31:02.0595 4344 mrxsmb10 - ok
22:31:02.0600 4344 mrxsmb20 (25c38264a3c72594dd21d355d70d7a5d) C:\Windows\system32\DRIVERS\mrxsmb20.sys
22:31:02.0608 4344 mrxsmb20 - ok
22:31:02.0611 4344 msahci (4326d168944123f38dd3b2d9c37a0b12) C:\Windows\system32\DRIVERS\msahci.sys
22:31:02.0619 4344 msahci - ok
22:31:02.0624 4344 msdsm (455029c7174a2dbb03dba8a0d8bddd9a) C:\Windows\system32\DRIVERS\msdsm.sys
22:31:02.0633 4344 msdsm - ok
22:31:02.0640 4344 MSDTC (e1bce74a3bd9902b72599c0192a07e27) C:\Windows\System32\msdtc.exe
22:31:02.0651 4344 MSDTC - ok
22:31:02.0656 4344 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
22:31:02.0673 4344 Msfs - ok
22:31:02.0675 4344 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
22:31:02.0692 4344 mshidkmdf - ok
22:31:02.0695 4344 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\DRIVERS\msisadrv.sys
22:31:02.0703 4344 msisadrv - ok
22:31:02.0708 4344 MSiSCSI (90f7d9e6b6f27e1a707d4a297f077828) C:\Windows\system32\iscsiexe.dll
22:31:02.0727 4344 MSiSCSI - ok
22:31:02.0729 4344 msiserver - ok
22:31:02.0733 4344 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
22:31:02.0750 4344 MSKSSRV - ok
22:31:02.0753 4344 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
22:31:02.0770 4344 MSPCLOCK - ok
22:31:02.0772 4344 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
22:31:02.0790 4344 MSPQM - ok
22:31:02.0798 4344 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
22:31:02.0807 4344 MsRPC - ok
22:31:02.0812 4344 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\DRIVERS\mssmbios.sys
22:31:02.0820 4344 mssmbios - ok
22:31:02.0822 4344 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
22:31:02.0839 4344 MSTEE - ok
22:31:02.0842 4344 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
22:31:02.0850 4344 MTConfig - ok
22:31:02.0852 4344 MTsensor (cbe71c122434805cb73ffb6619f60598) C:\Windows\system32\DRIVERS\ASACPI.sys
22:31:02.0859 4344 MTsensor - ok
22:31:02.0863 4344 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
22:31:02.0871 4344 Mup - ok
22:31:02.0884 4344 napagent (80284f1985c70c86f0b5f86da2dfe1df) C:\Windows\system32\qagentRT.dll
22:31:02.0907 4344 napagent - ok
22:31:02.0919 4344 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
22:31:02.0932 4344 NativeWifiP - ok
22:31:02.0957 4344 NDIS (23759d175a0a9baaf04d05047bc135a8) C:\Windows\system32\drivers\ndis.sys
22:31:02.0974 4344 NDIS - ok
22:31:02.0977 4344 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
22:31:02.0994 4344 NdisCap - ok
22:31:02.0997 4344 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
22:31:03.0014 4344 NdisTapi - ok
22:31:03.0018 4344 Ndisuio (b30ae7f2b6d7e343b0df32e6c08fce75) C:\Windows\system32\DRIVERS\ndisuio.sys
22:31:03.0035 4344 Ndisuio - ok
22:31:03.0041 4344 NdisWan (267c415eadcbe53c9ca873dee39cf3a4) C:\Windows\system32\DRIVERS\ndiswan.sys
22:31:03.0060 4344 NdisWan - ok
22:31:03.0064 4344 NDProxy (af7e7c63dcef3f8772726f86039d6eb4) C:\Windows\system32\drivers\NDProxy.sys
22:31:03.0082 4344 NDProxy - ok
22:31:03.0085 4344 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
22:31:03.0102 4344 NetBIOS - ok
22:31:03.0111 4344 NetBT (dd52a733bf4ca5af84562a5e2f963b91) C:\Windows\system32\DRIVERS\netbt.sys
22:31:03.0130 4344 NetBT - ok
22:31:03.0133 4344 Netlogon (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\system32\lsass.exe
22:31:03.0141 4344 Netlogon - ok
22:31:03.0153 4344 Netman (7cccfca7510684768da22092d1fa4db2) C:\Windows\System32\netman.dll
22:31:03.0175 4344 Netman - ok
22:31:03.0189 4344 netprofm (8c338238c16777a802d6a9211eb2ba50) C:\Windows\System32\netprofm.dll
22:31:03.0213 4344 netprofm - ok
22:31:03.0219 4344 NetTcpPortSharing (fe2aa5a684b0dd9b1fae57b7817c198b) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
22:31:03.0228 4344 NetTcpPortSharing - ok
22:31:03.0231 4344 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
22:31:03.0239 4344 nfrd960 - ok
22:31:03.0250 4344 NlaSvc (2226496e34bd40734946a054b1cd657f) C:\Windows\System32\nlasvc.dll
22:31:03.0271 4344 NlaSvc - ok
22:31:03.0274 4344 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
22:31:03.0292 4344 Npfs - ok
22:31:03.0295 4344 nsi (ba387e955e890c8a88306d9b8d06bf17) C:\Windows\system32\nsisvc.dll
22:31:03.0312 4344 nsi - ok
22:31:03.0315 4344 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
22:31:03.0332 4344 nsiproxy - ok
22:31:03.0377 4344 Ntfs (187002ce05693c306f43c873f821381f) C:\Windows\system32\drivers\Ntfs.sys
22:31:03.0402 4344 Ntfs - ok
22:31:03.0405 4344 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
22:31:03.0422 4344 Null - ok
22:31:03.0429 4344 NVHDA (3d7fb57354703809b5f0c23287fac1d6) C:\Windows\system32\drivers\nvhda32v.sys
22:31:03.0439 4344 NVHDA - ok
22:31:03.0783 4344 nvlddmkm (e891b3979f0cf2740c1b073f834221fe) C:\Windows\system32\DRIVERS\nvlddmkm.sys
22:31:03.0945 4344 nvlddmkm - ok
22:31:03.0977 4344 nvraid (f1b0bed906f97e16f6d0c3629d2f21c6) C:\Windows\system32\drivers\nvraid.sys
22:31:03.0986 4344 nvraid - ok
22:31:03.0993 4344 nvstor (4520b63899e867f354ee012d34e11536) C:\Windows\system32\drivers\nvstor.sys
22:31:04.0003 4344 nvstor - ok
22:31:04.0025 4344 nvsvc (ae2de8e165dcb93a66b21748e6f913df) C:\Windows\system32\nvvsvc.exe
22:31:04.0042 4344 nvsvc - ok
22:31:04.0120 4344 nvUpdatusService (c78581c14699c46fe0f0817416383134) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
22:31:04.0151 4344 nvUpdatusService - ok
22:31:04.0181 4344 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\DRIVERS\nv_agp.sys
22:31:04.0190 4344 nv_agp - ok
22:31:04.0194 4344 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\DRIVERS\ohci1394.sys
22:31:04.0203 4344 ohci1394 - ok
22:31:04.0214 4344 p2pimsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
22:31:04.0227 4344 p2pimsvc - ok
22:31:04.0240 4344 p2psvc (59c3ddd501e39e006dac31bf55150d91) C:\Windows\system32\p2psvc.dll
22:31:04.0252 4344 p2psvc - ok
22:31:04.0258 4344 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
22:31:04.0267 4344 Parport - ok
22:31:04.0271 4344 partmgr (66d3415c159741ade7038a277efff99f) C:\Windows\system32\drivers\partmgr.sys
22:31:04.0279 4344 partmgr - ok
22:31:04.0281 4344 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
22:31:04.0289 4344 Parvdm - ok
22:31:04.0297 4344 PcaSvc (358ab7956d3160000726574083dfc8a6) C:\Windows\System32\pcasvc.dll
22:31:04.0309 4344 PcaSvc - ok
22:31:04.0316 4344 pci (c858cb77c577780ecc456a892e7e7d0f) C:\Windows\system32\DRIVERS\pci.sys
22:31:04.0326 4344 pci - ok
22:31:04.0328 4344 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\DRIVERS\pciide.sys
22:31:04.0335 4344 pciide - ok
22:31:04.0343 4344 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
22:31:04.0353 4344 pcmcia - ok
22:31:04.0357 4344 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
22:31:04.0365 4344 pcw - ok
22:31:04.0402 4344 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
22:31:04.0427 4344 PEAUTH - ok
22:31:04.0480 4344 pla (9c1bff7910c89a1d12e57343475840cb) C:\Windows\system32\pla.dll
22:31:04.0516 4344 pla - ok
22:31:04.0551 4344 PlugPlay (71def5ec79774c798342d0ea16e41780) C:\Windows\system32\umpnpmgr.dll
22:31:04.0564 4344 PlugPlay - ok
22:31:04.0567 4344 PNRPAutoReg (63ff8572611249931eb16bb8eed6afc8) C:\Windows\system32\pnrpauto.dll
22:31:04.0575 4344 PNRPAutoReg - ok
22:31:04.0586 4344 PNRPsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
22:31:04.0596 4344 PNRPsvc - ok
22:31:04.0611 4344 PolicyAgent (48e1b75c6dc0232fd92baae4bd344721) C:\Windows\System32\ipsecsvc.dll
22:31:04.0633 4344 PolicyAgent - ok
22:31:04.0640 4344 Power (dbff83f709a91049621c1d35dd45c92c) C:\Windows\system32\umpo.dll
22:31:04.0659 4344 Power - ok
22:31:04.0666 4344 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
22:31:04.0685 4344 PptpMiniport - ok
22:31:04.0689 4344 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
22:31:04.0697 4344 Processor - ok
22:31:04.0704 4344 ProfSvc (630cf26f0227498b7d5a92b12548960f) C:\Windows\system32\profsvc.dll
22:31:04.0725 4344 ProfSvc - ok
22:31:04.0728 4344 ProtectedStorage (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\system32\lsass.exe
22:31:04.0735 4344 ProtectedStorage - ok
22:31:04.0741 4344 Psched (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
22:31:04.0759 4344 Psched - ok
22:31:04.0806 4344 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
22:31:04.0832 4344 ql2300 - ok
22:31:04.0862 4344 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
22:31:04.0871 4344 ql40xx - ok
22:31:04.0880 4344 QWAVE (31ac809e7707eb580b2bdb760390765a) C:\Windows\system32\qwave.dll
22:31:04.0893 4344 QWAVE - ok
22:31:04.0897 4344 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
22:31:04.0906 4344 QWAVEdrv - ok
22:31:04.0909 4344 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
22:31:04.0926 4344 RasAcd - ok
22:31:04.0930 4344 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
22:31:04.0946 4344 RasAgileVpn - ok
22:31:04.0951 4344 RasAuto (a60f1839849c0c00739787fd5ec03f13) C:\Windows\System32\rasauto.dll
22:31:04.0970 4344 RasAuto - ok
22:31:04.0975 4344 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
22:31:04.0993 4344 Rasl2tp - ok
22:31:05.0005 4344 RasMan (0ce66ec736b7fc526d78f7624c7d2a94) C:\Windows\System32\rasmans.dll
22:31:05.0026 4344 RasMan - ok
22:31:05.0030 4344 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
22:31:05.0049 4344 RasPppoe - ok
22:31:05.0053 4344 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
22:31:05.0070 4344 RasSstp - ok
22:31:05.0080 4344 rdbss (835d7e81bf517a3b72384bdcc85e1ce6) C:\Windows\system32\DRIVERS\rdbss.sys
22:31:05.0101 4344 rdbss - ok
22:31:05.0103 4344 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
22:31:05.0113 4344 rdpbus - ok
22:31:05.0115 4344 RDPCDD (1e016846895b15a99f9a176a05029075) C:\Windows\system32\DRIVERS\RDPCDD.sys
22:31:05.0132 4344 RDPCDD - ok
22:31:05.0136 4344 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
22:31:05.0152 4344 RDPENCDD - ok
22:31:05.0155 4344 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
22:31:05.0171 4344 RDPREFMP - ok
22:31:05.0179 4344 RDPWD (0399c725a9c95a6f1862b93f008ddf4a) C:\Windows\system32\drivers\RDPWD.sys
22:31:05.0188 4344 RDPWD - ok
22:31:05.0196 4344 rdyboost (4ea225bf1cf05e158853f30a99ca29a7) C:\Windows\system32\drivers\rdyboost.sys
22:31:05.0206 4344 rdyboost - ok
22:31:05.0211 4344 RemoteAccess (7b5e1419717fac363a31cc302895217a) C:\Windows\System32\mprdim.dll
22:31:05.0229 4344 RemoteAccess - ok
22:31:05.0234 4344 RemoteRegistry (cb9a8683f4ef2bf99e123d79950d7935) C:\Windows\system32\regsvc.dll
22:31:05.0254 4344 RemoteRegistry - ok
22:31:05.0257 4344 RpcEptMapper (78d072f35bc45d9e4e1b61895c152234) C:\Windows\System32\RpcEpMap.dll
22:31:05.0276 4344 RpcEptMapper - ok
22:31:05.0278 4344 RpcLocator (94d36c0e44677dd26981d2bfeef2a29d) C:\Windows\system32\locator.exe
22:31:05.0287 4344 RpcLocator - ok
22:31:05.0302 4344 RpcSs (b82cd39e336973359d7c9bf911e8e84f) C:\Windows\system32\rpcss.dll
22:31:05.0322 4344 RpcSs - ok
22:31:05.0327 4344 rspndr (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
22:31:05.0345 4344 rspndr - ok
22:31:05.0361 4344 RTL8167 (5283b9a27ff230f2ff70d92451ff409a) C:\Windows\system32\DRIVERS\Rt86win7.sys
22:31:05.0373 4344 RTL8167 - ok
22:31:05.0383 4344 RTL8187B (872c4e777bedcd7f99dc09016b5e6f39) C:\Windows\system32\DRIVERS\wg111v3.sys
22:31:05.0393 4344 RTL8187B - ok
22:31:05.0396 4344 SamSs (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\system32\lsass.exe
22:31:05.0403 4344 SamSs - ok
22:31:05.0408 4344 sbp2port (34ee0c44b724e3e4ce2eff29126de5b5) C:\Windows\system32\DRIVERS\sbp2port.sys
22:31:05.0417 4344 sbp2port - ok
22:31:05.0423 4344 SCardSvr (8fc518ffe9519c2631d37515a68009c4) C:\Windows\System32\SCardSvr.dll
22:31:05.0442 4344 SCardSvr - ok
22:31:05.0445 4344 scfilter (a95c54b2ac3cc9c73fcdf9e51a1d6b51) C:\Windows\system32\DRIVERS\scfilter.sys
22:31:05.0462 4344 scfilter - ok
22:31:05.0487 4344 Schedule (df1e5c82e4d09cf8105cc644980c4803) C:\Windows\system32\schedsvc.dll
22:31:05.0504 4344 Schedule - ok
22:31:05.0509 4344 SCPolicySvc (628a9e30ec5e18dd5de6be4dbdc12198) C:\Windows\System32\certprop.dll
22:31:05.0526 4344 SCPolicySvc - ok
22:31:05.0532 4344 SDRSVC (5fd90abdbfaee85986802622cbb03446) C:\Windows\System32\SDRSVC.dll
22:31:05.0542 4344 SDRSVC - ok
22:31:05.0545 4344 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
22:31:05.0563 4344 secdrv - ok
22:31:05.0566 4344 seclogon (a59b3a4442c52060cc7a85293aa3546f) C:\Windows\system32\seclogon.dll
22:31:05.0584 4344 seclogon - ok
22:31:05.0588 4344 SENS (dcb7fcdcc97f87360f75d77425b81737) C:\Windows\system32\sens.dll
22:31:05.0607 4344 SENS - ok
22:31:05.0610 4344 SensrSvc (50087fe1ee447009c9cc2997b90de53f) C:\Windows\system32\sensrsvc.dll
22:31:05.0619 4344 SensrSvc - ok
22:31:05.0622 4344 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
22:31:05.0629 4344 Serenum - ok
22:31:05.0634 4344 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
22:31:05.0643 4344 Serial - ok
22:31:05.0646 4344 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
22:31:05.0654 4344 sermouse - ok
22:31:05.0663 4344 SessionEnv (8f55ce568c543d5adf45c409d16718fc) C:\Windows\system32\sessenv.dll
22:31:05.0682 4344 SessionEnv - ok
22:31:05.0685 4344 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\DRIVERS\sffdisk.sys
22:31:05.0694 4344 sffdisk - ok
22:31:05.0696 4344 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\DRIVERS\sffp_mmc.sys
22:31:05.0705 4344 sffp_mmc - ok
22:31:05.0708 4344 sffp_sd (4f1e5b0fe7c8050668dbfade8999aefb) C:\Windows\system32\DRIVERS\sffp_sd.sys
22:31:05.0717 4344 sffp_sd - ok
22:31:05.0719 4344 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
22:31:05.0727 4344 sfloppy - ok
22:31:05.0739 4344 SharedAccess (d1a079a0de2ea524513b6930c24527a2) C:\Windows\System32\ipnathlp.dll
22:31:05.0760 4344 SharedAccess - ok
22:31:05.0773 4344 ShellHWDetection (cd2e48fa5b29ee2b3b5858056d246ef2) C:\Windows\System32\shsvcs.dll
22:31:05.0788 4344 ShellHWDetection - ok
22:31:05.0792 4344 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\DRIVERS\sisagp.sys
22:31:05.0800 4344 sisagp - ok
22:31:05.0803 4344 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
22:31:05.0811 4344 SiSRaid2 - ok
22:31:05.0816 4344 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
22:31:05.0824 4344 SiSRaid4 - ok
22:31:05.0833 4344 SkypeUpdate (17eab7852ff9f15fbaab4e95efc0b812) C:\Program Files\Skype\Updater\Updater.exe
22:31:05.0842 4344 SkypeUpdate - ok
22:31:05.0846 4344 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
22:31:05.0864 4344 Smb - ok
22:31:05.0870 4344 SNMPTRAP (6a984831644eca1a33ffeae4126f4f37) C:\Windows\System32\snmptrap.exe
22:31:05.0879 4344 SNMPTRAP - ok
22:31:05.0882 4344 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
22:31:05.0890 4344 spldr - ok
22:31:05.0903 4344 Spooler (d1bb750eb51694de183e08b9c33be5b2) C:\Windows\System32\spoolsv.exe
22:31:05.0916 4344 Spooler - ok
22:31:06.0039 4344 sppsvc (4c287f9069fedbd791178876ee9de536) C:\Windows\system32\sppsvc.exe
22:31:06.0090 4344 sppsvc - ok
22:31:06.0117 4344 sppuinotify (d8e3e19eebdab49dd4a8d3062ead4ec7) C:\Windows\system32\sppuinotify.dll
22:31:06.0135 4344 sppuinotify - ok
22:31:06.0151 4344 srv (c4a027b8c0bd3fc0699f41fa5e9e0c87) C:\Windows\system32\DRIVERS\srv.sys
22:31:06.0163 4344 srv - ok
22:31:06.0175 4344 srv2 (414bb592cad8a79649d01f9d94318fb3) C:\Windows\system32\DRIVERS\srv2.sys
22:31:06.0187 4344 srv2 - ok
22:31:06.0193 4344 srvnet (ff207d67700aa18242aaf985d3e7d8f4) C:\Windows\system32\DRIVERS\srvnet.sys
22:31:06.0202 4344 srvnet - ok
22:31:06.0208 4344 ssadbus (64e44acd8c238fcbbb78f0ba4bdc4b05) C:\Windows\system32\DRIVERS\ssadbus.sys
22:31:06.0220 4344 ssadbus - ok
22:31:06.0222 4344 ssadmdfl (bb2c84a15c765da89fd832b0e73f26ce) C:\Windows\system32\DRIVERS\ssadmdfl.sys
22:31:06.0231 4344 ssadmdfl - ok
22:31:06.0237 4344 ssadmdm (6d0d132ddc6f43eda00dced6d8b1ca31) C:\Windows\system32\DRIVERS\ssadmdm.sys
22:31:06.0248 4344 ssadmdm - ok
22:31:06.0256 4344 SSDPSRV (d887c9fd02ac9fa880f6e5027a43e118) C:\Windows\System32\ssdpsrv.dll
22:31:06.0277 4344 SSDPSRV - ok
22:31:06.0280 4344 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\Windows\system32\DRIVERS\ssmdrv.sys
22:31:06.0286 4344 ssmdrv - ok
22:31:06.0291 4344 SstpSvc (d318f23be45d5e3a107469eb64815b50) C:\Windows\system32\sstpsvc.dll
22:31:06.0310 4344 SstpSvc - ok
22:31:06.0312 4344 Steam Client Service - ok
22:31:06.0328 4344 Stereo Service (fc0a58529a02b1eed55ddc58696b7908) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
22:31:06.0341 4344 Stereo Service - ok
22:31:06.0344 4344 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
22:31:06.0351 4344 stexstor - ok
22:31:06.0368 4344 StiSvc (a22825e7bb7018e8af3e229a5af17221) C:\Windows\System32\wiaservc.dll
22:31:06.0384 4344 StiSvc - ok
22:31:06.0387 4344 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\DRIVERS\swenum.sys
22:31:06.0395 4344 swenum - ok
22:31:06.0408 4344 swprv (a28bd92df340e57b024ba433165d34d7) C:\Windows\System32\swprv.dll
22:31:06.0430 4344 swprv - ok
22:31:06.0475 4344 SysMain (04105c8da62353589c29bdaeb8d88bd8) C:\Windows\system32\sysmain.dll
22:31:06.0501 4344 SysMain - ok
22:31:06.0506 4344 TabletInputService (fcfb6c552fbc0da299799cbd50ad9fd4) C:\Windows\System32\TabSvc.dll
22:31:06.0517 4344 TabletInputService - ok
22:31:06.0528 4344 TapiSrv (2f46b0c70a4adc8c90cf825da3b4feaf) C:\Windows\System32\tapisrv.dll
22:31:06.0551 4344 TapiSrv - ok
22:31:06.0555 4344 TBS (b799d9fdb26111737f58288d8dc172d9) C:\Windows\System32\tbssvc.dll
22:31:06.0573 4344 TBS - ok
22:31:06.0619 4344 Tcpip (55e9965552741f3850cb22cbba9671ed) C:\Windows\system32\drivers\tcpip.sys
22:31:06.0645 4344 Tcpip - ok
22:31:06.0653 4344 TCPIP6 (55e9965552741f3850cb22cbba9671ed) C:\Windows\system32\DRIVERS\tcpip.sys
22:31:06.0673 4344 TCPIP6 - ok
22:31:06.0678 4344 tcpipreg (e64444523add154f86567c469bc0b17f) C:\Windows\system32\drivers\tcpipreg.sys
22:31:06.0696 4344 tcpipreg - ok
22:31:06.0700 4344 TDPIPE (1875c1490d99e70e449e3afae9fcbadf) C:\Windows\system32\drivers\tdpipe.sys
22:31:06.0707 4344 TDPIPE - ok
22:31:06.0710 4344 TDTCP (7156308896d34ea75a582f9a09e50c17) C:\Windows\system32\drivers\tdtcp.sys
22:31:06.0718 4344 TDTCP - ok
22:31:06.0722 4344 tdx (cb39e896a2a83702d1737bfd402b3542) C:\Windows\system32\DRIVERS\tdx.sys
22:31:06.0740 4344 tdx - ok
22:31:06.0744 4344 TermDD (c36f41ee20e6999dbf4b0425963268a5) C:\Windows\system32\DRIVERS\termdd.sys
22:31:06.0752 4344 TermDD - ok
22:31:06.0772 4344 TermService (a01e50a04d7b1960b33e92b9080e6a94) C:\Windows\System32\termsrv.dll
22:31:06.0797 4344 TermService - ok
22:31:06.0801 4344 Themes (42fb6afd6b79d9fe07381609172e7ca4) C:\Windows\system32\themeservice.dll
22:31:06.0811 4344 Themes - ok
22:31:06.0815 4344 THREADORDER (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
22:31:06.0833 4344 THREADORDER - ok
22:31:06.0838 4344 TrkWks (4792c0378db99a9bc2ae2de6cfff0c3a) C:\Windows\System32\trkwks.dll
22:31:06.0857 4344 TrkWks - ok
22:31:06.0866 4344 TrustedInstaller (41a4c781d2286208d397d72099304133) C:\Windows\servicing\TrustedInstaller.exe
22:31:06.0876 4344 TrustedInstaller - ok
22:31:06.0881 4344 tssecsrv (98ae6fa07d12cb4ec5cf4a9bfa5f4242) C:\Windows\system32\DRIVERS\tssecsrv.sys
22:31:06.0898 4344 tssecsrv - ok
22:31:06.0904 4344 tunnel (3e461d890a97f9d4c168f5fda36e1d00) C:\Windows\system32\DRIVERS\tunnel.sys
22:31:06.0923 4344 tunnel - ok
22:31:06.0927 4344 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
22:31:06.0935 4344 uagp35 - ok
22:31:06.0946 4344 udfs (09cc3e16f8e5ee7168e01cf8fcbe061a) C:\Windows\system32\DRIVERS\udfs.sys
22:31:06.0966 4344 udfs - ok
22:31:06.0973 4344 UI0Detect (8344fd4fce927880aa1aa7681d4927e5) C:\Windows\system32\UI0Detect.exe
22:31:06.0983 4344 UI0Detect - ok
22:31:06.0987 4344 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\DRIVERS\uliagpkx.sys
22:31:06.0995 4344 uliagpkx - ok
22:31:06.0999 4344 umbus (049b3a50b3d646baeeee9eec9b0668dc) C:\Windows\system32\DRIVERS\umbus.sys
22:31:07.0006 4344 umbus - ok
22:31:07.0009 4344 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
22:31:07.0017 4344 UmPass - ok
22:31:07.0027 4344 upnphost (833fbb672460efce8011d262175fad33) C:\Windows\System32\upnphost.dll
22:31:07.0049 4344 upnphost - ok
22:31:07.0053 4344 USBAAPL (83cafcb53201bbac04d822f32438e244) C:\Windows\system32\Drivers\usbaapl.sys
22:31:07.0060 4344 USBAAPL - ok
22:31:07.0065 4344 usbccgp (c31ae588e403042632dc796cf09e30b0) C:\Windows\system32\DRIVERS\usbccgp.sys
22:31:07.0074 4344 usbccgp - ok
22:31:07.0079 4344 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\DRIVERS\usbcir.sys
22:31:07.0089 4344 usbcir - ok
22:31:07.0092 4344 usbehci (e4c436d914768ce965d5e659ba7eebd8) C:\Windows\system32\DRIVERS\usbehci.sys
22:31:07.0100 4344 usbehci - ok
22:31:07.0111 4344 usbhub (bdcd7156ec37448f08633fd899823620) C:\Windows\system32\DRIVERS\usbhub.sys
22:31:07.0122 4344 usbhub - ok
22:31:07.0125 4344 usbohci (eb2d819a639015253c871cda09d91d58) C:\Windows\system32\DRIVERS\usbohci.sys
22:31:07.0133 4344 usbohci - ok
22:31:07.0135 4344 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
22:31:07.0144 4344 usbprint - ok
22:31:07.0149 4344 USBSTOR (1c4287739a93594e57e2a9e6a3ed7353) C:\Windows\system32\DRIVERS\USBSTOR.SYS
22:31:07.0158 4344 USBSTOR - ok
22:31:07.0161 4344 usbuhci (22480bf4e5a09192e5e30ba4dde79fa4) C:\Windows\system32\drivers\usbuhci.sys
22:31:07.0169 4344 usbuhci - ok
22:31:07.0176 4344 usbvideo (b5f6a992d996282b7fae7048e50af83a) C:\Windows\system32\Drivers\usbvideo.sys
22:31:07.0185 4344 usbvideo - ok
22:31:07.0188 4344 UxSms (081e6e1c91aec36758902a9f727cd23c) C:\Windows\System32\uxsms.dll
22:31:07.0206 4344 UxSms - ok
22:31:07.0209 4344 VaultSvc (c2243ff9e9aad0c30e8b1a0914da15b6) C:\Windows\system32\lsass.exe
22:31:07.0216 4344 VaultSvc - ok
22:31:07.0220 4344 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\DRIVERS\vdrvroot.sys
22:31:07.0228 4344 vdrvroot - ok
22:31:07.0244 4344 vds (8c4e7c49d3641bc9e299e466a7f8867d) C:\Windows\System32\vds.exe
22:31:07.0258 4344 vds - ok
22:31:07.0262 4344 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
22:31:07.0271 4344 vga - ok
22:31:07.0274 4344 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
22:31:07.0292 4344 VgaSave - ok
22:31:07.0299 4344 vhdmp (3be6e1f3a4f1afec8cee0d7883f93583) C:\Windows\system32\DRIVERS\vhdmp.sys
22:31:07.0309 4344 vhdmp - ok
22:31:07.0313 4344 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\DRIVERS\viaagp.sys
22:31:07.0321 4344 viaagp - ok
22:31:07.0325 4344 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
22:31:07.0333 4344 ViaC7 - ok
22:31:07.0336 4344 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\DRIVERS\viaide.sys
22:31:07.0344 4344 viaide - ok
22:31:07.0348 4344 volmgr (384e5a2aa49934295171e499f86ba6f3) C:\Windows\system32\DRIVERS\volmgr.sys
22:31:07.0356 4344 volmgr - ok
22:31:07.0369 4344 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
22:31:07.0381 4344 volmgrx - ok
22:31:07.0391 4344 volsnap (58df9d2481a56edde167e51b334d44fd) C:\Windows\system32\DRIVERS\volsnap.sys
22:31:07.0402 4344 volsnap - ok
22:31:07.0409 4344 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
22:31:07.0419 4344 vsmraid - ok
22:31:07.0455 4344 VSS (7ea2bcd94d9cfaf4c556f5cc94532a6c) C:\Windows\system32\vssvc.exe
22:31:07.0477 4344 VSS - ok
22:31:07.0480 4344 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\System32\drivers\vwifibus.sys
22:31:07.0489 4344 vwifibus - ok
22:31:07.0501 4344 W32Time (55187fd710e27d5095d10a472c8baf1c) C:\Windows\system32\w32time.dll
22:31:07.0523 4344 W32Time - ok
22:31:07.0528 4344 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
22:31:07.0536 4344 WacomPen - ok
22:31:07.0540 4344 WANARP (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys
22:31:07.0558 4344 WANARP - ok
22:31:07.0560 4344 Wanarpv6 (692a712062146e96d28ba0b7d75de31b) C:\Windows\system32\DRIVERS\wanarp.sys
22:31:07.0577 4344 Wanarpv6 - ok
22:31:07.0617 4344 wbengine (7790b77fe1e5ee47dcc66247095bb4c9) C:\Windows\system32\wbengine.exe
22:31:07.0640 4344 wbengine - ok
22:31:07.0648 4344 WbioSrvc (9614b5d29dc76ac3c29f6d2d3aa70e67) C:\Windows\System32\wbiosrvc.dll
22:31:07.0661 4344 WbioSrvc - ok
22:31:07.0672 4344 wcncsvc (6d9b75275c3e3a5f51aef81affadb2b6) C:\Windows\System32\wcncsvc.dll
22:31:07.0683 4344 wcncsvc - ok
22:31:07.0687 4344 WcsPlugInService (5d930b6357a6d2af4d7653bdabbf352f) C:\Windows\System32\WcsPlugInService.dll
22:31:07.0696 4344 WcsPlugInService - ok
22:31:07.0702 4344 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
22:31:07.0709 4344 Wd - ok
22:31:07.0727 4344 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
22:31:07.0741 4344 Wdf01000 - ok
22:31:07.0746 4344 WdiServiceHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
22:31:07.0757 4344 WdiServiceHost - ok
22:31:07.0760 4344 WdiSystemHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
22:31:07.0770 4344 WdiSystemHost - ok
22:31:07.0778 4344 WebClient (bb5ec38f8d4600119b4720bc5d4211f1) C:\Windows\System32\webclnt.dll
22:31:07.0791 4344 WebClient - ok
22:31:07.0798 4344 Wecsvc (760f0afe937a77cff27153206534f275) C:\Windows\system32\wecsvc.dll
22:31:07.0818 4344 Wecsvc - ok
22:31:07.0822 4344 wercplsupport (ac804569bb2364fb6017370258a4091b) C:\Windows\System32\wercplsupport.dll
22:31:07.0840 4344 wercplsupport - ok
22:31:07.0845 4344 WerSvc (08e420d873e4fd85241ee2421b02c4a4) C:\Windows\System32\WerSvc.dll
22:31:07.0864 4344 WerSvc - ok
22:31:07.0867 4344 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
22:31:07.0884 4344 WfpLwf - ok
22:31:07.0887 4344 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
22:31:07.0894 4344 WIMMount - ok
22:31:07.0920 4344 WinDefend (3fae8f94296001c32eab62cd7d82e0fd) C:\Program Files\Windows Defender\mpsvc.dll
22:31:07.0937 4344 WinDefend - ok
22:31:07.0941 4344 WinHttpAutoProxySvc - ok
22:31:07.0952 4344 Winmgmt (f62e510b6ad4c21eb9fe8668ed251826) C:\Windows\system32\wbem\WMIsvc.dll
22:31:07.0970 4344 Winmgmt - ok
22:31:08.0009 4344 WinRM (c4f5d3901d1b41d602ddc196e0b95b51) C:\Windows\system32\WsmSvc.dll
22:31:08.0040 4344 WinRM - ok
22:31:08.0049 4344 WinUsb (30fc6e5448d0cbaaa95280eeef7fedae) C:\Windows\system32\DRIVERS\WinUsb.sys
22:31:08.0058 4344 WinUsb - ok
22:31:08.0090 4344 Wlansvc (16935c98ff639d185086a3529b1f2067) C:\Windows\System32\wlansvc.dll
22:31:08.0112 4344 Wlansvc - ok
22:31:08.0171 4344 wlidsvc (fb01d4ae207b9efdbabfc55dc95c7e31) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
22:31:08.0202 4344 wlidsvc - ok
22:31:08.0230 4344 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\DRIVERS\wmiacpi.sys
22:31:08.0237 4344 WmiAcpi - ok
22:31:08.0247 4344 wmiApSrv (6eb6b66517b048d87dc1856ddf1f4c3f) C:\Windows\system32\wbem\WmiApSrv.exe
22:31:08.0257 4344 wmiApSrv - ok
22:31:08.0298 4344 WMPNetworkSvc (77fbd400984cf72ba0fc4b3489d65f74) C:\Program Files\Windows Media Player\wmpnetwk.exe
22:31:08.0319 4344 WMPNetworkSvc - ok
22:31:08.0322 4344 WPCSvc (a2f0ec770a92f2b3f9de6d518e11409c) C:\Windows\System32\wpcsvc.dll
22:31:08.0332 4344 WPCSvc - ok
22:31:08.0336 4344 WPDBusEnum (b7f658a2ebc07129538ad9ab35212637) C:\Windows\system32\wpdbusenum.dll
22:31:08.0347 4344 WPDBusEnum - ok
22:31:08.0352 4344 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
22:31:08.0370 4344 ws2ifsl - ok
22:31:08.0374 4344 wscsvc (a661a76333057b383a06e65f0073222f) C:\Windows\system32\wscsvc.dll
22:31:08.0384 4344 wscsvc - ok
22:31:08.0386 4344 WSearch - ok
22:31:08.0458 4344 wuauserv (a33408cc036f9c08142b11be5e93f0a1) C:\Windows\system32\wuaueng.dll
22:31:08.0502 4344 wuauserv - ok
22:31:08.0532 4344 WudfPf (6f9b6c0c93232cff47d0f72d6db1d21e) C:\Windows\system32\drivers\WudfPf.sys
22:31:08.0550 4344 WudfPf - ok
22:31:08.0557 4344 WUDFRd (f91ff1e51fca30b3c3981db7d5924252) C:\Windows\system32\DRIVERS\WUDFRd.sys
22:31:08.0576 4344 WUDFRd - ok
22:31:08.0581 4344 wudfsvc (ddee3682fe97037c45f4d7ab467cb8b6) C:\Windows\System32\WUDFSvc.dll
22:31:08.0600 4344 wudfsvc - ok
22:31:08.0608 4344 WwanSvc (ff2d745b560f7c71b31f30f4d49f73d2) C:\Windows\System32\wwansvc.dll
22:31:08.0622 4344 WwanSvc - ok
22:31:08.0630 4344 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk1\DR1
22:31:08.0743 4344 \Device\Harddisk1\DR1 - ok
22:31:08.0746 4344 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
22:31:08.0799 4344 \Device\Harddisk0\DR0 - ok
22:31:08.0801 4344 Boot (0x1200) (8698bc9a1b34f7f65974a7506d4ebd8c) \Device\Harddisk1\DR1\Partition0
22:31:08.0802 4344 \Device\Harddisk1\DR1\Partition0 - ok
22:31:08.0804 4344 Boot (0x1200) (35bda4d114194a425e44f21be1d829ca) \Device\Harddisk1\DR1\Partition1
22:31:08.0805 4344 \Device\Harddisk1\DR1\Partition1 - ok
22:31:08.0807 4344 Boot (0x1200) (4878fe019139c45b27ad0064544880d3) \Device\Harddisk0\DR0\Partition0
22:31:08.0808 4344 \Device\Harddisk0\DR0\Partition0 - ok
22:31:08.0808 4344 ============================================================
22:31:08.0808 4344 Scan finished
22:31:08.0808 4344 ============================================================
22:31:08.0816 4828 Detected object count: 0
22:31:08.0816 4828 Actual detected object count: 0
__________________


Alt 23.05.2012, 21:36   #18
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
#Nach Virus keine Icons auf dem Desktop mehr! - Standard

#Nach Virus keine Icons auf dem Desktop mehr!



Dann bitte jetzt CF ausführen:

ComboFix

Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Schliesse alle Programme, vor allem dein Antivirenprogramm und andere Hintergrundwächter sowie deinen Internetbrowser.
  • Starte combofix.exe von deinem Desktop aus, bestätige die Warnmeldungen, führe die Updates durch (falls vorgeschlagen), installiere die Wiederherstellungskonsole (falls vorgeschlagen) und lass dein System durchsuchen.
    Vermeide es auch während Combofix läuft die Maus und Tastatur zu benutzen.
  • Im Anschluss öffnet sich automatisch eine combofix.txt, diesen Inhalt bitte kopieren ([Strg]a, [Strg]c) und in deinen Beitrag einfügen ([Strg]v). Die Datei findest du außerdem unter: C:\ComboFix.txt.
Wichtiger Hinweis:
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!

Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich ziehen und eine Bereinigung der Infektion noch erschweren.

Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie

Zitat:
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
startest du Windows dann manuell neu und die Fehlermeldungen sollten nicht mehr auftauchen.
__________________
__________________

Alt 26.05.2012, 14:49   #19
Levi1
 
#Nach Virus keine Icons auf dem Desktop mehr! - Standard

#Nach Virus keine Icons auf dem Desktop mehr!



Huhu,

hier das Log


Combofix Logfile:
Code:
ATTFilter
ComboFix 12-05-26.02 - Zooey Deschanel 26.05.2012  15:41:57.2.6 - x86
Microsoft Windows 7 Home Premium   6.1.7600.0.1252.49.1031.18.3327.2150 [GMT 2:00]
ausgeführt von:: f:\spiele\Downloads\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((   Weitere Löschungen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\gema
.
.
(((((((((((((((((((((((   Dateien erstellt von 2012-04-26 bis 2012-05-26  ))))))))))))))))))))))))))))))
.
.
2012-05-26 13:45 . 2012-05-26 13:45	--------	d-----w-	c:\users\Public\AppData\Local\temp
2012-05-26 13:45 . 2012-05-26 13:45	--------	d-----w-	c:\users\Default\AppData\Local\temp
2012-05-25 10:31 . 2012-05-08 16:40	6737808	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{D0A22EEB-256C-4DEB-A089-E1177371071A}\mpengine.dll
2012-05-24 20:12 . 2012-05-24 20:12	--------	d-----w-	c:\program files\iPod
2012-05-24 08:17 . 2012-05-24 08:17	--------	d-----w-	c:\users\Zooey Deschanel\AppData\Roaming\LolClient2
2012-05-22 09:36 . 2012-05-22 09:36	--------	d-----w-	c:\program files\ESET
2012-05-19 22:35 . 2012-05-19 22:35	--------	d-----w-	c:\users\Zooey Deschanel\Neuer Ordner
2012-05-18 23:27 . 2012-05-26 12:13	--------	d-----w-	c:\users\Zooey Deschanel\AppData\Local\Spotify
2012-05-18 23:27 . 2012-05-26 12:13	--------	d-----w-	c:\users\Zooey Deschanel\AppData\Roaming\Spotify
2012-05-03 07:39 . 2012-05-03 07:39	--------	d-----w-	c:\program files\Mozilla Maintenance Service
2012-05-03 07:39 . 2012-05-03 07:39	157352	----a-w-	c:\program files\Mozilla Firefox\maintenanceservice_installer.exe
2012-05-03 07:39 . 2012-05-03 07:39	129976	----a-w-	c:\program files\Mozilla Firefox\maintenanceservice.exe
2012-04-29 15:17 . 2012-04-29 15:17	--------	d-----w-	c:\users\UpdatusUser
2012-04-28 13:14 . 2012-04-28 13:14	--------	d-----w-	c:\users\Zooey Deschanel\AppData\Roaming\Ubisoft
2012-04-28 13:14 . 2012-04-28 13:14	--------	d-----w-	c:\programdata\Ubisoft
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-05-08 16:44 . 2011-11-03 16:22	83392	----a-w-	c:\windows\system32\drivers\avgntflt.sys
2012-05-08 16:44 . 2011-11-03 16:22	137928	----a-w-	c:\windows\system32\drivers\avipbb.sys
2012-04-04 13:56 . 2012-01-06 15:06	22344	----a-w-	c:\windows\system32\drivers\mbam.sys
2012-03-01 05:53 . 2012-04-12 01:00	19312	----a-w-	c:\windows\system32\drivers\fs_rec.sys
2012-03-01 05:49 . 2012-04-12 01:00	172544	----a-w-	c:\windows\system32\wintrust.dll
2012-03-01 05:45 . 2012-04-12 01:00	158720	----a-w-	c:\windows\system32\imagehlp.dll
2012-03-01 05:40 . 2012-04-12 01:00	5120	----a-w-	c:\windows\system32\wmi.dll
2012-02-29 23:59 . 2011-11-09 17:08	881984	----a-w-	c:\windows\system32\nvgenco32.dll
2012-02-29 23:59 . 2011-11-09 17:08	1000256	----a-w-	c:\windows\system32\nvdispco32.dll
2012-02-29 23:59 . 2011-11-03 16:06	7713088	----a-w-	c:\windows\system32\nvwgf2um.dll
2012-02-29 23:59 . 2011-11-03 16:06	2301248	----a-w-	c:\windows\system32\nvapi.dll
2012-02-29 23:59 . 2011-11-03 16:06	15009600	----a-w-	c:\windows\system32\nvd3dum.dll
2012-02-29 20:56 . 2011-11-03 16:07	3881792	----a-w-	c:\windows\system32\nvcpl.dll
2012-02-29 20:55 . 2011-11-03 16:07	2719040	----a-w-	c:\windows\system32\nvsvc.dll
2012-02-29 20:53 . 2011-11-03 16:07	108352	----a-w-	c:\windows\system32\nvmctray.dll
2012-02-29 20:53 . 2011-11-03 16:07	645440	----a-w-	c:\windows\system32\nvvsvc.exe
2012-02-29 20:53 . 2011-11-03 16:07	62272	----a-w-	c:\windows\system32\nvshext.dll
2012-02-29 20:53 . 2011-11-03 16:07	2561344	----a-w-	c:\windows\system32\nvsvcr.dll
2012-02-29 11:26 . 2012-02-29 11:26	416064	----a-w-	c:\windows\system32\nvStreaming.exe
2012-02-28 05:40 . 2012-04-11 10:48	981504	----a-w-	c:\windows\system32\wininet.dll
2012-02-28 05:38 . 2012-04-11 10:48	44544	----a-w-	c:\windows\system32\licmgr10.dll
2012-02-28 04:31 . 2012-04-11 10:48	386048	----a-w-	c:\windows\system32\html.iec
2012-02-28 03:57 . 2012-04-11 10:48	1638912	----a-w-	c:\windows\system32\mshtml.tlb
2012-05-03 07:39 . 2011-11-03 16:18	97208	----a-w-	c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{c840e246-6b95-475e-9bd7-caa1c7eca9f2}"= "c:\program files\uTorrentBar_DE\prxtbuTor.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{c840e246-6b95-475e-9bd7-caa1c7eca9f2}]
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{c840e246-6b95-475e-9bd7-caa1c7eca9f2}]
2011-05-09 08:49	176936	----a-w-	c:\program files\uTorrentBar_DE\prxtbuTor.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{c840e246-6b95-475e-9bd7-caa1c7eca9f2}"= "c:\program files\uTorrentBar_DE\prxtbuTor.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{c840e246-6b95-475e-9bd7-caa1c7eca9f2}]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{C840E246-6B95-475E-9BD7-CAA1C7ECA9F2}"= "c:\program files\uTorrentBar_DE\prxtbuTor.dll" [2011-05-09 176936]
.
[HKEY_CLASSES_ROOT\clsid\{c840e246-6b95-475e-9bd7-caa1c7eca9f2}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Pando Media Booster"="c:\program files\Pando Networks\Media Booster\PMB.exe" [2011-11-03 3077528]
"Steam"="f:\spiele\steam\steam.exe" [2012-04-19 1242448]
"Spotify"="c:\users\Zooey Deschanel\AppData\Roaming\Spotify\Spotify.exe" [2012-05-18 9478320]
"Spotify Web Helper"="c:\users\Zooey Deschanel\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [2012-05-18 932528]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2011-06-28 10127976]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2012-05-08 348624]
"Launch LgDeviceAgent"="c:\program files\Logitech\GamePanel Software\LgDevAgt.exe" [2010-08-03 358472]
"Launch LCDMon"="c:\program files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe" [2010-08-03 1809992]
"Launch LGDCore"="c:\program files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" [2010-08-03 3649096]
"KiesHelper"="f:\programme\Kies\KiesHelper.exe" [2011-09-29 929680]
"KiesTrayAgent"="f:\programme\Kies\KiesTrayAgent.exe" [2011-09-29 3508112]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 248552]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-20 59240]
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-04-04 462408]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2011-07-28 1259376]
"LogMeIn Hamachi Ui"="f:\programme\hamachi\hamachi-2-ui.exe" [2012-02-28 1987976]
"iTunesHelper"="f:\programme\iTunes\iTunesHelper.exe" [2012-03-27 421736]
.
c:\users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OpenOffice.org 3.3.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2010-12-13 1198592]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
NETGEAR WG111v3 Smart Wizard.lnk - c:\program files\NETGEAR\WG111v3\WG111v3.exe [2006-5-29 1708032]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages	REG_MULTI_SZ   	kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2012-01-31 158856]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [2012-05-03 129976]
R3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\DRIVERS\ssadbus.sys [2011-06-02 121064]
R3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\DRIVERS\ssadmdfl.sys [2011-06-02 12776]
R3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\DRIVERS\ssadmdm.sys [2011-06-02 136808]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [2011-10-19 36000]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
S2 AntiVirSchedulerService;Avira Planer;c:\program files\Avira\AntiVir Desktop\sched.exe [2012-05-08 86224]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;f:\programme\hamachi\hamachi-2.exe [2012-02-28 1373576]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [2012-04-04 654408]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-02-29 2348352]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-02-29 382272]
S3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver;c:\windows\system32\drivers\LGBusEnum.sys [2009-11-23 19720]
S3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver;c:\windows\system32\drivers\LGVirHid.sys [2009-11-23 14856]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-04-04 22344]
S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32v.sys [2012-01-17 148800]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
S3 RTL8187B;NETGEAR WG111v3 54Mbps Wireless USB 2.0 Adapter Vista Driver;c:\windows\system32\DRIVERS\wg111v3.sys [2007-04-23 227328]
.
.
.
------- Zusätzlicher Suchlauf -------
.
uInternet Settings,ProxyOverride = *.local
FF - ProfilePath - c:\users\Zooey Deschanel\AppData\Roaming\Mozilla\Firefox\Profiles\cc9ya6lp.default\
FF - user.js: extentions.y2layers.installId - 1ca918de-0823-46e7-84e2-290e58e556ab
FF - user.js: extentions.y2layers.defaultEnableAppsList - Buzzdock,BuzzdockTease,DropDownDeals,BestVideoDownloader,TopRelatedTopics,BestVideoDownloader,
FF - user.js: extensions.autoDisableScopes - 14
FF - user.js: security.csp.enable - false
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2012-05-26  15:47:41
ComboFix-quarantined-files.txt  2012-05-26 13:47
.
Vor Suchlauf: 10 Verzeichnis(se), 17.529.536.512 Bytes frei
Nach Suchlauf: 12 Verzeichnis(se), 18.696.073.216 Bytes frei
.
- - End Of File - - EA5683C4B1C2E9050142681EAB190D37
         
--- --- ---


MfG,

Lev

Alt 26.05.2012, 15:33   #20
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
#Nach Virus keine Icons auf dem Desktop mehr! - Standard

#Nach Virus keine Icons auf dem Desktop mehr!



Bitte nun Logs mit GMER und OSAM erstellen und posten.
GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen.
Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst.

Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM!

Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe - (aswMBR.exe Anleitung)
    Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten".
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen )
    Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS-Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort.

Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung

Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none).



Noch ein Hinweis: Sollte aswMBR abstürzen und es kommt eine Meldung wie "aswMBR.exe funktioniert nicht mehr, dann mach Folgendes:
Starte aswMBR neu, wähle unten links im Drop-Down-Menü (unten links im Fenster von aswMBR) bei "AV scan" (none) aus und klick nochmal auf den Scan-Button.

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 28.05.2012, 12:47   #21
Levi1
 
#Nach Virus keine Icons auf dem Desktop mehr! - Standard

#Nach Virus keine Icons auf dem Desktop mehr!



Hiho,

hier einmal OSAM

OSAM Logfile:
Code:
ATTFilter
Report of OSAM: Autorun Manager v5.0.11926.0
Online Solutions. Complex Protection for Information Systems
Saved at 13:22:26 on 28.05.2012

OS: Windows 7 Home Premium Edition (Build 7600), 32-bit
Default Browser: Mozilla Corporation Firefox 12.0

Scanner Settings
[x] Rootkits detection (hidden registry)
[x] Rootkits detection (hidden files)
[x] Retrieve files information
[x] Check Microsoft signatures

Filters
[ ] Trusted entries
[ ] Empty entries
[x] Hidden registry entries (rootkit activity)
[x] Exclusively opened files
[x] Not found files
[x] Files without detailed information
[x] Existing files
[ ] Non-startable services
[ ] Non-startable drivers
[x] Active entries
[x] Disabled entries


[Control Panel Objects]
-----( %SystemRoot%\system32 )-----
"DivXControlPanelApplet.cpl" - "DivX, Inc." - C:\Windows\system32\DivXControlPanelApplet.cpl
"FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\Windows\system32\FlashPlayerCPLApp.cpl
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )-----
"lgLcdCpl" - "Logitech Inc." - C:\Program Files\Logitech\GamePanel Software\LCD Manager\LgLcdCpl.cpl
"Pando" - "Pando Networks" - C:\Program Files\Pando Networks\Media Booster\PMB.cpl

[Drivers]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"avgntflt" (avgntflt) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avgntflt.sys
"avipbb" (avipbb) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avipbb.sys
"avkmgr" (avkmgr) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avkmgr.sys
"catchme" (catchme) - ? - C:\Users\ZOOEYD~1\AppData\Local\Temp\catchme.sys  (File not found)
"fxldapog" (fxldapog) - ? - C:\Users\ZOOEYD~1\AppData\Local\Temp\fxldapog.sys  (Hidden registry entry, rootkit activity | File not found)
"Hamachi Network Interface" (hamachi) - "LogMeIn, Inc." - C:\Windows\System32\DRIVERS\hamachi.sys
"MBAMProtector" (MBAMProtector) - "Malwarebytes Corporation" - C:\Windows\system32\drivers\mbam.sys
"ssmdrv" (ssmdrv) - "Avira GmbH" - C:\Windows\System32\DRIVERS\ssmdrv.sys

[Explorer]
-----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )-----
{F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll
{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} "{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
-----( HKLM\Software\Classes\Protocols\Handler )-----
{E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} "Album Download IE Asynchronous Pluggable Protocol Interface" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} "IEProtocolHandler Class" - "Skype Technologies" - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
{828030A1-22C1-4009-854F-8E305202313F} "livecall" - "Microsoft Corporation" - C:\Program Files\Windows Live\Messenger\msgrapp.dll
{828030A1-22C1-4009-854F-8E305202313F} "msnim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Messenger\msgrapp.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{A70C977A-BF00-412C-90B7-034C51DA2439} "DesktopContext Class" - "NVIDIA Corporation" - C:\Program Files\NVIDIA Corporation\Display\nvui.dll
{D8D1CE8C-B1EB-4E95-B63B-1531BA60E992} "DivX Property Handler" - "DivX, Inc." - C:\Program Files\DivX\DivX Plus Media Foundation Components\DivXPropertyHandler.dll
{83238FAE-D346-4E12-8734-D42F7554B3E6} "DivX Thumbnail Provider" - "DivX, Inc." - C:\Program Files\DivX\DivX Plus Media Foundation Components\DivXThumbnailProvider.dll
{B9E1D2CB-CCFF-4AA6-9579-D7A4754030EF} "iTunes" - "Apple Inc." - F:\Programme\iTunes\iTunesMiniPlayer.dll
{3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} "NVIDIA CPL Context Menu Extension" - "NVIDIA Corporation" - C:\Windows\system32\nvshext.dll
{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} "OpenOffice.org Column Handler" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{087B3AE3-E237-4467-B8DB-5A38AB959AC9} "OpenOffice.org Infotip Handler" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{AE424E85-F6DF-4910-A6A9-438797986431} "OpenOffice.org Property Handler" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\propertyhdl.dll
{63542C48-9552-494A-84F7-73AA6A7C99C1} "OpenOffice.org Property Sheet Handler" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{3B092F0C-7696-40E3-A80F-68D74DA84210} "OpenOffice.org Thumbnail Viewer" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\shlext.dll
{2BE99FD4-A181-4996-BFA9-58C5FFD11F6C} "Windows Live Photo Gallery Autoplay Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F30F64-AC33-42F5-8FD1-5DC2D3FDE06C} "Windows Live Photo Gallery Editor Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F3712A-CA79-45B4-9E4D-D7891E7F8B9D} "Windows Live Photo Gallery Editor Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F30F90-3E96-453B-AFCD-D71989ECC2C7} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F33137-EE26-412F-8D71-F84E4C2C6625} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F374B7-B390-4884-B372-2FC349F2172B} "Windows Live Photo Gallery Viewer Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F346CB-35A4-465B-8B8F-65A29DBAB1F6} "Windows Live Photo Gallery Viewer Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" - "Alexander Roshal" - C:\Program Files\WinRAR\rarext.dll
{06A2568A-CED6-4187-BB20-400B8C02BE5A} "{06A2568A-CED6-4187-BB20-400B8C02BE5A}" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe

[Internet Explorer]
-----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )-----
ITBar7Height "ITBar7Height" - ? -   (File not found | COM-object registry key not found)
<binary data> "ITBar7Layout" - ? -   (File not found | COM-object registry key not found)
<binary data> "uTorrentBar_DE Toolbar" - "Conduit Ltd." - C:\Program Files\uTorrentBar_DE\prxtbuTor.dll
-----( HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks )-----
{c840e246-6b95-475e-9bd7-caa1c7eca9f2} "uTorrentBar_DE Toolbar" - "Conduit Ltd." - C:\Program Files\uTorrentBar_DE\prxtbuTor.dll
-----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )-----
{8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_22" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} "Java Plug-in 1.6.0_22" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_22" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\npjpi160_22.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar )-----
{c840e246-6b95-475e-9bd7-caa1c7eca9f2} "uTorrentBar_DE Toolbar" - "Conduit Ltd." - C:\Program Files\uTorrentBar_DE\prxtbuTor.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )-----
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper" - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
{326E768D-4182-46FD-9C16-1449A49795F4} "DivX Plus Web Player HTML5 <video>" - "DivX, LLC" - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
{DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2ssv.dll
{c840e246-6b95-475e-9bd7-caa1c7eca9f2} "uTorrentBar_DE Toolbar" - "Conduit Ltd." - C:\Program Files\uTorrentBar_DE\prxtbuTor.dll
{9030D464-4C02-4ABF-8ECC-5164760863C6} "Windows Live ID Sign-in Helper" - "Microsoft Corp." - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

[LSA Providers]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Lsa )-----
"Security Packages" - "Microsoft Corp." - C:\Windows\system32\livessp.dll

[Logon]
-----( %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
"OpenOffice.org 3.3.lnk" - ? - C:\Program Files\OpenOffice.org 3\program\quickstart.exe  (Shortcut exists | File found, but it contains no detailed information | File exists)
-----( %AllUsersProfile%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
"NETGEAR WG111v3 Smart Wizard.lnk" - ? - C:\Program Files\NETGEAR\WG111v3\WG111v3.exe  (Shortcut exists | File exists)
-----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )-----
"msnmsgr" - "Microsoft Corporation" - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
"Pando Media Booster" - ? - C:\Program Files\Pando Networks\Media Booster\PMB.exe
"Spotify" - "Spotify Ltd" - "C:\Users\Zooey Deschanel\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
"Spotify Web Helper" - ? - "C:\Users\Zooey Deschanel\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"  (File found, but it contains no detailed information)
"Steam" - "Valve Corporation" - "F:\Spiele\steam\steam.exe" -silent
-----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )-----
"StartupPrograms" - ? - rdpclip  (File not found)
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )-----
"Adobe ARM" - "Adobe Systems Incorporated" - "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"APSDaemon" - "Apple Inc." - "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
"avgnt" - "Avira Operations GmbH & Co. KG" - "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
"DivXUpdate" - ? - "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
"iTunesHelper" - "Apple Inc." - "F:\Programme\iTunes\iTunesHelper.exe"
"KiesHelper" - "Samsung" - F:\Programme\Kies\KiesHelper.exe /s
"KiesTrayAgent" - "Samsung Electronics Co., Ltd." - F:\Programme\Kies\KiesTrayAgent.exe
"Launch LCDMon" - "Logitech Inc." - "C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe"
"Launch LGDCore" - "Logitech Inc." - "C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" /SHOWHIDE
"Launch LgDeviceAgent" - "Logitech Inc." - "C:\Program Files\Logitech\GamePanel Software\LgDevAgt.exe"
"LogMeIn Hamachi Ui" - "LogMeIn Inc." - "F:\Programme\hamachi\hamachi-2-ui.exe" --auto-start
"Malwarebytes' Anti-Malware" - "Malwarebytes Corporation" - "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"SunJavaUpdateSched" - "Sun Microsystems, Inc." - "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

[Services]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"Adobe Acrobat Update Service" (AdobeARMservice) - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
"Apple Mobile Device" (Apple Mobile Device) - "Apple Inc." - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
"Avira Echtzeit Scanner" (AntiVirService) - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
"Avira Planer" (AntiVirSchedulerService) - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\sched.exe
"Dienst "Bonjour"" (Bonjour Service) - "Apple Inc." - C:\Program Files\Bonjour\mDNSResponder.exe
"iPod-Dienst" (iPod Service) - "Apple Inc." - C:\Program Files\iPod\bin\iPodService.exe
"LogMeIn Hamachi Tunneling Engine" (Hamachi2Svc) - "LogMeIn Inc." - F:\Programme\hamachi\hamachi-2.exe
"MBAMService" (MBAMService) - "Malwarebytes Corporation" - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
"Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
"Mozilla Maintenance Service" (MozillaMaintenance) - "Mozilla Foundation" - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
"NVIDIA Display Driver Service" (nvsvc) - "NVIDIA Corporation" - C:\Windows\system32\nvvsvc.exe
"NVIDIA Stereoscopic 3D Driver Service" (Stereo Service) - "NVIDIA Corporation" - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
"NVIDIA Update Service Daemon" (nvUpdatusService) - "NVIDIA Corporation" - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
"Skype Updater" (SkypeUpdate) - "Skype Technologies" - C:\Program Files\Skype\Updater\Updater.exe
"Steam Client Service" (Steam Client Service) - "Valve Corporation" - C:\Program Files\Common Files\Steam\SteamService.exe
"Windows Live ID Sign-in Assistant" (wlidsvc) - "Microsoft Corp." - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

[Winsock Providers]
-----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries )-----
"mdnsNSP" - "Apple Inc." - C:\Program Files\Bonjour\mdnsNSP.dll
"WindowsLive Local NSP" - "Microsoft Corp." - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
"WindowsLive NSP" - "Microsoft Corp." - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL

===[ Logfile end ]=========================================[ Logfile end ]===
         
--- --- ---
If You have questions or want to get some help, You can visit Online Solutions :: Index[/QUOTE]

und hier aswMBR

OSAM Logfile:
Code:
ATTFilter
Report of OSAM: Autorun Manager v5.0.11926.0
Online Solutions. Complex Protection for Information Systems
Saved at 13:22:26 on 28.05.2012

OS: Windows 7 Home Premium Edition (Build 7600), 32-bit
Default Browser: Mozilla Corporation Firefox 12.0

Scanner Settings
[x] Rootkits detection (hidden registry)
[x] Rootkits detection (hidden files)
[x] Retrieve files information
[x] Check Microsoft signatures

Filters
[ ] Trusted entries
[ ] Empty entries
[x] Hidden registry entries (rootkit activity)
[x] Exclusively opened files
[x] Not found files
[x] Files without detailed information
[x] Existing files
[ ] Non-startable services
[ ] Non-startable drivers
[x] Active entries
[x] Disabled entries


[Control Panel Objects]
-----( %SystemRoot%\system32 )-----
"DivXControlPanelApplet.cpl" - "DivX, Inc." - C:\Windows\system32\DivXControlPanelApplet.cpl
"FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\Windows\system32\FlashPlayerCPLApp.cpl
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )-----
"lgLcdCpl" - "Logitech Inc." - C:\Program Files\Logitech\GamePanel Software\LCD Manager\LgLcdCpl.cpl
"Pando" - "Pando Networks" - C:\Program Files\Pando Networks\Media Booster\PMB.cpl

[Drivers]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"avgntflt" (avgntflt) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avgntflt.sys
"avipbb" (avipbb) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avipbb.sys
"avkmgr" (avkmgr) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avkmgr.sys
"catchme" (catchme) - ? - C:\Users\ZOOEYD~1\AppData\Local\Temp\catchme.sys  (File not found)
"fxldapog" (fxldapog) - ? - C:\Users\ZOOEYD~1\AppData\Local\Temp\fxldapog.sys  (Hidden registry entry, rootkit activity | File not found)
"Hamachi Network Interface" (hamachi) - "LogMeIn, Inc." - C:\Windows\System32\DRIVERS\hamachi.sys
"MBAMProtector" (MBAMProtector) - "Malwarebytes Corporation" - C:\Windows\system32\drivers\mbam.sys
"ssmdrv" (ssmdrv) - "Avira GmbH" - C:\Windows\System32\DRIVERS\ssmdrv.sys

[Explorer]
-----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )-----
{F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll
{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} "{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
-----( HKLM\Software\Classes\Protocols\Handler )-----
{E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} "Album Download IE Asynchronous Pluggable Protocol Interface" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} "IEProtocolHandler Class" - "Skype Technologies" - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
{828030A1-22C1-4009-854F-8E305202313F} "livecall" - "Microsoft Corporation" - C:\Program Files\Windows Live\Messenger\msgrapp.dll
{828030A1-22C1-4009-854F-8E305202313F} "msnim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Messenger\msgrapp.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{A70C977A-BF00-412C-90B7-034C51DA2439} "DesktopContext Class" - "NVIDIA Corporation" - C:\Program Files\NVIDIA Corporation\Display\nvui.dll
{D8D1CE8C-B1EB-4E95-B63B-1531BA60E992} "DivX Property Handler" - "DivX, Inc." - C:\Program Files\DivX\DivX Plus Media Foundation Components\DivXPropertyHandler.dll
{83238FAE-D346-4E12-8734-D42F7554B3E6} "DivX Thumbnail Provider" - "DivX, Inc." - C:\Program Files\DivX\DivX Plus Media Foundation Components\DivXThumbnailProvider.dll
{B9E1D2CB-CCFF-4AA6-9579-D7A4754030EF} "iTunes" - "Apple Inc." - F:\Programme\iTunes\iTunesMiniPlayer.dll
{3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} "NVIDIA CPL Context Menu Extension" - "NVIDIA Corporation" - C:\Windows\system32\nvshext.dll
{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} "OpenOffice.org Column Handler" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{087B3AE3-E237-4467-B8DB-5A38AB959AC9} "OpenOffice.org Infotip Handler" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{AE424E85-F6DF-4910-A6A9-438797986431} "OpenOffice.org Property Handler" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\propertyhdl.dll
{63542C48-9552-494A-84F7-73AA6A7C99C1} "OpenOffice.org Property Sheet Handler" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{3B092F0C-7696-40E3-A80F-68D74DA84210} "OpenOffice.org Thumbnail Viewer" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\shlext.dll
{2BE99FD4-A181-4996-BFA9-58C5FFD11F6C} "Windows Live Photo Gallery Autoplay Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F30F64-AC33-42F5-8FD1-5DC2D3FDE06C} "Windows Live Photo Gallery Editor Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F3712A-CA79-45B4-9E4D-D7891E7F8B9D} "Windows Live Photo Gallery Editor Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F30F90-3E96-453B-AFCD-D71989ECC2C7} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F33137-EE26-412F-8D71-F84E4C2C6625} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F374B7-B390-4884-B372-2FC349F2172B} "Windows Live Photo Gallery Viewer Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F346CB-35A4-465B-8B8F-65A29DBAB1F6} "Windows Live Photo Gallery Viewer Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" - "Alexander Roshal" - C:\Program Files\WinRAR\rarext.dll
{06A2568A-CED6-4187-BB20-400B8C02BE5A} "{06A2568A-CED6-4187-BB20-400B8C02BE5A}" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe

[Internet Explorer]
-----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )-----
ITBar7Height "ITBar7Height" - ? -   (File not found | COM-object registry key not found)
<binary data> "ITBar7Layout" - ? -   (File not found | COM-object registry key not found)
<binary data> "uTorrentBar_DE Toolbar" - "Conduit Ltd." - C:\Program Files\uTorrentBar_DE\prxtbuTor.dll
-----( HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks )-----
{c840e246-6b95-475e-9bd7-caa1c7eca9f2} "uTorrentBar_DE Toolbar" - "Conduit Ltd." - C:\Program Files\uTorrentBar_DE\prxtbuTor.dll
-----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )-----
{8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_22" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} "Java Plug-in 1.6.0_22" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_22" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\npjpi160_22.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar )-----
{c840e246-6b95-475e-9bd7-caa1c7eca9f2} "uTorrentBar_DE Toolbar" - "Conduit Ltd." - C:\Program Files\uTorrentBar_DE\prxtbuTor.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )-----
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper" - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
{326E768D-4182-46FD-9C16-1449A49795F4} "DivX Plus Web Player HTML5 <video>" - "DivX, LLC" - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
{DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2ssv.dll
{c840e246-6b95-475e-9bd7-caa1c7eca9f2} "uTorrentBar_DE Toolbar" - "Conduit Ltd." - C:\Program Files\uTorrentBar_DE\prxtbuTor.dll
{9030D464-4C02-4ABF-8ECC-5164760863C6} "Windows Live ID Sign-in Helper" - "Microsoft Corp." - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

[LSA Providers]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Lsa )-----
"Security Packages" - "Microsoft Corp." - C:\Windows\system32\livessp.dll

[Logon]
-----( %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
"OpenOffice.org 3.3.lnk" - ? - C:\Program Files\OpenOffice.org 3\program\quickstart.exe  (Shortcut exists | File found, but it contains no detailed information | File exists)
-----( %AllUsersProfile%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
"NETGEAR WG111v3 Smart Wizard.lnk" - ? - C:\Program Files\NETGEAR\WG111v3\WG111v3.exe  (Shortcut exists | File exists)
-----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )-----
"msnmsgr" - "Microsoft Corporation" - "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
"Pando Media Booster" - ? - C:\Program Files\Pando Networks\Media Booster\PMB.exe
"Spotify" - "Spotify Ltd" - "C:\Users\Zooey Deschanel\AppData\Roaming\Spotify\Spotify.exe" /uri spotify:autostart
"Spotify Web Helper" - ? - "C:\Users\Zooey Deschanel\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"  (File found, but it contains no detailed information)
"Steam" - "Valve Corporation" - "F:\Spiele\steam\steam.exe" -silent
-----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )-----
"StartupPrograms" - ? - rdpclip  (File not found)
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )-----
"Adobe ARM" - "Adobe Systems Incorporated" - "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"APSDaemon" - "Apple Inc." - "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
"avgnt" - "Avira Operations GmbH & Co. KG" - "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
"DivXUpdate" - ? - "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
"iTunesHelper" - "Apple Inc." - "F:\Programme\iTunes\iTunesHelper.exe"
"KiesHelper" - "Samsung" - F:\Programme\Kies\KiesHelper.exe /s
"KiesTrayAgent" - "Samsung Electronics Co., Ltd." - F:\Programme\Kies\KiesTrayAgent.exe
"Launch LCDMon" - "Logitech Inc." - "C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe"
"Launch LGDCore" - "Logitech Inc." - "C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" /SHOWHIDE
"Launch LgDeviceAgent" - "Logitech Inc." - "C:\Program Files\Logitech\GamePanel Software\LgDevAgt.exe"
"LogMeIn Hamachi Ui" - "LogMeIn Inc." - "F:\Programme\hamachi\hamachi-2-ui.exe" --auto-start
"Malwarebytes' Anti-Malware" - "Malwarebytes Corporation" - "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"SunJavaUpdateSched" - "Sun Microsystems, Inc." - "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

[Services]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"Adobe Acrobat Update Service" (AdobeARMservice) - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
"Apple Mobile Device" (Apple Mobile Device) - "Apple Inc." - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
"Avira Echtzeit Scanner" (AntiVirService) - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
"Avira Planer" (AntiVirSchedulerService) - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\sched.exe
"Dienst "Bonjour"" (Bonjour Service) - "Apple Inc." - C:\Program Files\Bonjour\mDNSResponder.exe
"iPod-Dienst" (iPod Service) - "Apple Inc." - C:\Program Files\iPod\bin\iPodService.exe
"LogMeIn Hamachi Tunneling Engine" (Hamachi2Svc) - "LogMeIn Inc." - F:\Programme\hamachi\hamachi-2.exe
"MBAMService" (MBAMService) - "Malwarebytes Corporation" - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
"Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
"Mozilla Maintenance Service" (MozillaMaintenance) - "Mozilla Foundation" - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
"NVIDIA Display Driver Service" (nvsvc) - "NVIDIA Corporation" - C:\Windows\system32\nvvsvc.exe
"NVIDIA Stereoscopic 3D Driver Service" (Stereo Service) - "NVIDIA Corporation" - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
"NVIDIA Update Service Daemon" (nvUpdatusService) - "NVIDIA Corporation" - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
"Skype Updater" (SkypeUpdate) - "Skype Technologies" - C:\Program Files\Skype\Updater\Updater.exe
"Steam Client Service" (Steam Client Service) - "Valve Corporation" - C:\Program Files\Common Files\Steam\SteamService.exe
"Windows Live ID Sign-in Assistant" (wlidsvc) - "Microsoft Corp." - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

[Winsock Providers]
-----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries )-----
"mdnsNSP" - "Apple Inc." - C:\Program Files\Bonjour\mdnsNSP.dll
"WindowsLive Local NSP" - "Microsoft Corp." - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL
"WindowsLive NSP" - "Microsoft Corp." - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL

===[ Logfile end ]=========================================[ Logfile end ]===
         
--- --- ---
If You have questions or want to get some help, You can visit Online Solutions :: Index[/QUOTE]

Alt 29.05.2012, 09:14   #22
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
#Nach Virus keine Icons auf dem Desktop mehr! - Standard

#Nach Virus keine Icons auf dem Desktop mehr!



Wieso 2x OSAM und was ist mit GMER?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 31.05.2012, 12:37   #23
Levi1
 
#Nach Virus keine Icons auf dem Desktop mehr! - Standard

#Nach Virus keine Icons auf dem Desktop mehr!



Hiho,

ach Mist da hab ich aisversehen mein Clipboard überschrieben. aswMBR folgt heute abend

GMER Logfile:
Code:
ATTFilter
GMER 1.0.15.15641 - GMER - Rootkit Detector and Remover
Rootkit scan 2012-05-31 13:36:30
Windows 6.1.7600  Harddisk1\DR1 -> \Device\Ide\IdeDeviceP0T0L0-0 OCZ-VERTEX2 rev.1.33
Running: 51gs8073.exe; Driver: C:\Users\ZOOEYD~1\AppData\Local\Temp\fxldapog.sys


---- System - GMER 1.0.15 ----

SSDT            919EC6A6                                                                                                                                   ZwCreateSection
SSDT            919EC6B0                                                                                                                                   ZwRequestWaitReplyPort
SSDT            919EC6AB                                                                                                                                   ZwSetContextThread
SSDT            919EC6B5                                                                                                                                   ZwSetSecurityObject
SSDT            919EC6BA                                                                                                                                   ZwSystemDebugControl
SSDT            919EC647                                                                                                                                   ZwTerminateProcess

---- Kernel code sections - GMER 1.0.15 ----

.text           ntkrnlpa.exe!ZwRollbackTransaction + 13E9                                                                                                  83286599 1 Byte  [06]
.text           ntkrnlpa.exe!KiDispatchInterrupt + 5A2                                                                                                     832AB092 19 Bytes  [E0, 0F, BA, F0, 07, 73, 09, ...] {LOOPNZ 0x11; MOV EDX, 0x97307f0; MOV CR4, EAX; OR AL, 0x80; MOV CR4, EAX; RET ; MOV ECX, CR3}
.text           ntkrnlpa.exe!RtlSidHashLookup + 340                                                                                                        832B2990 4 Bytes  [A6, C6, 9E, 91]
.text           ntkrnlpa.exe!RtlSidHashLookup + 69C                                                                                                        832B2CEC 4 Bytes  [B0, C6, 9E, 91] {MOV AL, 0xc6; SAHF ; XCHG ECX, EAX}
.text           ntkrnlpa.exe!RtlSidHashLookup + 6E0                                                                                                        832B2D30 4 Bytes  [AB, C6, 9E, 91]
.text           ntkrnlpa.exe!RtlSidHashLookup + 75C                                                                                                        832B2DAC 4 Bytes  [B5, C6, 9E, 91] {MOV CH, 0xc6; SAHF ; XCHG ECX, EAX}
.text           ntkrnlpa.exe!RtlSidHashLookup + 7B0                                                                                                        832B2E00 4 Bytes  [BA, C6, 9E, 91]
.text           ...                                                                                                                                        

---- User code sections - GMER 1.0.15 ----

.text           C:\Program Files\Pando Networks\Media Booster\PMB.exe[3248] kernel32.dll!SetUnhandledExceptionFilter                                       76E430E2 5 Bytes  [33, C0, C2, 04, 00] {XOR EAX, EAX; RET 0x4}

---- User IAT/EAT - GMER 1.0.15 ----

IAT             C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[7944] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetProcAddress]    [75855E25] C:\Windows\system32\apphelp.dll (Clientbibliothek für Anwendungskompatibilität/Microsoft Corporation)
IAT             C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[7944] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!GetProcAddress]     [75855E25] C:\Windows\system32\apphelp.dll (Clientbibliothek für Anwendungskompatibilität/Microsoft Corporation)
IAT             C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[7944] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress]   [75855E25] C:\Windows\system32\apphelp.dll (Clientbibliothek für Anwendungskompatibilität/Microsoft Corporation)
IAT             C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[7944] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress]  [75855E25] C:\Windows\system32\apphelp.dll (Clientbibliothek für Anwendungskompatibilität/Microsoft Corporation)
IAT             C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[7944] @ C:\Windows\system32\WININET.dll [KERNEL32.dll!GetProcAddress]   [75855E25] C:\Windows\system32\apphelp.dll (Clientbibliothek für Anwendungskompatibilität/Microsoft Corporation)
IAT             C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe[7944] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress]   [75855E25] C:\Windows\system32\apphelp.dll (Clientbibliothek für Anwendungskompatibilität/Microsoft Corporation)

---- Devices - GMER 1.0.15 ----

AttachedDevice  \Driver\volmgr \Device\HarddiskVolume1                                                                                                     fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume1                                                                                                     rdyboost.sys (ReadyBoost Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume2                                                                                                     fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume2                                                                                                     rdyboost.sys (ReadyBoost Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume3                                                                                                     fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume3                                                                                                     rdyboost.sys (ReadyBoost Driver/Microsoft Corporation)

Device          \Driver\ACPI_HAL \Device\0000004c                                                                                                          halmacpi.dll (Hardware Abstraction Layer DLL/Microsoft Corporation)

---- EOF - GMER 1.0.15 ----
         
--- --- ---

Alt 04.06.2012, 16:56   #24
Levi1
 
#Nach Virus keine Icons auf dem Desktop mehr! - Standard

#Nach Virus keine Icons auf dem Desktop mehr!



Huhu

hier aswMBR:

Zitat:
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-05-28 13:24:35
-----------------------------
13:24:35.357 OS Version: Windows 6.1.7600
13:24:35.357 Number of processors: 6 586 0xA00
13:24:35.359 ComputerName: LIANGPC UserName:
13:24:35.554 Initialize success
13:29:28.025 AVAST engine defs: 12052800
13:42:31.356 Disk 0 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP1T0L0-1
13:42:31.358 Disk 0 Vendor: SAMSUNG_HD103SI 1AG01118 Size: 953869MB BusType: 11
13:42:31.452 Disk 1 (boot) \Device\Harddisk1\DR1 -> \Device\Ide\IdeDeviceP0T0L0-0
13:42:31.454 Disk 1 Vendor: OCZ-VERTEX2 1.33 Size: 57241MB BusType: 11
13:42:31.587 Disk 1 MBR read successfully
13:42:31.589 Disk 1 MBR scan
13:42:31.593 Disk 1 Windows 7 default MBR code
13:42:31.626 Disk 1 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
13:42:31.661 Disk 1 Partition 2 00 07 HPFS/NTFS NTFS 57139 MB offset 206848
13:42:31.748 Disk 1 scanning sectors +117227520
13:42:31.986 Disk 1 scanning C:\Windows\system32\drivers
13:42:53.125 Service scanning
13:42:59.529 Modules scanning
13:43:09.477 Disk 1 trace - called modules:
13:43:09.486 ntkrnlpa.exe CLASSPNP.SYS disk.sys ataport.SYS halmacpi.dll PCIIDEX.SYS msahci.sys
13:43:09.489 1 nt!IofCallDriver -> \Device\Harddisk1\DR1[0x86672030]
13:43:09.493 3 CLASSPNP.SYS[8c39959e] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x867dd030]
13:43:09.637 AVAST engine scan C:\Windows
13:43:16.348 AVAST engine scan C:\Windows\system32
13:44:49.318 AVAST engine scan C:\Windows\system32\drivers
13:44:53.697 AVAST engine scan C:\Users\Zooey Deschanel
13:45:58.113 AVAST engine scan C:\ProgramData
13:46:27.515 Scan finished successfully
13:47:18.796 Disk 1 MBR has been saved successfully to "C:\Users\Zooey Deschanel\Desktop\MBR.dat"
13:47:18.800 The log file has been saved successfully to "C:\Users\Zooey Deschanel\Desktop\aswMBR.txt"


aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-06-04 17:29:16
-----------------------------
17:29:16.288 OS Version: Windows 6.1.7600
17:29:16.289 Number of processors: 6 586 0xA00
17:29:16.290 ComputerName: LIANGPC UserName:
17:29:16.628 Initialize success
17:36:55.739 AVAST engine defs: 12060400
17:49:35.339 Disk 0 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP1T0L0-1
17:49:35.342 Disk 0 Vendor: SAMSUNG_HD103SI 1AG01118 Size: 953869MB BusType: 11
17:49:35.345 Disk 1 (boot) \Device\Harddisk1\DR1 -> \Device\Ide\IdeDeviceP0T0L0-0
17:49:35.349 Disk 1 Vendor: OCZ-VERTEX2 1.33 Size: 57241MB BusType: 11
17:49:35.353 Disk 1 MBR read successfully
17:49:35.357 Disk 1 MBR scan
17:49:35.365 Disk 1 Windows 7 default MBR code
17:49:35.368 Disk 1 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
17:49:35.373 Disk 1 Partition 2 00 07 HPFS/NTFS NTFS 57139 MB offset 206848
17:49:35.378 Disk 1 scanning sectors +117227520
17:49:35.386 Disk 1 scanning C:\Windows\system32\drivers
17:49:40.131 Service scanning
17:49:48.554 Modules scanning
17:49:50.784 Disk 1 trace - called modules:
17:49:50.792 ntkrnlpa.exe CLASSPNP.SYS disk.sys ataport.SYS halmacpi.dll PCIIDEX.SYS msahci.sys
17:49:50.796 1 nt!IofCallDriver -> \Device\Harddisk1\DR1[0x86677030]
17:49:50.800 3 CLASSPNP.SYS[8c38259e] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x867db030]
17:49:50.927 AVAST engine scan C:\Windows
17:49:52.086 AVAST engine scan C:\Windows\system32
17:51:28.058 AVAST engine scan C:\Windows\system32\drivers
17:51:32.534 AVAST engine scan C:\Users\Zooey Deschanel
17:52:12.526 AVAST engine scan C:\ProgramData
17:52:44.232 Scan finished successfully
17:55:47.258 Disk 1 MBR has been saved successfully to "C:\Users\Zooey Deschanel\Desktop\MBR.dat"
17:55:47.262 The log file has been saved successfully to "C:\Users\Zooey Deschanel\Desktop\aswMBR.txt"

MfG,

Levi

Alt 04.06.2012, 20:42   #25
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
#Nach Virus keine Icons auf dem Desktop mehr! - Standard

#Nach Virus keine Icons auf dem Desktop mehr!



Sieht ok aus. Wir sollten fast durch sein. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs.
Denk dran beide Tools zu updaten vor dem Scan!!
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 13.06.2012, 23:01   #26
Levi1
 
#Nach Virus keine Icons auf dem Desktop mehr! - Standard

#Nach Virus keine Icons auf dem Desktop mehr!



Heya,

hatte die letzte Woche viel zu erledigen, hab mich jetzt aber mal wieder hingesetzt:

Hier Malwarebytes:

Code:
ATTFilter
 Malwarebytes Anti-Malware  (Test) 1.61.0.1400
Malwarebytes : Free anti-malware, anti-virus and spyware removal download

Datenbank Version: v2012.06.13.07

Windows 7 x86 NTFS
Internet Explorer 8.0.7600.16385
Zooey Deschanel :: LIANGPC [Administrator]

Schutz: Aktiviert

13.06.2012 21:41:08
mbam-log-2012-06-13 (21-41-08).txt

Art des Suchlaufs: Vollständiger Suchlauf
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 419827
Laufzeit: 40 Minute(n), 27 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)

(Ende)
         
Und hier Superantispyware:

Code:
ATTFilter
SUPERAntiSpyware Scan Log
SUPERAntiSpyware.com | Remove Malware | Remove Spyware - AntiMalware, AntiSpyware, AntiAdware!

Generated 06/13/2012 at 11:59 PM

Application Version : 5.0.1150

Core Rules Database Version : 8730
Trace Rules Database Version: 6542

Scan type       : Complete Scan
Total Scan Time : 01:02:04

Operating System Information
Windows 7 Home Premium 32-bit (Build 6.01.7600)
UAC On - Limited User

Memory items scanned      : 794
Memory threats detected   : 0
Registry items scanned    : 35803
Registry threats detected : 0
File items scanned        : 266229
File threats detected     : 523

Adware.Tracking Cookie
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\YN44KNB9.txt [ /atdmt.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\BIBTY857.txt [ /track.adform.net ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\1UL80G30.txt [ /serving-sys.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\B0GCA3OB.txt [ /smartadserver.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\D71F6ZOL.txt [ /zanox.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\JBQLU3AA.txt [ /ad.dyntracker.de ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\922JMYXJ.txt [ /ad1.adfarm1.adition.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\HUX5ZUMY.txt [ /bs.serving-sys.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\IFH1BJS7.txt [ /ads.creative-serving.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\TTO85V72.txt [ /zanox-affiliate.de ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\54W0P6CU.txt [ /microsoftwllivemkt.112.2o7.net ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\VUCM2XVC.txt [ /adform.net ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\DW4XTYAS.txt [ /ad.zanox.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\DFCW6S0P.txt [ /adfarm1.adition.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\H25SBRA5.txt [ /doubleclick.net ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\LO73J15A.txt [ /statcounter.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\6Y8QK0IT.txt [ /ad2.adfarm1.adition.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\8C9BUOV1.txt [ /dyntracker.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\KMJULO8G.txt [ /unitymedia.de ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\064OUO3N.txt [ /c.atdmt.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\SS1AQKRA.txt [ /fastclick.net ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\DBO8YWLB.txt [ /tracking.quisma.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\MPHRJS1Q.txt [ /invitemedia.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\EX9PM9LX.txt [ /apmebf.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\VYGDFL0E.txt [ /ru4.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\7X3Z6HD8.txt [ /ad.yieldmanager.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\3IZ2NWKZ.txt [ /www.windowsmedia.com ]
	C:\Users\Zooey Deschanel\AppData\Roaming\Microsoft\Windows\Cookies\8B7Z48BR.txt [ /mediaplex.com ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\YN44KNB9.txt [ Cookie:zooey deschanel(at)atdmt.com/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\BIBTY857.txt [ Cookie:zooey deschanel(at)track.adform.net/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\B0GCA3OB.txt [ Cookie:zooey deschanel(at)smartadserver.com/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\D71F6ZOL.txt [ Cookie:zooey deschanel(at)zanox.com/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\JBQLU3AA.txt [ Cookie:zooey deschanel(at)ad.dyntracker.de/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\922JMYXJ.txt [ Cookie:zooey deschanel(at)ad1.adfarm1.adition.com/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\TTO85V72.txt [ Cookie:zooey deschanel(at)zanox-affiliate.de/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\VUCM2XVC.txt [ Cookie:zooey deschanel(at)adform.net/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\DW4XTYAS.txt [ Cookie:zooey deschanel(at)ad.zanox.com/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\DFCW6S0P.txt [ Cookie:zooey deschanel(at)adfarm1.adition.com/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\H25SBRA5.txt [ Cookie:zooey deschanel(at)doubleclick.net/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\6Y8QK0IT.txt [ Cookie:zooey deschanel(at)ad2.adfarm1.adition.com/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\8C9BUOV1.txt [ Cookie:zooey deschanel(at)dyntracker.com/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\KMJULO8G.txt [ Cookie:zooey deschanel(at)unitymedia.de/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\064OUO3N.txt [ Cookie:zooey deschanel(at)c.atdmt.com/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\SS1AQKRA.txt [ Cookie:zooey deschanel(at)fastclick.net/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\DBO8YWLB.txt [ Cookie:zooey deschanel(at)tracking.quisma.com/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\MPHRJS1Q.txt [ Cookie:zooey deschanel(at)invitemedia.com/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\EX9PM9LX.txt [ Cookie:zooey deschanel(at)apmebf.com/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\3IZ2NWKZ.txt [ Cookie:zooey deschanel(at)www.windowsmedia.com/ ]
	C:\USERS\ZOOEY DESCHANEL\Cookies\8B7Z48BR.txt [ Cookie:zooey deschanel(at)mediaplex.com/ ]
	assets.porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	cdn.alotporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	cdn.pornsharia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	cdn1.static.youporn.phncdn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	cloud.bannergadgets.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	eu.media.blizzard.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	h2porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	hellporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	ia.media-imdb.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	media.alotporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	media.mtvnservices.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	media.rockstargames.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	media.scanscout.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	secure-us.imrworldwide.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	staticedge.hardsextube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	Alpha Porno - Free XXX porn TUBE MOVIES. Free Sex Video [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	Porn tube, Free HD Porn Videos, XXX Porno Movies, Online Streaming Porn and Free Sex Clips [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	Free Porn Videos & Sex Movies - Porno, XXX, Porn Tube and Pussy Porn [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	Porn Movies | Sex tube | XXX Videos | Free Adult Clips - Pornicom.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	Free Porn Movies | PornTube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	Porn Tube Vidz - Home [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	XXX Movies - Watch online porn videos and sex movies. [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RSPYYY99 ]
	.ad-emea.doubleclick.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ad-emea.doubleclick.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ad-emea.doubleclick.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	edge.jeetyetmedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.mediafire.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	e2.emediate.se [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adserver.adtechus.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.amazon-adsystem.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.amazon-adsystem.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.harrenmedianetwork.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.enoratraffic.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ero-advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adserver.freenet.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adserver.freenet.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Porn Videos, Sex, XXX, Free Porn - YouPorn [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.a.revenuemax.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.getclicky.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.static.getclicky.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	in.getclicky.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.legolas-media.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.xiti.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.a.tribalfusion.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.a.tribalfusion.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.gostats.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adnetwork.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.jeetyetmedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	7.rotator.wigetmedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ero-advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.jeetyetmedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.accounts.google.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.accounts.google.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.xxxylive.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.histats.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.histats.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	edge.jeetyetmedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.realgfporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.realgfporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ero-advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ero-advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ero-advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.youporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.youporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.clickfuse.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ero-advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.mmotraffic.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.mmotraffic.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ero-advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.sexxxroulette.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.sexxxroulette.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	teufel-media.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.solvemedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.solvemedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	www.zanox-affiliate.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.mediamarkt.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.mediamarkt.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	etracker Home - forget log-file analysis, this is real-time Web Analytics and online market research [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.data.mediamarkt.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.data.mediamarkt.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.bs.serving-sys.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	eas4.emediate.eu [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	ad4.adfarm1.adition.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.edge.jeetyetmedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.edge.jeetyetmedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.kaspersky.122.2o7.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	optimize.indieclick.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	ad.adition.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	ad.adition.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.syndication.traffichaus.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.syndication.traffichaus.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adultfriendfinder.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adultfriendfinder.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.lpa.trackfox2.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.lpa.trackfox2.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.de.partypoker.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.de.partypoker.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.sexad.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.legolas-media.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.legolas-media.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hightraffic.hugoboss.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	dc.tremormedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.lucidmedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	adfarm1.adition.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ero-advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ero-advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ero-advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.ero-advertising.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	7.rotator.wigetmedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	openx.jeetyetmedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	openx.jeetyetmedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.steelhousemedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	ad3.adfarm1.adition.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Communiquez à l'international [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	ad1.adfarm1.adition.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	ad2.adfarm1.adition.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	openx.jeetyetmedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.bs.serving-sys.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.stats.filmofilia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.stats.filmofilia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Porn Videos, Sex, XXX, Free Porn - YouPorn [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.freefuckvidz.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.freefuckvidz.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.sunporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.sunporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornicom.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornicom.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornicom.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	tracking.sim-technik.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Videos - Porn Tube Videos - Free Sex Tube | PornerBros.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Watch Porn Videos and amateur Sex Movies [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porn.to [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porn.to [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hardsextube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hardsextube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hardsextube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hardsextube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	www.elitepvpers.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	www.elitepvpers.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.elitepvpers.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.elitepvpers.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	www.elitepvpers.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.leviseu.122.2o7.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornstarnetwork.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornstarnetwork.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pinporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pinporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornbanana.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornbanana.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornsharia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornsharia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornsharia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hardsextube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hardsextube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hardsextube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.stats.complex.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.stats.complex.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	accounts.google.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hardsextube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hardsextube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hardsextube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hardsextube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hardsextube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Hard Sex Tube - for every fan of hot porn videos and free porn [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.youporninhd.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.youporninhd.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.userporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.mywebporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.mywebporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.downloadscreensaver.blogspot.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.downloadscreensaver.blogspot.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	celebrities.ontoplist.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adultadworld.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adultadworld.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	wstat.wibiya.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.dmtracker.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.cracked.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.cracked.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.cracked.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.cracked.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.cracked.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.yadro.ru [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.toplist.cz [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.gametracker.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	statse.webtrendslive.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.freeporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.freeporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Deutsch Porno, Kostenlose Pornofilme, German Porn, Gratis Pornos, Deutsch Sex, Deutsche Porno [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Deutsch Porno, Kostenlose Pornofilme, German Porn, Gratis Pornos, Deutsch Sex, Deutsche Porno [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Deutsch Porno, Kostenlose Pornofilme, German Porn, Gratis Pornos, Deutsch Sex, Deutsche Porno [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Deutsch Porno, Kostenlose Pornofilme, German Porn, Gratis Pornos, Deutsch Sex, Deutsche Porno [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Deutsch Porno, Kostenlose Pornofilme, German Porn, Gratis Pornos, Deutsch Sex, Deutsche Porno [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Deutsch Porno, Kostenlose Pornofilme, German Porn, Gratis Pornos, Deutsch Sex, Deutsche Porno [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Deutsch Porno, Kostenlose Pornofilme, German Porn, Gratis Pornos, Deutsch Sex, Deutsche Porno [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Deutsch Porno, Kostenlose Pornofilme, German Porn, Gratis Pornos, Deutsch Sex, Deutsche Porno [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Deutsch Porno, Kostenlose Pornofilme, German Porn, Gratis Pornos, Deutsch Sex, Deutsche Porno [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.deutsch-porno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.deutsch-porno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.movieclipscom.122.2o7.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.segittur.122.2o7.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.countomat.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.tracking.percentmobile.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.linksynergy.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.linksynergy.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.linksynergy.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adultadworld.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornhub.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	s08.flagcounter.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.trafficholder.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.guj.122.2o7.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	etracker Home - forget log-file analysis, this is real-time Web Analytics and online market research [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	partners.webmasterplan.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	accounts.google.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Adserv 8 [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.mediafire.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.mediafire.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.eaeacom.112.2o7.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pickupfuck.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pickupfuck.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pickupfuck.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adultadworld.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adxpansion.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porntube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porntube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porntube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Porn tube, Free HD Porn Videos, XXX Porno Movies, Online Streaming Porn and Free Sex Clips [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Porn tube, Free HD Porn Videos, XXX Porno Movies, Online Streaming Porn and Free Sex Clips [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Porn tube, Free HD Porn Videos, XXX Porno Movies, Online Streaming Porn and Free Sex Clips [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Porn tube, Free HD Porn Videos, XXX Porno Movies, Online Streaming Porn and Free Sex Clips [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Porn tube, Free HD Porn Videos, XXX Porno Movies, Online Streaming Porn and Free Sex Clips [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Porn tube, Free HD Porn Videos, XXX Porno Movies, Online Streaming Porn and Free Sex Clips [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Porn tube, Free HD Porn Videos, XXX Porno Movies, Online Streaming Porn and Free Sex Clips [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Porn tube, Free HD Porn Videos, XXX Porno Movies, Online Streaming Porn and Free Sex Clips [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adultadworld.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adultadworld.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adultadworld.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.adultadworld.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	publishers.clickbooth.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	publishers.clickbooth.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Movies | PornTube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Movies | PornTube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Movies | PornTube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Movies | PornTube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porntube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porntube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porntube.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Adserv 8 [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.alphaporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Videos & Sex Movies - Porno, XXX, Porn Tube and Pussy Porn [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	h2porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.trafficholder.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.alphaporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.alphaporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.alphaporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.alphaporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.alphaporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.alphaporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porntubevidz.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Videos - Porn Tube Videos - Free Sex Tube | PornerBros.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Videos - Porn Tube Videos - Free Sex Tube | PornerBros.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Videos - Porn Tube Videos - Free Sex Tube | PornerBros.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porntubevidz.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porntubevidz.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porntubevidz.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porntubevidz.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porntubevidz.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Videos - Porn Tube Videos - Free Sex Tube | PornerBros.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Videos - Porn Tube Videos - Free Sex Tube | PornerBros.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Videos - Porn Tube Videos - Free Sex Tube | PornerBros.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornerbros.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornerbros.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornerbros.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Videos - Porn Tube Videos - Free Sex Tube | PornerBros.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornhub.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornhub.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Videos & Sex Movies - Porno, XXX, Porn Tube and Pussy Porn [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornhub.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornhub.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornhub.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	h2porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	adv.h2porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.trafficholder.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	h2porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	The Best Free Porn Tube, XXX, Porno and Sex Videos - PORN.COM [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hellporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	hellporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hellporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	NEW Free Porn Movies - Most Recent Hard XXX Tube Videos [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hellporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hellporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hellporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.hellporno.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.youporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.youporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.youporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Porn Videos, Sex, XXX, Free Porn - YouPorn [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornup.me [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornup.me [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornup.me [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.pornup.me [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Tube PornUp.me Movies Free Pussy Hot Sex Videos Streaming Porn Video! [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.h2porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.h2porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.h2porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.h2porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.h2porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	h2porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.h2porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.h2porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.h2porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.h2porn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.xxxkinky.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.xxxkinky.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.xxxkinky.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	Free Porn Tube XXX Movies Free Pussy Hot Sex Videos Streaming Porn Video! [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.xxxkinky.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	stats.computecmedia.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.xxxymovies.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.xxxymovies.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.xxxymovies.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.xxxymovies.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.xxxymovies.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.xxxylive.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	alotporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	alotporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	alotporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	alotporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	alotporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	alotporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	alotporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	alotporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.alotporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.alotporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	.alotporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	alotporn.com [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	stats.computecmedia.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
	stats.computecmedia.de [ C:\USERS\ZOOEY DESCHANEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\CC9YA6LP.DEFAULT\COOKIES.SQLITE ]
         
MfG,

Levi

Geändert von cosinus (14.06.2012 um 11:32 Uhr) Grund: CODE-Tags...

Alt 14.06.2012, 11:33   #27
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
#Nach Virus keine Icons auf dem Desktop mehr! - Standard

#Nach Virus keine Icons auf dem Desktop mehr!



Sieht ok aus, da wurden nur Cookies gefunden.
Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie )


Wegen Cookies und anderer Dinge im Web: Um die Pest von vornherein zu blocken (also TrackingCookies, Werbebanner etc.) müsstest du dir mal sowas wie MVPS Hosts File anschauen => Blocking Unwanted Parasites with a Hosts File - sinnvollerweise solltest du alle 4 Wochen mal bei MVPS nachsehen, ob er eine neue Hosts Datei herausgebracht hat.

Ansonsten gibt es noch gute Cookiemanager, Erweiterungen für den Firefox zB wäre da CookieCuller http://filepony.de/download-cookie_culler/
Wenn du aber damit leben kannst, dich bei jeder Browsersession überall neu einzuloggen (zB Facebook, Ebay, GMX, oder auch Trojaner-Board) dann stell den Browser einfach so ein, dass einfach alles beim Beenden des Browser inkl. Cookies gelöscht wird.

Ich halte es so, dass ich zum "wilden Surfen" den Opera-Browser oder Chromium unter meinem Linux verwende. Mein Hauptbrowser (Firefox) speichert nur die Cookies von den Sites die ich auch will, alles andere lehne ich manuell ab (der FF fragt mich immer) - die anderen Browser nehmen alles an Cookies zwar an, aber spätestens beim nächsten Start von Opera oder Chromium sind keine Cookies mehr da.

Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 15.06.2012, 11:43   #28
Levi1
 
#Nach Virus keine Icons auf dem Desktop mehr! - Standard

#Nach Virus keine Icons auf dem Desktop mehr!



Naja, ich hab immernoch keine Icons auf dem Desktop

Sonst alles wie gehabt

MfG,

Levi

Alt 15.06.2012, 15:02   #29
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
#Nach Virus keine Icons auf dem Desktop mehr! - Standard

#Nach Virus keine Icons auf dem Desktop mehr!



Hattest du unhide nicht mal probiert?

Downloade dir bitte unhide.exe und speichere diese Datei auf deinem Desktop.
Starte das Tool und es sollten alle Dateien und Ordner wieder sichtbar sein. ( Könnte eine Weile dauern )
Vista und 7 User müssen das Tool per Rechtsklick als Administrator ausführen!
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 16.06.2012, 17:59   #30
Levi1
 
#Nach Virus keine Icons auf dem Desktop mehr! - Standard

#Nach Virus keine Icons auf dem Desktop mehr!



Heya,

huh hast Du das hier im Thread schonmal erwähnt? unhide hat aber funktioniert.

Im verlinkten Thrad zu SUPERAntiSpyware stand das ich die Funde nicht ohne absprechen weiter bearbeiten soll? Und das ich das Programm am Ende wieder deinstallieren soll.

MfG,

Lev

Antwort

Themen zu #Nach Virus keine Icons auf dem Desktop mehr!
abgesicherte, abgesicherten, bildschirm, desktop, entfernung, fix, funde, funktionier, funktioniert, gestern, google, googlen, icons, kurzem, malwarebytes, modus, nicht sichtbar, nichts, problem, schei, sichtbar, sperre, sperren, stelle, troja, trojaner-board, virus




Ähnliche Themen: #Nach Virus keine Icons auf dem Desktop mehr!


  1. Windows 8.1 schwarzer Desktop/keine Icons/keine Taskleiste + kleine andere Probleme
    Plagegeister aller Art und deren Bekämpfung - 02.02.2015 (17)
  2. Sehe keine desktop icons mehr
    Plagegeister aller Art und deren Bekämpfung - 20.06.2013 (21)
  3. Sehe keine desktop icons mehr
    Mülltonne - 17.06.2013 (0)
  4. Desktop-Icons, Taskleiste - alles weg nach Updates
    Alles rund um Windows - 28.01.2013 (6)
  5. Nach Windows unlocker Desktop icons weg..
    Plagegeister aller Art und deren Bekämpfung - 15.10.2012 (29)
  6. Desktop-Icons fehlen und Task-Manager deaktiviert nach GVU Trojaner
    Log-Analyse und Auswertung - 08.05.2012 (1)
  7. Icons auf dem Desktop verschwinden gleich nach Start
    Log-Analyse und Auswertung - 12.04.2012 (13)
  8. Keine Taskleiste mehr, keine Icons, kein Taskmanager!
    Plagegeister aller Art und deren Bekämpfung - 01.04.2012 (7)
  9. Trojaner, Virus, HDD S.M.A.R.T., keine Programme und Daten mehr, Desktop schwarz
    Plagegeister aller Art und deren Bekämpfung - 31.03.2012 (3)
  10. Desktop Icons und Dateien werden nach Infizierung nicht mehr angezeigt :(
    Plagegeister aller Art und deren Bekämpfung - 25.03.2012 (36)
  11. Desktop Icons und Dateien werden nach Infizierung nicht mehr angezeigt - mein Rechner auch!
    Plagegeister aller Art und deren Bekämpfung - 20.03.2012 (2)
  12. Trojaner, Virus, Malware Rechner zeigt keine Daten mehr, leeren Desktop
    Alles rund um Windows - 25.01.2012 (1)
  13. Nach Virus keine Icons auf dem Desktop
    Plagegeister aller Art und deren Bekämpfung - 12.12.2011 (26)
  14. Nach BKA/Bundespolizei Virus : keine Taskleiste & keine Icons !!
    Plagegeister aller Art und deren Bekämpfung - 08.11.2011 (4)
  15. Icons auf Desktop entfernt / Desktophintergrund schwarz / PC fährt nach einiger Zeit herunter
    Plagegeister aller Art und deren Bekämpfung - 29.10.2011 (39)
  16. Nach Hochfahren des Rechners, win xp, keine Icons auf Desktop, keine Taskleiste
    Log-Analyse und Auswertung - 20.01.2011 (22)
  17. Desktop icons nach Xleaner verschwunden!
    Alles rund um Windows - 13.06.2007 (3)

Zum Thema #Nach Virus keine Icons auf dem Desktop mehr! - Ist ziemlich unauffällig Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten Anleitung und Downloadlink hier => http://www.trojaner-board.de/82358-t...entfernen.html Hinweis : Bitte den Virenscanner abstellen - #Nach Virus keine Icons auf dem Desktop mehr!...
Archiv
Du betrachtest: #Nach Virus keine Icons auf dem Desktop mehr! auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.