|
Log-Analyse und Auswertung: Google Links führen auf falsche SeitenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
26.06.2012, 23:49 | #16 |
| Google Links führen auf falsche Seiten Halli Hallo, wurde gewarnt das Mcafee noch laufen soll, das kann aber nicht sein wurde mit kauf des Laptops deinstalliert. Habe mich davor noch vergewissert, dass es wirklich nicht mehr oben ist. Konnte auch keinen McAfee Prozess entdecken. --> hier das Log von CF: Code:
ATTFilter ComboFix 12-06-26.02 - Kathi 27.06.2012 0:39.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.43.1031.18.6038.4405 [GMT 2:00] ausgeführt von:: c:\users\Kathi\Downloads\ComboFix.exe AV: McAfee Anti-Virus und Anti-Spyware *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637} FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C} SP: McAfee Anti-Virus und Anti-Spyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Neuer Wiederherstellungspunkt wurde erstellt . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\programdata\PCDr\5907\Downloads\9a727e3b-3b75-44f1-aa0c-b5b6cd760030.dll c:\programdata\Roaming c:\users\Kathi\Documents\1760FECB.tmp c:\users\Kathi\Documents\ppt3CA4.tmp . . ((((((((((((((((((((((( Dateien erstellt von 2012-05-26 bis 2012-06-26 )))))))))))))))))))))))))))))) . . 2012-06-26 22:45 . 2012-06-26 22:45 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2012-06-26 22:45 . 2012-06-26 22:45 -------- d-----w- c:\users\Default\AppData\Local\temp 2012-06-25 09:56 . 2012-06-25 09:56 -------- d-----w- c:\users\Kathi\AppData\Local\Macromedia 2012-06-22 13:05 . 2012-06-22 13:05 -------- d-----w- C:\_OTL 2012-06-22 10:56 . 2012-06-22 10:56 770384 ----a-w- c:\program files (x86)\Mozilla Firefox\msvcr100.dll 2012-06-22 10:56 . 2012-06-22 10:56 421200 ----a-w- c:\program files (x86)\Mozilla Firefox\msvcp100.dll 2012-06-21 14:57 . 2012-06-21 14:57 -------- d-----w- c:\program files (x86)\ESET 2012-06-21 09:52 . 2012-06-02 22:19 2428952 ----a-w- c:\windows\system32\wuaueng.dll 2012-06-21 09:52 . 2012-06-02 22:19 57880 ----a-w- c:\windows\system32\wuauclt.exe 2012-06-21 09:52 . 2012-06-02 22:19 44056 ----a-w- c:\windows\system32\wups2.dll 2012-06-21 09:52 . 2012-06-02 22:15 2622464 ----a-w- c:\windows\system32\wucltux.dll 2012-06-21 09:52 . 2012-06-02 22:19 38424 ----a-w- c:\windows\system32\wups.dll 2012-06-21 09:52 . 2012-06-02 22:19 701976 ----a-w- c:\windows\system32\wuapi.dll 2012-06-21 09:52 . 2012-06-02 22:15 99840 ----a-w- c:\windows\system32\wudriver.dll 2012-06-21 09:52 . 2012-06-02 13:19 186752 ----a-w- c:\windows\system32\wuwebv.dll 2012-06-21 09:52 . 2012-06-02 13:15 36864 ----a-w- c:\windows\system32\wuapp.exe 2012-06-16 20:54 . 2012-06-16 20:54 -------- d-----w- c:\users\Kathi\AppData\Roaming\Malwarebytes 2012-06-16 20:37 . 2012-06-16 20:37 -------- d-----w- c:\programdata\Malwarebytes 2012-06-16 20:37 . 2012-06-16 20:37 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2012-06-16 20:37 . 2012-04-04 13:56 24904 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-06-14 10:32 . 2012-06-26 21:35 -------- d-----w- c:\programdata\Kaspersky Lab 2012-06-14 10:32 . 2012-06-14 10:32 -------- d-----w- c:\program files (x86)\Kaspersky Lab 2012-06-13 09:47 . 2012-04-26 05:41 77312 ----a-w- c:\windows\system32\rdpwsx.dll 2012-06-13 09:47 . 2012-04-26 05:41 149504 ----a-w- c:\windows\system32\rdpcorekmts.dll 2012-06-13 09:47 . 2012-04-26 05:34 9216 ----a-w- c:\windows\system32\rdrmemptylst.exe 2012-06-03 20:42 . 2012-06-03 21:26 -------- d-----w- c:\program files (x86)\hpmonitor 2012-06-03 20:41 . 2012-01-20 12:14 18816 ----a-w- c:\windows\system32\roboot64.exe 2012-05-30 11:59 . 2012-05-30 11:59 4966600 ----a-w- c:\program files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\components\SkypeFfComponent.dll 2012-05-29 21:36 . 2012-06-22 13:10 -------- d-----w- c:\users\Kathi\AppData\Local\Htc 2012-05-29 21:35 . 2012-05-29 21:36 -------- d-----w- c:\users\Kathi\AppData\Roaming\HTC 2012-05-29 21:35 . 2012-05-29 21:35 -------- d-----w- c:\users\Kathi\AppData\Local\Downloaded Installations 2012-05-29 21:35 . 2012-05-29 21:35 -------- d-----w- c:\program files (x86)\Spirent Communications 2012-05-29 21:34 . 2012-05-29 21:35 -------- d-----w- c:\program files (x86)\HTC 2012-05-29 20:49 . 2012-05-29 20:49 -------- d-----w- c:\users\Kathi\AppData\Roaming\TuneUp Software 2012-05-29 20:48 . 2012-05-29 20:49 -------- d-----w- c:\programdata\TuneUp Software 2012-05-29 20:48 . 2012-05-29 20:48 -------- d-sh--w- c:\programdata\{32364CEA-7855-4A3C-B674-53D8E9B97936} 2012-05-29 20:48 . 2012-05-29 20:48 -------- d--h--w- c:\programdata\Common Files 2012-05-29 20:45 . 2012-05-29 20:45 -------- d-----w- c:\users\Kathi\AppData\Roaming\OpenCandy 2012-05-29 20:45 . 2012-03-22 11:43 2557952 ----a-w- c:\windows\SysWow64\QtCore4.dll 2012-05-29 20:45 . 2012-04-18 11:49 405176 ----a-w- c:\windows\SysWow64\Newtonsoft.Json.Net20.dll 2012-05-29 20:45 . 2012-05-29 20:45 -------- d-----w- c:\program files (x86)\Common Files\DVDVideoSoft 2012-05-29 20:45 . 2012-05-29 20:45 -------- d-----w- c:\program files (x86)\DVDVideoSoft . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-06-24 13:41 . 2012-05-11 10:00 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2012-06-24 13:41 . 2011-11-17 11:07 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2012-03-30 11:35 . 2012-05-10 10:55 1918320 ----a-w- c:\windows\system32\drivers\tcpip.sys . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2011-09-05 35736] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-03-30 937920] "Dell Webcam Central"="c:\program files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" [2011-04-13 503942] "Dell DataSafe Online"="c:\program files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe" [2010-08-26 1117528] "RemoteControl9"="c:\program files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe" [2010-10-01 87336] "PDVD9LanguageShortcut"="c:\program files (x86)\CyberLink\PowerDVD9\Language\Language.exe" [2010-09-18 50472] "BDRegion"="c:\program files (x86)\Cyberlink\Shared Files\brs.exe" [2011-08-12 75048] "RoxWatchTray"="c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe" [2010-11-25 240112] "Desktop Disc Tool"="c:\program files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe" [2010-11-17 514544] "NeroLauncher"="c:\program files (x86)\Nero\SyncUP\NeroLauncher.exe" [2011-07-07 75064] "AccuWeatherWidget"="c:\program files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe" [2011-05-30 885760] "HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2010-06-09 49208] "HTC Sync Loader"="c:\program files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe" [2012-04-17 651264] "AVP"="c:\program files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe" [2011-04-24 202296] . c:\users\Kathi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ OpenOffice.org 3.3.lnk - c:\program files (x86)\OpenOffice.org 3\program\quickstart.exe [2010-12-13 1198592] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ Logitech Desktop Messenger.lnk - c:\program files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2011-11-25 67128] Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2011-11-25 1041920] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus] "DisableMonitoring"=dword:00000001 . R2 Bluetooth OBEX Service;Bluetooth OBEX Service;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe [2011-05-19 995392] R2 CLKMSVC10_9EC60124;CyberLink Product - 2011/11/17 05:57;c:\program files (x86)\Cyberlink\PowerDVD9\NavFilter\kmsvc.exe [2011-08-12 248304] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R2 RoxWatch12;Roxio Hard Drive Watcher 12;c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe [2010-11-25 219632] R2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-05-30 3048136] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-06-05 160944] R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-24 250056] R3 AMPPALP;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Protokoll;c:\windows\system32\DRIVERS\amppal.sys [2011-08-08 299008] R3 Bluetooth Media Service;Bluetooth Media Service;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe [2011-05-19 1335360] R3 HTCAND64;HTC Device Driver;c:\windows\system32\Drivers\ANDROIDUSB.sys [2009-11-02 33736] R3 htcnprot;HTC NDIS Protocol Driver;c:\windows\system32\DRIVERS\htcnprot.sys [2010-06-25 36928] R3 Impcd;Impcd;c:\windows\system32\drivers\Impcd.sys [2010-02-27 158976] R3 intaud_WaveExtensible;Intel WiDi Audio Device;c:\windows\system32\drivers\intelaud.sys [2011-05-17 34200] R3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [2010-12-15 174168] R3 massfilter;Mass Storage Filter Driver;c:\windows\system32\drivers\massfilter.sys [2010-02-22 11776] R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-06-22 113120] R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [2011-07-28 340240] R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [2011-03-04 174184] R3 NvStUSB;NVIDIA Stereoscopic 3D USB driver;c:\windows\system32\drivers\nvstusb.sys [2010-12-12 121960] R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184] R3 RoxMediaDB12OEM;RoxMediaDB12OEM;c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe [2010-11-25 1116656] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392] R3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232] R3 TurboBoost;Intel(R) Turbo Boost Technology Monitor 2.0;c:\program files\Intel\TurboBoost\TurboBoost.exe [2010-11-29 149504] R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe [2011-11-23 1255736] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184] S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [2011-04-22 25960] S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [2010-03-19 55856] S0 stdcfltn;Disk Class Filter Driver for Accelerometer;c:\windows\system32\DRIVERS\stdcfltn.sys [2010-08-20 21616] S1 kl2;kl2;c:\windows\system32\DRIVERS\kl2.sys [2011-03-04 11864] S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys [2011-03-10 29488] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904] S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-09-05 64952] S2 AERTFilters;Andrea RT Filters Service;c:\program files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208] S2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Service;c:\program files\Intel\BluetoothHS\BTHSAmpPalService.exe [2011-08-08 1166848] S2 Bluetooth Device Monitor;Bluetooth Device Monitor;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe [2011-05-19 921664] S2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) 3.0 + High Speed Security Service;c:\program files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2011-06-03 134928] S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624] S2 NAUpdate;Nero Update;c:\program files (x86)\Nero\Update\NASvc.exe [2011-11-04 687400] S2 NOBU;Dell DataSafe Online;c:\program files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe SERVICE [x] S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-04-22 2009704] S2 PassThru Service;Internet Pass-Through Service;c:\program files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2012-03-23 87040] S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-01 508776] S2 SftService;SoftThinks Agent Service;c:\program files (x86)\Dell DataSafe Local Backup\sftservice.EXE [2011-09-22 1692480] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-04-21 378472] S2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys [2010-11-29 16120] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-21 2656280] S3 Acceler;Accelerometer Service;c:\windows\system32\DRIVERS\Accelern.sys [2010-12-13 27760] S3 AMPPAL;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed - Virtueller Adapter;c:\windows\system32\DRIVERS\AMPPAL.sys [2011-08-08 299008] S3 btmaudio;Intel Bluetooth Audio Service;c:\windows\system32\drivers\btmaud.sys [2011-05-19 51712] S3 btmaux;Intel Bluetooth Auxiliary Service;c:\windows\system32\DRIVERS\btmaux.sys [2011-05-19 53248] S3 btmhsf;btmhsf;c:\windows\system32\DRIVERS\btmhsf.sys [2011-07-19 282624] S3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\DRIVERS\CtClsFlt.sys [2011-01-20 176096] S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys [2011-01-30 86016] S3 iBtFltCoex;iBtFltCoex;c:\windows\system32\DRIVERS\iBtFltCoex.sys [2011-07-20 59904] S3 IntcDAud;Intel(R) Display-Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-16 317440] S3 iwdbus;IWD Bus Enumerator;c:\windows\system32\DRIVERS\iwdbus.sys [2011-05-17 25496] S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys [2009-11-02 22544] S3 MEIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344] S3 NETwNs64;___ Intel(R) Wireless WiFi Link der Serie 5000 Adaptertreiber für Windows 7 64-Bit;c:\windows\system32\DRIVERS\NETwNs64.sys [2011-08-04 8604672] S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2011-02-10 82432] S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2011-02-10 181760] S3 qicflt;upper Device Filter Driver;c:\windows\system32\DRIVERS\qicflt.sys [2010-07-13 29288] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2011-02-17 428136] S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [2011-10-01 764264] S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [2011-10-01 268648] S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [2011-10-01 25960] S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [2011-10-01 22376] S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-01 219496] S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - 23867665 *Deregistered* - 23867665 *Deregistered* - CLKMDRV10_9EC60124 . Inhalt des "geplante Tasks" Ordners . 2012-06-26 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-11 13:41] . 2012-06-03 c:\windows\Tasks\PCDoctorBackgroundMonitorTask.job - c:\program files\Dell Support Center\uaclauncher.exe [2012-04-13 06:11] . 2012-06-26 c:\windows\Tasks\SystemToolsDailyTest.job - c:\program files\Dell Support Center\uaclauncher.exe [2012-04-13 06:11] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2011-02-18 6611048] "RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-01-18 2188904] "NVHotkey"="c:\windows\system32\nvHotkey.dll" [2011-04-22 312936] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-08-05 167704] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-08-05 392472] "Persistence"="c:\windows\system32\igfxpers.exe" [2011-08-05 416024] "FreeFallProtection"="c:\program files (x86)\STMicroelectronics\AccelerometerP11\FF_Protection.exe" [2010-12-17 686704] "BTMTrayAgent"="c:\program files (x86)\Intel\Bluetooth\btmshell.dll" [2011-05-19 10365952] "IntelPAN"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2011-07-28 1935120] "QuickSet"="c:\program files\Dell\QuickSet\QuickSet.exe" [2011-01-25 4479648] "IntelTBRunOnce"="wscript.exe" [2009-07-14 168960] "Stage Remote"="c:\program files (x86)\Dell\Stage Remote\StageRemote.exe" [2011-06-28 2022976] "DellStage"="c:\program files (x86)\Dell Stage\Dell Stage\stage_primary.exe" [2011-05-30 2055816] "Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2007-04-11 134416] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "LoadAppInit_DLLs"=0x1 "AppInit_DLLs"=c:\windows\System32\nvinitx.dll . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = mLocal Page = c:\windows\SysWOW64\blank.htm IE: Free YouTube to MP3 Converter - c:\users\Kathi\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm TCP: DhcpNameServer = 212.186.211.21 195.34.133.21 Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\program files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll FF - ProfilePath - c:\users\Kathi\AppData\Roaming\Mozilla\Firefox\Profiles\za9wu5mw.default\ FF - prefs.js: browser.search.defaulturl - FF - prefs.js: browser.startup.homepage - hxxp://www.google.at/ FF - prefs.js: network.proxy.type - 0 FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=110187&tt=230512_54x FF - user.js: extensions.BabylonToolbar_i.babExt - FF - user.js: extensions.BabylonToolbar_i.srcExt - ss FF - user.js: extensions.BabylonToolbar_i.id - c43f51d20000000000004c80930f1357 FF - user.js: extensions.BabylonToolbar_i.hardId - c43f51d20000000000004c80930f1357 FF - user.js: extensions.BabylonToolbar_i.instlDay - 15494 FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17 FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17 FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1722:41 FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar FF - user.js: extensions.BabylonToolbar_i.aflt - babsst FF - user.js: extensions.BabylonToolbar_i.smplGrp - none FF - user.js: extensions.BabylonToolbar_i.tlbrId - base FF - user.js: extensions.BabylonToolbar_i.instlRef - sst . - - - - Entfernte verwaiste Registrierungseinträge - - - - . HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe AddRemove-BabylonToolbar - c:\program files (x86)\BabylonToolbar\BabylonToolbar\1.5.3.17\uninstall.exe . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_235_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_235_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\McAfee] "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2012-06-27 00:48:09 ComboFix-quarantined-files.txt 2012-06-26 22:48 . Vor Suchlauf: 13 Verzeichnis(se), 136.265.830.400 Bytes frei Nach Suchlauf: 16 Verzeichnis(se), 136.293.421.056 Bytes frei . - - End Of File - - E1E95ECF617DA4ED7E9D3FEB9C7305E2 |
27.06.2012, 13:18 | #17 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Google Links führen auf falsche Seiten Combofix - Scripten
__________________1. Starte das Notepad (Start / Ausführen / notepad[Enter]) 2. Jetzt füge mit copy/paste den ganzen Inhalt der untenstehenden Codebox in das Notepad Fenster ein. Code:
ATTFilter Firefox:: FF - ProfilePath - c:\users\Kathi\AppData\Roaming\Mozilla\Firefox\Profiles\za9wu5mw.default\ FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=110187&tt=230512_54x FF - user.js: extensions.BabylonToolbar_i.babExt - FF - user.js: extensions.BabylonToolbar_i.srcExt - ss FF - user.js: extensions.BabylonToolbar_i.id - c43f51d20000000000004c80930f1357 FF - user.js: extensions.BabylonToolbar_i.hardId - c43f51d20000000000004c80930f1357 FF - user.js: extensions.BabylonToolbar_i.instlDay - 15494 FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17 FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17 FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1722:41 FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar FF - user.js: extensions.BabylonToolbar_i.aflt - babsst FF - user.js: extensions.BabylonToolbar_i.smplGrp - none FF - user.js: extensions.BabylonToolbar_i.tlbrId - base FF - user.js: extensions.BabylonToolbar_i.instlRef - sst 4. Deaktivere den Guard Deines Antivirenprogramms und eine eventuell vorhandene Software Firewall. (Auch Guards von Ad-, Spyware Programmen und den Tea Timer (wenn vorhanden) !) 5. Dann ziehe die CFScript.txt auf die cofi.exe, so wie es im unteren Bild zu sehen ist. Damit wird Combofix neu gestartet. 6. Nach dem Neustart (es wird gefragt ob Du neustarten willst), poste bitte die folgenden Log Dateien: Combofix.txt Hinweis: Das obige Script ist nur für diesen einen User in dieser Situtation erstellt worden. Es ist auf keinen anderen Rechner portierbar und darf nicht anderweitig verwandt werden, da es das System nachhaltig schädigen kann!
__________________ |
05.07.2012, 12:58 | #18 |
| Google Links führen auf falsche Seiten Entschuldigung für die Dauer, bin die letzten Tage nicht dazu gekommen.
__________________Hier die Log-Datei: Code:
ATTFilter ComboFix 12-07-05.02 - Kathi 05.07.2012 13:26:23.2.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.43.1031.18.6038.4218 [GMT 2:00] ausgeführt von:: c:\users\Kathi\Desktop\ComboFix.exe Benutzte Befehlsschalter :: c:\users\Kathi\Desktop\CFScript.txt AV: McAfee Anti-Virus und Anti-Spyware *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637} FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C} SP: McAfee Anti-Virus und Anti-Spyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Neuer Wiederherstellungspunkt wurde erstellt . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\programdata\PCDr\5907\Downloads\a31dcb19-c462-4b91-b5af-0c0196d8d501.dll c:\programdata\PCDr\5907\Downloads\eb1a169a-7868-4b2c-ae46-52b55b4db151.dll . . ((((((((((((((((((((((( Dateien erstellt von 2012-06-05 bis 2012-07-05 )))))))))))))))))))))))))))))) . . 2012-07-05 11:39 . 2012-07-05 11:39 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2012-07-05 11:39 . 2012-07-05 11:39 -------- d-----w- c:\users\Default\AppData\Local\temp 2012-06-25 09:56 . 2012-06-25 09:56 -------- d-----w- c:\users\Kathi\AppData\Local\Macromedia 2012-06-22 13:05 . 2012-06-22 13:05 -------- d-----w- C:\_OTL 2012-06-22 10:56 . 2012-06-22 10:56 770384 ----a-w- c:\program files (x86)\Mozilla Firefox\msvcr100.dll 2012-06-22 10:56 . 2012-06-22 10:56 421200 ----a-w- c:\program files (x86)\Mozilla Firefox\msvcp100.dll 2012-06-21 14:57 . 2012-06-21 14:57 -------- d-----w- c:\program files (x86)\ESET 2012-06-21 09:52 . 2012-06-02 22:19 2428952 ----a-w- c:\windows\system32\wuaueng.dll 2012-06-21 09:52 . 2012-06-02 22:19 57880 ----a-w- c:\windows\system32\wuauclt.exe 2012-06-21 09:52 . 2012-06-02 22:19 44056 ----a-w- c:\windows\system32\wups2.dll 2012-06-21 09:52 . 2012-06-02 22:15 2622464 ----a-w- c:\windows\system32\wucltux.dll 2012-06-21 09:52 . 2012-06-02 22:19 38424 ----a-w- c:\windows\system32\wups.dll 2012-06-21 09:52 . 2012-06-02 22:19 701976 ----a-w- c:\windows\system32\wuapi.dll 2012-06-21 09:52 . 2012-06-02 22:15 99840 ----a-w- c:\windows\system32\wudriver.dll 2012-06-21 09:52 . 2012-06-02 13:19 186752 ----a-w- c:\windows\system32\wuwebv.dll 2012-06-21 09:52 . 2012-06-02 13:15 36864 ----a-w- c:\windows\system32\wuapp.exe 2012-06-19 15:35 . 2012-06-19 15:35 4967624 ----a-w- c:\program files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\components\SkypeFfComponent.dll 2012-06-16 20:54 . 2012-06-16 20:54 -------- d-----w- c:\users\Kathi\AppData\Roaming\Malwarebytes 2012-06-16 20:37 . 2012-06-16 20:37 -------- d-----w- c:\programdata\Malwarebytes 2012-06-16 20:37 . 2012-06-16 20:37 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2012-06-16 20:37 . 2012-04-04 13:56 24904 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-06-14 10:32 . 2012-07-05 11:18 -------- d-----w- c:\programdata\Kaspersky Lab 2012-06-14 10:32 . 2012-06-14 10:32 -------- d-----w- c:\program files (x86)\Kaspersky Lab 2012-06-13 09:47 . 2012-04-26 05:41 77312 ----a-w- c:\windows\system32\rdpwsx.dll 2012-06-13 09:47 . 2012-04-26 05:41 149504 ----a-w- c:\windows\system32\rdpcorekmts.dll 2012-06-13 09:47 . 2012-04-26 05:34 9216 ----a-w- c:\windows\system32\rdrmemptylst.exe . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-06-24 13:41 . 2012-05-11 10:00 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2012-06-24 13:41 . 2011-11-17 11:07 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2012-04-18 11:49 . 2012-05-29 20:45 405176 ----a-w- c:\windows\SysWow64\Newtonsoft.Json.Net20.dll . . ((((((((((((((((((((((((((((( SnapShot@2012-06-26_22.45.56 ))))))))))))))))))))))))))))))))))))))))) . + 2012-06-26 22:56 . 2012-06-26 22:56 13318 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\SoftGrid Client\Icon Cache\icon_ex.dat - 2012-06-22 13:07 . 2012-06-22 13:07 13318 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\SoftGrid Client\Icon Cache\icon_ex.dat - 2009-07-14 04:54 . 2012-06-24 13:40 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat + 2009-07-14 04:54 . 2012-07-05 11:17 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat + 2009-07-14 04:54 . 2012-07-05 11:17 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat - 2009-07-14 04:54 . 2012-06-24 13:40 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat + 2009-07-14 04:54 . 2012-07-05 11:17 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat - 2009-07-14 04:54 . 2012-06-24 13:40 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat + 2010-11-21 03:09 . 2012-06-27 09:45 50954 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin + 2009-07-14 05:10 . 2012-07-05 11:18 39628 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin - 2011-11-21 20:40 . 2012-06-24 13:41 32768 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat + 2011-11-21 20:40 . 2012-06-27 11:20 32768 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat - 2012-06-24 13:41 . 2012-06-24 13:41 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat + 2012-06-24 13:41 . 2012-06-27 11:20 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat + 2009-07-14 04:54 . 2012-06-27 11:20 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat - 2009-07-14 04:54 . 2012-06-24 13:41 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat + 2009-07-14 04:46 . 2012-06-27 09:47 95344 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat + 2011-11-22 10:05 . 2012-07-05 11:18 9938 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-2876235365-1884908569-728010607-1002_UserData.bin + 2012-07-04 19:10 . 2012-07-04 19:10 8192 c:\windows\system32\Microsoft\Protect\Recovery\Recovery.dat + 2011-11-17 04:00 . 2012-06-26 22:55 6412 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Bluetooth\bthservsdp.dat - 2011-11-17 04:00 . 2012-06-22 13:07 6412 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Bluetooth\bthservsdp.dat - 2012-06-22 13:07 . 2012-06-22 13:07 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat + 2012-06-27 09:42 . 2012-07-05 11:15 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat + 2012-06-27 09:42 . 2012-07-05 11:15 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat - 2012-06-22 13:07 . 2012-06-22 13:07 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat - 2012-05-29 20:49 . 2012-06-24 13:40 262144 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat + 2012-05-29 20:49 . 2012-07-05 11:17 262144 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat + 2011-11-22 09:17 . 2012-07-04 14:54 287554 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S4.bin + 2011-11-22 13:27 . 2012-07-04 16:16 304840 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin - 2009-07-14 02:36 . 2012-06-18 19:36 652600 c:\windows\system32\perfh009.dat + 2009-07-14 02:36 . 2012-07-05 11:20 652600 c:\windows\system32\perfh009.dat - 2010-11-21 06:50 . 2012-06-18 19:36 697322 c:\windows\system32\perfh007.dat + 2010-11-21 06:50 . 2012-07-05 11:20 697322 c:\windows\system32\perfh007.dat + 2009-07-14 02:36 . 2012-07-05 11:20 121274 c:\windows\system32\perfc009.dat - 2009-07-14 02:36 . 2012-06-18 19:36 121274 c:\windows\system32\perfc009.dat + 2010-11-21 06:50 . 2012-07-05 11:20 148328 c:\windows\system32\perfc007.dat - 2010-11-21 06:50 . 2012-06-18 19:36 148328 c:\windows\system32\perfc007.dat - 2011-11-17 11:39 . 2012-06-22 13:07 720736 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat + 2011-11-17 11:39 . 2012-06-26 22:56 720736 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat - 2009-07-14 05:01 . 2012-06-22 13:07 315960 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat + 2009-07-14 05:01 . 2012-06-26 22:55 315960 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat + 2012-06-20 12:50 . 2012-06-20 12:50 7647232 c:\windows\Installer\20d76.msi + 2011-11-22 10:01 . 2012-06-26 22:56 17825600 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-2876235365-1884908569-728010607-1002-8192.dat . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2011-09-05 35736] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-03-30 937920] "Dell Webcam Central"="c:\program files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" [2011-04-13 503942] "Dell DataSafe Online"="c:\program files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe" [2010-08-26 1117528] "RemoteControl9"="c:\program files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe" [2010-10-01 87336] "PDVD9LanguageShortcut"="c:\program files (x86)\CyberLink\PowerDVD9\Language\Language.exe" [2010-09-18 50472] "BDRegion"="c:\program files (x86)\Cyberlink\Shared Files\brs.exe" [2011-08-12 75048] "RoxWatchTray"="c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe" [2010-11-25 240112] "Desktop Disc Tool"="c:\program files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe" [2010-11-17 514544] "NeroLauncher"="c:\program files (x86)\Nero\SyncUP\NeroLauncher.exe" [2011-07-07 75064] "AccuWeatherWidget"="c:\program files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe" [2011-05-30 885760] "HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2010-06-09 49208] "HTC Sync Loader"="c:\program files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe" [2012-04-17 651264] "AVP"="c:\program files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe" [2011-04-24 202296] . c:\users\Kathi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ OpenOffice.org 3.3.lnk - c:\program files (x86)\OpenOffice.org 3\program\quickstart.exe [2010-12-13 1198592] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ Logitech Desktop Messenger.lnk - c:\program files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2011-11-25 67128] Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2011-11-25 1041920] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus] "DisableMonitoring"=dword:00000001 . R2 Bluetooth OBEX Service;Bluetooth OBEX Service;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe [2011-05-19 995392] R2 CLKMSVC10_9EC60124;CyberLink Product - 2011/11/17 05:57;c:\program files (x86)\Cyberlink\PowerDVD9\NavFilter\kmsvc.exe [2011-08-12 248304] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R2 RoxWatch12;Roxio Hard Drive Watcher 12;c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe [2010-11-25 219632] R2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-06-19 3048136] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-06-05 160944] R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-24 250056] R3 AMPPALP;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Protokoll;c:\windows\system32\DRIVERS\amppal.sys [2011-08-08 299008] R3 Bluetooth Media Service;Bluetooth Media Service;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe [2011-05-19 1335360] R3 HTCAND64;HTC Device Driver;c:\windows\system32\Drivers\ANDROIDUSB.sys [2009-11-02 33736] R3 htcnprot;HTC NDIS Protocol Driver;c:\windows\system32\DRIVERS\htcnprot.sys [2010-06-25 36928] R3 Impcd;Impcd;c:\windows\system32\drivers\Impcd.sys [2010-02-27 158976] R3 intaud_WaveExtensible;Intel WiDi Audio Device;c:\windows\system32\drivers\intelaud.sys [2011-05-17 34200] R3 JMCR;JMCR;c:\windows\system32\DRIVERS\jmcr.sys [2010-12-15 174168] R3 massfilter;Mass Storage Filter Driver;c:\windows\system32\drivers\massfilter.sys [2010-02-22 11776] R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-06-22 113120] R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [2011-07-28 340240] R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [2011-03-04 174184] R3 NvStUSB;NVIDIA Stereoscopic 3D USB driver;c:\windows\system32\drivers\nvstusb.sys [2010-12-12 121960] R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184] R3 RoxMediaDB12OEM;RoxMediaDB12OEM;c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe [2010-11-25 1116656] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392] R3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232] R3 TurboBoost;Intel(R) Turbo Boost Technology Monitor 2.0;c:\program files\Intel\TurboBoost\TurboBoost.exe [2010-11-29 149504] R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe [2011-11-23 1255736] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184] S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [2011-04-22 25960] S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [2010-03-19 55856] S0 stdcfltn;Disk Class Filter Driver for Accelerometer;c:\windows\system32\DRIVERS\stdcfltn.sys [2010-08-20 21616] S1 kl2;kl2;c:\windows\system32\DRIVERS\kl2.sys [2011-03-04 11864] S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys [2011-03-10 29488] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904] S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-09-05 64952] S2 AERTFilters;Andrea RT Filters Service;c:\program files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208] S2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Service;c:\program files\Intel\BluetoothHS\BTHSAmpPalService.exe [2011-08-08 1166848] S2 Bluetooth Device Monitor;Bluetooth Device Monitor;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe [2011-05-19 921664] S2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) 3.0 + High Speed Security Service;c:\program files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2011-06-03 134928] S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624] S2 NAUpdate;Nero Update;c:\program files (x86)\Nero\Update\NASvc.exe [2011-11-04 687400] S2 NOBU;Dell DataSafe Online;c:\program files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe SERVICE [x] S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-04-22 2009704] S2 PassThru Service;Internet Pass-Through Service;c:\program files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2012-03-23 87040] S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-01 508776] S2 SftService;SoftThinks Agent Service;c:\program files (x86)\Dell DataSafe Local Backup\sftservice.EXE [2011-09-22 1692480] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-04-21 378472] S2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys [2010-11-29 16120] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-21 2656280] S3 Acceler;Accelerometer Service;c:\windows\system32\DRIVERS\Accelern.sys [2010-12-13 27760] S3 AMPPAL;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed - Virtueller Adapter;c:\windows\system32\DRIVERS\AMPPAL.sys [2011-08-08 299008] S3 btmaudio;Intel Bluetooth Audio Service;c:\windows\system32\drivers\btmaud.sys [2011-05-19 51712] S3 btmaux;Intel Bluetooth Auxiliary Service;c:\windows\system32\DRIVERS\btmaux.sys [2011-05-19 53248] S3 btmhsf;btmhsf;c:\windows\system32\DRIVERS\btmhsf.sys [2011-07-19 282624] S3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\DRIVERS\CtClsFlt.sys [2011-01-20 176096] S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys [2011-01-30 86016] S3 iBtFltCoex;iBtFltCoex;c:\windows\system32\DRIVERS\iBtFltCoex.sys [2011-07-20 59904] S3 IntcDAud;Intel(R) Display-Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-16 317440] S3 iwdbus;IWD Bus Enumerator;c:\windows\system32\DRIVERS\iwdbus.sys [2011-05-17 25496] S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys [2009-11-02 22544] S3 MEIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344] S3 NETwNs64;___ Intel(R) Wireless WiFi Link der Serie 5000 Adaptertreiber für Windows 7 64-Bit;c:\windows\system32\DRIVERS\NETwNs64.sys [2011-08-04 8604672] S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2011-02-10 82432] S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2011-02-10 181760] S3 qicflt;upper Device Filter Driver;c:\windows\system32\DRIVERS\qicflt.sys [2010-07-13 29288] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2011-02-17 428136] S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [2011-10-01 764264] S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [2011-10-01 268648] S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [2011-10-01 25960] S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [2011-10-01 22376] S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-01 219496] S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920] . . --- Andere Dienste/Treiber im Speicher --- . *Deregistered* - CLKMDRV10_9EC60124 . Inhalt des "geplante Tasks" Ordners . 2012-07-05 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-11 13:41] . 2012-07-05 c:\windows\Tasks\PCDoctorBackgroundMonitorTask.job - c:\program files\Dell Support Center\uaclauncher.exe [2012-04-13 06:11] . 2012-07-05 c:\windows\Tasks\SystemToolsDailyTest.job - c:\program files\Dell Support Center\uaclauncher.exe [2012-04-13 06:11] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU] "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2011-02-18 6611048] "RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-01-18 2188904] "NVHotkey"="c:\windows\system32\nvHotkey.dll" [2011-04-22 312936] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-08-05 167704] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-08-05 392472] "Persistence"="c:\windows\system32\igfxpers.exe" [2011-08-05 416024] "FreeFallProtection"="c:\program files (x86)\STMicroelectronics\AccelerometerP11\FF_Protection.exe" [2010-12-17 686704] "BTMTrayAgent"="c:\program files (x86)\Intel\Bluetooth\btmshell.dll" [2011-05-19 10365952] "IntelPAN"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2011-07-28 1935120] "IntelTBRunOnce"="wscript.exe" [2009-07-14 168960] "Stage Remote"="c:\program files (x86)\Dell\Stage Remote\StageRemote.exe" [2011-06-28 2022976] "DellStage"="c:\program files (x86)\Dell Stage\Dell Stage\stage_primary.exe" [2011-05-30 2055816] "Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2007-04-11 134416] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=c:\windows\System32\nvinitx.dll . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = mLocal Page = c:\windows\SysWOW64\blank.htm IE: Free YouTube to MP3 Converter - c:\users\Kathi\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm TCP: DhcpNameServer = 212.186.211.21 195.34.133.21 Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\program files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll FF - ProfilePath - c:\users\Kathi\AppData\Roaming\Mozilla\Firefox\Profiles\za9wu5mw.default\ FF - prefs.js: browser.search.defaulturl - FF - prefs.js: browser.startup.homepage - hxxp://www.google.at/ FF - prefs.js: network.proxy.type - 0 . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_235_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_235_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\McAfee] "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2012-07-05 13:56:10 ComboFix-quarantined-files.txt 2012-07-05 11:56 ComboFix2.txt 2012-06-26 22:48 . Vor Suchlauf: 15 Verzeichnis(se), 140.477.886.464 Bytes frei Nach Suchlauf: 16 Verzeichnis(se), 140.582.768.640 Bytes frei . - - End Of File - - 1038B97390725186167BC57523F04BFF |
05.07.2012, 13:31 | #19 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Google Links führen auf falsche Seiten Bitte nun Logs mit GMER und OSAM erstellen und posten. GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen. Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst. Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM! Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none). Noch ein Hinweis: Sollte aswMBR abstürzen und es kommt eine Meldung wie "aswMBR.exe funktioniert nicht mehr, dann mach Folgendes: Starte aswMBR neu, wähle unten links im Drop-Down-Menü (unten links im Fenster von aswMBR) bei "AV scan" (none) aus und klick nochmal auf den Scan-Button.
__________________ Logfiles bitte immer in CODE-Tags posten |
09.07.2012, 12:12 | #20 |
| Google Links führen auf falsche Seiten Mahlzeit, gmer wurde nicht ausgeführt -->64bit-System<-- oder trotzdem machen? OSAM-Log Code:
ATTFilter Report of OSAM: Autorun Manager v5.0.11926.0 hxxp://www.online-solutions.ru/en/ Saved at 12:44:33 on 09.07.2012 OS: Windows 7 Home Premium Edition Service Pack 1 (Build 7601), 64-bit Default Browser: Mozilla Corporation Firefox 13.0.1 Scanner Settings [x] Rootkits detection (hidden registry) [x] Rootkits detection (hidden files) [x] Retrieve files information [x] Check Microsoft signatures Filters [ ] Trusted entries [ ] Empty entries [x] Hidden registry entries (rootkit activity) [x] Exclusively opened files [x] Not found files [x] Files without detailed information [x] Existing files [ ] Non-startable services [ ] Non-startable drivers [x] Active entries [x] Disabled entries [Common] -----( %SystemRoot%\Tasks )----- "Adobe Flash Player Updater.job" - "Adobe Systems Incorporated" - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe "PCDoctorBackgroundMonitorTask.job" - "PC-Doctor, Inc." - C:\Program Files\Dell Support Center\uaclauncher.exe "SystemToolsDailyTest.job" - "PC-Doctor, Inc." - C:\Program Files\Dell Support Center\uaclauncher.exe [Drivers] -----( HKLM\SYSTEM\CurrentControlSet\Services )----- "catchme" (catchme) - ? - C:\ComboFix\catchme.sys (File not found) "Sftfs" (Sftfs) - "Microsoft Corporation" - C:\Windows\System32\DRIVERS\Sftfslh.sys "Sftplay" (Sftplay) - "Microsoft Corporation" - C:\Windows\System32\DRIVERS\Sftplaylh.sys "Sftredir" (Sftredir) - "Microsoft Corporation" - C:\Windows\System32\DRIVERS\Sftredirlh.sys "Sftvol" (Sftvol) - "Microsoft Corporation" - C:\Windows\System32\DRIVERS\Sftvollh.sys "WimFltr" (WimFltr) - "Microsoft Corporation" - C:\Windows\System32\DRIVERS\wimfltr.sys [Explorer] -----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )----- {F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll {C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} "{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}" - ? - C:\Program Files (x86)\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll -----( HKLM\Software\Classes\Protocols\Handler )----- {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} "Album Download IE Asynchronous Pluggable Protocol Interface" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll {9462A756-7B47-47BC-8C80-C34B9B80B32B} "BackWeb GA Pluggable Protocol" - "Logitech Inc." - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} "IEProtocolHandler Class" - "Skype Technologies" - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL {828030A1-22C1-4009-854F-8E305202313F} "livecall" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll {828030A1-22C1-4009-854F-8E305202313F} "msnim" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll {91774881-D725-4E58-B298-07617B9B86A8} "Skype IE add-on Pluggable Protocol" - "Skype Technologies S.A." - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll {03C514A3-1EFB-4856-9F99-10D7BE1653C0} "Windows Live Mail HTML Asynchronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )----- {C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} "OpenOffice.org Column Handler" - ? - C:\Program Files (x86)\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll {087B3AE3-E237-4467-B8DB-5A38AB959AC9} "OpenOffice.org Infotip Handler" - ? - C:\Program Files (x86)\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll {AE424E85-F6DF-4910-A6A9-438797986431} "OpenOffice.org Property Handler" - ? - C:\Program Files (x86)\OpenOffice.org 3\Basis\program\shlxthdl\propertyhdl.dll {63542C48-9552-494A-84F7-73AA6A7C99C1} "OpenOffice.org Property Sheet Handler" - ? - C:\Program Files (x86)\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll {3B092F0C-7696-40E3-A80F-68D74DA84210} "OpenOffice.org Thumbnail Viewer" - ? - C:\Program Files (x86)\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll {2BE99FD4-A181-4996-BFA9-58C5FFD11F6C} "Windows Live Photo Gallery Autoplay Drop Target" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe {00F30F64-AC33-42F5-8FD1-5DC2D3FDE06C} "Windows Live Photo Gallery Editor Drop Target" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe {00F3712A-CA79-45B4-9E4D-D7891E7F8B9D} "Windows Live Photo Gallery Editor Shim" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll {00F30F90-3E96-453B-AFCD-D71989ECC2C7} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll {00F33137-EE26-412F-8D71-F84E4C2C6625} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll {00F374B7-B390-4884-B372-2FC349F2172B} "Windows Live Photo Gallery Viewer Drop Target" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe {00F346CB-35A4-465B-8B8F-65A29DBAB1F6} "Windows Live Photo Gallery Viewer Shim" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll {0563DB41-F538-4B37-A92D-4659049B7766} "WLMD Message Handler" - ? - (File not found | COM-object registry key not found) {06A2568A-CED6-4187-BB20-400B8C02BE5A} "{06A2568A-CED6-4187-BB20-400B8C02BE5A}" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe [Internet Explorer] -----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )----- ITBar7Height "ITBar7Height" - ? - (File not found | COM-object registry key not found) <binary data> "ITBar7Layout" - ? - (File not found | COM-object registry key not found) -----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )----- {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} "Java Plug-in 1.6.0_22" - "Sun Microsystems, Inc." - C:\Program Files (x86)\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab {8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_27" - "Sun Microsystems, Inc." - C:\Program Files (x86)\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} "Java Plug-in 1.6.0_27" - "Sun Microsystems, Inc." - C:\Program Files (x86)\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_27" - "Sun Microsystems, Inc." - C:\Program Files (x86)\Java\jre6\bin\npjpi160_27.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab -----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )----- {4248FE82-7FCB-46AC-B270-339F08212110} "&Virtuelle Tastatur" - "Kaspersky Lab ZAO" - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll {5F7B1267-94A9-47F5-98DB-E99415F33AEC} "@C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll {CCF151D8-D089-449F-A5A4-D9909053F20F} "Li&nks untersuchen" - "Kaspersky Lab ZAO" - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll {898EA8C8-E7FF-479B-8935-AEC46303B9E5} "Skype Click to Call" - "Skype Technologies S.A." - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )----- {18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper" - "Adobe Systems Incorporated" - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll {E33CF602-D945-461A-83F0-819F76A199F8} "FilterBHO Class" - "Kaspersky Lab ZAO" - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} "IEVkbdBHO Class" - "Kaspersky Lab ZAO" - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll {DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Sun Microsystems, Inc." - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} "Skype Browser Helper" - "Skype Technologies S.A." - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll {9030D464-4C02-4ABF-8ECC-5164760863C6} "Windows Live ID-Anmelde-Hilfsprogramm" - "Microsoft Corp." - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [LSA Providers] -----( HKLM\SYSTEM\CurrentControlSet\Control\Lsa )----- "Security Packages" - "Microsoft Corp." - C:\Windows\system32\livessp.dll [Logon] -----( %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup )----- "desktop.ini" - ? - C:\Users\Kathi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini "OpenOffice.org 3.3.lnk" - ? - C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe (Shortcut exists | File found, but it contains no detailed information | File exists) -----( %AllUsersProfile%\Microsoft\Windows\Start Menu\Programs\Startup )----- "desktop.ini" - ? - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini "Logitech Desktop Messenger.lnk" - "Logitech Inc." - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe (Shortcut exists | File exists) "Logitech SetPoint.lnk" - "Logitech Inc." - C:\Program Files\Logitech\SetPoint\SetPoint.exe (Shortcut exists | File exists) -----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )----- "StartupPrograms" - ? - rdpclip (File not found) -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )----- "AccuWeatherWidget" - ? - "C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe" "C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\start.umj" --startup "Adobe ARM" - "Adobe Systems Incorporated" - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "Adobe Reader Speed Launcher" - "Adobe Systems Incorporated" - "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" "AVP" - "Kaspersky Lab ZAO" - "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe" "BDRegion" - "cyberlink" - c:\Program Files (x86)\Cyberlink\Shared Files\brs.exe "Dell DataSafe Online" - "Dell, Inc." - C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe "Dell Webcam Central" - "Creative Technology Ltd" - "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2 "Desktop Disc Tool" - ? - "C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe" "HP Software Update" - "Hewlett-Packard" - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe "HTC Sync Loader" - ? - "C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe" -startup "NeroLauncher" - ? - C:\Program Files (x86)\Nero\SyncUP\NeroLauncher.exe 900 (File found, but it contains no detailed information) "PDVD9LanguageShortcut" - "CyberLink Corp." - "c:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe" "RemoteControl9" - "CyberLink Corp." - "c:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe" "RoxWatchTray" - "Sonic Solutions" - "C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe" [Print Monitors] -----( HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors )----- "HP Discovery Port Monitor (HP Officejet Pro 8500 A910)" - "Hewlett-Packard Co." - C:\Windows\system32\HPDiscoPM5312.dll [Services] -----( HKLM\SYSTEM\CurrentControlSet\Services )----- "@%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101" (WMPNetworkSvc) - ? - "C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe" (File not found) "@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200" (NAUpdate) - "Nero AG" - C:\Program Files (x86)\Nero\Update\NASvc.exe "Adobe Acrobat Update Service" (AdobeARMservice) - "Adobe Systems Incorporated" - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe "Adobe Flash Player Update Service" (AdobeFlashPlayerUpdateSvc) - "Adobe Systems Incorporated" - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe "Application Virtualization Client" (sftlist) - "Microsoft Corporation" - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe "Application Virtualization Service Agent" (sftvsa) - "Microsoft Corporation" - C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe "ASP.NET State Service" (aspnet_state) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe "Bluetooth Device Monitor" (Bluetooth Device Monitor) - "Intel Corporation" - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe "Bluetooth Media Service" (Bluetooth Media Service) - "Intel Corporation" - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe "Bluetooth OBEX Service" (Bluetooth OBEX Service) - "Intel Corporation" - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe "Client Virtualization Handler" (cvhsvc) - "Microsoft Corporation" - C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE "CyberLink Product - 2011/11/17 05:57:48" (CLKMSVC10_9EC60124) - "CyberLink" - c:\Program Files (x86)\Cyberlink\PowerDVD9\NavFilter\kmsvc.exe "Dell DataSafe Online" (NOBU) - "Dell, Inc." - C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe "Intel(R) Centrino(R) Wireless Bluetooth(R) 3.0 + High Speed Security Service" (BTHSSecurityMgr) - "Intel(R) Corporation" - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe "Intel(R) Management and Security Application Local Management Service" (LMS) - "Intel Corporation" - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe "Intel(R) Management and Security Application User Notification Service" (UNS) - "Intel Corporation" - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe "Intel(R) PROSet/Wireless Event Log" (EvtEng) - "Intel(R) Corporation" - C:\Program Files\Intel\WiFi\bin\EvtEng.exe "Intel(R) PROSet/Wireless Registry Service" (RegSrvc) - "Intel(R) Corporation" - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe "Intel(R) Turbo Boost Technology Monitor 2.0" (TurboBoost) - "Intel(R) Corporation" - C:\Program Files\Intel\TurboBoost\TurboBoost.exe "Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Service" (AMPPALR3) - "Intel Corporation" - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe "Internet Pass-Through Service" (PassThru Service) - ? - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe "Kaspersky Anti-Virus Service" (AVP) - "Kaspersky Lab ZAO" - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe "Microsoft .NET Framework NGEN v4.0.30319_X64" (clr_optimization_v4.0.30319_64) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe "Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe "Mozilla Maintenance Service" (MozillaMaintenance) - "Mozilla Foundation" - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe "NVIDIA Driver Helper Service" (NVSvc) - "NVIDIA Corporation" - C:\Windows\system32\nvvsvc.exe "NVIDIA Stereoscopic 3D Driver Service" (Stereo Service) - "NVIDIA Corporation" - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe "NVIDIA Update Service Daemon" (nvUpdatusService) - "NVIDIA Corporation" - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe "Office Source Engine" (ose) - "Microsoft Corporation" - C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE "Office Software Protection Platform" (osppsvc) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE "Roxio Hard Drive Watcher 12" (RoxWatch12) - "Sonic Solutions" - C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe "RoxMediaDB12OEM" (RoxMediaDB12OEM) - "Sonic Solutions" - C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe "Skype C2C Service" (Skype C2C Service) - "Skype Technologies S.A." - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe "Skype Updater" (SkypeUpdate) - "Skype Technologies" - C:\Program Files (x86)\Skype\Updater\Updater.exe "SoftThinks Agent Service" (SftService) - "SoftThinks SAS" - C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE "stllssvr" (stllssvr) - "MicroVision Development, Inc." - C:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe "Windows Live ID Sign-in Assistant" (wlidsvc) - "Microsoft Corp." - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE "Wireless PAN DHCP Server" (MyWiFiDHCPDNS) - ? - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [Winsock Providers] -----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries )----- "WindowsLive Local NSP" - "Microsoft Corp." - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL "WindowsLive NSP" - "Microsoft Corp." - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL ===[ Logfile end ]=========================================[ Logfile end ]=== If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru Log: Code:
ATTFilter aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software Run date: 2012-07-09 12:57:58 ----------------------------- 12:57:58.876 OS Version: Windows x64 6.1.7601 Service Pack 1 12:57:58.876 Number of processors: 4 586 0x2A07 12:57:58.876 ComputerName: KATHI-PC UserName: Kathi 12:58:05.443 Initialize success 12:58:08.797 AVAST engine defs: 12070900 12:58:12.682 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 12:58:12.682 Disk 0 Vendor: ST950042 0002 Size: 476940MB BusType: 3 12:58:12.682 Disk 0 MBR read successfully 12:58:12.697 Disk 0 MBR scan 12:58:12.697 Disk 0 Windows VISTA default MBR code 12:58:12.697 Disk 0 Partition 1 00 DE Dell Utility Dell 8.0 101 MB offset 63 12:58:12.713 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 20000 MB offset 212992 12:58:12.729 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 456835 MB offset 41172992 12:58:12.744 Disk 0 scanning C:\Windows\system32\drivers 12:58:25.131 Service scanning 12:58:47.158 Modules scanning 12:58:47.158 Disk 0 trace - called modules: 12:58:47.189 ntoskrnl.exe CLASSPNP.SYS disk.sys stdcfltn.sys ACPI.sys iaStor.sys 12:58:47.189 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8007e5f060] 12:58:47.189 3 CLASSPNP.SYS[fffff8800205143f] -> nt!IofCallDriver -> [0xfffffa8007cd9cb0] 12:58:47.189 5 stdcfltn.sys[fffff8800237bc52] -> nt!IofCallDriver -> [0xfffffa8006302ba0] 12:58:47.189 7 ACPI.sys[fffff88000f9c7a1] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa80062ed050] 12:58:48.827 AVAST engine scan C:\Windows 12:58:53.039 AVAST engine scan C:\Windows\system32 13:01:32.409 AVAST engine scan C:\Windows\system32\drivers 13:01:46.855 AVAST engine scan C:\Users\Kathi 13:08:22.659 Disk 0 MBR has been saved successfully to "C:\Users\Kathi\Desktop\MBR.dat" 13:08:22.659 The log file has been saved successfully to "C:\Users\Kathi\Desktop\aswMBR.txt" |
09.07.2012, 13:04 | #21 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Google Links führen auf falsche SeitenZitat:
__________________ --> Google Links führen auf falsche Seiten |
09.07.2012, 14:02 | #22 |
| Google Links führen auf falsche Seiten Hat funktioniert. Code:
ATTFilter GMER 1.0.15.15641 - hxxp://www.gmer.net Rootkit scan 2012-07-09 15:00:56 Windows 6.1.7601 Service Pack 1 Running: gwb4qxv7.exe ---- Registry - GMER 1.0.15 ---- Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\4c80930f135a Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\4c80930f135a@0024033d809e 0xA1 0x94 0x82 0x9D ... Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\4c80930f135a@64a76954e179 0x13 0x99 0x76 0xBA ... Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\4c80930f135a@e899c414f97e 0x95 0x16 0x33 0x37 ... Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\4c80930f135a (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\4c80930f135a@0024033d809e 0xA1 0x94 0x82 0x9D ... Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\4c80930f135a@64a76954e179 0x13 0x99 0x76 0xBA ... Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\4c80930f135a@e899c414f97e 0x95 0x16 0x33 0x37 ... ---- EOF - GMER 1.0.15 ---- lg Faulwurf |
09.07.2012, 14:08 | #23 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Google Links führen auf falsche Seiten Sieht ok aus. Wir sollten fast durch sein. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs. Denk dran beide Tools zu updaten vor dem Scan!!
__________________ Logfiles bitte immer in CODE-Tags posten |
09.07.2012, 19:19 | #24 |
| Google Links führen auf falsche Seiten Hi, Mbam: Code:
ATTFilter Malwarebytes Anti-Malware 1.61.0.1400 www.malwarebytes.org Datenbank Version: v2012.07.09.06 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 9.0.8112.16421 Kathi :: KATHI-PC [Administrator] 09.07.2012 15:09:52 mbam-log-2012-07-09 (15-09-52).txt Art des Suchlaufs: Vollständiger Suchlauf Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 650493 Laufzeit: 1 Stunde(n), 40 Minute(n), 50 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) Code:
ATTFilter SUPERAntiSpyware Scan Log hxxp://www.superantispyware.com Generated 07/09/2012 at 08:15 PM Application Version : 5.5.1006 Core Rules Database Version : 8864 Trace Rules Database Version: 6676 Scan type : Complete Scan Total Scan Time : 03:00:37 Operating System Information Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601) UAC On - Limited User Memory items scanned : 688 Memory threats detected : 0 Registry items scanned : 71438 Registry threats detected : 0 File items scanned : 378391 File threats detected : 641 Adware.Tracking Cookie C:\Users\Kathi\AppData\Roaming\Microsoft\Windows\Cookies\SCK4VL4O.txt [ /serving-sys.com ] C:\Users\Kathi\AppData\Roaming\Microsoft\Windows\Cookies\1P9567YK.txt [ /2o7.net ] C:\Users\Kathi\AppData\Roaming\Microsoft\Windows\Cookies\2W4JXXO8.txt [ /bs.serving-sys.com ] C:\USERS\KATHI\AppData\Roaming\Microsoft\Windows\Cookies\Low\TOJBWFR2.txt [ Cookie:kathi@server.lon.liveperson.net/ ] C:\USERS\KATHI\AppData\Roaming\Microsoft\Windows\Cookies\Low\M6WOE4PU.txt [ Cookie:kathi@c.atdmt.com/ ] C:\USERS\KATHI\AppData\Roaming\Microsoft\Windows\Cookies\Low\RDQGGQNY.txt [ Cookie:kathi@www.etracker.de/ ] C:\USERS\KATHI\AppData\Roaming\Microsoft\Windows\Cookies\Low\0HHP2NSL.txt [ Cookie:kathi@invitemedia.com/ ] C:\USERS\KATHI\AppData\Roaming\Microsoft\Windows\Cookies\Low\L1X7T0B5.txt [ Cookie:kathi@liveperson.net/ ] C:\USERS\KATHI\AppData\Roaming\Microsoft\Windows\Cookies\Low\6O6XODAB.txt [ Cookie:kathi@www.ardmediathek.de/ ] C:\USERS\KATHI\AppData\Roaming\Microsoft\Windows\Cookies\Low\CPS1WQ6X.txt [ Cookie:kathi@imrworldwide.com/cgi-bin ] C:\USERS\KATHI\Cookies\1P9567YK.txt [ Cookie:kathi@2o7.net/ ] C:\USERS\KATHI\Cookies\2W4JXXO8.txt [ Cookie:kathi@bs.serving-sys.com/ ] delivery.ibanner.de [ C:\USERS\KATHI\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\RCW86CVL ] .edsa.122.2o7.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] stat.onestat.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] stat.onestat.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .amazon-adsystem.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .amazon-adsystem.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .statcounter.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .austrianairlines.122.2o7.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .liveperson.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] track.webtrekk.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .megaclick.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .f.megaclick.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .webresint.122.2o7.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .thelabelfinder.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .www.thelabelfinder.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .xiti.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .ero-advertising.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] webcount.feratel.at [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .a.revenuemax.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .autoscout24.112.2o7.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .tracking.3gnet.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .htc.122.2o7.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] s09.flagcounter.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .twittercounter.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .twittercounter.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .totalyfreesex.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .totalyfreesex.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] eas4.emediate.eu [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] tracking.oe24.at [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] wstat.wibiya.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .xxxlutz.at [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .xxxlutz.at [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .firstchoice.112.2o7.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .h.atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .h.atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .h.atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .h.atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .c.atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .c.atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .c.atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .c.atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .ehg-firstchoice.hitbox.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .hitbox.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .lexmark.122.2o7.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .liveperson.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] mediathek.daserste.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] 7.rotator.wigetmedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .histats.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .histats.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .xm.xtendmedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adnet.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .account.frogster-online.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] fl01.ct2.comclick.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] fl01.ct2.comclick.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] fl01.ct2.comclick.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .statcounter.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .bs.serving-sys.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .c1.atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .c1.atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adxpose.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .ibanner.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .at.atwola.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] accounts.youtube.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] 7.rotator.wigetmedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] bridge.ame.admarketplace.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .admarketplace.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .kaspersky.122.2o7.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .tto2.traffictrack.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ads.247activemedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] server.adform.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] server.adformdsp.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adformdsp.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adform.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .aim4media.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .lucidmedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adserver.adtechus.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .blogads.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .blogads.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .clickbank.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .clickbank.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.adnet.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.adnet.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .advertisingenhanced.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .advertisingenhanced.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] livestat.derstandard.at [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .myroitracking.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.dyntracker.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] mediaservices-d.openxenterprise.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .findhe.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] trekmedia.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] trekmedia.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .aerlingus.122.2o7.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] accounts.google.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .accounts.google.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .accounts.google.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .accounts.google.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] www.netxmedia.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] tag.tlvmedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] tag.tlvmedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] eas4.emediate.eu [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.adition.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.adition.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad4.adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad3.adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] server.adform.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adform.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] statse.webtrendslive.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .unister-adservices.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad1.adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .rotator.wigetmedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .zanox.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad2.adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .quartermedia.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .quartermedia.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .weborama.fr [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .weborama.fr [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .weborama.fr [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .weborama.fr [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .weboramadata.solution.weborama.fr [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .weboramadata.solution.weborama.fr [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .adviva.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .tribalfusion.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .liveperson.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] server.lon.liveperson.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] mediathek.daserste.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ZA9WU5MW.DEFAULT\COOKIES.SQLITE ] .divx.112.2o7.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ] cdn2.themis-media.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\6WNJH8J8 ] cdn5.specificclick.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\6WNJH8J8 ] files.youporn.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\6WNJH8J8 ] findel.scene7.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\6WNJH8J8 ] imagesrv.adition.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\6WNJH8J8 ] media.scanscout.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\6WNJH8J8 ] mediathek.daserste.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\6WNJH8J8 ] secure-us.imrworldwide.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\6WNJH8J8 ] www.euros4click.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\6WNJH8J8 ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT[9].TXT [ /ATDMT ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@SERVING-SYS[7].TXT [ /SERVING-SYS ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@SERVING-SYS[6].TXT [ /SERVING-SYS ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@TRADEDOUBLER[4].TXT [ /TRADEDOUBLER ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@WWW.ETRACKER[2].TXT [ /WWW.ETRACKER ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@TRAFFICTRACK[1].TXT [ /TRAFFICTRACK ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@TRADEDOUBLER[3].TXT [ /TRADEDOUBLER ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT.COMBING[5].TXT [ /ATDMT.COMBING ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@BS.SERVING-SYS[8].TXT [ /BS.SERVING-SYS ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@BS.SERVING-SYS[1].TXT [ /BS.SERVING-SYS ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT.COMBING[8].TXT [ /ATDMT.COMBING ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@SERVER.LON.LIVEPERSON[4].TXT [ /SERVER.LON.LIVEPERSON ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT[10].TXT [ /ATDMT ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@DOUBLECLICK[2].TXT [ /DOUBLECLICK ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@SERVER.LON.LIVEPERSON[5].TXT [ /SERVER.LON.LIVEPERSON ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@AD.YIELDMANAGER[2].TXT [ /AD.YIELDMANAGER ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT[2].TXT [ /ATDMT ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ZEDO[3].TXT [ /ZEDO ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@APMEBF[1].TXT [ /APMEBF ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT[3].TXT [ /ATDMT ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@BS.SERVING-SYS[4].TXT [ /BS.SERVING-SYS ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@STATSE.WEBTRENDSLIVE[1].TXT [ /STATSE.WEBTRENDSLIVE ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@MEDIAPLEX[3].TXT [ /MEDIAPLEX ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT.COMBING[2].TXT [ /ATDMT.COMBING ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@KONTERA[2].TXT [ /KONTERA ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@CHITIKA[1].TXT [ /CHITIKA ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@SERVING-SYS[2].TXT [ /SERVING-SYS ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT[6].TXT [ /ATDMT ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@BS.SERVING-SYS[2].TXT [ /BS.SERVING-SYS ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@SERVING-SYS[4].TXT [ /SERVING-SYS ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@WEBMASTERPLAN[2].TXT [ /WEBMASTERPLAN ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT.COMBING[4].TXT [ /ATDMT.COMBING ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT[8].TXT [ /ATDMT ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT[7].TXT [ /ATDMT ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@SERVING-SYS[1].TXT [ /SERVING-SYS ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@CONTENT.YIELDMANAGER[1].TXT [ /CONTENT.YIELDMANAGER ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ADFARM1.ADITION[2].TXT [ /ADFARM1.ADITION ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@MEDIATHEK.DASERSTE[2].TXT [ /MEDIATHEK.DASERSTE ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@STATCOUNTER[1].TXT [ /STATCOUNTER ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT.COMBING[1].TXT [ /ATDMT.COMBING ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@MEDIAPLEX[2].TXT [ /MEDIAPLEX ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT[5].TXT [ /ATDMT ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ADX.CHIP[2].TXT [ /ADX.CHIP ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@BS.SERVING-SYS[3].TXT [ /BS.SERVING-SYS ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@AUSTRIANAIRLINES.122.2O7[1].TXT [ /AUSTRIANAIRLINES.122.2O7 ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@APMEBF[2].TXT [ /APMEBF ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ZEDO[2].TXT [ /ZEDO ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@SERVING-SYS[3].TXT [ /SERVING-SYS ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@TRADEDOUBLER[2].TXT [ /TRADEDOUBLER ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@BS.SERVING-SYS[5].TXT [ /BS.SERVING-SYS ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@MSNPORTAL.112.2O7[1].TXT [ /MSNPORTAL.112.2O7 ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT.COMBING[3].TXT [ /ATDMT.COMBING ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ADFARM1.ADITION[3].TXT [ /ADFARM1.ADITION ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT[4].TXT [ /ATDMT ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ZANOX[1].TXT [ /ZANOX ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@DOUBLECLICK[1].TXT [ /DOUBLECLICK ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT[11].TXT [ /ATDMT ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ADTECH[1].TXT [ /ADTECH ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@SERVER.LON.LIVEPERSON[3].TXT [ /SERVER.LON.LIVEPERSON ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@SERVER.LON.LIVEPERSON[1].TXT [ /SERVER.LON.LIVEPERSON ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT.COMBING[7].TXT [ /ATDMT.COMBING ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@BS.SERVING-SYS[6].TXT [ /BS.SERVING-SYS ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@ATDMT[1].TXT [ /ATDMT ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@FASTCLICK[2].TXT [ /FASTCLICK ] C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\KATHI@STATCOUNTER[2].TXT [ /STATCOUNTER ] .msnportal.112.2o7.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adxpose.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .austrianairlines.122.2o7.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .gostats.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .estat.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adviva.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adviva.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adserver.adtechus.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .themis-media.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .qksrv.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .qksrv.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] www.qksrv.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .thinkgeek.112.2o7.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] media.gan-online.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] media.gan-online.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] media.gan-online.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .liveperson.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .liveperson.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .azjmp.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .azjmp.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .pointroll.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .pointroll.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] uk.sitestat.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] uk.sitestat.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .xiti.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] rotator.adjuggler.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] rotator.adjuggler.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] adsrv.admediate.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] adsrv.admediate.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] track.webtrekk.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .tyrolean.122.2o7.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .greysoundtracks.free.fr [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .greysoundtracks.free.fr [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .edsa.122.2o7.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] tracking.weinwelt.at [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] tracking.weinwelt.at [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] stat.aldi.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] stat.aldi.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .webresint.122.2o7.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] fr.sitestat.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] fr.sitestat.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .hertz.122.2o7.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .interclick.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .interclick.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .interclick.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .careers.peopleclick.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .careers.peopleclick.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .kontera.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] wstat.wibiya.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .premiumtv.122.2o7.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] user.lucidmedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .roitracking.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] eas4.emediate.eu [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] de.partypoker.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .xxxlutz.at [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .xxxlutz.at [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .xm.xtendmedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .liveperson.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .komtrack.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .komtrack.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] adsrv1.admediate.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ads.247activemedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad.adserver01.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .partypoker.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .de.partypoker.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .de.partypoker.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .de.partypoker.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .traveladvertising.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .traveladvertising.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .traveladvertising.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .traveladvertising.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .yadro.ru [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] adfarm1.adition.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .liveperson.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .snapfish.112.2o7.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] adserv.chirurgie-portal.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .friendquestions.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .friendquestions.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adcentriconline.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .clickfuse.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ads.rokatraffic.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] stat.onestat.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] stat.onestat.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad4.adfarm1.adition.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .zanox.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ww251.smartadserver.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .shinystat.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adviva.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad1.adfarm1.adition.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] tracking.oe24.at [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .youporn.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] www.star-advertising.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] www.star-advertising.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] www.star-advertising.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] www.star-advertising.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .youporn.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .youporn.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ads.crakmedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .ads.crakmedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .ads.crakmedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad3.adfarm1.adition.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] www.mediamarkt.at [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .mediabrandsww.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .yieldmanager.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad2.adfarm1.adition.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .content.yieldmanager.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .prizetrack.info [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .tracking.parktastic.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .content.yieldmanager.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .lucidmedia.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .statcounter.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] www.docfinder.at [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .docfinder.at [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .docfinder.at [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .docfinder.at [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] .liveperson.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] server.lon.liveperson.net [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] statse.webtrendslive.com [ C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\USERS\KATHI\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\S49P1GCM.DEFAULT\COOKIES.SQLITE ] Rootkit.Agent/Gen C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\PROGRAM FILES\BOB\BOB INTERNET\48200.IDX C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\PROGRAM FILES\BOB\BOB INTERNET\73720.IDX Trojan.Agent/Gen-Yoddos C:\USERS\KATHI\SICHERUNG FESTPLATTE SONY\LOKALER DATENTRäGER\PROGRAM FILES\WINRAR\DEFAULT.SFX |
10.07.2012, 09:43 | #25 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Google Links führen auf falsche Seiten Sieht ok aus, da wurden nur Cookies gefunden und drei Fehlalarme waren dabei Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie ) Wegen Cookies und anderer Dinge im Web: Um die Pest von vornherein zu blocken (also TrackingCookies, Werbebanner etc.) müsstest du dir mal sowas wie MVPS Hosts File anschauen => Blocking Unwanted Parasites with a Hosts File - sinnvollerweise solltest du alle 4 Wochen mal bei MVPS nachsehen, ob er eine neue Hosts Datei herausgebracht hat. Ansonsten gibt es noch gute Cookiemanager, Erweiterungen für den Firefox zB wäre da CookieCuller http://filepony.de/download-cookie_culler/ Wenn du aber damit leben kannst, dich bei jeder Browsersession überall neu einzuloggen (zB Facebook, Ebay, GMX, oder auch Trojaner-Board) dann stell den Browser einfach so ein, dass einfach alles beim Beenden des Browser inkl. Cookies gelöscht wird. Ich halte es so, dass ich zum "wilden Surfen" den Opera-Browser oder Chromium unter meinem Linux verwende. Mein Hauptbrowser (Firefox) speichert nur die Cookies von den Sites die ich auch will, alles andere lehne ich manuell ab (der FF fragt mich immer) - die anderen Browser nehmen alles an Cookies zwar an, aber spätestens beim nächsten Start von Opera oder Chromium sind keine Cookies mehr da. Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
__________________ Logfiles bitte immer in CODE-Tags posten |
10.07.2012, 12:15 | #26 |
| Google Links führen auf falsche Seiten Nunja, habs gerade nochmal ausprobiert. Werde leider immer noch über rocketnews etc. weitergeleitet Aber danke für den Tipp mit den Cookies, werde mir da vlt das ein oder andere Tool runterladen, bin zb. von Adblock ziehmlich begeistert!! lg Faulwurf |
10.07.2012, 14:16 | #27 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Google Links führen auf falsche Seiten adwCleaner - Toolbars und ungewollte Start-/Suchseiten aufspüren Downloade Dir bitte AdwCleaner auf deinen Desktop.
__________________ Logfiles bitte immer in CODE-Tags posten |
10.07.2012, 14:29 | #28 |
| Google Links führen auf falsche Seiten Ging recht schnell Code:
ATTFilter # AdwCleaner v1.701 - Logfile created 07/10/2012 at 15:28:23 # Updated 02/07/2012 by Xplode # Operating system : Windows 7 Home Premium Service Pack 1 (64 bits) # User : Kathi - KATHI-PC # Running from : C:\Users\Kathi\Downloads\adwcleaner.exe # Option [Search] ***** [Services] ***** ***** [Files / Folders] ***** Folder Found : C:\Users\Kathi\AppData\Local\Conduit Folder Found : C:\Users\Kathi\AppData\LocalLow\Conduit Folder Found : C:\Users\Kathi\AppData\LocalLow\DVDVideoSoftTB Folder Found : C:\Users\Kathi\AppData\Roaming\OpenCandy Folder Found : C:\Users\Kathi\AppData\Roaming\Mozilla\Firefox\Profiles\za9wu5mw.default\ConduitCommon Folder Found : C:\Program Files (x86)\Conduit Folder Found : C:\Program Files (x86)\DVDVideoSoftTB File Found : C:\Program Files (x86)\Mozilla Firefox\searchplugins\babylon.xml ***** [Registry] ***** [*] Key Found : HKLM\SOFTWARE\Classes\Toolbar.CT2269050 Key Found : HKCU\Software\AppDataLow\Software\Conduit Key Found : HKCU\Software\AppDataLow\Toolbar Key Found : HKCU\Software\BabylonToolbar Key Found : HKLM\SOFTWARE\Babylon Key Found : HKLM\SOFTWARE\BabylonToolbar Key Found : HKLM\SOFTWARE\Classes\AppID\escort.DLL Key Found : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL Key Found : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL Key Found : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL Key Found : HKLM\SOFTWARE\Classes\AppID\esrv.EXE Key Found : HKLM\SOFTWARE\Classes\b Key Found : HKLM\SOFTWARE\Classes\Babylon.dskBnd Key Found : HKLM\SOFTWARE\Classes\Babylon.dskBnd.1 Key Found : HKLM\SOFTWARE\Classes\bbylnApp.appCore Key Found : HKLM\SOFTWARE\Classes\bbylnApp.appCore.1 Key Found : HKLM\SOFTWARE\Classes\escort.escortIEPane Key Found : HKLM\SOFTWARE\Classes\escort.escortIEPane.1 Key Found : HKLM\SOFTWARE\Classes\escort.escrtBtn.1 Key Found : HKLM\SOFTWARE\Classes\esrv.BabylonESrvc Key Found : HKLM\SOFTWARE\Classes\esrv.BabylonESrvc.1 Key Found : HKLM\SOFTWARE\Conduit Key Found : HKLM\SOFTWARE\DVDVideoSoftTB Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcb Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{83AA2913-C123-4146-85BD-AD8F93971D39} Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BabylonToolbar Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DVDVideoSoftTB Toolbar [x64] Key Found : HKCU\Software\AppDataLow\Software\Conduit [x64] Key Found : HKCU\Software\AppDataLow\Toolbar [x64] Key Found : HKCU\Software\BabylonToolbar [x64] Key Found : HKLM\SOFTWARE\Classes\AppID\escort.DLL [x64] Key Found : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL [x64] Key Found : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL [x64] Key Found : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL [x64] Key Found : HKLM\SOFTWARE\Classes\AppID\esrv.EXE [x64] Key Found : HKLM\SOFTWARE\Classes\b [x64] Key Found : HKLM\SOFTWARE\Classes\Babylon.dskBnd [x64] Key Found : HKLM\SOFTWARE\Classes\Babylon.dskBnd.1 [x64] Key Found : HKLM\SOFTWARE\Classes\bbylnApp.appCore [x64] Key Found : HKLM\SOFTWARE\Classes\bbylnApp.appCore.1 [x64] Key Found : HKLM\SOFTWARE\Classes\escort.escortIEPane [x64] Key Found : HKLM\SOFTWARE\Classes\escort.escortIEPane.1 [x64] Key Found : HKLM\SOFTWARE\Classes\escort.escrtBtn.1 [x64] Key Found : HKLM\SOFTWARE\Classes\esrv.BabylonESrvc [x64] Key Found : HKLM\SOFTWARE\Classes\esrv.BabylonESrvc.1 ***** [Registre - GUID] ***** Key Found : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} Key Found : HKLM\SOFTWARE\Classes\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1} Key Found : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Key Found : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} Key Found : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB} Key Found : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Key Found : HKLM\SOFTWARE\Classes\CLSID\{291BCCC1-6890-484A-89D3-318C928DAC1B} Key Found : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Key Found : HKLM\SOFTWARE\Classes\CLSID\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} Key Found : HKLM\SOFTWARE\Classes\CLSID\{B8276A94-891D-453C-9FF3-715C042A2575} Key Found : HKLM\SOFTWARE\Classes\CLSID\{D3F69D07-0AEE-47AF-87D0-1A67D4F70C68} Key Found : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1} Key Found : HKLM\SOFTWARE\Classes\CLSID\{FFB9ADCB-8C79-4C29-81D3-74D46A93D370} Key Found : HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A} Key Found : HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1} Key Found : HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D} Key Found : HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993} Key Found : HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F} Key Found : HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599} Key Found : HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047} Key Found : HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037} Key Found : HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393} Key Found : HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68} Key Found : HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020} Key Found : HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD} Key Found : HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E} Key Found : HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997} Key Found : HKLM\SOFTWARE\Classes\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E} Key Found : HKLM\SOFTWARE\Classes\TypeLib\{35C1605E-438B-4D64-AAB1-8885F097A9B1} Key Found : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Key Found : HKLM\SOFTWARE\Classes\TypeLib\{6E8BF012-2C85-4834-B10A-1B31AF173D70} Key Found : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8375D9C8-634F-4ECB-8CF5-C7416BA5D542} Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D3F69D07-0AEE-47AF-87D0-1A67D4F70C68} Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} [x64] Key Found : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} [x64] Key Found : HKLM\SOFTWARE\Classes\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1} [x64] Key Found : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} [x64] Key Found : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} [x64] Key Found : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB} [x64] Key Found : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} [x64] Key Found : HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A} [x64] Key Found : HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1} [x64] Key Found : HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D} [x64] Key Found : HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993} [x64] Key Found : HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F} [x64] Key Found : HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599} [x64] Key Found : HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047} [x64] Key Found : HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037} [x64] Key Found : HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393} [x64] Key Found : HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68} [x64] Key Found : HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020} [x64] Key Found : HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD} [x64] Key Found : HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E} [x64] Key Found : HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997} [x64] Key Found : HKLM\SOFTWARE\Classes\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E} [x64] Key Found : HKLM\SOFTWARE\Classes\TypeLib\{35C1605E-438B-4D64-AAB1-8885F097A9B1} [x64] Key Found : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} [x64] Key Found : HKLM\SOFTWARE\Classes\TypeLib\{6E8BF012-2C85-4834-B10A-1B31AF173D70} [x64] Key Found : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} [x64] Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} ***** [Internet Browsers] ***** -\\ Internet Explorer v9.0.8112.16421 [OK] Registry is clean. -\\ Mozilla Firefox v13.0.1 (de) Profile name : default File : C:\Users\Kathi\AppData\Roaming\Mozilla\Firefox\Profiles\za9wu5mw.default\prefs.js Found : user_pref("CT2269050..clientLogIsEnabled", false); Found : user_pref("CT2269050..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.as[...] Found : user_pref("CT2269050..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Re[...] Found : user_pref("CT2269050.ALLOW_SHOWING_HIDDEN_TOOLBAR", false); Found : user_pref("CT2269050.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx"); Found : user_pref("CT2269050.BrowserCompStateIsOpen_129681780741097243", true); Found : user_pref("CT2269050.CTID", "CT2269050"); Found : user_pref("CT2269050.CurrentServerDate", "21-6-2012"); Found : user_pref("CT2269050.DSInstall", true); Found : user_pref("CT2269050.DialogsAlignMode", "LTR"); Found : user_pref("CT2269050.DialogsGetterLastCheckTime", "Wed Jun 20 2012 16:07:01 GMT+0200"); Found : user_pref("CT2269050.DownloadReferralCookieData", ""); Found : user_pref("CT2269050.EMailNotifierPollDate", "Wed Jan 25 2012 12:49:16 GMT+0100"); Found : user_pref("CT2269050.EnableClickToSearchBox", false); Found : user_pref("CT2269050.EnableSearchHistory", false); Found : user_pref("CT2269050.EnableSearchSuggest", false); Found : user_pref("CT2269050.FirstServerDate", "25-1-2012"); Found : user_pref("CT2269050.FirstTime", true); Found : user_pref("CT2269050.FirstTimeFF3", true); Found : user_pref("CT2269050.FixPageNotFoundErrors", false); Found : user_pref("CT2269050.GroupingServerCheckInterval", 1440); Found : user_pref("CT2269050.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/"); Found : user_pref("CT2269050.HPInstall", true); Found : user_pref("CT2269050.HasUserGlobalKeys", true); Found : user_pref("CT2269050.HomePageProtectorEnabled", true); Found : user_pref("CT2269050.HomepageBeforeUnload", "hxxp://search.conduit.com/?ctid=CT2269050&SearchSource=[...] Found : user_pref("CT2269050.Initialize", true); Found : user_pref("CT2269050.InitializeCommonPrefs", true); Found : user_pref("CT2269050.InstallationAndCookieDataSentCount", 3); Found : user_pref("CT2269050.InstallationType", "UnknownIntegration"); Found : user_pref("CT2269050.InstalledDate", "Wed Jan 25 2012 12:49:16 GMT+0100"); Found : user_pref("CT2269050.InvalidateCache", false); Found : user_pref("CT2269050.IsGrouping", false); Found : user_pref("CT2269050.IsInitSetupIni", true); Found : user_pref("CT2269050.IsMulticommunity", false); Found : user_pref("CT2269050.IsOpenThankYouPage", false); Found : user_pref("CT2269050.IsOpenUninstallPage", false); Found : user_pref("CT2269050.IsProtectorsInit", true); Found : user_pref("CT2269050.LanguagePackLastCheckTime", "Thu Jun 21 2012 23:50:51 GMT+0200"); Found : user_pref("CT2269050.LanguagePackReloadIntervalMM", 1440); Found : user_pref("CT2269050.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...] Found : user_pref("CT2269050.LastLogin_3.12.0.7", "Sat Apr 28 2012 21:47:21 GMT+0200"); Found : user_pref("CT2269050.LastLogin_3.12.2.3", "Sun Jun 03 2012 22:20:20 GMT+0200"); Found : user_pref("CT2269050.LastLogin_3.13.0.6", "Fri Jun 22 2012 11:37:59 GMT+0200"); Found : user_pref("CT2269050.LastLogin_3.9.0.3", "Wed Jan 25 2012 12:49:21 GMT+0100"); Found : user_pref("CT2269050.LatestVersion", "3.13.0.6"); Found : user_pref("CT2269050.Locale", "en"); Found : user_pref("CT2269050.MCDetectTooltipHeight", "83"); Found : user_pref("CT2269050.MCDetectTooltipShow", false); Found : user_pref("CT2269050.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1"); Found : user_pref("CT2269050.MCDetectTooltipWidth", "295"); Found : user_pref("CT2269050.MyStuffEnabledAtInstallation", true); Found : user_pref("CT2269050.OriginalFirstVersion", "3.9.0.3"); Found : user_pref("CT2269050.RadioLastCheckTime", "Wed Jan 25 2012 12:49:23 GMT+0100"); Found : user_pref("CT2269050.RadioLastUpdateIPServer", "3"); Found : user_pref("CT2269050.RadioLastUpdateServer", "129132338014870000"); Found : user_pref("CT2269050.RadioShrinked", "shrinked"); Found : user_pref("CT2269050.RadioShrinkedFromSetup", true); Found : user_pref("CT2269050.SHRINK_TOOLBAR", 0); Found : user_pref("CT2269050.SavedHomepage", "chrome://branding/locale/browserconfig.properties"); Found : user_pref("CT2269050.SearchBackToDefaultEngine", false); Found : user_pref("CT2269050.SearchBoxWidth", 100); Found : user_pref("CT2269050.SearchCaption", "DVDVideoSoftTB Customized Web Search"); Found : user_pref("CT2269050.SearchEngineBeforeUnload", "DVDVideoSoftTB Customized Web Search"); Found : user_pref("CT2269050.SearchFromAddressBarIsInit", true); Found : user_pref("CT2269050.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT226[...] Found : user_pref("CT2269050.SearchInNewTabEnabled", true); Found : user_pref("CT2269050.SearchInNewTabIntervalMM", 1440); Found : user_pref("CT2269050.SearchInNewTabLastCheckTime", "Thu Jun 21 2012 23:47:36 GMT+0200"); Found : user_pref("CT2269050.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_T[...] Found : user_pref("CT2269050.SearchInNewTabUserEnabled", false); Found : user_pref("CT2269050.SearchProtectorEnabled", true); Found : user_pref("CT2269050.SearchProtectorToolbarDisabled", false); Found : user_pref("CT2269050.SendProtectorDataViaLogin", true); Found : user_pref("CT2269050.ServiceMapLastCheckTime", "Thu Jun 21 2012 17:14:17 GMT+0200"); Found : user_pref("CT2269050.SettingsLastCheckTime", "Fri Jun 22 2012 11:35:51 GMT+0200"); Found : user_pref("CT2269050.SettingsLastUpdate", "1340130112"); Found : user_pref("CT2269050.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT2269050&SearchSource=13"); Found : user_pref("CT2269050.ThirdPartyComponentsInterval", 504); Found : user_pref("CT2269050.ThirdPartyComponentsLastCheck", "Wed Jan 25 2012 12:49:13 GMT+0100"); Found : user_pref("CT2269050.ThirdPartyComponentsLastUpdate", "1312887586"); Found : user_pref("CT2269050.ToolbarShrinkedFromSetup", true); Found : user_pref("CT2269050.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2269050"); Found : user_pref("CT2269050.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,clien[...] Found : user_pref("CT2269050.UserID", "UN94038792108749311"); Found : user_pref("CT2269050.ValidationData_Toolbar", 2); Found : user_pref("CT2269050.WeatherNetwork", ""); Found : user_pref("CT2269050.WeatherPollDate", "Wed Jan 25 2012 12:49:23 GMT+0100"); Found : user_pref("CT2269050.WeatherUnit", "C"); Found : user_pref("CT2269050.alertChannelId", "666138"); Found : user_pref("CT2269050.approveUntrustedApps", true); Found : user_pref("CT2269050.autoDisableScopes", -1); Found : user_pref("CT2269050.backendstorage.cbfirsttime", "576564204A616E20323520323031322031323A34393A34342[...] Found : user_pref("CT2269050.backendstorage.shoppingapp.gk.exipres", "4D6F6E204A616E20333020323031322031323A[...] Found : user_pref("CT2269050.backendstorage.shoppingapp.gk.geolocation", "61757374726961"); Found : user_pref("CT2269050.components.1000034", false); Found : user_pref("CT2269050.components.1000082", false); Found : user_pref("CT2269050.components.1000234", false); Found : user_pref("CT2269050.components.129023235807856892", false); Found : user_pref("CT2269050.components.129121052374999726", false); Found : user_pref("CT2269050.components.129351672002618989", false); Found : user_pref("CT2269050.components.129351776130744254", false); Found : user_pref("CT2269050.components.129391330693125668", false); Found : user_pref("CT2269050.components.129466585396013141", false); Found : user_pref("CT2269050.components.129466585399606892", false); Found : user_pref("CT2269050.components.129681780741097243", false); Found : user_pref("CT2269050.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.c[...] Found : user_pref("CT2269050.globalFirstTimeInfoLastCheckTime", "Wed Jan 25 2012 12:49:16 GMT+0100"); Found : user_pref("CT2269050.homepageProtectorEnableByLogin", true); Found : user_pref("CT2269050.initDone", true); Found : user_pref("CT2269050.isAppTrackingManagerOn", true); Found : user_pref("CT2269050.isFirstRadioInstallation", false); Found : user_pref("CT2269050.isSearchProtectorNotifyChanges", false); Found : user_pref("CT2269050.myStuffEnabled", true); Found : user_pref("CT2269050.myStuffPublihserMinWidth", 400); Found : user_pref("CT2269050.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOr[...] Found : user_pref("CT2269050.myStuffServiceIntervalMM", 1440); Found : user_pref("CT2269050.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?Co[...] Found : user_pref("CT2269050.revertSettingsEnabled", true); Found : user_pref("CT2269050.searchProtectorDialogDelayInSec", 10); Found : user_pref("CT2269050.searchProtectorEnableByLogin", true); Found : user_pref("CT2269050.testingCtid", ""); Found : user_pref("CT2269050.toolbarAppMetaDataLastCheckTime", "Thu Jun 21 2012 17:14:17 GMT+0200"); Found : user_pref("CT2269050.toolbarContextMenuLastCheckTime", "Wed Jan 25 2012 12:49:24 GMT+0100"); Found : user_pref("CT2269050.usageEnabled", false); Found : user_pref("CT2269050.usagesFlag", 2); Found : user_pref("CommunityToolbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT2269050&Search[...] Found : user_pref("CommunityToolbar.ConduitSearchList", "DVDVideoSoftTB Customized Web Search"); Found : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2269050/CT2269050[...] Found : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2269050", [...] Found : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&lo[...] Found : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&loc[...] Found : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&lo[...] Found : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&local[...] Found : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\[...] Found : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.12[...] Found : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.12[...] Found : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13[...] Found : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.9.[...] Found : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2269050",[...] Found : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/equalizer[...] Found : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/maxi.gif"[...] Found : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/minimize.[...] Found : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/play.gif"[...] Found : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/play_mini[...] Found : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/stop.gif"[...] Found : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/vol.gif",[...] Found : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en", "\"21b[...] Found : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Kathi\\AppData\\Roaming\\Mozilla\\F[...] Found : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.9.0.3"); Found : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", ""); Found : user_pref("CommunityToolbar.ToolbarsList", "CT2269050"); Found : user_pref("CommunityToolbar.ToolbarsList2", "CT2269050"); Found : user_pref("CommunityToolbar.ToolbarsList4", "CT2269050"); Found : user_pref("CommunityToolbar.globalUserId", "2182b824-36e9-47ec-bbda-0b829cb3e2db"); Found : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true); Found : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true); Found : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Wed Jan 25 2012 12:49:2[...] Found : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com"); Found : user_pref("CommunityToolbar.notifications.locale", "en"); Found : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440); Found : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Wed Jan 25 2012 12:49:14 GMT+0100"); Found : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611"); Found : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20); Found : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com"); Found : user_pref("CommunityToolbar.notifications.showTrayIcon", false); Found : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300); Found : user_pref("CommunityToolbar.notifications.userId", "392505fd-867e-4bdf-9f3c-64a6563beb51"); Found : user_pref("CommunityToolbar.originalHomepage", "chrome://branding/locale/browserconfig.properties"); Found : user_pref("CommunityToolbar.originalSearchEngine", "chrome://browser-region/locale/region.properties[...] ************************* AdwCleaner[R1].txt - [22848 octets] - [10/07/2012 15:28:23] ########## EOF - C:\AdwCleaner[R1].txt - [22977 octets] ########## |
10.07.2012, 20:24 | #29 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Google Links führen auf falsche Seiten
__________________ Logfiles bitte immer in CODE-Tags posten |
10.07.2012, 21:42 | #30 |
| Google Links führen auf falsche Seiten Bitteeeschön Code:
ATTFilter # AdwCleaner v1.701 - Logfile created 07/10/2012 at 22:37:15 # Updated 02/07/2012 by Xplode # Operating system : Windows 7 Home Premium Service Pack 1 (64 bits) # User : Kathi - KATHI-PC # Running from : C:\Users\Kathi\Downloads\adwcleaner.exe # Option [Delete] ***** [Services] ***** ***** [Files / Folders] ***** Folder Deleted : C:\Users\Kathi\AppData\Local\Conduit Folder Deleted : C:\Users\Kathi\AppData\LocalLow\Conduit Folder Deleted : C:\Users\Kathi\AppData\LocalLow\DVDVideoSoftTB Folder Deleted : C:\Users\Kathi\AppData\Roaming\OpenCandy Folder Deleted : C:\Users\Kathi\AppData\Roaming\Mozilla\Firefox\Profiles\za9wu5mw.default\ConduitCommon Folder Deleted : C:\Program Files (x86)\Conduit Folder Deleted : C:\Program Files (x86)\DVDVideoSoftTB File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\babylon.xml ***** [Registry] ***** [*] Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT2269050 Key Deleted : HKCU\Software\AppDataLow\Software\Conduit Key Deleted : HKCU\Software\AppDataLow\Toolbar Key Deleted : HKCU\Software\BabylonToolbar Key Deleted : HKLM\SOFTWARE\Babylon Key Deleted : HKLM\SOFTWARE\BabylonToolbar Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL Key Deleted : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE Key Deleted : HKLM\SOFTWARE\Classes\b Key Deleted : HKLM\SOFTWARE\Classes\Babylon.dskBnd Key Deleted : HKLM\SOFTWARE\Classes\Babylon.dskBnd.1 Key Deleted : HKLM\SOFTWARE\Classes\bbylnApp.appCore Key Deleted : HKLM\SOFTWARE\Classes\bbylnApp.appCore.1 Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane.1 Key Deleted : HKLM\SOFTWARE\Classes\escort.escrtBtn.1 Key Deleted : HKLM\SOFTWARE\Classes\esrv.BabylonESrvc Key Deleted : HKLM\SOFTWARE\Classes\esrv.BabylonESrvc.1 Key Deleted : HKLM\SOFTWARE\Conduit Key Deleted : HKLM\SOFTWARE\DVDVideoSoftTB Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcb Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{83AA2913-C123-4146-85BD-AD8F93971D39} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BabylonToolbar Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DVDVideoSoftTB Toolbar ***** [Registre - GUID] ***** Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{35C1605E-438B-4D64-AAB1-8885F097A9B1} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB} Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{291BCCC1-6890-484A-89D3-318C928DAC1B} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B8276A94-891D-453C-9FF3-715C042A2575} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D3F69D07-0AEE-47AF-87D0-1A67D4F70C68} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1} Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FFB9ADCB-8C79-4C29-81D3-74D46A93D370} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E} Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{35C1605E-438B-4D64-AAB1-8885F097A9B1} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{6E8BF012-2C85-4834-B10A-1B31AF173D70} Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8375D9C8-634F-4ECB-8CF5-C7416BA5D542} Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D3F69D07-0AEE-47AF-87D0-1A67D4F70C68} Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} [x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A} [x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1} [x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D} [x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993} [x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F} [x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599} [x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047} [x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037} [x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393} [x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68} [x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020} [x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD} [x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E} [x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997} ***** [Internet Browsers] ***** -\\ Internet Explorer v9.0.8112.16421 [OK] Registry is clean. -\\ Mozilla Firefox v13.0.1 (de) Profile name : default File : C:\Users\Kathi\AppData\Roaming\Mozilla\Firefox\Profiles\za9wu5mw.default\prefs.js C:\Users\Kathi\AppData\Roaming\Mozilla\Firefox\Profiles\za9wu5mw.default\user.js ... Deleted ! Deleted : user_pref("CT2269050..clientLogIsEnabled", false); Deleted : user_pref("CT2269050..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.as[...] Deleted : user_pref("CT2269050..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Re[...] Deleted : user_pref("CT2269050.ALLOW_SHOWING_HIDDEN_TOOLBAR", false); Deleted : user_pref("CT2269050.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx"); Deleted : user_pref("CT2269050.BrowserCompStateIsOpen_129681780741097243", true); Deleted : user_pref("CT2269050.CTID", "CT2269050"); Deleted : user_pref("CT2269050.CurrentServerDate", "21-6-2012"); Deleted : user_pref("CT2269050.DSInstall", true); Deleted : user_pref("CT2269050.DialogsAlignMode", "LTR"); Deleted : user_pref("CT2269050.DialogsGetterLastCheckTime", "Wed Jun 20 2012 16:07:01 GMT+0200"); Deleted : user_pref("CT2269050.DownloadReferralCookieData", ""); Deleted : user_pref("CT2269050.EMailNotifierPollDate", "Wed Jan 25 2012 12:49:16 GMT+0100"); Deleted : user_pref("CT2269050.EnableClickToSearchBox", false); Deleted : user_pref("CT2269050.EnableSearchHistory", false); Deleted : user_pref("CT2269050.EnableSearchSuggest", false); Deleted : user_pref("CT2269050.FirstServerDate", "25-1-2012"); Deleted : user_pref("CT2269050.FirstTime", true); Deleted : user_pref("CT2269050.FirstTimeFF3", true); Deleted : user_pref("CT2269050.FixPageNotFoundErrors", false); Deleted : user_pref("CT2269050.GroupingServerCheckInterval", 1440); Deleted : user_pref("CT2269050.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/"); Deleted : user_pref("CT2269050.HPInstall", true); Deleted : user_pref("CT2269050.HasUserGlobalKeys", true); Deleted : user_pref("CT2269050.HomePageProtectorEnabled", true); Deleted : user_pref("CT2269050.HomepageBeforeUnload", "hxxp://search.conduit.com/?ctid=CT2269050&SearchSource=[...] Deleted : user_pref("CT2269050.Initialize", true); Deleted : user_pref("CT2269050.InitializeCommonPrefs", true); Deleted : user_pref("CT2269050.InstallationAndCookieDataSentCount", 3); Deleted : user_pref("CT2269050.InstallationType", "UnknownIntegration"); Deleted : user_pref("CT2269050.InstalledDate", "Wed Jan 25 2012 12:49:16 GMT+0100"); Deleted : user_pref("CT2269050.InvalidateCache", false); Deleted : user_pref("CT2269050.IsGrouping", false); Deleted : user_pref("CT2269050.IsInitSetupIni", true); Deleted : user_pref("CT2269050.IsMulticommunity", false); Deleted : user_pref("CT2269050.IsOpenThankYouPage", false); Deleted : user_pref("CT2269050.IsOpenUninstallPage", false); Deleted : user_pref("CT2269050.IsProtectorsInit", true); Deleted : user_pref("CT2269050.LanguagePackLastCheckTime", "Thu Jun 21 2012 23:50:51 GMT+0200"); Deleted : user_pref("CT2269050.LanguagePackReloadIntervalMM", 1440); Deleted : user_pref("CT2269050.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...] Deleted : user_pref("CT2269050.LastLogin_3.12.0.7", "Sat Apr 28 2012 21:47:21 GMT+0200"); Deleted : user_pref("CT2269050.LastLogin_3.12.2.3", "Sun Jun 03 2012 22:20:20 GMT+0200"); Deleted : user_pref("CT2269050.LastLogin_3.13.0.6", "Fri Jun 22 2012 11:37:59 GMT+0200"); Deleted : user_pref("CT2269050.LastLogin_3.9.0.3", "Wed Jan 25 2012 12:49:21 GMT+0100"); Deleted : user_pref("CT2269050.LatestVersion", "3.13.0.6"); Deleted : user_pref("CT2269050.Locale", "en"); Deleted : user_pref("CT2269050.MCDetectTooltipHeight", "83"); Deleted : user_pref("CT2269050.MCDetectTooltipShow", false); Deleted : user_pref("CT2269050.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1"); Deleted : user_pref("CT2269050.MCDetectTooltipWidth", "295"); Deleted : user_pref("CT2269050.MyStuffEnabledAtInstallation", true); Deleted : user_pref("CT2269050.OriginalFirstVersion", "3.9.0.3"); Deleted : user_pref("CT2269050.RadioLastCheckTime", "Wed Jan 25 2012 12:49:23 GMT+0100"); Deleted : user_pref("CT2269050.RadioLastUpdateIPServer", "3"); Deleted : user_pref("CT2269050.RadioLastUpdateServer", "129132338014870000"); Deleted : user_pref("CT2269050.RadioShrinked", "shrinked"); Deleted : user_pref("CT2269050.RadioShrinkedFromSetup", true); Deleted : user_pref("CT2269050.SHRINK_TOOLBAR", 0); Deleted : user_pref("CT2269050.SavedHomepage", "chrome://branding/locale/browserconfig.properties"); Deleted : user_pref("CT2269050.SearchBackToDefaultEngine", false); Deleted : user_pref("CT2269050.SearchBoxWidth", 100); Deleted : user_pref("CT2269050.SearchCaption", "DVDVideoSoftTB Customized Web Search"); Deleted : user_pref("CT2269050.SearchEngineBeforeUnload", "DVDVideoSoftTB Customized Web Search"); Deleted : user_pref("CT2269050.SearchFromAddressBarIsInit", true); Deleted : user_pref("CT2269050.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT226[...] Deleted : user_pref("CT2269050.SearchInNewTabEnabled", true); Deleted : user_pref("CT2269050.SearchInNewTabIntervalMM", 1440); Deleted : user_pref("CT2269050.SearchInNewTabLastCheckTime", "Thu Jun 21 2012 23:47:36 GMT+0200"); Deleted : user_pref("CT2269050.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_T[...] Deleted : user_pref("CT2269050.SearchInNewTabUserEnabled", false); Deleted : user_pref("CT2269050.SearchProtectorEnabled", true); Deleted : user_pref("CT2269050.SearchProtectorToolbarDisabled", false); Deleted : user_pref("CT2269050.SendProtectorDataViaLogin", true); Deleted : user_pref("CT2269050.ServiceMapLastCheckTime", "Thu Jun 21 2012 17:14:17 GMT+0200"); Deleted : user_pref("CT2269050.SettingsLastCheckTime", "Fri Jun 22 2012 11:35:51 GMT+0200"); Deleted : user_pref("CT2269050.SettingsLastUpdate", "1340130112"); Deleted : user_pref("CT2269050.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT2269050&SearchSource=13"); Deleted : user_pref("CT2269050.ThirdPartyComponentsInterval", 504); Deleted : user_pref("CT2269050.ThirdPartyComponentsLastCheck", "Wed Jan 25 2012 12:49:13 GMT+0100"); Deleted : user_pref("CT2269050.ThirdPartyComponentsLastUpdate", "1312887586"); Deleted : user_pref("CT2269050.ToolbarShrinkedFromSetup", true); Deleted : user_pref("CT2269050.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2269050"); Deleted : user_pref("CT2269050.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,clien[...] Deleted : user_pref("CT2269050.UserID", "UN94038792108749311"); Deleted : user_pref("CT2269050.ValidationData_Toolbar", 2); Deleted : user_pref("CT2269050.WeatherNetwork", ""); Deleted : user_pref("CT2269050.WeatherPollDate", "Wed Jan 25 2012 12:49:23 GMT+0100"); Deleted : user_pref("CT2269050.WeatherUnit", "C"); Deleted : user_pref("CT2269050.alertChannelId", "666138"); Deleted : user_pref("CT2269050.approveUntrustedApps", true); Deleted : user_pref("CT2269050.autoDisableScopes", -1); Deleted : user_pref("CT2269050.backendstorage.cbfirsttime", "576564204A616E20323520323031322031323A34393A34342[...] Deleted : user_pref("CT2269050.backendstorage.shoppingapp.gk.exipres", "4D6F6E204A616E20333020323031322031323A[...] Deleted : user_pref("CT2269050.backendstorage.shoppingapp.gk.geolocation", "61757374726961"); Deleted : user_pref("CT2269050.components.1000034", false); Deleted : user_pref("CT2269050.components.1000082", false); Deleted : user_pref("CT2269050.components.1000234", false); Deleted : user_pref("CT2269050.components.129023235807856892", false); Deleted : user_pref("CT2269050.components.129121052374999726", false); Deleted : user_pref("CT2269050.components.129351672002618989", false); Deleted : user_pref("CT2269050.components.129351776130744254", false); Deleted : user_pref("CT2269050.components.129391330693125668", false); Deleted : user_pref("CT2269050.components.129466585396013141", false); Deleted : user_pref("CT2269050.components.129466585399606892", false); Deleted : user_pref("CT2269050.components.129681780741097243", false); Deleted : user_pref("CT2269050.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.c[...] Deleted : user_pref("CT2269050.globalFirstTimeInfoLastCheckTime", "Wed Jan 25 2012 12:49:16 GMT+0100"); Deleted : user_pref("CT2269050.homepageProtectorEnableByLogin", true); Deleted : user_pref("CT2269050.initDone", true); Deleted : user_pref("CT2269050.isAppTrackingManagerOn", true); Deleted : user_pref("CT2269050.isFirstRadioInstallation", false); Deleted : user_pref("CT2269050.isSearchProtectorNotifyChanges", false); Deleted : user_pref("CT2269050.myStuffEnabled", true); Deleted : user_pref("CT2269050.myStuffPublihserMinWidth", 400); Deleted : user_pref("CT2269050.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOr[...] Deleted : user_pref("CT2269050.myStuffServiceIntervalMM", 1440); Deleted : user_pref("CT2269050.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?Co[...] Deleted : user_pref("CT2269050.revertSettingsEnabled", true); Deleted : user_pref("CT2269050.searchProtectorDialogDelayInSec", 10); Deleted : user_pref("CT2269050.searchProtectorEnableByLogin", true); Deleted : user_pref("CT2269050.testingCtid", ""); Deleted : user_pref("CT2269050.toolbarAppMetaDataLastCheckTime", "Thu Jun 21 2012 17:14:17 GMT+0200"); Deleted : user_pref("CT2269050.toolbarContextMenuLastCheckTime", "Wed Jan 25 2012 12:49:24 GMT+0100"); Deleted : user_pref("CT2269050.usageEnabled", false); Deleted : user_pref("CT2269050.usagesFlag", 2); Deleted : user_pref("CommunityToolbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT2269050&Search[...] Deleted : user_pref("CommunityToolbar.ConduitSearchList", "DVDVideoSoftTB Customized Web Search"); Deleted : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2269050/CT2269050[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2269050", [...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&lo[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&loc[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&lo[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&local[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.12[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.12[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.9.[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2269050",[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/equalizer[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/maxi.gif"[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/minimize.[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/play.gif"[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/play_mini[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/stop.gif"[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://storage.conduit.com/BankImages/RadioSkins/Bluenote/vol.gif",[...] Deleted : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en", "\"21b[...] Deleted : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Users\\Kathi\\AppData\\Roaming\\Mozilla\\F[...] Deleted : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.9.0.3"); Deleted : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", ""); Deleted : user_pref("CommunityToolbar.ToolbarsList", "CT2269050"); Deleted : user_pref("CommunityToolbar.ToolbarsList2", "CT2269050"); Deleted : user_pref("CommunityToolbar.ToolbarsList4", "CT2269050"); Deleted : user_pref("CommunityToolbar.globalUserId", "2182b824-36e9-47ec-bbda-0b829cb3e2db"); Deleted : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true); Deleted : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true); Deleted : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Wed Jan 25 2012 12:49:2[...] Deleted : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com"); Deleted : user_pref("CommunityToolbar.notifications.locale", "en"); Deleted : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440); Deleted : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Wed Jan 25 2012 12:49:14 GMT+0100"); Deleted : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611"); Deleted : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20); Deleted : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com"); Deleted : user_pref("CommunityToolbar.notifications.showTrayIcon", false); Deleted : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300); Deleted : user_pref("CommunityToolbar.notifications.userId", "392505fd-867e-4bdf-9f3c-64a6563beb51"); Deleted : user_pref("CommunityToolbar.originalHomepage", "chrome://branding/locale/browserconfig.properties"); Deleted : user_pref("CommunityToolbar.originalSearchEngine", "chrome://browser-region/locale/region.properties[...] ************************* AdwCleaner[S1].txt - [21284 octets] - [10/07/2012 22:37:15] ########## EOF - C:\AdwCleaner[S1].txt - [21413 octets] ########## lg Faulwurf |
Themen zu Google Links führen auf falsche Seiten |
autorun, babylon toolbar, babylontoolbar, bho, conduit, converter, dateisystem, desktop, error, fehler, firefox, flash player, format, google, heuristiks/extra, heuristiks/shuriken, home, install.exe, kaspersky, logfile, maleware, microsoft office starter 2010, microsoft support, mozilla, mp3, myphoneexplorer, nvidia update, nvpciflt.sys, officejet, plug-in, problem, pup.adware.agent, realtek, registry, rundll, safer networking, scan, searchscopes, security scan, software, svchost.exe, systweak, tastatur, version=1.0, wscript.exe |