Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Trojaner ZeroAccess + FakeAlert

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 01.09.2012, 10:15   #16
An_Ro
 
Trojaner ZeroAccess + FakeAlert - Standard

Trojaner ZeroAccess + FakeAlert



Habe den TDSS-Killer ausgeführt.
Code:
ATTFilter
11:10:19.0833 4964  TDSS rootkit removing tool 2.8.8.0 Aug 24 2012 13:27:48
11:10:19.0848 4964  ============================================================
11:10:19.0848 4964  Current date / time: 2012/09/01 11:10:19.0848
11:10:19.0848 4964  SystemInfo:
11:10:19.0848 4964  
11:10:19.0848 4964  OS Version: 6.1.7601 ServicePack: 1.0
11:10:19.0848 4964  Product type: Workstation
11:10:19.0848 4964  ComputerName: ROBERT-PC
11:10:19.0848 4964  UserName: Anne
11:10:19.0848 4964  Windows directory: C:\Windows
11:10:19.0848 4964  System windows directory: C:\Windows
11:10:19.0848 4964  Processor architecture: Intel x86
11:10:19.0848 4964  Number of processors: 4
11:10:19.0848 4964  Page size: 0x1000
11:10:19.0848 4964  Boot type: Normal boot
11:10:19.0848 4964  ============================================================
11:10:20.0270 4964  Drive \Device\Harddisk0\DR0 - Size: 0x15D50F66000 (1397.27 Gb), SectorSize: 0x200, Cylinders: 0x2C881, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
11:10:20.0285 4964  ============================================================
11:10:20.0285 4964  \Device\Harddisk0\DR0:
11:10:20.0285 4964  MBR partitions:
11:10:20.0285 4964  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
11:10:20.0285 4964  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x55329000
11:10:20.0301 4964  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x5535C000, BlocksNum 0x3DFB000
11:10:20.0316 4964  \Device\Harddisk0\DR0\Partition4: MBR, Type 0x7, StartLBA 0x59157800, BlocksNum 0x5572F800
11:10:20.0316 4964  ============================================================
11:10:20.0348 4964  C: <-> \Device\Harddisk0\DR0\Partition2
11:10:20.0394 4964  D: <-> \Device\Harddisk0\DR0\Partition3
11:10:20.0410 4964  T: <-> \Device\Harddisk0\DR0\Partition4
11:10:20.0410 4964  ============================================================
11:10:20.0410 4964  Initialize success
11:10:20.0410 4964  ============================================================
11:10:58.0162 7960  ============================================================
11:10:58.0162 7960  Scan started
11:10:58.0162 7960  Mode: Manual; SigCheck; TDLFS; 
11:10:58.0162 7960  ============================================================
11:10:58.0505 7960  ================ Scan services =============================
11:10:58.0677 7960  [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
11:10:58.0833 7960  1394ohci - ok
11:10:58.0911 7960  [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
11:10:58.0926 7960  ACPI - ok
11:10:59.0004 7960  [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
11:10:59.0082 7960  AcpiPmi - ok
11:10:59.0176 7960  [ 62B7936F9036DD6ED36E6A7EFA805DC0 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
11:10:59.0192 7960  AdobeARMservice - ok
11:10:59.0301 7960  [ A9D3B95E8466BD58EEB8A1154654E162 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
11:10:59.0332 7960  AdobeFlashPlayerUpdateSvc - ok
11:10:59.0363 7960  [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
11:10:59.0410 7960  adp94xx - ok
11:10:59.0457 7960  [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
11:10:59.0488 7960  adpahci - ok
11:10:59.0504 7960  [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
11:10:59.0535 7960  adpu320 - ok
11:10:59.0550 7960  [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
11:10:59.0597 7960  AeLookupSvc - ok
11:10:59.0660 7960  [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD             C:\Windows\system32\drivers\afd.sys
11:10:59.0722 7960  AFD - ok
11:10:59.0738 7960  [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440          C:\Windows\system32\drivers\agp440.sys
11:10:59.0769 7960  agp440 - ok
11:10:59.0800 7960  [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx         C:\Windows\system32\DRIVERS\djsvs.sys
11:10:59.0831 7960  aic78xx - ok
11:10:59.0847 7960  [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG             C:\Windows\System32\alg.exe
11:10:59.0909 7960  ALG - ok
11:10:59.0940 7960  [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide          C:\Windows\system32\drivers\aliide.sys
11:10:59.0956 7960  aliide - ok
11:11:00.0003 7960  [ 60201AD353105D8C6796C1B69E6C49F0 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
11:11:00.0065 7960  AMD External Events Utility - ok
11:11:00.0081 7960  [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp          C:\Windows\system32\drivers\amdagp.sys
11:11:00.0096 7960  amdagp - ok
11:11:00.0112 7960  [ CD5914170297126B6266860198D1D4F0 ] amdide          C:\Windows\system32\drivers\amdide.sys
11:11:00.0143 7960  amdide - ok
11:11:00.0159 7960  [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
11:11:00.0206 7960  AmdK8 - ok
11:11:00.0346 7960  [ 51610B74A9A1D84DC86FCE1019BEAFF4 ] amdkmdag        C:\Windows\system32\DRIVERS\atikmdag.sys
11:11:00.0486 7960  amdkmdag - ok
11:11:00.0518 7960  [ CD1D86AB81EECE67D7BD6F7EF9786CCC ] amdkmdap        C:\Windows\system32\DRIVERS\atikmpag.sys
11:11:00.0564 7960  amdkmdap - ok
11:11:00.0564 7960  [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
11:11:00.0596 7960  AmdPPM - ok
11:11:00.0642 7960  [ D320BF87125326F996D4904FE24300FC ] amdsata         C:\Windows\system32\drivers\amdsata.sys
11:11:00.0658 7960  amdsata - ok
11:11:00.0674 7960  [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
11:11:00.0674 7960  amdsbs - ok
11:11:00.0705 7960  [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
11:11:00.0705 7960  amdxata - ok
11:11:00.0767 7960  [ AEA177F783E20150ACE5383EE368DA19 ] AppID           C:\Windows\system32\drivers\appid.sys
11:11:00.0876 7960  AppID - ok
11:11:00.0876 7960  [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
11:11:00.0923 7960  AppIDSvc - ok
11:11:00.0970 7960  [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo         C:\Windows\System32\appinfo.dll
11:11:01.0048 7960  Appinfo - ok
11:11:01.0064 7960  [ 2932004F49677BD84DBC72EDB754FFB3 ] arc             C:\Windows\system32\DRIVERS\arc.sys
11:11:01.0079 7960  arc - ok
11:11:01.0095 7960  [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
11:11:01.0110 7960  arcsas - ok
11:11:01.0142 7960  [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
11:11:01.0266 7960  AsyncMac - ok
11:11:01.0360 7960  [ 338C86357871C167A96AB976519BF59E ] atapi           C:\Windows\system32\drivers\atapi.sys
11:11:01.0376 7960  atapi - ok
11:11:01.0438 7960  [ 8DF873D0587596C1D35A9CECECC61DA1 ] AtiHdmiService  C:\Windows\system32\drivers\AtiHdmi.sys
11:11:01.0469 7960  AtiHdmiService - ok
11:11:01.0532 7960  [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
11:11:01.0578 7960  AudioEndpointBuilder - ok
11:11:01.0578 7960  [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv        C:\Windows\System32\Audiosrv.dll
11:11:01.0610 7960  Audiosrv - ok
11:11:01.0656 7960  [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV        C:\Windows\System32\AxInstSV.dll
11:11:01.0734 7960  AxInstSV - ok
11:11:01.0750 7960  [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbdx.sys
11:11:01.0812 7960  b06bdrv - ok
11:11:01.0828 7960  [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x        C:\Windows\system32\DRIVERS\b57nd60x.sys
11:11:01.0859 7960  b57nd60x - ok
11:11:01.0922 7960  [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC          C:\Windows\System32\bdesvc.dll
11:11:01.0968 7960  BDESVC - ok
11:11:01.0984 7960  [ 505506526A9D467307B3C393DEDAF858 ] Beep            C:\Windows\system32\drivers\Beep.sys
11:11:02.0062 7960  Beep - ok
11:11:02.0124 7960  [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE             C:\Windows\System32\bfe.dll
11:11:02.0187 7960  BFE - ok
11:11:02.0436 7960  [ A9E111A358AC5F7EBA7AC61E43FC6725 ] BHDrvx86        C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\BASHDefs\20120823.007_ec5\BHDrvx86.sys
11:11:02.0468 7960  BHDrvx86 - ok
11:11:02.0530 7960  [ E585445D5021971FAE10393F0F1C3961 ] BITS            C:\Windows\System32\qmgr.dll
11:11:02.0592 7960  BITS - ok
11:11:02.0608 7960  [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
11:11:02.0624 7960  blbdrive - ok
11:11:02.0639 7960  [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
11:11:02.0686 7960  bowser - ok
11:11:02.0702 7960  [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
11:11:02.0780 7960  BrFiltLo - ok
11:11:02.0795 7960  [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
11:11:02.0826 7960  BrFiltUp - ok
11:11:02.0858 7960  [ C711ED965009BDCFF9AA62CEB6FF1AAD ] Brother XP spl Service C:\Windows\system32\brsvc01a.exe
11:11:02.0904 7960  Brother XP spl Service - ok
11:11:02.0936 7960  [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser         C:\Windows\System32\browser.dll
11:11:02.0967 7960  Browser - ok
11:11:02.0998 7960  [ 845B8CE732E67F3B4133164868C666EA ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
11:11:03.0045 7960  Brserid - ok
11:11:03.0045 7960  [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
11:11:03.0092 7960  BrSerWdm - ok
11:11:03.0107 7960  [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
11:11:03.0138 7960  BrUsbMdm - ok
11:11:03.0154 7960  [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
11:11:03.0201 7960  BrUsbSer - ok
11:11:03.0232 7960  [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
11:11:03.0279 7960  BTHMODEM - ok
11:11:03.0326 7960  [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv         C:\Windows\system32\bthserv.dll
11:11:03.0388 7960  bthserv - ok
11:11:03.0435 7960  [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
11:11:03.0482 7960  cdfs - ok
11:11:03.0544 7960  [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
11:11:03.0560 7960  cdrom - ok
11:11:03.0606 7960  [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc     C:\Windows\System32\certprop.dll
11:11:03.0653 7960  CertPropSvc - ok
11:11:03.0684 7960  [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
11:11:03.0731 7960  circlass - ok
11:11:03.0747 7960  [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS            C:\Windows\system32\CLFS.sys
11:11:03.0762 7960  CLFS - ok
11:11:03.0856 7960  [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:11:03.0872 7960  clr_optimization_v2.0.50727_32 - ok
11:11:03.0950 7960  [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:11:03.0981 7960  clr_optimization_v4.0.30319_32 - ok
11:11:03.0996 7960  [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
11:11:04.0028 7960  CmBatt - ok
11:11:04.0059 7960  [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide          C:\Windows\system32\drivers\cmdide.sys
11:11:04.0059 7960  cmdide - ok
11:11:04.0090 7960  [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG             C:\Windows\system32\Drivers\cng.sys
11:11:04.0106 7960  CNG - ok
11:11:04.0121 7960  [ A6023D3823C37043986713F118A89BEE ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
11:11:04.0137 7960  Compbatt - ok
11:11:04.0184 7960  [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
11:11:04.0215 7960  CompositeBus - ok
11:11:04.0230 7960  COMSysApp - ok
11:11:04.0262 7960  [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
11:11:04.0277 7960  crcdisk - ok
11:11:04.0308 7960  [ 06E771AA596B8761107AB57E99F128D7 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
11:11:04.0355 7960  CryptSvc - ok
11:11:04.0402 7960  [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch      C:\Windows\system32\rpcss.dll
11:11:04.0449 7960  DcomLaunch - ok
11:11:04.0480 7960  [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc       C:\Windows\System32\defragsvc.dll
11:11:04.0558 7960  defragsvc - ok
11:11:04.0605 7960  [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
11:11:04.0667 7960  DfsC - ok
11:11:04.0730 7960  dgderdrv - ok
11:11:04.0761 7960  [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp            C:\Windows\system32\dhcpcore.dll
11:11:04.0823 7960  Dhcp - ok
11:11:04.0823 7960  [ 1A050B0274BFB3890703D490F330C0DA ] discache        C:\Windows\system32\drivers\discache.sys
11:11:04.0854 7960  discache - ok
11:11:04.0901 7960  [ 565003F326F99802E68CA78F2A68E9FF ] Disk            C:\Windows\system32\DRIVERS\disk.sys
11:11:04.0932 7960  Disk - ok
11:11:04.0948 7960  [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
11:11:05.0010 7960  Dnscache - ok
11:11:05.0026 7960  [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc         C:\Windows\System32\dot3svc.dll
11:11:05.0073 7960  dot3svc - ok
11:11:05.0104 7960  [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS             C:\Windows\system32\dps.dll
11:11:05.0135 7960  DPS - ok
11:11:05.0182 7960  [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
11:11:05.0213 7960  drmkaud - ok
11:11:05.0244 7960  [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
11:11:05.0276 7960  DXGKrnl - ok
11:11:05.0322 7960  [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost         C:\Windows\System32\eapsvc.dll
11:11:05.0369 7960  EapHost - ok
11:11:05.0447 7960  [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv           C:\Windows\system32\DRIVERS\evbdx.sys
11:11:05.0556 7960  ebdrv - ok
11:11:05.0603 7960  [ 85B8B4032A895A746D46A288A9B30DED ] eeCtrl          C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys
11:11:05.0634 7960  eeCtrl - ok
11:11:05.0666 7960  [ 81951F51E318AECC2D68559E47485CC4 ] EFS             C:\Windows\System32\lsass.exe
11:11:05.0712 7960  EFS - ok
11:11:05.0759 7960  [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
11:11:05.0822 7960  ehRecvr - ok
11:11:05.0853 7960  [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched         C:\Windows\ehome\ehsched.exe
11:11:05.0900 7960  ehSched - ok
11:11:05.0931 7960  [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
11:11:05.0962 7960  elxstor - ok
11:11:06.0040 7960  [ B5A8A04A6E5B4E86B95B1553AA918F5F ] EraserUtilRebootDrv C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
11:11:06.0071 7960  EraserUtilRebootDrv - ok
11:11:06.0087 7960  [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
11:11:06.0102 7960  ErrDev - ok
11:11:06.0134 7960  [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem     C:\Windows\system32\es.dll
11:11:06.0165 7960  EventSystem - ok
11:11:06.0196 7960  [ 2DC9108D74081149CC8B651D3A26207F ] exfat           C:\Windows\system32\drivers\exfat.sys
11:11:06.0243 7960  exfat - ok
11:11:06.0243 7960  [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
11:11:06.0274 7960  fastfat - ok
11:11:06.0336 7960  [ 967EA5B213E9984CBE270205DF37755B ] Fax             C:\Windows\system32\fxssvc.exe
11:11:06.0383 7960  Fax - ok
11:11:06.0414 7960  [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
11:11:06.0446 7960  fdc - ok
11:11:06.0477 7960  [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost         C:\Windows\system32\fdPHost.dll
11:11:06.0508 7960  fdPHost - ok
11:11:06.0508 7960  [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub        C:\Windows\system32\fdrespub.dll
11:11:06.0555 7960  FDResPub - ok
11:11:06.0570 7960  [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
11:11:06.0570 7960  FileInfo - ok
11:11:06.0586 7960  [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
11:11:06.0633 7960  Filetrace - ok
11:11:06.0648 7960  [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
11:11:06.0680 7960  flpydisk - ok
11:11:06.0695 7960  [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
11:11:06.0711 7960  FltMgr - ok
11:11:06.0758 7960  [ B3A5EC6B6B6673DB7E87C2BCDBDDC074 ] FontCache       C:\Windows\system32\FntCache.dll
11:11:06.0820 7960  FontCache - ok
11:11:06.0851 7960  [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
11:11:06.0867 7960  FontCache3.0.0.0 - ok
11:11:06.0960 7960  [ 9513B437B7ADB1E6065B7F0D83D11ECF ] FreeAgentGoNext Service C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe
11:11:06.0976 7960  FreeAgentGoNext Service - ok
11:11:06.0992 7960  [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
11:11:07.0007 7960  FsDepends - ok
11:11:07.0070 7960  [ B07663A810E861EEBFD0EAC7E82CA62D ] FsUsbExDisk     C:\Windows\system32\FsUsbExDisk.SYS
11:11:07.0101 7960  FsUsbExDisk ( UnsignedFile.Multi.Generic ) - warning
11:11:07.0101 7960  FsUsbExDisk - detected UnsignedFile.Multi.Generic (1)
11:11:07.0163 7960  [ F96C429788350DB4BA6771C3034DFD88 ] FsUsbExService  C:\Windows\system32\FsUsbExService.Exe
11:11:07.0194 7960  FsUsbExService ( UnsignedFile.Multi.Generic ) - warning
11:11:07.0194 7960  FsUsbExService - detected UnsignedFile.Multi.Generic (1)
11:11:07.0210 7960  [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
11:11:07.0241 7960  Fs_Rec - ok
11:11:07.0288 7960  [ 8A73E79089B282100B9393B644CB853B ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
11:11:07.0319 7960  fvevol - ok
11:11:07.0350 7960  [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
11:11:07.0366 7960  gagp30kx - ok
11:11:07.0413 7960  [ 5AE3A887ECE5BBB72CFAB273C2FD1CFA ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
11:11:07.0444 7960  GEARAspiWDM - ok
11:11:07.0491 7960  [ 007AEA2E06E7CEF7372E40C277163959 ] ggflt           C:\Windows\system32\DRIVERS\ggflt.sys
11:11:07.0506 7960  ggflt - ok
11:11:07.0569 7960  [ C73DE35960CA75C5AB4AE636B127C64E ] ggsemc          C:\Windows\system32\DRIVERS\ggsemc.sys
11:11:07.0584 7960  ggsemc - ok
11:11:07.0616 7960  [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc           C:\Windows\System32\gpsvc.dll
11:11:07.0662 7960  gpsvc - ok
11:11:07.0694 7960  [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
11:11:07.0725 7960  hcw85cir - ok
11:11:07.0756 7960  [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
11:11:07.0787 7960  HdAudAddService - ok
11:11:07.0834 7960  [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
11:11:07.0881 7960  HDAudBus - ok
11:11:07.0912 7960  [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
11:11:07.0943 7960  HidBatt - ok
11:11:07.0974 7960  [ 89448F40E6DF260C206A193A4683BA78 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
11:11:08.0006 7960  HidBth - ok
11:11:08.0037 7960  [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
11:11:08.0068 7960  HidIr - ok
11:11:08.0115 7960  [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv         C:\Windows\system32\hidserv.dll
11:11:08.0146 7960  hidserv - ok
11:11:08.0193 7960  [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
11:11:08.0224 7960  HidUsb - ok
11:11:08.0255 7960  [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc          C:\Windows\system32\kmsvc.dll
11:11:08.0318 7960  hkmsvc - ok
11:11:08.0364 7960  [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
11:11:08.0396 7960  HomeGroupListener - ok
11:11:08.0427 7960  [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
11:11:08.0474 7960  HomeGroupProvider - ok
11:11:08.0520 7960  [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
11:11:08.0536 7960  HpSAMD - ok
11:11:08.0583 7960  [ 871917B07A141BFF43D76D8844D48106 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
11:11:08.0676 7960  HTTP - ok
11:11:08.0708 7960  [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
11:11:08.0708 7960  hwpolicy - ok
11:11:08.0770 7960  [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
11:11:08.0817 7960  i8042prt - ok
11:11:08.0848 7960  [ 26541A068572F650A2FA490726FE81BE ] iaStor          C:\Windows\system32\DRIVERS\iaStor.sys
11:11:08.0879 7960  iaStor - ok
11:11:08.0957 7960  [ 31A0E93CDF29007D6C6FFFB632F375ED ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
11:11:08.0973 7960  IAStorDataMgrSvc - ok
11:11:09.0051 7960  [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
11:11:09.0082 7960  iaStorV - ok
11:11:09.0144 7960  [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc           C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
11:11:09.0176 7960  idsvc - ok
11:11:09.0269 7960  [ D0A4C9031B57295D6B1078E3CFA45DB4 ] IDSVix86        C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\IPSDefs\20120831.001\IDSvix86.sys
11:11:09.0300 7960  IDSVix86 - ok
11:11:09.0316 7960  [ 4173FF5708F3236CF25195FECD742915 ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
11:11:09.0332 7960  iirsp - ok
11:11:09.0347 7960  [ F95622F161474511B8D80D6B093AA610 ] IKEEXT          C:\Windows\System32\ikeext.dll
11:11:09.0425 7960  IKEEXT - ok
11:11:09.0550 7960  [ 4BE85CF5831A41104C2DDED55FBC3565 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
11:11:09.0675 7960  IntcAzAudAddService - ok
11:11:09.0706 7960  [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide        C:\Windows\system32\drivers\intelide.sys
11:11:09.0706 7960  intelide - ok
11:11:09.0768 7960  [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
11:11:09.0784 7960  intelppm - ok
11:11:09.0815 7960  [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
11:11:09.0878 7960  IPBusEnum - ok
11:11:09.0893 7960  [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
11:11:09.0924 7960  IpFilterDriver - ok
11:11:09.0924 7960  [ 4D65A07B795D6674312F879D09AA7663 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
11:11:09.0956 7960  iphlpsvc - ok
11:11:09.0971 7960  [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
11:11:09.0987 7960  IPMIDRV - ok
11:11:10.0002 7960  [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
11:11:10.0049 7960  IPNAT - ok
11:11:10.0096 7960  [ 42996CFF20A3084A56017B7902307E9F ] IRENUM          C:\Windows\system32\drivers\irenum.sys
11:11:10.0158 7960  IRENUM - ok
11:11:10.0190 7960  [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
11:11:10.0205 7960  isapnp - ok
11:11:10.0221 7960  [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
11:11:10.0236 7960  iScsiPrt - ok
11:11:10.0283 7960  [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass        C:\Windows\system32\drivers\kbdclass.sys
11:11:10.0299 7960  kbdclass - ok
11:11:10.0330 7960  [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid          C:\Windows\system32\drivers\kbdhid.sys
11:11:10.0361 7960  kbdhid - ok
11:11:10.0392 7960  [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso          C:\Windows\system32\lsass.exe
11:11:10.0424 7960  KeyIso - ok
11:11:10.0439 7960  [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
11:11:10.0470 7960  KSecDD - ok
11:11:10.0470 7960  [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
11:11:10.0486 7960  KSecPkg - ok
11:11:10.0517 7960  [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm           C:\Windows\system32\msdtckrm.dll
11:11:10.0548 7960  KtmRm - ok
11:11:10.0626 7960  [ 33CF4A1507FD0F6522799D132624948A ] LADF_BakerCOnly C:\Windows\system32\DRIVERS\ladfBakerCi386.sys
11:11:10.0642 7960  LADF_BakerCOnly - ok
11:11:10.0673 7960  [ BA3EAAE345B3737D3D2F1C491FB42ADB ] LADF_BakerROnly C:\Windows\system32\DRIVERS\ladfBakerRi386.sys
11:11:10.0704 7960  LADF_BakerROnly - ok
11:11:10.0736 7960  [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer    C:\Windows\system32\srvsvc.dll
11:11:10.0782 7960  LanmanServer - ok
11:11:10.0814 7960  [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
11:11:10.0845 7960  LanmanWorkstation - ok
11:11:10.0907 7960  [ CB5D13966F74D7F000724A907F614193 ] libusb0         C:\Windows\system32\DRIVERS\libusb0.sys
11:11:10.0923 7960  libusb0 - ok
11:11:10.0954 7960  [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
11:11:10.0970 7960  lltdio - ok
11:11:11.0001 7960  [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
11:11:11.0032 7960  lltdsvc - ok
11:11:11.0048 7960  [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts         C:\Windows\System32\lmhsvc.dll
11:11:11.0079 7960  lmhosts - ok
11:11:11.0126 7960  [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
11:11:11.0141 7960  LSI_FC - ok
11:11:11.0157 7960  [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
11:11:11.0172 7960  LSI_SAS - ok
11:11:11.0172 7960  [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
11:11:11.0188 7960  LSI_SAS2 - ok
11:11:11.0204 7960  [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
11:11:11.0204 7960  LSI_SCSI - ok
11:11:11.0219 7960  [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv           C:\Windows\system32\drivers\luafv.sys
11:11:11.0250 7960  luafv - ok
11:11:11.0282 7960  [ 6DFE7F2E8E8A337263AA5C92A215F161 ] MBAMProtector   C:\Windows\system32\drivers\mbam.sys
11:11:11.0297 7960  MBAMProtector - ok
11:11:11.0360 7960  [ 43683E970F008C93C9429EF428147A54 ] MBAMService     C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
11:11:11.0406 7960  MBAMService - ok
11:11:11.0422 7960  [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
11:11:11.0438 7960  Mcx2Svc - ok
11:11:11.0453 7960  [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
11:11:11.0469 7960  megasas - ok
11:11:11.0500 7960  [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
11:11:11.0516 7960  MegaSR - ok
11:11:11.0609 7960  Microsoft SharePoint Workspace Audit Service - ok
11:11:11.0625 7960  [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS           C:\Windows\system32\mmcss.dll
11:11:11.0672 7960  MMCSS - ok
11:11:11.0687 7960  [ F001861E5700EE84E2D4E52C712F4964 ] Modem           C:\Windows\system32\drivers\modem.sys
11:11:11.0718 7960  Modem - ok
11:11:11.0765 7960  [ 79D10964DE86B292320E9DFE02282A23 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
11:11:11.0796 7960  monitor - ok
11:11:11.0843 7960  [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass        C:\Windows\system32\drivers\mouclass.sys
11:11:11.0859 7960  mouclass - ok
11:11:11.0890 7960  [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
11:11:11.0921 7960  mouhid - ok
11:11:11.0968 7960  [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
11:11:11.0999 7960  mountmgr - ok
11:11:12.0077 7960  [ 46297FA8E30A6007F14118FC2B942FBC ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
11:11:12.0093 7960  MozillaMaintenance - ok
11:11:12.0108 7960  [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio            C:\Windows\system32\drivers\mpio.sys
11:11:12.0140 7960  mpio - ok
11:11:12.0155 7960  [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
11:11:12.0186 7960  mpsdrv - ok
11:11:12.0233 7960  [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc          C:\Windows\system32\mpssvc.dll
11:11:12.0296 7960  MpsSvc - ok
11:11:12.0311 7960  [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
11:11:12.0342 7960  MRxDAV - ok
11:11:12.0374 7960  [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
11:11:12.0405 7960  mrxsmb - ok
11:11:12.0436 7960  [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
11:11:12.0467 7960  mrxsmb10 - ok
11:11:12.0498 7960  [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
11:11:12.0514 7960  mrxsmb20 - ok
11:11:12.0561 7960  [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci          C:\Windows\system32\drivers\msahci.sys
11:11:12.0576 7960  msahci - ok
11:11:12.0639 7960  [ D98350792A7CE82E7459A7C36481BEDA ] MSCamSvc        C:\Program Files\Microsoft LifeCam\MSCamS32.exe
11:11:12.0670 7960  MSCamSvc - ok
11:11:12.0717 7960  [ 55055F8AD8BE27A64C831322A780A228 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
11:11:12.0748 7960  msdsm - ok
11:11:12.0779 7960  [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC           C:\Windows\System32\msdtc.exe
11:11:12.0810 7960  MSDTC - ok
11:11:12.0826 7960  [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs            C:\Windows\system32\drivers\Msfs.sys
11:11:12.0842 7960  Msfs - ok
11:11:12.0857 7960  [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
11:11:12.0888 7960  mshidkmdf - ok
11:11:12.0951 7960  [ 5119FFC2A6B51089CDB0EFDC75808C97 ] MSHUSBVideo     C:\Windows\system32\Drivers\nx6000.sys
11:11:12.0966 7960  MSHUSBVideo - ok
11:11:12.0998 7960  [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
11:11:13.0013 7960  msisadrv - ok
11:11:13.0076 7960  [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
11:11:13.0138 7960  MSiSCSI - ok
11:11:13.0138 7960  msiserver - ok
11:11:13.0138 7960  [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
11:11:13.0185 7960  MSKSSRV - ok
11:11:13.0185 7960  [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
11:11:13.0216 7960  MSPCLOCK - ok
11:11:13.0232 7960  [ F456E973590D663B1073E9C463B40932 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
11:11:13.0263 7960  MSPQM - ok
11:11:13.0278 7960  [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
11:11:13.0294 7960  MsRPC - ok
11:11:13.0294 7960  [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
11:11:13.0310 7960  mssmbios - ok
11:11:13.0310 7960  [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
11:11:13.0325 7960  MSTEE - ok
11:11:13.0356 7960  [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
11:11:13.0388 7960  MTConfig - ok
11:11:13.0403 7960  [ 159FAD02F64E6381758C990F753BCC80 ] Mup             C:\Windows\system32\Drivers\mup.sys
11:11:13.0403 7960  Mup - ok
11:11:13.0481 7960  [ E78A365CC3E0FBFC018A33DCE01909F8 ] N360            C:\Program Files\Norton 360\Engine\5.2.2.3\ccSvcHst.exe
11:11:13.0512 7960  N360 - ok
11:11:13.0544 7960  [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent        C:\Windows\system32\qagentRT.dll
11:11:13.0590 7960  napagent - ok
11:11:13.0622 7960  [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
11:11:13.0637 7960  NativeWifiP - ok
11:11:13.0746 7960  [ FA0B7D801E71CE79B915BAE5A90DE224 ] NAVENG          C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\VirusDefs\20120831.002\NAVENG.SYS
11:11:13.0762 7960  NAVENG - ok
11:11:13.0824 7960  [ 80BB71A7D14CF14B54514A201BF5B985 ] NAVEX15         C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\VirusDefs\20120831.002\NAVEX15.SYS
11:11:13.0902 7960  NAVEX15 - ok
11:11:13.0965 7960  [ E7C54812A2AAF43316EB6930C1FFA108 ] NDIS            C:\Windows\system32\drivers\ndis.sys
11:11:13.0996 7960  NDIS - ok
11:11:14.0027 7960  [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
11:11:14.0105 7960  NdisCap - ok
11:11:14.0136 7960  [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
11:11:14.0183 7960  NdisTapi - ok
11:11:14.0230 7960  [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
11:11:14.0277 7960  Ndisuio - ok
11:11:14.0292 7960  [ 38FBE267E7E6983311179230FACB1017 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
11:11:14.0339 7960  NdisWan - ok
11:11:14.0370 7960  [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
11:11:14.0386 7960  NDProxy - ok
11:11:14.0433 7960  [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
11:11:14.0495 7960  NetBIOS - ok
11:11:14.0511 7960  [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
11:11:14.0542 7960  NetBT - ok
11:11:14.0558 7960  [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon        C:\Windows\system32\lsass.exe
11:11:14.0573 7960  Netlogon - ok
11:11:14.0636 7960  [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman          C:\Windows\System32\netman.dll
11:11:14.0698 7960  Netman - ok
11:11:14.0698 7960  [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm        C:\Windows\System32\netprofm.dll
11:11:14.0729 7960  netprofm - ok
11:11:14.0760 7960  [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
11:11:14.0760 7960  NetTcpPortSharing - ok
11:11:14.0838 7960  [ 777DD328D61A3756BC9893FB14D7E288 ] Netzmanager Service C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe
11:11:14.0854 7960  Netzmanager Service ( UnsignedFile.Multi.Generic ) - warning
11:11:14.0854 7960  Netzmanager Service - detected UnsignedFile.Multi.Generic (1)
11:11:14.0885 7960  [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
11:11:14.0901 7960  nfrd960 - ok
11:11:14.0916 7960  [ 912084381D30D8B89EC4E293053F4710 ] NlaSvc          C:\Windows\System32\nlasvc.dll
11:11:14.0963 7960  NlaSvc - ok
11:11:14.0979 7960  [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
11:11:15.0010 7960  Npfs - ok
11:11:15.0026 7960  [ BA387E955E890C8A88306D9B8D06BF17 ] nsi             C:\Windows\system32\nsisvc.dll
11:11:15.0088 7960  nsi - ok
11:11:15.0104 7960  [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
11:11:15.0135 7960  nsiproxy - ok
11:11:15.0182 7960  [ 81189C3D7763838E55C397759D49007A ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
11:11:15.0228 7960  Ntfs - ok
11:11:15.0228 7960  [ F9756A98D69098DCA8945D62858A812C ] Null            C:\Windows\system32\drivers\Null.sys
11:11:15.0260 7960  Null - ok
11:11:15.0306 7960  [ 03AD379554B50FA1802BE4EC2E291E92 ] nusb3hub        C:\Windows\system32\DRIVERS\nusb3hub.sys
11:11:15.0322 7960  nusb3hub - ok
11:11:15.0384 7960  [ 06FE87C9D181AF5F04D192E604E10E6C ] nusb3xhc        C:\Windows\system32\DRIVERS\nusb3xhc.sys
11:11:15.0416 7960  nusb3xhc - ok
11:11:15.0462 7960  [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
11:11:15.0494 7960  nvraid - ok
11:11:15.0525 7960  [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
11:11:15.0556 7960  nvstor - ok
11:11:15.0603 7960  [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
11:11:15.0618 7960  nv_agp - ok
11:11:15.0665 7960  [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
11:11:15.0712 7960  ohci1394 - ok
11:11:15.0790 7960  [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose             C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:11:15.0806 7960  ose - ok
11:11:15.0962 7960  [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
11:11:16.0040 7960  osppsvc - ok
11:11:16.0086 7960  [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
11:11:16.0133 7960  p2pimsvc - ok
11:11:16.0164 7960  [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc          C:\Windows\system32\p2psvc.dll
11:11:16.0211 7960  p2psvc - ok
11:11:16.0227 7960  [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
11:11:16.0258 7960  Parport - ok
11:11:16.0289 7960  [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr         C:\Windows\system32\drivers\partmgr.sys
11:11:16.0305 7960  partmgr - ok
11:11:16.0320 7960  [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm          C:\Windows\system32\DRIVERS\parvdm.sys
11:11:16.0352 7960  Parvdm - ok
11:11:16.0352 7960  [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc          C:\Windows\System32\pcasvc.dll
11:11:16.0367 7960  PcaSvc - ok
11:11:16.0399 7960  [ FD2041E9BA03DB7764B2248F02475079 ] pccsmcfd        C:\Windows\system32\DRIVERS\pccsmcfd.sys
11:11:16.0430 7960  pccsmcfd - ok
11:11:16.0445 7960  [ 673E55C3498EB970088E812EA820AA8F ] pci             C:\Windows\system32\drivers\pci.sys
11:11:16.0477 7960  pci - ok
11:11:16.0477 7960  [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide          C:\Windows\system32\drivers\pciide.sys
11:11:16.0492 7960  pciide - ok
11:11:16.0523 7960  [ F396431B31693E71E8A80687EF523506 ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
11:11:16.0555 7960  pcmcia - ok
11:11:16.0570 7960  [ 250F6B43D2B613172035C6747AEEB19F ] pcw             C:\Windows\system32\drivers\pcw.sys
11:11:16.0586 7960  pcw - ok
11:11:16.0633 7960  [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
11:11:16.0679 7960  PEAUTH - ok
11:11:16.0820 7960  [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla             C:\Windows\system32\pla.dll
11:11:16.0913 7960  pla - ok
11:11:16.0976 7960  [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
11:11:17.0038 7960  PlugPlay - ok
11:11:17.0069 7960  [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
11:11:17.0116 7960  PNRPAutoReg - ok
11:11:17.0116 7960  [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
11:11:17.0147 7960  PNRPsvc - ok
11:11:17.0163 7960  [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
11:11:17.0210 7960  PolicyAgent - ok
11:11:17.0225 7960  [ F87D30E72E03D579A5199CCB3831D6EA ] Power           C:\Windows\system32\umpo.dll
11:11:17.0303 7960  Power - ok
11:11:17.0319 7960  [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
11:11:17.0366 7960  PptpMiniport - ok
11:11:17.0381 7960  [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor       C:\Windows\system32\DRIVERS\processr.sys
11:11:17.0413 7960  Processor - ok
11:11:17.0444 7960  [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc         C:\Windows\system32\profsvc.dll
11:11:17.0475 7960  ProfSvc - ok
11:11:17.0475 7960  [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe
11:11:17.0491 7960  ProtectedStorage - ok
11:11:17.0506 7960  [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
11:11:17.0537 7960  Psched - ok
11:11:17.0584 7960  [ A6A7AD767BF5141665F5C675F671B3E1 ] PSI_SVC_2       c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
11:11:17.0615 7960  PSI_SVC_2 - ok
11:11:17.0678 7960  [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
11:11:17.0725 7960  ql2300 - ok
11:11:17.0756 7960  [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
11:11:17.0771 7960  ql40xx - ok
11:11:17.0771 7960  [ 31AC809E7707EB580B2BDB760390765A ] QWAVE           C:\Windows\system32\qwave.dll
11:11:17.0818 7960  QWAVE - ok
11:11:17.0818 7960  [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
11:11:17.0849 7960  QWAVEdrv - ok
11:11:17.0865 7960  [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
11:11:17.0896 7960  RasAcd - ok
11:11:17.0927 7960  [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
11:11:17.0990 7960  RasAgileVpn - ok
11:11:18.0005 7960  [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto         C:\Windows\System32\rasauto.dll
11:11:18.0037 7960  RasAuto - ok
11:11:18.0037 7960  [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
11:11:18.0068 7960  Rasl2tp - ok
11:11:18.0099 7960  [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan          C:\Windows\System32\rasmans.dll
11:11:18.0130 7960  RasMan - ok
11:11:18.0146 7960  [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
11:11:18.0161 7960  RasPppoe - ok
11:11:18.0193 7960  [ 44101F495A83EA6401D886E7FD70096B ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
11:11:18.0208 7960  RasSstp - ok
11:11:18.0239 7960  [ D528BC58A489409BA40334EBF96A311B ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
11:11:18.0255 7960  rdbss - ok
11:11:18.0271 7960  [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
11:11:18.0286 7960  rdpbus - ok
11:11:18.0317 7960  [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
11:11:18.0380 7960  RDPCDD - ok
11:11:18.0411 7960  [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
11:11:18.0442 7960  RDPENCDD - ok
11:11:18.0442 7960  [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
11:11:18.0473 7960  RDPREFMP - ok
11:11:18.0505 7960  [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
11:11:18.0520 7960  RDPWD - ok
11:11:18.0551 7960  [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
11:11:18.0567 7960  rdyboost - ok
11:11:18.0583 7960  [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess    C:\Windows\System32\mprdim.dll
11:11:18.0598 7960  RemoteAccess - ok
11:11:18.0614 7960  [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
11:11:18.0645 7960  RemoteRegistry - ok
11:11:18.0645 7960  [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
11:11:18.0676 7960  RpcEptMapper - ok
11:11:18.0692 7960  [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator      C:\Windows\system32\locator.exe
11:11:18.0723 7960  RpcLocator - ok
11:11:18.0739 7960  [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs           C:\Windows\system32\rpcss.dll
11:11:18.0770 7960  RpcSs - ok
11:11:18.0785 7960  [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
11:11:18.0848 7960  rspndr - ok
11:11:18.0910 7960  [ 0516998076AD894AE7E362C3110AA071 ] RTL8167         C:\Windows\system32\DRIVERS\Rt86win7.sys
11:11:18.0941 7960  RTL8167 - ok
11:11:18.0988 7960  [ 9CE8DEFFAFFCCBF473015D76AE8EE514 ] RTL8192su       C:\Windows\system32\DRIVERS\RTL8192su.sys
11:11:19.0019 7960  RTL8192su - ok
11:11:19.0035 7960  [ 81951F51E318AECC2D68559E47485CC4 ] SamSs           C:\Windows\system32\lsass.exe
11:11:19.0051 7960  SamSs - ok
11:11:19.0097 7960  [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
11:11:19.0113 7960  sbp2port - ok
11:11:19.0129 7960  [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
11:11:19.0160 7960  SCardSvr - ok
11:11:19.0175 7960  [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
11:11:19.0207 7960  scfilter - ok
11:11:19.0253 7960  [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule        C:\Windows\system32\schedsvc.dll
11:11:19.0316 7960  Schedule - ok
11:11:19.0331 7960  [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc     C:\Windows\System32\certprop.dll
11:11:19.0347 7960  SCPolicySvc - ok
11:11:19.0378 7960  [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
11:11:19.0409 7960  SDRSVC - ok
11:11:19.0487 7960  [ 4A5809A1D796E2675AC0332BF7B0CB11 ] SeaPort         C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
11:11:19.0503 7960  SeaPort - ok
11:11:19.0565 7960  [ 07F7F501AD50DE2BA2D5842D9B6D6155 ] SecDrv          C:\Windows\system32\drivers\SECDRV.SYS
11:11:19.0581 7960  SecDrv ( UnsignedFile.Multi.Generic ) - warning
11:11:19.0581 7960  SecDrv - detected UnsignedFile.Multi.Generic (1)
11:11:19.0597 7960  [ A59B3A4442C52060CC7A85293AA3546F ] seclogon        C:\Windows\system32\seclogon.dll
11:11:19.0643 7960  seclogon - ok
11:11:19.0659 7960  [ DCB7FCDCC97F87360F75D77425B81737 ] SENS            C:\Windows\System32\sens.dll
11:11:19.0690 7960  SENS - ok
11:11:19.0706 7960  [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc        C:\Windows\system32\sensrsvc.dll
11:11:19.0737 7960  SensrSvc - ok
11:11:19.0768 7960  [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
11:11:19.0799 7960  Serenum - ok
11:11:19.0815 7960  [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial          C:\Windows\system32\DRIVERS\serial.sys
11:11:19.0846 7960  Serial - ok
11:11:19.0893 7960  [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
11:11:19.0924 7960  sermouse - ok
11:11:19.0987 7960  [ 3EC8DE67B1C78C31E54C0F030E6BD7D5 ] ServiceLayer    C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
11:11:20.0018 7960  ServiceLayer ( UnsignedFile.Multi.Generic ) - warning
11:11:20.0018 7960  ServiceLayer - detected UnsignedFile.Multi.Generic (1)
11:11:20.0049 7960  [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv      C:\Windows\system32\sessenv.dll
11:11:20.0096 7960  SessionEnv - ok
11:11:20.0127 7960  [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
11:11:20.0174 7960  sffdisk - ok
11:11:20.0189 7960  [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
11:11:20.0205 7960  sffp_mmc - ok
11:11:20.0221 7960  [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
11:11:20.0236 7960  sffp_sd - ok
11:11:20.0252 7960  [ DB96666CC8312EBC45032F30B007A547 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
11:11:20.0283 7960  sfloppy - ok
11:11:20.0330 7960  [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
11:11:20.0377 7960  SharedAccess - ok
11:11:20.0392 7960  [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
11:11:20.0423 7960  ShellHWDetection - ok
11:11:20.0470 7960  [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp          C:\Windows\system32\drivers\sisagp.sys
11:11:20.0486 7960  sisagp - ok
11:11:20.0533 7960  [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
11:11:20.0548 7960  SiSRaid2 - ok
11:11:20.0564 7960  [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
11:11:20.0579 7960  SiSRaid4 - ok
11:11:20.0657 7960  [ 6128E98EAAED364ED1A32708D2FD22CB ] SkypeUpdate     C:\Program Files\Skype\Updater\Updater.exe
11:11:20.0673 7960  SkypeUpdate - ok
11:11:20.0720 7960  [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb             C:\Windows\system32\DRIVERS\smb.sys
11:11:20.0767 7960  Smb - ok
11:11:20.0813 7960  [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
11:11:20.0845 7960  SNMPTRAP - ok
11:11:20.0954 7960  [ 5177D14A78E60FD61DCFC6B388E7E971 ] Sony PC Companion C:\Program Files\Sony\Sony PC Companion\PCCService.exe
11:11:20.0969 7960  Sony PC Companion - ok
11:11:20.0985 7960  [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr           C:\Windows\system32\drivers\spldr.sys
11:11:21.0001 7960  spldr - ok
11:11:21.0047 7960  [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler         C:\Windows\System32\spoolsv.exe
11:11:21.0094 7960  Spooler - ok
11:11:21.0157 7960  [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc          C:\Windows\system32\sppsvc.exe
11:11:21.0219 7960  sppsvc - ok
11:11:21.0235 7960  [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
11:11:21.0281 7960  sppuinotify - ok
11:11:21.0375 7960  [ 83726CF02ECED69138948083E06B6EAC ] SRTSP           C:\Windows\System32\Drivers\N360\0502020.003\SRTSP.SYS
11:11:21.0391 7960  SRTSP - ok
11:11:21.0453 7960  [ 4E7EAB2E5615D39CF1F1DF9C71E5E225 ] SRTSPX          C:\Windows\system32\drivers\N360\0502020.003\SRTSPX.SYS
11:11:21.0469 7960  SRTSPX - ok
11:11:21.0531 7960  [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv             C:\Windows\system32\DRIVERS\srv.sys
11:11:21.0609 7960  srv - ok
11:11:21.0609 7960  [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
11:11:21.0640 7960  srv2 - ok
11:11:21.0640 7960  [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
11:11:21.0671 7960  srvnet - ok
11:11:21.0671 7960  [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
11:11:21.0718 7960  SSDPSRV - ok
11:11:21.0734 7960  [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
11:11:21.0781 7960  SstpSvc - ok
11:11:21.0827 7960  [ 3F0164FBC0BD1ADBD02DF9759181451A ] ss_bbus         C:\Windows\system32\DRIVERS\ss_bbus.sys
11:11:21.0859 7960  ss_bbus - ok
11:11:21.0905 7960  [ B89D62206034E5FE573C80A24DD55675 ] ss_bmdfl        C:\Windows\system32\DRIVERS\ss_bmdfl.sys
11:11:21.0921 7960  ss_bmdfl - ok
11:11:21.0937 7960  [ 1ED0FCEA586FE2A416EE15196E5631DD ] ss_bmdm         C:\Windows\system32\DRIVERS\ss_bmdm.sys
11:11:21.0952 7960  ss_bmdm - ok
11:11:22.0015 7960  [ 994D2E5378CC337EC7DD73C1E04FCAA4 ] ss_bserd        C:\Windows\system32\DRIVERS\ss_bserd.sys
11:11:22.0046 7960  ss_bserd - ok
11:11:22.0046 7960  [ DB32D325C192B801DF274BFD12A7E72B ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
11:11:22.0061 7960  stexstor - ok
11:11:22.0108 7960  [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc          C:\Windows\System32\wiaservc.dll
11:11:22.0155 7960  StiSvc - ok
11:11:22.0186 7960  [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum          C:\Windows\system32\drivers\swenum.sys
11:11:22.0202 7960  swenum - ok
11:11:22.0217 7960  [ A28BD92DF340E57B024BA433165D34D7 ] swprv           C:\Windows\System32\swprv.dll
11:11:22.0264 7960  swprv - ok
11:11:22.0280 7960  [ 9BBEB8C6258E72D62E7560E6667AAD39 ] SymDS           C:\Windows\system32\drivers\N360\0502020.003\SYMDS.SYS
11:11:22.0295 7960  SymDS - ok
11:11:22.0342 7960  [ D5C02629C02A820A7E71BCA3D44294A3 ] SymEFA          C:\Windows\system32\drivers\N360\0502020.003\SYMEFA.SYS
11:11:22.0373 7960  SymEFA - ok
11:11:22.0405 7960  [ AB33C3B196197CA467CBDDA717860DBA ] SymEvent        C:\Windows\system32\Drivers\SYMEVENT.SYS
11:11:22.0420 7960  SymEvent - ok
11:11:22.0436 7960  [ A73399804D5D4A8B20BA60FCF70C9F1F ] SymIRON         C:\Windows\system32\drivers\N360\0502020.003\Ironx86.SYS
11:11:22.0451 7960  SymIRON - ok
11:11:22.0483 7960  [ 2C688094650D23B62B0A809DECD0B12F ] SymNetS         C:\Windows\System32\Drivers\N360\0502020.003\SYMNETS.SYS
11:11:22.0498 7960  SymNetS - ok
11:11:22.0545 7960  [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain         C:\Windows\system32\sysmain.dll
11:11:22.0592 7960  SysMain - ok
11:11:22.0607 7960  [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll
11:11:22.0639 7960  TabletInputService - ok
11:11:22.0670 7960  [ 613BF4820361543956909043A265C6AC ] TapiSrv         C:\Windows\System32\tapisrv.dll
11:11:22.0701 7960  TapiSrv - ok
11:11:22.0701 7960  [ B799D9FDB26111737F58288D8DC172D9 ] TBS             C:\Windows\System32\tbssvc.dll
11:11:22.0732 7960  TBS - ok
11:11:22.0795 7960  [ 7FA2E0F8B072BD04B77B421480B6CC22 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
11:11:22.0841 7960  Tcpip - ok
11:11:22.0888 7960  [ 7FA2E0F8B072BD04B77B421480B6CC22 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
11:11:22.0919 7960  TCPIP6 - ok
11:11:22.0951 7960  [ CCA24162E055C3714CE5A88B100C64ED ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
11:11:22.0966 7960  tcpipreg - ok
11:11:22.0997 7960  [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
11:11:23.0044 7960  TDPIPE - ok
11:11:23.0060 7960  [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
11:11:23.0091 7960  TDTCP - ok
11:11:23.0107 7960  [ B459575348C20E8121D6039DA063C704 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
11:11:23.0138 7960  tdx - ok
11:11:23.0169 7960  TelekomNM3 - ok
11:11:23.0185 7960  [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD          C:\Windows\system32\drivers\termdd.sys
11:11:23.0216 7960  TermDD - ok
11:11:23.0247 7960  [ 382C804C92811BE57829D8E550A900E2 ] TermService     C:\Windows\System32\termsrv.dll
11:11:23.0325 7960  TermService - ok
11:11:23.0356 7960  [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes          C:\Windows\system32\themeservice.dll
11:11:23.0387 7960  Themes - ok
11:11:23.0403 7960  [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER     C:\Windows\system32\mmcss.dll
11:11:23.0434 7960  THREADORDER - ok
11:11:23.0434 7960  [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks          C:\Windows\System32\trkwks.dll
11:11:23.0465 7960  TrkWks - ok
11:11:23.0528 7960  [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
11:11:23.0559 7960  TrustedInstaller - ok
11:11:23.0590 7960  [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
11:11:23.0637 7960  tssecsrv - ok
11:11:23.0699 7960  [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
11:11:23.0746 7960  TsUsbFlt - ok
11:11:23.0777 7960  [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
11:11:23.0840 7960  tunnel - ok
11:11:23.0855 7960  [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
11:11:23.0855 7960  uagp35 - ok
11:11:23.0871 7960  [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
11:11:23.0918 7960  udfs - ok
11:11:23.0933 7960  [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
11:11:23.0980 7960  UI0Detect - ok
11:11:24.0011 7960  [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
11:11:24.0043 7960  uliagpkx - ok
11:11:24.0089 7960  [ D295BED4B898F0FD999FCFA9B32B071B ] umbus           C:\Windows\system32\drivers\umbus.sys
11:11:24.0136 7960  umbus - ok
11:11:24.0183 7960  [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
11:11:24.0214 7960  UmPass - ok
11:11:24.0230 7960  [ 833FBB672460EFCE8011D262175FAD33 ] upnphost        C:\Windows\System32\upnphost.dll
11:11:24.0261 7960  upnphost - ok
11:11:24.0308 7960  [ 1D9F2BD026E8E2D45033A4DF3F16B78C ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
11:11:24.0355 7960  usbaudio - ok
11:11:24.0386 7960  [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
11:11:24.0433 7960  usbccgp - ok
11:11:24.0464 7960  [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
11:11:24.0495 7960  usbcir - ok
11:11:24.0542 7960  [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci         C:\Windows\system32\drivers\usbehci.sys
11:11:24.0573 7960  usbehci - ok
11:11:24.0620 7960  [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
11:11:24.0667 7960  usbhub - ok
11:11:24.0713 7960  [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
11:11:24.0745 7960  usbohci - ok
11:11:24.0791 7960  [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
11:11:24.0823 7960  usbprint - ok
11:11:24.0854 7960  [ 576096CCBC07E7C4EA4F5E6686D6888F ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
11:11:24.0885 7960  usbscan - ok
11:11:24.0901 7960  [ F991AB9CC6B908DB552166768176896A ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
11:11:24.0947 7960  USBSTOR - ok
11:11:24.0963 7960  [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
11:11:24.0979 7960  usbuhci - ok
11:11:25.0025 7960  [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2 ] usbvideo        C:\Windows\system32\Drivers\usbvideo.sys
11:11:25.0057 7960  usbvideo - ok
11:11:25.0088 7960  [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms           C:\Windows\System32\uxsms.dll
11:11:25.0119 7960  UxSms - ok
11:11:25.0135 7960  [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc        C:\Windows\system32\lsass.exe
11:11:25.0150 7960  VaultSvc - ok
11:11:25.0166 7960  [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
11:11:25.0166 7960  vdrvroot - ok
11:11:25.0197 7960  [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds             C:\Windows\System32\vds.exe
11:11:25.0244 7960  vds - ok
11:11:25.0291 7960  [ 17C408214EA61696CEC9C66E388B14F3 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
11:11:25.0322 7960  vga - ok
11:11:25.0337 7960  [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave         C:\Windows\System32\drivers\vga.sys
11:11:25.0400 7960  VgaSave - ok
11:11:25.0415 7960  [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
11:11:25.0431 7960  vhdmp - ok
11:11:25.0447 7960  [ C829317A37B4BEA8F39735D4B076E923 ] viaagp          C:\Windows\system32\drivers\viaagp.sys
11:11:25.0462 7960  viaagp - ok
11:11:25.0462 7960  [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7           C:\Windows\system32\DRIVERS\viac7.sys
11:11:25.0493 7960  ViaC7 - ok
11:11:25.0509 7960  [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide          C:\Windows\system32\drivers\viaide.sys
11:11:25.0525 7960  viaide - ok
11:11:25.0540 7960  [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
11:11:25.0556 7960  volmgr - ok
11:11:25.0571 7960  [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
11:11:25.0587 7960  volmgrx - ok
11:11:25.0603 7960  [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
11:11:25.0618 7960  volsnap - ok
11:11:25.0665 7960  [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
11:11:25.0681 7960  vsmraid - ok
11:11:25.0712 7960  [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS             C:\Windows\system32\vssvc.exe
11:11:25.0774 7960  VSS - ok
11:11:25.0790 7960  [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
11:11:25.0805 7960  vwifibus - ok
11:11:25.0805 7960  [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
11:11:25.0837 7960  vwififlt - ok
11:11:25.0883 7960  [ A3F04CBEA6C2A10E6CB01F8B47611882 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
11:11:25.0915 7960  vwifimp - ok
11:11:25.0946 7960  [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time         C:\Windows\system32\w32time.dll
11:11:26.0024 7960  W32Time - ok
11:11:26.0039 7960  [ DE3721E89C653AA281428C8A69745D90 ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
11:11:26.0071 7960  WacomPen - ok
11:11:26.0117 7960  [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
11:11:26.0195 7960  WANARP - ok
11:11:26.0195 7960  [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
11:11:26.0211 7960  Wanarpv6 - ok
11:11:26.0289 7960  [ 691E3285E53DCA558E1A84667F13E15A ] wbengine        C:\Windows\system32\wbengine.exe
11:11:26.0351 7960  wbengine - ok
11:11:26.0367 7960  [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
11:11:26.0398 7960  WbioSrvc - ok
11:11:26.0445 7960  [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc         C:\Windows\System32\wcncsvc.dll
11:11:26.0461 7960  wcncsvc - ok
11:11:26.0476 7960  [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
11:11:26.0523 7960  WcsPlugInService - ok
11:11:26.0539 7960  [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd              C:\Windows\system32\DRIVERS\wd.sys
11:11:26.0554 7960  Wd - ok
11:11:26.0570 7960  [ 9950E3D0F08141C7E89E64456AE7DC73 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
11:11:26.0601 7960  Wdf01000 - ok
11:11:26.0601 7960  [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost  C:\Windows\system32\wdi.dll
11:11:26.0663 7960  WdiServiceHost - ok
11:11:26.0663 7960  [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost   C:\Windows\system32\wdi.dll
11:11:26.0679 7960  WdiSystemHost - ok
11:11:26.0710 7960  [ A9D880F97530D5B8FEE278923349929D ] WebClient       C:\Windows\System32\webclnt.dll
11:11:26.0726 7960  WebClient - ok
11:11:26.0726 7960  [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc          C:\Windows\system32\wecsvc.dll
11:11:26.0757 7960  Wecsvc - ok
11:11:26.0773 7960  [ AC804569BB2364FB6017370258A4091B ] wercplsupport   C:\Windows\System32\wercplsupport.dll
11:11:26.0788 7960  wercplsupport - ok
11:11:26.0819 7960  [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc          C:\Windows\System32\WerSvc.dll
11:11:26.0866 7960  WerSvc - ok
11:11:26.0913 7960  [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
11:11:26.0975 7960  WfpLwf - ok
11:11:26.0991 7960  [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
11:11:26.0991 7960  WIMMount - ok
11:11:27.0053 7960  [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend       C:\Program Files\Windows Defender\mpsvc.dll
11:11:27.0085 7960  WinDefend - ok
11:11:27.0085 7960  WinHttpAutoProxySvc - ok
11:11:27.0147 7960  [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
11:11:27.0194 7960  Winmgmt - ok
11:11:27.0241 7960  [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM           C:\Windows\system32\WsmSvc.dll
11:11:27.0287 7960  WinRM - ok
11:11:27.0334 7960  [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
11:11:27.0365 7960  WinUsb - ok
11:11:27.0397 7960  [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc         C:\Windows\System32\wlansvc.dll
11:11:27.0443 7960  Wlansvc - ok
11:11:27.0475 7960  [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
11:11:27.0490 7960  WmiAcpi - ok
11:11:27.0506 7960  [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
11:11:27.0537 7960  wmiApSrv - ok
11:11:27.0568 7960  [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc   C:\Program Files\Windows Media Player\wmpnetwk.exe
11:11:27.0631 7960  WMPNetworkSvc - ok
11:11:27.0631 7960  [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc          C:\Windows\System32\wpcsvc.dll
11:11:27.0662 7960  WPCSvc - ok
11:11:27.0677 7960  [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
11:11:27.0693 7960  WPDBusEnum - ok
11:11:27.0724 7960  [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
11:11:27.0787 7960  ws2ifsl - ok
11:11:27.0787 7960  [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc          C:\Windows\System32\wscsvc.dll
11:11:27.0802 7960  wscsvc - ok
11:11:27.0818 7960  WSearch - ok
11:11:27.0880 7960  [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv        C:\Windows\system32\wuaueng.dll
11:11:27.0927 7960  wuauserv - ok
11:11:27.0943 7960  [ E714A1C0354636837E20CCBF00888EE7 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
11:11:27.0989 7960  WudfPf - ok
11:11:28.0052 7960  [ 1023EE888C9B47178C5293ED5336AB69 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
11:11:28.0114 7960  WUDFRd - ok
11:11:28.0145 7960  [ 8D1E1E529A2C9E9B6A85B55A345F7629 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
11:11:28.0177 7960  wudfsvc - ok
11:11:28.0192 7960  [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc         C:\Windows\System32\wwansvc.dll
11:11:28.0208 7960  WwanSvc - ok
11:11:28.0223 7960  ================ Scan global ===============================
11:11:28.0255 7960  [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll
11:11:28.0286 7960  [ 183B4188D5D91B271613EC3EFD1B3CEF ] C:\Windows\system32\winsrv.dll
11:11:28.0301 7960  [ 183B4188D5D91B271613EC3EFD1B3CEF ] C:\Windows\system32\winsrv.dll
11:11:28.0317 7960  [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll
11:11:28.0333 7960  [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe
11:11:28.0333 7960  [Global] - ok
11:11:28.0333 7960  ================ Scan MBR ==================================
11:11:28.0364 7960  [ 5D949EEA3BEEC2DF38A2D7900AD89A60 ] \Device\Harddisk0\DR0
11:11:30.0283 7960  \Device\Harddisk0\DR0 - ok
11:11:30.0298 7960  ================ Scan VBR ==================================
11:11:30.0298 7960  [ 4BA4FAB1AB1BB0938C5CE8CA9A40EC46 ] \Device\Harddisk0\DR0\Partition1
11:11:30.0298 7960  \Device\Harddisk0\DR0\Partition1 - ok
11:11:30.0298 7960  [ 0C92B798407252B55337D7E64C6D3124 ] \Device\Harddisk0\DR0\Partition2
11:11:30.0298 7960  \Device\Harddisk0\DR0\Partition2 - ok
11:11:30.0329 7960  [ D7196B76D2732DA5326A930EABFF372F ] \Device\Harddisk0\DR0\Partition3
11:11:30.0329 7960  \Device\Harddisk0\DR0\Partition3 - ok
11:11:30.0329 7960  [ 4695138304D36F4A1FAB28F27A0CB0A6 ] \Device\Harddisk0\DR0\Partition4
11:11:30.0329 7960  \Device\Harddisk0\DR0\Partition4 - ok
11:11:30.0345 7960  ============================================================
11:11:30.0345 7960  Scan finished
11:11:30.0345 7960  ============================================================
11:11:30.0345 8144  Detected object count: 5
11:11:30.0345 8144  Actual detected object count: 5
11:11:59.0127 8144  FsUsbExDisk ( UnsignedFile.Multi.Generic ) - skipped by user
11:11:59.0127 8144  FsUsbExDisk ( UnsignedFile.Multi.Generic ) - User select action: Skip 
11:11:59.0127 8144  FsUsbExService ( UnsignedFile.Multi.Generic ) - skipped by user
11:11:59.0127 8144  FsUsbExService ( UnsignedFile.Multi.Generic ) - User select action: Skip 
11:11:59.0127 8144  Netzmanager Service ( UnsignedFile.Multi.Generic ) - skipped by user
11:11:59.0127 8144  Netzmanager Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 
11:11:59.0127 8144  SecDrv ( UnsignedFile.Multi.Generic ) - skipped by user
11:11:59.0127 8144  SecDrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 
11:11:59.0127 8144  ServiceLayer ( UnsignedFile.Multi.Generic ) - skipped by user
11:11:59.0127 8144  ServiceLayer ( UnsignedFile.Multi.Generic ) - User select action: Skip
         
Danke schon mal für deine Hilfe.

Alt 01.09.2012, 12:14   #17
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Trojaner ZeroAccess + FakeAlert - Standard

Trojaner ZeroAccess + FakeAlert



Dann bitte jetzt CF ausführen:

ComboFix

Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Schliesse alle Programme, vor allem dein Antivirenprogramm und andere Hintergrundwächter sowie deinen Internetbrowser.
  • Starte combofix.exe von deinem Desktop aus, bestätige die Warnmeldungen, führe die Updates durch (falls vorgeschlagen), installiere die Wiederherstellungskonsole (falls vorgeschlagen) und lass dein System durchsuchen.
    Vermeide es auch während Combofix läuft die Maus und Tastatur zu benutzen.
  • Im Anschluss öffnet sich automatisch eine combofix.txt, diesen Inhalt bitte kopieren ([Strg]a, [Strg]c) und in deinen Beitrag einfügen ([Strg]v). Die Datei findest du außerdem unter: C:\ComboFix.txt.
Wichtiger Hinweis:
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!

Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich ziehen und eine Bereinigung der Infektion noch erschweren.

Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie

Zitat:
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
startest du Windows dann manuell neu und die Fehlermeldungen sollten nicht mehr auftauchen.
__________________

__________________

Alt 01.09.2012, 16:29   #18
An_Ro
 
Trojaner ZeroAccess + FakeAlert - Standard

Trojaner ZeroAccess + FakeAlert



Hier das logfiles von combofix.
Code:
ATTFilter
ComboFix 12-08-31.08 - Anne 01.09.2012  17:06:01.1.4 - x86
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.49.1031.18.3063.1750 [GMT 2:00]
ausgeführt von:: c:\users\Anne\Desktop\ComboFix.exe
AV: Norton 360 *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
FW: Norton 360 *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
SP: Norton 360 *Disabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((   Weitere Löschungen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\Internet Explorer
c:\internet explorer\Custom\eBay.ico
c:\users\Anne\4.0
c:\users\Anne\AppData\Local\Temp\b01d42a6-0948-4bd0-8dea-54d68f50a791\CliSecureRT.dll
c:\users\Anne\Favorites\bookmarks-2007-12-04.html
c:\users\Anne\Favorites\bookmarks-2007-12-05.html
c:\users\Robert\4.0
c:\windows\system32\muzapp.exe
c:\windows\system32\spool\prtprocs\w32x86\ppbiPr.dll
.
.
(((((((((((((((((((((((   Dateien erstellt von 2012-08-01 bis 2012-09-01  ))))))))))))))))))))))))))))))
.
.
2012-09-01 15:14 . 2012-09-01 15:14	--------	d-----w-	c:\users\Robert\AppData\Local\temp
2012-09-01 15:14 . 2012-09-01 15:14	--------	d-----w-	c:\users\Georg\AppData\Local\temp
2012-09-01 15:14 . 2012-09-01 15:14	--------	d-----w-	c:\users\Default\AppData\Local\temp
2012-09-01 15:14 . 2012-09-01 15:14	--------	d-----w-	c:\users\Anton\AppData\Local\temp
2012-08-31 15:15 . 2012-08-31 15:15	--------	d-----w-	C:\_OTL
2012-08-21 14:40 . 2012-08-21 14:40	--------	d-----w-	c:\program files\ESET
2012-08-18 12:06 . 2012-08-18 12:06	--------	d-----w-	c:\users\Anton\AppData\Roaming\Malwarebytes
2012-08-13 17:53 . 2012-08-13 17:53	--------	d-----w-	c:\program files\7-Zip
2012-08-12 16:09 . 2012-08-12 16:09	--------	d-----w-	c:\users\Anne\AppData\Roaming\Malwarebytes
2012-08-12 16:09 . 2012-08-12 16:09	--------	d-----w-	c:\programdata\Malwarebytes
2012-08-12 16:09 . 2012-08-12 16:09	--------	d-----w-	c:\program files\Malwarebytes' Anti-Malware
2012-08-12 16:09 . 2012-07-03 11:46	22344	----a-w-	c:\windows\system32\drivers\mbam.sys
2012-08-11 17:42 . 2012-08-11 17:42	35752	----a-w-	c:\windows\system32\drivers\FixZeroAccess.sys
2012-08-11 17:01 . 2012-08-11 17:01	--------	d-----w-	c:\users\Anne\AppData\Roaming\FixZeroAccess
2012-08-07 13:24 . 2012-08-07 13:24	--------	d-----w-	c:\users\Anne\AppData\Local\Western Digital
2012-08-06 08:01 . 2012-08-06 08:01	--------	d-----w-	c:\users\Anton\AppData\Roaming\LolClient
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-08-14 21:12 . 2012-04-16 06:12	426184	----a-w-	c:\windows\system32\FlashPlayerApp.exe
2012-08-14 21:12 . 2011-09-23 12:10	70344	----a-w-	c:\windows\system32\FlashPlayerCPLApp.cpl
2012-06-06 06:49 . 2012-06-06 06:49	1070152	----a-w-	c:\windows\system32\MSCOMCTL.OCX
2012-06-06 05:05 . 2012-07-22 19:15	1390080	----a-w-	c:\windows\system32\msxml6.dll
2012-06-06 05:05 . 2012-07-22 19:15	1236992	----a-w-	c:\windows\system32\msxml3.dll
2012-06-06 05:03 . 2012-07-22 19:15	805376	----a-w-	c:\windows\system32\cdosys.dll
2012-07-29 19:30 . 2011-04-26 06:10	136672	----a-w-	c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"KiesPDLR"="c:\program files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe" [2011-06-24 20880]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-03-04 284696]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2010-06-14 9288296]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-05-27 98304]
"NUSB3MON"="c:\program files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2010-04-27 113288]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2009-11-02 103720]
"SSBkgdUpdate"="c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-10-14 155648]
"IndexSearch"="c:\program files\ScanSoft\PaperPort\IndexSearch.exe" [2005-03-17 40960]
"BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2009-05-26 1159168]
"ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2008-12-24 114688]
"BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-20 59240]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-18 254696]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2012-04-18 421888]
"Logitech G930"="c:\program files\Logitech\G930\G930.exe" [2011-03-23 1516888]
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-07-03 462920]
.
c:\users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Netzmanager.lnk - c:\program files\Netzmanager\netzmanager.exe [2010-11-10 1619968]
.
c:\users\Anne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Netzmanager.lnk - c:\program files\Netzmanager\netzmanager.exe [2010-11-10 1619968]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
phase-6 Reminder.lnk - c:\program files\phase-6\phase-6\reminder\reminder.exe [2012-1-18 1032192]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [x]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
R3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [x]
R3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [x]
R3 LADF_BakerCOnly;BakerC Filter Driver;c:\windows\system32\DRIVERS\ladfBakerCi386.sys [x]
R3 LADF_BakerROnly;BakerR Filter Driver;c:\windows\system32\DRIVERS\ladfBakerRi386.sys [x]
R3 libusb0;libusb-win32 - Kernel Driver 04/08/2011 1.2.4.0;c:\windows\system32\DRIVERS\libusb0.sys [x]
R3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;c:\program files\Microsoft Office\Office14\GROOVE.EXE [x]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [x]
R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [x]
R3 Sony PC Companion;Sony PC Companion;c:\program files\Sony\Sony PC Companion\PCCService.exe [x]
R3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\DRIVERS\ss_bbus.sys [x]
R3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\DRIVERS\ss_bmdfl.sys [x]
R3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\DRIVERS\ss_bmdm.sys [x]
R3 ss_bserd;SAMSUNG USB Mobile Logging Driver;c:\windows\system32\DRIVERS\ss_bserd.sys [x]
R3 TelekomNM3;TelekomNM3 NDIS Protocol Driver;c:\progra~1\NETZMA~1\NMINFR~1\TelekomNM3.SYS [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
S0 SymDS;Symantec Data Store;c:\windows\system32\drivers\N360\0502020.003\SYMDS.SYS [x]
S0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\N360\0502020.003\SYMEFA.SYS [x]
S1 BHDrvx86;BHDrvx86;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\BASHDefs\20120823.007_ec5\BHDrvx86.sys [x]
S1 IDSVix86;IDSVix86;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\IPSDefs\20120831.001\IDSvix86.sys [x]
S1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\N360\0502020.003\Ironx86.SYS [x]
S1 SymNetS;Symantec Network Security WFP Driver;c:\windows\System32\Drivers\N360\0502020.003\SYMNETS.SYS [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 FreeAgentGoNext Service;Seagate Service;c:\program files\Seagate\SeagateManager\Sync\FreeAgentService.exe [x]
S2 FsUsbExService;FsUsbExService;c:\windows\system32\FsUsbExService.Exe [x]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [x]
S2 N360;Norton 360;c:\program files\Norton 360\Engine\5.2.2.3\ccSvcHst.exe [x]
S2 Netzmanager Service;Netzmanager Infrastruktur Informationssystem Dienst;c:\program files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe  [x]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [x]
S3 FsUsbExDisk;FsUsbExDisk;c:\windows\system32\FsUsbExDisk.SYS [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver;c:\windows\system32\Drivers\nx6000.sys [x]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [x]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8192su.sys [x]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]
.
.
Inhalt des "geplante Tasks" Ordners
.
2012-09-01 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-16 21:12]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://www.aldi.com
IE: An OneNote s&enden - c:\progra~1\MICROS~3\Office14\ONBttnIE.dll/105
IE: Nach Microsoft E&xcel exportieren - c:\progra~1\MICROS~3\Office14\EXCEL.EXE/3000
IE: {{0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - hxxp://rover.ebay.com/rover/1/707-37276-17534-31/4
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Anne\AppData\Roaming\Mozilla\Firefox\Profiles\mlpiw5ji.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://web.de/
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
SafeBoot-BsScanner
AddRemove-01_Simmental - c:\program files\Samsung\USB Drivers\01_Simmental\Uninstall.exe
AddRemove-02_Siberian - c:\program files\SAMSUNG\USB Drivers\02_Siberian\Uninstall.exe
AddRemove-03_Swallowtail - c:\program files\Samsung\USB Drivers\03_Swallowtail\Uninstall.exe
AddRemove-04_semseyite - c:\program files\SAMSUNG\USB Drivers\04_semseyite\Uninstall.exe
AddRemove-05_Sloan - c:\program files\Samsung\USB Drivers\05_Sloan\Uninstall.exe
AddRemove-06_Spencer - c:\program files\SAMSUNG\USB Drivers\06_Spencer\Uninstall.exe
AddRemove-07_Schorl - c:\program files\SAMSUNG\USB Drivers\07_Schorl\Uninstall.exe
AddRemove-08_EMPChipset - c:\program files\SAMSUNG\USB Drivers\08_EMPChipset\Uninstall.exe
AddRemove-09_Hsp - c:\program files\SAMSUNG\USB Drivers\09_Hsp\Uninstall.exe
AddRemove-11_HSP_Plus_Default - c:\program files\Samsung\USB Drivers\11_HSP_Plus_Default\Uninstall.exe
AddRemove-12_Symbian_USB_Download_Driver - c:\program files\SAMSUNG\USB Drivers\12_Symbian_USB_Download_Driver\Uninstall.exe
AddRemove-15_Symbian_Samsung_PC_DLC_Driver - c:\program files\SAMSUNG\USB Drivers\15_Symbian_Samsung_PC_DLC_Driver\Uninstall.exe
AddRemove-16_Shrewsbury - c:\program files\Samsung\USB Drivers\16_Shrewsbury\Uninstall.exe
AddRemove-17_EMP_Chipset2 - c:\program files\SAMSUNG\USB Drivers\17_EMP_Chipset2\Uninstall.exe
AddRemove-18_Zinia_Serial_Driver - c:\program files\SAMSUNG\USB Drivers\18_Zinia_Serial_Driver\Uninstall.exe
AddRemove-19_VIA_driver - c:\program files\Samsung\USB Drivers\19_VIA_driver\Uninstall.exe
AddRemove-20_NXP_Driver - c:\program files\Samsung\USB Drivers\20_NXP_Driver\Uninstall.exe
AddRemove-21_Searsburg - c:\program files\Samsung\USB Drivers\21_Searsburg\Uninstall.exe
AddRemove-22_WiBro_WiMAX - c:\program files\Samsung\USB Drivers\22_WiBro_WiMAX\Uninstall.exe
AddRemove-24_flashusbdriver - c:\program files\Samsung\USB Drivers\24_flashusbdriver\Uninstall.exe
AddRemove-25_escape - c:\program files\Samsung\USB Drivers\25_escape\Uninstall.exe
.
.
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\N360]
"ImagePath"="\"c:\program files\Norton 360\Engine\5.2.2.3\ccSvcHst.exe\" /s \"N360\" /m \"c:\program files\Norton 360\Engine\5.2.2.3\diMaster.dll\" /prefetch:1"
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\S-1-5-21-2003127206-1596683678-1564571338-1004\Software\SecuROM\License information*]
"datasecu"=hex:0f,e3,2d,6c,ff,d3,33,ad,f2,ec,c5,2e,1f,07,51,8f,d1,d2,83,f2,39,
   50,0b,f3,a2,bc,a7,5f,e2,9e,d7,4f,57,28,38,d5,67,bd,12,b2,64,29,55,2f,f9,8c,\
"rkeysecu"=hex:f1,68,21,c8,d0,6e,64,44,cf,5b,22,ba,99,ba,0a,31
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Weitere laufende Prozesse ------------------------
.
c:\windows\system32\atieclxx.exe
c:\windows\system32\brsvc01a.exe
c:\windows\system32\brss01a.exe
c:\program files\Microsoft LifeCam\MSCamS32.exe
c:\windows\system32\taskhost.exe
c:\program files\Common Files\Protexis\License Service\PsiService_2.exe
c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\windows\system32\WUDFHost.exe
c:\windows\system32\conhost.exe
c:\windows\system32\sppsvc.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\PC Connectivity Solution\ServiceLayer.exe
c:\windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
c:\program files\PC Connectivity Solution\Transports\NclUSBSrv.exe
c:\program files\PC Connectivity Solution\Transports\NclRSSrv.exe
c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
c:\program files\Adobe\Reader 10.0\Reader\Reader_sl.exe
c:\program files\Samsung\Kies\KiesTrayAgent.exe
.
**************************************************************************
.
Zeit der Fertigstellung: 2012-09-01  17:26:04 - PC wurde neu gestartet
ComboFix-quarantined-files.txt  2012-09-01 15:26
.
Vor Suchlauf: 9 Verzeichnis(se), 643.124.953.088 Bytes frei
Nach Suchlauf: 13 Verzeichnis(se), 642.982.219.776 Bytes frei
.
- - End Of File - - CDDD9BA8ABC4E552A79AC3B7D8B4EDDA
         
__________________

Alt 03.09.2012, 13:36   #19
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Trojaner ZeroAccess + FakeAlert - Standard

Trojaner ZeroAccess + FakeAlert



Bitte nun Logs mit GMER und OSAM erstellen und posten.
GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen.
Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst.

Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM!

Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe - (aswMBR.exe Anleitung)
    Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten".
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen )
    Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS-Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort.

Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung

Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none).



Noch ein Hinweis: Sollte aswMBR abstürzen und es kommt eine Meldung wie "aswMBR.exe funktioniert nicht mehr, dann mach Folgendes:
Starte aswMBR neu, wähle unten links im Drop-Down-Menü (unten links im Fenster von aswMBR) bei "AV scan" (none) aus und klick nochmal auf den Scan-Button.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 03.09.2012, 18:15   #20
An_Ro
 
Trojaner ZeroAccess + FakeAlert - Standard

Trojaner ZeroAccess + FakeAlert



Hier die 3 Logfiles:

GMER
Code:
ATTFilter
GMER 1.0.15.15641 - hxxp://www.gmer.net
Rootkit scan 2012-09-03 17:40:54
Windows 6.1.7601 Service Pack 1 Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 WDC_WD15 rev.51.0
Running: ddup1wm4.exe; Driver: C:\Users\Anne\AppData\Local\Temp\uwriqpow.sys


---- System - GMER 1.0.15 ----

SSDT            890914B0                                                                                          ZwAlertResumeThread
SSDT            89091590                                                                                          ZwAlertThread
SSDT            89091EA0                                                                                          ZwAllocateVirtualMemory
SSDT            88938B60                                                                                          ZwAlpcConnectPort
SSDT            8908E878                                                                                          ZwAssignProcessToJobObject
SSDT            8908EE20                                                                                          ZwCreateMutant
SSDT            8908E598                                                                                          ZwCreateSymbolicLinkObject
SSDT            89092588                                                                                          ZwCreateThread
SSDT            8908E688                                                                                          ZwCreateThreadEx
SSDT            8908E958                                                                                          ZwDebugActiveProcess
SSDT            890922D0                                                                                          ZwDuplicateObject
SSDT            89091CC0                                                                                          ZwFreeVirtualMemory
SSDT            8908EF10                                                                                          ZwImpersonateAnonymousToken
SSDT            8908EFD0                                                                                          ZwImpersonateThread
SSDT            88586518                                                                                          ZwLoadDriver
SSDT            89091BC0                                                                                          ZwMapViewOfSection
SSDT            8908ED40                                                                                          ZwOpenEvent
SSDT            89092470                                                                                          ZwOpenProcess
SSDT            89091F90                                                                                          ZwOpenProcessToken
SSDT            8908EB80                                                                                          ZwOpenSection
SSDT            890923A0                                                                                          ZwOpenThread
SSDT            8908E788                                                                                          ZwProtectVirtualMemory
SSDT            89091670                                                                                          ZwResumeThread
SSDT            89091910                                                                                          ZwSetContextThread
SSDT            890919F0                                                                                          ZwSetInformationProcess
SSDT            8908EA38                                                                                          ZwSetSystemInformation
SSDT            8908EC60                                                                                          ZwSuspendProcess
SSDT            89091750                                                                                          ZwSuspendThread
SSDT            89092668                                                                                          ZwTerminateProcess
SSDT            89091830                                                                                          ZwTerminateThread
SSDT            89091AE0                                                                                          ZwUnmapViewOfSection
SSDT            89091DB0                                                                                          ZwWriteVirtualMemory

---- Kernel code sections - GMER 1.0.15 ----

.text           ntkrnlpa.exe!ZwRollbackEnlistment + 140D                                                          82E913C9 1 Byte  [06]
.text           ntkrnlpa.exe!KiDispatchInterrupt + 5A2                                                            82ECAD52 19 Bytes  [E0, 0F, BA, F0, 07, 73, 09, ...] {LOOPNZ 0x11; MOV EDX, 0x97307f0; MOV CR4, EAX; OR AL, 0x80; MOV CR4, EAX; RET ; MOV ECX, CR3}
.text           ntkrnlpa.exe!KeRemoveQueueEx + 10DB                                                               82ED1D90 8 Bytes  [B0, 14, 09, 89, 90, 15, 09, ...] {MOV AL, 0x14; OR [ECX-0x76f6ea70], ECX}
.text           ntkrnlpa.exe!KeRemoveQueueEx + 10F3                                                               82ED1DA8 4 Bytes  [A0, 1E, 09, 89]
.text           ntkrnlpa.exe!KeRemoveQueueEx + 10FF                                                               82ED1DB4 4 Bytes  [60, 8B, 93, 88]
.text           ntkrnlpa.exe!KeRemoveQueueEx + 1153                                                               82ED1E08 4 Bytes  CALL AB69A715 
.text           ntkrnlpa.exe!KeRemoveQueueEx + 11CF                                                               82ED1E84 4 Bytes  [20, EE, 08, 89]
.text           ...                                                                                               
.text           C:\Windows\system32\DRIVERS\atikmdag.sys                                                          section is writeable [0x98C3A000, 0x2FBAB4, 0xE8000020]
pnidata         C:\Windows\system32\drivers\SECDRV.SYS                                                            unknown last section [0xA64C5F00, 0x24000, 0x48000000]

---- User code sections - GMER 1.0.15 ----

.text           C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe[3708] ntdll.dll!DbgBreakPoint  778A410C 3 Bytes  [8B, 40, 30] {MOV EAX, [EAX+0x30]}

---- Devices - GMER 1.0.15 ----

Device          \Driver\ACPI_HAL \Device\00000056                                                                 halmacpi.dll (Hardware Abstraction Layer DLL/Microsoft Corporation)

AttachedDevice  \Driver\volmgr \Device\HarddiskVolume1                                                            fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume2                                                            fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume3                                                            fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume4                                                            fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume5                                                            fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume6                                                            fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume7                                                            fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume8                                                            fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)

---- EOF - GMER 1.0.15 ----
         
OSAM
Code:
ATTFilter
Report of OSAM: Autorun Manager v5.0.11926.0
hxxp://www.online-solutions.ru/en/
Saved at 17:46:37 on 03.09.2012

OS: Windows 7 Home Premium Edition Service Pack 1 (Build 7601), 32-bit
Default Browser: Mozilla Corporation Firefox 14.0.1

Scanner Settings
[x] Rootkits detection (hidden registry)
[x] Rootkits detection (hidden files)
[x] Retrieve files information
[x] Check Microsoft signatures

Filters
[ ] Trusted entries
[ ] Empty entries
[x] Hidden registry entries (rootkit activity)
[x] Exclusively opened files
[x] Not found files
[x] Files without detailed information
[x] Existing files
[ ] Non-startable services
[ ] Non-startable drivers
[x] Active entries
[x] Disabled entries


[Common]
-----( %SystemRoot%\Tasks )-----
"Adobe Flash Player Updater.job" - "Adobe Systems Incorporated" - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

[Control Panel Objects]
-----( %SystemRoot%\system32 )-----
"FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\Windows\system32\FlashPlayerCPLApp.cpl
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )-----
"mlcfg32.cpl" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\MLCFG32.CPL
"Pando" - "Pando Networks" - C:\Program Files\Pando Networks\Media Booster\PMB.cpl
"QuickTime" - "Apple Inc." - C:\Program Files\QuickTime\QTSystem\QuickTime.cpl

[Drivers]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"BHDrvx86" (BHDrvx86) - "Symantec Corporation" - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\BASHDefs\20120823.007_ec5\BHDrvx86.sys
"catchme" (catchme) - ? - C:\Users\Anne\AppData\Local\Temp\catchme.sys  (File not found)
"dgderdrv" (dgderdrv) - ? - C:\Windows\System32\drivers\dgderdrv.sys  (File not found)
"EraserUtilRebootDrv" (EraserUtilRebootDrv) - "Symantec Corporation" - C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
"FsUsbExDisk" (FsUsbExDisk) - ? - C:\Windows\system32\FsUsbExDisk.SYS  (File found, but it contains no detailed information)
"GEAR ASPI Filter Driver" (GEARAspiWDM) - "GEAR Software Inc." - C:\Windows\System32\DRIVERS\GEARAspiWDM.sys
"IDSVix86" (IDSVix86) - "Symantec Corporation" - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\IPSDefs\20120831.001\IDSvix86.sys
"MBAMProtector" (MBAMProtector) - "Malwarebytes Corporation" - C:\Windows\system32\drivers\mbam.sys
"NAVENG" (NAVENG) - "Symantec Corporation" - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\VirusDefs\20120902.007\NAVENG.SYS
"NAVEX15" (NAVEX15) - "Symantec Corporation" - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\VirusDefs\20120902.007\NAVEX15.SYS
"SecDrv" (SecDrv) - "Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K." - C:\Windows\system32\drivers\SECDRV.SYS
"Symantec Data Store" (SymDS) - "Symantec Corporation" - C:\Windows\System32\drivers\N360\0502020.003\SYMDS.SYS
"Symantec Eraser Control driver" (eeCtrl) - "Symantec Corporation" - C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys
"Symantec Extended File Attributes" (SymEFA) - "Symantec Corporation" - C:\Windows\System32\drivers\N360\0502020.003\SYMEFA.SYS
"Symantec Iron Driver" (SymIRON) - "Symantec Corporation" - C:\Windows\system32\drivers\N360\0502020.003\Ironx86.SYS
"Symantec Network Security WFP Driver" (SymNetS) - "Symantec Corporation" - C:\Windows\System32\Drivers\N360\0502020.003\SYMNETS.SYS
"Symantec Real Time Storage Protection" (SRTSP) - "Symantec Corporation" - C:\Windows\System32\Drivers\N360\0502020.003\SRTSP.SYS
"Symantec Real Time Storage Protection (PEL)" (SRTSPX) - "Symantec Corporation" - C:\Windows\system32\drivers\N360\0502020.003\SRTSPX.SYS
"SymEvent" (SymEvent) - "Symantec Corporation" - C:\Windows\system32\Drivers\SYMEVENT.SYS
"TelekomNM3 NDIS Protocol Driver" (TelekomNM3) - ? - C:\PROGRA~1\NETZMA~1\NMINFR~1\TelekomNM3.SYS  (File not found)
"uwriqpow" (uwriqpow) - ? - C:\Users\Anne\AppData\Local\Temp\uwriqpow.sys  (Hidden registry entry, rootkit activity | File not found)

[Explorer]
-----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )-----
{16148659-720A-457d-850B-2DBD87BB129D} "AudibleShlExt Class" - "Audible, Inc." - C:\Program Files\Audible\Bin\AudibleExt.dll
{F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll
-----( HKLM\Software\Classes\Protocols\Filter )-----
{807573E5-5146-11D5-A672-00B0D022E945} "Microsoft Office InfoPath XML Mime Filter" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
-----( HKLM\Software\Classes\Protocols\Handler )-----
{314111c7-a502-11d2-bbca-00c04f8ec294} "HxProtocol Class" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} "IEProtocolHandler Class" - "Skype Technologies" - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
{828030A1-22C1-4009-854F-8E305202313F} "livecall" - "Microsoft Corporation" - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
{828030A1-22C1-4009-854F-8E305202313F} "msnim" - "Microsoft Corporation" - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
{91774881-D725-4E58-B298-07617B9B86A8} "Skype IE add-on Pluggable Protocol" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
{03C514A3-1EFB-4856-9F99-10D7BE1653C0} "Windows Live Mail HTML Asynchronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\Program Files\Windows Live\Mail\mailcomm.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks )-----
{B5A7F190-DDA6-4420-B3BA-52453494E6CD} "Groove GFS Stub Execution Hook" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{23170F69-40C1-278A-1000-000100020000} "7-Zip Shell Extension" - "Igor Pavlov" - C:\Program Files\7-Zip\7-zip.dll
{3D60EDA7-9AB4-4DA8-864C-D9B5F2E7281D} "Arbeitsbereiche" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
{16148659-720A-457d-850B-2DBD87BB129D} "AudibleShlExt Class" - "Audible, Inc." - C:\Program Files\Audible\Bin\AudibleExt.dll
{DE902992-61FC-4A01-8091-53E1895C9775} "CDR Icon Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{7AD101F2-0B93-4D66-A1CA-DF73F3C4377B} "CDR preview provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellVista.dll
{7FA63AC0-F5BC-4F3B-A9CF-94328D812B62} "CDR Property Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellVista.dll
{1462EBAA-96E7-4D93-9A66-0E4068DE4FCF} "CDR Thumbnail provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{D66DC78C-4F61-447F-942B-3FB6980118CF} "CInfoTipShellExt Class" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\VISSHE.DLL
{0563DB41-F538-4B37-A92D-4659049B7766} "CLSID_WLMCMimeFilter" - "Microsoft Corporation" - C:\Program Files\Windows Live\Mail\mailcomm.dll
{DE902994-61FC-4A01-8091-53E1895C9775} "CMX Icon Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{1462EBAC-96E7-4D93-9A66-0E4068DE4FCF} "CMX Thumbnail provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{DE902993-61FC-4A01-8091-53E1895C9775} "CPT Icon Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{7FA63AC1-F5BC-4F3B-A9CF-94328D812B62} "CPT Property Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellVista.dll
{1462EBAB-96E7-4D93-9A66-0E4068DE4FCF} "CPT Thumbnail provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{872A9397-E0D6-4e28-B64D-52B8D0A7EA35} "DisplayCplExt Class" - "Advanced Micro Devices, Inc." - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiamaxx.dll
{99FD978C-D287-4F50-827F-B2C658EDA8E7} "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
{AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} "Groove Explorer Icon Overlay 2 (GFS Stub)" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
{920E6DB1-9907-4370-B3A0-BAFC03D81399} "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
{16F3DD56-1AF5-4347-846D-7C10C4192619} "Groove Explorer Icon Overlay 3 (GFS Folder)" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
{2916C86E-86A6-43FE-8112-43ABE6BF8DCC} "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
{2A541AE1-5BF6-4665-A8A3-CFA9672E4291} "Groove Folder Synchronization" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
{72853161-30C5-4D22-B7F9-0BBC1D38A37E} "Groove GFS Browser Helper" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
{6C467336-8281-4E60-8204-430CED96822D} "Groove GFS Context Menu Handler" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
{B5A7F190-DDA6-4420-B3BA-52453494E6CD} "Groove GFS Stub Execution Hook" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
{A449600E-1DC6-4232-B948-9BD794D62056} "Groove GFS Stub Icon Handler" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
{387E725D-DC16-4D76-B310-2C93ED4752A0} "Groove XML Icon Handler" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
{506F4668-F13E-4AA1-BB04-B43203AB3CC0} "ImageExtractorShellExt Class" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\VISSHE.DLL
{42042206-2D85-11D3-8CFF-005004838597} "Microsoft Office HTML Icon Handler" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\MSOHEVI.DLL
{993BE281-6695-4BA5-8A2A-7AACBFAAB69E} "Microsoft Office Metadata Handler" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll
{C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} "Microsoft Office Thumbnail Handler" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll
{0875DCB6-C686-4243-9432-ADCCF0B9F2D7} "Microsoft OneNote Namespace Extension for Windows Desktop Search" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\ONFILTER.DLL
{00020D75-0000-0000-C000-000000000046} "Microsoft Outlook" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\MLSHEXT.DLL
{0006F045-0000-0000-C000-000000000046} "Outlook File Icon Extension" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\OLKFSTUB.DLL
{5E2121EE-0300-11D4-8D3B-444553540000} "SimpleShlExt Class" - "Advanced Micro Devices, Inc." - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll
{BDEADF00-C265-11D0-BCED-00A0C90AB50F} "Webordner" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL
{2BE99FD4-A181-4996-BFA9-58C5FFD11F6C} "Windows Live Photo Gallery Autoplay Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F30F64-AC33-42F5-8FD1-5DC2D3FDE06C} "Windows Live Photo Gallery Editor Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F3712A-CA79-45B4-9E4D-D7891E7F8B9D} "Windows Live Photo Gallery Editor Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F30F90-3E96-453B-AFCD-D71989ECC2C7} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F33137-EE26-412F-8D71-F84E4C2C6625} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F374B7-B390-4884-B372-2FC349F2172B} "Windows Live Photo Gallery Viewer Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F346CB-35A4-465B-8B8F-65A29DBAB1F6} "Windows Live Photo Gallery Viewer Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{E0D79304-84BE-11CE-9641-444553540000} "WinZip" - "WinZip Computing, S.L." - C:\Program Files\WinZip\wzshlstb.dll
{E0D79305-84BE-11CE-9641-444553540000} "WinZip" - "WinZip Computing, S.L." - C:\Program Files\WinZip\wzshlstb.dll
{E0D79306-84BE-11CE-9641-444553540000} "WinZip" - "WinZip Computing, S.L." - C:\Program Files\WinZip\wzshlstb.dll
{E0D79307-84BE-11CE-9641-444553540000} "WinZip" - "WinZip Computing, S.L." - C:\Program Files\WinZip\wzshlstb.dll
{06A2568A-CED6-4187-BB20-400B8C02BE5A} "{06A2568A-CED6-4187-BB20-400B8C02BE5A}" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe

[Internet Explorer]
-----( HKCU\SOFTWARE\Microsoft\Internet Explorer\Extensions )-----
"eBay - Der weltweite Online-Marktplatz" - ? - hxxp://rover.ebay.com/rover/1/707-37276-17534-31/4  (HTTP value)
-----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )-----
ITBar7Height "ITBar7Height" - ? -   (File not found | COM-object registry key not found)
<binary data> "ITBar7Layout" - ? -   (File not found | COM-object registry key not found)
-----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )-----
{8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_31" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} "Java Plug-in 1.6.0_31" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_31" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\npjpi160_31.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )-----
{48E73304-E1D6-4330-914C-F5F514E3486C} "An OneNote senden" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
"eBay - Der weltweite Online-Marktplatz" - ? - hxxp://rover.ebay.com/rover/1/707-37276-17534-31/4  (HTTP value)
{5F7B1267-94A9-47F5-98DB-E99415F33AEC} "In Blog veröffentlichen" - "Microsoft Corporation" - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
{898EA8C8-E7FF-479B-8935-AEC46303B9E5} "Skype Click to Call" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
{FFFDC614-B694-4AE6-AB38-5D6374584B52} "Verknüpfte &OneNote-Notizen" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar )-----
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} "Norton Toolbar" - "Symantec Corporation" - C:\Program Files\Norton 360\Engine\5.2.2.3\coIEPlg.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )-----
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper" - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
{72853161-30C5-4D22-B7F9-0BBC1D38A37E} "Groove GFS Browser Helper" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL
{DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2ssv.dll
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} "Java(tm) Plug-In SSV Helper" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\ssv.dll
{B4F3A835-0E21-4959-BA22-42B3008E02FF} "Office Document Cache Handler" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL
{6EBF7485-159F-4bff-A14F-B9E3AAC4465B} "Search Helper" - "Microsoft Corporation" - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} "Skype Browser Helper" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
{6D53EC84-6AAE-4787-AEEE-F4628F01010C} "Symantec Intrusion Prevention" - "Symantec Corporation" - C:\Program Files\Norton 360\Engine\5.2.2.3\IPS\IPSBHO.DLL
{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} "Symantec NCO BHO" - "Symantec Corporation" - C:\Program Files\Norton 360\Engine\5.2.2.3\coIEPlg.dll
{9030D464-4C02-4ABF-8ECC-5164760863C6} "Windows Live Anmelde-Hilfsprogramm" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

[Logon]
-----( %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
"Netzmanager.lnk" - "Deutsche Telekom AG" - C:\Program Files\Netzmanager\netzmanager.exe  (Shortcut exists | File exists)
-----( %AllUsersProfile%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
"phase-6 Reminder.lnk" - "phase-6" - C:\Program Files\phase-6\phase-6\reminder\reminder.exe  (Shortcut exists | File exists)
-----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )-----
"KiesPDLR" - ? - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
-----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )-----
"StartupPrograms" - ? - rdpclip  (File not found)
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )-----
"APSDaemon" - "Apple Inc." - "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
"BCSSync" - "Microsoft Corporation" - "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
"BrMfcWnd" - "Brother Industries, Ltd." - C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN
"CLMLServer" - "CyberLink" - "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"
"ControlCenter3" - "Brother Industries, Ltd." - C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun
"IAStorIcon" - "Intel Corporation" - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
"IndexSearch" - "ScanSoft, Inc." - C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
"Logitech G930" - "Logitech(c)" - C:\Program Files\Logitech\G930\G930.exe
"Malwarebytes' Anti-Malware" - "Malwarebytes Corporation" - "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"NUSB3MON" - "Renesas Electronics Corporation" - "C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"QuickTime Task" - "Apple Inc." - "C:\Program Files\QuickTime\QTTask.exe" -atboottime
"SSBkgdUpdate" - "Scansoft, Inc." - "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
"StartCCC" - "Advanced Micro Devices, Inc." - "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
"SunJavaUpdateSched" - "Sun Microsystems, Inc." - "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

[Services]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"Adobe Acrobat Update Service" (AdobeARMservice) - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
"Adobe Flash Player Update Service" (AdobeFlashPlayerUpdateSvc) - "Adobe Systems Incorporated" - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
"FsUsbExService" (FsUsbExService) - "Teruten" - C:\Windows\system32\FsUsbExService.Exe
"Intel(R) Rapid Storage Technology" (IAStorDataMgrSvc) - "Intel Corporation" - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
"MBAMService" (MBAMService) - "Malwarebytes Corporation" - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
"Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
"Microsoft SharePoint Workspace Audit Service" (Microsoft SharePoint Workspace Audit Service) - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\GROOVE.EXE
"Mozilla Maintenance Service" (MozillaMaintenance) - "Mozilla Foundation" - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
"MSCamSvc" (MSCamSvc) - "Microsoft Corporation" - C:\Program Files\Microsoft LifeCam\MSCamS32.exe
"Netzmanager Infrastruktur Informationssystem Dienst" (Netzmanager Service) - "Deutsche Telekom AG" - C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe
"Norton 360" (N360) - "Symantec Corporation" - C:\Program Files\Norton 360\Engine\5.2.2.3\ccSvcHst.exe
"Office  Source Engine" (ose) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
"Office Software Protection Platform" (osppsvc) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
"Protexis Licensing V2" (PSI_SVC_2) - "Protexis Inc." - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
"Seagate Service" (FreeAgentGoNext Service) - "Seagate Technology LLC" - C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe
"SeaPort" (SeaPort) - "Microsoft Corporation" - C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
"ServiceLayer" (ServiceLayer) - "Nokia." - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
"Skype Updater" (SkypeUpdate) - "Skype Technologies" - C:\Program Files\Skype\Updater\Updater.exe
"Sony PC Companion" (Sony PC Companion) - "Avanquest Software" - C:\Program Files\Sony\Sony PC Companion\PCCService.exe

===[ Logfile end ]=========================================[ Logfile end ]===

If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru
         
aswMBR ist abgestürzt, sodass ich AV scan auf none gestellt habe
Code:
ATTFilter
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-09-03 19:05:53
-----------------------------
19:05:53.403    OS Version: Windows 6.1.7601 Service Pack 1
19:05:53.403    Number of processors: 4 586 0x2505
19:05:53.419    ComputerName: ROBERT-PC  UserName: Anne
19:06:39.220    Initialize success
19:06:48.066    AVAST engine defs: 12090300
19:07:03.042    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
19:07:03.042    Disk 0 Vendor: WDC_WD15 51.0 Size: 1430799MB BusType: 3
19:07:03.073    Disk 0 MBR read successfully
19:07:03.073    Disk 0 MBR scan
19:07:03.073    Disk 0 unknown MBR code
19:07:03.088    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS          100 MB offset 2048
19:07:03.088    Disk 0 Partition 2 00     07    HPFS/NTFS NTFS       697938 MB offset 206848
19:07:03.088    Disk 0 Partition - 00     0F Extended LBA            731735 MB offset 1429583872
19:07:03.135    Disk 0 Partition 3 00     12  Compaq diag NTFS         1024 MB offset 2928177152
19:07:03.166    Disk 0 Partition 4 00     07    HPFS/NTFS NTFS        31734 MB offset 1429585920
19:07:03.166    Disk 0 Partition - 00     05     Extended            700000 MB offset 1494577152
19:07:03.213    Disk 0 Partition 5 00     07    HPFS/NTFS NTFS       699999 MB offset 1494579200
19:07:03.213    Disk 0 scanning sectors +2930275120
19:07:03.276    Disk 0 scanning C:\Windows\system32\drivers
19:07:14.055    Service scanning
19:07:36.379    Modules scanning
19:07:49.888    Disk 0 trace - called modules:
19:07:49.904    ntkrnlpa.exe CLASSPNP.SYS disk.sys iaStor.sys halmacpi.dll 
19:07:49.920    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x87e22948]
19:07:49.920    3 CLASSPNP.SYS[8bb7c59e] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0x8629f028]
19:07:49.920    Scan finished successfully
19:10:52.006    Disk 0 MBR has been saved successfully to "C:\Users\Anne\Desktop\MBR.dat"
19:10:52.006    The log file has been saved successfully to "C:\Users\Anne\Desktop\aswMBR.txt"
         


Alt 03.09.2012, 20:44   #21
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Trojaner ZeroAccess + FakeAlert - Standard

Trojaner ZeroAccess + FakeAlert



Wir sollten den MBR fixen, sichere für den Fall der Fälle ALLE wichtigen Daten, auch wenn meistens alles glatt geht.

Hinweis: Mach bitte NICHT den MBR-Fix, wenn du noch andere Betriebssysteme wie zB Ubuntu installiert hast, ein MBR-Fix mit Windows-Tools macht ein parallel installiertes (Dualboot) Linux unbootbar.
Mach den Fix auch dann nicht, wenn du zB mit TrueCrypt oder anderen Verschlüsselungsprogrammen eine Vollverschlüsselung der Windowspartition bzw. gesamten Festplatte hast


Starte nach der Datensicherung aswmbr erneut und klick auf den Button FIXMBR.

Hinweis: Bitte den Virenscanner abstellen bevor du aswMBR ausführst, denn v.a. Avira meldet darin oft einen Fehalalrm!

Anschließend Windows neu starten und ein neues Log mit aswMBR machen.
__________________
--> Trojaner ZeroAccess + FakeAlert

Alt 04.09.2012, 15:00   #22
An_Ro
 
Trojaner ZeroAccess + FakeAlert - Standard

Trojaner ZeroAccess + FakeAlert



Hallo,
habe den MBR-Fix gemacht, ging sehr schnell, hier das log
Code:
ATTFilter
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-09-04 15:30:28
-----------------------------
15:30:28.641    OS Version: Windows 6.1.7601 Service Pack 1
15:30:28.641    Number of processors: 4 586 0x2505
15:30:28.641    ComputerName: ROBERT-PC  UserName: Anne
15:30:30.357    Initialize success
15:30:37.331    AVAST engine defs: 12090300
15:31:24.222    Verifying
15:31:34.228    Disk 0 Windows 601 MBR fixed successfully
15:32:52.384    Disk 0 MBR has been saved successfully to "C:\Users\Anne\Desktop\MBR.dat"
15:32:52.384    The log file has been saved successfully to "C:\Users\Anne\Desktop\aswMBR-1.txt"
         
Anschließend (nach Neustart) habe ich nochmal einen Scan gemacht. davon dieses log, musste wieder AV scan auf none stellen:
Code:
ATTFilter
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-09-04 15:54:29
-----------------------------
15:54:29.886    OS Version: Windows 6.1.7601 Service Pack 1
15:54:29.886    Number of processors: 4 586 0x2505
15:54:29.886    ComputerName: ROBERT-PC  UserName: Anne
15:54:31.587    Initialize success
15:54:36.189    AVAST engine defs: 12090300
15:54:48.076    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
15:54:48.076    Disk 0 Vendor: WDC_WD15 51.0 Size: 1430799MB BusType: 3
15:54:48.107    Disk 0 MBR read successfully
15:54:48.107    Disk 0 MBR scan
15:54:48.154    Disk 0 Windows 7 default MBR code
15:54:48.154    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS          100 MB offset 2048
15:54:48.185    Disk 0 Partition 2 00     07    HPFS/NTFS NTFS       697938 MB offset 206848
15:54:48.185    Disk 0 Partition - 00     0F Extended LBA            731735 MB offset 1429583872
15:54:48.216    Disk 0 Partition 3 00     12  Compaq diag NTFS         1024 MB offset 2928177152
15:54:48.263    Disk 0 Partition 4 00     07    HPFS/NTFS NTFS        31734 MB offset 1429585920
15:54:48.279    Disk 0 Partition - 00     05     Extended            700000 MB offset 1494577152
15:54:48.294    Disk 0 Partition 5 00     07    HPFS/NTFS NTFS       699999 MB offset 1494579200
15:54:48.310    Disk 0 scanning sectors +2930275120
15:54:48.887    Disk 0 scanning C:\Windows\system32\drivers
15:54:58.762    Service scanning
15:55:17.747    Modules scanning
15:55:26.265    Disk 0 trace - called modules:
15:55:26.296    ntkrnlpa.exe CLASSPNP.SYS disk.sys iaStor.sys halmacpi.dll 
15:55:26.296    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x87e222b8]
15:55:26.296    3 CLASSPNP.SYS[8b20459e] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0x862bd028]
15:55:26.296    Scan finished successfully
15:56:05.327    Disk 0 MBR has been saved successfully to "C:\Users\Anne\Desktop\MBR.dat"
15:56:05.327    The log file has been saved successfully to "C:\Users\Anne\Desktop\aswMBR-2.txt"
         

Alt 04.09.2012, 16:34   #23
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Trojaner ZeroAccess + FakeAlert - Standard

Trojaner ZeroAccess + FakeAlert



Sieht ok aus. Wir sollten fast durch sein. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs.
Denk dran beide Tools zu updaten vor dem Scan!!
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 04.09.2012, 22:25   #24
An_Ro
 
Trojaner ZeroAccess + FakeAlert - Standard

Trojaner ZeroAccess + FakeAlert



Hallo,
hier nun die log-Files:
MBAM war okay
Code:
ATTFilter
Malwarebytes Anti-Malware 1.62.0.1300
www.malwarebytes.org

Datenbank Version: v2012.09.04.08

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 8.0.7601.17514
Anne :: ROBERT-PC [Administrator]

Schutz: Aktiviert

04.09.2012 19:58:13
mbam-log-2012-09-04 (19-58-13).txt

Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|T:\|)
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 493445
Laufzeit: 1 Stunde(n), 7 Minute(n), 51 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)

(Ende)
         
SuperAntiSpyware hat was gefunden
Code:
ATTFilter
SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com

Generated 09/04/2012 at 11:18 PM

Application Version : 5.5.1012

Core Rules Database Version : 9171
Trace Rules Database Version: 6983

Scan type       : Complete Scan
Total Scan Time : 01:55:14

Operating System Information
Windows 7 Home Premium 32-bit, Service Pack 1 (Build 6.01.7601)
UAC On - Administrator

Memory items scanned      : 1038
Memory threats detected   : 0
Registry items scanned    : 37047
Registry threats detected : 0
File items scanned        : 220504
File threats detected     : 879

Adware.Tracking Cookie
	C:\USERS\ANTON\AppData\Roaming\Microsoft\Windows\Cookies\PQNDFC7P.txt [ Cookie:anton@bs.serving-sys.com/ ]
	C:\USERS\ANTON\AppData\Roaming\Microsoft\Windows\Cookies\468MLYMP.txt [ Cookie:anton@atdmt.com/ ]
	C:\USERS\ANTON\AppData\Roaming\Microsoft\Windows\Cookies\OUJ7C900.txt [ Cookie:anton@track.adform.net/ ]
	C:\USERS\ANTON\AppData\Roaming\Microsoft\Windows\Cookies\D95W74PY.txt [ Cookie:anton@imrworldwide.com/cgi-bin ]
	C:\USERS\ANTON\AppData\Roaming\Microsoft\Windows\Cookies\LUH03DJH.txt [ Cookie:anton@serving-sys.com/ ]
	C:\USERS\ANTON\AppData\Roaming\Microsoft\Windows\Cookies\IJLBDRY1.txt [ Cookie:anton@adform.net/ ]
	C:\USERS\ANTON\AppData\Roaming\Microsoft\Windows\Cookies\Low\anton@interclick[1].txt [ Cookie:anton@interclick.com/ ]
	C:\USERS\ANTON\Cookies\PQNDFC7P.txt [ Cookie:anton@bs.serving-sys.com/ ]
	C:\USERS\ANTON\Cookies\468MLYMP.txt [ Cookie:anton@atdmt.com/ ]
	C:\USERS\ANTON\Cookies\OUJ7C900.txt [ Cookie:anton@track.adform.net/ ]
	C:\USERS\ANTON\Cookies\D95W74PY.txt [ Cookie:anton@imrworldwide.com/cgi-bin ]
	C:\USERS\ANTON\Cookies\LUH03DJH.txt [ Cookie:anton@serving-sys.com/ ]
	C:\USERS\ANTON\Cookies\IJLBDRY1.txt [ Cookie:anton@adform.net/ ]
	C:\USERS\ROBERT\AppData\Roaming\Microsoft\Windows\Cookies\ZH53JW68.txt [ Cookie:robert@c.atdmt.com/ ]
	C:\USERS\ROBERT\AppData\Roaming\Microsoft\Windows\Cookies\QV7LOJDV.txt [ Cookie:robert@atdmt.com/ ]
	C:\USERS\ROBERT\AppData\Roaming\Microsoft\Windows\Cookies\Z9P75B6L.txt [ Cookie:robert@adform.net/ ]
	C:\USERS\ROBERT\AppData\Roaming\Microsoft\Windows\Cookies\5ALFQZI6.txt [ Cookie:robert@imrworldwide.com/cgi-bin ]
	C:\USERS\ROBERT\Cookies\ZH53JW68.txt [ Cookie:robert@c.atdmt.com/ ]
	C:\USERS\ROBERT\Cookies\QV7LOJDV.txt [ Cookie:robert@atdmt.com/ ]
	C:\USERS\ROBERT\Cookies\Z9P75B6L.txt [ Cookie:robert@adform.net/ ]
	C:\USERS\ROBERT\Cookies\5ALFQZI6.txt [ Cookie:robert@imrworldwide.com/cgi-bin ]
	.invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.amazon-adsystem.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.amazon-adsystem.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adxpansion.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.sex2cam.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.sex2cam.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.sex2cam.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	supertracking.com.balao.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	tracking.surveycheck.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.a.revenuemax.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	server.adform.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	count.asnetworks.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.stats.paypal.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.interclick.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	af.2.cqcounter.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.lucidmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	tracking.tchibo.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	media2.tchibo-content.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	media4.tchibo-content.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	accounts.google.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.lfstmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.lfstmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ads.247activemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	eas8.emediate.eu [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	eas8.emediate.eu [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	server.adform.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	newsletter.apodiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.apodiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.apodiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.apodiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.apodiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adform.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad.dyntracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.usenext.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.active-tracking.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.active-tracking.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.active-tracking.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.technoratimedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.technoratimedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.solvemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.solvemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.lfstmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.technoratimedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.discountfan.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.discountfan.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.discountfan.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.unister-adservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.aim4media.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.aim4media.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.c.gigcount.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad.dyntracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.secmedia.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.secmedia.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	fr.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	fr.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.kaspersky.122.2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.loyaltypartner.122.2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.xiti.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.liveperson.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.liveperson.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.downloads.netmediaeurope.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.downloads.netmediaeurope.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.downloads.netmediaeurope.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.netmediaeurope.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	int.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	int.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.tracker.vinsight.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.tracking.mindshare.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	tracking.fahrrad.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www4.smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www4.smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	partners.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.marriottinternational.122.2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.unister-adservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.yieldmanager.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.ihg2.db.advertising.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.ihg.db.advertising.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.zanox-affiliate.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.burstnet.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.s.clickability.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.s.clickability.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.legolas-media.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.legolas-media.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.clickfuse.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.realmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.realmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	network.realmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad.dyntracker.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.cheaptickets.122.2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	server.iad.liveperson.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.unister-adservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.clickfuse.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	targeting.revenuemax.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.opodo.122.2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.c1.atdmt.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.microsoftsto.112.2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.zanox-affiliate.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.quartermedia.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.quartermedia.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	server.adformdsp.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adformdsp.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adform.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adform.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad4.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	media1.tchibo-content.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.clickfuse.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.dmtracker.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.247realmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	oasc12.247realmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	tomtailor.dyntracker.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.www.mobildiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.mobildiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.mobildiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.mobildiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad1.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad3.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ww251.smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	ad2.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.unitymedia.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.unitymedia.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	statse.webtrendslive.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.himedia.individuad.net [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	user.lucidmedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.mediabrandsww.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.secmedia.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	www.usenext.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.ads.quartermedia.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.ads.quartermedia.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.ads.quartermedia.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.ads.quartermedia.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.ads.quartermedia.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.usenext.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.nextag.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.nextag.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	ad2.adfarm1.adition.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ]
	.secmedia.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.stats4free.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.stats4free.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.stats4free.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.stats4free.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.stats4free.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.tracking.mindshare.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	eas4.emediate.eu [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	eas4.emediate.eu [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.content.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	studivz.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	zbox.zanox.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	stat.onestat.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	stat.onestat.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.bs.serving-sys.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	keyword-advertising.web.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	keyword-advertising.web.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	keyword-advertising.web.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	keyword-advertising.web.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	track.webtrekk.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.dyntracker.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.myroitracking.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	tracking1.aleadpay.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.ads.quartermedia.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.ads.quartermedia.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adform.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	edates.traffective-tracking.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	edates.traffective-tracking.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	edates.traffective-tracking.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	edates.traffective-tracking.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.xiti.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.hht.122.2o7.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.lfstmedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.lfstmedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.unitymedia.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.unitymedia.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	tracking.mlsat02.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	a.visualrevenue.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.ads.quartermedia.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.ads.quartermedia.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	adserver.ip-phone-forum.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	ad1.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.opodo.122.2o7.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.at.atwola.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	ad4.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.clickfuse.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	ww251.smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	accounts.google.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	ad3.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	statse.webtrendslive.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	ad2.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ]
	C:\USERS\ROBERT\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\ROBERT@INTERCLICK[1].TXT [ /INTERCLICK ]
	eas.apm.emediate.eu [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.a.revenuemax.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.steelhousemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.steelhousemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adxpose.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	track.webtrekk.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.windfinder.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.nextag.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.nextag.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	eas8.emediate.eu [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.bizrate.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	stat.aldi.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	zbox.zanox.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ads.click-business.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wjk4sjc5alq.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wjl4qmcjgeo.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wgkoshc5shp.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6aekyqid5sco.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad1.emediate.dk [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad1.emediate.dk [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6aek4kkcpkaq.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.amazon-adsystem.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.amazon-adsystem.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	tracking.tchibo.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wckikjcjodp.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wjlysgazieq.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wgkyqndjgkp.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.komtrack.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.komtrack.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wnkoepd5iaq.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.apodiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.track.webgains.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.mobildiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	www.mobildiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.mobildiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.urbia.wwe-media.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.apodiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.apodiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.apodiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.apodiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	tracking.klicktel.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.hightraffic.hugoboss.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	tracking.klicktel.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.windfinder.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.windfinder.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	www.windfinder.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	www.active-tracking.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	www.active-tracking.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	www.active-tracking.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.dealtime.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	accounts.google.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.stats.paypal.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	keyword-advertising.web.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad.dyntracker.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.unister-adservices.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.unister-adservices.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.lucidmedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ww251.smartadserver.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.xiti.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	www.gpsdiscount.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	www.zanox-affiliate.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad1.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.tracker.vinsight.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad4.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adform.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad2.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad3.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.unitymedia.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.unitymedia.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ]

Trojan.Agent/Gen-Bancos
	C:\PROGRAM FILES\CORNELSEN\ENGLISH G 21 E-WORKBOOK A5 A\SMART\CTFPRINTER.DLL
         
Was ist zu tun?
Anne

Alt 05.09.2012, 14:07   #25
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Trojaner ZeroAccess + FakeAlert - Standard

Trojaner ZeroAccess + FakeAlert



Sieht ok aus, da wurden nur Cookies gefunden, der angebliche Fund bei Cornelsen ist ein Fehalarm.
Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie )


Wegen Cookies und anderer Dinge im Web: Um die Pest von vornherein zu blocken (also TrackingCookies, Werbebanner etc.) müsstest du dir mal sowas wie MVPS Hosts File anschauen => Blocking Unwanted Parasites with a Hosts File - sinnvollerweise solltest du alle 4 Wochen mal bei MVPS nachsehen, ob er eine neue Hosts Datei herausgebracht hat.

Ansonsten gibt es noch gute Cookiemanager, Erweiterungen für den Firefox zB wäre da CookieCuller http://filepony.de/download-cookie_culler/
Wenn du aber damit leben kannst, dich bei jeder Browsersession überall neu einzuloggen (zB Facebook, Ebay, GMX, oder auch Trojaner-Board) dann stell den Browser einfach so ein, dass einfach alles beim Beenden des Browser inkl. Cookies gelöscht wird.

Ich halte es so, dass ich zum "wilden Surfen" den Opera-Browser oder Chromium unter meinem Linux verwende. Mein Hauptbrowser (Firefox) speichert nur die Cookies von den Sites die ich auch will, alles andere lehne ich manuell ab (der FF fragt mich immer) - die anderen Browser nehmen alles an Cookies zwar an, aber spätestens beim nächsten Start von Opera oder Chromium sind keine Cookies mehr da.

Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 05.09.2012, 16:46   #26
An_Ro
 
Trojaner ZeroAccess + FakeAlert - Standard

Trojaner ZeroAccess + FakeAlert



Hallo,

danke für deine Hilfe und die Tipps bzgl. der Cookies. Das diese nicht keine direkten Schädlinge sind, war klar, aber dieser "Fehlalarm"-Trojaner war mir suspekt. Sonst läuft mein Rechner gut, aber das tat er ja die ganze Zeit, wenn Norton 360 mir nichts gemeldet hätte, hätte ich gar nichts vom Befall gemerkt. Also nochmals vielen Dank und ich werde mich jetzt noch mehr an die Regeln zum sicheren Surfen halten. Denn soweit ich hier im Board verstanden habe, gibt nicht "den" Virenscanner/Firewall/Schutz, der einen komplett schützen kann oder hast du einen Tipp für mich? Ist Norton 360 okay?
Anne

Kann ich den defogger wieder re-enablen?

Alt 06.09.2012, 10:47   #27
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Trojaner ZeroAccess + FakeAlert - Standard

Trojaner ZeroAccess + FakeAlert



defogger ist nur relevant wenn du virtuelle optische Laufwerke eingerichtet hast! Der defogger deaktiviert die nämlich!

Zitat:
kann oder hast du einen Tipp für mich? Ist Norton 360 okay?
Du hast doch schon gelesen dass es nicht den besten Virenscanner gibt!
Welchen du einsetzt ist doch schon fast völlig banane!

Also ich weiß nicht wie oft ich das schon gepostet hab, das steht hier auch schon zuhauf in vielen Diskussionen - es ist eigentlich immer wieder das gleiche Fazit => Es gibt nicht den besten Virenscanner!

Die Frage - welcher Virenscanner oder ob der installierte reicht - taucht ständig auf.
Der Virenscanner - egal welcher - kann und wird niemals 100% Schutz bieten können. Neue/unbekannte Schädlinge können immer durch die Lappen gehen. Geld ausgeben muss man nicht für einen Scanner, sowas wie Avast oder Microsoft Security Essentials sind für die privaten Gebrauch völlig ausreichend.
Abgesehen davon nutzen verschiedene Virenscanner unterschiedliche Signaturen und Techniken, das führt dazu, dass zB Scanner1 Schädling X entdeckt, aber Schädling Y übersieht. Scanner2 erkennt Schädling Y, dafür aber Schädling X nicht...
Wichtiger ist, dass du dich an Regeln hälst. Der beste Virenscanner bringt nichts, wenn du dich falsch verhälst und fahrlässig/unvorsichtig bist. Airbag und Sicherheitsgurt im Auto sind ja auch keine Gründe dafür auf die Verkehrsregeln zu pfeifen.

Halte Dich am besten grob an diese Regeln:
  1. Sei misstrauisch im Internet und v.a. bei unbekannten E-Mails, sei vorsichtig bei der Herausgabe persönlicher Daten!!
  2. Halte Windows und alle verwendeten Programme immer aktuell - unterstützen kann dich dabei Secunia PSI
  3. Führe regelmäßig Backups auf externe Medien durch
  4. Arbeite mit eingeschränkten Rechten
  5. Nutze sicherere Programme wie zB Opera oder Firefox zum Surfen statt den IE, zum Mailen Thunderbird statt Outlook Express - E-Mails nur als reinen text anzeigen lassen
  6. automatische Wiedergabe von allen Laufwerken komplett deaktivieren, denn das ist ein unnötiges Sicherheitsrisiko
  7. Bei der Installation von Software möglichst darauf achten, dass die Setups aus offiziellen Quellen stammen und du bei der Installation nach Möglichkeit die benutzerdefinierte Methode wählst - dann hast du die Möglichkeit etwaigen Schrott (wie Toolbars oder sowas wie RegistryBooster) abzuwählen, welcher sonst einfach mitinstalliert wird.
  8. Bösartige bzw. ungewollte Sites von vornherein blockieren lassen mit Hilfe der MVPS Hosts File => Blocking Unwanted Parasites with a Hosts File
  9. Finger weg von: TuneUp, Registry-Cleanern aller Art, Softonic sowie illegalen Cracks/Keygens oder anderen "Tools" um ein kommerzielles Programm ohne Lizenz nutzen zu können
  10. dubiose Seiten bzw. Kinofilm-Streaming-Portale ebenfalls sein lassen, erstens handelt man sich dort schnell Malware ein oder kann in Abofallen geraten und zweitens bewegen sich diese Seiten in einer rechtlichen Grauzone.


Alles noch genauer erklärt steht hier => Kompromittierung unvermeidbar?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 06.09.2012, 17:02   #28
An_Ro
 
Trojaner ZeroAccess + FakeAlert - Standard

Trojaner ZeroAccess + FakeAlert



Nochmal vielen Dank für deine Hilfe.
Anne

Alt 06.09.2012, 20:13   #29
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Trojaner ZeroAccess + FakeAlert - Standard

Trojaner ZeroAccess + FakeAlert



Dann wären wir durch!

Die Programme, die hier zum Einsatz kamen, können alle wieder runter. Mit Hilfe von OTL kannst du auch viele Tools entfernen:

Starte bitte OTL und klicke auf Bereinigung.
Dies wird die meisten Tools entfernen, die wir zur Bereinigung benötigt haben. Sollte etwas bestehen bleiben, bitte mit Rechtsklick --> Löschen entfernen.


Malwarebytes zu behalten ist zu empfehlen. Kannst ja 1x im Monat damit einen Vollscan machen, aber immer vorher ans Update denken.


Bitte abschließend die Updates prüfen, unten mein Leitfaden dazu. Um in Zukunft die Aktualität der installierten Programme besser im Überblick zu halten, kannst du zB Secunia PSI verwenden.
Für noch mehr Sicherheit solltest Du nach der beseitigten Infektion auch möglichst alle Passwörter ändern.


Microsoftupdate

Windows XP: Besuch mit dem IE die MS-Updateseite und lass Dir alle wichtigen Updates installieren.

Windows Vista/7: Anleitung Windows-Update


PDF-Reader aktualisieren
Ein veralteter AdobeReader stellt ein großes Sicherheitsrisiko dar. Du solltest daher besser alte Versionen vom AdobeReader über Systemsteuerung => Software bzw. Programme und Funktionen deinstallieren, indem Du dort auf "Adobe Reader x.0" klickst und das Programm entfernst. (falls du AdobeReader installiert hast)

Ich empfehle einen alternativen PDF-Reader wie PDF Xchange Viewer, SumatraPDF oder Foxit PDF Reader, die sind sehr viel schlanker und flotter als der AdobeReader.

Bitte überprüf bei der Gelegenheit auch die Aktualität des Flashplayers:
Prüfen => Adobe - Flash Player
Downloadlinks => Adobe Flash Player Distribution | Adobe

Natürlich auch darauf achten, dass andere installierte Browser wie zB Firefox, Opera oder Chrome aktuell sind.


Java-Update
Veraltete Java-Installationen sind ein Sicherheitsrisiko, daher solltest Du die alten Versionen löschen (falls vorhanden, am besten mit JavaRa) und auf die neuste aktualisieren. Beende dazu alle Programme (v.a. die Browser), klick danach auf Start, Systemsteuerung, Software und deinstalliere darüber alle aufgelisteten Java-Versionen. Lad Dir danach von hier das aktuelle Java SE Runtime Environment (JRE) herunter und installiere es.
__________________
Logfiles bitte immer in CODE-Tags posten

Antwort

Themen zu Trojaner ZeroAccess + FakeAlert
bitdefender, blockiert, defender, diverse, e-mail, fakealert, fehler, gen, gesucht, internet, logfile, löschen, mails, mbam, meldungen, nichts, norton, norton 360, quarantäne, rechner, symantec, tool, trojaner, win, win7, zeroaccess




Ähnliche Themen: Trojaner ZeroAccess + FakeAlert


  1. Habe Trojaner: Trojan.Zeroaccess.C, Trojan.Zeroaccess.B,Trojan.Gen.2
    Log-Analyse und Auswertung - 10.11.2013 (3)
  2. Trojaner bds zeroaccess.gen eingefangen
    Log-Analyse und Auswertung - 07.02.2013 (19)
  3. ZeroAccess Trojaner
    Log-Analyse und Auswertung - 17.01.2013 (2)
  4. ZeroAccess Trojaner in der Desktop.ini gefunden
    Plagegeister aller Art und deren Bekämpfung - 17.10.2012 (11)
  5. Zeroaccess Trojaner in c:\windows\sassembly\GAC\Desktop.ini
    Plagegeister aller Art und deren Bekämpfung - 12.09.2012 (11)
  6. Trojaner BDS/zeroaccess.gen entdeckt
    Plagegeister aller Art und deren Bekämpfung - 31.08.2012 (3)
  7. Trojaner (?) HTM/FakeAlert
    Plagegeister aller Art und deren Bekämpfung - 22.04.2012 (31)
  8. Bundespolizei Trojaner. HTML/FakeAlert.AP
    Plagegeister aller Art und deren Bekämpfung - 18.04.2012 (32)
  9. BKA-Trojaner zeroaccess!inf Run.dll error
    Log-Analyse und Auswertung - 15.03.2012 (3)
  10. Trojaner FakeAlert
    Log-Analyse und Auswertung - 16.11.2011 (15)
  11. Trojaner fakealert - Hauptbenutzerkonto weg
    Plagegeister aller Art und deren Bekämpfung - 08.09.2011 (3)
  12. FakeAlert!fakealert-REP in C:\Windows\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
    Plagegeister aller Art und deren Bekämpfung - 02.09.2011 (45)
  13. FakeAlert!fakealert-REP virus
    Plagegeister aller Art und deren Bekämpfung - 06.06.2011 (22)
  14. Problem mit fwq.exe/FakeAlert Trojaner
    Plagegeister aller Art und deren Bekämpfung - 09.06.2010 (24)
  15. wie werde ich ihn los und was will er von mir: Trojaner TR/Fakealert.198144
    Plagegeister aller Art und deren Bekämpfung - 21.05.2010 (8)
  16. Trojaner TR/fakealert.144384
    Plagegeister aller Art und deren Bekämpfung - 15.08.2009 (3)
  17. Trojaner TR/Crypt.XPACK.Gen und FakeAlert
    Mülltonne - 30.07.2008 (0)

Zum Thema Trojaner ZeroAccess + FakeAlert - Habe den TDSS-Killer ausgeführt. Code: Alles auswählen Aufklappen ATTFilter 11:10:19.0833 4964 TDSS rootkit removing tool 2.8.8.0 Aug 24 2012 13:27:48 11:10:19.0848 4964 ============================================================ 11:10:19.0848 4964 Current date / time: 2012/09/01 - Trojaner ZeroAccess + FakeAlert...
Archiv
Du betrachtest: Trojaner ZeroAccess + FakeAlert auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.