|
Plagegeister aller Art und deren Bekämpfung: Trojaner AT/ATRAPS.GEN2, Unterstützung beim entfernenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
15.09.2012, 16:08 | #31 |
| Trojaner AT/ATRAPS.GEN2, Unterstützung beim entfernen Hi! Ich habe den genannten Eintrag fixen lassen. Hier das Log nach dem Reboot: Code:
ATTFilter 17:06:15.0457 3000 TDSS rootkit removing tool 2.8.8.0 Aug 24 2012 13:27:48 17:06:15.0597 3000 ============================================================ 17:06:15.0597 3000 Current date / time: 2012/09/15 17:06:15.0597 17:06:15.0597 3000 SystemInfo: 17:06:15.0597 3000 17:06:15.0597 3000 OS Version: 6.0.6002 ServicePack: 2.0 17:06:15.0597 3000 Product type: Workstation 17:06:15.0597 3000 ComputerName: MAUS-PC 17:06:15.0597 3000 UserName: Maus 17:06:15.0597 3000 Windows directory: C:\Windows 17:06:15.0597 3000 System windows directory: C:\Windows 17:06:15.0597 3000 Running under WOW64 17:06:15.0597 3000 Processor architecture: Intel x64 17:06:15.0597 3000 Number of processors: 4 17:06:15.0597 3000 Page size: 0x1000 17:06:15.0597 3000 Boot type: Normal boot 17:06:15.0597 3000 ============================================================ 17:06:16.0689 3000 BG loaded 17:06:17.0235 3000 Drive \Device\Harddisk0\DR0 - Size: 0x950B056000 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x13001, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 17:06:17.0251 3000 ============================================================ 17:06:17.0251 3000 \Device\Harddisk0\DR0: 17:06:17.0251 3000 MBR partitions: 17:06:17.0251 3000 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x5BEC78 17:06:17.0251 3000 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x5BECF6, BlocksNum 0x61AB7E8 17:06:17.0251 3000 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x676A51D, BlocksNum 0x61AB7E8 17:06:17.0267 3000 \Device\Harddisk0\DR0\Partition4: MBR, Type 0x7, StartLBA 0xC915D44, BlocksNum 0x61AB7E8 17:06:17.0267 3000 \Device\Harddisk0\DR0\Partition5: MBR, Type 0x7, StartLBA 0x12AC156B, BlocksNum 0x61AB7E8 17:06:17.0282 3000 \Device\Harddisk0\DR0\Partition6: MBR, Type 0x7, StartLBA 0x18C6CD92, BlocksNum 0x9C41AD8 17:06:17.0282 3000 \Device\Harddisk0\DR0\Partition7: MBR, Type 0x7, StartLBA 0x228AE8A9, BlocksNum 0x9C41AD8 17:06:17.0298 3000 \Device\Harddisk0\DR0\Partition8: MBR, Type 0x7, StartLBA 0x2C4F03C0, BlocksNum 0x9C41AD8 17:06:17.0313 3000 \Device\Harddisk0\DR0\Partition9: MBR, Type 0x7, StartLBA 0x36131ED7, BlocksNum 0x9C41AD8 17:06:17.0329 3000 \Device\Harddisk0\DR0\Partition10: MBR, Type 0x7, StartLBA 0x44B966DA, BlocksNum 0x30D7B35 17:06:17.0345 3000 \Device\Harddisk0\DR0\Partition11: MBR, Type 0x7, StartLBA 0x47C6E24E, BlocksNum 0x1388AFC 17:06:17.0360 3000 ============================================================ 17:06:17.0391 3000 C: <-> \Device\Harddisk0\DR0\Partition3 17:06:17.0423 3000 D: <-> \Device\Harddisk0\DR0\Partition1 17:06:17.0454 3000 E: <-> \Device\Harddisk0\DR0\Partition2 17:06:17.0485 3000 F: <-> \Device\Harddisk0\DR0\Partition4 17:06:17.0547 3000 G: <-> \Device\Harddisk0\DR0\Partition5 17:06:17.0563 3000 H: <-> \Device\Harddisk0\DR0\Partition6 17:06:17.0672 3000 I: <-> \Device\Harddisk0\DR0\Partition7 17:06:17.0797 3000 J: <-> \Device\Harddisk0\DR0\Partition8 17:06:17.0859 3000 K: <-> \Device\Harddisk0\DR0\Partition9 17:06:17.0906 3000 M: <-> \Device\Harddisk0\DR0\Partition10 17:06:17.0969 3000 N: <-> \Device\Harddisk0\DR0\Partition11 17:06:17.0969 3000 ============================================================ 17:06:17.0969 3000 Initialize success 17:06:17.0969 3000 ============================================================ 17:06:44.0774 3404 ============================================================ 17:06:44.0774 3404 Scan started 17:06:44.0774 3404 Mode: Manual; SigCheck; TDLFS; 17:06:44.0774 3404 ============================================================ 17:06:47.0379 3404 ================ Scan system memory ======================== 17:06:47.0379 3404 System memory - ok 17:06:47.0379 3404 ================ Scan services ============================= 17:06:47.0457 3404 [ 1965AAFFAB07E3FB03C77F81BEBA3547 ] ACPI C:\Windows\system32\drivers\acpi.sys 17:06:47.0566 3404 ACPI - ok 17:06:47.0629 3404 [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 17:06:47.0644 3404 AdobeARMservice - ok 17:06:47.0676 3404 [ 9137451D37BA1C325CD6C2DEF3D2D692 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys 17:06:47.0707 3404 adp94xx - ok 17:06:47.0722 3404 [ 01F80898DF5CC7DF19B3B11351846263 ] adpahci C:\Windows\system32\drivers\adpahci.sys 17:06:47.0738 3404 adpahci - ok 17:06:47.0738 3404 [ DA001DB13FFF45DFE9109936E265B7CC ] adpu160m C:\Windows\system32\drivers\adpu160m.sys 17:06:47.0754 3404 adpu160m - ok 17:06:47.0754 3404 [ 2B10C35C5B7C5C0C28F572E035319602 ] adpu320 C:\Windows\system32\drivers\adpu320.sys 17:06:47.0769 3404 adpu320 - ok 17:06:47.0785 3404 [ 0F421175574BFE0BF2F4D8E910A253BB ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 17:06:52.0418 3404 AeLookupSvc - ok 17:06:52.0434 3404 [ C4F6CE6087760AD70960C9EB130E7943 ] AFD C:\Windows\system32\drivers\afd.sys 17:06:52.0465 3404 AFD - ok 17:06:52.0480 3404 [ 5CCDD13BC602AE33CD8B62D33C29AB72 ] agp440 C:\Windows\system32\drivers\agp440.sys 17:06:52.0496 3404 agp440 - ok 17:06:52.0512 3404 [ 222CB641B4B8A1D1126F8033F9FD6A00 ] aic78xx C:\Windows\system32\drivers\djsvs.sys 17:06:52.0512 3404 aic78xx - ok 17:06:52.0527 3404 [ 5922F4F59B7868F3D74BBBBEB7B825A3 ] ALG C:\Windows\System32\alg.exe 17:06:52.0621 3404 ALG - ok 17:06:52.0652 3404 [ 157D0898D4B73F075CE9FA26B482DF98 ] aliide C:\Windows\system32\drivers\aliide.sys 17:06:52.0652 3404 aliide - ok 17:06:52.0683 3404 [ 20C8A3E435A47F0408A1EA674AFA6194 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe 17:06:52.0746 3404 AMD External Events Utility - ok 17:06:52.0792 3404 AMD FUEL Service - ok 17:06:52.0792 3404 [ 970FA5059E61E30D25307B99903E991E ] amdide C:\Windows\system32\drivers\amdide.sys 17:06:52.0808 3404 amdide - ok 17:06:52.0808 3404 [ 6A2EEB0C4133B20773BB3DD0B7B377B4 ] amdiox64 C:\Windows\system32\DRIVERS\amdiox64.sys 17:06:52.0824 3404 amdiox64 - ok 17:06:52.0824 3404 [ DE55DC52F7CEB89A967572D6B491ADA2 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys 17:06:52.0948 3404 AmdK8 - ok 17:06:53.0416 3404 [ 0B45C18B0F3EE996D25BAA4E74884B83 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys 17:06:53.0650 3404 amdkmdag - ok 17:06:53.0682 3404 [ 0E57258E5CC4CC7A9A9A877AFDF0CEC6 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys 17:06:53.0713 3404 amdkmdap - ok 17:06:53.0744 3404 [ 466A0D95960DAD3222C896D2CEA99993 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe 17:06:53.0760 3404 AntiVirSchedulerService - ok 17:06:53.0775 3404 [ A489BE6BB0AA1FF406B488B60542314B ] AntiVirService C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe 17:06:53.0775 3404 AntiVirService - ok 17:06:53.0791 3404 [ 676894FA57B671FEC5C3F05F8929E03B ] AntiVirWebService C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE 17:06:53.0806 3404 AntiVirWebService - ok 17:06:53.0822 3404 [ 5B25D1A753CC3A3EDB909BB759AC1098 ] AODDriver4.1 C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys 17:06:53.0822 3404 AODDriver4.1 - ok 17:06:53.0838 3404 [ 9C37B3FD5615477CB9A0CD116CF43F5C ] Appinfo C:\Windows\System32\appinfo.dll 17:06:53.0869 3404 Appinfo - ok 17:06:53.0884 3404 [ 2E8623F2FED998A97129A3DB919551C8 ] arc C:\Windows\system32\drivers\arc.sys 17:06:53.0884 3404 arc - ok 17:06:53.0916 3404 [ 741A003C041A3EC480A2E71AF71E9654 ] arcsas C:\Windows\system32\drivers\arcsas.sys 17:06:53.0931 3404 arcsas - ok 17:06:53.0947 3404 [ 22D13FF3DAFEC2A80634752B1EAA2DE6 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 17:06:53.0978 3404 AsyncMac - ok 17:06:54.0025 3404 [ E68D9B3A3905619732F7FE039466A623 ] atapi C:\Windows\system32\drivers\atapi.sys 17:06:54.0025 3404 atapi - ok 17:06:54.0056 3404 [ 917692CDF8E1CE00D9752FA40615338B ] AtiHDAudioService C:\Windows\system32\drivers\AtihdLH6.sys 17:06:54.0056 3404 AtiHDAudioService - ok 17:06:54.0087 3404 [ 79318C744693EC983D20E9337A2F8196 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 17:06:54.0118 3404 AudioEndpointBuilder - ok 17:06:54.0134 3404 [ 79318C744693EC983D20E9337A2F8196 ] AudioSrv C:\Windows\System32\Audiosrv.dll 17:06:54.0150 3404 AudioSrv - ok 17:06:54.0181 3404 [ 26E38B5A58C6C55FAFBC563EEDDB0867 ] avgntflt C:\Windows\system32\DRIVERS\avgntflt.sys 17:06:54.0196 3404 avgntflt - ok 17:06:54.0212 3404 [ 9D1F00BEFF84CBBF46D7F052BC7E0565 ] avipbb C:\Windows\system32\DRIVERS\avipbb.sys 17:06:54.0212 3404 avipbb - ok 17:06:54.0243 3404 [ 248DB59FC86DE44D2779F4C7FB1A567D ] avkmgr C:\Windows\system32\DRIVERS\avkmgr.sys 17:06:54.0243 3404 avkmgr - ok 17:06:54.0243 3404 blbdrive - ok 17:06:54.0274 3404 [ 2348447A80920B2493A9B582A23E81E1 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 17:06:54.0290 3404 bowser - ok 17:06:54.0306 3404 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys 17:06:54.0337 3404 BrFiltLo - ok 17:06:54.0352 3404 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\brfiltup.sys 17:06:54.0384 3404 BrFiltUp - ok 17:06:54.0399 3404 [ A1B39DE453433B115B4EA69EE0343816 ] Browser C:\Windows\System32\browser.dll 17:06:54.0415 3404 Browser - ok 17:06:54.0446 3404 [ F0F0BA4D815BE446AA6A4583CA3BCA9B ] Brserid C:\Windows\system32\drivers\brserid.sys 17:06:54.0493 3404 Brserid - ok 17:06:54.0508 3404 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\system32\drivers\brserwdm.sys 17:06:54.0555 3404 BrSerWdm - ok 17:06:54.0555 3404 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys 17:06:54.0618 3404 BrUsbMdm - ok 17:06:54.0633 3404 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\system32\drivers\brusbser.sys 17:06:54.0680 3404 BrUsbSer - ok 17:06:54.0696 3404 [ E0777B34E05F8A82A21856EFC900C29F ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys 17:06:54.0742 3404 BTHMODEM - ok 17:06:54.0774 3404 [ B4D787DB8D30793A4D4DF9FEED18F136 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 17:06:54.0820 3404 cdfs - ok 17:06:54.0836 3404 [ C025AA69BE3D0D25C7A2E746EF6F94FC ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 17:06:54.0852 3404 cdrom - ok 17:06:54.0867 3404 [ 5A268127633C7EE2A7FB87F39D748D56 ] CertPropSvc C:\Windows\System32\certprop.dll 17:06:54.0898 3404 CertPropSvc - ok 17:06:54.0898 3404 [ F28F00596824058BC61D5EDF434C9B82 ] circlass C:\Windows\system32\drivers\circlass.sys 17:06:54.0945 3404 circlass - ok 17:06:54.0976 3404 [ 3DCA9A18B204939CFB24BEA53E31EB48 ] CLFS C:\Windows\system32\CLFS.sys 17:06:54.0992 3404 CLFS - ok 17:06:55.0039 3404 [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 17:06:55.0054 3404 clr_optimization_v2.0.50727_32 - ok 17:06:55.0070 3404 [ CE07A466201096F021CD09D631B21540 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 17:06:55.0086 3404 clr_optimization_v2.0.50727_64 - ok 17:06:55.0086 3404 [ E5D5499A1C50A54B5161296B6AFE6192 ] cmdide C:\Windows\system32\drivers\cmdide.sys 17:06:55.0101 3404 cmdide - ok 17:06:55.0117 3404 [ 0E77A445640BF310817F60941C50560C ] Compbatt C:\Windows\system32\drivers\compbatt.sys 17:06:55.0117 3404 Compbatt - ok 17:06:55.0117 3404 COMSysApp - ok 17:06:55.0132 3404 [ B1192DCD5B9CF46BEED0E2A9E5BCF59A ] crcdisk C:\Windows\system32\drivers\crcdisk.sys 17:06:55.0132 3404 crcdisk - ok 17:06:55.0164 3404 [ 62740B9D2A137E8CED41A9E4239A7A31 ] CryptSvc C:\Windows\system32\cryptsvc.dll 17:06:55.0195 3404 CryptSvc - ok 17:06:55.0210 3404 [ CF8B9A3A5E7DC57724A89D0C3E8CF9EF ] DcomLaunch C:\Windows\system32\rpcss.dll 17:06:55.0242 3404 DcomLaunch - ok 17:06:55.0273 3404 [ 8B722BA35205C71E7951CDC4CDBADE19 ] DfsC C:\Windows\system32\Drivers\dfsc.sys 17:06:55.0320 3404 DfsC - ok 17:06:55.0398 3404 [ C647F468F7DE343DF8C143655C5557D4 ] DFSR C:\Windows\system32\DFSR.exe 17:06:55.0522 3404 DFSR - ok 17:06:55.0538 3404 [ 3ED0321127CE70ACDAABBF77E157C2A7 ] Dhcp C:\Windows\System32\dhcpcsvc.dll 17:06:55.0569 3404 Dhcp - ok 17:06:55.0569 3404 [ B0107E40ECDB5FA692EBF832F295D905 ] disk C:\Windows\system32\drivers\disk.sys 17:06:55.0585 3404 disk - ok 17:06:55.0600 3404 [ 06230F1B721494A6DF8D47FD395BB1B0 ] Dnscache C:\Windows\System32\dnsrslvr.dll 17:06:55.0632 3404 Dnscache - ok 17:06:55.0647 3404 [ 1A7156DD1E850E9914E5E991E3225B94 ] dot3svc C:\Windows\System32\dot3svc.dll 17:06:55.0663 3404 dot3svc - ok 17:06:55.0694 3404 [ 1583B39790DB3EAEC7EDB0CB0140C708 ] DPS C:\Windows\system32\dps.dll 17:06:55.0741 3404 DPS - ok 17:06:55.0756 3404 [ F1A78A98CFC2EE02144C6BEC945447E6 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 17:06:55.0788 3404 drmkaud - ok 17:06:55.0803 3404 [ B8E554E502D5123BC111F99D6A2181B4 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 17:06:55.0834 3404 DXGKrnl - ok 17:06:55.0850 3404 [ D57FE09B575545738A73A0C193D0616A ] E1G60 C:\Windows\system32\DRIVERS\E1G6032E.sys 17:06:55.0897 3404 E1G60 - ok 17:06:55.0912 3404 [ C2303883FD9BE49DC36A6400643002EA ] EapHost C:\Windows\System32\eapsvc.dll 17:06:55.0944 3404 EapHost - ok 17:06:55.0959 3404 [ 5F94962BE5A62DB6E447FF6470C4F48A ] Ecache C:\Windows\system32\drivers\ecache.sys 17:06:55.0975 3404 Ecache - ok 17:06:56.0006 3404 [ 14CE384D2E27B64C256BDA4DC39C312D ] ehRecvr C:\Windows\ehome\ehRecvr.exe 17:06:56.0037 3404 ehRecvr - ok 17:06:56.0053 3404 [ B93159C1313D66FDFBBE876F5189CD52 ] ehSched C:\Windows\ehome\ehsched.exe 17:06:56.0068 3404 ehSched - ok 17:06:56.0084 3404 [ F5EE2527D74449868E3C3227A59BCD28 ] ehstart C:\Windows\ehome\ehstart.dll 17:06:56.0100 3404 ehstart - ok 17:06:56.0115 3404 [ 3D6298AFF3FE06C0616CE5D090A3EEAA ] elxstor C:\Windows\system32\drivers\elxstor.sys 17:06:56.0131 3404 elxstor - ok 17:06:56.0146 3404 [ A9B18B63A4FD6BAAB83326706D857FAB ] EMDMgmt C:\Windows\system32\emdmgmt.dll 17:06:56.0193 3404 EMDMgmt - ok 17:06:56.0224 3404 [ E12F22B73F153DECE721CD45EC05B4AF ] EventSystem C:\Windows\system32\es.dll 17:06:56.0256 3404 EventSystem - ok 17:06:56.0256 3404 [ 486844F47B6636044A42454614ED4523 ] exfat C:\Windows\system32\drivers\exfat.sys 17:06:56.0287 3404 exfat - ok 17:06:56.0302 3404 [ 1A4BEE34277784619DDAF0422C0C6E23 ] fastfat C:\Windows\system32\drivers\fastfat.sys 17:06:56.0318 3404 fastfat - ok 17:06:56.0334 3404 [ 81B79B6DF71FA1D2C6D688D830616E39 ] fdc C:\Windows\system32\DRIVERS\fdc.sys 17:06:56.0365 3404 fdc - ok 17:06:56.0396 3404 [ BB9267ACACD8B7533DD936C34A0CBA5E ] fdPHost C:\Windows\system32\fdPHost.dll 17:06:56.0427 3404 fdPHost - ok 17:06:56.0443 3404 [ 300C80931EABBE1DB7591C516EFE8D0F ] FDResPub C:\Windows\system32\fdrespub.dll 17:06:56.0490 3404 FDResPub - ok 17:06:56.0505 3404 [ 457B7D1D533E4BD62A99AED9C7BB4C59 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 17:06:56.0521 3404 FileInfo - ok 17:06:56.0536 3404 [ D421327FD6EFCCAF884A54C58E1B0D7F ] Filetrace C:\Windows\system32\drivers\filetrace.sys 17:06:56.0568 3404 Filetrace - ok 17:06:56.0583 3404 [ 230923EA2B80F79B0F88D90F87B87EBD ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 17:06:56.0599 3404 flpydisk - ok 17:06:56.0614 3404 [ E3041BC26D6930D61F42AEDB79C91720 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 17:06:56.0630 3404 FltMgr - ok 17:06:56.0677 3404 [ DE67B1AFAB1DDB6CA0BBA89A776F26FA ] FontCache C:\Windows\system32\FntCache.dll 17:06:56.0708 3404 FontCache - ok 17:06:56.0739 3404 [ BC5B0BE5AF3510B0FD8C140EE42C6D3E ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 17:06:56.0739 3404 FontCache3.0.0.0 - ok 17:06:56.0770 3404 [ 03EC8C6EEB24E245DAD858C9FC6A1B68 ] ForceWare Intelligent Application Manager (IAM) C:\Program Files\bin32\nSvcAppFlt.exe 17:06:56.0833 3404 ForceWare Intelligent Application Manager (IAM) ( UnsignedFile.Multi.Generic ) - warning 17:06:56.0833 3404 ForceWare Intelligent Application Manager (IAM) - detected UnsignedFile.Multi.Generic (1) 17:06:56.0848 3404 [ 5779B86CD8B32519FBECB136394D946A ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 17:06:56.0880 3404 Fs_Rec - ok 17:06:56.0895 3404 [ B54520CC7B4B55134D7527B1CD3FC1F2 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys 17:06:56.0911 3404 gagp30kx - ok 17:06:56.0926 3404 [ A0E1B575BA8F504968CD40C0FAEB2384 ] gpsvc C:\Windows\System32\gpsvc.dll 17:06:56.0958 3404 gpsvc - ok 17:06:56.0989 3404 [ DF45F8142DC6DF9D18C39B3EFFBD0409 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 17:06:57.0036 3404 HdAudAddService - ok 17:06:57.0114 3404 [ F942C5820205F2FB453243EDFEC82A3D ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 17:06:57.0223 3404 HDAudBus - ok 17:06:57.0238 3404 [ B4881C84A180E75B8C25DC1D726C375F ] HidBth C:\Windows\system32\drivers\hidbth.sys 17:06:57.0316 3404 HidBth - ok 17:06:57.0316 3404 [ 4E77A77E2C986E8F88F996BB3E1AD829 ] HidIr C:\Windows\system32\drivers\hidir.sys 17:06:57.0363 3404 HidIr - ok 17:06:57.0379 3404 [ 59361D38A297755D46A540E450202B2A ] hidserv C:\Windows\system32\hidserv.dll 17:06:57.0394 3404 hidserv - ok 17:06:57.0394 3404 [ 443BDD2D30BB4F00795C797E2CF99EDF ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 17:06:57.0426 3404 HidUsb - ok 17:06:57.0441 3404 [ B12F367EA39C0795FD57E31242CE1A5A ] hkmsvc C:\Windows\system32\kmsvc.dll 17:06:57.0488 3404 hkmsvc - ok 17:06:57.0488 3404 [ 8EDC820115DF1E04763B2923676EA5B2 ] HpCISSs C:\Windows\system32\drivers\hpcisss.sys 17:06:57.0504 3404 HpCISSs - ok 17:06:57.0519 3404 [ 098F1E4E5C9CB5B0063A959063631610 ] HTTP C:\Windows\system32\drivers\HTTP.sys 17:06:57.0566 3404 HTTP - ok 17:06:57.0566 3404 [ F2901763845570ECAC48E6A50EC50812 ] i2omp C:\Windows\system32\drivers\i2omp.sys 17:06:57.0582 3404 i2omp - ok 17:06:57.0597 3404 [ CBB597659A2713CE0C9CC20C88C7591F ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 17:06:57.0628 3404 i8042prt - ok 17:06:57.0644 3404 [ 72C3EE7EA3CD75A772E62AE0E5DF8B8C ] iaStorV C:\Windows\system32\drivers\iastorv.sys 17:06:57.0660 3404 iaStorV - ok 17:06:57.0691 3404 [ 749F5F8CEDCA70F2A512945325FC489D ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 17:06:57.0722 3404 idsvc - ok 17:06:57.0753 3404 [ 8C3951AD2FE886EF76C7B5027C3125D3 ] iirsp C:\Windows\system32\drivers\iirsp.sys 17:06:57.0769 3404 iirsp - ok 17:06:57.0800 3404 [ 0C9EA6E654E7B0471741E343A6C671AF ] IKEEXT C:\Windows\System32\ikeext.dll 17:06:57.0831 3404 IKEEXT - ok 17:06:57.0894 3404 [ FFC65872F4B0A1075B2AB16C676A4AEC ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 17:06:57.0925 3404 IntcAzAudAddService - ok 17:06:57.0940 3404 [ 36A266C673812878996F72B200203FBB ] intelide C:\Windows\system32\drivers\intelide.sys 17:06:57.0956 3404 intelide - ok 17:06:57.0972 3404 [ CD802075728E514548841DCC3F8B0220 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 17:06:58.0018 3404 intelppm - ok 17:06:58.0065 3404 [ 5624BC1BC5EEB49C0AB76A8114F05EA3 ] IPBusEnum C:\Windows\system32\ipbusenum.dll 17:06:58.0081 3404 IPBusEnum - ok 17:06:58.0096 3404 [ D8AABC341311E4780D6FCE8C73C0AD81 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 17:06:58.0128 3404 IpFilterDriver - ok 17:06:58.0128 3404 IpInIp - ok 17:06:58.0128 3404 [ EACDBBE429C6D170BDEEE0EFFCBC317B ] IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys 17:06:58.0174 3404 IPMIDRV - ok 17:06:58.0190 3404 [ B7E6212F581EA5F6AB0C3A6CEEEB89BE ] IPNAT C:\Windows\system32\DRIVERS\ipnat.sys 17:06:58.0221 3404 IPNAT - ok 17:06:58.0237 3404 [ 8C42CA155343A2F11D29FECA67FAA88D ] IRENUM C:\Windows\system32\drivers\irenum.sys 17:06:58.0268 3404 IRENUM - ok 17:06:58.0284 3404 [ D3BB520B31F28C1A065CD058E762EE73 ] isapnp C:\Windows\system32\drivers\isapnp.sys 17:06:58.0299 3404 isapnp - ok 17:06:58.0315 3404 [ E4FDF99599F27EC25D2CF6D754243520 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys 17:06:58.0330 3404 iScsiPrt - ok 17:06:58.0377 3404 [ 63C766CDC609FF8206CB447A65ABBA4A ] iteatapi C:\Windows\system32\drivers\iteatapi.sys 17:06:58.0393 3404 iteatapi - ok 17:06:58.0440 3404 [ 1281FE73B17664631D12F643CBEA3F59 ] iteraid C:\Windows\system32\drivers\iteraid.sys 17:06:58.0440 3404 iteraid - ok 17:06:58.0471 3404 [ 423696F3BA6472DD17699209B933BC26 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 17:06:58.0471 3404 kbdclass - ok 17:06:58.0486 3404 [ DBDF75D51464FBC47D0104EC3D572C05 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 17:06:58.0502 3404 kbdhid - ok 17:06:58.0518 3404 [ 260BF9C43EE12C6898A9F5AAB0FB0E5D ] KeyIso C:\Windows\system32\lsass.exe 17:06:58.0549 3404 KeyIso - ok 17:06:58.0564 3404 [ 88956AD9FA510848AD176777A6C6C1F5 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 17:06:58.0580 3404 KSecDD - ok 17:06:58.0596 3404 [ 1D419CF43DB29396ECD7113D129D94EB ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 17:06:58.0627 3404 ksthunk - ok 17:06:58.0642 3404 [ 1FAF6926F3416D3DA05C5B265491BDAE ] KtmRm C:\Windows\system32\msdtckrm.dll 17:06:58.0689 3404 KtmRm - ok 17:06:58.0705 3404 [ 50C7A3CB427E9BB5ED0708A669956AB5 ] LanmanServer C:\Windows\system32\srvsvc.dll 17:06:58.0720 3404 LanmanServer - ok 17:06:58.0752 3404 [ CAF86FC1388BE1E470F1A7B43E348ADB ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 17:06:58.0767 3404 LanmanWorkstation - ok 17:06:58.0798 3404 [ 96ECE2659B6654C10A0C310AE3A6D02C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 17:06:58.0830 3404 lltdio - ok 17:06:58.0845 3404 [ 961CCBD0B1CCB5675D64976FAE37D092 ] lltdsvc C:\Windows\System32\lltdsvc.dll 17:06:58.0892 3404 lltdsvc - ok 17:06:58.0908 3404 [ A47F8080CACC23C91FE823AD19AA5612 ] lmhosts C:\Windows\System32\lmhsvc.dll 17:06:58.0939 3404 lmhosts - ok 17:06:58.0954 3404 [ 1572F8D999C0AB4376AFDCE058A78DF9 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys 17:06:58.0970 3404 LSI_FC - ok 17:06:58.0970 3404 [ 64470979C3E3C9FF60EDFB5230C56E0E ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys 17:06:58.0986 3404 LSI_SAS - ok 17:06:59.0001 3404 [ 4CED7D3B54BFC5BBAE75C4A73C7F7428 ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys 17:06:59.0001 3404 LSI_SCSI - ok 17:06:59.0032 3404 [ 52F87B9CC8932C2A7375C3B2A9BE5E3E ] luafv C:\Windows\system32\drivers\luafv.sys 17:06:59.0064 3404 luafv - ok 17:06:59.0095 3404 [ DC8490812A3B72811AE534F423B4C206 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys 17:06:59.0110 3404 MBAMProtector - ok 17:06:59.0142 3404 [ 43683E970F008C93C9429EF428147A54 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe 17:06:59.0173 3404 MBAMService - ok 17:06:59.0204 3404 [ 22A7776C5D8EB5930EDF9C8DD0884259 ] McComponentHostService C:\Program Files (x86)\McAfee Security Scan\3.0.207\McCHSvc.exe 17:06:59.0220 3404 McComponentHostService - ok 17:06:59.0235 3404 [ 76A58DF02BD4EA29F189B82D0BEF17F8 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 17:06:59.0251 3404 Mcx2Svc - ok 17:06:59.0266 3404 [ 2F631C2939D5F2E8958935EE701D70D7 ] megasas C:\Windows\system32\drivers\megasas.sys 17:06:59.0282 3404 megasas - ok 17:06:59.0298 3404 [ 3CBE4995E80E13CCFBC42E5DCF3AC81A ] MMCSS C:\Windows\system32\mmcss.dll 17:06:59.0329 3404 MMCSS - ok 17:06:59.0344 3404 [ 59848D5CC74606F0EE7557983BB73C2E ] Modem C:\Windows\system32\drivers\modem.sys 17:06:59.0391 3404 Modem - ok 17:06:59.0422 3404 [ 505BDF0B6529338189D6FD3959EE3A89 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 17:06:59.0454 3404 monitor - ok 17:06:59.0485 3404 [ 9367304E5E412B120CF5F4EA14E4E4F1 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 17:06:59.0500 3404 mouclass - ok 17:06:59.0516 3404 [ C2C2BD5C5CE5AAF786DDD74B75D2AC69 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 17:06:59.0547 3404 mouhid - ok 17:06:59.0563 3404 [ 11BC9B1E8801B01F7F6ADB9EAD30019B ] MountMgr C:\Windows\system32\drivers\mountmgr.sys 17:06:59.0578 3404 MountMgr - ok 17:06:59.0594 3404 [ 46297FA8E30A6007F14118FC2B942FBC ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 17:06:59.0610 3404 MozillaMaintenance - ok 17:06:59.0625 3404 [ ED48EAC719EE28DB773359EB1B06E2B5 ] mpio C:\Windows\system32\drivers\mpio.sys 17:06:59.0625 3404 mpio - ok 17:06:59.0656 3404 [ C92B9ABDB65A5991E00C28F13491DBA2 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 17:06:59.0672 3404 mpsdrv - ok 17:06:59.0688 3404 [ 3C200630A89EF2C0864D515B7A75802E ] Mraid35x C:\Windows\system32\drivers\mraid35x.sys 17:06:59.0688 3404 Mraid35x - ok 17:06:59.0703 3404 [ 7C1DE4AA96DC0C071611F9E7DE02A68D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 17:06:59.0719 3404 MRxDAV - ok 17:06:59.0734 3404 [ 1485811B320FF8C7EDAD1CAEBB1C6C2B ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 17:06:59.0750 3404 mrxsmb - ok 17:06:59.0766 3404 [ 3B929A60C833FC615FD97FBA82BC7632 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 17:06:59.0781 3404 mrxsmb10 - ok 17:06:59.0812 3404 [ C64AB3E1F53B4F5B5BB6D796B2D7BEC3 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 17:06:59.0812 3404 mrxsmb20 - ok 17:06:59.0828 3404 [ EEADF970795148BFBB1DB3ABCC89C16B ] msahci C:\Windows\system32\drivers\msahci.sys 17:06:59.0844 3404 msahci - ok 17:06:59.0844 3404 [ 96D7C0A1B98434C6E4FF0C2E26A0E20A ] msdsm C:\Windows\system32\drivers\msdsm.sys 17:06:59.0859 3404 msdsm - ok 17:06:59.0859 3404 [ 7EC02CE772F068ED0BEAFA3DA341A9BC ] MSDTC C:\Windows\System32\msdtc.exe 17:06:59.0890 3404 MSDTC - ok 17:06:59.0906 3404 [ 704F59BFC4512D2BB0146AEC31B10A7C ] Msfs C:\Windows\system32\drivers\Msfs.sys 17:06:59.0937 3404 Msfs - ok 17:06:59.0953 3404 [ 00EBC952961664780D43DCA157E79B27 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 17:06:59.0968 3404 msisadrv - ok 17:06:59.0984 3404 [ 366B0C1F4478B519C181E37D43DCDA32 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 17:07:00.0015 3404 MSiSCSI - ok 17:07:00.0015 3404 msiserver - ok 17:07:00.0031 3404 [ 0EA73E498F53B96D83DBFCA074AD4CF8 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 17:07:00.0062 3404 MSKSSRV - ok 17:07:00.0062 3404 [ 52E59B7E992A58E740AA63F57EDBAE8B ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 17:07:00.0093 3404 MSPCLOCK - ok 17:07:00.0109 3404 [ 49084A75BAE043AE02D5B44D02991BB2 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 17:07:00.0140 3404 MSPQM - ok 17:07:00.0171 3404 [ DC6CCF440CDEDE4293DB41C37A5060A5 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 17:07:00.0187 3404 MsRPC - ok 17:07:00.0202 3404 [ 855796E59DF77EA93AF46F20155BF55B ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys 17:07:00.0202 3404 mssmbios - ok 17:07:00.0218 3404 [ 86D632D75D05D5B7C7C043FA3564AE86 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 17:07:00.0249 3404 MSTEE - ok 17:07:00.0280 3404 [ 6936198F2CC25B39CF5262436C80DF46 ] MTsensor C:\Windows\system32\DRIVERS\ASACPI.sys 17:07:00.0280 3404 MTsensor - ok 17:07:00.0280 3404 [ 0CC49F78D8ACA0877D885F149084E543 ] Mup C:\Windows\system32\Drivers\mup.sys 17:07:00.0296 3404 Mup - ok 17:07:00.0327 3404 [ A5B10C845E7538C60C0F5D87A57CB3F5 ] napagent C:\Windows\system32\qagentRT.dll 17:07:00.0358 3404 napagent - ok 17:07:00.0374 3404 [ 2007B826C4ACD94AE32232B41F0842B9 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 17:07:00.0390 3404 NativeWifiP - ok 17:07:00.0405 3404 [ 65950E07329FCEE8E6516B17C8D0ABB6 ] NDIS C:\Windows\system32\drivers\ndis.sys 17:07:00.0436 3404 NDIS - ok 17:07:00.0436 3404 [ 64DF698A425478E321981431AC171334 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 17:07:00.0468 3404 NdisTapi - ok 17:07:00.0483 3404 [ 8BAA43196D7B5BB972C9A6B2BBF61A19 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 17:07:00.0514 3404 Ndisuio - ok 17:07:00.0530 3404 [ F8158771905260982CE724076419EF19 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 17:07:00.0561 3404 NdisWan - ok 17:07:00.0577 3404 [ 9CB77ED7CB72850253E973A2D6AFDF49 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 17:07:00.0608 3404 NDProxy - ok 17:07:00.0624 3404 [ A499294F5029A7862ADC115BDA7371CE ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 17:07:00.0655 3404 NetBIOS - ok 17:07:00.0670 3404 [ FC2C792EBDDC8E28DF939D6A92C83D61 ] netbt C:\Windows\system32\DRIVERS\netbt.sys 17:07:00.0702 3404 netbt - ok 17:07:00.0717 3404 [ 260BF9C43EE12C6898A9F5AAB0FB0E5D ] Netlogon C:\Windows\system32\lsass.exe 17:07:00.0717 3404 Netlogon - ok 17:07:00.0748 3404 [ 9B63B29DEFC0F3115A559D2597BF5D75 ] Netman C:\Windows\System32\netman.dll 17:07:00.0795 3404 Netman - ok 17:07:00.0826 3404 [ 7846D0136CC2B264926A73047BA7688A ] netprofm C:\Windows\System32\netprofm.dll 17:07:00.0858 3404 netprofm - ok 17:07:00.0858 3404 [ 74751DDA198165947FD7454D83F49825 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe 17:07:00.0873 3404 NetTcpPortSharing - ok 17:07:00.0904 3404 [ 4AC08BD6AF2DF42E0C3196D826C8AEA7 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys 17:07:00.0904 3404 nfrd960 - ok 17:07:00.0920 3404 [ F145BF4C4668E7E312069F81EF847CFC ] NlaSvc C:\Windows\System32\nlasvc.dll 17:07:00.0967 3404 NlaSvc - ok 17:07:01.0029 3404 [ 7AEA4DF1CA68FD45DD4BBE1F0243CE7F ] NMSAccess I:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe 17:07:01.0029 3404 NMSAccess - ok 17:07:01.0076 3404 [ B298874F8E0EA93F06EC40AA8D146478 ] Npfs C:\Windows\system32\drivers\Npfs.sys 17:07:01.0092 3404 Npfs - ok 17:07:01.0107 3404 [ ACB62BAA1C319B17752553DF3026EEEB ] nsi C:\Windows\system32\nsisvc.dll 17:07:01.0138 3404 nsi - ok 17:07:01.0154 3404 [ 1523AF19EE8B030BA682F7A53537EAEB ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 17:07:01.0185 3404 nsiproxy - ok 17:07:01.0216 3404 [ C5117E7FF9F373AD470CE5379617F464 ] nSvcIp C:\Program Files\bin32\nSvcIp.exe 17:07:01.0216 3404 nSvcIp ( UnsignedFile.Multi.Generic ) - warning 17:07:01.0216 3404 nSvcIp - detected UnsignedFile.Multi.Generic (1) 17:07:01.0248 3404 [ BAC869DFB98E499BA4D9BB1FB43270E1 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 17:07:01.0310 3404 Ntfs - ok 17:07:01.0341 3404 [ DD5D684975352B85B52E3FD5347C20CB ] Null C:\Windows\system32\drivers\Null.sys 17:07:01.0372 3404 Null - ok 17:07:01.0388 3404 [ 01266516E6E88D183A2B58722EEB4443 ] nusb3hub C:\Windows\system32\DRIVERS\nusb3hub.sys 17:07:01.0404 3404 nusb3hub - ok 17:07:01.0435 3404 [ 5EC04F55CC5F165F21752712437DF638 ] nusb3xhc C:\Windows\system32\DRIVERS\nusb3xhc.sys 17:07:01.0466 3404 nusb3xhc - ok 17:07:01.0482 3404 [ CF2A023F422CE6E43302B139E4B87B05 ] NVENETFD C:\Windows\system32\DRIVERS\nvmfdx64.sys 17:07:01.0497 3404 NVENETFD - ok 17:07:01.0513 3404 [ 87A7E98A682B0B20820BE781C7758B94 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys 17:07:01.0528 3404 NVHDA - ok 17:07:01.0544 3404 [ CF2A023F422CE6E43302B139E4B87B05 ] NVNET C:\Windows\system32\DRIVERS\nvmfdx64.sys 17:07:01.0560 3404 NVNET - ok 17:07:01.0575 3404 [ 840EEB44DC49317A6161961F7682CD99 ] nvraid C:\Windows\system32\drivers\nvraid.sys 17:07:01.0591 3404 nvraid - ok 17:07:01.0591 3404 [ F6C6D8298DD85507F680437EC2E6899C ] nvsmu C:\Windows\system32\DRIVERS\nvsmu.sys 17:07:01.0606 3404 nvsmu - ok 17:07:01.0606 3404 [ 94C5334040A5D500897F4C5FD12AEEDE ] nvstor C:\Windows\system32\drivers\nvstor.sys 17:07:01.0622 3404 nvstor - ok 17:07:01.0622 3404 [ AA1B6C86A4763502E20B65C025F39BAD ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 17:07:01.0638 3404 nv_agp - ok 17:07:01.0638 3404 NwlnkFlt - ok 17:07:01.0638 3404 NwlnkFwd - ok 17:07:01.0669 3404 [ B5B1CE65AC15BBD11C0619E3EF7CFC28 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys 17:07:01.0700 3404 ohci1394 - ok 17:07:01.0716 3404 [ 9AE31D2E1D15C10D91318E0EC149CEAC ] p2pimsvc C:\Windows\system32\p2psvc.dll 17:07:01.0747 3404 p2pimsvc - ok 17:07:01.0778 3404 [ 9AE31D2E1D15C10D91318E0EC149CEAC ] p2psvc C:\Windows\system32\p2psvc.dll 17:07:01.0794 3404 p2psvc - ok 17:07:01.0809 3404 [ AECD57F94C887F58919F307C35498EA0 ] Parport C:\Windows\system32\drivers\parport.sys 17:07:01.0856 3404 Parport - ok 17:07:01.0872 3404 [ B43751085E2ABE389DA466BC62A4B987 ] partmgr C:\Windows\system32\drivers\partmgr.sys 17:07:01.0887 3404 partmgr - ok 17:07:01.0903 3404 [ 9AB157B374192FF276C1628FBDBA2B0E ] PcaSvc C:\Windows\System32\pcasvc.dll 17:07:01.0934 3404 PcaSvc - ok 17:07:01.0950 3404 [ 47AB1E0FC9D0E12BB53BA246E3A0906D ] pci C:\Windows\system32\drivers\pci.sys 17:07:01.0965 3404 pci - ok 17:07:01.0981 3404 [ 2657F6C0B78C36D95034BE109336E382 ] pciide C:\Windows\system32\drivers\pciide.sys 17:07:01.0981 3404 pciide - ok 17:07:01.0996 3404 [ 037661F3D7C507C9993B7010CEEE6288 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys 17:07:02.0012 3404 pcmcia - ok 17:07:02.0028 3404 [ 58865916F53592A61549B04941BFD80D ] PEAUTH C:\Windows\system32\drivers\peauth.sys 17:07:02.0074 3404 PEAUTH - ok 17:07:02.0121 3404 [ 0ED8727EA0172860F47258456C06CAEA ] PerfHost C:\Windows\SysWow64\perfhost.exe 17:07:02.0152 3404 PerfHost - ok 17:07:02.0215 3404 [ E9E68C1A0F25CF4A7AC966EEA74EE89E ] pla C:\Windows\system32\pla.dll 17:07:02.0277 3404 pla - ok 17:07:02.0340 3404 [ FE6B0F59215C9FD9F9D26539C58C8B82 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 17:07:02.0371 3404 PlugPlay - ok 17:07:02.0433 3404 [ 9AE31D2E1D15C10D91318E0EC149CEAC ] PNRPAutoReg C:\Windows\system32\p2psvc.dll 17:07:02.0464 3404 PNRPAutoReg - ok 17:07:02.0496 3404 [ 9AE31D2E1D15C10D91318E0EC149CEAC ] PNRPsvc C:\Windows\system32\p2psvc.dll 17:07:02.0511 3404 PNRPsvc - ok 17:07:02.0542 3404 [ 89A5560671C2D8B4A4B51F3E1AA069D8 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 17:07:02.0589 3404 PolicyAgent - ok 17:07:02.0620 3404 [ 23386E9952025F5F21C368971E2E7301 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 17:07:02.0636 3404 PptpMiniport - ok 17:07:02.0652 3404 [ 5080E59ECEE0BC923F14018803AA7A01 ] Processor C:\Windows\system32\DRIVERS\processr.sys 17:07:02.0683 3404 Processor - ok 17:07:02.0698 3404 [ E058CE4FC2449D8BFA14739C83B7FF2A ] ProfSvc C:\Windows\system32\profsvc.dll 17:07:02.0730 3404 ProfSvc - ok 17:07:02.0730 3404 [ 260BF9C43EE12C6898A9F5AAB0FB0E5D ] ProtectedStorage C:\Windows\system32\lsass.exe 17:07:02.0745 3404 ProtectedStorage - ok 17:07:02.0761 3404 [ C5AB7F0809392D0DA027F4A2A81BFA31 ] PSched C:\Windows\system32\DRIVERS\pacer.sys 17:07:02.0776 3404 PSched - ok 17:07:02.0808 3404 [ 4A29D25704917161BAD9B4659A248DFD ] ql2300 C:\Windows\system32\drivers\ql2300.sys 17:07:02.0839 3404 ql2300 - ok 17:07:02.0854 3404 [ E1C80F8D4D1E39EF9595809C1369BF2A ] ql40xx C:\Windows\system32\drivers\ql40xx.sys 17:07:02.0870 3404 ql40xx - ok 17:07:02.0886 3404 [ 90574842C3DA781E279061A3EFF91F07 ] QWAVE C:\Windows\system32\qwave.dll 17:07:02.0901 3404 QWAVE - ok 17:07:02.0917 3404 [ E8D76EDAB77EC9C634C27B8EAC33ADC5 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 17:07:02.0932 3404 QWAVEdrv - ok 17:07:02.0964 3404 [ 1013B3B663A56D3DDD784F581C1BD005 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 17:07:02.0979 3404 RasAcd - ok 17:07:03.0010 3404 [ B2AE18F847D07F0044404DDF7CB04497 ] RasAuto C:\Windows\System32\rasauto.dll 17:07:03.0057 3404 RasAuto - ok 17:07:03.0057 3404 [ AC7BC4D42A7E558718DFDEC599BBFC2C ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 17:07:03.0104 3404 Rasl2tp - ok 17:07:03.0120 3404 [ 3AD83E4046C43BE510DE681588ACB8AF ] RasMan C:\Windows\System32\rasmans.dll 17:07:03.0135 3404 RasMan - ok 17:07:03.0135 3404 [ 4517FBF8B42524AFE4EDE1DE102AAE3E ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 17:07:03.0166 3404 RasPppoe - ok 17:07:03.0166 3404 [ C6A593B51F34C33E5474539544072527 ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 17:07:03.0182 3404 RasSstp - ok 17:07:03.0182 3404 [ 322DB5C6B55E8D8EE8D6F358B2AAABB1 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 17:07:03.0213 3404 rdbss - ok 17:07:03.0229 3404 [ 603900CC05F6BE65CCBF373800AF3716 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 17:07:03.0260 3404 RDPCDD - ok 17:07:03.0291 3404 [ 2D98DDA8EDCE73DF99854BF3692CCC87 ] rdpdr C:\Windows\system32\drivers\rdpdr.sys 17:07:03.0338 3404 rdpdr - ok 17:07:03.0354 3404 [ CAB9421DAF3D97B33D0D055858E2C3AB ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 17:07:03.0385 3404 RDPENCDD - ok 17:07:03.0400 3404 [ AE4BD9E1C33D351D8E607FC81F15160C ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 17:07:03.0432 3404 RDPWD - ok 17:07:03.0447 3404 [ C612B9557DA73F70D41F8A6FBC8E5344 ] RemoteAccess C:\Windows\System32\mprdim.dll 17:07:03.0463 3404 RemoteAccess - ok 17:07:03.0478 3404 [ 44B9D8EC2F3EF3A0EFB00857AF70D861 ] RemoteRegistry C:\Windows\system32\regsvc.dll 17:07:03.0494 3404 RemoteRegistry - ok 17:07:03.0510 3404 [ F46C457840D4B7A4DAAFEE739CE04102 ] RpcLocator C:\Windows\system32\locator.exe 17:07:03.0541 3404 RpcLocator - ok 17:07:03.0556 3404 [ CF8B9A3A5E7DC57724A89D0C3E8CF9EF ] RpcSs C:\Windows\system32\rpcss.dll 17:07:03.0588 3404 RpcSs - ok 17:07:03.0603 3404 [ 22A9CB08B1A6707C1550C6BF099AAE73 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 17:07:03.0634 3404 rspndr - ok 17:07:03.0650 3404 [ 260BF9C43EE12C6898A9F5AAB0FB0E5D ] SamSs C:\Windows\system32\lsass.exe 17:07:03.0650 3404 SamSs - ok 17:07:03.0666 3404 [ CD9C693589C60AD59BBBCFB0E524E01B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 17:07:03.0666 3404 sbp2port - ok 17:07:03.0681 3404 [ FD1CDCF108D5EF3366F00D18B70FB89B ] SCardSvr C:\Windows\System32\SCardSvr.dll 17:07:03.0712 3404 SCardSvr - ok 17:07:03.0728 3404 [ 0F838C811AD295D2A4489B9993096C63 ] Schedule C:\Windows\system32\schedsvc.dll 17:07:03.0775 3404 Schedule - ok 17:07:03.0790 3404 [ 5A268127633C7EE2A7FB87F39D748D56 ] SCPolicySvc C:\Windows\System32\certprop.dll 17:07:03.0806 3404 SCPolicySvc - ok 17:07:03.0837 3404 [ 4FF71B076A7760FE75EA5AE2D0EE0018 ] SDRSVC C:\Windows\System32\SDRSVC.dll 17:07:03.0868 3404 SDRSVC - ok 17:07:03.0868 3404 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys 17:07:03.0915 3404 secdrv - ok 17:07:03.0946 3404 [ 5ACDCBC67FCF894A1815B9F96D704490 ] seclogon C:\Windows\system32\seclogon.dll 17:07:03.0978 3404 seclogon - ok 17:07:04.0009 3404 [ 90973A64B96CD647FF81C79443618EED ] SENS C:\Windows\System32\sens.dll 17:07:04.0040 3404 SENS - ok 17:07:04.0056 3404 [ 2449316316411D65BD2C761A6FFB2CE2 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 17:07:04.0087 3404 Serenum - ok 17:07:04.0118 3404 [ 4B438170BE2FC8E0BD35EE87A960F84F ] Serial C:\Windows\system32\DRIVERS\serial.sys 17:07:04.0149 3404 Serial - ok 17:07:04.0149 3404 [ A842F04833684BCEEA7336211BE478DF ] sermouse C:\Windows\system32\drivers\sermouse.sys 17:07:04.0180 3404 sermouse - ok 17:07:04.0212 3404 [ A8E4A4407A09F35DCCC3771AF590B0C4 ] SessionEnv C:\Windows\system32\sessenv.dll 17:07:04.0243 3404 SessionEnv - ok 17:07:04.0243 3404 [ 541B32F8D6B2DCB92EC43BAB267E79EA ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 17:07:04.0290 3404 sffdisk - ok 17:07:04.0290 3404 [ 446E7CCA3325C7E0AE0FDE7F73CDD9C2 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 17:07:04.0336 3404 sffp_mmc - ok 17:07:04.0336 3404 [ 67EDC221348911E895AF51C57D9A3725 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 17:07:04.0368 3404 sffp_sd - ok 17:07:04.0383 3404 [ 6B7838C94135768BD455CBDC23E39E5F ] sfloppy C:\Windows\system32\drivers\sfloppy.sys 17:07:04.0430 3404 sfloppy - ok 17:07:04.0446 3404 [ 56793271ECDEDD350C5ADD305603E963 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 17:07:04.0461 3404 ShellHWDetection - ok 17:07:04.0461 3404 [ 08DDA16573FA44F8B13AFE74597AD2E5 ] SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys 17:07:04.0477 3404 SiSRaid2 - ok 17:07:04.0492 3404 [ C52259E9DAAF3890D572D87FFEE0979E ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys 17:07:04.0492 3404 SiSRaid4 - ok 17:07:04.0586 3404 [ A9A27A8E257B45A604FDAD4F26FE7241 ] slsvc C:\Windows\system32\SLsvc.exe 17:07:04.0648 3404 slsvc - ok 17:07:04.0648 3404 [ FD74B4B7C2088E390A30C85A896FC3AF ] SLUINotify C:\Windows\system32\SLUINotify.dll 17:07:04.0664 3404 SLUINotify - ok 17:07:04.0680 3404 [ 290B6F6A0EC4FCDFC90F5CB6D7020473 ] Smb C:\Windows\system32\DRIVERS\smb.sys 17:07:04.0711 3404 Smb - ok 17:07:04.0726 3404 [ F8F47F38909823B1AF28D60B96340CFF ] SNMPTRAP C:\Windows\System32\snmptrap.exe 17:07:04.0742 3404 SNMPTRAP - ok 17:07:04.0758 3404 [ 386C3C63F00A7040C7EC5E384217E89D ] spldr C:\Windows\system32\drivers\spldr.sys 17:07:04.0773 3404 spldr - ok 17:07:04.0789 3404 [ F66FF751E7EFC816D266977939EF5DC3 ] Spooler C:\Windows\System32\spoolsv.exe 17:07:04.0820 3404 Spooler - ok 17:07:04.0836 3404 [ 880A57FCCB571EBD063D4DD50E93E46D ] srv C:\Windows\system32\DRIVERS\srv.sys 17:07:04.0867 3404 srv - ok 17:07:04.0867 3404 [ A1AD14A6D7A37891FFFECA35EBBB0730 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 17:07:04.0898 3404 srv2 - ok 17:07:04.0914 3404 [ 4BED62F4FA4D8300973F1151F4C4D8A7 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 17:07:04.0914 3404 srvnet - ok 17:07:04.0960 3404 [ 192C74646EC5725AEF3F80D19FF75F6A ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 17:07:04.0992 3404 SSDPSRV - ok 17:07:05.0054 3404 [ 2EE3FA0308E6185BA64A9A7F2E74332B ] SstpSvc C:\Windows\system32\sstpsvc.dll 17:07:05.0085 3404 SstpSvc - ok 17:07:05.0116 3404 [ E57B778208C783D8DEBAB320C16A1B82 ] StarOpen C:\Windows\system32\drivers\StarOpen.sys 17:07:05.0116 3404 StarOpen ( UnsignedFile.Multi.Generic ) - warning 17:07:05.0116 3404 StarOpen - detected UnsignedFile.Multi.Generic (1) 17:07:05.0148 3404 Steam Client Service - ok 17:07:05.0163 3404 [ 15825C1FBFB8779992CB65087F316AF5 ] stisvc C:\Windows\System32\wiaservc.dll 17:07:05.0194 3404 stisvc - ok 17:07:05.0210 3404 [ 8A851CA908B8B974F89C50D2E18D4F0C ] swenum C:\Windows\system32\DRIVERS\swenum.sys 17:07:05.0210 3404 swenum - ok 17:07:05.0226 3404 [ 6DE37F4DE19D4EFD9C48C43ADDBC949A ] swprv C:\Windows\System32\swprv.dll 17:07:05.0257 3404 swprv - ok 17:07:05.0272 3404 [ 2F26A2C6FC96B29BEFF5D8ED74E6625B ] Symc8xx C:\Windows\system32\drivers\symc8xx.sys 17:07:05.0288 3404 Symc8xx - ok 17:07:05.0288 3404 [ A909667976D3BCCD1DF813FED517D837 ] Sym_hi C:\Windows\system32\drivers\sym_hi.sys 17:07:05.0304 3404 Sym_hi - ok 17:07:05.0304 3404 [ 36887B56EC2D98B9C362F6AE4DE5B7B0 ] Sym_u3 C:\Windows\system32\drivers\sym_u3.sys 17:07:05.0319 3404 Sym_u3 - ok 17:07:05.0335 3404 [ 92D7A8B0F87B036F17D25885937897A6 ] SysMain C:\Windows\system32\sysmain.dll 17:07:05.0366 3404 SysMain - ok 17:07:05.0382 3404 [ 005CE42567F9113A3BCCB3B20073B029 ] TabletInputService C:\Windows\System32\TabSvc.dll 17:07:05.0397 3404 TabletInputService - ok 17:07:05.0413 3404 [ CC2562B4D55E0B6A4758C65407F63B79 ] TapiSrv C:\Windows\System32\tapisrv.dll 17:07:05.0444 3404 TapiSrv - ok 17:07:05.0460 3404 [ CDBE8D7C1E201B911CDC346D06617FB5 ] TBS C:\Windows\System32\tbssvc.dll 17:07:05.0491 3404 TBS - ok 17:07:05.0522 3404 [ 46D448E9117464E4D3BBF36D7E3FA48E ] Tcpip C:\Windows\system32\drivers\tcpip.sys 17:07:05.0569 3404 Tcpip - ok 17:07:05.0631 3404 [ 46D448E9117464E4D3BBF36D7E3FA48E ] Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys 17:07:05.0709 3404 Tcpip6 - ok 17:07:05.0725 3404 [ C7E72A4071EE0200E3C075DACFB2B334 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 17:07:05.0756 3404 tcpipreg - ok 17:07:05.0787 3404 [ 1D8BF4AAA5FB7A2761475781DC1195BC ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 17:07:05.0818 3404 TDPIPE - ok 17:07:05.0834 3404 [ 7F7E00CDF609DF657F4CDA02DD1C9BB1 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 17:07:05.0881 3404 TDTCP - ok 17:07:05.0881 3404 [ 458919C8C42E398DC4802178D5FFEE27 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 17:07:05.0912 3404 tdx - ok 17:07:05.0928 3404 [ 8C19678D22649EC002EF2282EAE92F98 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys 17:07:05.0928 3404 TermDD - ok 17:07:05.0943 3404 [ 5CDD30BC217082DAC71A9878D9BFD566 ] TermService C:\Windows\System32\termsrv.dll 17:07:05.0974 3404 TermService - ok 17:07:05.0990 3404 [ 56793271ECDEDD350C5ADD305603E963 ] Themes C:\Windows\system32\shsvcs.dll 17:07:06.0006 3404 Themes - ok 17:07:06.0006 3404 [ 3CBE4995E80E13CCFBC42E5DCF3AC81A ] THREADORDER C:\Windows\system32\mmcss.dll 17:07:06.0037 3404 THREADORDER - ok 17:07:06.0068 3404 [ F4689F05AF472A651A7B1B7B02D200E7 ] TrkWks C:\Windows\System32\trkwks.dll 17:07:06.0099 3404 TrkWks - ok 17:07:06.0115 3404 [ 66328B08EF5A9305D8EDE36B93930369 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 17:07:06.0130 3404 TrustedInstaller - ok 17:07:06.0146 3404 [ 9E5409CD17C8BEF193AAD498F3BC2CB8 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 17:07:06.0177 3404 tssecsrv - ok 17:07:06.0193 3404 [ 89EC74A9E602D16A75A4170511029B3C ] tunmp C:\Windows\system32\DRIVERS\tunmp.sys 17:07:06.0208 3404 tunmp - ok 17:07:06.0224 3404 [ 30A9B3F45AD081BFFC3BCAA9C812B609 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 17:07:06.0224 3404 tunnel - ok 17:07:06.0255 3404 [ E4722DFBD6232ACF17543EF2C2DCE8D2 ] uagp35 C:\Windows\system32\drivers\uagp35.sys 17:07:06.0255 3404 uagp35 - ok 17:07:06.0271 3404 [ FAF2640A2A76ED03D449E443194C4C34 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 17:07:06.0302 3404 udfs - ok 17:07:06.0333 3404 [ 060507C4113391394478F6953A79EEDC ] UI0Detect C:\Windows\system32\UI0Detect.exe 17:07:06.0349 3404 UI0Detect - ok 17:07:06.0364 3404 [ 5663D7696ABBE71F8C9D915C5374118A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 17:07:06.0364 3404 uliagpkx - ok 17:07:06.0396 3404 [ 6030B68E86A30D1B315B51C4D7778B16 ] uliahci C:\Windows\system32\drivers\uliahci.sys 17:07:06.0411 3404 uliahci - ok 17:07:06.0427 3404 [ 31707F09846056651EA2C37858F5DDB0 ] UlSata C:\Windows\system32\drivers\ulsata.sys 17:07:06.0442 3404 UlSata - ok 17:07:06.0474 3404 [ 85E5E43ED5B48C8376281BAB519271B7 ] ulsata2 C:\Windows\system32\drivers\ulsata2.sys 17:07:06.0489 3404 ulsata2 - ok 17:07:06.0489 3404 [ 46E9A994C4FED537DD951F60B86AD3F4 ] umbus C:\Windows\system32\DRIVERS\umbus.sys 17:07:06.0520 3404 umbus - ok 17:07:06.0552 3404 [ 7093799FF80E9DECA0680D2E3535BE60 ] upnphost C:\Windows\System32\upnphost.dll 17:07:06.0583 3404 upnphost - ok 17:07:06.0614 3404 [ 07E3498FC60834219D2356293DA0FECC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 17:07:06.0645 3404 usbccgp - ok 17:07:06.0661 3404 [ 9247F7E0B65852C1F6631480984D6ED2 ] usbcir C:\Windows\system32\drivers\usbcir.sys 17:07:06.0708 3404 usbcir - ok 17:07:06.0708 3404 [ 827E44DE934A736EA31E91D353EB126F ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 17:07:06.0723 3404 usbehci - ok 17:07:06.0739 3404 [ BB35CD80A2ECECFADC73569B3D70C7D1 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 17:07:06.0770 3404 usbhub - ok 17:07:06.0770 3404 [ E406B003A354776D317762694956B0FC ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys 17:07:06.0786 3404 usbohci - ok 17:07:06.0801 3404 [ 28B693B6D31E7B9332C1BDCEFEF228C1 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 17:07:06.0832 3404 usbprint - ok 17:07:06.0832 3404 [ B854C1558FCA0C269A38663E8B59B581 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 17:07:06.0864 3404 USBSTOR - ok 17:07:06.0864 3404 [ 7BF55D2538740B25936E93553E5D190D ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys 17:07:06.0910 3404 usbuhci - ok 17:07:06.0942 3404 [ D76E231E4850BB3F88A3D9A78DF191E3 ] UxSms C:\Windows\System32\uxsms.dll 17:07:06.0957 3404 UxSms - ok 17:07:06.0988 3404 [ 294945381DFA7CE58CECF0A9896AF327 ] vds C:\Windows\System32\vds.exe 17:07:07.0020 3404 vds - ok 17:07:07.0035 3404 [ 2998DC48905E9B4821AD8FD75B3E070C ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 17:07:07.0082 3404 vga - ok 17:07:07.0098 3404 [ B83AB16B51FEDA65DD81B8C59D114D63 ] VgaSave C:\Windows\System32\drivers\vga.sys 17:07:07.0129 3404 VgaSave - ok 17:07:07.0129 3404 [ 8294B6C3FDB6C33F24E150DE647ECDAA ] viaide C:\Windows\system32\drivers\viaide.sys 17:07:07.0144 3404 viaide - ok 17:07:07.0144 3404 [ 2B7E885ED951519A12C450D24535DFCA ] volmgr C:\Windows\system32\drivers\volmgr.sys 17:07:07.0160 3404 volmgr - ok 17:07:07.0191 3404 [ CEC5AC15277D75D9E5DEC2E1C6EAF877 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 17:07:07.0207 3404 volmgrx - ok 17:07:07.0222 3404 [ 5280AADA24AB36B01A84A6424C475C8D ] volsnap C:\Windows\system32\drivers\volsnap.sys 17:07:07.0238 3404 volsnap - ok 17:07:07.0238 3404 [ 410AE2C141142C58BC617FC2C677F8B0 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys 17:07:07.0269 3404 vsmraid - ok 17:07:07.0285 3404 [ B75232DAD33BFD95BF6F0A3E6BFF51E1 ] VSS C:\Windows\system32\vssvc.exe 17:07:07.0363 3404 VSS - ok 17:07:07.0378 3404 [ F14A7DE2EA41883E250892E1E5230A9A ] W32Time C:\Windows\system32\w32time.dll 17:07:07.0410 3404 W32Time - ok 17:07:07.0425 3404 [ FEF8FE5923FEAD2CEE4DFABFCE3393A7 ] WacomPen C:\Windows\system32\drivers\wacompen.sys 17:07:07.0456 3404 WacomPen - ok 17:07:07.0488 3404 [ B8E7049622300D20BA6D8BE0C47C0CFD ] Wanarp C:\Windows\system32\DRIVERS\wanarp.sys 17:07:07.0503 3404 Wanarp - ok 17:07:07.0519 3404 [ B8E7049622300D20BA6D8BE0C47C0CFD ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 17:07:07.0520 3404 Wanarpv6 - ok 17:07:07.0598 3404 [ B4E4C37D0AA6100090A53213EE2BF1C1 ] wcncsvc C:\Windows\System32\wcncsvc.dll 17:07:07.0660 3404 wcncsvc - ok 17:07:07.0691 3404 [ EA4B369560E986F19D93F45A881484AC ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 17:07:07.0722 3404 WcsPlugInService - ok 17:07:07.0738 3404 [ 59B501B0A04C9672142B7FFA2BDBF663 ] Wd C:\Windows\system32\drivers\wd.sys 17:07:07.0738 3404 Wd - ok 17:07:07.0769 3404 [ D02E7E4567DA1E7582FBF6A91144B0DF ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 17:07:07.0800 3404 Wdf01000 - ok 17:07:07.0816 3404 [ C5EFDA73EBFCA8B02A094898DE0A9276 ] WdiServiceHost C:\Windows\system32\wdi.dll 17:07:07.0847 3404 WdiServiceHost - ok 17:07:07.0847 3404 [ C5EFDA73EBFCA8B02A094898DE0A9276 ] WdiSystemHost C:\Windows\system32\wdi.dll 17:07:07.0878 3404 WdiSystemHost - ok 17:07:07.0894 3404 [ 3E6D05381CF35F75EBB055544A8ED9AC ] WebClient C:\Windows\System32\webclnt.dll 17:07:07.0910 3404 WebClient - ok 17:07:07.0956 3404 [ BD9A749F36710FFA02E0E530F7451936 ] Wecsvc C:\Windows\system32\wecsvc.dll 17:07:07.0972 3404 Wecsvc - ok 17:07:07.0988 3404 [ 9C980351D7E96288EA0C23AE232BD065 ] wercplsupport C:\Windows\System32\wercplsupport.dll 17:07:08.0003 3404 wercplsupport - ok 17:07:08.0034 3404 [ 66B9ECEBC46683F47EDC06333C075FEF ] WerSvc C:\Windows\System32\WerSvc.dll 17:07:08.0050 3404 WerSvc - ok 17:07:08.0050 3404 WinHttpAutoProxySvc - ok 17:07:08.0268 3404 [ D2E7296ED1BD26D8DB2799770C077A02 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 17:07:08.0284 3404 Winmgmt - ok 17:07:08.0315 3404 [ 42717DB2BE3A075D0F0CD5C927C27A43 ] WinRM C:\Windows\system32\WsmSvc.dll 17:07:08.0409 3404 WinRM - ok 17:07:08.0456 3404 [ EC339C8115E91BAED835957E9A677F16 ] Wlansvc C:\Windows\System32\wlansvc.dll 17:07:08.0502 3404 Wlansvc - ok 17:07:08.0534 3404 [ E18AEBAAA5A773FE11AA2C70F65320F5 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys 17:07:08.0565 3404 WmiAcpi - ok 17:07:08.0565 3404 [ 21FA389E65A852698B6A1341F36EE02D ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 17:07:08.0596 3404 wmiApSrv - ok 17:07:08.0612 3404 WMPNetworkSvc - ok 17:07:08.0643 3404 [ CBC156C913F099E6680D1DF9307DB7A8 ] WPCSvc C:\Windows\System32\wpcsvc.dll 17:07:08.0674 3404 WPCSvc - ok 17:07:08.0690 3404 [ A27C8F92D84E2DDC151978E4692C978E ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 17:07:08.0721 3404 WPDBusEnum - ok 17:07:08.0721 3404 [ 8A900348370E359B6BFF6A550E4649E1 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 17:07:08.0768 3404 ws2ifsl - ok 17:07:08.0768 3404 WSearch - ok 17:07:08.0799 3404 [ 501A65252617B495C0F1832F908D54D8 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 17:07:08.0830 3404 WUDFRd - ok 17:07:08.0846 3404 [ 6CBD51FF913C851D56ED9DC7F2A27DDE ] wudfsvc C:\Windows\System32\WUDFSvc.dll 17:07:08.0877 3404 wudfsvc - ok 17:07:08.0877 3404 ================ Scan global =============================== 17:07:08.0908 3404 [ 060DC3A7A9A2626031EB23D90151428D ] C:\Windows\system32\basesrv.dll 17:07:08.0924 3404 [ AA137104CDFC81818A309CDE32ABB74A ] C:\Windows\system32\winsrv.dll 17:07:08.0939 3404 [ AA137104CDFC81818A309CDE32ABB74A ] C:\Windows\system32\winsrv.dll 17:07:08.0970 3404 [ 934E0B7D77FF78C18D9F8891221B6DE3 ] C:\Windows\system32\services.exe 17:07:08.0970 3404 [Global] - ok 17:07:08.0970 3404 ================ Scan MBR ================================== 17:07:08.0986 3404 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 17:07:09.0298 3404 \Device\Harddisk0\DR0 - ok 17:07:09.0298 3404 ================ Scan VBR ================================== 17:07:09.0298 3404 [ AF6E1B78A52D7BA39B03D6839392A6AC ] \Device\Harddisk0\DR0\Partition1 17:07:09.0298 3404 \Device\Harddisk0\DR0\Partition1 - ok 17:07:09.0298 3404 [ 9192F4C5E5167E0E4F5D58027EEF9CC6 ] \Device\Harddisk0\DR0\Partition2 17:07:09.0298 3404 \Device\Harddisk0\DR0\Partition2 - ok 17:07:09.0329 3404 [ 51C6248CC81C7F876BAADB6A7D60D8E2 ] \Device\Harddisk0\DR0\Partition3 17:07:09.0329 3404 \Device\Harddisk0\DR0\Partition3 - ok 17:07:09.0345 3404 [ 498AA62793B74B1F1A17E47DCF0E559C ] \Device\Harddisk0\DR0\Partition4 17:07:09.0345 3404 \Device\Harddisk0\DR0\Partition4 - ok 17:07:09.0360 3404 [ E11473E0B50B173780451F496E581DD6 ] \Device\Harddisk0\DR0\Partition5 17:07:09.0360 3404 \Device\Harddisk0\DR0\Partition5 - ok 17:07:09.0376 3404 [ FA17E132BE096306B4A5C1A3189FEAD7 ] \Device\Harddisk0\DR0\Partition6 17:07:09.0376 3404 \Device\Harddisk0\DR0\Partition6 - ok 17:07:09.0376 3404 [ 4127A635E2FC156B1977278DBA3F0E05 ] \Device\Harddisk0\DR0\Partition7 17:07:09.0376 3404 \Device\Harddisk0\DR0\Partition7 - ok 17:07:09.0392 3404 [ 786605C9B7834E6863169016846DAD5F ] \Device\Harddisk0\DR0\Partition8 17:07:09.0392 3404 \Device\Harddisk0\DR0\Partition8 - ok 17:07:09.0407 3404 [ 68C1B7EECECD056403307EF614CAF735 ] \Device\Harddisk0\DR0\Partition9 17:07:09.0407 3404 \Device\Harddisk0\DR0\Partition9 - ok 17:07:09.0423 3404 [ 60A105906FC38A9CDD8E99388A79BF70 ] \Device\Harddisk0\DR0\Partition10 17:07:09.0423 3404 \Device\Harddisk0\DR0\Partition10 - ok 17:07:09.0423 3404 [ 0318AA29F92E3374646BBEE7D566DA44 ] \Device\Harddisk0\DR0\Partition11 17:07:09.0423 3404 \Device\Harddisk0\DR0\Partition11 - ok 17:07:09.0423 3404 ============================================================ 17:07:09.0423 3404 Scan finished 17:07:09.0423 3404 ============================================================ 17:07:09.0438 3396 Detected object count: 3 17:07:09.0438 3396 Actual detected object count: 3 17:07:16.0646 3396 ForceWare Intelligent Application Manager (IAM) ( UnsignedFile.Multi.Generic ) - skipped by user 17:07:16.0646 3396 ForceWare Intelligent Application Manager (IAM) ( UnsignedFile.Multi.Generic ) - User select action: Skip 17:07:16.0661 3396 nSvcIp ( UnsignedFile.Multi.Generic ) - skipped by user 17:07:16.0661 3396 nSvcIp ( UnsignedFile.Multi.Generic ) - User select action: Skip 17:07:16.0661 3396 StarOpen ( UnsignedFile.Multi.Generic ) - skipped by user 17:07:16.0661 3396 StarOpen ( UnsignedFile.Multi.Generic ) - User select action: Skip Waterdragon |
16.09.2012, 15:43 | #32 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Trojaner AT/ATRAPS.GEN2, Unterstützung beim entfernen Dann bitte jetzt CF ausführen:
__________________ComboFix Ein Leitfaden und Tutorium zur Nutzung von ComboFix
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat! Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie Zitat:
__________________ |
20.09.2012, 20:33 | #33 |
| Trojaner AT/ATRAPS.GEN2, Unterstützung beim entfernen Hi!
__________________Hier das Log von ComboFix nach dem Reboot. CombiFix meldete, dass Avira noch aktiv sei, obwohl ich es deaktiviert habe. Wahrscheinlich liefen da noch Hintergrundprozesse. Ich hoffe, das stellt kein Problem dar. Falls doch, gib bescheid. Dann lasse ich ComboFix nochmal laufen und kille die Avira-Prozesse vorher über den Taskmanager. Code:
ATTFilter ComboFix 12-09-20.02 - Maus 20.09.2012 21:14:52.1.4 - x64 Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.49.1031.18.4094.2862 [GMT 2:00] ausgeführt von:: c:\users\Maus\Desktop\ComboFix.exe AV: Avira Desktop *Enabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} SP: Avira Desktop *Enabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} * Neuer Wiederherstellungspunkt wurde erstellt . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . I:\install.exe J:\install.exe . . ((((((((((((((((((((((( Dateien erstellt von 2012-08-20 bis 2012-09-20 )))))))))))))))))))))))))))))) . . 2012-09-18 07:59 . 2012-09-18 07:59 73696 ----a-w- c:\program files (x86)\Mozilla Firefox\breakpadinjector.dll 2012-09-15 15:06 . 2012-09-15 15:06 208216 ----a-w- c:\windows\system32\drivers\44311390.sys 2012-09-15 15:02 . 2012-09-15 15:02 -------- d-----w- C:\TDSSKiller_Quarantine 2012-09-11 17:47 . 2012-09-11 17:47 -------- d-----w- C:\_OTL 2012-08-25 15:57 . 2012-08-25 15:57 -------- d-----w- c:\users\Maus\AppData\Local\NeoSmart_Technologies 2012-08-22 14:37 . 2012-08-22 14:37 -------- d-----w- c:\users\Maus\AppData\Local\Unity . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-09-15 15:05 . 2012-06-02 14:34 384512 ----a-w- c:\windows\system32\services.exe 2012-08-07 07:25 . 2012-08-07 07:25 178800 ----a-w- c:\windows\SysWow64\CmdLineExt_x64.dll 2012-08-04 10:26 . 2012-08-04 10:26 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2012-08-04 10:26 . 2012-08-04 10:26 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2012-07-15 10:00 . 2006-11-02 12:35 59701280 ----a-w- c:\windows\system32\mrt.exe 2012-07-03 11:46 . 2012-08-08 19:27 24904 ----a-w- c:\windows\system32\drivers\mbam.sys . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-10 1555968] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-04-05 641664] "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2012-08-08 348664] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008] "FreePDF Assistant"="c:\program files (x86)\FreePDF_XP\fpassist.exe" [2011-02-23 371200] "Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-07-03 462920] "NUSB3MON"="c:\program files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2011-04-14 113288] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ McAfee Security Scan Plus.lnk - c:\program files (x86)\McAfee Security Scan\3.0.207\SSScheduler.exe [2011-6-17 272528] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=0 (0x0) . S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-07-27 63960] . . HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs Themes . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="RAVCpl64.exe" [2008-05-20 6296064] "Skytel"="Skytel.exe" [2007-11-20 1826816] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm LSP: c:\program files (x86)\Avira\AntiVir Desktop\avsda.dll TCP: DhcpNameServer = 192.168.2.1 192.168.2.1 FF - ProfilePath - c:\users\Maus\AppData\Roaming\Mozilla\Firefox\Profiles\siytadi4.default\ FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - www.google.de . - - - - Entfernte verwaiste Registrierungseinträge - - - - . SafeBoot-34042434.sys AddRemove-dm-Fotowelt - l:\dm-fotowelt\uninstall.exe . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-1573093539-3000668172-1714174166-1000\Software\SecuROM\License information*] "datasecu"=hex:66,b7,d7,db,ab,af,b8,22,c3,03,4d,c9,ce,e6,ac,8a,91,eb,48,4a,e4, 3e,a1,c2,0d,7e,7c,e6,46,26,08,2f,fc,2f,ad,35,bb,61,0e,b7,f2,0a,03,eb,a8,c3,\ "rkeysecu"=hex:2f,0f,d5,3e,02,2b,06,63,b1,0b,dd,b6,71,e2,54,98 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes] "SymbolicLinkValue"=hex(6):5c,00,52,00,45,00,47,00,49,00,53,00,54,00,52,00,59, 00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\ . ------------------------ Weitere laufende Prozesse ------------------------ . c:\program files (x86)\Avira\AntiVir Desktop\sched.exe c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe i:\program files (x86)\CDBurnerXP\NMSAccessU.exe c:\program files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe . ************************************************************************** . Zeit der Fertigstellung: 2012-09-20 21:24:26 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2012-09-20 19:24 . Vor Suchlauf: 9 Verzeichnis(se), 13.894.844.416 Bytes frei Nach Suchlauf: 12 Verzeichnis(se), 14.483.804.160 Bytes frei . - - End Of File - - 43C55704A4AAD0442209B5FA8473E3CF Waterdragon |
21.09.2012, 12:17 | #34 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Trojaner AT/ATRAPS.GEN2, Unterstützung beim entfernen Bitte nun Logs mit GMER und OSAM erstellen und posten. GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen. Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst. Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM! Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none). Noch ein Hinweis: Sollte aswMBR abstürzen und es kommt eine Meldung wie "aswMBR.exe funktioniert nicht mehr, dann mach Folgendes: Starte aswMBR neu, wähle unten links im Drop-Down-Menü (unten links im Fenster von aswMBR) bei "AV scan" (none) aus und klick nochmal auf den Scan-Button.
__________________ Logfiles bitte immer in CODE-Tags posten |
22.09.2012, 15:58 | #35 |
| Trojaner AT/ATRAPS.GEN2, Unterstützung beim entfernen Hallo, hier schonmal das Log von GMER. Der Rest kommt gleich... Code:
ATTFilter GMER 1.0.15.15641 - hxxp://www.gmer.net Rootkit scan 2012-09-22 16:58:12 Windows 6.0.6002 Service Pack 2 Running: gmer.exe ---- Files - GMER 1.0.15 ---- File C:\Users\Maus\AppData\Roaming\Microsoft\Internet Explorer\UserData\AVBZGE1E\at[1].xml 58 bytes File C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\AYJNSXVF.txt 372 bytes File C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\D2DKG52Z.txt 171 bytes File C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\GB69X8U0.txt 241 bytes File C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\XCDVF0GY.txt 309 bytes ---- EOF - GMER 1.0.15 ---- Das Log von OSAM lässt sich nicht speichern. Beim Klicken auf "Save Log" passiert einfach nichts. Weder erscheint ein Dateimenü zum Speichern noch ist in den Unterverzeichnissen von OSAM ein Log zu finden. Hättest Du eine Idee, wo es hier klemmen könnte? Und hier noch das Log vom aswMBR: Code:
ATTFilter aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software Run date: 2012-09-22 17:17:44 ----------------------------- 17:17:44.911 OS Version: Windows x64 6.0.6002 Service Pack 2 17:17:44.911 Number of processors: 4 586 0x402 17:17:44.911 ComputerName: MAUS-PC UserName: Maus 17:17:45.332 Initialize success 17:17:53.226 AVAST engine defs: 12092200 17:17:59.388 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-3 17:17:59.388 Disk 0 Vendor: WDC_WD6401AALS-00L3B2 01.03B01 Size: 610480MB BusType: 3 17:17:59.419 Disk 0 MBR read successfully 17:17:59.419 Disk 0 MBR scan 17:17:59.419 Disk 0 Windows 7 default MBR code 17:17:59.419 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 2941 MB offset 63 17:17:59.419 Disk 0 Partition - 00 0F Extended LBA 607536 MB offset 6024436 17:17:59.435 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 50006 MB offset 6024438 17:17:59.435 Disk 0 Partition - 00 05 Extended 50007 MB offset 108438750 17:17:59.450 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 50006 MB offset 108438813 17:17:59.450 Disk 0 Partition - 00 05 Extended 50007 MB offset 313267439 17:17:59.466 Disk 0 Partition 4 00 07 HPFS/NTFS NTFS 50006 MB offset 210853188 17:17:59.466 Disk 0 Partition - 00 05 Extended 50007 MB offset 518096189 17:17:59.481 Disk 0 Partition 5 00 07 HPFS/NTFS NTFS 50006 MB offset 313267563 17:17:59.481 Disk 0 Partition - 00 05 Extended 80003 MB offset 722924939 17:17:59.528 Disk 0 Partition 6 00 07 HPFS/NTFS NTFS 80003 MB offset 415681938 17:17:59.528 Disk 0 Partition - 00 05 Extended 80003 MB offset 989186249 17:17:59.575 Disk 0 Partition 7 00 07 HPFS/NTFS NTFS 80003 MB offset 579528873 17:17:59.575 Disk 0 Partition - 00 05 Extended 80003 MB offset 1316880119 17:17:59.622 Disk 0 Partition 8 00 07 HPFS/NTFS NTFS 80003 MB offset 743375808 17:17:59.637 Disk 0 Partition - 00 05 Extended 80003 MB offset 1644573989 17:17:59.684 Disk 0 Partition 9 00 07 HPFS/NTFS NTFS 80003 MB offset 907222743 17:17:59.684 Disk 0 Partition - 00 05 Extended 40005 MB offset 1972267859 17:17:59.747 Disk 0 Partition 10 00 83 Linux 40005 MB offset 1071069678 17:17:59.747 Disk 0 Partition - 00 05 Extended 25007 MB offset 2218046294 17:17:59.809 Disk 0 Partition 11 00 07 HPFS/NTFS NTFS 25007 MB offset 1153001178 17:17:59.825 Disk 0 Partition - 00 05 Extended 10001 MB offset 2351193014 17:17:59.903 Disk 0 Partition 12 00 07 HPFS/NTFS NTFS 10001 MB offset 1204216398 17:17:59.903 Disk 0 Partition - 00 05 Extended 10424 MB offset 2422891109 17:17:59.981 Disk 0 Partition 13 00 83 Linux 10424 MB offset 1224699273 17:17:59.981 Disk 0 Partition - 00 05 Extended 2055 MB offset 2464724369 17:18:00.012 Disk 0 Partition 14 00 82 Linux swap 2055 MB offset 1246049658 17:18:00.121 Disk 0 scanning C:\Windows\system32\drivers 17:18:06.408 Service scanning 17:18:18.389 Modules scanning 17:18:18.389 Disk 0 trace - called modules: 17:18:18.404 ntoskrnl.exe CLASSPNP.SYS disk.sys acpi.sys ataport.SYS pciide.sys PCIIDEX.SYS hal.dll atapi.sys 17:18:18.404 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80049b6790] 17:18:18.420 3 CLASSPNP.SYS[fffffa6000fcec33] -> nt!IofCallDriver -> [0xfffffa8003b029b0] 17:18:18.420 5 acpi.sys[fffffa60008fcfde] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP2T0L0-3[0xfffffa8003b04060] 17:18:19.122 AVAST engine scan C:\Windows 17:18:20.947 AVAST engine scan C:\Windows\system32 17:20:04.531 AVAST engine scan C:\Windows\system32\drivers 17:20:11.504 AVAST engine scan C:\Users\Maus 17:21:25.277 Disk 0 MBR has been saved successfully to "C:\Users\Maus\Desktop\MBR.dat" 17:21:25.292 The log file has been saved successfully to "C:\Users\Maus\Desktop\aswMBR.txt" Waterdragon Geändert von Waterdragon (22.09.2012 um 16:25 Uhr) |
22.09.2012, 19:39 | #36 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Trojaner AT/ATRAPS.GEN2, Unterstützung beim entfernen Das mit OSAM könnte an Vista liegen. Ist nicht weiter tragisch Sieht ok aus. Wir sollten fast durch sein. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs. Denk dran beide Tools zu updaten vor dem Scan!!
__________________ --> Trojaner AT/ATRAPS.GEN2, Unterstützung beim entfernen |
23.09.2012, 21:49 | #37 |
| Trojaner AT/ATRAPS.GEN2, Unterstützung beim entfernen Hi! Hier das Log vom MBAM: Code:
ATTFilter Malwarebytes Anti-Malware 1.65.0.1400 www.malwarebytes.org Datenbank Version: v2012.09.23.04 Windows Vista Service Pack 2 x64 NTFS Internet Explorer 9.0.8112.16421 Maus :: MAUS-PC [Administrator] 23.09.2012 18:44:44 mbam-log-2012-09-23 (20-15-24).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|E:\|F:\|G:\|H:\|I:\|J:\|K:\|M:\|N:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 563049 Laufzeit: 1 Stunde(n), 3 Minute(n), 43 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 4 C:\_OTL\MovedFiles\09112012_194748\C_Windows\Installer\{7d0e6048-10f9-8155-544b-e73b2ccb76e4}\U\80000000.@ (Rootkit.0Access.64) -> Keine Aktion durchgeführt. (Ende) Code:
ATTFilter SUPERAntiSpyware Scan Log hxxp://www.superantispyware.com Generated 09/23/2012 at 10:32 PM Application Version : 5.5.1016 Core Rules Database Version : 9275 Trace Rules Database Version: 7087 Scan type : Complete Scan Total Scan Time : 02:07:41 Operating System Information Windows Vista Home Premium 64-bit, Service Pack 2 (Build 6.00.6002) UAC On - Administrator Memory items scanned : 691 Memory threats detected : 0 Registry items scanned : 63306 Registry threats detected : 0 File items scanned : 384369 File threats detected : 568 Adware.Tracking Cookie C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\maus@apmebf[2].txt [ /apmebf ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\maus@www.zanox-affiliate[2].txt [ /www.zanox-affiliate ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\maus@zanox-affiliate[2].txt [ /zanox-affiliate ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\47O9ST6U.txt [ /ad.zanox.com ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\NIULIU21.txt [ /track.adform.net ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\4I2D3D4J.txt [ /adfarm1.adition.com ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\3457L650.txt [ /imrworldwide.com ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\G2VY0OS0.txt [ /fastclick.net ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\TJ9RK6R3.txt [ /atdmt.com ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\NPFMQ4JV.txt [ /c.atdmt.com ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\DR8W6P1F.txt [ /doubleclick.net ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\67RJLUG9.txt [ /bs.serving-sys.com ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\61NP7LZW.txt [ /serving-sys.com ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\YNR3WKN5.txt [ /ad1.adfarm1.adition.com ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\0UGCC2WC.txt [ /zanox.com ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\64G9HFAR.txt [ /tracking.quisma.com ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\Y056GB2W.txt [ /accountingbusinessservice.com ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\V438OPDM.txt [ /adform.net ] C:\Users\Maus\AppData\Roaming\Microsoft\Windows\Cookies\RGAFDK09.txt [ /mediaplex.com ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\JLVBMXE8.txt [ Cookie:maus@ad.zanox.com/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\19L20QQ6.txt [ Cookie:maus@track.adform.net/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\maus@eas.apm.emediate[2].txt [ Cookie:maus@eas.apm.emediate.eu/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\TAG0HDZ4.txt [ Cookie:maus@adfarm1.adition.com/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\maus@verticaltechmedia[1].txt [ Cookie:maus@verticaltechmedia.de/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\maus@revsci[2].txt [ Cookie:maus@revsci.net/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\BH25MBFU.txt [ Cookie:maus@imrworldwide.com/cgi-bin ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\XI0F0XL9.txt [ Cookie:maus@atdmt.com/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\maus@adxpose[1].txt [ Cookie:maus@adxpose.com/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\1A5CP69R.txt [ Cookie:maus@c.atdmt.com/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\2ZR266VY.txt [ Cookie:maus@superrtl.122.2o7.net/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\ZE27T8SS.txt [ Cookie:maus@doubleclick.net/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\MHIO2WG1.txt [ Cookie:maus@invitemedia.com/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\6ZEPMYG2.txt [ Cookie:maus@serving-sys.com/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\maus@media-manager.ksk-koeln[2].txt [ Cookie:maus@media-manager.ksk-koeln.de/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\maus@adx.chip[1].txt [ Cookie:maus@adx.chip.de/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\7V1U80UN.txt [ Cookie:maus@questionmarket.com/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\1R035IQX.txt [ Cookie:maus@www.googleadservices.com/pagead/conversion/1071841491/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\X0G81UTU.txt [ Cookie:maus@c1.atdmt.com/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\maus@webmasterplan[1].txt [ Cookie:maus@webmasterplan.com/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\maus@count.asnetworks[1].txt [ Cookie:maus@count.asnetworks.de/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\CYD0W02L.txt [ Cookie:maus@ad.yieldmanager.com/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\2Y28DRMQ.txt [ Cookie:maus@adform.net/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\maus@mediaplex[1].txt [ Cookie:maus@mediaplex.com/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\maus@unitymedia[2].txt [ Cookie:maus@unitymedia.de/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\F70OX112.txt [ Cookie:maus@fl01.ct2.comclick.com/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\OJ5VR3UW.txt [ Cookie:maus@ad3.adfarm1.adition.com/ ] C:\USERS\MAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\U7ZOCYUV.txt [ Cookie:maus@adtech.de/ ] C:\USERS\MAUS\Cookies\47O9ST6U.txt [ Cookie:maus@ad.zanox.com/ ] C:\USERS\MAUS\Cookies\NIULIU21.txt [ Cookie:maus@track.adform.net/ ] C:\USERS\MAUS\Cookies\4I2D3D4J.txt [ Cookie:maus@adfarm1.adition.com/ ] C:\USERS\MAUS\Cookies\3457L650.txt [ Cookie:maus@imrworldwide.com/cgi-bin ] C:\USERS\MAUS\Cookies\maus@zanox-affiliate[2].txt [ Cookie:maus@zanox-affiliate.de/ ] C:\USERS\MAUS\Cookies\G2VY0OS0.txt [ Cookie:maus@fastclick.net/ ] C:\USERS\MAUS\Cookies\TJ9RK6R3.txt [ Cookie:maus@atdmt.com/ ] C:\USERS\MAUS\Cookies\NPFMQ4JV.txt [ Cookie:maus@c.atdmt.com/ ] C:\USERS\MAUS\Cookies\DR8W6P1F.txt [ Cookie:maus@doubleclick.net/ ] C:\USERS\MAUS\Cookies\61NP7LZW.txt [ Cookie:maus@serving-sys.com/ ] C:\USERS\MAUS\Cookies\YNR3WKN5.txt [ Cookie:maus@ad1.adfarm1.adition.com/ ] C:\USERS\MAUS\Cookies\0UGCC2WC.txt [ Cookie:maus@zanox.com/ ] C:\USERS\MAUS\Cookies\Y056GB2W.txt [ Cookie:maus@accountingbusinessservice.com/ ] C:\USERS\MAUS\Cookies\V438OPDM.txt [ Cookie:maus@adform.net/ ] C:\USERS\MAUS\Cookies\RGAFDK09.txt [ Cookie:maus@mediaplex.com/ ] C:\USERS\MAUS\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MAUS@AD.AD-SRV[1].TXT [ /AD.AD-SRV ] C:\USERS\MAUS\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MAUS@TRACKING.QUISMA[1].TXT [ /TRACKING.QUISMA ] C:\USERS\MAUS\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MAUS@AD.360YIELD[2].TXT [ /AD.360YIELD ] C:\USERS\MAUS\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MAUS@MEDIA6DEGREES[1].TXT [ /MEDIA6DEGREES ] C:\USERS\MAUS\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MAUS@LUCIDMEDIA[1].TXT [ /LUCIDMEDIA ] C:\USERS\MAUS\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MAUS@RU4[1].TXT [ /RU4 ] C:\USERS\MAUS\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\MAUS@TRACKING.MLSAT02[1].TXT [ /TRACKING.MLSAT02 ] .atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .secmedia.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .microsoftwllivemkt.112.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] tracking.tchibo.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .amazon-adsystem.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .amazon-adsystem.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .a.revenuemax.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adinterax.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .xiti.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .histats.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .lego.112.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .guj.122.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .dealtime.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .stepstone.112.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] fr.sitestat.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] fr.sitestat.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .paypal.112.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .deutschepostag.112.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .audiag.112.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .kontera.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .ikea.122.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] adserver1.vest-netz.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .e-2dj6afkyehazehp.stats.esomniture.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] wstat.wibiya.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .statcounter.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .eyewonder.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .eyewonder.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .yadro.ru [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] track.zalando.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .interclick.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .interclick.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .pro-market.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .pro-market.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .pro-market.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .gmeurope.112.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] eas4.emediate.eu [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .directadvert.ru [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tns-counter.ru [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .movitex.122.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .pro-market.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] in.getclicky.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .game-advertising-online.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .weborama.fr [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] adserver.yopi.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] adserver.yopi.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] adserver.yopi.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] tracking.olx-st.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] teufel-media.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .histats.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .e-2dj6aekikjajobp.stats.esomniture.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] media1.tchibo-content.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] tracking.point-rouge.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] tracking.point-rouge.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .discounto.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .discounto.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .discounto.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] media-manager.ksk-koeln.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .estat.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .overture.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] tracking.decorativecoatings.biz [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .aok.122.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .blogads.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] stat.dealtime.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .mmstat.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.active-tracking.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.active-tracking.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.active-tracking.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adviva.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .kaspersky.122.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .conrad.122.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] statse.webtrendslive.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .quartermedia.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .at.atwola.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .dmtracker.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .interclick.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tribalfusion.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .stats.paypal.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .microsoftsto.112.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] media-manager.ksk-koeln.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .e-2dj6wmkiwgczigp.stats.esomniture.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] media3.tchibo-content.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] server.adform.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .flagcounter.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .pointroll.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .pointroll.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .ads.pointroll.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .myroitracking.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.linuxquestions.org [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.linuxquestions.org [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] account.thequestionsnetwork.org [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] account.thequestionsnetwork.org [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .www.linuxquestions.org [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .www.linuxquestions.org [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .www.linuxquestions.org [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] counters.gigya.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .c1.atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .c1.atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .realmedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .realmedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .bs.serving-sys.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] media4.tchibo-content.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .ad-emea.doubleclick.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] server.adform.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .burstnet.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .statcounter.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www4.smartadserver.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www4.smartadserver.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .lfstmedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .accounts.google.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .accounts.google.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] accounts.google.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] accounts.google.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .cewecolor.112.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adinterax.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .clickfuse.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tracking.mindshare.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .www.burstnet.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .burstnet.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .lucidmedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tradetracker.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad4.adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .urbia.wwe-media.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] tomtailor.dyntracker.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adform.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .bs.serving-sys.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .c.atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .c.atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .c.atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .c.atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .c.atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .c.atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .yieldmanager.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .msnportal.112.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .h.atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .h.atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .h.atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .h.atdmt.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .clickfuse.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.zanox-affiliate.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.dyntracker.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .unitymedia.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .unitymedia.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] partners.webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .cunda.122.2o7.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.adserver01.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.adserver01.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tracker.vinsight.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] adx2.chip.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .zanox.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad2.adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad1.adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ww251.smartadserver.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad3.adfarm1.adition.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\MAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\SIYTADI4.DEFAULT\COOKIES.SQLITE ] cdn1.eyewonder.com [ E:\USERS\WATERDRAGON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\KV8H7UK7 ] www.alphaporno.com [ E:\USERS\WATERDRAGON\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\KV8H7UK7 ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@TRIBALFUSION[2].TXT [ /TRIBALFUSION ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@ADFARM1.ADITION[1].TXT [ /ADFARM1.ADITION ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@TRACK.WEBTREKK[1].TXT [ /TRACK.WEBTREKK ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@DOUBLECLICK[2].TXT [ /DOUBLECLICK ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@ATDMT[1].TXT [ /ATDMT ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@ADX.CHIP[1].TXT [ /ADX.CHIP ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@KOMTRACK[1].TXT [ /KOMTRACK ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@ADSRV.ADMEDIATE[1].TXT [ /ADSRV.ADMEDIATE ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@ZBOX.ZANOX[2].TXT [ /ZBOX.ZANOX ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@ADOPT.EUROCLICK[1].TXT [ /ADOPT.EUROCLICK ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@TTO2.TRAFFICTRACK[2].TXT [ /TTO2.TRAFFICTRACK ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@ADSERVER.71I[1].TXT [ /ADSERVER.71I ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@APMEBF[1].TXT [ /APMEBF ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@AD.ADSERVER01[1].TXT [ /AD.ADSERVER01 ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@BS.SERVING-SYS[1].TXT [ /BS.SERVING-SYS ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@REVENUE[2].TXT [ /REVENUE ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@AD.AD-SRV[2].TXT [ /AD.AD-SRV ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@IM.BANNER.T-ONLINE[2].TXT [ /IM.BANNER.T-ONLINE ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@2O7[2].TXT [ /2O7 ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@STAT.ALDI[2].TXT [ /STAT.ALDI ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@ADS.SUN[1].TXT [ /ADS.SUN ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@XITI[1].TXT [ /XITI ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@EUROCLICK[1].TXT [ /EUROCLICK ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@AD.ADITION[1].TXT [ /AD.ADITION ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@WWW.ETRACKER[2].TXT [ /WWW.ETRACKER ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@MICROSOFTWINDOWS.112.2O7[1].TXT [ /MICROSOFTWINDOWS.112.2O7 ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@WWW.NETDEBIT-COUNTER[1].TXT [ /WWW.NETDEBIT-COUNTER ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@SPECIFICCLICK[1].TXT [ /SPECIFICCLICK ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@ADS.HEIAS[1].TXT [ /ADS.HEIAS ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@AD.YIELDMANAGER[1].TXT [ /AD.YIELDMANAGER ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@CONTENT.YIELDMANAGER[1].TXT [ /CONTENT.YIELDMANAGER ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@SALES.LIVEPERSON[4].TXT [ /SALES.LIVEPERSON ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@SALES.LIVEPERSON[2].TXT [ /SALES.LIVEPERSON ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@SALES.LIVEPERSON[3].TXT [ /SALES.LIVEPERSON ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@TRACKING.QUISMA[2].TXT [ /TRACKING.QUISMA ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@ZANOX[2].TXT [ /ZANOX ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@MICROSOFTSTO.112.2O7[1].TXT [ /MICROSOFTSTO.112.2O7 ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@ROTATOR.ADJUGGLER[1].TXT [ /ROTATOR.ADJUGGLER ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@EAS.APM.EMEDIATE[1].TXT [ /EAS.APM.EMEDIATE ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@PENTONADS.ADVERTISING[1].TXT [ /PENTONADS.ADVERTISING ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@STATSE.WEBTRENDSLIVE[1].TXT [ /STATSE.WEBTRENDSLIVE ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@AD.71I[1].TXT [ /AD.71I ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@ADVERTISING[1].TXT [ /ADVERTISING ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@DDL-WAREZ[1].TXT [ /DDL-WAREZ ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@ADVIVA[2].TXT [ /ADVIVA ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@WWW.ADSERVEX[1].TXT [ /WWW.ADSERVEX ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@WEBMASTERPLAN[1].TXT [ /WEBMASTERPLAN ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@ADTECH[2].TXT [ /ADTECH ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@MICROSOFTINTERNETEXPLORER.112.2O7[1].TXT [ /MICROSOFTINTERNETEXPLORER.112.2O7 ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@CASALEMEDIA[1].TXT [ /CASALEMEDIA ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@TRAFFICTRACK[2].TXT [ /TRAFFICTRACK ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@DE.AT.ATWOLA[2].TXT [ /DE.AT.ATWOLA ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@AD.ZANOX[1].TXT [ /AD.ZANOX ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@MEDIAPLEX[1].TXT [ /MEDIAPLEX ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@WWW.DDLWAREZ[1].TXT [ /WWW.DDLWAREZ ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@WWW.DDL-WAREZ[2].TXT [ /WWW.DDL-WAREZ ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@MSNPORTAL.112.2O7[1].TXT [ /MSNPORTAL.112.2O7 ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@SERVING-SYS[1].TXT [ /SERVING-SYS ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@TRADEDOUBLER[1].TXT [ /TRADEDOUBLER ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\WATERDRAGON@WWW8.ADDFREESTATS[1].TXT [ /WWW8.ADDFREESTATS ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\WATERDRAGON@APMEBF[2].TXT [ /APMEBF ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\WATERDRAGON@WWW.ZANOX-AFFILIATE[1].TXT [ /WWW.ZANOX-AFFILIATE ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\WATERDRAGON@SMARTADSERVER[2].TXT [ /SMARTADSERVER ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\WATERDRAGON@ZANOX[2].TXT [ /ZANOX ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\WATERDRAGON@FASTCLICK[2].TXT [ /FASTCLICK ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\WATERDRAGON@ZANOX-AFFILIATE[1].TXT [ /ZANOX-AFFILIATE ] E:\USERS\WATERDRAGON\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\WATERDRAGON@MEDIAPLEX[1].TXT [ /MEDIAPLEX ] Trojan.Agent/Gen-FakeAV E:\PROGRAM FILES (X86)\WINRAR\DEFAULT.SFX G:\WIN RAR\DEFAULT.SFX Waterdragon |
24.09.2012, 14:01 | #38 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Trojaner AT/ATRAPS.GEN2, Unterstützung beim entfernen Sieht ok aus, da wurden nur Cookies gefunden, der angebliche Fund bei WinRAR ist ein Fehalarm. Malwarebytes hat nur einen Fund in der Q von OTL gemeldet. Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie ) Wegen Cookies und anderer Dinge im Web: Um die Pest von vornherein zu blocken (also TrackingCookies, Werbebanner etc.) müsstest du dir mal sowas wie MVPS Hosts File anschauen => Blocking Unwanted Parasites with a Hosts File - sinnvollerweise solltest du alle 4 Wochen mal bei MVPS nachsehen, ob er eine neue Hosts Datei herausgebracht hat. Ansonsten gibt es noch gute Cookiemanager, Erweiterungen für den Firefox zB wäre da CookieCuller http://filepony.de/download-cookie_culler/ Wenn du aber damit leben kannst, dich bei jeder Browsersession überall neu einzuloggen (zB Facebook, Ebay, GMX, oder auch Trojaner-Board) dann stell den Browser einfach so ein, dass einfach alles beim Beenden des Browser inkl. Cookies gelöscht wird. Ich halte es so, dass ich zum "wilden Surfen" den Opera-Browser oder Chromium unter meinem Linux verwende. Mein Hauptbrowser (Firefox) speichert nur die Cookies von den Sites die ich auch will, alles andere lehne ich manuell ab (der FF fragt mich immer) - die anderen Browser nehmen alles an Cookies zwar an, aber spätestens beim nächsten Start von Opera oder Chromium sind keine Cookies mehr da. Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
__________________ Logfiles bitte immer in CODE-Tags posten |
27.09.2012, 15:08 | #39 |
| Trojaner AT/ATRAPS.GEN2, Unterstützung beim entfernen Hi! Ja, mein System scheint ok zu sein. Kein Gemecker von Virenscannern und sonst auch keine Probleme. D.h., mein System ist nun sauber - also nicht nur das Windows-Laufwerk sondern auch die Datenpartitionen? Grüße, Waterdragon |
27.09.2012, 16:34 | #40 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Trojaner AT/ATRAPS.GEN2, Unterstützung beim entfernen Dann wären wir durch! Die Programme, die hier zum Einsatz kamen, können alle wieder runter. Mit Hilfe von OTL kannst du auch viele Tools entfernen: Starte bitte OTL und klicke auf Bereinigung. Dies wird die meisten Tools entfernen, die wir zur Bereinigung benötigt haben. Sollte etwas bestehen bleiben, bitte mit Rechtsklick --> Löschen entfernen. Malwarebytes zu behalten ist zu empfehlen. Kannst ja 1x im Monat damit einen Vollscan machen, aber immer vorher ans Update denken. Bitte abschließend die Updates prüfen, unten mein Leitfaden dazu. Um in Zukunft die Aktualität der installierten Programme besser im Überblick zu halten, kannst du zB Secunia PSI verwenden. Für noch mehr Sicherheit solltest Du nach der beseitigten Infektion auch möglichst alle Passwörter ändern. Microsoftupdate Windows XP: Besuch mit dem IE die MS-Updateseite und lass Dir alle wichtigen Updates installieren. Windows Vista/7: Anleitung Windows-Update PDF-Reader aktualisieren Ein veralteter AdobeReader stellt ein großes Sicherheitsrisiko dar. Du solltest daher besser alte Versionen vom AdobeReader über Systemsteuerung => Software bzw. Programme und Funktionen deinstallieren, indem Du dort auf "Adobe Reader x.0" klickst und das Programm entfernst. (falls du AdobeReader installiert hast) Ich empfehle einen alternativen PDF-Reader wie PDF Xchange Viewer, SumatraPDF oder Foxit PDF Reader, die sind sehr viel schlanker und flotter als der AdobeReader. Bitte überprüf bei der Gelegenheit auch die Aktualität des Flashplayers: Prüfen => Adobe - Flash Player Downloadlinks => Adobe Flash Player Distribution | Adobe Natürlich auch darauf achten, dass andere installierte Browser wie zB Firefox, Opera oder Chrome aktuell sind. Java-Update Veraltete Java-Installationen sind ein Sicherheitsrisiko, daher solltest Du die alten Versionen löschen (falls vorhanden, am besten mit JavaRa) und auf die neuste aktualisieren. Beende dazu alle Programme (v.a. die Browser), klick danach auf Start, Systemsteuerung, Software und deinstalliere darüber alle aufgelisteten Java-Versionen. Lad Dir danach von hier das aktuelle Java SE Runtime Environment (JRE) herunter und installiere es.
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Trojaner AT/ATRAPS.GEN2, Unterstützung beim entfernen |
antivir, autorun, avira, avira searchfree toolbar, bho, downloader, entfernen, error, firefox, flash player, format, google, grand theft auto, helper, home, install.exe, java/exploit.cve-2012-1723.ab, langs, logfile, maus, mozilla, plug-in, realtek, recycle.bin, registry, richtlinie, rundll, scan, security, software, system, trojaner, vista |