|
Log-Analyse und Auswertung: Wie entferne ich den Trojaner PUP.LoadTubes?Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
21.10.2012, 11:32 | #16 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Wie entferne ich den Trojaner PUP.LoadTubes? Beende alle evtl. geöffneten Programme, auch Virenscanner deaktivieren (!), starte OTL und kopiere folgenden Text in die "Custom Scan/Fixes" Box (unten in OTL): (das ":OTL" muss mitkopiert werden!!!) Code:
ATTFilter :OTL FF - prefs.js..browser.search.defaultenginename: "foxsearch" FF - prefs.js..browser.search.order.1: "foxsearch" FF - prefs.js..browser.search.selectedEngine: "foxsearch" FF - prefs.js..extensions.enabledItems: gutscheinmieze@synatix-gmbh.de:1.03 FF - prefs.js..keyword.URL: "http://www.finduny.com?client=mozilla-firefox&cd=UTF-8&search=1&q=" FF - user.js - File not found [2010.10.03 21:59:10 | 000,000,143 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\foxsearch.src O3 - HKLM\..\Toolbar: (Gutscheinmieze) - {DFEFCDEE-CF1A-4FC8-88AD-48514E463B27} - C:\Users\Naddel\AppData\Roaming\Gutscheinmieze\toolbar.dll (Synatix GmbH) O3 - HKU\S-1-5-21-229999014-1990505316-589686378-1000\..\Toolbar\WebBrowser: (Gutscheinmieze) - {DFEFCDEE-CF1A-4FC8-88AD-48514E463B27} - C:\Users\Naddel\AppData\Roaming\Gutscheinmieze\toolbar.dll (Synatix GmbH) O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found. O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. O3 - HKU\S-1-5-21-229999014-1990505316-589686378-1000\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. @Alternate Data Stream - 153 bytes -> C:\ProgramData\Temp:4D066AD2 @Alternate Data Stream - 146 bytes -> C:\ProgramData\Temp:AB689DEA @Alternate Data Stream - 144 bytes -> C:\ProgramData\Temp:5D7E5A8F @Alternate Data Stream - 141 bytes -> C:\ProgramData\Temp:BB24555F @Alternate Data Stream - 133 bytes -> C:\ProgramData\Temp:93DE1838 @Alternate Data Stream - 131 bytes -> C:\ProgramData\Temp:E3C56885 @Alternate Data Stream - 129 bytes -> C:\ProgramData\Temp:1D32EC29 @Alternate Data Stream - 127 bytes -> C:\ProgramData\Temp:0B9176C0 @Alternate Data Stream - 124 bytes -> C:\ProgramData\Temp:4CF61E54 @Alternate Data Stream - 122 bytes -> C:\ProgramData\Temp:ABE89FFE :Files C:\Users\Naddel\Downloads\registrybooster(1).exe C:\ProgramData\FullRemove.exe C:\Users\Naddel\AppData\Roaming\.# C:\Users\Naddel\AppData\Roaming\Gutscheinmieze ipconfig /flushdns /c :Commands [purity] [emptytemp] [resethosts] Das Logfile müsste geöffnet werden, wenn Du nach dem Fixen auf ok klickst, poste das bitte. Evtl. wird der Rechner neu gestartet. Die mit diesem Script gefixten Einträge, Dateien und Ordner werden zur Sicherheit nicht vollständig gelöscht, es wird eine Sicherheitskopie auf der Systempartition im Ordner "_OTL" erstellt. Hinweis: Das obige Script ist nur für diesen einen User in dieser Situtation erstellt worden. Es ist auf keinen anderen Rechner portierbar und darf nicht anderweitig verwandt werden, da es das System nachhaltig schädigen kann!
__________________ Logfiles bitte immer in CODE-Tags posten |
21.10.2012, 17:42 | #17 |
| Wie entferne ich den Trojaner PUP.LoadTubes? Hallo cosinus,
__________________hier ist wieder Mal ein Logfile: Code:
ATTFilter All processes killed ========== OTL ========== Prefs.js: "foxsearch" removed from browser.search.defaultenginename Prefs.js: "foxsearch" removed from browser.search.order.1 Prefs.js: "foxsearch" removed from browser.search.selectedEngine Prefs.js: gutscheinmieze@synatix-gmbh.de:1.03 removed from extensions.enabledItems Prefs.js: "hxxp://www.finduny.com?client=mozilla-firefox&cd=UTF-8&search=1&q=" removed from keyword.URL C:\Program Files (x86)\Mozilla Firefox\searchplugins\foxsearch.src moved successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{DFEFCDEE-CF1A-4FC8-88AD-48514E463B27} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DFEFCDEE-CF1A-4FC8-88AD-48514E463B27}\ deleted successfully. C:\Users\Naddel\AppData\Roaming\Gutscheinmieze\toolbar.dll moved successfully. Registry value HKEY_USERS\S-1-5-21-229999014-1990505316-589686378-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{DFEFCDEE-CF1A-4FC8-88AD-48514E463B27} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DFEFCDEE-CF1A-4FC8-88AD-48514E463B27}\ not found. File C:\Users\Naddel\AppData\Roaming\Gutscheinmieze\toolbar.dll not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found. 64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully. Registry value HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ not found. Registry value HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ not found. Registry value HKEY_USERS\S-1-5-21-229999014-1990505316-589686378-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ not found. ADS C:\ProgramData\Temp:4D066AD2 deleted successfully. ADS C:\ProgramData\Temp:AB689DEA deleted successfully. ADS C:\ProgramData\Temp:5D7E5A8F deleted successfully. ADS C:\ProgramData\Temp:BB24555F deleted successfully. ADS C:\ProgramData\Temp:93DE1838 deleted successfully. ADS C:\ProgramData\Temp:E3C56885 deleted successfully. ADS C:\ProgramData\Temp:1D32EC29 deleted successfully. ADS C:\ProgramData\Temp:0B9176C0 deleted successfully. ADS C:\ProgramData\Temp:4CF61E54 deleted successfully. ADS C:\ProgramData\Temp:ABE89FFE deleted successfully. ========== FILES ========== C:\Users\Naddel\Downloads\registrybooster(1).exe moved successfully. C:\ProgramData\FullRemove.exe moved successfully. C:\Users\Naddel\AppData\Roaming\.# folder moved successfully. C:\Users\Naddel\AppData\Roaming\Gutscheinmieze folder moved successfully. < ipconfig /flushdns /c > Windows-IP-Konfiguration Der DNS-Aufl”sungscache wurde geleert. C:\Users\Naddel\Desktop\cmd.bat deleted successfully. C:\Users\Naddel\Desktop\cmd.txt deleted successfully. ========== COMMANDS ========== [EMPTYTEMP] User: Administrator User: Administrator.Naddel-PC ->Temp folder emptied: 1598770 bytes ->Temporary Internet Files folder emptied: 2311611 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 44076148 bytes ->Flash cache emptied: 880 bytes User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Naddel ->Temp folder emptied: 521889490 bytes ->Temporary Internet Files folder emptied: 1242768980 bytes ->Java cache emptied: 1 bytes ->FireFox cache emptied: 1153612016 bytes ->Google Chrome cache emptied: 819568 bytes ->Flash cache emptied: 213352 bytes User: Public %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 450243821 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 67832 bytes RecycleBin emptied: 111912581 bytes Total Files Cleaned = 3.366,00 mb C:\Windows\System32\drivers\etc\Hosts moved successfully. HOSTS file reset successfully OTL by OldTimer - Version 3.2.69.0 log created on 10212012_181946 Files\Folders moved on Reboot... C:\Users\Naddel\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. PendingFileRenameOperations files... Registry entries deleted on Reboot... Nadine |
21.10.2012, 20:30 | #18 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Wie entferne ich den Trojaner PUP.LoadTubes? Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten Anleitung und Downloadlink hier => http://www.trojaner-board.de/82358-t...entfernen.html
__________________Hinweis: Bitte den Virenscanner abstellen bevor du den TDSS-Killer ausführst, denn v.a. Avira meldet im TDSS-Tool oft einen Fehalalrm! Das Tool so einstellen wie unten im Bild angegeben - klick auf change parameters und setze die Haken wie im folgenden Screenshot abgebildet, Dann auf Start Scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten. Wenn du das Log nicht findest oder den Inhalt kopieren und in dein Posting übertragen kannst, dann schau bitte direkt auf deiner Windows-Systempartition ( meistens Laufwerk C: ) nach, da speichert der TDSS-Killer seine Logs. Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten!
__________________ |
22.10.2012, 21:08 | #19 |
| Wie entferne ich den Trojaner PUP.LoadTubes? Hallo cosinus, habe alles brav ausgeführt *zwinker* Das Log. Es wurden zwei Threats gefunden: Code:
ATTFilter 21:59:46.0493 4904 TDSS rootkit removing tool 2.8.13.0 Oct 12 2012 17:26:47 21:59:46.0758 4904 ============================================================ 21:59:46.0758 4904 Current date / time: 2012/10/22 21:59:46.0758 21:59:46.0758 4904 SystemInfo: 21:59:46.0758 4904 21:59:46.0758 4904 OS Version: 6.1.7601 ServicePack: 1.0 21:59:46.0758 4904 Product type: Workstation 21:59:46.0758 4904 ComputerName: NADDEL-PC 21:59:46.0758 4904 UserName: Naddel 21:59:46.0758 4904 Windows directory: C:\Windows 21:59:46.0758 4904 System windows directory: C:\Windows 21:59:46.0758 4904 Running under WOW64 21:59:46.0758 4904 Processor architecture: Intel x64 21:59:46.0758 4904 Number of processors: 2 21:59:46.0758 4904 Page size: 0x1000 21:59:46.0758 4904 Boot type: Normal boot 21:59:46.0758 4904 ============================================================ 21:59:49.0535 4904 Drive \Device\Harddisk0\DR0 - Size: 0x5D27216000 (372.61 Gb), SectorSize: 0x200, Cylinders: 0xBE01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 21:59:49.0535 4904 ============================================================ 21:59:49.0535 4904 \Device\Harddisk0\DR0: 21:59:49.0535 4904 MBR partitions: 21:59:49.0535 4904 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1801F5F, BlocksNum 0x32FCD 21:59:49.0535 4904 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1834F2C, BlocksNum 0x2D103984 21:59:49.0535 4904 ============================================================ 21:59:49.0551 4904 C: <-> \Device\Harddisk0\DR0\Partition2 21:59:49.0551 4904 ============================================================ 21:59:49.0551 4904 Initialize success 21:59:49.0551 4904 ============================================================ 22:01:23.0697 2920 ============================================================ 22:01:23.0697 2920 Scan started 22:01:23.0697 2920 Mode: Manual; SigCheck; TDLFS; 22:01:23.0697 2920 ============================================================ 22:01:25.0023 2920 ================ Scan system memory ======================== 22:01:25.0023 2920 System memory - ok 22:01:25.0038 2920 ================ Scan services ============================= 22:01:25.0272 2920 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 22:01:25.0382 2920 1394ohci - ok 22:01:25.0460 2920 [ ADC420616C501B45D26C0FD3EF1E54E4 ] ACDaemon C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe 22:01:25.0491 2920 ACDaemon - ok 22:01:25.0569 2920 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys 22:01:25.0600 2920 ACPI - ok 22:01:25.0631 2920 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 22:01:25.0740 2920 AcpiPmi - ok 22:01:25.0818 2920 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 22:01:25.0865 2920 adp94xx - ok 22:01:25.0896 2920 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 22:01:25.0928 2920 adpahci - ok 22:01:25.0943 2920 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 22:01:25.0959 2920 adpu320 - ok 22:01:25.0990 2920 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 22:01:26.0115 2920 AeLookupSvc - ok 22:01:26.0240 2920 [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD C:\Windows\system32\drivers\afd.sys 22:01:26.0318 2920 AFD - ok 22:01:26.0349 2920 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys 22:01:26.0380 2920 agp440 - ok 22:01:26.0396 2920 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe 22:01:26.0489 2920 ALG - ok 22:01:26.0520 2920 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys 22:01:26.0536 2920 aliide - ok 22:01:26.0567 2920 [ BCC32BF5EBB5DFD4380FA053D3651949 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe 22:01:26.0661 2920 AMD External Events Utility - ok 22:01:26.0692 2920 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys 22:01:26.0723 2920 amdide - ok 22:01:26.0754 2920 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 22:01:26.0848 2920 AmdK8 - ok 22:01:26.0848 2920 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 22:01:26.0895 2920 AmdPPM - ok 22:01:26.0942 2920 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys 22:01:26.0957 2920 amdsata - ok 22:01:27.0004 2920 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 22:01:27.0020 2920 amdsbs - ok 22:01:27.0035 2920 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys 22:01:27.0051 2920 amdxata - ok 22:01:27.0316 2920 [ 98A8B7D168D035FEFDEFA18F759115F6 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe 22:01:27.0347 2920 AntiVirSchedulerService - ok 22:01:27.0425 2920 [ AAACAE485AE81D0A449FBC754880C791 ] AntiVirService C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe 22:01:27.0441 2920 AntiVirService - ok 22:01:27.0488 2920 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys 22:01:27.0690 2920 AppID - ok 22:01:27.0706 2920 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll 22:01:27.0784 2920 AppIDSvc - ok 22:01:27.0815 2920 [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo C:\Windows\System32\appinfo.dll 22:01:27.0893 2920 Appinfo - ok 22:01:27.0909 2920 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys 22:01:27.0924 2920 arc - ok 22:01:27.0956 2920 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 22:01:27.0971 2920 arcsas - ok 22:01:27.0987 2920 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 22:01:28.0065 2920 AsyncMac - ok 22:01:28.0143 2920 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys 22:01:28.0158 2920 atapi - ok 22:01:28.0346 2920 [ 88A02B6046356E6BE4E387FAA7451439 ] athr C:\Windows\system32\DRIVERS\athrx.sys 22:01:28.0502 2920 athr - ok 22:01:28.0860 2920 [ A29087680A1C3B049E3C05438E8FF2B8 ] atikmdag C:\Windows\system32\DRIVERS\atikmdag.sys 22:01:29.0094 2920 atikmdag - ok 22:01:29.0157 2920 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 22:01:29.0235 2920 AudioEndpointBuilder - ok 22:01:29.0266 2920 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll 22:01:29.0313 2920 AudioSrv - ok 22:01:29.0344 2920 [ 25B63A3C24A5E0223A35DE2F0D9E0FAF ] avgntflt C:\Windows\system32\DRIVERS\avgntflt.sys 22:01:29.0360 2920 avgntflt - ok 22:01:29.0406 2920 [ A83691240C1568E6A3EAA5C86D9F8AE3 ] avipbb C:\Windows\system32\DRIVERS\avipbb.sys 22:01:29.0422 2920 avipbb - ok 22:01:29.0438 2920 [ CD0E732347BF09717E0BDDC0C66699AB ] avkmgr C:\Windows\system32\DRIVERS\avkmgr.sys 22:01:29.0453 2920 avkmgr - ok 22:01:29.0484 2920 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll 22:01:29.0578 2920 AxInstSV - ok 22:01:29.0625 2920 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys 22:01:29.0687 2920 b06bdrv - ok 22:01:29.0703 2920 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 22:01:29.0734 2920 b57nd60a - ok 22:01:29.0968 2920 [ B44879610F2DC4A046B14BEFA3AE72DE ] BCM43XX C:\Windows\system32\DRIVERS\bcmwl664.sys 22:01:30.0093 2920 BCM43XX - ok 22:01:30.0108 2920 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll 22:01:30.0171 2920 BDESVC - ok 22:01:30.0186 2920 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys 22:01:30.0296 2920 Beep - ok 22:01:30.0342 2920 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll 22:01:30.0420 2920 BFE - ok 22:01:30.0452 2920 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll 22:01:30.0545 2920 BITS - ok 22:01:30.0576 2920 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 22:01:30.0608 2920 blbdrive - ok 22:01:30.0686 2920 [ CC4E72A0FA7F62175C8BB42BA2CAA3D5 ] Bonjour Service C:\Program Files (x86)\Bonjour\mDNSResponder.exe 22:01:30.0732 2920 Bonjour Service ( UnsignedFile.Multi.Generic ) - warning 22:01:30.0732 2920 Bonjour Service - detected UnsignedFile.Multi.Generic (1) 22:01:30.0764 2920 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 22:01:30.0810 2920 bowser - ok 22:01:30.0826 2920 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 22:01:30.0935 2920 BrFiltLo - ok 22:01:30.0951 2920 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 22:01:30.0966 2920 BrFiltUp - ok 22:01:31.0013 2920 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll 22:01:31.0091 2920 Browser - ok 22:01:31.0122 2920 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys 22:01:31.0169 2920 Brserid - ok 22:01:31.0200 2920 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 22:01:31.0232 2920 BrSerWdm - ok 22:01:31.0247 2920 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 22:01:31.0325 2920 BrUsbMdm - ok 22:01:31.0341 2920 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 22:01:31.0372 2920 BrUsbSer - ok 22:01:31.0388 2920 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 22:01:31.0403 2920 BTHMODEM - ok 22:01:31.0466 2920 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll 22:01:31.0544 2920 bthserv - ok 22:01:31.0575 2920 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 22:01:31.0637 2920 cdfs - ok 22:01:31.0668 2920 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\drivers\cdrom.sys 22:01:31.0700 2920 cdrom - ok 22:01:31.0746 2920 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll 22:01:31.0793 2920 CertPropSvc - ok 22:01:31.0824 2920 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys 22:01:31.0871 2920 circlass - ok 22:01:31.0918 2920 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys 22:01:31.0934 2920 CLFS - ok 22:01:32.0012 2920 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 22:01:32.0043 2920 clr_optimization_v2.0.50727_32 - ok 22:01:32.0105 2920 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 22:01:32.0121 2920 clr_optimization_v2.0.50727_64 - ok 22:01:32.0339 2920 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 22:01:32.0417 2920 clr_optimization_v4.0.30319_32 - ok 22:01:32.0464 2920 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 22:01:32.0480 2920 clr_optimization_v4.0.30319_64 - ok 22:01:32.0542 2920 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 22:01:32.0589 2920 CmBatt - ok 22:01:32.0604 2920 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys 22:01:32.0636 2920 cmdide - ok 22:01:32.0682 2920 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys 22:01:32.0729 2920 CNG - ok 22:01:32.0776 2920 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 22:01:32.0792 2920 Compbatt - ok 22:01:32.0823 2920 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 22:01:32.0870 2920 CompositeBus - ok 22:01:32.0885 2920 COMSysApp - ok 22:01:32.0916 2920 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 22:01:32.0948 2920 crcdisk - ok 22:01:32.0979 2920 [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc C:\Windows\system32\cryptsvc.dll 22:01:33.0057 2920 CryptSvc - ok 22:01:33.0119 2920 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll 22:01:33.0213 2920 DcomLaunch - ok 22:01:33.0291 2920 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll 22:01:33.0384 2920 defragsvc - ok 22:01:33.0431 2920 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys 22:01:33.0509 2920 DfsC - ok 22:01:33.0572 2920 [ 867FA8B9E9E3078F68C4089904BBF4B0 ] dgderdrv C:\Windows\system32\drivers\dgderdrv.sys 22:01:33.0587 2920 dgderdrv - ok 22:01:33.0650 2920 [ 105373D52E71D2D1355AD3ACD18259C3 ] dg_ssudbus C:\Windows\system32\DRIVERS\ssudbus.sys 22:01:33.0665 2920 dg_ssudbus - ok 22:01:33.0712 2920 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll 22:01:33.0790 2920 Dhcp - ok 22:01:33.0806 2920 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys 22:01:33.0884 2920 discache - ok 22:01:33.0899 2920 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys 22:01:33.0915 2920 Disk - ok 22:01:33.0993 2920 [ D5BCB77BE83CF99F508943945D46343D ] DKbFltr C:\Windows\SysWOW64\Drivers\DKbFltr.sys 22:01:34.0008 2920 DKbFltr - ok 22:01:34.0102 2920 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll 22:01:34.0149 2920 Dnscache - ok 22:01:34.0196 2920 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll 22:01:34.0274 2920 dot3svc - ok 22:01:34.0320 2920 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll 22:01:34.0383 2920 DPS - ok 22:01:34.0414 2920 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 22:01:34.0445 2920 drmkaud - ok 22:01:34.0632 2920 [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 22:01:34.0679 2920 DXGKrnl - ok 22:01:34.0726 2920 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll 22:01:34.0788 2920 EapHost - ok 22:01:35.0054 2920 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys 22:01:35.0241 2920 ebdrv - ok 22:01:35.0303 2920 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe 22:01:35.0366 2920 EFS - ok 22:01:35.0475 2920 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 22:01:35.0553 2920 ehRecvr - ok 22:01:35.0584 2920 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe 22:01:35.0646 2920 ehSched - ok 22:01:35.0693 2920 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 22:01:35.0724 2920 elxstor - ok 22:01:35.0865 2920 [ 019137B4C7EA2DD2255D79A571FCC6C7 ] ePowerSvc C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe 22:01:35.0912 2920 ePowerSvc - ok 22:01:35.0958 2920 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys 22:01:36.0005 2920 ErrDev - ok 22:01:36.0083 2920 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll 22:01:36.0146 2920 EventSystem - ok 22:01:36.0161 2920 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys 22:01:36.0224 2920 exfat - ok 22:01:36.0255 2920 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys 22:01:36.0333 2920 fastfat - ok 22:01:36.0411 2920 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe 22:01:36.0489 2920 Fax - ok 22:01:36.0504 2920 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys 22:01:36.0536 2920 fdc - ok 22:01:36.0567 2920 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll 22:01:36.0614 2920 fdPHost - ok 22:01:36.0629 2920 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll 22:01:36.0676 2920 FDResPub - ok 22:01:36.0707 2920 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 22:01:36.0723 2920 FileInfo - ok 22:01:36.0738 2920 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 22:01:36.0816 2920 Filetrace - ok 22:01:36.0832 2920 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 22:01:36.0863 2920 flpydisk - ok 22:01:36.0894 2920 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 22:01:36.0910 2920 FltMgr - ok 22:01:36.0972 2920 [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache C:\Windows\system32\FntCache.dll 22:01:37.0050 2920 FontCache - ok 22:01:37.0113 2920 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 22:01:37.0128 2920 FontCache3.0.0.0 - ok 22:01:37.0191 2920 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 22:01:37.0206 2920 FsDepends - ok 22:01:37.0238 2920 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 22:01:37.0253 2920 Fs_Rec - ok 22:01:37.0300 2920 [ 1F7B25B858FA27015169FE95E54108ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 22:01:37.0316 2920 fvevol - ok 22:01:37.0347 2920 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 22:01:37.0362 2920 gagp30kx - ok 22:01:37.0394 2920 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll 22:01:37.0503 2920 gpsvc - ok 22:01:37.0581 2920 [ 816FD5A6F3C2F3D600900096632FC60E ] Greg_Service C:\Program Files (x86)\Acer\Registration\GregHSRW.exe 22:01:37.0612 2920 Greg_Service - ok 22:01:37.0659 2920 [ F02A533F517EB38333CB12A9E8963773 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 22:01:37.0674 2920 gupdate - ok 22:01:37.0690 2920 [ F02A533F517EB38333CB12A9E8963773 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 22:01:37.0706 2920 gupdatem - ok 22:01:37.0721 2920 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 22:01:37.0784 2920 hcw85cir - ok 22:01:37.0830 2920 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 22:01:37.0893 2920 HdAudAddService - ok 22:01:37.0924 2920 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys 22:01:37.0955 2920 HDAudBus - ok 22:01:37.0986 2920 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 22:01:38.0033 2920 HidBatt - ok 22:01:38.0049 2920 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 22:01:38.0080 2920 HidBth - ok 22:01:38.0096 2920 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 22:01:38.0142 2920 HidIr - ok 22:01:38.0189 2920 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll 22:01:38.0283 2920 hidserv - ok 22:01:38.0314 2920 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\drivers\hidusb.sys 22:01:38.0330 2920 HidUsb - ok 22:01:38.0361 2920 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll 22:01:38.0439 2920 hkmsvc - ok 22:01:38.0486 2920 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll 22:01:38.0548 2920 HomeGroupListener - ok 22:01:38.0564 2920 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 22:01:38.0595 2920 HomeGroupProvider - ok 22:01:38.0626 2920 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 22:01:38.0657 2920 HpSAMD - ok 22:01:38.0688 2920 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys 22:01:38.0766 2920 HTTP - ok 22:01:38.0766 2920 hwdatacard - ok 22:01:38.0798 2920 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 22:01:38.0813 2920 hwpolicy - ok 22:01:38.0860 2920 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 22:01:38.0891 2920 i8042prt - ok 22:01:38.0922 2920 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 22:01:38.0954 2920 iaStorV - ok 22:01:39.0000 2920 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe 22:01:39.0016 2920 IDriverT ( UnsignedFile.Multi.Generic ) - warning 22:01:39.0016 2920 IDriverT - detected UnsignedFile.Multi.Generic (1) 22:01:39.0078 2920 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 22:01:39.0141 2920 idsvc - ok 22:01:39.0297 2920 [ A87261EF1546325B559374F5689CF5BC ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys 22:01:39.0515 2920 igfx - ok 22:01:39.0531 2920 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 22:01:39.0546 2920 iirsp - ok 22:01:39.0593 2920 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll 22:01:39.0687 2920 IKEEXT - ok 22:01:39.0780 2920 [ 0C3CF4B3BAE28E121A1689E3538F8712 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 22:01:39.0827 2920 IntcAzAudAddService - ok 22:01:39.0858 2920 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys 22:01:39.0874 2920 intelide - ok 22:01:39.0905 2920 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 22:01:39.0936 2920 intelppm - ok 22:01:39.0952 2920 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll 22:01:40.0014 2920 IPBusEnum - ok 22:01:40.0046 2920 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 22:01:40.0108 2920 IpFilterDriver - ok 22:01:40.0155 2920 [ A34A587FFFD45FA649FBA6D03784D257 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 22:01:40.0217 2920 iphlpsvc - ok 22:01:40.0280 2920 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 22:01:40.0326 2920 IPMIDRV - ok 22:01:40.0373 2920 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys 22:01:40.0420 2920 IPNAT - ok 22:01:40.0436 2920 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys 22:01:40.0514 2920 IRENUM - ok 22:01:40.0545 2920 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys 22:01:40.0576 2920 isapnp - ok 22:01:40.0592 2920 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 22:01:40.0623 2920 iScsiPrt - ok 22:01:40.0654 2920 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\drivers\kbdclass.sys 22:01:40.0670 2920 kbdclass - ok 22:01:40.0701 2920 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys 22:01:40.0716 2920 kbdhid - ok 22:01:40.0732 2920 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe 22:01:40.0748 2920 KeyIso - ok 22:01:40.0794 2920 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 22:01:40.0810 2920 KSecDD - ok 22:01:40.0857 2920 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 22:01:40.0888 2920 KSecPkg - ok 22:01:40.0919 2920 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 22:01:40.0966 2920 ksthunk - ok 22:01:41.0013 2920 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll 22:01:41.0075 2920 KtmRm - ok 22:01:41.0106 2920 [ 2377EC4CC3E356655B996F39B43486B6 ] L1C C:\Windows\system32\DRIVERS\L1C62x64.sys 22:01:41.0138 2920 L1C - ok 22:01:41.0184 2920 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll 22:01:41.0231 2920 LanmanServer - ok 22:01:41.0294 2920 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 22:01:41.0325 2920 LanmanWorkstation - ok 22:01:41.0387 2920 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 22:01:41.0450 2920 lltdio - ok 22:01:41.0481 2920 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll 22:01:41.0543 2920 lltdsvc - ok 22:01:41.0574 2920 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll 22:01:41.0621 2920 lmhosts - ok 22:01:41.0637 2920 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 22:01:41.0652 2920 LSI_FC - ok 22:01:41.0684 2920 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 22:01:41.0699 2920 LSI_SAS - ok 22:01:41.0715 2920 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 22:01:41.0730 2920 LSI_SAS2 - ok 22:01:41.0746 2920 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 22:01:41.0762 2920 LSI_SCSI - ok 22:01:41.0777 2920 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys 22:01:41.0840 2920 luafv - ok 22:01:41.0871 2920 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 22:01:41.0918 2920 Mcx2Svc - ok 22:01:41.0933 2920 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 22:01:41.0949 2920 megasas - ok 22:01:41.0964 2920 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 22:01:41.0980 2920 MegaSR - ok 22:01:42.0058 2920 [ 123271BD5237AB991DC5C21FDF8835EB ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe 22:01:42.0089 2920 Microsoft Office Groove Audit Service - ok 22:01:42.0120 2920 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll 22:01:42.0214 2920 MMCSS - ok 22:01:42.0245 2920 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys 22:01:42.0292 2920 Modem - ok 22:01:42.0308 2920 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys 22:01:42.0323 2920 monitor - ok 22:01:42.0354 2920 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\drivers\mouclass.sys 22:01:42.0370 2920 mouclass - ok 22:01:42.0370 2920 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 22:01:42.0401 2920 mouhid - ok 22:01:42.0432 2920 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 22:01:42.0448 2920 mountmgr - ok 22:01:42.0495 2920 [ 4D7F2682D29B92A6251B17957AA0B985 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 22:01:42.0510 2920 MozillaMaintenance - ok 22:01:42.0557 2920 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys 22:01:42.0573 2920 mpio - ok 22:01:42.0604 2920 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 22:01:42.0666 2920 mpsdrv - ok 22:01:42.0713 2920 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll 22:01:42.0822 2920 MpsSvc - ok 22:01:42.0854 2920 [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 22:01:42.0885 2920 MRxDAV - ok 22:01:42.0916 2920 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 22:01:42.0978 2920 mrxsmb - ok 22:01:43.0025 2920 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 22:01:43.0072 2920 mrxsmb10 - ok 22:01:43.0088 2920 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 22:01:43.0119 2920 mrxsmb20 - ok 22:01:43.0150 2920 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys 22:01:43.0166 2920 msahci - ok 22:01:43.0197 2920 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys 22:01:43.0212 2920 msdsm - ok 22:01:43.0244 2920 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe 22:01:43.0275 2920 MSDTC - ok 22:01:43.0306 2920 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys 22:01:43.0353 2920 Msfs - ok 22:01:43.0384 2920 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 22:01:43.0431 2920 mshidkmdf - ok 22:01:43.0462 2920 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 22:01:43.0462 2920 msisadrv - ok 22:01:43.0493 2920 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 22:01:43.0540 2920 MSiSCSI - ok 22:01:43.0540 2920 msiserver - ok 22:01:43.0571 2920 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 22:01:43.0634 2920 MSKSSRV - ok 22:01:43.0665 2920 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 22:01:43.0727 2920 MSPCLOCK - ok 22:01:43.0758 2920 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 22:01:43.0805 2920 MSPQM - ok 22:01:43.0852 2920 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 22:01:43.0883 2920 MsRPC - ok 22:01:43.0914 2920 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 22:01:43.0930 2920 mssmbios - ok 22:01:43.0946 2920 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 22:01:44.0008 2920 MSTEE - ok 22:01:44.0039 2920 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 22:01:44.0055 2920 MTConfig - ok 22:01:44.0070 2920 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys 22:01:44.0086 2920 Mup - ok 22:01:44.0117 2920 [ 6FFECC25B39DC7652A0CEC0ADA9DB589 ] mwlPSDFilter C:\Windows\system32\DRIVERS\mwlPSDFilter.sys 22:01:44.0117 2920 mwlPSDFilter - ok 22:01:44.0133 2920 [ 0BEFE32CA56D6EE89D58175725596A85 ] mwlPSDNServ C:\Windows\system32\DRIVERS\mwlPSDNServ.sys 22:01:44.0148 2920 mwlPSDNServ - ok 22:01:44.0164 2920 [ D43BC633B8660463E446E28E14A51262 ] mwlPSDVDisk C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys 22:01:44.0180 2920 mwlPSDVDisk - ok 22:01:44.0226 2920 [ 0F5FAAC852DB4C340B7A2F187E3358B8 ] MWLService C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe 22:01:44.0242 2920 MWLService - ok 22:01:44.0289 2920 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll 22:01:44.0336 2920 napagent - ok 22:01:44.0367 2920 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 22:01:44.0414 2920 NativeWifiP - ok 22:01:44.0507 2920 [ 2C6870134D11F866E69926DF66866E3D ] NBService C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe 22:01:44.0554 2920 NBService - ok 22:01:44.0616 2920 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys 22:01:44.0663 2920 NDIS - ok 22:01:44.0694 2920 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 22:01:44.0741 2920 NdisCap - ok 22:01:44.0757 2920 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 22:01:44.0804 2920 NdisTapi - ok 22:01:44.0850 2920 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 22:01:44.0882 2920 Ndisuio - ok 22:01:44.0928 2920 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 22:01:44.0975 2920 NdisWan - ok 22:01:45.0022 2920 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 22:01:45.0084 2920 NDProxy - ok 22:01:45.0116 2920 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 22:01:45.0162 2920 NetBIOS - ok 22:01:45.0209 2920 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 22:01:45.0272 2920 NetBT - ok 22:01:45.0287 2920 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe 22:01:45.0303 2920 Netlogon - ok 22:01:45.0334 2920 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll 22:01:45.0396 2920 Netman - ok 22:01:45.0428 2920 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll 22:01:45.0474 2920 netprofm - ok 22:01:45.0506 2920 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe 22:01:45.0521 2920 NetTcpPortSharing - ok 22:01:45.0537 2920 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 22:01:45.0552 2920 nfrd960 - ok 22:01:45.0584 2920 [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc C:\Windows\System32\nlasvc.dll 22:01:45.0646 2920 NlaSvc - ok 22:01:45.0693 2920 [ 4C0D7762814C98C02EE6C1EB21C48BEA ] NMIndexingService C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe 22:01:45.0708 2920 NMIndexingService - ok 22:01:45.0724 2920 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys 22:01:45.0771 2920 Npfs - ok 22:01:45.0802 2920 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll 22:01:45.0849 2920 nsi - ok 22:01:45.0880 2920 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 22:01:45.0927 2920 nsiproxy - ok 22:01:46.0005 2920 [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 22:01:46.0067 2920 Ntfs - ok 22:01:46.0130 2920 [ FD324CCE1D4D5BB5AF65F8E55B462C7E ] NTIBackupSvc C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe 22:01:46.0161 2920 NTIBackupSvc - ok 22:01:46.0223 2920 [ 64DDD0DEE976302F4BD93E5EFCC2F013 ] NTIDrvr C:\Windows\system32\drivers\NTIDrvr.sys 22:01:46.0254 2920 NTIDrvr - ok 22:01:46.0270 2920 [ 3F6268A2EC33CD38CF75C880AF8DED42 ] NTISchedulerSvc C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe 22:01:46.0301 2920 NTISchedulerSvc - ok 22:01:46.0332 2920 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys 22:01:46.0364 2920 Null - ok 22:01:46.0395 2920 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys 22:01:46.0410 2920 nvraid - ok 22:01:46.0442 2920 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys 22:01:46.0457 2920 nvstor - ok 22:01:46.0473 2920 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 22:01:46.0488 2920 nv_agp - ok 22:01:46.0566 2920 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 22:01:46.0598 2920 odserv - ok 22:01:46.0629 2920 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 22:01:46.0660 2920 ohci1394 - ok 22:01:46.0707 2920 [ 5A432A042DAE460ABE7199B758E8606C ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 22:01:46.0722 2920 ose - ok 22:01:46.0754 2920 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 22:01:46.0785 2920 p2pimsvc - ok 22:01:46.0832 2920 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll 22:01:46.0847 2920 p2psvc - ok 22:01:46.0878 2920 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys 22:01:46.0894 2920 Parport - ok 22:01:46.0925 2920 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys 22:01:46.0956 2920 partmgr - ok 22:01:46.0972 2920 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll 22:01:47.0003 2920 PcaSvc - ok 22:01:47.0081 2920 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys 22:01:47.0097 2920 pci - ok 22:01:47.0128 2920 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys 22:01:47.0144 2920 pciide - ok 22:01:47.0175 2920 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 22:01:47.0190 2920 pcmcia - ok 22:01:47.0206 2920 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys 22:01:47.0222 2920 pcw - ok 22:01:47.0237 2920 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys 22:01:47.0300 2920 PEAUTH - ok 22:01:47.0378 2920 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe 22:01:47.0409 2920 PerfHost - ok 22:01:47.0471 2920 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll 22:01:47.0565 2920 pla - ok 22:01:47.0643 2920 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 22:01:47.0674 2920 PlugPlay - ok 22:01:47.0705 2920 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 22:01:47.0736 2920 PNRPAutoReg - ok 22:01:47.0768 2920 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 22:01:47.0783 2920 PNRPsvc - ok 22:01:47.0830 2920 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 22:01:47.0892 2920 PolicyAgent - ok 22:01:47.0924 2920 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll 22:01:48.0002 2920 Power - ok 22:01:48.0048 2920 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 22:01:48.0111 2920 PptpMiniport - ok 22:01:48.0142 2920 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys 22:01:48.0173 2920 Processor - ok 22:01:48.0204 2920 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll 22:01:48.0267 2920 ProfSvc - ok 22:01:48.0282 2920 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe 22:01:48.0298 2920 ProtectedStorage - ok 22:01:48.0329 2920 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys 22:01:48.0407 2920 Psched - ok 22:01:48.0470 2920 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 22:01:48.0563 2920 ql2300 - ok 22:01:48.0594 2920 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 22:01:48.0610 2920 ql40xx - ok 22:01:48.0641 2920 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll 22:01:48.0657 2920 QWAVE - ok 22:01:48.0688 2920 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 22:01:48.0719 2920 QWAVEdrv - ok 22:01:48.0766 2920 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 22:01:48.0828 2920 RasAcd - ok 22:01:48.0860 2920 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 22:01:48.0906 2920 RasAgileVpn - ok 22:01:48.0938 2920 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll 22:01:48.0984 2920 RasAuto - ok 22:01:49.0016 2920 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 22:01:49.0062 2920 Rasl2tp - ok 22:01:49.0125 2920 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll 22:01:49.0203 2920 RasMan - ok 22:01:49.0250 2920 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 22:01:49.0312 2920 RasPppoe - ok 22:01:49.0328 2920 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 22:01:49.0374 2920 RasSstp - ok 22:01:49.0421 2920 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 22:01:49.0468 2920 rdbss - ok 22:01:49.0484 2920 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 22:01:49.0515 2920 rdpbus - ok 22:01:49.0530 2920 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 22:01:49.0593 2920 RDPCDD - ok 22:01:49.0608 2920 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 22:01:49.0655 2920 RDPENCDD - ok 22:01:49.0671 2920 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 22:01:49.0718 2920 RDPREFMP - ok 22:01:49.0749 2920 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 22:01:49.0827 2920 RDPWD - ok 22:01:49.0874 2920 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 22:01:49.0889 2920 rdyboost - ok 22:01:49.0920 2920 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll 22:01:49.0983 2920 RemoteAccess - ok 22:01:50.0014 2920 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll 22:01:50.0061 2920 RemoteRegistry - ok 22:01:50.0092 2920 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 22:01:50.0139 2920 RpcEptMapper - ok 22:01:50.0154 2920 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe 22:01:50.0186 2920 RpcLocator - ok 22:01:50.0232 2920 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll 22:01:50.0279 2920 RpcSs - ok 22:01:50.0310 2920 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 22:01:50.0373 2920 rspndr - ok 22:01:50.0404 2920 [ DB30AA4DAA0D492FA5D7717D8181FFA1 ] RSUSBSTOR C:\Windows\system32\Drivers\RtsUStor.sys 22:01:50.0451 2920 RSUSBSTOR - ok 22:01:50.0482 2920 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe 22:01:50.0498 2920 SamSs - ok 22:01:50.0700 2920 [ 328100AF2EFD951EAB657384EC361B6F ] SamsungAllShareV2.0 C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe 22:01:50.0716 2920 SamsungAllShareV2.0 - ok 22:01:50.0747 2920 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 22:01:50.0763 2920 sbp2port - ok 22:01:50.0794 2920 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll 22:01:50.0856 2920 SCardSvr - ok 22:01:50.0888 2920 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 22:01:50.0919 2920 scfilter - ok 22:01:50.0981 2920 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll 22:01:51.0075 2920 Schedule - ok 22:01:51.0122 2920 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll 22:01:51.0168 2920 SCPolicySvc - ok 22:01:51.0184 2920 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll 22:01:51.0246 2920 SDRSVC - ok 22:01:51.0262 2920 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys 22:01:51.0324 2920 secdrv - ok 22:01:51.0356 2920 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll 22:01:51.0434 2920 seclogon - ok 22:01:51.0465 2920 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll 22:01:51.0527 2920 SENS - ok 22:01:51.0543 2920 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll 22:01:51.0605 2920 SensrSvc - ok 22:01:51.0636 2920 [ BC7ED37FBA7CD8A46A63C6EDFE98BB36 ] Ser2pl C:\Windows\system32\DRIVERS\ser2pl64.sys 22:01:51.0683 2920 Ser2pl - ok 22:01:51.0714 2920 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 22:01:51.0730 2920 Serenum - ok 22:01:51.0746 2920 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys 22:01:51.0792 2920 Serial - ok 22:01:51.0824 2920 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 22:01:51.0855 2920 sermouse - ok 22:01:51.0886 2920 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll 22:01:51.0948 2920 SessionEnv - ok 22:01:51.0995 2920 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 22:01:52.0058 2920 sffdisk - ok 22:01:52.0073 2920 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 22:01:52.0104 2920 sffp_mmc - ok 22:01:52.0120 2920 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 22:01:52.0151 2920 sffp_sd - ok 22:01:52.0167 2920 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 22:01:52.0198 2920 sfloppy - ok 22:01:52.0229 2920 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll 22:01:52.0292 2920 SharedAccess - ok 22:01:52.0354 2920 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll 22:01:52.0416 2920 ShellHWDetection - ok 22:01:52.0463 2920 [ 1980FE1F5A32067DAD1D8776B63C2669 ] SimpleSlideShowServer C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe 22:01:52.0479 2920 SimpleSlideShowServer - ok 22:01:52.0510 2920 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 22:01:52.0541 2920 SiSRaid2 - ok 22:01:52.0557 2920 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 22:01:52.0572 2920 SiSRaid4 - ok 22:01:52.0650 2920 [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 22:01:52.0666 2920 SkypeUpdate - ok 22:01:52.0682 2920 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys 22:01:52.0744 2920 Smb - ok 22:01:52.0775 2920 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe 22:01:52.0806 2920 SNMPTRAP - ok 22:01:52.0838 2920 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys 22:01:52.0853 2920 spldr - ok 22:01:52.0884 2920 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe 22:01:52.0947 2920 Spooler - ok 22:01:53.0056 2920 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe 22:01:53.0228 2920 sppsvc - ok 22:01:53.0290 2920 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll 22:01:53.0337 2920 sppuinotify - ok 22:01:53.0384 2920 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys 22:01:53.0430 2920 srv - ok 22:01:53.0446 2920 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 22:01:53.0477 2920 srv2 - ok 22:01:53.0508 2920 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 22:01:53.0540 2920 srvnet - ok 22:01:53.0586 2920 [ F74634F46692C8315E7F37F698AF3225 ] sscebus C:\Windows\system32\DRIVERS\sscebus.sys 22:01:53.0602 2920 sscebus - ok 22:01:53.0618 2920 [ 82732B391EFD69B0548044BE9CB37BFC ] sscemdfl C:\Windows\system32\DRIVERS\sscemdfl.sys 22:01:53.0633 2920 sscemdfl - ok 22:01:53.0649 2920 [ 43D56ACE4469D90F9790E8352D87D9B5 ] sscemdm C:\Windows\system32\DRIVERS\sscemdm.sys 22:01:53.0664 2920 sscemdm - ok 22:01:53.0711 2920 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 22:01:53.0774 2920 SSDPSRV - ok 22:01:53.0789 2920 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll 22:01:53.0836 2920 SstpSvc - ok 22:01:53.0883 2920 [ 74425FFA11C133D045E1C3BE2EAD481D ] ssudmdm C:\Windows\system32\DRIVERS\ssudmdm.sys 22:01:53.0898 2920 ssudmdm - ok 22:01:53.0930 2920 [ 076044D95B6034CB34FFEC3EE5623A37 ] ssudserd C:\Windows\system32\DRIVERS\ssudserd.sys 22:01:53.0945 2920 ssudserd - ok 22:01:53.0976 2920 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 22:01:53.0992 2920 stexstor - ok 22:01:54.0070 2920 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll 22:01:54.0132 2920 stisvc - ok 22:01:54.0179 2920 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys 22:01:54.0195 2920 swenum - ok 22:01:54.0226 2920 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll 22:01:54.0288 2920 swprv - ok 22:01:54.0335 2920 [ BCF305959B53B200CEB2AD25AD22F8A7 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys 22:01:54.0351 2920 SynTP - ok 22:01:54.0429 2920 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll 22:01:54.0507 2920 SysMain - ok 22:01:54.0554 2920 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll 22:01:54.0569 2920 TabletInputService - ok 22:01:54.0600 2920 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll 22:01:54.0663 2920 TapiSrv - ok 22:01:54.0710 2920 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll 22:01:54.0756 2920 TBS - ok 22:01:54.0850 2920 [ F782CAD3CEDBB3F9FFE3BF2775D92DDC ] Tcpip C:\Windows\system32\drivers\tcpip.sys 22:01:54.0975 2920 Tcpip - ok 22:01:55.0037 2920 [ F782CAD3CEDBB3F9FFE3BF2775D92DDC ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 22:01:55.0084 2920 TCPIP6 - ok 22:01:55.0131 2920 [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 22:01:55.0209 2920 tcpipreg - ok 22:01:55.0240 2920 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 22:01:55.0271 2920 TDPIPE - ok 22:01:55.0302 2920 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 22:01:55.0334 2920 TDTCP - ok 22:01:55.0365 2920 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 22:01:55.0443 2920 tdx - ok 22:01:55.0474 2920 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys 22:01:55.0490 2920 TermDD - ok 22:01:55.0505 2920 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll 22:01:55.0599 2920 TermService - ok 22:01:55.0646 2920 [ CE4B6956E4E12492715A53076E58761F ] TFsExDisk C:\Windows\System32\Drivers\TFsExDisk.sys 22:01:55.0677 2920 TFsExDisk - ok 22:01:55.0708 2920 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll 22:01:55.0739 2920 Themes - ok 22:01:55.0786 2920 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll 22:01:55.0817 2920 THREADORDER - ok 22:01:55.0895 2920 [ 3199A477F0F06EEDE41BD55179F8EB05 ] TomTomHOMEService C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe 22:01:55.0911 2920 TomTomHOMEService - ok 22:01:55.0942 2920 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll 22:01:56.0004 2920 TrkWks - ok 22:01:56.0067 2920 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 22:01:56.0145 2920 TrustedInstaller - ok 22:01:56.0192 2920 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 22:01:56.0254 2920 tssecsrv - ok 22:01:56.0301 2920 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 22:01:56.0332 2920 TsUsbFlt - ok 22:01:56.0379 2920 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 22:01:56.0441 2920 tunnel - ok 22:01:56.0457 2920 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 22:01:56.0472 2920 uagp35 - ok 22:01:56.0504 2920 [ 2E22C1FD397A5A9FFEF55E9D1FC96C00 ] UBHelper C:\Windows\system32\drivers\UBHelper.sys 22:01:56.0519 2920 UBHelper - ok 22:01:56.0566 2920 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 22:01:56.0644 2920 udfs - ok 22:01:56.0691 2920 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe 22:01:56.0706 2920 UI0Detect - ok 22:01:56.0722 2920 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 22:01:56.0738 2920 uliagpkx - ok 22:01:56.0769 2920 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\drivers\umbus.sys 22:01:56.0800 2920 umbus - ok 22:01:56.0816 2920 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 22:01:56.0847 2920 UmPass - ok 22:01:56.0909 2920 [ 70DDE3A86DBEB1D6C3C30AD687B1877A ] Updater Service C:\Program Files\Acer\Acer Updater\UpdaterService.exe 22:01:56.0940 2920 Updater Service - ok 22:01:56.0972 2920 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll 22:01:57.0034 2920 upnphost - ok 22:01:57.0081 2920 [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 22:01:57.0096 2920 usbccgp - ok 22:01:57.0128 2920 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\drivers\usbcir.sys 22:01:57.0143 2920 usbcir - ok 22:01:57.0174 2920 [ C025055FE7B87701EB042095DF1A2D7B ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 22:01:57.0190 2920 usbehci - ok 22:01:57.0221 2920 [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 22:01:57.0237 2920 usbhub - ok 22:01:57.0268 2920 [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci C:\Windows\system32\drivers\usbohci.sys 22:01:57.0284 2920 usbohci - ok 22:01:57.0315 2920 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 22:01:57.0362 2920 usbprint - ok 22:01:57.0377 2920 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 22:01:57.0408 2920 USBSTOR - ok 22:01:57.0440 2920 [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys 22:01:57.0486 2920 usbuhci - ok 22:01:57.0518 2920 [ 454800C2BC7F3927CE030141EE4F4C50 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys 22:01:57.0549 2920 usbvideo - ok 22:01:57.0580 2920 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll 22:01:57.0642 2920 UxSms - ok 22:01:57.0658 2920 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe 22:01:57.0674 2920 VaultSvc - ok 22:01:57.0689 2920 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 22:01:57.0705 2920 vdrvroot - ok 22:01:57.0736 2920 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe 22:01:57.0830 2920 vds - ok 22:01:57.0861 2920 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 22:01:57.0876 2920 vga - ok 22:01:57.0892 2920 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys 22:01:57.0954 2920 VgaSave - ok 22:01:57.0986 2920 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 22:01:58.0001 2920 vhdmp - ok 22:01:58.0032 2920 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys 22:01:58.0064 2920 viaide - ok 22:01:58.0110 2920 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys 22:01:58.0142 2920 volmgr - ok 22:01:58.0173 2920 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 22:01:58.0204 2920 volmgrx - ok 22:01:58.0251 2920 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys 22:01:58.0282 2920 volsnap - ok 22:01:58.0313 2920 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 22:01:58.0329 2920 vsmraid - ok 22:01:58.0391 2920 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe 22:01:58.0500 2920 VSS - ok 22:01:58.0516 2920 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys 22:01:58.0563 2920 vwifibus - ok 22:01:58.0578 2920 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys 22:01:58.0625 2920 vwififlt - ok 22:01:58.0656 2920 [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys 22:01:58.0672 2920 vwifimp - ok 22:01:58.0703 2920 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll 22:01:58.0750 2920 W32Time - ok 22:01:58.0781 2920 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 22:01:58.0812 2920 WacomPen - ok 22:01:58.0844 2920 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 22:01:58.0890 2920 WANARP - ok 22:01:58.0906 2920 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 22:01:58.0937 2920 Wanarpv6 - ok 22:01:59.0000 2920 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe 22:01:59.0093 2920 wbengine - ok 22:01:59.0124 2920 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 22:01:59.0156 2920 WbioSrvc - ok 22:01:59.0187 2920 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll 22:01:59.0249 2920 wcncsvc - ok 22:01:59.0296 2920 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 22:01:59.0312 2920 WcsPlugInService - ok 22:01:59.0327 2920 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys 22:01:59.0343 2920 Wd - ok 22:01:59.0374 2920 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 22:01:59.0405 2920 Wdf01000 - ok 22:01:59.0421 2920 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll 22:01:59.0546 2920 WdiServiceHost - ok 22:01:59.0546 2920 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll 22:01:59.0577 2920 WdiSystemHost - ok 22:01:59.0624 2920 [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient C:\Windows\System32\webclnt.dll 22:01:59.0686 2920 WebClient - ok 22:01:59.0717 2920 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll 22:01:59.0780 2920 Wecsvc - ok 22:01:59.0811 2920 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll 22:01:59.0842 2920 wercplsupport - ok 22:01:59.0858 2920 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll 22:01:59.0920 2920 WerSvc - ok 22:01:59.0982 2920 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 22:02:00.0060 2920 WfpLwf - ok 22:02:00.0060 2920 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys 22:02:00.0076 2920 WIMMount - ok 22:02:00.0107 2920 WinDefend - ok 22:02:00.0107 2920 WinHttpAutoProxySvc - ok 22:02:00.0170 2920 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 22:02:00.0216 2920 Winmgmt - ok 22:02:00.0294 2920 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll 22:02:00.0404 2920 WinRM - ok 22:02:00.0450 2920 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 22:02:00.0497 2920 WinUsb - ok 22:02:00.0544 2920 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll 22:02:00.0622 2920 Wlansvc - ok 22:02:00.0638 2920 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 22:02:00.0669 2920 WmiAcpi - ok 22:02:00.0700 2920 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 22:02:00.0716 2920 wmiApSrv - ok 22:02:00.0747 2920 WMPNetworkSvc - ok 22:02:00.0762 2920 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll 22:02:00.0794 2920 WPCSvc - ok 22:02:00.0825 2920 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 22:02:00.0856 2920 WPDBusEnum - ok 22:02:00.0887 2920 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 22:02:00.0950 2920 ws2ifsl - ok 22:02:00.0965 2920 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll 22:02:00.0996 2920 wscsvc - ok 22:02:00.0996 2920 WSearch - ok 22:02:01.0106 2920 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll 22:02:01.0215 2920 wuauserv - ok 22:02:01.0246 2920 [ D3381DC54C34D79B22CEE0D65BA91B7C ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 22:02:01.0308 2920 WudfPf - ok 22:02:01.0340 2920 [ CF8D590BE3373029D57AF80914190682 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 22:02:01.0402 2920 WUDFRd - ok 22:02:01.0449 2920 [ 7A95C95B6C4CF292D689106BCAE49543 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 22:02:01.0511 2920 wudfsvc - ok 22:02:01.0527 2920 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll 22:02:01.0574 2920 WwanSvc - ok 22:02:01.0574 2920 ================ Scan global =============================== 22:02:01.0620 2920 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll 22:02:01.0652 2920 [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\Windows\system32\winsrv.dll 22:02:01.0667 2920 [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\Windows\system32\winsrv.dll 22:02:01.0683 2920 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll 22:02:01.0714 2920 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe 22:02:01.0730 2920 [Global] - ok 22:02:01.0730 2920 ================ Scan MBR ================================== 22:02:01.0745 2920 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 22:02:02.0166 2920 \Device\Harddisk0\DR0 - ok 22:02:02.0166 2920 ================ Scan VBR ================================== 22:02:02.0166 2920 [ BDEBBA3E3E76F5DFAC70DC0082D271C6 ] \Device\Harddisk0\DR0\Partition1 22:02:02.0166 2920 \Device\Harddisk0\DR0\Partition1 - ok 22:02:02.0198 2920 [ 528AEF87E659965DFE6BC39132CEA3CC ] \Device\Harddisk0\DR0\Partition2 22:02:02.0213 2920 \Device\Harddisk0\DR0\Partition2 - ok 22:02:02.0213 2920 ============================================================ 22:02:02.0213 2920 Scan finished 22:02:02.0213 2920 ============================================================ 22:02:02.0260 4764 Detected object count: 2 22:02:02.0260 4764 Actual detected object count: 2 22:02:17.0579 4764 Bonjour Service ( UnsignedFile.Multi.Generic ) - skipped by user 22:02:17.0579 4764 Bonjour Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 22:02:17.0579 4764 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user 22:02:17.0579 4764 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip Liebe Grüße Nadine |
23.10.2012, 16:27 | #20 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Wie entferne ich den Trojaner PUP.LoadTubes? Die zwei Funde sind legitim, ist also unauffällig. Noch Probleme oder Fragen offen? Sieht ok aus. Wir sollten fast durch sein. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs. Denk dran beide Tools zu updaten vor dem Scan!!
__________________ Logfiles bitte immer in CODE-Tags posten |
24.10.2012, 21:22 | #21 |
| Wie entferne ich den Trojaner PUP.LoadTubes? Hallo cosinus, es wurde wieder etwas gefunden *schnief* Dabei habe ich gar nicht viel im Netz gemacht.... Log SUPERAntiSpyware: Code:
ATTFilter SUPERAntiSpyware Scan Log hxxp://www.superantispyware.com Generated 10/24/2012 at 10:12 PM Application Version : 5.6.1012 Core Rules Database Version : 9466 Trace Rules Database Version: 7278 Scan type : Complete Scan Total Scan Time : 00:54:16 Operating System Information Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601) UAC On - Administrator Memory items scanned : 745 Memory threats detected : 0 Registry items scanned : 73373 Registry threats detected : 0 File items scanned : 62878 File threats detected : 510 Adware.Tracking Cookie C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\OP6FGE15.txt [ /questionmarket.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\OVTTX90Z.txt [ /advertising.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\10AJYNG3.txt [ /doubleclick.net ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\ZETWUCOB.txt [ /tacoda.at.atwola.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\VAVCCR0K.txt [ /invitemedia.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\S7KHVEM9.txt [ /apmebf.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\5FT1ILZ8.txt [ /dyntracker.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\27L3HH98.txt [ /atwola.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\K8HTVS70.txt [ /zanox-affiliate.de ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\FSIHCSDK.txt [ /tracking.quisma.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\4PK5LJHR.txt [ /fastclick.net ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\YQ9SMDSX.txt [ /adform.net ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\RJJEYWRR.txt [ /atdmt.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\1GQQA04F.txt [ /www.zanox-affiliate.de ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\6N311DUH.txt [ /imrworldwide.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\G6W8378C.txt [ /ad.dyntracker.de ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\DW0N01CZ.txt [ /cdn.at.atwola.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\C3RE3EWH.txt [ /smartadserver.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\82FQ0DA6.txt [ /serving-sys.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\WKA41JIL.txt [ /adfarm1.adition.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\F4D5TYR7.txt [ /ads.creative-serving.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\85XTX9ET.txt [ /ad.yieldmanager.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\XUGQCLUO.txt [ /zanox.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\8WW4J0R7.txt [ /ad1.adfarm1.adition.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\DICVIE4P.txt [ /track.adform.net ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\SWAY3NX2.txt [ /at.atwola.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\OGFKKMDC.txt [ /adserver.ignitad.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\32JLIGYG.txt [ /ad.zanox.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\7MUGS0AZ.txt [ /mediaplex.com ] C:\Users\Naddel\AppData\Roaming\Microsoft\Windows\Cookies\2UX7VZUZ.txt [ /ar.atwola.com ] C:\USERS\ADMINISTRATOR.NADDEL-PC\AppData\Roaming\Microsoft\Windows\Cookies\DLOHVHKF.txt [ Cookie:administrator@apmebf.com/ ] C:\USERS\ADMINISTRATOR.NADDEL-PC\AppData\Roaming\Microsoft\Windows\Cookies\EA67N8RE.txt [ Cookie:administrator@fastclick.net/ ] C:\USERS\ADMINISTRATOR.NADDEL-PC\AppData\Roaming\Microsoft\Windows\Cookies\U9F1PG9W.txt [ Cookie:administrator@mediaplex.com/ ] C:\USERS\ADMINISTRATOR.NADDEL-PC\AppData\Roaming\Microsoft\Windows\Cookies\FYRM6TRT.txt [ Cookie:administrator@www.zanox-affiliate.de/ ] C:\USERS\ADMINISTRATOR.NADDEL-PC\Cookies\DLOHVHKF.txt [ Cookie:administrator@apmebf.com/ ] C:\USERS\ADMINISTRATOR.NADDEL-PC\Cookies\EA67N8RE.txt [ Cookie:administrator@fastclick.net/ ] C:\USERS\ADMINISTRATOR.NADDEL-PC\Cookies\U9F1PG9W.txt [ Cookie:administrator@mediaplex.com/ ] C:\USERS\ADMINISTRATOR.NADDEL-PC\Cookies\FYRM6TRT.txt [ Cookie:administrator@www.zanox-affiliate.de/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\V040GAXO.txt [ Cookie:naddel@weborama.fr/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\6BXTDBXA.txt [ Cookie:naddel@doubleclick.net/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\VWZT4CMX.txt [ Cookie:naddel@invitemedia.com/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\6FOXCYF3.txt [ Cookie:naddel@xing.solution.weborama.fr/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\EFP8XSA8.txt [ Cookie:naddel@zanox-affiliate.de/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\7VSKIP2T.txt [ Cookie:naddel@revsci.net/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\36F1X9GL.txt [ Cookie:naddel@clkads.com/adServe ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\05RRGU4A.txt [ Cookie:naddel@webmasterplan.com/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\QNXX5WQJ.txt [ Cookie:naddel@serving-sys.com/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\MVWQ5XB9.txt [ Cookie:naddel@adtech.de/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\LYIZJR22.txt [ Cookie:naddel@adfarm1.adition.com/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\Y2IYNLYX.txt [ Cookie:naddel@clkads.com/adServe/banners ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\DDR6TAX9.txt [ Cookie:naddel@ad4.adfarm1.adition.com/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\N0B1KKF0.txt [ Cookie:naddel@ad.yieldmanager.com/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\566HV0MM.txt [ Cookie:naddel@zanox.com/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\S3VKKMTW.txt [ Cookie:naddel@statse.webtrendslive.com/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\JT1JR6IR.txt [ Cookie:naddel@yadro.ru/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\5JREIDNW.txt [ Cookie:naddel@ad2.adfarm1.adition.com/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\R8QX0AAU.txt [ Cookie:naddel@tracker.vinsight.de/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\682FGNTV.txt [ Cookie:naddel@ad3.adfarm1.adition.com/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\3J8KJH6A.txt [ Cookie:naddel@2o7.net/ ] C:\USERS\NADDEL\AppData\Roaming\Microsoft\Windows\Cookies\Low\5YJYAVOE.txt [ Cookie:naddel@mediaplex.com/ ] C:\USERS\NADDEL\Cookies\OP6FGE15.txt [ Cookie:naddel@questionmarket.com/ ] C:\USERS\NADDEL\Cookies\10AJYNG3.txt [ Cookie:naddel@doubleclick.net/ ] C:\USERS\NADDEL\Cookies\ZETWUCOB.txt [ Cookie:naddel@tacoda.at.atwola.com/ ] C:\USERS\NADDEL\Cookies\VAVCCR0K.txt [ Cookie:naddel@invitemedia.com/ ] C:\USERS\NADDEL\Cookies\5FT1ILZ8.txt [ Cookie:naddel@dyntracker.com/ ] C:\USERS\NADDEL\Cookies\K8HTVS70.txt [ Cookie:naddel@zanox-affiliate.de/ ] C:\USERS\NADDEL\Cookies\1GQQA04F.txt [ Cookie:naddel@www.zanox-affiliate.de/ ] C:\USERS\NADDEL\Cookies\G6W8378C.txt [ Cookie:naddel@ad.dyntracker.de/ ] C:\USERS\NADDEL\Cookies\DW0N01CZ.txt [ Cookie:naddel@cdn.at.atwola.com/ ] C:\USERS\NADDEL\Cookies\82FQ0DA6.txt [ Cookie:naddel@serving-sys.com/ ] C:\USERS\NADDEL\Cookies\WKA41JIL.txt [ Cookie:naddel@adfarm1.adition.com/ ] C:\USERS\NADDEL\Cookies\85XTX9ET.txt [ Cookie:naddel@ad.yieldmanager.com/ ] C:\USERS\NADDEL\Cookies\XUGQCLUO.txt [ Cookie:naddel@zanox.com/ ] C:\USERS\NADDEL\Cookies\8WW4J0R7.txt [ Cookie:naddel@ad1.adfarm1.adition.com/ ] C:\USERS\NADDEL\Cookies\DICVIE4P.txt [ Cookie:naddel@track.adform.net/ ] C:\USERS\NADDEL\Cookies\SWAY3NX2.txt [ Cookie:naddel@at.atwola.com/ ] C:\USERS\NADDEL\Cookies\7MUGS0AZ.txt [ Cookie:naddel@mediaplex.com/ ] C:\USERS\NADDEL\Cookies\2UX7VZUZ.txt [ Cookie:naddel@ar.atwola.com/ ] oddcast.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\ANCHH7KG ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .unrulymedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .lfstmedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .amazon-adsystem.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .lfstmedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .xiti.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .imrworldwide.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] accounts.google.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .zanox.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .lfstmedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] adserver.doccheck.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .specificclick.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .bs.serving-sys.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] partners.webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .e-2dj6wjlyqidjwdq.stats.esomniture.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .e-2dj6wfkispd5cap.stats.esomniture.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .sundiscount.eu [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .sundiscount.eu [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] eas4.emediate.eu [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .ad-emea.doubleclick.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .a.revenuemax.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] stat.dealtime.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .lfstmedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .nextag.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .yieldmanager.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .collective-media.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .stats.paypal.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .paypal.112.2o7.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] adserv.chirurgie-portal.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] wstat.wibiya.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .media6degrees.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .ru4.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .lfstmedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ec-track.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .get-a-fuck-tonight.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .get-a-fuck-tonight.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .syndication.traffichaus.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .syndication.traffichaus.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ads.crakmedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adultfriendfinder.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adxpansion.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] adserver.gb5.motorpresse.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.elitepartner.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.elitepartner.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .elitepartner.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .elitepartner.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .elitepartner.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .elitepartner.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .guj.122.2o7.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .beiersdorf.122.2o7.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .wilson.122.2o7.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tennisexpress.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tennisexpress.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .liveperson.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tennisexpress.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tennisexpress.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.tennisexpress.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.tennisexpress.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.tennisexpress.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tennisexpress.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.tennisexpress.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .nextag.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .nextag.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .nextag.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tennisexperte.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tennisexperte.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.tennisexperte.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adviva.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] track.zalando.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .e-2dj6aeliekczegp.stats.esomniture.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webstat.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webstat.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .dealtime.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .statcounter.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] de.sitestat.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] banner.testberichte.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] banner.testberichte.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .e-2dj6wgligjdzcep.stats.esomniture.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] count.asnetworks.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] media.gan-online.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .e-2dj6wgkyejcjigp.stats.esomniture.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] server.adformdsp.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adformdsp.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adform.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .flagcounter.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] tracking.tennisnet.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] tracking.dc-storm.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tracking.mindshare.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .clickfuse.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.bannerreport.org [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] traffic.brand-wall.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .quartermedia.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .clickfuse.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .clickfuse.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .zedo.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .bs.serving-sys.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revenuemax.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www4.smartadserver.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www4.smartadserver.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tracking.quisma.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .insightexpressai.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .fastclick.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .apmebf.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .netmediaeurope.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .downloads.netmediaeurope.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .downloads.netmediaeurope.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .downloads.netmediaeurope.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .microsoftsto.112.2o7.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .atdmt.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .c1.atdmt.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revenuemax.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad.dyntracker.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] adx2.chip.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] adx.chip.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tracker.vinsight.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .mm.chitika.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .pro-market.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .kontera.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .at.atwola.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .ad.adnet.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] server.adform.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] banner.testberichte.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.zanox-affiliate.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] zbox.zanox.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .questionmarket.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .cdn.lfstmedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .cdn.lfstmedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .cdn.lfstmedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad4.adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad.adserver01.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .2o7.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adxpose.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad.zanox.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad1.adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adbrite.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .casalemedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .traffictrack.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .lucidmedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tribalfusion.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .advertising.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .webmasterplan.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .invitemedia.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] track.effiliation.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .zanox-affiliate.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .zanox.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] tomtailor.dyntracker.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.etracker.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] eas.apm.emediate.eu [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] statse.webtrendslive.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .histats.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .histats.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .bizrate.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .bizrate.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .amazon-adsystem.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad3.adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .srv.resultsmedia.biz [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .srv.resultsmedia.biz [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .srv.resultsmedia.biz [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .srv.resultsmedia.biz [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .srv.resultsmedia.biz [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .srv.resultsmedia.biz [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .srv.resultsmedia.biz [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .srv.resultsmedia.biz [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .srv.resultsmedia.biz [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .srv.resultsmedia.biz [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .srv.resultsmedia.biz [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .srv.resultsmedia.biz [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .srv.resultsmedia.biz [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .srv.resultsmedia.biz [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] track.adform.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adform.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .tradedoubler.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .mediaplex.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad2.adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adfarm1.adition.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .revsci.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .im.banner.t-online.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .adtech.de [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ww251.smartadserver.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .doubleclick.net [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .smartadserver.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] ad.yieldmanager.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] www.googleadservices.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] .serving-sys.com [ C:\USERS\NADDEL\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\QHUDDM4J.DEFAULT\COOKIES.SQLITE ] Adware.Somoto C:\$RECYCLE.BIN\S-1-5-21-229999014-1990505316-589686378-1000\$RS681DB.EXE Code:
ATTFilter Malwarebytes Anti-Malware 1.65.1.1000 www.malwarebytes.org Datenbank Version: v2012.10.24.06 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 9.0.8112.16421 Naddel :: NADDEL-PC [Administrator] 24.10.2012 20:13:24 mbam-log-2012-10-24 (21-15-31).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 386397 Laufzeit: 1 Stunde(n), 1 Minute(n), 23 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 1 C:\$Recycle.Bin\S-1-5-21-229999014-1990505316-589686378-1000\$RS681DB.exe (PUP.BundleInstaller.BI) -> Keine Aktion durchgeführt. (Ende) Vielen Dank und liebe Grüße Nadine |
24.10.2012, 21:38 | #22 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Wie entferne ich den Trojaner PUP.LoadTubes? Sieht ok aus, da wurden nur Cookies gefunden, die können alle weg. Das andere ist nur ein gelöschtes Element im Papierkorb, weg damit. Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie ) Wegen Cookies und anderer Dinge im Web: Um die Pest von vornherein zu blocken (also TrackingCookies, Werbebanner etc.) müsstest du dir mal sowas wie MVPS Hosts File anschauen => Blocking Unwanted Parasites with a Hosts File - sinnvollerweise solltest du alle 4 Wochen mal bei MVPS nachsehen, ob er eine neue Hosts Datei herausgebracht hat. Ansonsten gibt es noch gute Cookiemanager, Erweiterungen für den Firefox zB wäre da CookieCuller http://filepony.de/download-cookie_culler/ Wenn du aber damit leben kannst, dich bei jeder Browsersession überall neu einzuloggen (zB Facebook, Ebay, GMX, oder auch Trojaner-Board) dann stell den Browser einfach so ein, dass einfach alles beim Beenden des Browser inkl. Cookies gelöscht wird. Ich halte es so, dass ich zum "wilden Surfen" den Opera-Browser oder Chromium unter meinem Linux verwende. Mein Hauptbrowser (Firefox) speichert nur die Cookies von den Sites die ich auch will, alles andere lehne ich manuell ab (der FF fragt mich immer) - die anderen Browser nehmen alles an Cookies zwar an, aber spätestens beim nächsten Start von Opera oder Chromium sind keine Cookies mehr da. Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
__________________ Logfiles bitte immer in CODE-Tags posten |
25.10.2012, 20:44 | #23 |
| Wie entferne ich den Trojaner PUP.LoadTubes? Hallo cosinus, der Papierkorb ist geleert, die Cookies gelöscht. Ist der PUP.BundleInstaller damit auch eleminiert? Das mit dem MVPS Hosts File finde ich sehr interessant und habe mir den Link mal angeschaut. Aber das Ganze übersteigt doch meine PC-und Englisch-Kenntnisse *g* Ansonsten scheint der PC wieder in Ordnung zu sein. Hiermit möche ich mich nochmals gaaaaaanz herzlich für die Hilfe bedanken .. Liebe Grüße Nadine |
25.10.2012, 22:09 | #24 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Wie entferne ich den Trojaner PUP.LoadTubes? Dann wären wir durch! Die Programme, die hier zum Einsatz kamen, können alle wieder runter. Malwarebytes zu behalten ist zu empfehlen. Kannst ja 1x im Monat damit einen Scan machen, aber immer vorher ans Update denken. Es empfiehlt sich auf jeden Fall nach der beseitigten Infektion auch möglichst alle Passwörter zu ändern. Abschließend ein ganz wichtiger Punkt: Absicherung des Rechners, aktualisieren der Programme siehe http://www.trojaner-board.de/96344-a...tml#post627442
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Wie entferne ich den Trojaner PUP.LoadTubes? |
antivir, applaus, autorun, avira, bho, bonjour, browser, converter, desktop, error, excel, fehler, firefox, flash player, home, install.exe, launch, logfile, mozilla, mp3, mywinlocker, office 2007, plug-in, realtek, richtlinie, rundll, scan, security, software, svchost.exe, system, trojaner, usb 2.0, visual studio |