|
Plagegeister aller Art und deren Bekämpfung: Trojaner ZeroAccess + FakeAlertWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
01.09.2012, 10:15 | #16 |
| Trojaner ZeroAccess + FakeAlert Habe den TDSS-Killer ausgeführt. Code:
ATTFilter 11:10:19.0833 4964 TDSS rootkit removing tool 2.8.8.0 Aug 24 2012 13:27:48 11:10:19.0848 4964 ============================================================ 11:10:19.0848 4964 Current date / time: 2012/09/01 11:10:19.0848 11:10:19.0848 4964 SystemInfo: 11:10:19.0848 4964 11:10:19.0848 4964 OS Version: 6.1.7601 ServicePack: 1.0 11:10:19.0848 4964 Product type: Workstation 11:10:19.0848 4964 ComputerName: ROBERT-PC 11:10:19.0848 4964 UserName: Anne 11:10:19.0848 4964 Windows directory: C:\Windows 11:10:19.0848 4964 System windows directory: C:\Windows 11:10:19.0848 4964 Processor architecture: Intel x86 11:10:19.0848 4964 Number of processors: 4 11:10:19.0848 4964 Page size: 0x1000 11:10:19.0848 4964 Boot type: Normal boot 11:10:19.0848 4964 ============================================================ 11:10:20.0270 4964 Drive \Device\Harddisk0\DR0 - Size: 0x15D50F66000 (1397.27 Gb), SectorSize: 0x200, Cylinders: 0x2C881, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050 11:10:20.0285 4964 ============================================================ 11:10:20.0285 4964 \Device\Harddisk0\DR0: 11:10:20.0285 4964 MBR partitions: 11:10:20.0285 4964 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 11:10:20.0285 4964 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x55329000 11:10:20.0301 4964 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x5535C000, BlocksNum 0x3DFB000 11:10:20.0316 4964 \Device\Harddisk0\DR0\Partition4: MBR, Type 0x7, StartLBA 0x59157800, BlocksNum 0x5572F800 11:10:20.0316 4964 ============================================================ 11:10:20.0348 4964 C: <-> \Device\Harddisk0\DR0\Partition2 11:10:20.0394 4964 D: <-> \Device\Harddisk0\DR0\Partition3 11:10:20.0410 4964 T: <-> \Device\Harddisk0\DR0\Partition4 11:10:20.0410 4964 ============================================================ 11:10:20.0410 4964 Initialize success 11:10:20.0410 4964 ============================================================ 11:10:58.0162 7960 ============================================================ 11:10:58.0162 7960 Scan started 11:10:58.0162 7960 Mode: Manual; SigCheck; TDLFS; 11:10:58.0162 7960 ============================================================ 11:10:58.0505 7960 ================ Scan services ============================= 11:10:58.0677 7960 [ 1B133875B8AA8AC48969BD3458AFE9F5 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 11:10:58.0833 7960 1394ohci - ok 11:10:58.0911 7960 [ CEA80C80BED809AA0DA6FEBC04733349 ] ACPI C:\Windows\system32\drivers\ACPI.sys 11:10:58.0926 7960 ACPI - ok 11:10:59.0004 7960 [ 1EFBC664ABFF416D1D07DB115DCB264F ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 11:10:59.0082 7960 AcpiPmi - ok 11:10:59.0176 7960 [ 62B7936F9036DD6ED36E6A7EFA805DC0 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe 11:10:59.0192 7960 AdobeARMservice - ok 11:10:59.0301 7960 [ A9D3B95E8466BD58EEB8A1154654E162 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe 11:10:59.0332 7960 AdobeFlashPlayerUpdateSvc - ok 11:10:59.0363 7960 [ 21E785EBD7DC90A06391141AAC7892FB ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 11:10:59.0410 7960 adp94xx - ok 11:10:59.0457 7960 [ 0C676BC278D5B59FF5ABD57BBE9123F2 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 11:10:59.0488 7960 adpahci - ok 11:10:59.0504 7960 [ 7C7B5EE4B7B822EC85321FE23A27DB33 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 11:10:59.0535 7960 adpu320 - ok 11:10:59.0550 7960 [ 8B5EEFEEC1E6D1A72A06C526628AD161 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 11:10:59.0597 7960 AeLookupSvc - ok 11:10:59.0660 7960 [ 9EBBBA55060F786F0FCAA3893BFA2806 ] AFD C:\Windows\system32\drivers\afd.sys 11:10:59.0722 7960 AFD - ok 11:10:59.0738 7960 [ 507812C3054C21CEF746B6EE3D04DD6E ] agp440 C:\Windows\system32\drivers\agp440.sys 11:10:59.0769 7960 agp440 - ok 11:10:59.0800 7960 [ 8B30250D573A8F6B4BD23195160D8707 ] aic78xx C:\Windows\system32\DRIVERS\djsvs.sys 11:10:59.0831 7960 aic78xx - ok 11:10:59.0847 7960 [ 18A54E132947CD98FEA9ACCC57F98F13 ] ALG C:\Windows\System32\alg.exe 11:10:59.0909 7960 ALG - ok 11:10:59.0940 7960 [ 0D40BCF52EA90FC7DF2AEAB6503DEA44 ] aliide C:\Windows\system32\drivers\aliide.sys 11:10:59.0956 7960 aliide - ok 11:11:00.0003 7960 [ 60201AD353105D8C6796C1B69E6C49F0 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe 11:11:00.0065 7960 AMD External Events Utility - ok 11:11:00.0081 7960 [ 3C6600A0696E90A463771C7422E23AB5 ] amdagp C:\Windows\system32\drivers\amdagp.sys 11:11:00.0096 7960 amdagp - ok 11:11:00.0112 7960 [ CD5914170297126B6266860198D1D4F0 ] amdide C:\Windows\system32\drivers\amdide.sys 11:11:00.0143 7960 amdide - ok 11:11:00.0159 7960 [ 00DDA200D71BAC534BF56A9DB5DFD666 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 11:11:00.0206 7960 AmdK8 - ok 11:11:00.0346 7960 [ 51610B74A9A1D84DC86FCE1019BEAFF4 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys 11:11:00.0486 7960 amdkmdag - ok 11:11:00.0518 7960 [ CD1D86AB81EECE67D7BD6F7EF9786CCC ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys 11:11:00.0564 7960 amdkmdap - ok 11:11:00.0564 7960 [ 3CBF30F5370FDA40DD3E87DF38EA53B6 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 11:11:00.0596 7960 AmdPPM - ok 11:11:00.0642 7960 [ D320BF87125326F996D4904FE24300FC ] amdsata C:\Windows\system32\drivers\amdsata.sys 11:11:00.0658 7960 amdsata - ok 11:11:00.0674 7960 [ EA43AF0C423FF267355F74E7A53BDABA ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 11:11:00.0674 7960 amdsbs - ok 11:11:00.0705 7960 [ 46387FB17B086D16DEA267D5BE23A2F2 ] amdxata C:\Windows\system32\drivers\amdxata.sys 11:11:00.0705 7960 amdxata - ok 11:11:00.0767 7960 [ AEA177F783E20150ACE5383EE368DA19 ] AppID C:\Windows\system32\drivers\appid.sys 11:11:00.0876 7960 AppID - ok 11:11:00.0876 7960 [ 62A9C86CB6085E20DB4823E4E97826F5 ] AppIDSvc C:\Windows\System32\appidsvc.dll 11:11:00.0923 7960 AppIDSvc - ok 11:11:00.0970 7960 [ FB1959012294D6AD43E5304DF65E3C26 ] Appinfo C:\Windows\System32\appinfo.dll 11:11:01.0048 7960 Appinfo - ok 11:11:01.0064 7960 [ 2932004F49677BD84DBC72EDB754FFB3 ] arc C:\Windows\system32\DRIVERS\arc.sys 11:11:01.0079 7960 arc - ok 11:11:01.0095 7960 [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7 ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 11:11:01.0110 7960 arcsas - ok 11:11:01.0142 7960 [ ADD2ADE1C2B285AB8378D2DAAF991481 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 11:11:01.0266 7960 AsyncMac - ok 11:11:01.0360 7960 [ 338C86357871C167A96AB976519BF59E ] atapi C:\Windows\system32\drivers\atapi.sys 11:11:01.0376 7960 atapi - ok 11:11:01.0438 7960 [ 8DF873D0587596C1D35A9CECECC61DA1 ] AtiHdmiService C:\Windows\system32\drivers\AtiHdmi.sys 11:11:01.0469 7960 AtiHdmiService - ok 11:11:01.0532 7960 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 11:11:01.0578 7960 AudioEndpointBuilder - ok 11:11:01.0578 7960 [ CE3B4E731638D2EF62FCB419BE0D39F0 ] Audiosrv C:\Windows\System32\Audiosrv.dll 11:11:01.0610 7960 Audiosrv - ok 11:11:01.0656 7960 [ 6E30D02AAC9CAC84F421622E3A2F6178 ] AxInstSV C:\Windows\System32\AxInstSV.dll 11:11:01.0734 7960 AxInstSV - ok 11:11:01.0750 7960 [ 1A231ABEC60FD316EC54C66715543CEC ] b06bdrv C:\Windows\system32\DRIVERS\bxvbdx.sys 11:11:01.0812 7960 b06bdrv - ok 11:11:01.0828 7960 [ BD8869EB9CDE6BBE4508D869929869EE ] b57nd60x C:\Windows\system32\DRIVERS\b57nd60x.sys 11:11:01.0859 7960 b57nd60x - ok 11:11:01.0922 7960 [ EE1E9C3BB8228AE423DD38DB69128E71 ] BDESVC C:\Windows\System32\bdesvc.dll 11:11:01.0968 7960 BDESVC - ok 11:11:01.0984 7960 [ 505506526A9D467307B3C393DEDAF858 ] Beep C:\Windows\system32\drivers\Beep.sys 11:11:02.0062 7960 Beep - ok 11:11:02.0124 7960 [ 1E2BAC209D184BB851E1A187D8A29136 ] BFE C:\Windows\System32\bfe.dll 11:11:02.0187 7960 BFE - ok 11:11:02.0436 7960 [ A9E111A358AC5F7EBA7AC61E43FC6725 ] BHDrvx86 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\BASHDefs\20120823.007_ec5\BHDrvx86.sys 11:11:02.0468 7960 BHDrvx86 - ok 11:11:02.0530 7960 [ E585445D5021971FAE10393F0F1C3961 ] BITS C:\Windows\System32\qmgr.dll 11:11:02.0592 7960 BITS - ok 11:11:02.0608 7960 [ 2287078ED48FCFC477B05B20CF38F36F ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 11:11:02.0624 7960 blbdrive - ok 11:11:02.0639 7960 [ 8F2DA3028D5FCBD1A060A3DE64CD6506 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 11:11:02.0686 7960 bowser - ok 11:11:02.0702 7960 [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 11:11:02.0780 7960 BrFiltLo - ok 11:11:02.0795 7960 [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 11:11:02.0826 7960 BrFiltUp - ok 11:11:02.0858 7960 [ C711ED965009BDCFF9AA62CEB6FF1AAD ] Brother XP spl Service C:\Windows\system32\brsvc01a.exe 11:11:02.0904 7960 Brother XP spl Service - ok 11:11:02.0936 7960 [ 3DAA727B5B0A45039B0E1C9A211B8400 ] Browser C:\Windows\System32\browser.dll 11:11:02.0967 7960 Browser - ok 11:11:02.0998 7960 [ 845B8CE732E67F3B4133164868C666EA ] Brserid C:\Windows\System32\Drivers\Brserid.sys 11:11:03.0045 7960 Brserid - ok 11:11:03.0045 7960 [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 11:11:03.0092 7960 BrSerWdm - ok 11:11:03.0107 7960 [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 11:11:03.0138 7960 BrUsbMdm - ok 11:11:03.0154 7960 [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 11:11:03.0201 7960 BrUsbSer - ok 11:11:03.0232 7960 [ ED3DF7C56CE0084EB2034432FC56565A ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 11:11:03.0279 7960 BTHMODEM - ok 11:11:03.0326 7960 [ 1DF19C96EEF6C29D1C3E1A8678E07190 ] bthserv C:\Windows\system32\bthserv.dll 11:11:03.0388 7960 bthserv - ok 11:11:03.0435 7960 [ 77EA11B065E0A8AB902D78145CA51E10 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 11:11:03.0482 7960 cdfs - ok 11:11:03.0544 7960 [ BE167ED0FDB9C1FA1133953C18D5A6C9 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 11:11:03.0560 7960 cdrom - ok 11:11:03.0606 7960 [ 319C6B309773D063541D01DF8AC6F55F ] CertPropSvc C:\Windows\System32\certprop.dll 11:11:03.0653 7960 CertPropSvc - ok 11:11:03.0684 7960 [ 3FE3FE94A34DF6FB06E6418D0F6A0060 ] circlass C:\Windows\system32\DRIVERS\circlass.sys 11:11:03.0731 7960 circlass - ok 11:11:03.0747 7960 [ 635181E0E9BBF16871BF5380D71DB02D ] CLFS C:\Windows\system32\CLFS.sys 11:11:03.0762 7960 CLFS - ok 11:11:03.0856 7960 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 11:11:03.0872 7960 clr_optimization_v2.0.50727_32 - ok 11:11:03.0950 7960 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 11:11:03.0981 7960 clr_optimization_v4.0.30319_32 - ok 11:11:03.0996 7960 [ DEA805815E587DAD1DD2C502220B5616 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 11:11:04.0028 7960 CmBatt - ok 11:11:04.0059 7960 [ C537B1DB64D495B9B4717B4D6D9EDBF2 ] cmdide C:\Windows\system32\drivers\cmdide.sys 11:11:04.0059 7960 cmdide - ok 11:11:04.0090 7960 [ 247B4CE2DAB1160CD422D532D5241E1F ] CNG C:\Windows\system32\Drivers\cng.sys 11:11:04.0106 7960 CNG - ok 11:11:04.0121 7960 [ A6023D3823C37043986713F118A89BEE ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 11:11:04.0137 7960 Compbatt - ok 11:11:04.0184 7960 [ CBE8C58A8579CFE5FCCF809E6F114E89 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 11:11:04.0215 7960 CompositeBus - ok 11:11:04.0230 7960 COMSysApp - ok 11:11:04.0262 7960 [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 11:11:04.0277 7960 crcdisk - ok 11:11:04.0308 7960 [ 06E771AA596B8761107AB57E99F128D7 ] CryptSvc C:\Windows\system32\cryptsvc.dll 11:11:04.0355 7960 CryptSvc - ok 11:11:04.0402 7960 [ 7660F01D3B38ACA1747E397D21D790AF ] DcomLaunch C:\Windows\system32\rpcss.dll 11:11:04.0449 7960 DcomLaunch - ok 11:11:04.0480 7960 [ 8D6E10A2D9A5EED59562D9B82CF804E1 ] defragsvc C:\Windows\System32\defragsvc.dll 11:11:04.0558 7960 defragsvc - ok 11:11:04.0605 7960 [ F024449C97EC1E464AAFFDA18593DB88 ] DfsC C:\Windows\system32\Drivers\dfsc.sys 11:11:04.0667 7960 DfsC - ok 11:11:04.0730 7960 dgderdrv - ok 11:11:04.0761 7960 [ E9E01EB683C132F7FA27CD607B8A2B63 ] Dhcp C:\Windows\system32\dhcpcore.dll 11:11:04.0823 7960 Dhcp - ok 11:11:04.0823 7960 [ 1A050B0274BFB3890703D490F330C0DA ] discache C:\Windows\system32\drivers\discache.sys 11:11:04.0854 7960 discache - ok 11:11:04.0901 7960 [ 565003F326F99802E68CA78F2A68E9FF ] Disk C:\Windows\system32\DRIVERS\disk.sys 11:11:04.0932 7960 Disk - ok 11:11:04.0948 7960 [ 33EF4861F19A0736B11314AAD9AE28D0 ] Dnscache C:\Windows\System32\dnsrslvr.dll 11:11:05.0010 7960 Dnscache - ok 11:11:05.0026 7960 [ 366BA8FB4B7BB7435E3B9EACB3843F67 ] dot3svc C:\Windows\System32\dot3svc.dll 11:11:05.0073 7960 dot3svc - ok 11:11:05.0104 7960 [ 8EC04CA86F1D68DA9E11952EB85973D6 ] DPS C:\Windows\system32\dps.dll 11:11:05.0135 7960 DPS - ok 11:11:05.0182 7960 [ B918E7C5F9BF77202F89E1A9539F2EB4 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 11:11:05.0213 7960 drmkaud - ok 11:11:05.0244 7960 [ 23F5D28378A160352BA8F817BD8C71CB ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 11:11:05.0276 7960 DXGKrnl - ok 11:11:05.0322 7960 [ 8600142FA91C1B96367D3300AD0F3F3A ] EapHost C:\Windows\System32\eapsvc.dll 11:11:05.0369 7960 EapHost - ok 11:11:05.0447 7960 [ 024E1B5CAC09731E4D868E64DBFB4AB0 ] ebdrv C:\Windows\system32\DRIVERS\evbdx.sys 11:11:05.0556 7960 ebdrv - ok 11:11:05.0603 7960 [ 85B8B4032A895A746D46A288A9B30DED ] eeCtrl C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys 11:11:05.0634 7960 eeCtrl - ok 11:11:05.0666 7960 [ 81951F51E318AECC2D68559E47485CC4 ] EFS C:\Windows\System32\lsass.exe 11:11:05.0712 7960 EFS - ok 11:11:05.0759 7960 [ A8C362018EFC87BEB013EE28F29C0863 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 11:11:05.0822 7960 ehRecvr - ok 11:11:05.0853 7960 [ D389BFF34F80CAEDE417BF9D1507996A ] ehSched C:\Windows\ehome\ehsched.exe 11:11:05.0900 7960 ehSched - ok 11:11:05.0931 7960 [ 0ED67910C8C326796FAA00B2BF6D9D3C ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 11:11:05.0962 7960 elxstor - ok 11:11:06.0040 7960 [ B5A8A04A6E5B4E86B95B1553AA918F5F ] EraserUtilRebootDrv C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys 11:11:06.0071 7960 EraserUtilRebootDrv - ok 11:11:06.0087 7960 [ 8FC3208352DD3912C94367A206AB3F11 ] ErrDev C:\Windows\system32\drivers\errdev.sys 11:11:06.0102 7960 ErrDev - ok 11:11:06.0134 7960 [ F6916EFC29D9953D5D0DF06882AE8E16 ] EventSystem C:\Windows\system32\es.dll 11:11:06.0165 7960 EventSystem - ok 11:11:06.0196 7960 [ 2DC9108D74081149CC8B651D3A26207F ] exfat C:\Windows\system32\drivers\exfat.sys 11:11:06.0243 7960 exfat - ok 11:11:06.0243 7960 [ 7E0AB74553476622FB6AE36F73D97D35 ] fastfat C:\Windows\system32\drivers\fastfat.sys 11:11:06.0274 7960 fastfat - ok 11:11:06.0336 7960 [ 967EA5B213E9984CBE270205DF37755B ] Fax C:\Windows\system32\fxssvc.exe 11:11:06.0383 7960 Fax - ok 11:11:06.0414 7960 [ E817A017F82DF2A1F8CFDBDA29388B29 ] fdc C:\Windows\system32\DRIVERS\fdc.sys 11:11:06.0446 7960 fdc - ok 11:11:06.0477 7960 [ F3222C893BD2F5821A0179E5C71E88FB ] fdPHost C:\Windows\system32\fdPHost.dll 11:11:06.0508 7960 fdPHost - ok 11:11:06.0508 7960 [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B ] FDResPub C:\Windows\system32\fdrespub.dll 11:11:06.0555 7960 FDResPub - ok 11:11:06.0570 7960 [ 6CF00369C97F3CF563BE99BE983D13D8 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 11:11:06.0570 7960 FileInfo - ok 11:11:06.0586 7960 [ 42C51DC94C91DA21CB9196EB64C45DB9 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 11:11:06.0633 7960 Filetrace - ok 11:11:06.0648 7960 [ 87907AA70CB3C56600F1C2FB8841579B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 11:11:06.0680 7960 flpydisk - ok 11:11:06.0695 7960 [ 7520EC808E0C35E0EE6F841294316653 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 11:11:06.0711 7960 FltMgr - ok 11:11:06.0758 7960 [ B3A5EC6B6B6673DB7E87C2BCDBDDC074 ] FontCache C:\Windows\system32\FntCache.dll 11:11:06.0820 7960 FontCache - ok 11:11:06.0851 7960 [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe 11:11:06.0867 7960 FontCache3.0.0.0 - ok 11:11:06.0960 7960 [ 9513B437B7ADB1E6065B7F0D83D11ECF ] FreeAgentGoNext Service C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe 11:11:06.0976 7960 FreeAgentGoNext Service - ok 11:11:06.0992 7960 [ 1A16B57943853E598CFF37FE2B8CBF1D ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 11:11:07.0007 7960 FsDepends - ok 11:11:07.0070 7960 [ B07663A810E861EEBFD0EAC7E82CA62D ] FsUsbExDisk C:\Windows\system32\FsUsbExDisk.SYS 11:11:07.0101 7960 FsUsbExDisk ( UnsignedFile.Multi.Generic ) - warning 11:11:07.0101 7960 FsUsbExDisk - detected UnsignedFile.Multi.Generic (1) 11:11:07.0163 7960 [ F96C429788350DB4BA6771C3034DFD88 ] FsUsbExService C:\Windows\system32\FsUsbExService.Exe 11:11:07.0194 7960 FsUsbExService ( UnsignedFile.Multi.Generic ) - warning 11:11:07.0194 7960 FsUsbExService - detected UnsignedFile.Multi.Generic (1) 11:11:07.0210 7960 [ 7DAE5EBCC80E45D3253F4923DC424D05 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 11:11:07.0241 7960 Fs_Rec - ok 11:11:07.0288 7960 [ 8A73E79089B282100B9393B644CB853B ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 11:11:07.0319 7960 fvevol - ok 11:11:07.0350 7960 [ 65EE0C7A58B65E74AE05637418153938 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 11:11:07.0366 7960 gagp30kx - ok 11:11:07.0413 7960 [ 5AE3A887ECE5BBB72CFAB273C2FD1CFA ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys 11:11:07.0444 7960 GEARAspiWDM - ok 11:11:07.0491 7960 [ 007AEA2E06E7CEF7372E40C277163959 ] ggflt C:\Windows\system32\DRIVERS\ggflt.sys 11:11:07.0506 7960 ggflt - ok 11:11:07.0569 7960 [ C73DE35960CA75C5AB4AE636B127C64E ] ggsemc C:\Windows\system32\DRIVERS\ggsemc.sys 11:11:07.0584 7960 ggsemc - ok 11:11:07.0616 7960 [ E897EAF5ED6BA41E081060C9B447A673 ] gpsvc C:\Windows\System32\gpsvc.dll 11:11:07.0662 7960 gpsvc - ok 11:11:07.0694 7960 [ C44E3C2BAB6837DB337DDEE7544736DB ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 11:11:07.0725 7960 hcw85cir - ok 11:11:07.0756 7960 [ A5EF29D5315111C80A5C1ABAD14C8972 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 11:11:07.0787 7960 HdAudAddService - ok 11:11:07.0834 7960 [ 9036377B8A6C15DC2EEC53E489D159B5 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys 11:11:07.0881 7960 HDAudBus - ok 11:11:07.0912 7960 [ 1D58A7F3E11A9731D0EAAAA8405ACC36 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 11:11:07.0943 7960 HidBatt - ok 11:11:07.0974 7960 [ 89448F40E6DF260C206A193A4683BA78 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 11:11:08.0006 7960 HidBth - ok 11:11:08.0037 7960 [ CF50B4CF4A4F229B9F3C08351F99CA5E ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 11:11:08.0068 7960 HidIr - ok 11:11:08.0115 7960 [ 2BC6F6A1992B3A77F5F41432CA6B3B6B ] hidserv C:\Windows\system32\hidserv.dll 11:11:08.0146 7960 hidserv - ok 11:11:08.0193 7960 [ 10C19F8290891AF023EAEC0832E1EB4D ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 11:11:08.0224 7960 HidUsb - ok 11:11:08.0255 7960 [ 196B4E3F4CCCC24AF836CE58FACBB699 ] hkmsvc C:\Windows\system32\kmsvc.dll 11:11:08.0318 7960 hkmsvc - ok 11:11:08.0364 7960 [ 6658F4404DE03D75FE3BA09F7ABA6A30 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 11:11:08.0396 7960 HomeGroupListener - ok 11:11:08.0427 7960 [ DBC02D918FFF1CAD628ACBE0C0EAA8E8 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 11:11:08.0474 7960 HomeGroupProvider - ok 11:11:08.0520 7960 [ 295FDC419039090EB8B49FFDBB374549 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 11:11:08.0536 7960 HpSAMD - ok 11:11:08.0583 7960 [ 871917B07A141BFF43D76D8844D48106 ] HTTP C:\Windows\system32\drivers\HTTP.sys 11:11:08.0676 7960 HTTP - ok 11:11:08.0708 7960 [ 0C4E035C7F105F1299258C90886C64C5 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 11:11:08.0708 7960 hwpolicy - ok 11:11:08.0770 7960 [ F151F0BDC47F4A28B1B20A0818EA36D6 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 11:11:08.0817 7960 i8042prt - ok 11:11:08.0848 7960 [ 26541A068572F650A2FA490726FE81BE ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys 11:11:08.0879 7960 iaStor - ok 11:11:08.0957 7960 [ 31A0E93CDF29007D6C6FFFB632F375ED ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe 11:11:08.0973 7960 IAStorDataMgrSvc - ok 11:11:09.0051 7960 [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 11:11:09.0082 7960 iaStorV - ok 11:11:09.0144 7960 [ C521D7EB6497BB1AF6AFA89E322FB43C ] idsvc C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 11:11:09.0176 7960 idsvc - ok 11:11:09.0269 7960 [ D0A4C9031B57295D6B1078E3CFA45DB4 ] IDSVix86 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\IPSDefs\20120831.001\IDSvix86.sys 11:11:09.0300 7960 IDSVix86 - ok 11:11:09.0316 7960 [ 4173FF5708F3236CF25195FECD742915 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 11:11:09.0332 7960 iirsp - ok 11:11:09.0347 7960 [ F95622F161474511B8D80D6B093AA610 ] IKEEXT C:\Windows\System32\ikeext.dll 11:11:09.0425 7960 IKEEXT - ok 11:11:09.0550 7960 [ 4BE85CF5831A41104C2DDED55FBC3565 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys 11:11:09.0675 7960 IntcAzAudAddService - ok 11:11:09.0706 7960 [ A0F12F2C9BA6C72F3987CE780E77C130 ] intelide C:\Windows\system32\drivers\intelide.sys 11:11:09.0706 7960 intelide - ok 11:11:09.0768 7960 [ 3B514D27BFC4ACCB4037BC6685F766E0 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 11:11:09.0784 7960 intelppm - ok 11:11:09.0815 7960 [ ACB364B9075A45C0736E5C47BE5CAE19 ] IPBusEnum C:\Windows\system32\ipbusenum.dll 11:11:09.0878 7960 IPBusEnum - ok 11:11:09.0893 7960 [ 709D1761D3B19A932FF0238EA6D50200 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 11:11:09.0924 7960 IpFilterDriver - ok 11:11:09.0924 7960 [ 4D65A07B795D6674312F879D09AA7663 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 11:11:09.0956 7960 iphlpsvc - ok 11:11:09.0971 7960 [ 4BD7134618C1D2A27466A099062547BF ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 11:11:09.0987 7960 IPMIDRV - ok 11:11:10.0002 7960 [ A5FA468D67ABCDAA36264E463A7BB0CD ] IPNAT C:\Windows\system32\drivers\ipnat.sys 11:11:10.0049 7960 IPNAT - ok 11:11:10.0096 7960 [ 42996CFF20A3084A56017B7902307E9F ] IRENUM C:\Windows\system32\drivers\irenum.sys 11:11:10.0158 7960 IRENUM - ok 11:11:10.0190 7960 [ 1F32BB6B38F62F7DF1A7AB7292638A35 ] isapnp C:\Windows\system32\drivers\isapnp.sys 11:11:10.0205 7960 isapnp - ok 11:11:10.0221 7960 [ CB7A9ABB12B8415BCE5D74994C7BA3AE ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 11:11:10.0236 7960 iScsiPrt - ok 11:11:10.0283 7960 [ ADEF52CA1AEAE82B50DF86B56413107E ] kbdclass C:\Windows\system32\drivers\kbdclass.sys 11:11:10.0299 7960 kbdclass - ok 11:11:10.0330 7960 [ 9E3CED91863E6EE98C24794D05E27A71 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys 11:11:10.0361 7960 kbdhid - ok 11:11:10.0392 7960 [ 81951F51E318AECC2D68559E47485CC4 ] KeyIso C:\Windows\system32\lsass.exe 11:11:10.0424 7960 KeyIso - ok 11:11:10.0439 7960 [ B7895B4182C0D16F6EFADEB8081E8D36 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 11:11:10.0470 7960 KSecDD - ok 11:11:10.0470 7960 [ D30159AC9237519FBC62C6EC247D2D46 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 11:11:10.0486 7960 KSecPkg - ok 11:11:10.0517 7960 [ 89A7B9CC98D0D80C6F31B91C0A310FCD ] KtmRm C:\Windows\system32\msdtckrm.dll 11:11:10.0548 7960 KtmRm - ok 11:11:10.0626 7960 [ 33CF4A1507FD0F6522799D132624948A ] LADF_BakerCOnly C:\Windows\system32\DRIVERS\ladfBakerCi386.sys 11:11:10.0642 7960 LADF_BakerCOnly - ok 11:11:10.0673 7960 [ BA3EAAE345B3737D3D2F1C491FB42ADB ] LADF_BakerROnly C:\Windows\system32\DRIVERS\ladfBakerRi386.sys 11:11:10.0704 7960 LADF_BakerROnly - ok 11:11:10.0736 7960 [ D64AF876D53ECA3668BB97B51B4E70AB ] LanmanServer C:\Windows\system32\srvsvc.dll 11:11:10.0782 7960 LanmanServer - ok 11:11:10.0814 7960 [ 58405E4F68BA8E4057C6E914F326ABA2 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 11:11:10.0845 7960 LanmanWorkstation - ok 11:11:10.0907 7960 [ CB5D13966F74D7F000724A907F614193 ] libusb0 C:\Windows\system32\DRIVERS\libusb0.sys 11:11:10.0923 7960 libusb0 - ok 11:11:10.0954 7960 [ F7611EC07349979DA9B0AE1F18CCC7A6 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 11:11:10.0970 7960 lltdio - ok 11:11:11.0001 7960 [ 5700673E13A2117FA3B9020C852C01E2 ] lltdsvc C:\Windows\System32\lltdsvc.dll 11:11:11.0032 7960 lltdsvc - ok 11:11:11.0048 7960 [ 55CA01BA19D0006C8F2639B6C045E08B ] lmhosts C:\Windows\System32\lmhsvc.dll 11:11:11.0079 7960 lmhosts - ok 11:11:11.0126 7960 [ EB119A53CCF2ACC000AC71B065B78FEF ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 11:11:11.0141 7960 LSI_FC - ok 11:11:11.0157 7960 [ 8ADE1C877256A22E49B75D1CC9161F9C ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 11:11:11.0172 7960 LSI_SAS - ok 11:11:11.0172 7960 [ DC9DC3D3DAA0E276FD2EC262E38B11E9 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 11:11:11.0188 7960 LSI_SAS2 - ok 11:11:11.0204 7960 [ 0A036C7D7CAB643A7F07135AC47E0524 ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 11:11:11.0204 7960 LSI_SCSI - ok 11:11:11.0219 7960 [ 6703E366CC18D3B6E534F5CF7DF39CEE ] luafv C:\Windows\system32\drivers\luafv.sys 11:11:11.0250 7960 luafv - ok 11:11:11.0282 7960 [ 6DFE7F2E8E8A337263AA5C92A215F161 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys 11:11:11.0297 7960 MBAMProtector - ok 11:11:11.0360 7960 [ 43683E970F008C93C9429EF428147A54 ] MBAMService C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe 11:11:11.0406 7960 MBAMService - ok 11:11:11.0422 7960 [ BFB9EE8EE977EFE85D1A3105ABEF6DD1 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 11:11:11.0438 7960 Mcx2Svc - ok 11:11:11.0453 7960 [ 0FFF5B045293002AB38EB1FD1FC2FB74 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 11:11:11.0469 7960 megasas - ok 11:11:11.0500 7960 [ DCBAB2920C75F390CAF1D29F675D03D6 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 11:11:11.0516 7960 MegaSR - ok 11:11:11.0609 7960 Microsoft SharePoint Workspace Audit Service - ok 11:11:11.0625 7960 [ 146B6F43A673379A3C670E86D89BE5EA ] MMCSS C:\Windows\system32\mmcss.dll 11:11:11.0672 7960 MMCSS - ok 11:11:11.0687 7960 [ F001861E5700EE84E2D4E52C712F4964 ] Modem C:\Windows\system32\drivers\modem.sys 11:11:11.0718 7960 Modem - ok 11:11:11.0765 7960 [ 79D10964DE86B292320E9DFE02282A23 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 11:11:11.0796 7960 monitor - ok 11:11:11.0843 7960 [ FB18CC1D4C2E716B6B903B0AC0CC0609 ] mouclass C:\Windows\system32\drivers\mouclass.sys 11:11:11.0859 7960 mouclass - ok 11:11:11.0890 7960 [ 2C388D2CD01C9042596CF3C8F3C7B24D ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 11:11:11.0921 7960 mouhid - ok 11:11:11.0968 7960 [ FC8771F45ECCCFD89684E38842539B9B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 11:11:11.0999 7960 mountmgr - ok 11:11:12.0077 7960 [ 46297FA8E30A6007F14118FC2B942FBC ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe 11:11:12.0093 7960 MozillaMaintenance - ok 11:11:12.0108 7960 [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0 ] mpio C:\Windows\system32\drivers\mpio.sys 11:11:12.0140 7960 mpio - ok 11:11:12.0155 7960 [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 11:11:12.0186 7960 mpsdrv - ok 11:11:12.0233 7960 [ 9835584E999D25004E1EE8E5F3E3B881 ] MpsSvc C:\Windows\system32\mpssvc.dll 11:11:12.0296 7960 MpsSvc - ok 11:11:12.0311 7960 [ CEB46AB7C01C9F825F8CC6BABC18166A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 11:11:12.0342 7960 MRxDAV - ok 11:11:12.0374 7960 [ 5D16C921E3671636C0EBA3BBAAC5FD25 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 11:11:12.0405 7960 mrxsmb - ok 11:11:12.0436 7960 [ 6D17A4791ACA19328C685D256349FEFC ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 11:11:12.0467 7960 mrxsmb10 - ok 11:11:12.0498 7960 [ B81F204D146000BE76651A50670A5E9E ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 11:11:12.0514 7960 mrxsmb20 - ok 11:11:12.0561 7960 [ 012C5F4E9349E711E11E0F19A8589F0A ] msahci C:\Windows\system32\drivers\msahci.sys 11:11:12.0576 7960 msahci - ok 11:11:12.0639 7960 [ D98350792A7CE82E7459A7C36481BEDA ] MSCamSvc C:\Program Files\Microsoft LifeCam\MSCamS32.exe 11:11:12.0670 7960 MSCamSvc - ok 11:11:12.0717 7960 [ 55055F8AD8BE27A64C831322A780A228 ] msdsm C:\Windows\system32\drivers\msdsm.sys 11:11:12.0748 7960 msdsm - ok 11:11:12.0779 7960 [ E1BCE74A3BD9902B72599C0192A07E27 ] MSDTC C:\Windows\System32\msdtc.exe 11:11:12.0810 7960 MSDTC - ok 11:11:12.0826 7960 [ DAEFB28E3AF5A76ABCC2C3078C07327F ] Msfs C:\Windows\system32\drivers\Msfs.sys 11:11:12.0842 7960 Msfs - ok 11:11:12.0857 7960 [ 3E1E5767043C5AF9367F0056295E9F84 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 11:11:12.0888 7960 mshidkmdf - ok 11:11:12.0951 7960 [ 5119FFC2A6B51089CDB0EFDC75808C97 ] MSHUSBVideo C:\Windows\system32\Drivers\nx6000.sys 11:11:12.0966 7960 MSHUSBVideo - ok 11:11:12.0998 7960 [ 0A4E5757AE09FA9622E3158CC1AEF114 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 11:11:13.0013 7960 msisadrv - ok 11:11:13.0076 7960 [ 90F7D9E6B6F27E1A707D4A297F077828 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 11:11:13.0138 7960 MSiSCSI - ok 11:11:13.0138 7960 msiserver - ok 11:11:13.0138 7960 [ 8C0860D6366AAFFB6C5BB9DF9448E631 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 11:11:13.0185 7960 MSKSSRV - ok 11:11:13.0185 7960 [ 3EA8B949F963562CEDBB549EAC0C11CE ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 11:11:13.0216 7960 MSPCLOCK - ok 11:11:13.0232 7960 [ F456E973590D663B1073E9C463B40932 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 11:11:13.0263 7960 MSPQM - ok 11:11:13.0278 7960 [ 0E008FC4819D238C51D7C93E7B41E560 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 11:11:13.0294 7960 MsRPC - ok 11:11:13.0294 7960 [ FC6B9FF600CC585EA38B12589BD4E246 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 11:11:13.0310 7960 mssmbios - ok 11:11:13.0310 7960 [ B42C6B921F61A6E55159B8BE6CD54A36 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 11:11:13.0325 7960 MSTEE - ok 11:11:13.0356 7960 [ 33599130F44E1F34631CEA241DE8AC84 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 11:11:13.0388 7960 MTConfig - ok 11:11:13.0403 7960 [ 159FAD02F64E6381758C990F753BCC80 ] Mup C:\Windows\system32\Drivers\mup.sys 11:11:13.0403 7960 Mup - ok 11:11:13.0481 7960 [ E78A365CC3E0FBFC018A33DCE01909F8 ] N360 C:\Program Files\Norton 360\Engine\5.2.2.3\ccSvcHst.exe 11:11:13.0512 7960 N360 - ok 11:11:13.0544 7960 [ 61D57A5D7C6D9AFE10E77DAE6E1B445E ] napagent C:\Windows\system32\qagentRT.dll 11:11:13.0590 7960 napagent - ok 11:11:13.0622 7960 [ 26384429FCD85D83746F63E798AB1480 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 11:11:13.0637 7960 NativeWifiP - ok 11:11:13.0746 7960 [ FA0B7D801E71CE79B915BAE5A90DE224 ] NAVENG C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\VirusDefs\20120831.002\NAVENG.SYS 11:11:13.0762 7960 NAVENG - ok 11:11:13.0824 7960 [ 80BB71A7D14CF14B54514A201BF5B985 ] NAVEX15 C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\VirusDefs\20120831.002\NAVEX15.SYS 11:11:13.0902 7960 NAVEX15 - ok 11:11:13.0965 7960 [ E7C54812A2AAF43316EB6930C1FFA108 ] NDIS C:\Windows\system32\drivers\ndis.sys 11:11:13.0996 7960 NDIS - ok 11:11:14.0027 7960 [ 0E1787AA6C9191D3D319E8BAFE86F80C ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 11:11:14.0105 7960 NdisCap - ok 11:11:14.0136 7960 [ E4A8AEC125A2E43A9E32AFEEA7C9C888 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 11:11:14.0183 7960 NdisTapi - ok 11:11:14.0230 7960 [ D8A65DAFB3EB41CBB622745676FCD072 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 11:11:14.0277 7960 Ndisuio - ok 11:11:14.0292 7960 [ 38FBE267E7E6983311179230FACB1017 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 11:11:14.0339 7960 NdisWan - ok 11:11:14.0370 7960 [ A4BDC541E69674FBFF1A8FF00BE913F2 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 11:11:14.0386 7960 NDProxy - ok 11:11:14.0433 7960 [ 80B275B1CE3B0E79909DB7B39AF74D51 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 11:11:14.0495 7960 NetBIOS - ok 11:11:14.0511 7960 [ 280122DDCF04B378EDD1AD54D71C1E54 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 11:11:14.0542 7960 NetBT - ok 11:11:14.0558 7960 [ 81951F51E318AECC2D68559E47485CC4 ] Netlogon C:\Windows\system32\lsass.exe 11:11:14.0573 7960 Netlogon - ok 11:11:14.0636 7960 [ 7CCCFCA7510684768DA22092D1FA4DB2 ] Netman C:\Windows\System32\netman.dll 11:11:14.0698 7960 Netman - ok 11:11:14.0698 7960 [ 8C338238C16777A802D6A9211EB2BA50 ] netprofm C:\Windows\System32\netprofm.dll 11:11:14.0729 7960 netprofm - ok 11:11:14.0760 7960 [ F476EC40033CDB91EFBE73EB99B8362D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe 11:11:14.0760 7960 NetTcpPortSharing - ok 11:11:14.0838 7960 [ 777DD328D61A3756BC9893FB14D7E288 ] Netzmanager Service C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe 11:11:14.0854 7960 Netzmanager Service ( UnsignedFile.Multi.Generic ) - warning 11:11:14.0854 7960 Netzmanager Service - detected UnsignedFile.Multi.Generic (1) 11:11:14.0885 7960 [ 1D85C4B390B0EE09C7A46B91EFB2C097 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 11:11:14.0901 7960 nfrd960 - ok 11:11:14.0916 7960 [ 912084381D30D8B89EC4E293053F4710 ] NlaSvc C:\Windows\System32\nlasvc.dll 11:11:14.0963 7960 NlaSvc - ok 11:11:14.0979 7960 [ 1DB262A9F8C087E8153D89BEF3D2235F ] Npfs C:\Windows\system32\drivers\Npfs.sys 11:11:15.0010 7960 Npfs - ok 11:11:15.0026 7960 [ BA387E955E890C8A88306D9B8D06BF17 ] nsi C:\Windows\system32\nsisvc.dll 11:11:15.0088 7960 nsi - ok 11:11:15.0104 7960 [ E9A0A4D07E53D8FEA2BB8387A3293C58 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 11:11:15.0135 7960 nsiproxy - ok 11:11:15.0182 7960 [ 81189C3D7763838E55C397759D49007A ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 11:11:15.0228 7960 Ntfs - ok 11:11:15.0228 7960 [ F9756A98D69098DCA8945D62858A812C ] Null C:\Windows\system32\drivers\Null.sys 11:11:15.0260 7960 Null - ok 11:11:15.0306 7960 [ 03AD379554B50FA1802BE4EC2E291E92 ] nusb3hub C:\Windows\system32\DRIVERS\nusb3hub.sys 11:11:15.0322 7960 nusb3hub - ok 11:11:15.0384 7960 [ 06FE87C9D181AF5F04D192E604E10E6C ] nusb3xhc C:\Windows\system32\DRIVERS\nusb3xhc.sys 11:11:15.0416 7960 nusb3xhc - ok 11:11:15.0462 7960 [ B3E25EE28883877076E0E1FF877D02E0 ] nvraid C:\Windows\system32\drivers\nvraid.sys 11:11:15.0494 7960 nvraid - ok 11:11:15.0525 7960 [ 4380E59A170D88C4F1022EFF6719A8A4 ] nvstor C:\Windows\system32\drivers\nvstor.sys 11:11:15.0556 7960 nvstor - ok 11:11:15.0603 7960 [ 5A0983915F02BAE73267CC2A041F717D ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 11:11:15.0618 7960 nv_agp - ok 11:11:15.0665 7960 [ 08A70A1F2CDDE9BB49B885CB817A66EB ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 11:11:15.0712 7960 ohci1394 - ok 11:11:15.0790 7960 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 11:11:15.0806 7960 ose - ok 11:11:15.0962 7960 [ 358A9CCA612C68EB2F07DDAD4CE1D8D7 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE 11:11:16.0040 7960 osppsvc - ok 11:11:16.0086 7960 [ 82A8521DDC60710C3D3D3E7325209BEC ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 11:11:16.0133 7960 p2pimsvc - ok 11:11:16.0164 7960 [ 59C3DDD501E39E006DAC31BF55150D91 ] p2psvc C:\Windows\system32\p2psvc.dll 11:11:16.0211 7960 p2psvc - ok 11:11:16.0227 7960 [ 2EA877ED5DD9713C5AC74E8EA7348D14 ] Parport C:\Windows\system32\DRIVERS\parport.sys 11:11:16.0258 7960 Parport - ok 11:11:16.0289 7960 [ 3F34A1B4C5F6475F320C275E63AFCE9B ] partmgr C:\Windows\system32\drivers\partmgr.sys 11:11:16.0305 7960 partmgr - ok 11:11:16.0320 7960 [ EB0A59F29C19B86479D36B35983DAADC ] Parvdm C:\Windows\system32\DRIVERS\parvdm.sys 11:11:16.0352 7960 Parvdm - ok 11:11:16.0352 7960 [ 358AB7956D3160000726574083DFC8A6 ] PcaSvc C:\Windows\System32\pcasvc.dll 11:11:16.0367 7960 PcaSvc - ok 11:11:16.0399 7960 [ FD2041E9BA03DB7764B2248F02475079 ] pccsmcfd C:\Windows\system32\DRIVERS\pccsmcfd.sys 11:11:16.0430 7960 pccsmcfd - ok 11:11:16.0445 7960 [ 673E55C3498EB970088E812EA820AA8F ] pci C:\Windows\system32\drivers\pci.sys 11:11:16.0477 7960 pci - ok 11:11:16.0477 7960 [ AFE86F419014DB4E5593F69FFE26CE0A ] pciide C:\Windows\system32\drivers\pciide.sys 11:11:16.0492 7960 pciide - ok 11:11:16.0523 7960 [ F396431B31693E71E8A80687EF523506 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 11:11:16.0555 7960 pcmcia - ok 11:11:16.0570 7960 [ 250F6B43D2B613172035C6747AEEB19F ] pcw C:\Windows\system32\drivers\pcw.sys 11:11:16.0586 7960 pcw - ok 11:11:16.0633 7960 [ 9E0104BA49F4E6973749A02BF41344ED ] PEAUTH C:\Windows\system32\drivers\peauth.sys 11:11:16.0679 7960 PEAUTH - ok 11:11:16.0820 7960 [ 414BBA67A3DED1D28437EB66AEB8A720 ] pla C:\Windows\system32\pla.dll 11:11:16.0913 7960 pla - ok 11:11:16.0976 7960 [ EC7BC28D207DA09E79B3E9FAF8B232CA ] PlugPlay C:\Windows\system32\umpnpmgr.dll 11:11:17.0038 7960 PlugPlay - ok 11:11:17.0069 7960 [ 63FF8572611249931EB16BB8EED6AFC8 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 11:11:17.0116 7960 PNRPAutoReg - ok 11:11:17.0116 7960 [ 82A8521DDC60710C3D3D3E7325209BEC ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 11:11:17.0147 7960 PNRPsvc - ok 11:11:17.0163 7960 [ 53946B69BA0836BD95B03759530C81EC ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 11:11:17.0210 7960 PolicyAgent - ok 11:11:17.0225 7960 [ F87D30E72E03D579A5199CCB3831D6EA ] Power C:\Windows\system32\umpo.dll 11:11:17.0303 7960 Power - ok 11:11:17.0319 7960 [ 631E3E205AD6D86F2AED6A4A8E69F2DB ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 11:11:17.0366 7960 PptpMiniport - ok 11:11:17.0381 7960 [ 85B1E3A0C7585BC4AAE6899EC6FCF011 ] Processor C:\Windows\system32\DRIVERS\processr.sys 11:11:17.0413 7960 Processor - ok 11:11:17.0444 7960 [ CADEFAC453040E370A1BDFF3973BE00D ] ProfSvc C:\Windows\system32\profsvc.dll 11:11:17.0475 7960 ProfSvc - ok 11:11:17.0475 7960 [ 81951F51E318AECC2D68559E47485CC4 ] ProtectedStorage C:\Windows\system32\lsass.exe 11:11:17.0491 7960 ProtectedStorage - ok 11:11:17.0506 7960 [ 6270CCAE2A86DE6D146529FE55B3246A ] Psched C:\Windows\system32\DRIVERS\pacer.sys 11:11:17.0537 7960 Psched - ok 11:11:17.0584 7960 [ A6A7AD767BF5141665F5C675F671B3E1 ] PSI_SVC_2 c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe 11:11:17.0615 7960 PSI_SVC_2 - ok 11:11:17.0678 7960 [ AB95ECF1F6659A60DDC166D8315B0751 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 11:11:17.0725 7960 ql2300 - ok 11:11:17.0756 7960 [ B4DD51DD25182244B86737DC51AF2270 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 11:11:17.0771 7960 ql40xx - ok 11:11:17.0771 7960 [ 31AC809E7707EB580B2BDB760390765A ] QWAVE C:\Windows\system32\qwave.dll 11:11:17.0818 7960 QWAVE - ok 11:11:17.0818 7960 [ 584078CA1B95CA72DF2A27C336F9719D ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 11:11:17.0849 7960 QWAVEdrv - ok 11:11:17.0865 7960 [ 30A81B53C766D0133BB86D234E5556AB ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 11:11:17.0896 7960 RasAcd - ok 11:11:17.0927 7960 [ 57EC4AEF73660166074D8F7F31C0D4FD ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 11:11:17.0990 7960 RasAgileVpn - ok 11:11:18.0005 7960 [ A60F1839849C0C00739787FD5EC03F13 ] RasAuto C:\Windows\System32\rasauto.dll 11:11:18.0037 7960 RasAuto - ok 11:11:18.0037 7960 [ D9F91EAFEC2815365CBE6D167E4E332A ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 11:11:18.0068 7960 Rasl2tp - ok 11:11:18.0099 7960 [ CB9E04DC05EACF5B9A36CA276D475006 ] RasMan C:\Windows\System32\rasmans.dll 11:11:18.0130 7960 RasMan - ok 11:11:18.0146 7960 [ 0FE8B15916307A6AC12BFB6A63E45507 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 11:11:18.0161 7960 RasPppoe - ok 11:11:18.0193 7960 [ 44101F495A83EA6401D886E7FD70096B ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 11:11:18.0208 7960 RasSstp - ok 11:11:18.0239 7960 [ D528BC58A489409BA40334EBF96A311B ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 11:11:18.0255 7960 rdbss - ok 11:11:18.0271 7960 [ 0D8F05481CB76E70E1DA06EE9F0DA9DF ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 11:11:18.0286 7960 rdpbus - ok 11:11:18.0317 7960 [ 23DAE03F29D253AE74C44F99E515F9A1 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 11:11:18.0380 7960 RDPCDD - ok 11:11:18.0411 7960 [ 5A53CA1598DD4156D44196D200C94B8A ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 11:11:18.0442 7960 RDPENCDD - ok 11:11:18.0442 7960 [ 44B0A53CD4F27D50ED461DAE0C0B4E1F ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 11:11:18.0473 7960 RDPREFMP - ok 11:11:18.0505 7960 [ F031683E6D1FEA157ABB2FF260B51E61 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 11:11:18.0520 7960 RDPWD - ok 11:11:18.0551 7960 [ 518395321DC96FE2C9F0E96AC743B656 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 11:11:18.0567 7960 rdyboost - ok 11:11:18.0583 7960 [ 7B5E1419717FAC363A31CC302895217A ] RemoteAccess C:\Windows\System32\mprdim.dll 11:11:18.0598 7960 RemoteAccess - ok 11:11:18.0614 7960 [ CB9A8683F4EF2BF99E123D79950D7935 ] RemoteRegistry C:\Windows\system32\regsvc.dll 11:11:18.0645 7960 RemoteRegistry - ok 11:11:18.0645 7960 [ 78D072F35BC45D9E4E1B61895C152234 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 11:11:18.0676 7960 RpcEptMapper - ok 11:11:18.0692 7960 [ 94D36C0E44677DD26981D2BFEEF2A29D ] RpcLocator C:\Windows\system32\locator.exe 11:11:18.0723 7960 RpcLocator - ok 11:11:18.0739 7960 [ 7660F01D3B38ACA1747E397D21D790AF ] RpcSs C:\Windows\system32\rpcss.dll 11:11:18.0770 7960 RpcSs - ok 11:11:18.0785 7960 [ 032B0D36AD92B582D869879F5AF5B928 ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 11:11:18.0848 7960 rspndr - ok 11:11:18.0910 7960 [ 0516998076AD894AE7E362C3110AA071 ] RTL8167 C:\Windows\system32\DRIVERS\Rt86win7.sys 11:11:18.0941 7960 RTL8167 - ok 11:11:18.0988 7960 [ 9CE8DEFFAFFCCBF473015D76AE8EE514 ] RTL8192su C:\Windows\system32\DRIVERS\RTL8192su.sys 11:11:19.0019 7960 RTL8192su - ok 11:11:19.0035 7960 [ 81951F51E318AECC2D68559E47485CC4 ] SamSs C:\Windows\system32\lsass.exe 11:11:19.0051 7960 SamSs - ok 11:11:19.0097 7960 [ 05D860DA1040F111503AC416CCEF2BCA ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 11:11:19.0113 7960 sbp2port - ok 11:11:19.0129 7960 [ 8FC518FFE9519C2631D37515A68009C4 ] SCardSvr C:\Windows\System32\SCardSvr.dll 11:11:19.0160 7960 SCardSvr - ok 11:11:19.0175 7960 [ 0693B5EC673E34DC147E195779A4DCF6 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 11:11:19.0207 7960 scfilter - ok 11:11:19.0253 7960 [ A04BB13F8A72F8B6E8B4071723E4E336 ] Schedule C:\Windows\system32\schedsvc.dll 11:11:19.0316 7960 Schedule - ok 11:11:19.0331 7960 [ 319C6B309773D063541D01DF8AC6F55F ] SCPolicySvc C:\Windows\System32\certprop.dll 11:11:19.0347 7960 SCPolicySvc - ok 11:11:19.0378 7960 [ 08236C4BCE5EDD0A0318A438AF28E0F7 ] SDRSVC C:\Windows\System32\SDRSVC.dll 11:11:19.0409 7960 SDRSVC - ok 11:11:19.0487 7960 [ 4A5809A1D796E2675AC0332BF7B0CB11 ] SeaPort C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 11:11:19.0503 7960 SeaPort - ok 11:11:19.0565 7960 [ 07F7F501AD50DE2BA2D5842D9B6D6155 ] SecDrv C:\Windows\system32\drivers\SECDRV.SYS 11:11:19.0581 7960 SecDrv ( UnsignedFile.Multi.Generic ) - warning 11:11:19.0581 7960 SecDrv - detected UnsignedFile.Multi.Generic (1) 11:11:19.0597 7960 [ A59B3A4442C52060CC7A85293AA3546F ] seclogon C:\Windows\system32\seclogon.dll 11:11:19.0643 7960 seclogon - ok 11:11:19.0659 7960 [ DCB7FCDCC97F87360F75D77425B81737 ] SENS C:\Windows\System32\sens.dll 11:11:19.0690 7960 SENS - ok 11:11:19.0706 7960 [ 50087FE1EE447009C9CC2997B90DE53F ] SensrSvc C:\Windows\system32\sensrsvc.dll 11:11:19.0737 7960 SensrSvc - ok 11:11:19.0768 7960 [ 9AD8B8B515E3DF6ACD4212EF465DE2D1 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 11:11:19.0799 7960 Serenum - ok 11:11:19.0815 7960 [ 5FB7FCEA0490D821F26F39CC5EA3D1E2 ] Serial C:\Windows\system32\DRIVERS\serial.sys 11:11:19.0846 7960 Serial - ok 11:11:19.0893 7960 [ 79BFFB520327FF916A582DFEA17AA813 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 11:11:19.0924 7960 sermouse - ok 11:11:19.0987 7960 [ 3EC8DE67B1C78C31E54C0F030E6BD7D5 ] ServiceLayer C:\Program Files\PC Connectivity Solution\ServiceLayer.exe 11:11:20.0018 7960 ServiceLayer ( UnsignedFile.Multi.Generic ) - warning 11:11:20.0018 7960 ServiceLayer - detected UnsignedFile.Multi.Generic (1) 11:11:20.0049 7960 [ 4AE380F39A0032EAB7DD953030B26D28 ] SessionEnv C:\Windows\system32\sessenv.dll 11:11:20.0096 7960 SessionEnv - ok 11:11:20.0127 7960 [ 9F976E1EB233DF46FCE808D9DEA3EB9C ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 11:11:20.0174 7960 sffdisk - ok 11:11:20.0189 7960 [ 932A68EE27833CFD57C1639D375F2731 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 11:11:20.0205 7960 sffp_mmc - ok 11:11:20.0221 7960 [ 6D4CCAEDC018F1CF52866BBBAA235982 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 11:11:20.0236 7960 sffp_sd - ok 11:11:20.0252 7960 [ DB96666CC8312EBC45032F30B007A547 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 11:11:20.0283 7960 sfloppy - ok 11:11:20.0330 7960 [ D1A079A0DE2EA524513B6930C24527A2 ] SharedAccess C:\Windows\System32\ipnathlp.dll 11:11:20.0377 7960 SharedAccess - ok 11:11:20.0392 7960 [ 414DA952A35BF5D50192E28263B40577 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 11:11:20.0423 7960 ShellHWDetection - ok 11:11:20.0470 7960 [ 2565CAC0DC9FE0371BDCE60832582B2E ] sisagp C:\Windows\system32\drivers\sisagp.sys 11:11:20.0486 7960 sisagp - ok 11:11:20.0533 7960 [ A9F0486851BECB6DDA1D89D381E71055 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 11:11:20.0548 7960 SiSRaid2 - ok 11:11:20.0564 7960 [ 3727097B55738E2F554972C3BE5BC1AA ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 11:11:20.0579 7960 SiSRaid4 - ok 11:11:20.0657 7960 [ 6128E98EAAED364ED1A32708D2FD22CB ] SkypeUpdate C:\Program Files\Skype\Updater\Updater.exe 11:11:20.0673 7960 SkypeUpdate - ok 11:11:20.0720 7960 [ 3E21C083B8A01CB70BA1F09303010FCE ] Smb C:\Windows\system32\DRIVERS\smb.sys 11:11:20.0767 7960 Smb - ok 11:11:20.0813 7960 [ 6A984831644ECA1A33FFEAE4126F4F37 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 11:11:20.0845 7960 SNMPTRAP - ok 11:11:20.0954 7960 [ 5177D14A78E60FD61DCFC6B388E7E971 ] Sony PC Companion C:\Program Files\Sony\Sony PC Companion\PCCService.exe 11:11:20.0969 7960 Sony PC Companion - ok 11:11:20.0985 7960 [ 95CF1AE7527FB70F7816563CBC09D942 ] spldr C:\Windows\system32\drivers\spldr.sys 11:11:21.0001 7960 spldr - ok 11:11:21.0047 7960 [ 9AEA093B8F9C37CF45538382CABA2475 ] Spooler C:\Windows\System32\spoolsv.exe 11:11:21.0094 7960 Spooler - ok 11:11:21.0157 7960 [ CF87A1DE791347E75B98885214CED2B8 ] sppsvc C:\Windows\system32\sppsvc.exe 11:11:21.0219 7960 sppsvc - ok 11:11:21.0235 7960 [ B0180B20B065D89232A78A40FE56EAA6 ] sppuinotify C:\Windows\system32\sppuinotify.dll 11:11:21.0281 7960 sppuinotify - ok 11:11:21.0375 7960 [ 83726CF02ECED69138948083E06B6EAC ] SRTSP C:\Windows\System32\Drivers\N360\0502020.003\SRTSP.SYS 11:11:21.0391 7960 SRTSP - ok 11:11:21.0453 7960 [ 4E7EAB2E5615D39CF1F1DF9C71E5E225 ] SRTSPX C:\Windows\system32\drivers\N360\0502020.003\SRTSPX.SYS 11:11:21.0469 7960 SRTSPX - ok 11:11:21.0531 7960 [ E4C2764065D66EA1D2D3EBC28FE99C46 ] srv C:\Windows\system32\DRIVERS\srv.sys 11:11:21.0609 7960 srv - ok 11:11:21.0609 7960 [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 11:11:21.0640 7960 srv2 - ok 11:11:21.0640 7960 [ BE6BD660CAA6F291AE06A718A4FA8ABC ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 11:11:21.0671 7960 srvnet - ok 11:11:21.0671 7960 [ D887C9FD02AC9FA880F6E5027A43E118 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 11:11:21.0718 7960 SSDPSRV - ok 11:11:21.0734 7960 [ D318F23BE45D5E3A107469EB64815B50 ] SstpSvc C:\Windows\system32\sstpsvc.dll 11:11:21.0781 7960 SstpSvc - ok 11:11:21.0827 7960 [ 3F0164FBC0BD1ADBD02DF9759181451A ] ss_bbus C:\Windows\system32\DRIVERS\ss_bbus.sys 11:11:21.0859 7960 ss_bbus - ok 11:11:21.0905 7960 [ B89D62206034E5FE573C80A24DD55675 ] ss_bmdfl C:\Windows\system32\DRIVERS\ss_bmdfl.sys 11:11:21.0921 7960 ss_bmdfl - ok 11:11:21.0937 7960 [ 1ED0FCEA586FE2A416EE15196E5631DD ] ss_bmdm C:\Windows\system32\DRIVERS\ss_bmdm.sys 11:11:21.0952 7960 ss_bmdm - ok 11:11:22.0015 7960 [ 994D2E5378CC337EC7DD73C1E04FCAA4 ] ss_bserd C:\Windows\system32\DRIVERS\ss_bserd.sys 11:11:22.0046 7960 ss_bserd - ok 11:11:22.0046 7960 [ DB32D325C192B801DF274BFD12A7E72B ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 11:11:22.0061 7960 stexstor - ok 11:11:22.0108 7960 [ E1FB3706030FB4578A0D72C2FC3689E4 ] StiSvc C:\Windows\System32\wiaservc.dll 11:11:22.0155 7960 StiSvc - ok 11:11:22.0186 7960 [ E58C78A848ADD9610A4DB6D214AF5224 ] swenum C:\Windows\system32\drivers\swenum.sys 11:11:22.0202 7960 swenum - ok 11:11:22.0217 7960 [ A28BD92DF340E57B024BA433165D34D7 ] swprv C:\Windows\System32\swprv.dll 11:11:22.0264 7960 swprv - ok 11:11:22.0280 7960 [ 9BBEB8C6258E72D62E7560E6667AAD39 ] SymDS C:\Windows\system32\drivers\N360\0502020.003\SYMDS.SYS 11:11:22.0295 7960 SymDS - ok 11:11:22.0342 7960 [ D5C02629C02A820A7E71BCA3D44294A3 ] SymEFA C:\Windows\system32\drivers\N360\0502020.003\SYMEFA.SYS 11:11:22.0373 7960 SymEFA - ok 11:11:22.0405 7960 [ AB33C3B196197CA467CBDDA717860DBA ] SymEvent C:\Windows\system32\Drivers\SYMEVENT.SYS 11:11:22.0420 7960 SymEvent - ok 11:11:22.0436 7960 [ A73399804D5D4A8B20BA60FCF70C9F1F ] SymIRON C:\Windows\system32\drivers\N360\0502020.003\Ironx86.SYS 11:11:22.0451 7960 SymIRON - ok 11:11:22.0483 7960 [ 2C688094650D23B62B0A809DECD0B12F ] SymNetS C:\Windows\System32\Drivers\N360\0502020.003\SYMNETS.SYS 11:11:22.0498 7960 SymNetS - ok 11:11:22.0545 7960 [ 36650D618CA34C9D357DFD3D89B2C56F ] SysMain C:\Windows\system32\sysmain.dll 11:11:22.0592 7960 SysMain - ok 11:11:22.0607 7960 [ 763FECDC3D30C815FE72DD57936C6CD1 ] TabletInputService C:\Windows\System32\TabSvc.dll 11:11:22.0639 7960 TabletInputService - ok 11:11:22.0670 7960 [ 613BF4820361543956909043A265C6AC ] TapiSrv C:\Windows\System32\tapisrv.dll 11:11:22.0701 7960 TapiSrv - ok 11:11:22.0701 7960 [ B799D9FDB26111737F58288D8DC172D9 ] TBS C:\Windows\System32\tbssvc.dll 11:11:22.0732 7960 TBS - ok 11:11:22.0795 7960 [ 7FA2E0F8B072BD04B77B421480B6CC22 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 11:11:22.0841 7960 Tcpip - ok 11:11:22.0888 7960 [ 7FA2E0F8B072BD04B77B421480B6CC22 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 11:11:22.0919 7960 TCPIP6 - ok 11:11:22.0951 7960 [ CCA24162E055C3714CE5A88B100C64ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 11:11:22.0966 7960 tcpipreg - ok 11:11:22.0997 7960 [ 1CB91B2BD8F6DD367DFC2EF26FD751B2 ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 11:11:23.0044 7960 TDPIPE - ok 11:11:23.0060 7960 [ 2C2C5AFE7EE4F620D69C23C0617651A8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 11:11:23.0091 7960 TDTCP - ok 11:11:23.0107 7960 [ B459575348C20E8121D6039DA063C704 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 11:11:23.0138 7960 tdx - ok 11:11:23.0169 7960 TelekomNM3 - ok 11:11:23.0185 7960 [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20 ] TermDD C:\Windows\system32\drivers\termdd.sys 11:11:23.0216 7960 TermDD - ok 11:11:23.0247 7960 [ 382C804C92811BE57829D8E550A900E2 ] TermService C:\Windows\System32\termsrv.dll 11:11:23.0325 7960 TermService - ok 11:11:23.0356 7960 [ 42FB6AFD6B79D9FE07381609172E7CA4 ] Themes C:\Windows\system32\themeservice.dll 11:11:23.0387 7960 Themes - ok 11:11:23.0403 7960 [ 146B6F43A673379A3C670E86D89BE5EA ] THREADORDER C:\Windows\system32\mmcss.dll 11:11:23.0434 7960 THREADORDER - ok 11:11:23.0434 7960 [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A ] TrkWks C:\Windows\System32\trkwks.dll 11:11:23.0465 7960 TrkWks - ok 11:11:23.0528 7960 [ 2C49B175AEE1D4364B91B531417FE583 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 11:11:23.0559 7960 TrustedInstaller - ok 11:11:23.0590 7960 [ 254BB140EEE3C59D6114C1A86B636877 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 11:11:23.0637 7960 tssecsrv - ok 11:11:23.0699 7960 [ FD1D6C73E6333BE727CBCC6054247654 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 11:11:23.0746 7960 TsUsbFlt - ok 11:11:23.0777 7960 [ B2FA25D9B17A68BB93D58B0556E8C90D ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 11:11:23.0840 7960 tunnel - ok 11:11:23.0855 7960 [ 750FBCB269F4D7DD2E420C56B795DB6D ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 11:11:23.0855 7960 uagp35 - ok 11:11:23.0871 7960 [ EE43346C7E4B5E63E54F927BABBB32FF ] udfs C:\Windows\system32\DRIVERS\udfs.sys 11:11:23.0918 7960 udfs - ok 11:11:23.0933 7960 [ 8344FD4FCE927880AA1AA7681D4927E5 ] UI0Detect C:\Windows\system32\UI0Detect.exe 11:11:23.0980 7960 UI0Detect - ok 11:11:24.0011 7960 [ 44E8048ACE47BEFBFDC2E9BE4CBC8880 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 11:11:24.0043 7960 uliagpkx - ok 11:11:24.0089 7960 [ D295BED4B898F0FD999FCFA9B32B071B ] umbus C:\Windows\system32\drivers\umbus.sys 11:11:24.0136 7960 umbus - ok 11:11:24.0183 7960 [ 7550AD0C6998BA1CB4843E920EE0FEAC ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 11:11:24.0214 7960 UmPass - ok 11:11:24.0230 7960 [ 833FBB672460EFCE8011D262175FAD33 ] upnphost C:\Windows\System32\upnphost.dll 11:11:24.0261 7960 upnphost - ok 11:11:24.0308 7960 [ 1D9F2BD026E8E2D45033A4DF3F16B78C ] usbaudio C:\Windows\system32\drivers\usbaudio.sys 11:11:24.0355 7960 usbaudio - ok 11:11:24.0386 7960 [ BD9C55D7023C5DE374507ACC7A14E2AC ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 11:11:24.0433 7960 usbccgp - ok 11:11:24.0464 7960 [ 04EC7CEC62EC3B6D9354EEE93327FC82 ] usbcir C:\Windows\system32\drivers\usbcir.sys 11:11:24.0495 7960 usbcir - ok 11:11:24.0542 7960 [ F92DE757E4B7CE9C07C5E65423F3AE3B ] usbehci C:\Windows\system32\drivers\usbehci.sys 11:11:24.0573 7960 usbehci - ok 11:11:24.0620 7960 [ 8DC94AEC6A7E644A06135AE7506DC2E9 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 11:11:24.0667 7960 usbhub - ok 11:11:24.0713 7960 [ E185D44FAC515A18D9DEDDC23C2CDF44 ] usbohci C:\Windows\system32\drivers\usbohci.sys 11:11:24.0745 7960 usbohci - ok 11:11:24.0791 7960 [ 797D862FE0875E75C7CC4C1AD7B30252 ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 11:11:24.0823 7960 usbprint - ok 11:11:24.0854 7960 [ 576096CCBC07E7C4EA4F5E6686D6888F ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys 11:11:24.0885 7960 usbscan - ok 11:11:24.0901 7960 [ F991AB9CC6B908DB552166768176896A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 11:11:24.0947 7960 USBSTOR - ok 11:11:24.0963 7960 [ 68DF884CF41CDADA664BEB01DAF67E3D ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 11:11:24.0979 7960 usbuhci - ok 11:11:25.0025 7960 [ 45F4E7BF43DB40A6C6B4D92C76CBC3F2 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys 11:11:25.0057 7960 usbvideo - ok 11:11:25.0088 7960 [ 081E6E1C91AEC36758902A9F727CD23C ] UxSms C:\Windows\System32\uxsms.dll 11:11:25.0119 7960 UxSms - ok 11:11:25.0135 7960 [ 81951F51E318AECC2D68559E47485CC4 ] VaultSvc C:\Windows\system32\lsass.exe 11:11:25.0150 7960 VaultSvc - ok 11:11:25.0166 7960 [ A059C4C3EDB09E07D21A8E5C0AABD3CB ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 11:11:25.0166 7960 vdrvroot - ok 11:11:25.0197 7960 [ C3CD30495687C2A2F66A65CA6FD89BE9 ] vds C:\Windows\System32\vds.exe 11:11:25.0244 7960 vds - ok 11:11:25.0291 7960 [ 17C408214EA61696CEC9C66E388B14F3 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 11:11:25.0322 7960 vga - ok 11:11:25.0337 7960 [ 8E38096AD5C8570A6F1570A61E251561 ] VgaSave C:\Windows\System32\drivers\vga.sys 11:11:25.0400 7960 VgaSave - ok 11:11:25.0415 7960 [ 5461686CCA2FDA57B024547733AB42E3 ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 11:11:25.0431 7960 vhdmp - ok 11:11:25.0447 7960 [ C829317A37B4BEA8F39735D4B076E923 ] viaagp C:\Windows\system32\drivers\viaagp.sys 11:11:25.0462 7960 viaagp - ok 11:11:25.0462 7960 [ E02F079A6AA107F06B16549C6E5C7B74 ] ViaC7 C:\Windows\system32\DRIVERS\viac7.sys 11:11:25.0493 7960 ViaC7 - ok 11:11:25.0509 7960 [ E43574F6A56A0EE11809B48C09E4FD3C ] viaide C:\Windows\system32\drivers\viaide.sys 11:11:25.0525 7960 viaide - ok 11:11:25.0540 7960 [ 4C63E00F2F4B5F86AB48A58CD990F212 ] volmgr C:\Windows\system32\drivers\volmgr.sys 11:11:25.0556 7960 volmgr - ok 11:11:25.0571 7960 [ B5BB72067DDDDBBFB04B2F89FF8C3C87 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 11:11:25.0587 7960 volmgrx - ok 11:11:25.0603 7960 [ F497F67932C6FA693D7DE2780631CFE7 ] volsnap C:\Windows\system32\drivers\volsnap.sys 11:11:25.0618 7960 volsnap - ok 11:11:25.0665 7960 [ 9DFA0CC2F8855A04816729651175B631 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 11:11:25.0681 7960 vsmraid - ok 11:11:25.0712 7960 [ 209A3B1901B83AEB8527ED211CCE9E4C ] VSS C:\Windows\system32\vssvc.exe 11:11:25.0774 7960 VSS - ok 11:11:25.0790 7960 [ 90567B1E658001E79D7C8BBD3DDE5AA6 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys 11:11:25.0805 7960 vwifibus - ok 11:11:25.0805 7960 [ 7090D3436EEB4E7DA3373090A23448F7 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys 11:11:25.0837 7960 vwififlt - ok 11:11:25.0883 7960 [ A3F04CBEA6C2A10E6CB01F8B47611882 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys 11:11:25.0915 7960 vwifimp - ok 11:11:25.0946 7960 [ 55187FD710E27D5095D10A472C8BAF1C ] W32Time C:\Windows\system32\w32time.dll 11:11:26.0024 7960 W32Time - ok 11:11:26.0039 7960 [ DE3721E89C653AA281428C8A69745D90 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 11:11:26.0071 7960 WacomPen - ok 11:11:26.0117 7960 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 11:11:26.0195 7960 WANARP - ok 11:11:26.0195 7960 [ 3C3C78515F5AB448B022BDF5B8FFDD2E ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 11:11:26.0211 7960 Wanarpv6 - ok 11:11:26.0289 7960 [ 691E3285E53DCA558E1A84667F13E15A ] wbengine C:\Windows\system32\wbengine.exe 11:11:26.0351 7960 wbengine - ok 11:11:26.0367 7960 [ 9614B5D29DC76AC3C29F6D2D3AA70E67 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 11:11:26.0398 7960 WbioSrvc - ok 11:11:26.0445 7960 [ 34EEE0DFAADB4F691D6D5308A51315DC ] wcncsvc C:\Windows\System32\wcncsvc.dll 11:11:26.0461 7960 wcncsvc - ok 11:11:26.0476 7960 [ 5D930B6357A6D2AF4D7653BDABBF352F ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 11:11:26.0523 7960 WcsPlugInService - ok 11:11:26.0539 7960 [ 1112A9BADACB47B7C0BB0392E3158DFF ] Wd C:\Windows\system32\DRIVERS\wd.sys 11:11:26.0554 7960 Wd - ok 11:11:26.0570 7960 [ 9950E3D0F08141C7E89E64456AE7DC73 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 11:11:26.0601 7960 Wdf01000 - ok 11:11:26.0601 7960 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiServiceHost C:\Windows\system32\wdi.dll 11:11:26.0663 7960 WdiServiceHost - ok 11:11:26.0663 7960 [ 46EF9DC96265FD0B423DB72E7C38C2A5 ] WdiSystemHost C:\Windows\system32\wdi.dll 11:11:26.0679 7960 WdiSystemHost - ok 11:11:26.0710 7960 [ A9D880F97530D5B8FEE278923349929D ] WebClient C:\Windows\System32\webclnt.dll 11:11:26.0726 7960 WebClient - ok 11:11:26.0726 7960 [ 760F0AFE937A77CFF27153206534F275 ] Wecsvc C:\Windows\system32\wecsvc.dll 11:11:26.0757 7960 Wecsvc - ok 11:11:26.0773 7960 [ AC804569BB2364FB6017370258A4091B ] wercplsupport C:\Windows\System32\wercplsupport.dll 11:11:26.0788 7960 wercplsupport - ok 11:11:26.0819 7960 [ 08E420D873E4FD85241EE2421B02C4A4 ] WerSvc C:\Windows\System32\WerSvc.dll 11:11:26.0866 7960 WerSvc - ok 11:11:26.0913 7960 [ 8B9A943F3B53861F2BFAF6C186168F79 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 11:11:26.0975 7960 WfpLwf - ok 11:11:26.0991 7960 [ 5CF95B35E59E2A38023836FFF31BE64C ] WIMMount C:\Windows\system32\drivers\wimmount.sys 11:11:26.0991 7960 WIMMount - ok 11:11:27.0053 7960 [ 3FAE8F94296001C32EAB62CD7D82E0FD ] WinDefend C:\Program Files\Windows Defender\mpsvc.dll 11:11:27.0085 7960 WinDefend - ok 11:11:27.0085 7960 WinHttpAutoProxySvc - ok 11:11:27.0147 7960 [ F62E510B6AD4C21EB9FE8668ED251826 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 11:11:27.0194 7960 Winmgmt - ok 11:11:27.0241 7960 [ 1B91CD34EA3A90AB6A4EF0550174F4CC ] WinRM C:\Windows\system32\WsmSvc.dll 11:11:27.0287 7960 WinRM - ok 11:11:27.0334 7960 [ A67E5F9A400F3BD1BE3D80613B45F708 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 11:11:27.0365 7960 WinUsb - ok 11:11:27.0397 7960 [ 16935C98FF639D185086A3529B1F2067 ] Wlansvc C:\Windows\System32\wlansvc.dll 11:11:27.0443 7960 Wlansvc - ok 11:11:27.0475 7960 [ 0217679B8FCA58714C3BF2726D2CA84E ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 11:11:27.0490 7960 WmiAcpi - ok 11:11:27.0506 7960 [ 6EB6B66517B048D87DC1856DDF1F4C3F ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 11:11:27.0537 7960 wmiApSrv - ok 11:11:27.0568 7960 [ 3B40D3A61AA8C21B88AE57C58AB3122E ] WMPNetworkSvc C:\Program Files\Windows Media Player\wmpnetwk.exe 11:11:27.0631 7960 WMPNetworkSvc - ok 11:11:27.0631 7960 [ A2F0EC770A92F2B3F9DE6D518E11409C ] WPCSvc C:\Windows\System32\wpcsvc.dll 11:11:27.0662 7960 WPCSvc - ok 11:11:27.0677 7960 [ AA53356D60AF47EACC85BC617A4F3F66 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 11:11:27.0693 7960 WPDBusEnum - ok 11:11:27.0724 7960 [ 6DB3276587B853BF886B69528FDB048C ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 11:11:27.0787 7960 ws2ifsl - ok 11:11:27.0787 7960 [ 6F5D49EFE0E7164E03AE773A3FE25340 ] wscsvc C:\Windows\System32\wscsvc.dll 11:11:27.0802 7960 wscsvc - ok 11:11:27.0818 7960 WSearch - ok 11:11:27.0880 7960 [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv C:\Windows\system32\wuaueng.dll 11:11:27.0927 7960 wuauserv - ok 11:11:27.0943 7960 [ E714A1C0354636837E20CCBF00888EE7 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 11:11:27.0989 7960 WudfPf - ok 11:11:28.0052 7960 [ 1023EE888C9B47178C5293ED5336AB69 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 11:11:28.0114 7960 WUDFRd - ok 11:11:28.0145 7960 [ 8D1E1E529A2C9E9B6A85B55A345F7629 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 11:11:28.0177 7960 wudfsvc - ok 11:11:28.0192 7960 [ FF2D745B560F7C71B31F30F4D49F73D2 ] WwanSvc C:\Windows\System32\wwansvc.dll 11:11:28.0208 7960 WwanSvc - ok 11:11:28.0223 7960 ================ Scan global =============================== 11:11:28.0255 7960 [ DAB748AE0439955ED2FA22357533DDDB ] C:\Windows\system32\basesrv.dll 11:11:28.0286 7960 [ 183B4188D5D91B271613EC3EFD1B3CEF ] C:\Windows\system32\winsrv.dll 11:11:28.0301 7960 [ 183B4188D5D91B271613EC3EFD1B3CEF ] C:\Windows\system32\winsrv.dll 11:11:28.0317 7960 [ 364455805E64882844EE9ACB72522830 ] C:\Windows\system32\sxssrv.dll 11:11:28.0333 7960 [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6 ] C:\Windows\system32\services.exe 11:11:28.0333 7960 [Global] - ok 11:11:28.0333 7960 ================ Scan MBR ================================== 11:11:28.0364 7960 [ 5D949EEA3BEEC2DF38A2D7900AD89A60 ] \Device\Harddisk0\DR0 11:11:30.0283 7960 \Device\Harddisk0\DR0 - ok 11:11:30.0298 7960 ================ Scan VBR ================================== 11:11:30.0298 7960 [ 4BA4FAB1AB1BB0938C5CE8CA9A40EC46 ] \Device\Harddisk0\DR0\Partition1 11:11:30.0298 7960 \Device\Harddisk0\DR0\Partition1 - ok 11:11:30.0298 7960 [ 0C92B798407252B55337D7E64C6D3124 ] \Device\Harddisk0\DR0\Partition2 11:11:30.0298 7960 \Device\Harddisk0\DR0\Partition2 - ok 11:11:30.0329 7960 [ D7196B76D2732DA5326A930EABFF372F ] \Device\Harddisk0\DR0\Partition3 11:11:30.0329 7960 \Device\Harddisk0\DR0\Partition3 - ok 11:11:30.0329 7960 [ 4695138304D36F4A1FAB28F27A0CB0A6 ] \Device\Harddisk0\DR0\Partition4 11:11:30.0329 7960 \Device\Harddisk0\DR0\Partition4 - ok 11:11:30.0345 7960 ============================================================ 11:11:30.0345 7960 Scan finished 11:11:30.0345 7960 ============================================================ 11:11:30.0345 8144 Detected object count: 5 11:11:30.0345 8144 Actual detected object count: 5 11:11:59.0127 8144 FsUsbExDisk ( UnsignedFile.Multi.Generic ) - skipped by user 11:11:59.0127 8144 FsUsbExDisk ( UnsignedFile.Multi.Generic ) - User select action: Skip 11:11:59.0127 8144 FsUsbExService ( UnsignedFile.Multi.Generic ) - skipped by user 11:11:59.0127 8144 FsUsbExService ( UnsignedFile.Multi.Generic ) - User select action: Skip 11:11:59.0127 8144 Netzmanager Service ( UnsignedFile.Multi.Generic ) - skipped by user 11:11:59.0127 8144 Netzmanager Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 11:11:59.0127 8144 SecDrv ( UnsignedFile.Multi.Generic ) - skipped by user 11:11:59.0127 8144 SecDrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 11:11:59.0127 8144 ServiceLayer ( UnsignedFile.Multi.Generic ) - skipped by user 11:11:59.0127 8144 ServiceLayer ( UnsignedFile.Multi.Generic ) - User select action: Skip |
01.09.2012, 12:14 | #17 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Trojaner ZeroAccess + FakeAlert Dann bitte jetzt CF ausführen:
__________________ComboFix Ein Leitfaden und Tutorium zur Nutzung von ComboFix
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat! Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie Zitat:
__________________ |
01.09.2012, 16:29 | #18 |
| Trojaner ZeroAccess + FakeAlert Hier das logfiles von combofix.
__________________Code:
ATTFilter ComboFix 12-08-31.08 - Anne 01.09.2012 17:06:01.1.4 - x86 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.3063.1750 [GMT 2:00] ausgeführt von:: c:\users\Anne\Desktop\ComboFix.exe AV: Norton 360 *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF} FW: Norton 360 *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4} SP: Norton 360 *Disabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . C:\Internet Explorer c:\internet explorer\Custom\eBay.ico c:\users\Anne\4.0 c:\users\Anne\AppData\Local\Temp\b01d42a6-0948-4bd0-8dea-54d68f50a791\CliSecureRT.dll c:\users\Anne\Favorites\bookmarks-2007-12-04.html c:\users\Anne\Favorites\bookmarks-2007-12-05.html c:\users\Robert\4.0 c:\windows\system32\muzapp.exe c:\windows\system32\spool\prtprocs\w32x86\ppbiPr.dll . . ((((((((((((((((((((((( Dateien erstellt von 2012-08-01 bis 2012-09-01 )))))))))))))))))))))))))))))) . . 2012-09-01 15:14 . 2012-09-01 15:14 -------- d-----w- c:\users\Robert\AppData\Local\temp 2012-09-01 15:14 . 2012-09-01 15:14 -------- d-----w- c:\users\Georg\AppData\Local\temp 2012-09-01 15:14 . 2012-09-01 15:14 -------- d-----w- c:\users\Default\AppData\Local\temp 2012-09-01 15:14 . 2012-09-01 15:14 -------- d-----w- c:\users\Anton\AppData\Local\temp 2012-08-31 15:15 . 2012-08-31 15:15 -------- d-----w- C:\_OTL 2012-08-21 14:40 . 2012-08-21 14:40 -------- d-----w- c:\program files\ESET 2012-08-18 12:06 . 2012-08-18 12:06 -------- d-----w- c:\users\Anton\AppData\Roaming\Malwarebytes 2012-08-13 17:53 . 2012-08-13 17:53 -------- d-----w- c:\program files\7-Zip 2012-08-12 16:09 . 2012-08-12 16:09 -------- d-----w- c:\users\Anne\AppData\Roaming\Malwarebytes 2012-08-12 16:09 . 2012-08-12 16:09 -------- d-----w- c:\programdata\Malwarebytes 2012-08-12 16:09 . 2012-08-12 16:09 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2012-08-12 16:09 . 2012-07-03 11:46 22344 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-08-11 17:42 . 2012-08-11 17:42 35752 ----a-w- c:\windows\system32\drivers\FixZeroAccess.sys 2012-08-11 17:01 . 2012-08-11 17:01 -------- d-----w- c:\users\Anne\AppData\Roaming\FixZeroAccess 2012-08-07 13:24 . 2012-08-07 13:24 -------- d-----w- c:\users\Anne\AppData\Local\Western Digital 2012-08-06 08:01 . 2012-08-06 08:01 -------- d-----w- c:\users\Anton\AppData\Roaming\LolClient . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-08-14 21:12 . 2012-04-16 06:12 426184 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2012-08-14 21:12 . 2011-09-23 12:10 70344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2012-06-06 06:49 . 2012-06-06 06:49 1070152 ----a-w- c:\windows\system32\MSCOMCTL.OCX 2012-06-06 05:05 . 2012-07-22 19:15 1390080 ----a-w- c:\windows\system32\msxml6.dll 2012-06-06 05:05 . 2012-07-22 19:15 1236992 ----a-w- c:\windows\system32\msxml3.dll 2012-06-06 05:03 . 2012-07-22 19:15 805376 ----a-w- c:\windows\system32\cdosys.dll 2012-07-29 19:30 . 2011-04-26 06:10 136672 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "KiesPDLR"="c:\program files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe" [2011-06-24 20880] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IAStorIcon"="c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-03-04 284696] "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2010-06-14 9288296] "StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-05-27 98304] "NUSB3MON"="c:\program files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2010-04-27 113288] "CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2009-11-02 103720] "SSBkgdUpdate"="c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-10-14 155648] "IndexSearch"="c:\program files\ScanSoft\PaperPort\IndexSearch.exe" [2005-03-17 40960] "BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2009-05-26 1159168] "ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2008-12-24 114688] "BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 91520] "APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-20 59240] "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-18 254696] "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2012-04-18 421888] "Logitech G930"="c:\program files\Logitech\G930\G930.exe" [2011-03-23 1516888] "Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-07-03 462920] . c:\users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Netzmanager.lnk - c:\program files\Netzmanager\netzmanager.exe [2010-11-10 1619968] . c:\users\Anne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Netzmanager.lnk - c:\program files\Netzmanager\netzmanager.exe [2010-11-10 1619968] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ phase-6 Reminder.lnk - c:\program files\phase-6\phase-6\reminder\reminder.exe [2012-1-18 1032192] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) . R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [x] R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x] R3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [x] R3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [x] R3 LADF_BakerCOnly;BakerC Filter Driver;c:\windows\system32\DRIVERS\ladfBakerCi386.sys [x] R3 LADF_BakerROnly;BakerR Filter Driver;c:\windows\system32\DRIVERS\ladfBakerRi386.sys [x] R3 libusb0;libusb-win32 - Kernel Driver 04/08/2011 1.2.4.0;c:\windows\system32\DRIVERS\libusb0.sys [x] R3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;c:\program files\Microsoft Office\Office14\GROOVE.EXE [x] R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [x] R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [x] R3 Sony PC Companion;Sony PC Companion;c:\program files\Sony\Sony PC Companion\PCCService.exe [x] R3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\DRIVERS\ss_bbus.sys [x] R3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\DRIVERS\ss_bmdfl.sys [x] R3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\DRIVERS\ss_bmdm.sys [x] R3 ss_bserd;SAMSUNG USB Mobile Logging Driver;c:\windows\system32\DRIVERS\ss_bserd.sys [x] R3 TelekomNM3;TelekomNM3 NDIS Protocol Driver;c:\progra~1\NETZMA~1\NMINFR~1\TelekomNM3.SYS [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x] S0 SymDS;Symantec Data Store;c:\windows\system32\drivers\N360\0502020.003\SYMDS.SYS [x] S0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\N360\0502020.003\SYMEFA.SYS [x] S1 BHDrvx86;BHDrvx86;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\BASHDefs\20120823.007_ec5\BHDrvx86.sys [x] S1 IDSVix86;IDSVix86;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\IPSDefs\20120831.001\IDSvix86.sys [x] S1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\N360\0502020.003\Ironx86.SYS [x] S1 SymNetS;Symantec Network Security WFP Driver;c:\windows\System32\Drivers\N360\0502020.003\SYMNETS.SYS [x] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x] S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [x] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x] S2 FreeAgentGoNext Service;Seagate Service;c:\program files\Seagate\SeagateManager\Sync\FreeAgentService.exe [x] S2 FsUsbExService;FsUsbExService;c:\windows\system32\FsUsbExService.Exe [x] S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x] S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [x] S2 N360;Norton 360;c:\program files\Norton 360\Engine\5.2.2.3\ccSvcHst.exe [x] S2 Netzmanager Service;Netzmanager Infrastruktur Informationssystem Dienst;c:\program files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe [x] S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x] S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x] S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [x] S3 FsUsbExDisk;FsUsbExDisk;c:\windows\system32\FsUsbExDisk.SYS [x] S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x] S3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver;c:\windows\system32\Drivers\nx6000.sys [x] S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [x] S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x] S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8192su.sys [x] S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x] . . Inhalt des "geplante Tasks" Ordners . 2012-09-01 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-16 21:12] . . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://www.aldi.com IE: An OneNote s&enden - c:\progra~1\MICROS~3\Office14\ONBttnIE.dll/105 IE: Nach Microsoft E&xcel exportieren - c:\progra~1\MICROS~3\Office14\EXCEL.EXE/3000 IE: {{0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - hxxp://rover.ebay.com/rover/1/707-37276-17534-31/4 TCP: DhcpNameServer = 192.168.2.1 FF - ProfilePath - c:\users\Anne\AppData\Roaming\Mozilla\Firefox\Profiles\mlpiw5ji.default\ FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - hxxp://web.de/ . - - - - Entfernte verwaiste Registrierungseinträge - - - - . SafeBoot-BsScanner AddRemove-01_Simmental - c:\program files\Samsung\USB Drivers\01_Simmental\Uninstall.exe AddRemove-02_Siberian - c:\program files\SAMSUNG\USB Drivers\02_Siberian\Uninstall.exe AddRemove-03_Swallowtail - c:\program files\Samsung\USB Drivers\03_Swallowtail\Uninstall.exe AddRemove-04_semseyite - c:\program files\SAMSUNG\USB Drivers\04_semseyite\Uninstall.exe AddRemove-05_Sloan - c:\program files\Samsung\USB Drivers\05_Sloan\Uninstall.exe AddRemove-06_Spencer - c:\program files\SAMSUNG\USB Drivers\06_Spencer\Uninstall.exe AddRemove-07_Schorl - c:\program files\SAMSUNG\USB Drivers\07_Schorl\Uninstall.exe AddRemove-08_EMPChipset - c:\program files\SAMSUNG\USB Drivers\08_EMPChipset\Uninstall.exe AddRemove-09_Hsp - c:\program files\SAMSUNG\USB Drivers\09_Hsp\Uninstall.exe AddRemove-11_HSP_Plus_Default - c:\program files\Samsung\USB Drivers\11_HSP_Plus_Default\Uninstall.exe AddRemove-12_Symbian_USB_Download_Driver - c:\program files\SAMSUNG\USB Drivers\12_Symbian_USB_Download_Driver\Uninstall.exe AddRemove-15_Symbian_Samsung_PC_DLC_Driver - c:\program files\SAMSUNG\USB Drivers\15_Symbian_Samsung_PC_DLC_Driver\Uninstall.exe AddRemove-16_Shrewsbury - c:\program files\Samsung\USB Drivers\16_Shrewsbury\Uninstall.exe AddRemove-17_EMP_Chipset2 - c:\program files\SAMSUNG\USB Drivers\17_EMP_Chipset2\Uninstall.exe AddRemove-18_Zinia_Serial_Driver - c:\program files\SAMSUNG\USB Drivers\18_Zinia_Serial_Driver\Uninstall.exe AddRemove-19_VIA_driver - c:\program files\Samsung\USB Drivers\19_VIA_driver\Uninstall.exe AddRemove-20_NXP_Driver - c:\program files\Samsung\USB Drivers\20_NXP_Driver\Uninstall.exe AddRemove-21_Searsburg - c:\program files\Samsung\USB Drivers\21_Searsburg\Uninstall.exe AddRemove-22_WiBro_WiMAX - c:\program files\Samsung\USB Drivers\22_WiBro_WiMAX\Uninstall.exe AddRemove-24_flashusbdriver - c:\program files\Samsung\USB Drivers\24_flashusbdriver\Uninstall.exe AddRemove-25_escape - c:\program files\Samsung\USB Drivers\25_escape\Uninstall.exe . . . [HKEY_LOCAL_MACHINE\system\ControlSet001\services\N360] "ImagePath"="\"c:\program files\Norton 360\Engine\5.2.2.3\ccSvcHst.exe\" /s \"N360\" /m \"c:\program files\Norton 360\Engine\5.2.2.3\diMaster.dll\" /prefetch:1" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice] @Denied: (2) (LocalSystem) "Progid"="ChromeHTML" . [HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice] @Denied: (2) (LocalSystem) "Progid"="ChromeHTML" . [HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\UserChoice] @Denied: (2) (LocalSystem) "Progid"="ChromeHTML" . [HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice] @Denied: (2) (LocalSystem) "Progid"="ChromeHTML" . [HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice] @Denied: (2) (LocalSystem) "Progid"="ChromeHTML" . [HKEY_USERS\S-1-5-21-2003127206-1596683678-1564571338-1004\Software\SecuROM\License information*] "datasecu"=hex:0f,e3,2d,6c,ff,d3,33,ad,f2,ec,c5,2e,1f,07,51,8f,d1,d2,83,f2,39, 50,0b,f3,a2,bc,a7,5f,e2,9e,d7,4f,57,28,38,d5,67,bd,12,b2,64,29,55,2f,f9,8c,\ "rkeysecu"=hex:f1,68,21,c8,d0,6e,64,44,cf,5b,22,ba,99,ba,0a,31 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\windows\system32\atieclxx.exe c:\windows\system32\brsvc01a.exe c:\windows\system32\brss01a.exe c:\program files\Microsoft LifeCam\MSCamS32.exe c:\windows\system32\taskhost.exe c:\program files\Common Files\Protexis\License Service\PsiService_2.exe c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe c:\windows\system32\WUDFHost.exe c:\windows\system32\conhost.exe c:\windows\system32\sppsvc.exe c:\program files\Windows Media Player\wmpnetwk.exe c:\program files\PC Connectivity Solution\ServiceLayer.exe c:\windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe c:\program files\PC Connectivity Solution\Transports\NclUSBSrv.exe c:\program files\PC Connectivity Solution\Transports\NclRSSrv.exe c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe c:\program files\Adobe\Reader 10.0\Reader\Reader_sl.exe c:\program files\Samsung\Kies\KiesTrayAgent.exe . ************************************************************************** . Zeit der Fertigstellung: 2012-09-01 17:26:04 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2012-09-01 15:26 . Vor Suchlauf: 9 Verzeichnis(se), 643.124.953.088 Bytes frei Nach Suchlauf: 13 Verzeichnis(se), 642.982.219.776 Bytes frei . - - End Of File - - CDDD9BA8ABC4E552A79AC3B7D8B4EDDA |
03.09.2012, 13:36 | #19 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Trojaner ZeroAccess + FakeAlert Bitte nun Logs mit GMER und OSAM erstellen und posten. GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen. Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst. Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM! Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none). Noch ein Hinweis: Sollte aswMBR abstürzen und es kommt eine Meldung wie "aswMBR.exe funktioniert nicht mehr, dann mach Folgendes: Starte aswMBR neu, wähle unten links im Drop-Down-Menü (unten links im Fenster von aswMBR) bei "AV scan" (none) aus und klick nochmal auf den Scan-Button.
__________________ Logfiles bitte immer in CODE-Tags posten |
03.09.2012, 18:15 | #20 |
| Trojaner ZeroAccess + FakeAlert Hier die 3 Logfiles: GMER Code:
ATTFilter GMER 1.0.15.15641 - hxxp://www.gmer.net Rootkit scan 2012-09-03 17:40:54 Windows 6.1.7601 Service Pack 1 Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 WDC_WD15 rev.51.0 Running: ddup1wm4.exe; Driver: C:\Users\Anne\AppData\Local\Temp\uwriqpow.sys ---- System - GMER 1.0.15 ---- SSDT 890914B0 ZwAlertResumeThread SSDT 89091590 ZwAlertThread SSDT 89091EA0 ZwAllocateVirtualMemory SSDT 88938B60 ZwAlpcConnectPort SSDT 8908E878 ZwAssignProcessToJobObject SSDT 8908EE20 ZwCreateMutant SSDT 8908E598 ZwCreateSymbolicLinkObject SSDT 89092588 ZwCreateThread SSDT 8908E688 ZwCreateThreadEx SSDT 8908E958 ZwDebugActiveProcess SSDT 890922D0 ZwDuplicateObject SSDT 89091CC0 ZwFreeVirtualMemory SSDT 8908EF10 ZwImpersonateAnonymousToken SSDT 8908EFD0 ZwImpersonateThread SSDT 88586518 ZwLoadDriver SSDT 89091BC0 ZwMapViewOfSection SSDT 8908ED40 ZwOpenEvent SSDT 89092470 ZwOpenProcess SSDT 89091F90 ZwOpenProcessToken SSDT 8908EB80 ZwOpenSection SSDT 890923A0 ZwOpenThread SSDT 8908E788 ZwProtectVirtualMemory SSDT 89091670 ZwResumeThread SSDT 89091910 ZwSetContextThread SSDT 890919F0 ZwSetInformationProcess SSDT 8908EA38 ZwSetSystemInformation SSDT 8908EC60 ZwSuspendProcess SSDT 89091750 ZwSuspendThread SSDT 89092668 ZwTerminateProcess SSDT 89091830 ZwTerminateThread SSDT 89091AE0 ZwUnmapViewOfSection SSDT 89091DB0 ZwWriteVirtualMemory ---- Kernel code sections - GMER 1.0.15 ---- .text ntkrnlpa.exe!ZwRollbackEnlistment + 140D 82E913C9 1 Byte [06] .text ntkrnlpa.exe!KiDispatchInterrupt + 5A2 82ECAD52 19 Bytes [E0, 0F, BA, F0, 07, 73, 09, ...] {LOOPNZ 0x11; MOV EDX, 0x97307f0; MOV CR4, EAX; OR AL, 0x80; MOV CR4, EAX; RET ; MOV ECX, CR3} .text ntkrnlpa.exe!KeRemoveQueueEx + 10DB 82ED1D90 8 Bytes [B0, 14, 09, 89, 90, 15, 09, ...] {MOV AL, 0x14; OR [ECX-0x76f6ea70], ECX} .text ntkrnlpa.exe!KeRemoveQueueEx + 10F3 82ED1DA8 4 Bytes [A0, 1E, 09, 89] .text ntkrnlpa.exe!KeRemoveQueueEx + 10FF 82ED1DB4 4 Bytes [60, 8B, 93, 88] .text ntkrnlpa.exe!KeRemoveQueueEx + 1153 82ED1E08 4 Bytes CALL AB69A715 .text ntkrnlpa.exe!KeRemoveQueueEx + 11CF 82ED1E84 4 Bytes [20, EE, 08, 89] .text ... .text C:\Windows\system32\DRIVERS\atikmdag.sys section is writeable [0x98C3A000, 0x2FBAB4, 0xE8000020] pnidata C:\Windows\system32\drivers\SECDRV.SYS unknown last section [0xA64C5F00, 0x24000, 0x48000000] ---- User code sections - GMER 1.0.15 ---- .text C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe[3708] ntdll.dll!DbgBreakPoint 778A410C 3 Bytes [8B, 40, 30] {MOV EAX, [EAX+0x30]} ---- Devices - GMER 1.0.15 ---- Device \Driver\ACPI_HAL \Device\00000056 halmacpi.dll (Hardware Abstraction Layer DLL/Microsoft Corporation) AttachedDevice \Driver\volmgr \Device\HarddiskVolume1 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation) AttachedDevice \Driver\volmgr \Device\HarddiskVolume2 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation) AttachedDevice \Driver\volmgr \Device\HarddiskVolume3 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation) AttachedDevice \Driver\volmgr \Device\HarddiskVolume4 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation) AttachedDevice \Driver\volmgr \Device\HarddiskVolume5 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation) AttachedDevice \Driver\volmgr \Device\HarddiskVolume6 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation) AttachedDevice \Driver\volmgr \Device\HarddiskVolume7 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation) AttachedDevice \Driver\volmgr \Device\HarddiskVolume8 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation) ---- EOF - GMER 1.0.15 ---- Code:
ATTFilter Report of OSAM: Autorun Manager v5.0.11926.0 hxxp://www.online-solutions.ru/en/ Saved at 17:46:37 on 03.09.2012 OS: Windows 7 Home Premium Edition Service Pack 1 (Build 7601), 32-bit Default Browser: Mozilla Corporation Firefox 14.0.1 Scanner Settings [x] Rootkits detection (hidden registry) [x] Rootkits detection (hidden files) [x] Retrieve files information [x] Check Microsoft signatures Filters [ ] Trusted entries [ ] Empty entries [x] Hidden registry entries (rootkit activity) [x] Exclusively opened files [x] Not found files [x] Files without detailed information [x] Existing files [ ] Non-startable services [ ] Non-startable drivers [x] Active entries [x] Disabled entries [Common] -----( %SystemRoot%\Tasks )----- "Adobe Flash Player Updater.job" - "Adobe Systems Incorporated" - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [Control Panel Objects] -----( %SystemRoot%\system32 )----- "FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\Windows\system32\FlashPlayerCPLApp.cpl -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )----- "mlcfg32.cpl" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\MLCFG32.CPL "Pando" - "Pando Networks" - C:\Program Files\Pando Networks\Media Booster\PMB.cpl "QuickTime" - "Apple Inc." - C:\Program Files\QuickTime\QTSystem\QuickTime.cpl [Drivers] -----( HKLM\SYSTEM\CurrentControlSet\Services )----- "BHDrvx86" (BHDrvx86) - "Symantec Corporation" - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\BASHDefs\20120823.007_ec5\BHDrvx86.sys "catchme" (catchme) - ? - C:\Users\Anne\AppData\Local\Temp\catchme.sys (File not found) "dgderdrv" (dgderdrv) - ? - C:\Windows\System32\drivers\dgderdrv.sys (File not found) "EraserUtilRebootDrv" (EraserUtilRebootDrv) - "Symantec Corporation" - C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys "FsUsbExDisk" (FsUsbExDisk) - ? - C:\Windows\system32\FsUsbExDisk.SYS (File found, but it contains no detailed information) "GEAR ASPI Filter Driver" (GEARAspiWDM) - "GEAR Software Inc." - C:\Windows\System32\DRIVERS\GEARAspiWDM.sys "IDSVix86" (IDSVix86) - "Symantec Corporation" - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\IPSDefs\20120831.001\IDSvix86.sys "MBAMProtector" (MBAMProtector) - "Malwarebytes Corporation" - C:\Windows\system32\drivers\mbam.sys "NAVENG" (NAVENG) - "Symantec Corporation" - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\VirusDefs\20120902.007\NAVENG.SYS "NAVEX15" (NAVEX15) - "Symantec Corporation" - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\VirusDefs\20120902.007\NAVEX15.SYS "SecDrv" (SecDrv) - "Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K." - C:\Windows\system32\drivers\SECDRV.SYS "Symantec Data Store" (SymDS) - "Symantec Corporation" - C:\Windows\System32\drivers\N360\0502020.003\SYMDS.SYS "Symantec Eraser Control driver" (eeCtrl) - "Symantec Corporation" - C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys "Symantec Extended File Attributes" (SymEFA) - "Symantec Corporation" - C:\Windows\System32\drivers\N360\0502020.003\SYMEFA.SYS "Symantec Iron Driver" (SymIRON) - "Symantec Corporation" - C:\Windows\system32\drivers\N360\0502020.003\Ironx86.SYS "Symantec Network Security WFP Driver" (SymNetS) - "Symantec Corporation" - C:\Windows\System32\Drivers\N360\0502020.003\SYMNETS.SYS "Symantec Real Time Storage Protection" (SRTSP) - "Symantec Corporation" - C:\Windows\System32\Drivers\N360\0502020.003\SRTSP.SYS "Symantec Real Time Storage Protection (PEL)" (SRTSPX) - "Symantec Corporation" - C:\Windows\system32\drivers\N360\0502020.003\SRTSPX.SYS "SymEvent" (SymEvent) - "Symantec Corporation" - C:\Windows\system32\Drivers\SYMEVENT.SYS "TelekomNM3 NDIS Protocol Driver" (TelekomNM3) - ? - C:\PROGRA~1\NETZMA~1\NMINFR~1\TelekomNM3.SYS (File not found) "uwriqpow" (uwriqpow) - ? - C:\Users\Anne\AppData\Local\Temp\uwriqpow.sys (Hidden registry entry, rootkit activity | File not found) [Explorer] -----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )----- {16148659-720A-457d-850B-2DBD87BB129D} "AudibleShlExt Class" - "Audible, Inc." - C:\Program Files\Audible\Bin\AudibleExt.dll {F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll -----( HKLM\Software\Classes\Protocols\Filter )----- {807573E5-5146-11D5-A672-00B0D022E945} "Microsoft Office InfoPath XML Mime Filter" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL -----( HKLM\Software\Classes\Protocols\Handler )----- {314111c7-a502-11d2-bbca-00c04f8ec294} "HxProtocol Class" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} "IEProtocolHandler Class" - "Skype Technologies" - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL {828030A1-22C1-4009-854F-8E305202313F} "livecall" - "Microsoft Corporation" - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL {828030A1-22C1-4009-854F-8E305202313F} "msnim" - "Microsoft Corporation" - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL {91774881-D725-4E58-B298-07617B9B86A8} "Skype IE add-on Pluggable Protocol" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll {03C514A3-1EFB-4856-9F99-10D7BE1653C0} "Windows Live Mail HTML Asynchronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\Program Files\Windows Live\Mail\mailcomm.dll -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks )----- {B5A7F190-DDA6-4420-B3BA-52453494E6CD} "Groove GFS Stub Execution Hook" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )----- {23170F69-40C1-278A-1000-000100020000} "7-Zip Shell Extension" - "Igor Pavlov" - C:\Program Files\7-Zip\7-zip.dll {3D60EDA7-9AB4-4DA8-864C-D9B5F2E7281D} "Arbeitsbereiche" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL {16148659-720A-457d-850B-2DBD87BB129D} "AudibleShlExt Class" - "Audible, Inc." - C:\Program Files\Audible\Bin\AudibleExt.dll {DE902992-61FC-4A01-8091-53E1895C9775} "CDR Icon Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll {7AD101F2-0B93-4D66-A1CA-DF73F3C4377B} "CDR preview provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellVista.dll {7FA63AC0-F5BC-4F3B-A9CF-94328D812B62} "CDR Property Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellVista.dll {1462EBAA-96E7-4D93-9A66-0E4068DE4FCF} "CDR Thumbnail provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll {D66DC78C-4F61-447F-942B-3FB6980118CF} "CInfoTipShellExt Class" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\VISSHE.DLL {0563DB41-F538-4B37-A92D-4659049B7766} "CLSID_WLMCMimeFilter" - "Microsoft Corporation" - C:\Program Files\Windows Live\Mail\mailcomm.dll {DE902994-61FC-4A01-8091-53E1895C9775} "CMX Icon Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll {1462EBAC-96E7-4D93-9A66-0E4068DE4FCF} "CMX Thumbnail provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll {DE902993-61FC-4A01-8091-53E1895C9775} "CPT Icon Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll {7FA63AC1-F5BC-4F3B-A9CF-94328D812B62} "CPT Property Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellVista.dll {1462EBAB-96E7-4D93-9A66-0E4068DE4FCF} "CPT Thumbnail provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll {872A9397-E0D6-4e28-B64D-52B8D0A7EA35} "DisplayCplExt Class" - "Advanced Micro Devices, Inc." - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiamaxx.dll {99FD978C-D287-4F50-827F-B2C658EDA8E7} "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} "Groove Explorer Icon Overlay 2 (GFS Stub)" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL {920E6DB1-9907-4370-B3A0-BAFC03D81399} "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL {16F3DD56-1AF5-4347-846D-7C10C4192619} "Groove Explorer Icon Overlay 3 (GFS Folder)" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL {2A541AE1-5BF6-4665-A8A3-CFA9672E4291} "Groove Folder Synchronization" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL {72853161-30C5-4D22-B7F9-0BBC1D38A37E} "Groove GFS Browser Helper" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL {6C467336-8281-4E60-8204-430CED96822D} "Groove GFS Context Menu Handler" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL {B5A7F190-DDA6-4420-B3BA-52453494E6CD} "Groove GFS Stub Execution Hook" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL {A449600E-1DC6-4232-B948-9BD794D62056} "Groove GFS Stub Icon Handler" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL {387E725D-DC16-4D76-B310-2C93ED4752A0} "Groove XML Icon Handler" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL {506F4668-F13E-4AA1-BB04-B43203AB3CC0} "ImageExtractorShellExt Class" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\VISSHE.DLL {42042206-2D85-11D3-8CFF-005004838597} "Microsoft Office HTML Icon Handler" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\MSOHEVI.DLL {993BE281-6695-4BA5-8A2A-7AACBFAAB69E} "Microsoft Office Metadata Handler" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll {C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} "Microsoft Office Thumbnail Handler" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll {0875DCB6-C686-4243-9432-ADCCF0B9F2D7} "Microsoft OneNote Namespace Extension for Windows Desktop Search" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\ONFILTER.DLL {00020D75-0000-0000-C000-000000000046} "Microsoft Outlook" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\MLSHEXT.DLL {0006F045-0000-0000-C000-000000000046} "Outlook File Icon Extension" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\OLKFSTUB.DLL {5E2121EE-0300-11D4-8D3B-444553540000} "SimpleShlExt Class" - "Advanced Micro Devices, Inc." - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll {BDEADF00-C265-11D0-BCED-00A0C90AB50F} "Webordner" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL {2BE99FD4-A181-4996-BFA9-58C5FFD11F6C} "Windows Live Photo Gallery Autoplay Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe {00F30F64-AC33-42F5-8FD1-5DC2D3FDE06C} "Windows Live Photo Gallery Editor Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe {00F3712A-CA79-45B4-9E4D-D7891E7F8B9D} "Windows Live Photo Gallery Editor Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll {00F30F90-3E96-453B-AFCD-D71989ECC2C7} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll {00F33137-EE26-412F-8D71-F84E4C2C6625} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll {00F374B7-B390-4884-B372-2FC349F2172B} "Windows Live Photo Gallery Viewer Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe {00F346CB-35A4-465B-8B8F-65A29DBAB1F6} "Windows Live Photo Gallery Viewer Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll {E0D79304-84BE-11CE-9641-444553540000} "WinZip" - "WinZip Computing, S.L." - C:\Program Files\WinZip\wzshlstb.dll {E0D79305-84BE-11CE-9641-444553540000} "WinZip" - "WinZip Computing, S.L." - C:\Program Files\WinZip\wzshlstb.dll {E0D79306-84BE-11CE-9641-444553540000} "WinZip" - "WinZip Computing, S.L." - C:\Program Files\WinZip\wzshlstb.dll {E0D79307-84BE-11CE-9641-444553540000} "WinZip" - "WinZip Computing, S.L." - C:\Program Files\WinZip\wzshlstb.dll {06A2568A-CED6-4187-BB20-400B8C02BE5A} "{06A2568A-CED6-4187-BB20-400B8C02BE5A}" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe [Internet Explorer] -----( HKCU\SOFTWARE\Microsoft\Internet Explorer\Extensions )----- "eBay - Der weltweite Online-Marktplatz" - ? - hxxp://rover.ebay.com/rover/1/707-37276-17534-31/4 (HTTP value) -----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )----- ITBar7Height "ITBar7Height" - ? - (File not found | COM-object registry key not found) <binary data> "ITBar7Layout" - ? - (File not found | COM-object registry key not found) -----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )----- {8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_31" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} "Java Plug-in 1.6.0_31" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_31" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\npjpi160_31.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab -----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )----- {48E73304-E1D6-4330-914C-F5F514E3486C} "An OneNote senden" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll "eBay - Der weltweite Online-Marktplatz" - ? - hxxp://rover.ebay.com/rover/1/707-37276-17534-31/4 (HTTP value) {5F7B1267-94A9-47F5-98DB-E99415F33AEC} "In Blog veröffentlichen" - "Microsoft Corporation" - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll {898EA8C8-E7FF-479B-8935-AEC46303B9E5} "Skype Click to Call" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll {FFFDC614-B694-4AE6-AB38-5D6374584B52} "Verknüpfte &OneNote-Notizen" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll -----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar )----- {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} "Norton Toolbar" - "Symantec Corporation" - C:\Program Files\Norton 360\Engine\5.2.2.3\coIEPlg.dll -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )----- {18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper" - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll {72853161-30C5-4D22-B7F9-0BBC1D38A37E} "Groove GFS Browser Helper" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\GROOVEEX.DLL {DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\jp2ssv.dll {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} "Java(tm) Plug-In SSV Helper" - "Sun Microsystems, Inc." - C:\Program Files\Java\jre6\bin\ssv.dll {B4F3A835-0E21-4959-BA22-42B3008E02FF} "Office Document Cache Handler" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} "Search Helper" - "Microsoft Corporation" - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} "Skype Browser Helper" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll {6D53EC84-6AAE-4787-AEEE-F4628F01010C} "Symantec Intrusion Prevention" - "Symantec Corporation" - C:\Program Files\Norton 360\Engine\5.2.2.3\IPS\IPSBHO.DLL {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} "Symantec NCO BHO" - "Symantec Corporation" - C:\Program Files\Norton 360\Engine\5.2.2.3\coIEPlg.dll {9030D464-4C02-4ABF-8ECC-5164760863C6} "Windows Live Anmelde-Hilfsprogramm" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [Logon] -----( %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup )----- "desktop.ini" - ? - C:\Users\Anne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini "Netzmanager.lnk" - "Deutsche Telekom AG" - C:\Program Files\Netzmanager\netzmanager.exe (Shortcut exists | File exists) -----( %AllUsersProfile%\Microsoft\Windows\Start Menu\Programs\Startup )----- "desktop.ini" - ? - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini "phase-6 Reminder.lnk" - "phase-6" - C:\Program Files\phase-6\phase-6\reminder\reminder.exe (Shortcut exists | File exists) -----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )----- "KiesPDLR" - ? - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe -----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )----- "StartupPrograms" - ? - rdpclip (File not found) -----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )----- "APSDaemon" - "Apple Inc." - "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" "BCSSync" - "Microsoft Corporation" - "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices "BrMfcWnd" - "Brother Industries, Ltd." - C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN "CLMLServer" - "CyberLink" - "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe" "ControlCenter3" - "Brother Industries, Ltd." - C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun "IAStorIcon" - "Intel Corporation" - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe "IndexSearch" - "ScanSoft, Inc." - C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe "Logitech G930" - "Logitech(c)" - C:\Program Files\Logitech\G930\G930.exe "Malwarebytes' Anti-Malware" - "Malwarebytes Corporation" - "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray "NUSB3MON" - "Renesas Electronics Corporation" - "C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" "QuickTime Task" - "Apple Inc." - "C:\Program Files\QuickTime\QTTask.exe" -atboottime "SSBkgdUpdate" - "Scansoft, Inc." - "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot "StartCCC" - "Advanced Micro Devices, Inc." - "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun "SunJavaUpdateSched" - "Sun Microsystems, Inc." - "C:\Program Files\Common Files\Java\Java Update\jusched.exe" [Services] -----( HKLM\SYSTEM\CurrentControlSet\Services )----- "Adobe Acrobat Update Service" (AdobeARMservice) - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe "Adobe Flash Player Update Service" (AdobeFlashPlayerUpdateSvc) - "Adobe Systems Incorporated" - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe "FsUsbExService" (FsUsbExService) - "Teruten" - C:\Windows\system32\FsUsbExService.Exe "Intel(R) Rapid Storage Technology" (IAStorDataMgrSvc) - "Intel Corporation" - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe "MBAMService" (MBAMService) - "Malwarebytes Corporation" - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe "Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe "Microsoft SharePoint Workspace Audit Service" (Microsoft SharePoint Workspace Audit Service) - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office14\GROOVE.EXE "Mozilla Maintenance Service" (MozillaMaintenance) - "Mozilla Foundation" - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe "MSCamSvc" (MSCamSvc) - "Microsoft Corporation" - C:\Program Files\Microsoft LifeCam\MSCamS32.exe "Netzmanager Infrastruktur Informationssystem Dienst" (Netzmanager Service) - "Deutsche Telekom AG" - C:\Program Files\Netzmanager\NMInfraIS2\Netzmanager_Service.exe "Norton 360" (N360) - "Symantec Corporation" - C:\Program Files\Norton 360\Engine\5.2.2.3\ccSvcHst.exe "Office Source Engine" (ose) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE "Office Software Protection Platform" (osppsvc) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE "Protexis Licensing V2" (PSI_SVC_2) - "Protexis Inc." - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe "Seagate Service" (FreeAgentGoNext Service) - "Seagate Technology LLC" - C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe "SeaPort" (SeaPort) - "Microsoft Corporation" - C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe "ServiceLayer" (ServiceLayer) - "Nokia." - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe "Skype Updater" (SkypeUpdate) - "Skype Technologies" - C:\Program Files\Skype\Updater\Updater.exe "Sony PC Companion" (Sony PC Companion) - "Avanquest Software" - C:\Program Files\Sony\Sony PC Companion\PCCService.exe ===[ Logfile end ]=========================================[ Logfile end ]=== If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru Code:
ATTFilter aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software Run date: 2012-09-03 19:05:53 ----------------------------- 19:05:53.403 OS Version: Windows 6.1.7601 Service Pack 1 19:05:53.403 Number of processors: 4 586 0x2505 19:05:53.419 ComputerName: ROBERT-PC UserName: Anne 19:06:39.220 Initialize success 19:06:48.066 AVAST engine defs: 12090300 19:07:03.042 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 19:07:03.042 Disk 0 Vendor: WDC_WD15 51.0 Size: 1430799MB BusType: 3 19:07:03.073 Disk 0 MBR read successfully 19:07:03.073 Disk 0 MBR scan 19:07:03.073 Disk 0 unknown MBR code 19:07:03.088 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048 19:07:03.088 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 697938 MB offset 206848 19:07:03.088 Disk 0 Partition - 00 0F Extended LBA 731735 MB offset 1429583872 19:07:03.135 Disk 0 Partition 3 00 12 Compaq diag NTFS 1024 MB offset 2928177152 19:07:03.166 Disk 0 Partition 4 00 07 HPFS/NTFS NTFS 31734 MB offset 1429585920 19:07:03.166 Disk 0 Partition - 00 05 Extended 700000 MB offset 1494577152 19:07:03.213 Disk 0 Partition 5 00 07 HPFS/NTFS NTFS 699999 MB offset 1494579200 19:07:03.213 Disk 0 scanning sectors +2930275120 19:07:03.276 Disk 0 scanning C:\Windows\system32\drivers 19:07:14.055 Service scanning 19:07:36.379 Modules scanning 19:07:49.888 Disk 0 trace - called modules: 19:07:49.904 ntkrnlpa.exe CLASSPNP.SYS disk.sys iaStor.sys halmacpi.dll 19:07:49.920 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x87e22948] 19:07:49.920 3 CLASSPNP.SYS[8bb7c59e] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0x8629f028] 19:07:49.920 Scan finished successfully 19:10:52.006 Disk 0 MBR has been saved successfully to "C:\Users\Anne\Desktop\MBR.dat" 19:10:52.006 The log file has been saved successfully to "C:\Users\Anne\Desktop\aswMBR.txt" |
03.09.2012, 20:44 | #21 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Trojaner ZeroAccess + FakeAlert Wir sollten den MBR fixen, sichere für den Fall der Fälle ALLE wichtigen Daten, auch wenn meistens alles glatt geht. Hinweis: Mach bitte NICHT den MBR-Fix, wenn du noch andere Betriebssysteme wie zB Ubuntu installiert hast, ein MBR-Fix mit Windows-Tools macht ein parallel installiertes (Dualboot) Linux unbootbar. Mach den Fix auch dann nicht, wenn du zB mit TrueCrypt oder anderen Verschlüsselungsprogrammen eine Vollverschlüsselung der Windowspartition bzw. gesamten Festplatte hast Starte nach der Datensicherung aswmbr erneut und klick auf den Button FIXMBR. Hinweis: Bitte den Virenscanner abstellen bevor du aswMBR ausführst, denn v.a. Avira meldet darin oft einen Fehalalrm! Anschließend Windows neu starten und ein neues Log mit aswMBR machen.
__________________ --> Trojaner ZeroAccess + FakeAlert |
04.09.2012, 15:00 | #22 |
| Trojaner ZeroAccess + FakeAlert Hallo, habe den MBR-Fix gemacht, ging sehr schnell, hier das log Code:
ATTFilter aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software Run date: 2012-09-04 15:30:28 ----------------------------- 15:30:28.641 OS Version: Windows 6.1.7601 Service Pack 1 15:30:28.641 Number of processors: 4 586 0x2505 15:30:28.641 ComputerName: ROBERT-PC UserName: Anne 15:30:30.357 Initialize success 15:30:37.331 AVAST engine defs: 12090300 15:31:24.222 Verifying 15:31:34.228 Disk 0 Windows 601 MBR fixed successfully 15:32:52.384 Disk 0 MBR has been saved successfully to "C:\Users\Anne\Desktop\MBR.dat" 15:32:52.384 The log file has been saved successfully to "C:\Users\Anne\Desktop\aswMBR-1.txt" Code:
ATTFilter aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software Run date: 2012-09-04 15:54:29 ----------------------------- 15:54:29.886 OS Version: Windows 6.1.7601 Service Pack 1 15:54:29.886 Number of processors: 4 586 0x2505 15:54:29.886 ComputerName: ROBERT-PC UserName: Anne 15:54:31.587 Initialize success 15:54:36.189 AVAST engine defs: 12090300 15:54:48.076 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 15:54:48.076 Disk 0 Vendor: WDC_WD15 51.0 Size: 1430799MB BusType: 3 15:54:48.107 Disk 0 MBR read successfully 15:54:48.107 Disk 0 MBR scan 15:54:48.154 Disk 0 Windows 7 default MBR code 15:54:48.154 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048 15:54:48.185 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 697938 MB offset 206848 15:54:48.185 Disk 0 Partition - 00 0F Extended LBA 731735 MB offset 1429583872 15:54:48.216 Disk 0 Partition 3 00 12 Compaq diag NTFS 1024 MB offset 2928177152 15:54:48.263 Disk 0 Partition 4 00 07 HPFS/NTFS NTFS 31734 MB offset 1429585920 15:54:48.279 Disk 0 Partition - 00 05 Extended 700000 MB offset 1494577152 15:54:48.294 Disk 0 Partition 5 00 07 HPFS/NTFS NTFS 699999 MB offset 1494579200 15:54:48.310 Disk 0 scanning sectors +2930275120 15:54:48.887 Disk 0 scanning C:\Windows\system32\drivers 15:54:58.762 Service scanning 15:55:17.747 Modules scanning 15:55:26.265 Disk 0 trace - called modules: 15:55:26.296 ntkrnlpa.exe CLASSPNP.SYS disk.sys iaStor.sys halmacpi.dll 15:55:26.296 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x87e222b8] 15:55:26.296 3 CLASSPNP.SYS[8b20459e] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0x862bd028] 15:55:26.296 Scan finished successfully 15:56:05.327 Disk 0 MBR has been saved successfully to "C:\Users\Anne\Desktop\MBR.dat" 15:56:05.327 The log file has been saved successfully to "C:\Users\Anne\Desktop\aswMBR-2.txt" |
04.09.2012, 16:34 | #23 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Trojaner ZeroAccess + FakeAlert Sieht ok aus. Wir sollten fast durch sein. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs. Denk dran beide Tools zu updaten vor dem Scan!!
__________________ Logfiles bitte immer in CODE-Tags posten |
04.09.2012, 22:25 | #24 |
| Trojaner ZeroAccess + FakeAlert Hallo, hier nun die log-Files: MBAM war okay Code:
ATTFilter Malwarebytes Anti-Malware 1.62.0.1300 www.malwarebytes.org Datenbank Version: v2012.09.04.08 Windows 7 Service Pack 1 x86 NTFS Internet Explorer 8.0.7601.17514 Anne :: ROBERT-PC [Administrator] Schutz: Aktiviert 04.09.2012 19:58:13 mbam-log-2012-09-04 (19-58-13).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|T:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 493445 Laufzeit: 1 Stunde(n), 7 Minute(n), 51 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) Code:
ATTFilter SUPERAntiSpyware Scan Log hxxp://www.superantispyware.com Generated 09/04/2012 at 11:18 PM Application Version : 5.5.1012 Core Rules Database Version : 9171 Trace Rules Database Version: 6983 Scan type : Complete Scan Total Scan Time : 01:55:14 Operating System Information Windows 7 Home Premium 32-bit, Service Pack 1 (Build 6.01.7601) UAC On - Administrator Memory items scanned : 1038 Memory threats detected : 0 Registry items scanned : 37047 Registry threats detected : 0 File items scanned : 220504 File threats detected : 879 Adware.Tracking Cookie C:\USERS\ANTON\AppData\Roaming\Microsoft\Windows\Cookies\PQNDFC7P.txt [ Cookie:anton@bs.serving-sys.com/ ] C:\USERS\ANTON\AppData\Roaming\Microsoft\Windows\Cookies\468MLYMP.txt [ Cookie:anton@atdmt.com/ ] C:\USERS\ANTON\AppData\Roaming\Microsoft\Windows\Cookies\OUJ7C900.txt [ Cookie:anton@track.adform.net/ ] C:\USERS\ANTON\AppData\Roaming\Microsoft\Windows\Cookies\D95W74PY.txt [ Cookie:anton@imrworldwide.com/cgi-bin ] C:\USERS\ANTON\AppData\Roaming\Microsoft\Windows\Cookies\LUH03DJH.txt [ Cookie:anton@serving-sys.com/ ] C:\USERS\ANTON\AppData\Roaming\Microsoft\Windows\Cookies\IJLBDRY1.txt [ Cookie:anton@adform.net/ ] C:\USERS\ANTON\AppData\Roaming\Microsoft\Windows\Cookies\Low\anton@interclick[1].txt [ Cookie:anton@interclick.com/ ] C:\USERS\ANTON\Cookies\PQNDFC7P.txt [ Cookie:anton@bs.serving-sys.com/ ] C:\USERS\ANTON\Cookies\468MLYMP.txt [ Cookie:anton@atdmt.com/ ] C:\USERS\ANTON\Cookies\OUJ7C900.txt [ Cookie:anton@track.adform.net/ ] C:\USERS\ANTON\Cookies\D95W74PY.txt [ Cookie:anton@imrworldwide.com/cgi-bin ] C:\USERS\ANTON\Cookies\LUH03DJH.txt [ Cookie:anton@serving-sys.com/ ] C:\USERS\ANTON\Cookies\IJLBDRY1.txt [ Cookie:anton@adform.net/ ] C:\USERS\ROBERT\AppData\Roaming\Microsoft\Windows\Cookies\ZH53JW68.txt [ Cookie:robert@c.atdmt.com/ ] C:\USERS\ROBERT\AppData\Roaming\Microsoft\Windows\Cookies\QV7LOJDV.txt [ Cookie:robert@atdmt.com/ ] C:\USERS\ROBERT\AppData\Roaming\Microsoft\Windows\Cookies\Z9P75B6L.txt [ Cookie:robert@adform.net/ ] C:\USERS\ROBERT\AppData\Roaming\Microsoft\Windows\Cookies\5ALFQZI6.txt [ Cookie:robert@imrworldwide.com/cgi-bin ] C:\USERS\ROBERT\Cookies\ZH53JW68.txt [ Cookie:robert@c.atdmt.com/ ] C:\USERS\ROBERT\Cookies\QV7LOJDV.txt [ Cookie:robert@atdmt.com/ ] C:\USERS\ROBERT\Cookies\Z9P75B6L.txt [ Cookie:robert@adform.net/ ] C:\USERS\ROBERT\Cookies\5ALFQZI6.txt [ Cookie:robert@imrworldwide.com/cgi-bin ] .invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .amazon-adsystem.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .amazon-adsystem.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adxpansion.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.sex2cam.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.sex2cam.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.sex2cam.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] supertracking.com.balao.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] tracking.surveycheck.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .a.revenuemax.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] server.adform.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] count.asnetworks.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .stats.paypal.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .interclick.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] af.2.cqcounter.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .lucidmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] tracking.tchibo.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] media2.tchibo-content.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] media4.tchibo-content.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] accounts.google.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .lfstmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .lfstmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ads.247activemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] eas8.emediate.eu [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] eas8.emediate.eu [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] server.adform.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] media.gan-online.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] newsletter.apodiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .apodiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .apodiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .apodiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .apodiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adform.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad.dyntracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.usenext.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.active-tracking.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.active-tracking.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.active-tracking.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .technoratimedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .technoratimedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .solvemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .solvemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .lfstmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .technoratimedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .discountfan.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .discountfan.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .discountfan.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .unister-adservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .aim4media.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .aim4media.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .c.gigcount.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad.dyntracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .secmedia.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .secmedia.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] fr.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] fr.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] media.gan-online.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] media.gan-online.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .kaspersky.122.2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .loyaltypartner.122.2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .xiti.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .liveperson.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .liveperson.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .downloads.netmediaeurope.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .downloads.netmediaeurope.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .downloads.netmediaeurope.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .netmediaeurope.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] int.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] int.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .tracker.vinsight.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .tracking.mindshare.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] tracking.fahrrad.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www4.smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www4.smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] partners.webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .marriottinternational.122.2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .unister-adservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .yieldmanager.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .ihg2.db.advertising.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .ihg.db.advertising.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.zanox-affiliate.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.burstnet.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .s.clickability.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .s.clickability.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .legolas-media.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .clickfuse.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .realmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .realmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] network.realmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad.dyntracker.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .cheaptickets.122.2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] server.iad.liveperson.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .unister-adservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .clickfuse.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] targeting.revenuemax.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .opodo.122.2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .c1.atdmt.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .microsoftsto.112.2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.zanox-affiliate.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .quartermedia.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .quartermedia.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adviva.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] server.adformdsp.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adformdsp.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adform.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adform.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad4.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] media1.tchibo-content.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .clickfuse.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .dmtracker.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .tribalfusion.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .247realmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] oasc12.247realmedia.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .zanox.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] tomtailor.dyntracker.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .www.mobildiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .mobildiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .mobildiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .mobildiscounter.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad1.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad3.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ww251.smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] ad2.adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .unitymedia.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .unitymedia.de [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] statse.webtrendslive.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\ANNE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MLPIW5JI.DEFAULT\COOKIES.SQLITE ] .zanox.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .himedia.individuad.net [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] user.lucidmedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .mediabrandsww.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] media.gan-online.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .secmedia.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] www.usenext.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .ads.quartermedia.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .ads.quartermedia.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .ads.quartermedia.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .ads.quartermedia.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .ads.quartermedia.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .usenext.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] ad2.adfarm1.adition.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ANTON\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\J9T4P49N.DEFAULT\COOKIES.SQLITE ] .secmedia.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .stats4free.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .stats4free.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .stats4free.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .stats4free.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .stats4free.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .tracking.mindshare.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] eas4.emediate.eu [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] eas4.emediate.eu [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .content.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] studivz.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] zbox.zanox.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] stat.onestat.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] stat.onestat.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adxvalue.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .bs.serving-sys.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] keyword-advertising.web.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] keyword-advertising.web.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] keyword-advertising.web.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] keyword-advertising.web.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] track.webtrekk.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .dyntracker.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .myroitracking.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .clicksor.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] tracking1.aleadpay.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .ads.quartermedia.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .ads.quartermedia.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adform.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] edates.traffective-tracking.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] edates.traffective-tracking.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] edates.traffective-tracking.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] edates.traffective-tracking.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .xiti.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .hht.122.2o7.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .lfstmedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .lfstmedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .unitymedia.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .unitymedia.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] tracking.mlsat02.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] a.visualrevenue.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .ads.quartermedia.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .ads.quartermedia.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] adserver.ip-phone-forum.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adviva.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] ad1.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .opodo.122.2o7.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .tribalfusion.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .at.atwola.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] ad4.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .clickfuse.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] ww251.smartadserver.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] accounts.google.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .zanox.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] ad3.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] statse.webtrendslive.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] ad2.adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\GEORG\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YA8EQ92X.DEFAULT\COOKIES.SQLITE ] C:\USERS\ROBERT\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\ROBERT@INTERCLICK[1].TXT [ /INTERCLICK ] eas.apm.emediate.eu [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .a.revenuemax.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .steelhousemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .steelhousemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adxpose.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] track.webtrekk.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .windfinder.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] eas8.emediate.eu [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .bizrate.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] stat.aldi.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] zbox.zanox.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ads.click-business.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .e-2dj6wjk4sjc5alq.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .e-2dj6wjl4qmcjgeo.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .e-2dj6wgkoshc5shp.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .e-2dj6aekyqid5sco.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad1.emediate.dk [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad1.emediate.dk [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .e-2dj6aek4kkcpkaq.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .amazon-adsystem.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .amazon-adsystem.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] tracking.tchibo.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .e-2dj6wckikjcjodp.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .e-2dj6wjlysgazieq.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .e-2dj6wgkyqndjgkp.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .komtrack.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .komtrack.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .e-2dj6wnkoepd5iaq.stats.esomniture.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .apodiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .track.webgains.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .mobildiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] www.mobildiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .mobildiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .urbia.wwe-media.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .apodiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .apodiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .apodiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .apodiscounter.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] tracking.klicktel.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .hightraffic.hugoboss.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] tracking.klicktel.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .windfinder.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .windfinder.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] www.windfinder.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] www.active-tracking.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] www.active-tracking.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] www.active-tracking.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .dealtime.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] accounts.google.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .stats.paypal.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] media.gan-online.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] keyword-advertising.web.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .server.cpmstar.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad.dyntracker.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .unister-adservices.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .unister-adservices.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .lucidmedia.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ww251.smartadserver.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .xiti.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] www.gpsdiscount.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] www.zanox-affiliate.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .tribalfusion.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] media.gan-online.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad1.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .tracker.vinsight.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad4.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adform.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad2.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adviva.net [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad3.adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .zanox.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .unitymedia.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .unitymedia.de [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\ROBERT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\X89R3O3X.DEFAULT\COOKIES.SQLITE ] Trojan.Agent/Gen-Bancos C:\PROGRAM FILES\CORNELSEN\ENGLISH G 21 E-WORKBOOK A5 A\SMART\CTFPRINTER.DLL Anne |
05.09.2012, 14:07 | #25 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Trojaner ZeroAccess + FakeAlert Sieht ok aus, da wurden nur Cookies gefunden, der angebliche Fund bei Cornelsen ist ein Fehalarm. Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie ) Wegen Cookies und anderer Dinge im Web: Um die Pest von vornherein zu blocken (also TrackingCookies, Werbebanner etc.) müsstest du dir mal sowas wie MVPS Hosts File anschauen => Blocking Unwanted Parasites with a Hosts File - sinnvollerweise solltest du alle 4 Wochen mal bei MVPS nachsehen, ob er eine neue Hosts Datei herausgebracht hat. Ansonsten gibt es noch gute Cookiemanager, Erweiterungen für den Firefox zB wäre da CookieCuller http://filepony.de/download-cookie_culler/ Wenn du aber damit leben kannst, dich bei jeder Browsersession überall neu einzuloggen (zB Facebook, Ebay, GMX, oder auch Trojaner-Board) dann stell den Browser einfach so ein, dass einfach alles beim Beenden des Browser inkl. Cookies gelöscht wird. Ich halte es so, dass ich zum "wilden Surfen" den Opera-Browser oder Chromium unter meinem Linux verwende. Mein Hauptbrowser (Firefox) speichert nur die Cookies von den Sites die ich auch will, alles andere lehne ich manuell ab (der FF fragt mich immer) - die anderen Browser nehmen alles an Cookies zwar an, aber spätestens beim nächsten Start von Opera oder Chromium sind keine Cookies mehr da. Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
__________________ Logfiles bitte immer in CODE-Tags posten |
05.09.2012, 16:46 | #26 |
| Trojaner ZeroAccess + FakeAlert Hallo, danke für deine Hilfe und die Tipps bzgl. der Cookies. Das diese nicht keine direkten Schädlinge sind, war klar, aber dieser "Fehlalarm"-Trojaner war mir suspekt. Sonst läuft mein Rechner gut, aber das tat er ja die ganze Zeit, wenn Norton 360 mir nichts gemeldet hätte, hätte ich gar nichts vom Befall gemerkt. Also nochmals vielen Dank und ich werde mich jetzt noch mehr an die Regeln zum sicheren Surfen halten. Denn soweit ich hier im Board verstanden habe, gibt nicht "den" Virenscanner/Firewall/Schutz, der einen komplett schützen kann oder hast du einen Tipp für mich? Ist Norton 360 okay? Anne Kann ich den defogger wieder re-enablen? |
06.09.2012, 10:47 | #27 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Trojaner ZeroAccess + FakeAlert defogger ist nur relevant wenn du virtuelle optische Laufwerke eingerichtet hast! Der defogger deaktiviert die nämlich! Zitat:
Welchen du einsetzt ist doch schon fast völlig banane! Also ich weiß nicht wie oft ich das schon gepostet hab, das steht hier auch schon zuhauf in vielen Diskussionen - es ist eigentlich immer wieder das gleiche Fazit => Es gibt nicht den besten Virenscanner! Die Frage - welcher Virenscanner oder ob der installierte reicht - taucht ständig auf. Der Virenscanner - egal welcher - kann und wird niemals 100% Schutz bieten können. Neue/unbekannte Schädlinge können immer durch die Lappen gehen. Geld ausgeben muss man nicht für einen Scanner, sowas wie Avast oder Microsoft Security Essentials sind für die privaten Gebrauch völlig ausreichend. Abgesehen davon nutzen verschiedene Virenscanner unterschiedliche Signaturen und Techniken, das führt dazu, dass zB Scanner1 Schädling X entdeckt, aber Schädling Y übersieht. Scanner2 erkennt Schädling Y, dafür aber Schädling X nicht... Wichtiger ist, dass du dich an Regeln hälst. Der beste Virenscanner bringt nichts, wenn du dich falsch verhälst und fahrlässig/unvorsichtig bist. Airbag und Sicherheitsgurt im Auto sind ja auch keine Gründe dafür auf die Verkehrsregeln zu pfeifen. Halte Dich am besten grob an diese Regeln:
Alles noch genauer erklärt steht hier => Kompromittierung unvermeidbar?
__________________ Logfiles bitte immer in CODE-Tags posten |
06.09.2012, 17:02 | #28 |
| Trojaner ZeroAccess + FakeAlert Nochmal vielen Dank für deine Hilfe. Anne |
06.09.2012, 20:13 | #29 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Trojaner ZeroAccess + FakeAlert Dann wären wir durch! Die Programme, die hier zum Einsatz kamen, können alle wieder runter. Mit Hilfe von OTL kannst du auch viele Tools entfernen: Starte bitte OTL und klicke auf Bereinigung. Dies wird die meisten Tools entfernen, die wir zur Bereinigung benötigt haben. Sollte etwas bestehen bleiben, bitte mit Rechtsklick --> Löschen entfernen. Malwarebytes zu behalten ist zu empfehlen. Kannst ja 1x im Monat damit einen Vollscan machen, aber immer vorher ans Update denken. Bitte abschließend die Updates prüfen, unten mein Leitfaden dazu. Um in Zukunft die Aktualität der installierten Programme besser im Überblick zu halten, kannst du zB Secunia PSI verwenden. Für noch mehr Sicherheit solltest Du nach der beseitigten Infektion auch möglichst alle Passwörter ändern. Microsoftupdate Windows XP: Besuch mit dem IE die MS-Updateseite und lass Dir alle wichtigen Updates installieren. Windows Vista/7: Anleitung Windows-Update PDF-Reader aktualisieren Ein veralteter AdobeReader stellt ein großes Sicherheitsrisiko dar. Du solltest daher besser alte Versionen vom AdobeReader über Systemsteuerung => Software bzw. Programme und Funktionen deinstallieren, indem Du dort auf "Adobe Reader x.0" klickst und das Programm entfernst. (falls du AdobeReader installiert hast) Ich empfehle einen alternativen PDF-Reader wie PDF Xchange Viewer, SumatraPDF oder Foxit PDF Reader, die sind sehr viel schlanker und flotter als der AdobeReader. Bitte überprüf bei der Gelegenheit auch die Aktualität des Flashplayers: Prüfen => Adobe - Flash Player Downloadlinks => Adobe Flash Player Distribution | Adobe Natürlich auch darauf achten, dass andere installierte Browser wie zB Firefox, Opera oder Chrome aktuell sind. Java-Update Veraltete Java-Installationen sind ein Sicherheitsrisiko, daher solltest Du die alten Versionen löschen (falls vorhanden, am besten mit JavaRa) und auf die neuste aktualisieren. Beende dazu alle Programme (v.a. die Browser), klick danach auf Start, Systemsteuerung, Software und deinstalliere darüber alle aufgelisteten Java-Versionen. Lad Dir danach von hier das aktuelle Java SE Runtime Environment (JRE) herunter und installiere es.
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Trojaner ZeroAccess + FakeAlert |
bitdefender, blockiert, defender, diverse, e-mail, fakealert, fehler, gen, gesucht, internet, logfile, löschen, mails, mbam, meldungen, nichts, norton, norton 360, quarantäne, rechner, symantec, tool, trojaner, win, win7, zeroaccess |