Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Windows blockiert - 50€ Trojaner

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML

Antwort
Alt 12.01.2012, 23:35   #16
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Zitat:
Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten => http://www.trojaner-board.de/82358-a...entfernen.html

Ich kann auf dieser Seite nichts posten. Daher unten als CODE.

Zitat:
Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten!
Es kam kein Fund/Meldung.

Zitat:
Falls du durch die Infektion auf deine Dokumente/Eigenen Dateien nicht zugreifen kannst, Verknüpfungen auf dem Desktop oder im Startmenü unter "alle Programme" fehlen, bitte unhide ausführen:
Klappt alles einwandfrei.

TDSS-LOG

Code:
ATTFilter
23:11:20.0326 5740	TDSS rootkit removing tool 2.7.0.0 Jan 10 2012 09:14:26
23:11:20.0404 5740	============================================================
23:11:20.0404 5740	Current date / time: 2012/01/12 23:11:20.0404
23:11:20.0404 5740	SystemInfo:
23:11:20.0404 5740	
23:11:20.0404 5740	OS Version: 6.0.6002 ServicePack: 2.0
23:11:20.0404 5740	Product type: Workstation
23:11:20.0404 5740	ComputerName: JENNY-PC
23:11:20.0404 5740	UserName: Jenny
23:11:20.0404 5740	Windows directory: C:\Windows
23:11:20.0404 5740	System windows directory: C:\Windows
23:11:20.0404 5740	Processor architecture: Intel x86
23:11:20.0404 5740	Number of processors: 2
23:11:20.0404 5740	Page size: 0x1000
23:11:20.0404 5740	Boot type: Normal boot
23:11:20.0404 5740	============================================================
23:11:21.0652 5740	Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000, SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K', Flags 0x00000050
23:11:21.0668 5740	Drive \Device\Harddisk1\DR4 - Size: 0x3D2FFE00, SectorSize: 0x200, Cylinders: 0x7C, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
23:11:21.0871 5740	Initialize success
23:11:39.0343 5856	============================================================
23:11:39.0343 5856	Scan started
23:11:39.0343 5856	Mode: Manual; SigCheck; TDLFS; 
23:11:39.0343 5856	============================================================
23:11:39.0936 5856	ACPI            (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys
23:11:40.0154 5856	ACPI - ok
23:11:40.0201 5856	adp94xx         (04f0fcac69c7c71a3ac4eb97fafc8303) C:\Windows\system32\drivers\adp94xx.sys
23:11:40.0232 5856	adp94xx - ok
23:11:40.0263 5856	adpahci         (60505e0041f7751bdbb80f88bf45c2ce) C:\Windows\system32\drivers\adpahci.sys
23:11:40.0294 5856	adpahci - ok
23:11:40.0326 5856	adpu160m        (8a42779b02aec986eab64ecfc98f8bd7) C:\Windows\system32\drivers\adpu160m.sys
23:11:40.0357 5856	adpu160m - ok
23:11:40.0388 5856	adpu320         (241c9e37f8ce45ef51c3de27515ca4e5) C:\Windows\system32\drivers\adpu320.sys
23:11:40.0404 5856	adpu320 - ok
23:11:40.0528 5856	AFD             (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys
23:11:40.0606 5856	AFD - ok
23:11:40.0950 5856	AgereSoftModem  (1cfeba39fc613e45b49d3eddfbcda289) C:\Windows\system32\DRIVERS\AGRSM.sys
23:11:41.0090 5856	AgereSoftModem - ok
23:11:41.0293 5856	agp440          (13f9e33747e6b41a3ff305c37db0d360) C:\Windows\system32\drivers\agp440.sys
23:11:41.0324 5856	agp440 - ok
23:11:41.0386 5856	aic78xx         (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys
23:11:41.0402 5856	aic78xx - ok
23:11:41.0449 5856	aliide          (9eaef5fc9b8e351afa7e78a6fae91f91) C:\Windows\system32\drivers\aliide.sys
23:11:41.0480 5856	aliide - ok
23:11:41.0542 5856	amdagp          (c47344bc706e5f0b9dce369516661578) C:\Windows\system32\drivers\amdagp.sys
23:11:41.0558 5856	amdagp - ok
23:11:41.0589 5856	amdide          (9b78a39a4c173fdbc1321e0dd659b34c) C:\Windows\system32\drivers\amdide.sys
23:11:41.0605 5856	amdide - ok
23:11:41.0636 5856	AmdK7           (18f29b49ad23ecee3d2a826c725c8d48) C:\Windows\system32\drivers\amdk7.sys
23:11:41.0792 5856	AmdK7 - ok
23:11:41.0870 5856	AmdK8           (93ae7f7dd54ab986a6f1a1b37be7442d) C:\Windows\system32\drivers\amdk8.sys
23:11:41.0932 5856	AmdK8 - ok
23:11:42.0073 5856	arc             (5d2888182fb46632511acee92fdad522) C:\Windows\system32\drivers\arc.sys
23:11:42.0088 5856	arc - ok
23:11:42.0120 5856	arcsas          (5e2a321bd7c8b3624e41fdec3e244945) C:\Windows\system32\drivers\arcsas.sys
23:11:42.0151 5856	arcsas - ok
23:11:42.0213 5856	ASMMAP          (7b4d08d2017ac06689d422e06c43f0aa) C:\Program Files\ATKGFNEX\ASMMAP.sys
23:11:42.0338 5856	ASMMAP - ok
23:11:42.0432 5856	AsyncMac        (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys
23:11:42.0494 5856	AsyncMac - ok
23:11:42.0541 5856	atapi           (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys
23:11:42.0556 5856	atapi - ok
23:11:42.0634 5856	athr            (4df523f49694b2884f8e5d870bf3e253) C:\Windows\system32\DRIVERS\athr.sys
23:11:42.0712 5856	athr - ok
23:11:42.0822 5856	avgio           (0b497c79824f8e1bf22fa6aacd3de3a0) C:\Program Files\Avira\AntiVir Desktop\avgio.sys
23:11:42.0837 5856	avgio - ok
23:11:42.0915 5856	avgntflt        (14fe36d8f2c6a2435275338d061a0b66) C:\Windows\system32\DRIVERS\avgntflt.sys
23:11:42.0962 5856	avgntflt - ok
23:11:42.0993 5856	avipbb          (6d52060b59e7d79cd2a044b6add1f1ef) C:\Windows\system32\DRIVERS\avipbb.sys
23:11:43.0009 5856	avipbb - ok
23:11:43.0102 5856	Beep            (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys
23:11:43.0165 5856	Beep - ok
23:11:43.0212 5856	blbdrive        (d4df28447741fd3d953526e33a617397) C:\Windows\system32\drivers\blbdrive.sys
23:11:43.0258 5856	blbdrive - ok
23:11:43.0321 5856	bowser          (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys
23:11:43.0383 5856	bowser - ok
23:11:43.0430 5856	BrFiltLo        (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys
23:11:43.0539 5856	BrFiltLo - ok
23:11:43.0633 5856	BrFiltUp        (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys
23:11:43.0680 5856	BrFiltUp - ok
23:11:43.0726 5856	Brserid         (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys
23:11:43.0898 5856	Brserid - ok
23:11:43.0976 5856	BrSerWdm        (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys
23:11:44.0085 5856	BrSerWdm - ok
23:11:44.0116 5856	BrUsbMdm        (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys
23:11:44.0210 5856	BrUsbMdm - ok
23:11:44.0226 5856	BrUsbSer        (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys
23:11:44.0304 5856	BrUsbSer - ok
23:11:44.0350 5856	BTHMODEM        (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys
23:11:44.0428 5856	BTHMODEM - ok
23:11:44.0522 5856	cdfs            (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys
23:11:44.0569 5856	cdfs - ok
23:11:44.0616 5856	cdrom           (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys
23:11:44.0678 5856	cdrom - ok
23:11:44.0756 5856	circlass        (e5d4133f37219dbcfe102bc61072589d) C:\Windows\system32\drivers\circlass.sys
23:11:44.0803 5856	circlass - ok
23:11:44.0834 5856	CLFS            (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys
23:11:44.0850 5856	CLFS - ok
23:11:44.0912 5856	CmBatt          (99afc3795b58cc478fbbbcdc658fcb56) C:\Windows\system32\DRIVERS\CmBatt.sys
23:11:44.0959 5856	CmBatt - ok
23:11:44.0974 5856	cmdide          (0ca25e686a4928484e9fdabd168ab629) C:\Windows\system32\drivers\cmdide.sys
23:11:44.0990 5856	cmdide - ok
23:11:45.0021 5856	Compbatt        (6afef0b60fa25de07c0968983ee4f60a) C:\Windows\system32\DRIVERS\compbatt.sys
23:11:45.0037 5856	Compbatt - ok
23:11:45.0052 5856	crcdisk         (741e9dff4f42d2d8477d0fc1dc0df871) C:\Windows\system32\drivers\crcdisk.sys
23:11:45.0068 5856	crcdisk - ok
23:11:45.0115 5856	CRFILTER        (d18893845ae1c5833b5b2ea9b7f5c670) C:\Windows\system32\DRIVERS\CRFILTER.sys
23:11:45.0177 5856	CRFILTER - ok
23:11:45.0208 5856	Crusoe          (1f07becdca750766a96cda811ba86410) C:\Windows\system32\drivers\crusoe.sys
23:11:45.0271 5856	Crusoe - ok
23:11:45.0349 5856	DfsC            (622c41a07ca7e6dd91770f50d532cb6c) C:\Windows\system32\Drivers\dfsc.sys
23:11:45.0396 5856	DfsC - ok
23:11:45.0474 5856	disk            (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys
23:11:45.0489 5856	disk - ok
23:11:45.0567 5856	drmkaud         (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys
23:11:45.0630 5856	drmkaud - ok
23:11:45.0692 5856	DXGKrnl         (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys
23:11:45.0739 5856	DXGKrnl - ok
23:11:45.0786 5856	E1G60           (5425f74ac0c1dbd96a1e04f17d63f94c) C:\Windows\system32\DRIVERS\E1G60I32.sys
23:11:45.0848 5856	E1G60 - ok
23:11:45.0942 5856	Ecache          (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys
23:11:45.0973 5856	Ecache - ok
23:11:46.0035 5856	elxstor         (23b62471681a124889978f6295b3f4c6) C:\Windows\system32\drivers\elxstor.sys
23:11:46.0066 5856	elxstor - ok
23:11:46.0113 5856	ErrDev          (3db974f3935483555d7148663f726c61) C:\Windows\system32\drivers\errdev.sys
23:11:46.0176 5856	ErrDev - ok
23:11:46.0269 5856	exfat           (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys
23:11:46.0316 5856	exfat - ok
23:11:46.0332 5856	fastfat         (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys
23:11:46.0394 5856	fastfat - ok
23:11:46.0456 5856	fdc             (afe1e8b9782a0dd7fb46bbd88e43f89a) C:\Windows\system32\DRIVERS\fdc.sys
23:11:46.0534 5856	fdc - ok
23:11:46.0566 5856	FileInfo        (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys
23:11:46.0597 5856	FileInfo - ok
23:11:46.0612 5856	Filetrace       (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys
23:11:46.0690 5856	Filetrace - ok
23:11:46.0706 5856	flpydisk        (85b7cf99d532820495d68d747fda9ebd) C:\Windows\system32\DRIVERS\flpydisk.sys
23:11:46.0784 5856	flpydisk - ok
23:11:46.0815 5856	FltMgr          (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys
23:11:46.0846 5856	FltMgr - ok
23:11:46.0893 5856	Fs_Rec          (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys
23:11:46.0956 5856	Fs_Rec - ok
23:11:46.0987 5856	gagp30kx        (34582a6e6573d54a07ece5fe24a126b5) C:\Windows\system32\drivers\gagp30kx.sys
23:11:47.0002 5856	gagp30kx - ok
23:11:47.0034 5856	GEARAspiWDM     (8182ff89c65e4d38b2de4bb0fb18564e) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
23:11:47.0049 5856	GEARAspiWDM - ok
23:11:47.0112 5856	ghaio           (31b40f40e09513addc460f6a297ad474) C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys
23:11:47.0174 5856	ghaio - ok
23:11:47.0314 5856	HdAudAddService (cb04c744be0a61b1d648faed182c3b59) C:\Windows\system32\drivers\HdAudio.sys
23:11:47.0377 5856	HdAudAddService - ok
23:11:47.0424 5856	HDAudBus        (062452b7ffd68c8c042a6261fe8dff4a) C:\Windows\system32\DRIVERS\HDAudBus.sys
23:11:47.0470 5856	HDAudBus - ok
23:11:47.0502 5856	HidBth          (1338520e78d90154ed6be8f84de5fceb) C:\Windows\system32\drivers\hidbth.sys
23:11:47.0564 5856	HidBth - ok
23:11:47.0595 5856	HidIr           (ff3160c3a2445128c5a6d9b076da519e) C:\Windows\system32\drivers\hidir.sys
23:11:47.0658 5856	HidIr - ok
23:11:47.0767 5856	HidUsb          (854ca287ab7faf949617a788306d967e) C:\Windows\system32\DRIVERS\hidusb.sys
23:11:47.0814 5856	HidUsb - ok
23:11:47.0829 5856	HpCISSs         (16ee7b23a009e00d835cdb79574a91a6) C:\Windows\system32\drivers\hpcisss.sys
23:11:47.0845 5856	HpCISSs - ok
23:11:47.0892 5856	HTTP            (f870aa3e254628ebeafe754108d664de) C:\Windows\system32\drivers\HTTP.sys
23:11:47.0938 5856	HTTP - ok
23:11:48.0048 5856	hwdatacard      (348c3a9d01e68a0222a246346924aa55) C:\Windows\system32\DRIVERS\ewusbmdm.sys
23:11:48.0110 5856	hwdatacard - ok
23:11:48.0172 5856	hwusbdev        (460b1945c3e6b0419a76e1b507b90b71) C:\Windows\system32\DRIVERS\ewusbdev.sys
23:11:48.0219 5856	hwusbdev - ok
23:11:48.0313 5856	i2omp           (c6b032d69650985468160fc9937cf5b4) C:\Windows\system32\drivers\i2omp.sys
23:11:48.0313 5856	i2omp - ok
23:11:48.0360 5856	i8042prt        (22d56c8184586b7a1f6fa60be5f5a2bd) C:\Windows\system32\DRIVERS\i8042prt.sys
23:11:48.0391 5856	i8042prt - ok
23:11:48.0438 5856	iaStorV         (54155ea1b0df185878e0fc9ec3ac3a14) C:\Windows\system32\drivers\iastorv.sys
23:11:48.0453 5856	iaStorV - ok
23:11:48.0469 5856	iirsp           (2d077bf86e843f901d8db709c95b49a5) C:\Windows\system32\drivers\iirsp.sys
23:11:48.0484 5856	iirsp - ok
23:11:48.0594 5856	IntcAzAudAddService (0557aaee4c86e2c333acd2baf42a7619) C:\Windows\system32\drivers\RTKVHDA.sys
23:11:48.0672 5856	IntcAzAudAddService - ok
23:11:48.0781 5856	intelide        (83aa759f3189e6370c30de5dc5590718) C:\Windows\system32\drivers\intelide.sys
23:11:48.0796 5856	intelide - ok
23:11:48.0843 5856	intelppm        (224191001e78c89dfa78924c3ea595ff) C:\Windows\system32\DRIVERS\intelppm.sys
23:11:48.0890 5856	intelppm - ok
23:11:48.0952 5856	IpFilterDriver  (62c265c38769b864cb25b4bcf62df6c3) C:\Windows\system32\DRIVERS\ipfltdrv.sys
23:11:48.0999 5856	IpFilterDriver - ok
23:11:49.0015 5856	IpInIp - ok
23:11:49.0030 5856	IPMIDRV         (b25aaf203552b7b3491139d582b39ad1) C:\Windows\system32\drivers\ipmidrv.sys
23:11:49.0077 5856	IPMIDRV - ok
23:11:49.0108 5856	IPNAT           (8793643a67b42cec66490b2a0cf92d68) C:\Windows\system32\DRIVERS\ipnat.sys
23:11:49.0155 5856	IPNAT - ok
23:11:49.0186 5856	IRENUM          (109c0dfb82c3632fbd11949b73aeeac9) C:\Windows\system32\drivers\irenum.sys
23:11:49.0218 5856	IRENUM - ok
23:11:49.0233 5856	isapnp          (6c70698a3e5c4376c6ab5c7c17fb0614) C:\Windows\system32\drivers\isapnp.sys
23:11:49.0249 5856	isapnp - ok
23:11:49.0296 5856	iScsiPrt        (232fa340531d940aac623b121a595034) C:\Windows\system32\DRIVERS\msiscsi.sys
23:11:49.0311 5856	iScsiPrt - ok
23:11:49.0342 5856	iteatapi        (bced60d16156e428f8df8cf27b0df150) C:\Windows\system32\drivers\iteatapi.sys
23:11:49.0342 5856	iteatapi - ok
23:11:49.0389 5856	iteraid         (06fa654504a498c30adca8bec4e87e7e) C:\Windows\system32\drivers\iteraid.sys
23:11:49.0405 5856	iteraid - ok
23:11:49.0420 5856	kbdclass        (37605e0a8cf00cbba538e753e4344c6e) C:\Windows\system32\DRIVERS\kbdclass.sys
23:11:49.0436 5856	kbdclass - ok
23:11:49.0467 5856	kbdhid          (18247836959ba67e3511b62846b9c2e0) C:\Windows\system32\drivers\kbdhid.sys
23:11:49.0498 5856	kbdhid - ok
23:11:49.0545 5856	kbfiltr         (27bd4ac228ef6c0d490617c32e86a672) C:\Windows\system32\DRIVERS\kbfiltr.sys
23:11:49.0608 5856	kbfiltr - ok
23:11:49.0639 5856	KSecDD          (86165728af9bf72d6442a894fdfb4f8b) C:\Windows\system32\Drivers\ksecdd.sys
23:11:49.0670 5856	KSecDD - ok
23:11:49.0764 5856	lltdio          (d1c5883087a0c3f1344d9d55a44901f6) C:\Windows\system32\DRIVERS\lltdio.sys
23:11:49.0795 5856	lltdio - ok
23:11:49.0826 5856	LSI_FC          (c7e15e82879bf3235b559563d4185365) C:\Windows\system32\drivers\lsi_fc.sys
23:11:49.0857 5856	LSI_FC - ok
23:11:49.0873 5856	LSI_SAS         (ee01ebae8c9bf0fa072e0ff68718920a) C:\Windows\system32\drivers\lsi_sas.sys
23:11:49.0888 5856	LSI_SAS - ok
23:11:49.0904 5856	LSI_SCSI        (912a04696e9ca30146a62afa1463dd5c) C:\Windows\system32\drivers\lsi_scsi.sys
23:11:49.0920 5856	LSI_SCSI - ok
23:11:49.0951 5856	luafv           (8f5c7426567798e62a3b3614965d62cc) C:\Windows\system32\drivers\luafv.sys
23:11:49.0982 5856	luafv - ok
23:11:50.0060 5856	MBAMProtector   (b7ca8cc3f978201856b6ab82f40953c3) C:\Windows\system32\drivers\mbam.sys
23:11:50.0107 5856	MBAMProtector - ok
23:11:50.0138 5856	megasas         (0001ce609d66632fa17b84705f658879) C:\Windows\system32\drivers\megasas.sys
23:11:50.0154 5856	megasas - ok
23:11:50.0185 5856	MegaSR          (c252f32cd9a49dbfc25ecf26ebd51a99) C:\Windows\system32\drivers\megasr.sys
23:11:50.0216 5856	MegaSR - ok
23:11:50.0247 5856	Modem           (e13b5ea0f51ba5b1512ec671393d09ba) C:\Windows\system32\drivers\modem.sys
23:11:50.0294 5856	Modem - ok
23:11:50.0341 5856	MODEMCSA        (cbb59c41f19efea1a000793e08070a62) C:\Windows\system32\drivers\MODEMCSA.sys
23:11:50.0388 5856	MODEMCSA - ok
23:11:50.0481 5856	monitor         (0a9bb33b56e294f686abb7c1e4e2d8a8) C:\Windows\system32\DRIVERS\monitor.sys
23:11:50.0528 5856	monitor - ok
23:11:50.0559 5856	mouclass        (5bf6a1326a335c5298477754a506d263) C:\Windows\system32\DRIVERS\mouclass.sys
23:11:50.0559 5856	mouclass - ok
23:11:50.0590 5856	mouhid          (93b8d4869e12cfbe663915502900876f) C:\Windows\system32\DRIVERS\mouhid.sys
23:11:50.0637 5856	mouhid - ok
23:11:50.0653 5856	MountMgr        (bdafc88aa6b92f7842416ea6a48e1600) C:\Windows\system32\drivers\mountmgr.sys
23:11:50.0668 5856	MountMgr - ok
23:11:50.0715 5856	mpio            (511d011289755dd9f9a7579fb0b064e6) C:\Windows\system32\drivers\mpio.sys
23:11:50.0731 5856	mpio - ok
23:11:50.0762 5856	mpsdrv          (22241feba9b2defa669c8cb0a8dd7d2e) C:\Windows\system32\drivers\mpsdrv.sys
23:11:50.0793 5856	mpsdrv - ok
23:11:50.0824 5856	Mraid35x        (4fbbb70d30fd20ec51f80061703b001e) C:\Windows\system32\drivers\mraid35x.sys
23:11:50.0840 5856	Mraid35x - ok
23:11:50.0887 5856	MRxDAV          (82cea0395524aacfeb58ba1448e8325c) C:\Windows\system32\drivers\mrxdav.sys
23:11:50.0934 5856	MRxDAV - ok
23:11:50.0996 5856	mrxsmb          (1e94971c4b446ab2290deb71d01cf0c2) C:\Windows\system32\DRIVERS\mrxsmb.sys
23:11:51.0027 5856	mrxsmb - ok
23:11:51.0074 5856	mrxsmb10        (4fccb34d793b116423209c0f8b7a3b03) C:\Windows\system32\DRIVERS\mrxsmb10.sys
23:11:51.0105 5856	mrxsmb10 - ok
23:11:51.0152 5856	mrxsmb20        (c3cb1b40ad4a0124d617a1199b0b9d7c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
23:11:51.0199 5856	mrxsmb20 - ok
23:11:51.0261 5856	msahci          (5457dcfa7c0da43522f4d9d4049c1472) C:\Windows\system32\drivers\msahci.sys
23:11:51.0277 5856	msahci - ok
23:11:51.0308 5856	msdsm           (4468b0f385a86ecddaf8d3ca662ec0e7) C:\Windows\system32\drivers\msdsm.sys
23:11:51.0324 5856	msdsm - ok
23:11:51.0402 5856	Msfs            (a9927f4a46b816c92f461acb90cf8515) C:\Windows\system32\drivers\Msfs.sys
23:11:51.0433 5856	Msfs - ok
23:11:51.0526 5856	msisadrv        (0f400e306f385c56317357d6dea56f62) C:\Windows\system32\drivers\msisadrv.sys
23:11:51.0542 5856	msisadrv - ok
23:11:51.0604 5856	MSKSSRV         (d8c63d34d9c9e56c059e24ec7185cc07) C:\Windows\system32\drivers\MSKSSRV.sys
23:11:51.0636 5856	MSKSSRV - ok
23:11:51.0698 5856	MSPCLOCK        (1d373c90d62ddb641d50e55b9e78d65e) C:\Windows\system32\drivers\MSPCLOCK.sys
23:11:51.0745 5856	MSPCLOCK - ok
23:11:51.0776 5856	MSPQM           (b572da05bf4e098d4bba3a4734fb505b) C:\Windows\system32\drivers\MSPQM.sys
23:11:51.0838 5856	MSPQM - ok
23:11:51.0948 5856	MsRPC           (b49456d70555de905c311bcda6ec6adb) C:\Windows\system32\drivers\MsRPC.sys
23:11:51.0963 5856	MsRPC - ok
23:11:52.0119 5856	mssmbios        (e384487cb84be41d09711c30ca79646c) C:\Windows\system32\DRIVERS\mssmbios.sys
23:11:52.0135 5856	mssmbios - ok
23:11:52.0260 5856	MSTEE           (7199c1eec1e4993caf96b8c0a26bd58a) C:\Windows\system32\drivers\MSTEE.sys
23:11:52.0306 5856	MSTEE - ok
23:11:52.0369 5856	MTsensor        (97affa9d95ffe20eee6229bc6be166cf) C:\Windows\system32\DRIVERS\ATKACPI.sys
23:11:52.0400 5856	MTsensor - ok
23:11:52.0447 5856	Mup             (6a57b5733d4cb702c8ea4542e836b96c) C:\Windows\system32\Drivers\mup.sys
23:11:52.0462 5856	Mup - ok
23:11:52.0540 5856	NativeWifiP     (85c44fdff9cf7e72a40dcb7ec06a4416) C:\Windows\system32\DRIVERS\nwifi.sys
23:11:52.0572 5856	NativeWifiP - ok
23:11:52.0603 5856	NDIS            (1357274d1883f68300aeadd15d7bbb42) C:\Windows\system32\drivers\ndis.sys
23:11:52.0650 5856	NDIS - ok
23:11:52.0712 5856	NdisTapi        (0e186e90404980569fb449ba7519ae61) C:\Windows\system32\DRIVERS\ndistapi.sys
23:11:52.0759 5856	NdisTapi - ok
23:11:52.0774 5856	Ndisuio         (d6973aa34c4d5d76c0430b181c3cd389) C:\Windows\system32\DRIVERS\ndisuio.sys
23:11:52.0837 5856	Ndisuio - ok
23:11:52.0899 5856	NdisWan         (818f648618ae34f729fdb47ec68345c3) C:\Windows\system32\DRIVERS\ndiswan.sys
23:11:52.0946 5856	NdisWan - ok
23:11:52.0993 5856	NDProxy         (71dab552b41936358f3b541ae5997fb3) C:\Windows\system32\drivers\NDProxy.sys
23:11:53.0040 5856	NDProxy - ok
23:11:53.0086 5856	NetBIOS         (bcd093a5a6777cf626434568dc7dba78) C:\Windows\system32\DRIVERS\netbios.sys
23:11:53.0149 5856	NetBIOS - ok
23:11:53.0242 5856	netbt           (ecd64230a59cbd93c85f1cd1cab9f3f6) C:\Windows\system32\DRIVERS\netbt.sys
23:11:53.0289 5856	netbt - ok
23:11:53.0352 5856	nfrd960         (2e7fb731d4790a1bc6270accefacb36e) C:\Windows\system32\drivers\nfrd960.sys
23:11:53.0367 5856	nfrd960 - ok
23:11:53.0430 5856	Npfs            (d36f239d7cce1931598e8fb90a0dbc26) C:\Windows\system32\drivers\Npfs.sys
23:11:53.0476 5856	Npfs - ok
23:11:53.0523 5856	nsiproxy        (609773e344a97410ce4ebf74a8914fcf) C:\Windows\system32\drivers\nsiproxy.sys
23:11:53.0586 5856	nsiproxy - ok
23:11:53.0710 5856	Ntfs            (6a4a98cee84cf9e99564510dda4baa47) C:\Windows\system32\drivers\Ntfs.sys
23:11:53.0788 5856	Ntfs - ok
23:11:53.0929 5856	ntrigdigi       (e875c093aec0c978a90f30c9e0dfbb72) C:\Windows\system32\drivers\ntrigdigi.sys
23:11:54.0022 5856	ntrigdigi - ok
23:11:54.0163 5856	Null            (c5dbbcda07d780bda9b685df333bb41e) C:\Windows\system32\drivers\Null.sys
23:11:54.0210 5856	Null - ok
23:11:54.0397 5856	NVENETFD        (adb84b1e6b837c45443aa25abe9e7012) C:\Windows\system32\DRIVERS\nvmfdx32.sys
23:11:54.0522 5856	NVENETFD - ok
23:11:54.0693 5856	NVHDA           (2c7ac27710e8d41c1eb7d1599187d237) C:\Windows\system32\drivers\nvhda32v.sys
23:11:54.0787 5856	NVHDA - ok
23:11:55.0364 5856	nvlddmkm        (b5d2b15d3eba77bef9392fbefb3ddda0) C:\Windows\system32\DRIVERS\nvlddmkm.sys
23:11:55.0801 5856	nvlddmkm - ok
23:11:55.0941 5856	nvraid          (2edf9e7751554b42cbb60116de727101) C:\Windows\system32\drivers\nvraid.sys
23:11:55.0972 5856	nvraid - ok
23:11:56.0004 5856	nvsmu           (736054614ab962d4ec01ef4abce115f1) C:\Windows\system32\DRIVERS\nvsmu.sys
23:11:56.0066 5856	nvsmu - ok
23:11:56.0097 5856	nvstor          (abed0c09758d1d97db0042dbb2688177) C:\Windows\system32\drivers\nvstor.sys
23:11:56.0128 5856	nvstor - ok
23:11:56.0160 5856	nv_agp          (18bbdf913916b71bd54575bdb6eeac0b) C:\Windows\system32\drivers\nv_agp.sys
23:11:56.0191 5856	nv_agp - ok
23:11:56.0206 5856	NwlnkFlt - ok
23:11:56.0222 5856	NwlnkFwd - ok
23:11:56.0269 5856	ohci1394        (790e27c3db53410b40ff9ef2fd10a1d9) C:\Windows\system32\DRIVERS\ohci1394.sys
23:11:56.0331 5856	ohci1394 - ok
23:11:56.0378 5856	Parport         (0fa9b5055484649d63c303fe404e5f4d) C:\Windows\system32\drivers\parport.sys
23:11:56.0440 5856	Parport - ok
23:11:56.0472 5856	partmgr         (57389fa59a36d96b3eb09d0cb91e9cdc) C:\Windows\system32\drivers\partmgr.sys
23:11:56.0487 5856	partmgr - ok
23:11:56.0518 5856	Parvdm          (4f9a6a8a31413180d0fcb279ad5d8112) C:\Windows\system32\drivers\parvdm.sys
23:11:56.0596 5856	Parvdm - ok
23:11:56.0643 5856	pci             (941dc1d19e7e8620f40bbc206981efdb) C:\Windows\system32\drivers\pci.sys
23:11:56.0659 5856	pci - ok
23:11:56.0706 5856	pciide          (fc175f5ddab666d7f4d17449a547626f) C:\Windows\system32\drivers\pciide.sys
23:11:56.0721 5856	pciide - ok
23:11:56.0737 5856	pcmcia          (e6f3fb1b86aa519e7698ad05e58b04e5) C:\Windows\system32\drivers\pcmcia.sys
23:11:56.0752 5856	pcmcia - ok
23:11:56.0799 5856	PEAUTH          (6349f6ed9c623b44b52ea3c63c831a92) C:\Windows\system32\drivers\peauth.sys
23:11:56.0893 5856	PEAUTH - ok
23:11:57.0002 5856	PptpMiniport    (ecfffaec0c1ecd8dbc77f39070ea1db1) C:\Windows\system32\DRIVERS\raspptp.sys
23:11:57.0049 5856	PptpMiniport - ok
23:11:57.0080 5856	Processor       (2027293619dd0f047c584cf2e7df4ffd) C:\Windows\system32\drivers\processr.sys
23:11:57.0111 5856	Processor - ok
23:11:57.0174 5856	PSched          (99514faa8df93d34b5589187db3aa0ba) C:\Windows\system32\DRIVERS\pacer.sys
23:11:57.0205 5856	PSched - ok
23:11:57.0236 5856	PxHelp20        (49452bfcec22f36a7a9b9c2181bc3042) C:\Windows\system32\Drivers\PxHelp20.sys
23:11:57.0298 5856	PxHelp20 - ok
23:11:57.0361 5856	ql2300          (0a6db55afb7820c99aa1f3a1d270f4f6) C:\Windows\system32\drivers\ql2300.sys
23:11:57.0408 5856	ql2300 - ok
23:11:57.0439 5856	ql40xx          (81a7e5c076e59995d54bc1ed3a16e60b) C:\Windows\system32\drivers\ql40xx.sys
23:11:57.0454 5856	ql40xx - ok
23:11:57.0486 5856	QWAVEdrv        (9f5e0e1926014d17486901c88eca2db7) C:\Windows\system32\drivers\qwavedrv.sys
23:11:57.0548 5856	QWAVEdrv - ok
23:11:57.0579 5856	RasAcd          (147d7f9c556d259924351feb0de606c3) C:\Windows\system32\DRIVERS\rasacd.sys
23:11:57.0642 5856	RasAcd - ok
23:11:57.0673 5856	Rasl2tp         (a214adbaf4cb47dd2728859ef31f26b0) C:\Windows\system32\DRIVERS\rasl2tp.sys
23:11:57.0735 5856	Rasl2tp - ok
23:11:57.0798 5856	RasPppoe        (509a98dd18af4375e1fc40bc175f1def) C:\Windows\system32\DRIVERS\raspppoe.sys
23:11:57.0829 5856	RasPppoe - ok
23:11:57.0860 5856	RasSstp         (2005f4a1e05fa09389ac85840f0a9e4d) C:\Windows\system32\DRIVERS\rassstp.sys
23:11:57.0891 5856	RasSstp - ok
23:11:57.0922 5856	rdbss           (b14c9d5b9add2f84f70570bbbfaa7935) C:\Windows\system32\DRIVERS\rdbss.sys
23:11:57.0954 5856	rdbss - ok
23:11:57.0985 5856	RDPCDD          (89e59be9a564262a3fb6c4f4f1cd9899) C:\Windows\system32\DRIVERS\RDPCDD.sys
23:11:58.0032 5856	RDPCDD - ok
23:11:58.0063 5856	rdpdr           (fbc0bacd9c3d7f6956853f64a66e252d) C:\Windows\system32\drivers\rdpdr.sys
23:11:58.0094 5856	rdpdr - ok
23:11:58.0125 5856	RDPENCDD        (9d91fe5286f748862ecffa05f8a0710c) C:\Windows\system32\drivers\rdpencdd.sys
23:11:58.0156 5856	RDPENCDD - ok
23:11:58.0203 5856	RDPWD           (30bfbdfb7f95559ede971f9ddb9a00ba) C:\Windows\system32\drivers\RDPWD.sys
23:11:58.0234 5856	RDPWD - ok
23:11:58.0281 5856	rspndr          (9c508f4074a39e8b4b31d27198146fad) C:\Windows\system32\DRIVERS\rspndr.sys
23:11:58.0328 5856	rspndr - ok
23:11:58.0344 5856	sbp2port        (3ce8f073a557e172b330109436984e30) C:\Windows\system32\drivers\sbp2port.sys
23:11:58.0375 5856	sbp2port - ok
23:11:58.0422 5856	sdbus           (126ea89bcc413ee45e3004fb0764888f) C:\Windows\system32\DRIVERS\sdbus.sys
23:11:58.0468 5856	sdbus - ok
23:11:58.0500 5856	secdrv          (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
23:11:58.0562 5856	secdrv - ok
23:11:58.0718 5856	Serenum         (68e44e331d46f0fb38f0863a84cd1a31) C:\Windows\system32\drivers\serenum.sys
23:11:58.0780 5856	Serenum - ok
23:11:58.0952 5856	Serial          (c70d69a918b178d3c3b06339b40c2e1b) C:\Windows\system32\drivers\serial.sys
23:11:59.0030 5856	Serial - ok
23:11:59.0248 5856	sermouse        (8af3d28a879bf75db53a0ee7a4289624) C:\Windows\system32\drivers\sermouse.sys
23:11:59.0311 5856	sermouse - ok
23:11:59.0592 5856	sffdisk         (3efa810bdca87f6ecc24f9832243fe86) C:\Windows\system32\drivers\sffdisk.sys
23:11:59.0638 5856	sffdisk - ok
23:11:59.0716 5856	sffp_mmc        (e95d451f7ea3e583aec75f3b3ee42dc5) C:\Windows\system32\drivers\sffp_mmc.sys
23:11:59.0779 5856	sffp_mmc - ok
23:11:59.0810 5856	sffp_sd         (3d0ea348784b7ac9ea9bd9f317980979) C:\Windows\system32\drivers\sffp_sd.sys
23:11:59.0857 5856	sffp_sd - ok
23:11:59.0904 5856	sfloppy         (c33bfbd6e9e41fcd9ffef9729e9faed6) C:\Windows\system32\DRIVERS\sfloppy.sys
23:11:59.0966 5856	sfloppy - ok
23:12:00.0184 5856	sisagp          (1d76624a09a054f682d746b924e2dbc3) C:\Windows\system32\drivers\sisagp.sys
23:12:00.0216 5856	sisagp - ok
23:12:00.0247 5856	SiSRaid2        (43cb7aa756c7db280d01da9b676cfde2) C:\Windows\system32\drivers\sisraid2.sys
23:12:00.0278 5856	SiSRaid2 - ok
23:12:00.0294 5856	SiSRaid4        (a99c6c8b0baa970d8aa59ddc50b57f94) C:\Windows\system32\drivers\sisraid4.sys
23:12:00.0325 5856	SiSRaid4 - ok
23:12:00.0387 5856	Smb             (7b75299a4d201d6a6533603d6914ab04) C:\Windows\system32\DRIVERS\smb.sys
23:12:00.0434 5856	Smb - ok
23:12:00.0528 5856	smserial        (c8a58fc905c9184fa70e37f71060c64d) C:\Windows\system32\DRIVERS\smserial.sys
23:12:00.0652 5856	smserial - ok
23:12:01.0027 5856	SNP2UVC         (85da7b2a2f248c8c69d7d0a526342683) C:\Windows\system32\DRIVERS\snp2uvc.sys
23:12:01.0167 5856	SNP2UVC - ok
23:12:01.0292 5856	spldr           (7aebdeef071fe28b0eef2cdd69102bff) C:\Windows\system32\drivers\spldr.sys
23:12:01.0323 5856	spldr - ok
23:12:01.0510 5856	srv             (41987f9fc0e61adf54f581e15029ad91) C:\Windows\system32\DRIVERS\srv.sys
23:12:01.0573 5856	srv - ok
23:12:01.0791 5856	srv2            (ff33aff99564b1aa534f58868cbe41ef) C:\Windows\system32\DRIVERS\srv2.sys
23:12:01.0854 5856	srv2 - ok
23:12:01.0885 5856	srvnet          (7605c0e1d01a08f3ecd743f38b834a44) C:\Windows\system32\DRIVERS\srvnet.sys
23:12:01.0932 5856	srvnet - ok
23:12:01.0978 5856	ssmdrv          (5ec550b8952882ee856b862cf648522d) C:\Windows\system32\DRIVERS\ssmdrv.sys
23:12:01.0994 5856	ssmdrv - ok
23:12:02.0103 5856	swenum          (7ba58ecf0c0a9a69d44b3dca62becf56) C:\Windows\system32\DRIVERS\swenum.sys
23:12:02.0119 5856	swenum - ok
23:12:02.0228 5856	Symc8xx         (192aa3ac01df071b541094f251deed10) C:\Windows\system32\drivers\symc8xx.sys
23:12:02.0259 5856	Symc8xx - ok
23:12:02.0306 5856	Sym_hi          (8c8eb8c76736ebaf3b13b633b2e64125) C:\Windows\system32\drivers\sym_hi.sys
23:12:02.0322 5856	Sym_hi - ok
23:12:02.0368 5856	Sym_u3          (8072af52b5fd103bbba387a1e49f62cb) C:\Windows\system32\drivers\sym_u3.sys
23:12:02.0384 5856	Sym_u3 - ok
23:12:02.0415 5856	SynTP           (db835c324cd488a86e9bfc2c3fd29cd8) C:\Windows\system32\DRIVERS\SynTP.sys
23:12:02.0493 5856	SynTP - ok
23:12:02.0805 5856	Tcpip           (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\drivers\tcpip.sys
23:12:02.0852 5856	Tcpip - ok
23:12:03.0133 5856	Tcpip6          (814a1c66fbd4e1b310a517221f1456bf) C:\Windows\system32\DRIVERS\tcpip.sys
23:12:03.0336 5856	Tcpip6 - ok
23:12:03.0476 5856	tcpipreg        (608c345a255d82a6289c2d468eb41fd7) C:\Windows\system32\drivers\tcpipreg.sys
23:12:03.0538 5856	tcpipreg - ok
23:12:03.0601 5856	TDPIPE          (5dcf5e267be67a1ae926f2df77fbcc56) C:\Windows\system32\drivers\tdpipe.sys
23:12:03.0710 5856	TDPIPE - ok
23:12:03.0726 5856	TDTCP           (389c63e32b3cefed425b61ed92d3f021) C:\Windows\system32\drivers\tdtcp.sys
23:12:03.0788 5856	TDTCP - ok
23:12:04.0022 5856	tdx             (76b06eb8a01fc8624d699e7045303e54) C:\Windows\system32\DRIVERS\tdx.sys
23:12:04.0084 5856	tdx - ok
23:12:04.0225 5856	TermDD          (3cad38910468eab9a6479e2f01db43c7) C:\Windows\system32\DRIVERS\termdd.sys
23:12:04.0256 5856	TermDD - ok
23:12:04.0412 5856	tssecsrv        (dcf0f056a2e4f52287264f5ab29cf206) C:\Windows\system32\DRIVERS\tssecsrv.sys
23:12:04.0474 5856	tssecsrv - ok
23:12:04.0599 5856	tunmp           (caecc0120ac49e3d2f758b9169872d38) C:\Windows\system32\DRIVERS\tunmp.sys
23:12:04.0693 5856	tunmp - ok
23:12:04.0833 5856	tunnel          (300db877ac094feab0be7688c3454a9c) C:\Windows\system32\DRIVERS\tunnel.sys
23:12:04.0864 5856	tunnel - ok
23:12:04.0958 5856	uagp35          (7d33c4db2ce363c8518d2dfcf533941f) C:\Windows\system32\drivers\uagp35.sys
23:12:04.0989 5856	uagp35 - ok
23:12:05.0020 5856	udfs            (d9728af68c4c7693cb100b8441cbdec6) C:\Windows\system32\DRIVERS\udfs.sys
23:12:05.0067 5856	udfs - ok
23:12:05.0114 5856	uliagpkx        (b0acfdc9e4af279e9116c03e014b2b27) C:\Windows\system32\drivers\uliagpkx.sys
23:12:05.0145 5856	uliagpkx - ok
23:12:05.0176 5856	uliahci         (9224bb254f591de4ca8d572a5f0d635c) C:\Windows\system32\drivers\uliahci.sys
23:12:05.0208 5856	uliahci - ok
23:12:05.0332 5856	UlSata          (8514d0e5cd0534467c5fc61be94a569f) C:\Windows\system32\drivers\ulsata.sys
23:12:05.0364 5856	UlSata - ok
23:12:05.0410 5856	ulsata2         (38c3c6e62b157a6bc46594fada45c62b) C:\Windows\system32\drivers\ulsata2.sys
23:12:05.0426 5856	ulsata2 - ok
23:12:05.0566 5856	umbus           (32cff9f809ae9aed85464492bf3e32d2) C:\Windows\system32\DRIVERS\umbus.sys
23:12:05.0629 5856	umbus - ok
23:12:05.0816 5856	USBAAPL         (d4fb6ecc60a428564ba8768b0e23c0fc) C:\Windows\system32\Drivers\usbaapl.sys
23:12:05.0863 5856	USBAAPL - ok
23:12:05.0956 5856	usbccgp         (caf811ae4c147ffcd5b51750c7f09142) C:\Windows\system32\DRIVERS\usbccgp.sys
23:12:06.0019 5856	usbccgp - ok
23:12:06.0034 5856	usbcir          (e9476e6c486e76bc4898074768fb7131) C:\Windows\system32\drivers\usbcir.sys
23:12:06.0128 5856	usbcir - ok
23:12:06.0175 5856	usbehci         (79e96c23a97ce7b8f14d310da2db0c9b) C:\Windows\system32\DRIVERS\usbehci.sys
23:12:06.0237 5856	usbehci - ok
23:12:06.0300 5856	usbhub          (4673bbcb006af60e7abddbe7a130ba42) C:\Windows\system32\DRIVERS\usbhub.sys
23:12:06.0346 5856	usbhub - ok
23:12:06.0487 5856	usbohci         (ce697fee0d479290d89bec80dfe793b7) C:\Windows\system32\DRIVERS\usbohci.sys
23:12:06.0549 5856	usbohci - ok
23:12:06.0612 5856	usbprint        (e75c4b5269091d15a2e7dc0b6d35f2f5) C:\Windows\system32\DRIVERS\usbprint.sys
23:12:06.0690 5856	usbprint - ok
23:12:06.0768 5856	usbscan         (a508c9bd8724980512136b039bba65e9) C:\Windows\system32\DRIVERS\usbscan.sys
23:12:06.0830 5856	usbscan - ok
23:12:06.0877 5856	USBSTOR         (be3da31c191bc222d9ad503c5224f2ad) C:\Windows\system32\DRIVERS\USBSTOR.SYS
23:12:06.0924 5856	USBSTOR - ok
23:12:06.0970 5856	usbuhci         (814d653efc4d48be3b04a307eceff56f) C:\Windows\system32\DRIVERS\usbuhci.sys
23:12:07.0033 5856	usbuhci - ok
23:12:07.0158 5856	usbvideo        (e67998e8f14cb0627a769f6530bcb352) C:\Windows\system32\Drivers\usbvideo.sys
23:12:07.0236 5856	usbvideo - ok
23:12:07.0454 5856	vga             (87b06e1f30b749a114f74622d013f8d4) C:\Windows\system32\DRIVERS\vgapnp.sys
23:12:07.0532 5856	vga - ok
23:12:07.0672 5856	VgaSave         (2e93ac0a1d8c79d019db6c51f036636c) C:\Windows\System32\drivers\vga.sys
23:12:07.0782 5856	VgaSave - ok
23:12:07.0813 5856	viaagp          (5d7159def58a800d5781ba3a879627bc) C:\Windows\system32\drivers\viaagp.sys
23:12:07.0844 5856	viaagp - ok
23:12:07.0875 5856	ViaC7           (c4f3a691b5bad343e6249bd8c2d45dee) C:\Windows\system32\drivers\viac7.sys
23:12:07.0953 5856	ViaC7 - ok
23:12:07.0969 5856	viaide          (aadf5587a4063f52c2c3fed7887426fc) C:\Windows\system32\drivers\viaide.sys
23:12:07.0984 5856	viaide - ok
23:12:08.0031 5856	volmgr          (69503668ac66c77c6cd7af86fbdf8c43) C:\Windows\system32\drivers\volmgr.sys
23:12:08.0047 5856	volmgr - ok
23:12:08.0094 5856	volmgrx         (23e41b834759917bfd6b9a0d625d0c28) C:\Windows\system32\drivers\volmgrx.sys
23:12:08.0125 5856	volmgrx - ok
23:12:08.0172 5856	volsnap         (147281c01fcb1df9252de2a10d5e7093) C:\Windows\system32\drivers\volsnap.sys
23:12:08.0218 5856	volsnap - ok
23:12:08.0250 5856	vsmraid         (587253e09325e6bf226b299774b728a9) C:\Windows\system32\drivers\vsmraid.sys
23:12:08.0281 5856	vsmraid - ok
23:12:08.0374 5856	WacomPen        (48dfee8f1af7c8235d4e626f0c4fe031) C:\Windows\system32\drivers\wacompen.sys
23:12:08.0484 5856	WacomPen - ok
23:12:08.0671 5856	Wanarp          (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
23:12:08.0733 5856	Wanarp - ok
23:12:08.0749 5856	Wanarpv6        (55201897378cca7af8b5efd874374a26) C:\Windows\system32\DRIVERS\wanarp.sys
23:12:08.0796 5856	Wanarpv6 - ok
23:12:09.0045 5856	Wd              (78fe9542363f297b18c027b2d7e7c07f) C:\Windows\system32\drivers\wd.sys
23:12:09.0045 5856	Wd - ok
23:12:09.0123 5856	Wdf01000        (b6f0a7ad6d4bd325fbcd8bac96cd8d96) C:\Windows\system32\drivers\Wdf01000.sys
23:12:09.0154 5856	Wdf01000 - ok
23:12:09.0326 5856	WmiAcpi         (2e7255d172df0b8283cdfb7b433b864e) C:\Windows\system32\DRIVERS\wmiacpi.sys
23:12:09.0357 5856	WmiAcpi - ok
23:12:09.0420 5856	WpdUsb          (de9d36f91a4df3d911626643debf11ea) C:\Windows\system32\DRIVERS\wpdusb.sys
23:12:09.0451 5856	WpdUsb - ok
23:12:09.0482 5856	ws2ifsl         (e3a3cb253c0ec2494d4a61f5e43a389c) C:\Windows\system32\drivers\ws2ifsl.sys
23:12:09.0529 5856	ws2ifsl - ok
23:12:09.0576 5856	WUDFRd          (ac13cb789d93412106b0fb6c7eb2bcb6) C:\Windows\system32\DRIVERS\WUDFRd.sys
23:12:09.0607 5856	WUDFRd - ok
23:12:09.0700 5856	yukonwlh        (7d1f3b131d503ef43ee594b5a2b9b427) C:\Windows\system32\DRIVERS\yk60x86.sys
23:12:09.0763 5856	yukonwlh - ok
23:12:09.0794 5856	MBR (0x1B8)     (64b1e91c5c6c2157642651010728f90f) \Device\Harddisk0\DR0
23:12:10.0122 5856	\Device\Harddisk0\DR0 - ok
23:12:10.0122 5856	MBR (0x1B8)     (671b81004fdd1588fa9ed1331c9ceca9) \Device\Harddisk1\DR4
23:12:17.0937 5856	\Device\Harddisk1\DR4 - ok
23:12:17.0968 5856	Boot (0x1200)   (dee3e6a168f2db2e996f2ab63c3c3854) \Device\Harddisk0\DR0\Partition0
23:12:17.0968 5856	\Device\Harddisk0\DR0\Partition0 - ok
23:12:18.0000 5856	Boot (0x1200)   (5f2bfe29efbec95b639df4583a68b225) \Device\Harddisk0\DR0\Partition1
23:12:18.0000 5856	\Device\Harddisk0\DR0\Partition1 - ok
23:12:18.0015 5856	Boot (0x1200)   (1a2b2a497d664150766fb17cb0d7b270) \Device\Harddisk1\DR4\Partition0
23:12:18.0015 5856	\Device\Harddisk1\DR4\Partition0 - ok
23:12:18.0015 5856	============================================================
23:12:18.0015 5856	Scan finished
23:12:18.0015 5856	============================================================
23:12:18.0031 5284	Detected object count: 0
23:12:18.0031 5284	Actual detected object count: 0
         


Alt 12.01.2012, 23:40   #17
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Zitat:
Zitat von cosinus Beitrag anzeigen
Ich hoffe NICHT bei softonic
Die Downloadlinks sind alle sauber in der Anleitung zu sehen
Sorry, aber schön aneinander vorbei gequatscht

leider wirklich bei softonic ... als erstes, als zweites dann direkt bei kaspersky.

Deswegen, kann ich auf der Seite auch nicht posten
__________________


Alt 12.01.2012, 23:43   #18
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



sry aber

Finger weg von Softonic!!

Softonic ist eine Toolbar- und Adwareschleuder! Finger weg! Software lädt man sich mit oberster Priorität direkt vom Hersteller und nicht von solchen Toolbarklitschen wie Softonic! Im Notfall würde natürlich chip.de gehen
__________________
__________________

Alt 12.01.2012, 23:46   #19
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Zitat:
Zitat von cosinus Beitrag anzeigen
sry aber

Finger weg von Softonic!!

Softonic ist eine Toolbar- und Adwareschleuder! Finger weg! Software lädt man sich mit oberster Priorität direkt vom Hersteller und nicht von solchen Toolbarklitschen wie Softonic! Im Notfall würde natürlich chip.de gehen
Eyyyy, ist schon spät

Hab alle Häkchen entfernt gehabt, mich da aber auch schon gewundert. Sollte mehr uff meinen Bauch hören.


Ist jetzt soweit aber alles ok mit dem letzten post? oder muss ich noch irgendwas ändern?

Geändert von Sunshine_Mel (13.01.2012 um 00:00 Uhr)

Alt 13.01.2012, 01:20   #20
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Dann bitte jetzt CF ausführen:

ComboFix

Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Schliesse alle Programme, vor allem dein Antivirenprogramm und andere Hintergrundwächter sowie deinen Internetbrowser.
  • Starte cofi.exe von deinem Desktop aus, bestätige die Warnmeldungen, führe die Updates durch (falls vorgeschlagen), installiere die Wiederherstellungskonsole (falls vorgeschlagen) und lass dein System durchsuchen.
    Vermeide es auch während Combofix läuft die Maus und Tastatur zu benutzen.
  • Im Anschluss öffnet sich automatisch eine combofix.txt, diesen Inhalt bitte kopieren ([Strg]a, [Strg]c) und in deinen Beitrag einfügen ([Strg]v). Die Datei findest du außerdem unter: C:\ComboFix.txt.
Wichtiger Hinweis:
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!

Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich ziehen und eine Bereinigung der Infektion noch erschweren.

Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie

Zitat:
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
startest du Windows dann manuell neu und die Fehlermeldungen sollten nicht mehr auftauchen.

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 13.01.2012, 18:48   #21
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Hallöchen Arne,

hier die Combofix.log

Code:
ATTFilter
ComboFix 12-01-13.03 - Administrator 13.01.2012  17:43:55.1.2 - x86
Microsoft® Windows Vista™ Home Premium   6.0.6002.2.1252.49.1031.18.3070.1601 [GMT 1:00]
ausgeführt von:: c:\users\Administrator\Desktop\ComboFix.exe
AV: AntiVir Desktop *Disabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
SP: AntiVir Desktop *Disabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((   Weitere Löschungen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Jenny\AppData\Roaming\Desktopicon
c:\users\Jenny\AppData\Roaming\Desktopicon\eBay.ico
c:\users\Jenny\AppData\Roaming\Desktopicon\uninst.exe
.
.
(((((((((((((((((((((((   Dateien erstellt von 2011-12-13 bis 2012-01-13  ))))))))))))))))))))))))))))))
.
.
2012-01-13 16:49 . 2012-01-13 16:49	--------	d-----w-	c:\users\Jenny\AppData\Local\temp
2012-01-13 16:49 . 2012-01-13 16:49	--------	d-----w-	c:\users\Gast\AppData\Local\temp
2012-01-13 16:49 . 2012-01-13 16:49	--------	d-----w-	c:\users\Default\AppData\Local\temp
2012-01-12 20:49 . 2012-01-12 20:49	--------	d-----w-	C:\_OTL
2012-01-11 19:30 . 2012-01-11 19:30	--------	d-----w-	c:\program files\ESET
2012-01-09 20:41 . 2012-01-09 20:41	--------	d-----w-	c:\users\Jenny\AppData\Roaming\Malwarebytes
2012-01-09 20:40 . 2012-01-09 20:40	--------	d-----w-	c:\programdata\Malwarebytes
2012-01-09 20:40 . 2012-01-09 20:41	--------	d-----w-	c:\program files\Malwarebytes' Anti-Malware
2012-01-09 20:40 . 2011-12-10 14:24	20464	----a-w-	c:\windows\system32\drivers\mbam.sys
2012-01-09 20:12 . 2012-01-10 18:24	--------	d-----w-	c:\users\Administrator
2012-01-06 13:11 . 2009-06-22 19:01	112128	----a-w-	c:\windows\system32\drivers\ewusbnet.sys
2012-01-06 13:11 . 2009-06-22 18:38	102912	----a-w-	c:\windows\system32\drivers\ewusbmdm.sys
2012-01-06 13:11 . 2009-06-22 18:26	100736	----a-w-	c:\windows\system32\drivers\ewusbdev.sys
2012-01-06 13:11 . 2007-08-09 03:06	23424	----a-w-	c:\windows\system32\drivers\ewdcsc.sys
2012-01-06 13:11 . 2012-01-06 13:13	--------	d-----w-	c:\program files\Mobile Partner
2011-12-30 23:20 . 2011-11-21 10:47	6823496	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{13C4E3AE-75B9-4F63-9EBA-0E65F0197AA2}\mpengine.dll
2011-12-24 16:30 . 2011-12-24 16:30	1207568	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2011-12-15 20:29 . 2011-10-27 08:01	3602816	----a-w-	c:\windows\system32\ntkrnlpa.exe
2011-12-15 20:29 . 2011-10-27 08:01	3550080	----a-w-	c:\windows\system32\ntoskrnl.exe
2011-12-15 20:29 . 2011-11-23 13:37	2043904	----a-w-	c:\windows\system32\win32k.sys
2011-12-15 20:29 . 2011-10-14 16:02	429056	----a-w-	c:\windows\system32\EncDec.dll
2011-12-15 20:29 . 2011-11-08 12:10	2409784	----a-w-	c:\program files\Windows Mail\OESpamFilter.dat
2011-12-15 20:29 . 2011-10-25 15:56	49152	----a-w-	c:\windows\system32\csrsrv.dll
2011-12-15 20:29 . 2011-11-08 14:42	2048	----a-w-	c:\windows\system32\tzres.dll
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-01-12 21:39 . 2008-11-10 23:58	45056	----a-w-	c:\windows\system32\acovcnt.exe
2011-12-11 19:08 . 2011-12-11 19:08	161792	----a-w-	c:\windows\system32\msls31.dll
2011-12-11 19:07 . 2011-12-11 19:07	86528	----a-w-	c:\windows\system32\iesysprep.dll
2011-12-11 19:07 . 2011-12-11 19:07	76800	----a-w-	c:\windows\system32\SetIEInstalledDate.exe
2011-12-11 19:07 . 2011-12-11 19:07	74752	----a-w-	c:\windows\system32\RegisterIEPKEYs.exe
2011-12-11 19:07 . 2011-12-11 19:07	48640	----a-w-	c:\windows\system32\mshtmler.dll
2011-12-11 19:07 . 2011-12-11 19:07	63488	----a-w-	c:\windows\system32\tdc.ocx
2011-12-11 19:07 . 2011-12-11 19:07	367104	----a-w-	c:\windows\system32\html.iec
2011-12-11 19:07 . 2011-12-11 19:07	74752	----a-w-	c:\windows\system32\iesetup.dll
2011-12-11 19:07 . 2011-12-11 19:07	420864	----a-w-	c:\windows\system32\vbscript.dll
2011-12-11 19:07 . 2011-12-11 19:07	23552	----a-w-	c:\windows\system32\licmgr10.dll
2011-12-11 19:07 . 2011-12-11 19:07	152064	----a-w-	c:\windows\system32\wextract.exe
2011-12-11 19:07 . 2011-12-11 19:07	150528	----a-w-	c:\windows\system32\iexpress.exe
2011-12-11 19:07 . 2011-12-11 19:07	35840	----a-w-	c:\windows\system32\imgutil.dll
2011-12-11 19:07 . 2011-12-11 19:07	142848	----a-w-	c:\windows\system32\ieUnatt.exe
2011-12-11 19:07 . 2011-12-11 19:07	11776	----a-w-	c:\windows\system32\mshta.exe
2011-12-11 19:07 . 2011-12-11 19:07	101888	----a-w-	c:\windows\system32\admparse.dll
2011-12-11 19:07 . 2011-12-11 19:07	110592	----a-w-	c:\windows\system32\IEAdvpack.dll
2011-11-19 19:05 . 2011-06-14 22:50	414368	----a-w-	c:\windows\system32\FlashPlayerCPLApp.cpl
2009-12-05 13:28 . 2009-07-26 14:31	119808	----a-w-	c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WindowsWelcomeCenter"="oobefldr.dll" [2009-04-11 2153472]
"LightScribe Control Panel"="c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe" [2008-06-09 2363392]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-11-29 421888]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2011-03-07 421160]
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2011-12-24 460872]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~1\Google\GOOGLE~1\GOEC62~1.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2009-12-11 14:57	948672	----a-r-	c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-12-18 07:58	40368	----a-w-	c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
2008-11-10 23:53	47672	----a-w-	c:\windows\AsScrProlog.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2008-11-10 23:53	3054136	----a-w-	c:\windows\AsScrPro.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATKOSD2]
2008-01-23 23:34	7766016	----a-w-	c:\program files\ATKOSD2\ATKOSD2.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\avgnt]
2009-03-02 11:08	209153	----a-w-	c:\program files\Avira\AntiVir Desktop\avgnt.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
2008-07-19 03:52	104936	----a-w-	c:\program files\CyberLink\Power2Go\CLMLSvc.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
2010-09-01 06:39	1164584	----a-w-	c:\program files\DivX\DivX Update\DivXUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe]
2008-01-21 02:25	125952	----a-w-	c:\windows\ehome\ehtray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus SX200 Series]
2007-12-13 15:00	188928	----a-w-	c:\windows\System32\spool\drivers\w32x86\3\E_FATIEFE.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
2009-12-05 13:28	30192	----a-w-	c:\program files\Google\Google Desktop Search\GoogleDesktop.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HControlUser]
2008-01-12 06:40	98304	----a-w-	c:\program files\ATK Hotkey\HControlUser.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2011-03-07 14:33	421160	----a-w-	c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2008-06-09 18:16	2363392	----a-w-	c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
2010-04-16 20:12	3872080	----a-w-	c:\program files\Windows Live\Messenger\msnmsgr.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NSSInstallation]
2010-03-08 18:00	497016	----a-w-	c:\program files\DivX\Symantec\scstubinstaller.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2008-07-25 08:30	13548064	----a-w-	c:\windows\System32\nvcpl.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2008-07-25 08:30	92704	----a-w-	c:\windows\System32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P2Go_Menu]
2008-06-14 02:11	210216	----a-w-	c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2010-11-29 16:38	421888	----a-w-	c:\program files\QuickTime\QTTask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
2008-08-12 08:21	6265376	----a-w-	c:\windows\RtHDVCpl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
2009-04-11 06:28	1233920	----a-w-	c:\program files\Windows Sidebar\sidebar.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel]
2008-08-12 08:21	1833504	----a-w-	c:\windows\SkyTel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPStart]
2007-08-17 06:40	102400	----a-w-	c:\program files\Synaptics\SynTP\SynTPStart.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WindowsWelcomeCenter]
2009-04-11 06:28	2153472	----a-w-	c:\windows\System32\oobefldr.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation	REG_MULTI_SZ   	FontCache
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 18:14	451872	----a-w-	c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Inhalt des "geplante Tasks" Ordners
.
2011-02-07 c:\windows\Tasks\Install_NSS.job
- c:\program files\DivX\Symantec\scstubinstaller.exe [2010-03-08 18:00]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://www.google.com/ig/redirectdomain?brand=ASUS&bmod=ASUS
mStart Page = hxxp://alice.aol.de
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
MSConfigStartUp-swg - c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
AddRemove-Free Audio CD Burner_is1 - c:\program files\DVDVideoSoft\Free Audio CD Burner\unins000.exe
AddRemove-Uninstall_is1 - c:\program files\Common Files\DVDVideoSoft\unins000.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net
Rootkit scan 2012-01-13 17:50
Windows 6.0.6002 Service Pack 2 NTFS
.
Scanne versteckte Prozesse... 
.
Scanne versteckte Autostarteinträge... 
.
Scanne versteckte Dateien... 
.
Scan erfolgreich abgeschlossen
versteckte Dateien: 0
.
**************************************************************************
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Internet Explorer\Approved Extensions]
@Denied: (2) (Administrator)
"{FF059E31-CC5A-4E2E-BF3B-96E929D65503}"=hex:51,66,7a,6c,4c,1d,3b,1b,21,87,1f,
   e1,6c,9b,49,03,ab,36,c9,b5,29,9c,15,1a
"{BDEADE7F-C265-11D0-BCED-00A0C90AB50F}"=hex:51,66,7a,6c,4c,1d,3b,1b,6f,c7,f0,
   a3,53,95,b7,5c,a8,e0,5f,fc,c9,40,f5,16
"{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}"=hex:51,66,7a,6c,4c,1d,3b,1b,8f,87,9e,
   18,e1,9f,3e,00,ac,70,27,17,7d,21,a0,aa
"{9030D464-4C02-4ABF-8ECC-5164760863C6}"=hex:51,66,7a,6c,4c,1d,3b,1b,74,cd,2a,
   8e,34,1b,d8,07,9a,c1,0e,38,76,42,23,df
"{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}"=hex:51,66,7a,6c,4c,1d,3b,1b,79,41,9a,
   b0,6a,79,b3,03,9b,76,ae,ab,85,50,04,8e
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration]
@Denied: (2) (Administrator)
"Timestamp"=hex:80,62,72,9f,b8,cf,cc,01
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (Administrator)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
   d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,e5,55,96,3c,30,5e,52,48,bc,65,1a,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
   d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,e5,55,96,3c,30,5e,52,48,bc,65,1a,\
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.HTM"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.HTM"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mht\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.MHT"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mhtml\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.MHT"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.partial\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.PARTIAL"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.svg\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.SVG"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.url\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.URL"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.website\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.WEBSITE"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.XHT"
.
[HKEY_USERS\S-1-5-21-787148086-109556013-2554673955-500\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice]
@Denied: (2) (Administrator)
"Progid"="IE.AssocFile.XHT"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Zeit der Fertigstellung: 2012-01-13  17:52:10
ComboFix-quarantined-files.txt  2012-01-13 16:52
.
Vor Suchlauf: 7 Verzeichnis(se), 85.263.802.368 Bytes frei
Nach Suchlauf: 12 Verzeichnis(se), 89.161.097.216 Bytes frei
.
- - End Of File - - 311E4CBA2E3E7DCA8047922C9643F269
         

Alt 13.01.2012, 19:25   #22
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Ok. Bitte nun Logs mit GMER und OSAM erstellen und posten.
GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen.
Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst.

Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM!

Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe - (aswMBR.exe Anleitung)
    Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten".
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen )
    Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS-Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort.

Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung

Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none).

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 15.01.2012, 17:08   #23
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Hallöchen Arne,

Code:
ATTFilter
GMER 1.0.15.15641 - hxxp://www.gmer.net
Rootkit scan 2012-01-15 15:35:18
Windows 6.0.6002 Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 ST9320320AS rev.0303
Running: gmer.exe; Driver: C:\Users\ADMINI~1\AppData\Local\Temp\fwtoypog.sys


---- System - GMER 1.0.15 ----

SSDT            9ED7A9CC                                  ZwCreateThread
SSDT            9ED7A9B8                                  ZwOpenProcess
SSDT            9ED7A9BD                                  ZwOpenThread
SSDT            9ED7A9C7                                  ZwTerminateProcess

---- Kernel code sections - GMER 1.0.15 ----

.text           ntkrnlpa.exe!KeSetEvent + 221             824E99A4 4 Bytes  [CC, A9, D7, 9E]
.text           ntkrnlpa.exe!KeSetEvent + 3F1             824E9B74 4 Bytes  [B8, A9, D7, 9E]
.text           ntkrnlpa.exe!KeSetEvent + 40D             824E9B90 4 Bytes  [BD, A9, D7, 9E]
.text           ntkrnlpa.exe!KeSetEvent + 621             824E9DA4 4 Bytes  [C7, A9, D7, 9E]
.text           C:\Windows\system32\DRIVERS\nvlddmkm.sys  section is writeable [0x8E206340, 0x3EE587, 0xE8000020]

---- Devices - GMER 1.0.15 ----

AttachedDevice  \Driver\kbdclass \Device\KeyboardClass0   Wdf01000.sys (WDF Dynamic/Microsoft Corporation)
AttachedDevice  \Driver\kbdclass \Device\KeyboardClass1   Wdf01000.sys (WDF Dynamic/Microsoft Corporation)

Device          \Driver\ACPI_HAL \Device\00000077         halmacpi.dll (Hardware Abstraction Layer DLL/Microsoft Corporation)

AttachedDevice  \FileSystem\fastfat \Fat                  fltmgr.sys (Microsoft Dateisystem-Filter-Manager/Microsoft Corporation)

---- EOF - GMER 1.0.15 ----
         
Code:
ATTFilter
Report of OSAM: Autorun Manager v5.0.11926.0
hxxp://www.online-solutions.ru/en/
Saved at 16:39:20 on 15.01.2012

OS: Windows Vista Home Premium Edition Service Pack 2 (Build 6002), 32-bit
Default Browser: Microsoft Corporation Internet Explorer 9.00.8112.16421

Scanner Settings
[x] Rootkits detection (hidden registry)
[x] Rootkits detection (hidden files)
[x] Retrieve files information
[x] Check Microsoft signatures

Filters
[ ] Trusted entries
[ ] Empty entries
[x] Hidden registry entries (rootkit activity)
[x] Exclusively opened files
[x] Not found files
[x] Files without detailed information
[x] Existing files
[ ] Non-startable services
[ ] Non-startable drivers
[x] Active entries
[x] Disabled entries


[AppInit DLLs]
-----( HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows )-----
"AppInit_DLLs" - "Google" - C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL

[Control Panel Objects]
-----( %SystemRoot%\system32 )-----
"DivXControlPanelApplet.cpl" - "DivX, Inc." - C:\Windows\system32\DivXControlPanelApplet.cpl
"FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\Windows\system32\FlashPlayerCPLApp.cpl
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )-----
"mlcfg32.cpl" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\MLCFG32.CPL
"QuickTime" - "Apple Inc." - C:\Program Files\QuickTime\QTSystem\QuickTime.cpl

[Drivers]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"ASMMAP" (ASMMAP) - ? - C:\Program Files\ATKGFNEX\ASMMAP.sys
"avgio" (avgio) - "Avira GmbH" - C:\Program Files\Avira\AntiVir Desktop\avgio.sys
"avgntflt" (avgntflt) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avgntflt.sys
"avipbb" (avipbb) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avipbb.sys
"catchme" (catchme) - ? - C:\Users\ADMINI~1\AppData\Local\Temp\catchme.sys  (File not found)
"ghaio" (ghaio) - ? - C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys  (File found, but it contains no detailed information)
"IP in IP Tunnel Driver" (IpInIp) - ? - C:\Windows\System32\DRIVERS\ipinip.sys  (File not found)
"IPX Traffic Filter Driver" (NwlnkFlt) - ? - C:\Windows\System32\DRIVERS\nwlnkflt.sys  (File not found)
"IPX Traffic Forwarder Driver" (NwlnkFwd) - ? - C:\Windows\System32\DRIVERS\nwlnkfwd.sys  (File not found)
"MBAMProtector" (MBAMProtector) - "Malwarebytes Corporation" - C:\Windows\system32\drivers\mbam.sys
"PxHelp20" (PxHelp20) - "Sonic Solutions" - C:\Windows\System32\Drivers\PxHelp20.sys
"ssmdrv" (ssmdrv) - "Avira GmbH" - C:\Windows\System32\DRIVERS\ssmdrv.sys

[Explorer]
-----( HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components )-----
{10880D85-AAD9-4558-ABDC-2AB1552D831F} "LightScribe Control Panel" - "Hewlett-Packard Company" - "C:\Program Files\Common Files\LightScribe\LSRunOnce.exe"
-----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )-----
{F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll
-----( HKLM\Software\Classes\Protocols\Filter )-----
{807563E5-5146-11D5-A672-00B0D022E945} "Microsoft Office InfoPath XML Mime Filter" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
-----( HKLM\Software\Classes\Protocols\Handler )-----
{314111c7-a502-11d2-bbca-00c04f8ec294} "HxProtocol Class" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
{828030A1-22C1-4009-854F-8E305202313F} "livecall" - "Microsoft Corporation" - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
{828030A1-22C1-4009-854F-8E305202313F} "msnim" - "Microsoft Corporation" - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
{91774881-D725-4E58-B298-07617B9B86A8} "Skype IE add-on Pluggable Protocol" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
{03C514A3-1EFB-4856-9F99-10D7BE1653C0} "Windows Live Mail HTML Asynchronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\Program Files\Windows Live\Mail\mailcomm.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{911051fa-c21c-4246-b470-070cd8df6dc4} ".cab or .zip files" - ? -   (File not found | COM-object registry key not found)
{1b24a030-9b20-49bc-97ac-1be4426f9e59} "ActiveDirectory Folder" - ? -   (File not found | COM-object registry key not found)
{34449847-FD14-4fc8-A75A-7432F5181EFB} "ActiveDirectory Folder" - ? -   (File not found | COM-object registry key not found)
{0563DB41-F538-4B37-A92D-4659049B7766} "CLSID_WLMCMimeFilter" - "Microsoft Corporation" - C:\Program Files\Windows Live\Mail\mailcomm.dll
{0F8604A5-4ECE-4DE1-BA7D-CF10F8AA4F48} "Contacts folder" - ? -   (File not found | COM-object registry key not found)
{2C2577C2-63A7-40e3-9B7F-586602617ECB} "Explorer Query Band" - ? -   (File not found | COM-object registry key not found)
{FAC3CBF6-8697-43d0-BAB9-DCD1FCE19D75} "IE User Assist" - ? -   (File not found | COM-object registry key not found)
{B9E1D2CB-CCFF-4AA6-9579-D7A4754030EF} "iTunes" - "Apple Inc." - C:\Program Files\iTunes\iTunesMiniPlayer.dll
{42042206-2D85-11D3-8CFF-005004838597} "Microsoft Office HTML Icon Handler" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office12\msohevi.dll
{993BE281-6695-4BA5-8A2A-7AACBFAAB69E} "Microsoft Office Metadata Handler" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll
{00020d75-0000-0000-c000-000000000046} "Microsoft Office Outlook" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\MLSHEXT.DLL
{C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} "Microsoft Office Thumbnail Handler" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll
{0006F045-0000-0000-C000-000000000046} "Outlook File Icon Extension" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\OLKFSTUB.DLL
{C8494E42-ACDD-4739-B0FB-217361E4894F} "Sam Account Folder" - ? -   (File not found | COM-object registry key not found)
{E29F9716-5C08-4FCD-955A-119FDB5A522D} "Sam Account Folder" - ? -   (File not found | COM-object registry key not found)
{45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" - "Avira GmbH" - C:\Program Files\Avira\AntiVir Desktop\shlext.dll
{da67b8ad-e81b-4c70-9b91b417b5e33527} "Windows Search Shell Service" - ? -   (File not found | COM-object registry key not found)
{B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" - "Alexander Roshal" - C:\Program Files\WinRAR\rarext.dll

[Internet Explorer]
-----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )-----
{7530BFB8-7293-4D34-9923-61A11451AFC5} "OnlineScanner Control" - "ESET" - C:\PROGRA~1\ESET\ESETON~1\ONLINE~1.OCX / hxxp://download.eset.com/special/eos/OnlineScanner.cab
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )-----
{FF059E31-CC5A-4E2E-BF3B-96E929D65503} "Research" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
{898EA8C8-E7FF-479B-8935-AEC46303B9E5} "Skype Click to Call" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )-----
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} "Adobe PDF Reader Link Helper" - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} "Skype Browser Helper" - "Skype Technologies S.A." - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
{9030D464-4C02-4ABF-8ECC-5164760863C6} "Windows Live ID-Anmelde-Hilfsprogramm" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
{5C255C8A-E604-49b4-9D64-90988571CECB} "{5C255C8A-E604-49b4-9D64-90988571CECB}" - ? -   (File not found | COM-object registry key not found)

[Logon]
-----( %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
-----( %AllUsersProfile%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
-----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )-----
"LightScribe Control Panel" - "Hewlett-Packard Company" - C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
-----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )-----
"StartupPrograms" - ? - rdpclip  (File not found)
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )-----
"iTunesHelper" - "Apple Inc." - "C:\Program Files\iTunes\iTunesHelper.exe"
"Malwarebytes' Anti-Malware" - "Malwarebytes Corporation" - "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"QuickTime Task" - "Apple Inc." - "C:\Program Files\QuickTime\QTTask.exe" -atboottime

[Services]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100" (WPFFontCache_v0400) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
"Apple Mobile Device" (Apple Mobile Device) - "Apple Inc." - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
"ASLDR Service" (ASLDRService) - ? - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
"ATKGFNEX Service" (ATKGFNEXSrv) - ? - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
"Avira AntiVir Guard" (AntiVirService) - "Avira GmbH" - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
"Avira AntiVir Planer" (AntiVirSchedulerService) - "Avira GmbH" - C:\Program Files\Avira\AntiVir Desktop\sched.exe
"Dienst "Bonjour"" (Bonjour Service) - "Apple Inc." - C:\Program Files\Bonjour\mDNSResponder.exe
"Google Desktop Manager 5.9.911.3589" (GoogleDesktopManager-110309-193829) - "Google" - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
"Google Software Updater" (gusvc) - "Google" - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
"iPod-Dienst" (iPod Service) - "Apple Inc." - C:\Program Files\iPod\bin\iPodService.exe
"LightScribeService Direct Disc Labeling Service" (LightScribeService) - "Hewlett-Packard Company" - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
"MBAMService" (MBAMService) - "Malwarebytes Corporation" - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
"Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
"Microsoft Office Diagnostics Service" (odserv) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
"Office Source Engine" (ose) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
"spmgr" (spmgr) - ? - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
"Windows Live ID Sign-in Assistant" (wlidsvc) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

[Winsock Providers]
-----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries )-----
"mdnsNSP" - "Apple Inc." - C:\Program Files\Bonjour\mdnsNSP.dll

===[ Logfile end ]=========================================[ Logfile end ]===

If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru
         
Code:
ATTFilter
aswMBR version 0.9.9.1297 Copyright(c) 2011 AVAST Software
Run date: 2012-01-15 16:50:40
-----------------------------
16:50:40.200    OS Version: Windows 6.0.6002 Service Pack 2
16:50:40.200    Number of processors: 2 586 0xF0D
16:50:40.200    ComputerName: JENNY-PC  UserName: 
16:50:41.651    Initialize success
16:50:57.504    AVAST engine download error: 0
16:51:05.273    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
16:51:05.273    Disk 0 Vendor: ST9320320AS 0303 Size: 305245MB BusType: 3
16:51:05.289    Disk 0 MBR read successfully
16:51:05.304    Disk 0 MBR scan
16:51:05.304    Disk 0 unknown MBR code
16:51:05.304    Disk 0 Partition 1 00     1C Hidd FAT32 LBA MSDOS5.0    10001 MB offset 63
16:51:05.336    Disk 0 Partition 2 80 (A) 07    HPFS/NTFS NTFS       152622 MB offset 20484096
16:51:05.336    Disk 0 Partition - 00     0F Extended LBA            142620 MB offset 333053952
16:51:05.382    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS       142619 MB offset 333056000
16:51:05.382    Disk 0 scanning sectors +625139712
16:51:05.507    Disk 0 scanning C:\Windows\system32\drivers
16:51:13.526    Service scanning
16:51:15.008    Modules scanning
16:51:32.448    Disk 0 trace - called modules:
16:51:32.480    ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys halmacpi.dll ataport.SYS PCIIDEX.SYS msahci.sys 
16:51:32.480    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x858ddac8]
16:51:32.495    3 CLASSPNP.SYS[8a7af8b3] -> nt!IofCallDriver -> [0x85769860]
16:51:32.495    5 acpi.sys[8069a6bc] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x85732390]
16:51:32.511    Scan finished successfully
16:52:04.085    Disk 0 MBR has been saved successfully to "C:\Users\Administrator\Desktop\MBR.dat"
16:52:04.101    The log file has been saved successfully to "C:\Users\Administrator\Desktop\aswMBR.txt"
         

Alt 15.01.2012, 18:35   #24
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Wir sollten den MBR fixen, sichere für den Fall der Fälle ALLE wichtigen Daten, auch wenn meistens alles glatt geht.

Hinweis: Mach bitte NICHT den MBR-Fix, wenn du noch andere Betriebssysteme wie zB Ubuntu installiert hast, ein MBR-Fix mit Windows-Tools macht ein parallel installiertes (Dualboot) Linux unbootbar.
Mach den Fix auch dann nicht, wenn du zB mit TrueCrypt oder anderen Verschlüsselungsprogrammen eine Vollverschlüsselung der Windowspartition bzw. gesamten Festplatte hast


Starte nach der Datensicherung aswmbr erneut und klick auf den Button FIXMBR.
Anschließend Windows neu starten und ein neues Log mit aswMBR machen.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 17.01.2012, 16:33   #25
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Hallo Arne,

MBR fixen ging ohne Probleme
Code:
ATTFilter
aswMBR version 0.9.9.1297 Copyright(c) 2011 AVAST Software
Run date: 2012-01-17 15:48:15
-----------------------------
15:48:15.616    OS Version: Windows 6.0.6002 Service Pack 2
15:48:15.616    Number of processors: 2 586 0xF0D
15:48:15.619    ComputerName: JENNY-PC  UserName: 
15:48:17.062    Initialize success
15:48:32.333    AVAST engine download error: 0
15:49:10.879    Verifying
15:49:20.895    Disk 0 Windows 600 MBR fixed successfully
15:49:43.999    Disk 0 MBR has been saved successfully to "C:\Users\Administrator\Desktop\MBR.dat"
15:49:44.001    The log file has been saved successfully to "C:\Users\Administrator\Desktop\aswMBR Fix.txt"
         
Nach dem Neustart dann MBR Scan gestartet. Programm ist mit BlueScreen abgestürzt. Laptop automatisch neugestartet.
Erneut Scan mit MBR, da hat dann alles geklappt:

Code:
ATTFilter
aswMBR version 0.9.9.1297 Copyright(c) 2011 AVAST Software
Run date: 2012-01-17 16:03:22
-----------------------------
16:03:22.860    OS Version: Windows 6.0.6002 Service Pack 2
16:03:22.860    Number of processors: 2 586 0xF0D
16:03:22.864    ComputerName: JENNY-PC  UserName: 
16:03:24.738    Initialize success
16:08:00.615    AVAST engine defs: 12011700
16:09:12.970    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
16:09:12.975    Disk 0 Vendor: ST9320320AS 0303 Size: 305245MB BusType: 3
16:09:13.068    Disk 0 MBR read successfully
16:09:13.072    Disk 0 MBR scan
16:09:13.081    Disk 0 Windows VISTA default MBR code
16:09:13.157    Disk 0 Partition 1 00     1C Hidd FAT32 LBA MSDOS5.0    10001 MB offset 63
16:09:13.204    Disk 0 Partition 2 80 (A) 07    HPFS/NTFS NTFS       152622 MB offset 20484096
16:09:13.214    Disk 0 Partition - 00     0F Extended LBA            142620 MB offset 333053952
16:09:13.253    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS       142619 MB offset 333056000
16:09:13.266    Disk 0 scanning sectors +625139712
16:09:13.389    Disk 0 scanning C:\Windows\system32\drivers
16:09:27.663    Service scanning
16:09:29.155    Modules scanning
16:09:38.087    Disk 0 trace - called modules:
16:09:38.119    ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys halmacpi.dll ataport.SYS PCIIDEX.SYS msahci.sys 
16:09:38.129    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x85e58ac8]
16:09:38.140    3 CLASSPNP.SYS[8a7a88b3] -> nt!IofCallDriver -> [0x84d76860]
16:09:38.151    5 acpi.sys[8069f6bc] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x85750b98]
16:09:39.083    AVAST engine scan C:\Windows
16:09:47.123    AVAST engine scan C:\Windows\system32
16:12:49.961    AVAST engine scan C:\Windows\system32\drivers
16:13:04.605    AVAST engine scan C:\Users\Administrator
16:13:37.486    AVAST engine scan C:\ProgramData
16:14:48.744    Scan finished successfully
16:15:09.750    Disk 0 MBR has been saved successfully to "C:\Users\Administrator\Desktop\MBR.dat"
16:15:09.762    The log file has been saved successfully to "C:\Users\Administrator\Desktop\aswMBR 17.1..txt"
         

Alt 17.01.2012, 20:27   #26
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Sieht ok aus. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs.
Denk dran beide Tools zu updaten vor dem Scan!!


Anschließend über den OnlineScanner von ESET eine zusätzliche Meinung zu holen ist auch nicht verkehrt:


ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 18.01.2012, 21:49   #27
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Nabend Arne,

hatte leichte Internetprobleme ...

Hier die Logs

Code:
ATTFilter
 Malwarebytes Anti-Malware  (Test) 1.60.0.1800
www.malwarebytes.org

Datenbank Version: v2012.01.18.03

Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 9.0.8112.16421
Administrator :: JENNY-PC [Administrator]

Schutz: Aktiviert

18.01.2012 14:33:28
mbam-log-2012-01-18 (14-33-28).txt

Art des Suchlaufs: Vollständiger Suchlauf
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 341139
Laufzeit: 1 Stunde(n), 19 Minute(n), 27 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)

(Ende)
         
SUPERAntiSpyware

Code:
ATTFilter
SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com

Generated 01/18/2012 at 06:36 PM

Application Version : 5.0.1142

Core Rules Database Version : 8139
Trace Rules Database Version: 5951

Scan type       : Complete Scan
Total Scan Time : 01:53:59

Operating System Information
Windows Vista Home Premium 32-bit, Service Pack 2 (Build 6.00.6002)
UAC Off - Administrator

Memory items scanned      : 700
Memory threats detected   : 0
Registry items scanned    : 36465
Registry threats detected : 0
File items scanned        : 132607
File threats detected     : 719

Adware.Tracking Cookie
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\CHL7I6P2.txt [ /atdmt.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\HBRLD41N.txt [ /apmebf.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\EIU1TM4H.txt [ /fl01.ct2.comclick.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\QKQ47ZVG.txt [ /tradedoubler.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\NQ42885A.txt [ /ads.creative-serving.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\V2AJ7YOL.txt [ /ad.ad-srv.net ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\1TSZ47Y2.txt [ /ad3.adfarm1.adition.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\Y37AX6VM.txt [ /webmasterplan.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\ZD3JA483.txt [ /ad4.adfarm1.adition.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\9W5XKSN1.txt [ /ad.zanox.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\XAGOPBC0.txt [ /tracking.quisma.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\EDGHRAOI.txt [ /2o7.net ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\6O2VQ11F.txt [ /e-2dj6aekowjd5wkq.stats.esomniture.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\ES827MPX.txt [ /adfarm1.adition.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\4XAOK79C.txt [ /invitemedia.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\A4VTMP88.txt [ /ad2.adfarm1.adition.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\RTJMS325.txt [ /ad.dyntracker.de ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\N5QC9ZUJ.txt [ /unitymedia.de ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\XUN0GE3O.txt [ /doubleclick.net ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\3LNJXRF0.txt [ /traffictrack.de ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\88IVSJBZ.txt [ /adx.chip.de ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\31ET807R.txt [ /zanox-affiliate.de ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\K7M05HDA.txt [ /mediaplex.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\KUBOL2AX.txt [ /advertising.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\RBWHYWXI.txt [ /www.zanox-affiliate.de ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\9KA1XJ2F.txt [ /ad1.adfarm1.adition.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\2J141RN0.txt [ /zanox.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\TF1A520R.txt [ /ad.yieldmanager.com ]
	C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Cookies\1ACI49OY.txt [ /ad.adc-serv.net ]
	C:\USERS\ADMINISTRATOR\Cookies\CHL7I6P2.txt [ Cookie:administrator@atdmt.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\HBRLD41N.txt [ Cookie:administrator@apmebf.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\EIU1TM4H.txt [ Cookie:administrator@fl01.ct2.comclick.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\QKQ47ZVG.txt [ Cookie:administrator@tradedoubler.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\1TSZ47Y2.txt [ Cookie:administrator@ad3.adfarm1.adition.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\Y37AX6VM.txt [ Cookie:administrator@webmasterplan.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\ZD3JA483.txt [ Cookie:administrator@ad4.adfarm1.adition.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\9W5XKSN1.txt [ Cookie:administrator@ad.zanox.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\XAGOPBC0.txt [ Cookie:administrator@tracking.quisma.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\EDGHRAOI.txt [ Cookie:administrator@2o7.net/ ]
	C:\USERS\ADMINISTRATOR\Cookies\ES827MPX.txt [ Cookie:administrator@adfarm1.adition.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\A4VTMP88.txt [ Cookie:administrator@ad2.adfarm1.adition.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\N5QC9ZUJ.txt [ Cookie:administrator@unitymedia.de/ ]
	C:\USERS\ADMINISTRATOR\Cookies\XUN0GE3O.txt [ Cookie:administrator@doubleclick.net/ ]
	C:\USERS\ADMINISTRATOR\Cookies\K7M05HDA.txt [ Cookie:administrator@mediaplex.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\KUBOL2AX.txt [ Cookie:administrator@advertising.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\RBWHYWXI.txt [ Cookie:administrator@www.zanox-affiliate.de/ ]
	C:\USERS\ADMINISTRATOR\Cookies\9KA1XJ2F.txt [ Cookie:administrator@ad1.adfarm1.adition.com/ ]
	C:\USERS\ADMINISTRATOR\Cookies\TF1A520R.txt [ Cookie:administrator@ad.yieldmanager.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@smartadserver[2].txt [ Cookie:jenny@smartadserver.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@tradedoubler[2].txt [ Cookie:jenny@tradedoubler.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\BH5VZIQR.txt [ Cookie:jenny@atdmt.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\TFC1OPPI.txt [ Cookie:jenny@doubleclick.net/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\6C08DY61.txt [ Cookie:jenny@clkads.com/adServe/banners/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\7IJJCG97.txt [ Cookie:jenny@clkads.com/adServe/banners ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@bs.serving-sys[1].txt [ Cookie:jenny@bs.serving-sys.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@weborama[1].txt [ Cookie:jenny@weborama.fr/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@mediaplex[3].txt [ Cookie:jenny@mediaplex.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@apmebf[2].txt [ Cookie:jenny@apmebf.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\U1G65Z0W.txt [ Cookie:jenny@microsoftwllivemkt.112.2o7.net/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@adfarm1.adition[1].txt [ Cookie:jenny@adfarm1.adition.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\jenny@ad2.adfarm1.adition[1].txt [ Cookie:jenny@ad2.adfarm1.adition.com/ ]
	C:\USERS\JENNY\AppData\Roaming\Microsoft\Windows\Cookies\Low\QNSQ85YN.txt [ Cookie:jenny@doubleclick.net/ ]
	C:\USERS\JENNY\Cookies\jenny@smartadserver[2].txt [ Cookie:jenny@smartadserver.com/ ]
	C:\USERS\JENNY\Cookies\jenny@tradedoubler[2].txt [ Cookie:jenny@tradedoubler.com/ ]
	C:\USERS\JENNY\Cookies\BH5VZIQR.txt [ Cookie:jenny@atdmt.com/ ]
	C:\USERS\JENNY\Cookies\TFC1OPPI.txt [ Cookie:jenny@doubleclick.net/ ]
	C:\USERS\JENNY\Cookies\6C08DY61.txt [ Cookie:jenny@clkads.com/adServe/banners/ ]
	C:\USERS\JENNY\Cookies\7IJJCG97.txt [ Cookie:jenny@clkads.com/adServe/banners ]
	C:\USERS\JENNY\Cookies\jenny@bs.serving-sys[1].txt [ Cookie:jenny@bs.serving-sys.com/ ]
	C:\USERS\JENNY\Cookies\jenny@weborama[1].txt [ Cookie:jenny@weborama.fr/ ]
	C:\USERS\JENNY\Cookies\jenny@mediaplex[3].txt [ Cookie:jenny@mediaplex.com/ ]
	C:\USERS\JENNY\Cookies\jenny@apmebf[2].txt [ Cookie:jenny@apmebf.com/ ]
	C:\USERS\JENNY\Cookies\U1G65Z0W.txt [ Cookie:jenny@microsoftwllivemkt.112.2o7.net/ ]
	C:\USERS\JENNY\Cookies\jenny@adfarm1.adition[1].txt [ Cookie:jenny@adfarm1.adition.com/ ]
	C:\USERS\JENNY\Cookies\jenny@ad2.adfarm1.adition[1].txt [ Cookie:jenny@ad2.adfarm1.adition.com/ ]
	vht.tradedoubler.com [ C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\WJ9DX3KN ]
	track.webtrekk.net [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	track.webtrekk.net [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.tracking.mindshare.de [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.content.yieldmanager.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\GAST\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G7VNATBG.DEFAULT\COOKIES.SQLITE ]
	ad.adserver01.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.tldadserv.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.doubleclick.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.atdmt.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.atdmt.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.zanox-affiliate.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	tracking.dc-storm.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	adserv.kwick.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	adserv.kwick.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.usenext.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.apmebf.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.mediaplex.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.azjmp.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.azjmp.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.azjmp.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.mediaplex.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	media.gan-online.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.myroitracking.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.clicksor.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.clicksor.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.clicksor.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.clicksor.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.clicksor.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.statcounter.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ads.247activemedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	adsrv1.admediate.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.eliteautotune.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.interclick.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.lucidmedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.interclick.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.interclick.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.ad.adnet.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.content.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.zanox.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adxpose.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.stats.ilivid.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.fastclick.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.zanox.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.zanox.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.de.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.de.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.de.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.de.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.de.partypoker.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adbrite.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adbrite.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.imrworldwide.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.imrworldwide.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	www.counterstatistik.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad2.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	track.adform.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	track.adform.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adform.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.lfstmedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.lfstmedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.lfstmedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.lfstmedia.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	tracking.mlsat02.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.bs.serving-sys.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.mediaplex.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad1.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.ad.adnet.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adviva.net [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad3.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	adultcyberfun.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	delivery.ibanner.de [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	ia.media-imdb.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	imagesrv.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	media.kyte.tv [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	media.mtvnservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	media.onsugar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	media.whosay.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	media1.shufuni.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	media8.onsugar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	msnbcmedia.msn.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	s0.2mdn.net [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	secure-us.imrworldwide.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	tracking.deal69.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	www.99counters.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	www.adservercentral.info [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	wwwstatic.megaporn.com [ C:\USERS\JENNY\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\2ZAWBEY8 ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@SERVING-SYS[2].TXT [ /SERVING-SYS ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@VDWP.SOLUTION.WEBORAMA[2].TXT [ /VDWP.SOLUTION.WEBORAMA ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@REVSCI[2].TXT [ /REVSCI ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@MEDIAPLEX[2].TXT [ /MEDIAPLEX ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@SMARTADSERVER[1].TXT [ /SMARTADSERVER ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@APMEBF[1].TXT [ /APMEBF ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@ATDMT[2].TXT [ /ATDMT ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@ATDMT[3].TXT [ /ATDMT ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@ATDMT[4].TXT [ /ATDMT ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\JENNY@ADX.CHIP[2].TXT [ /ADX.CHIP ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@TRAFFICTRACK[2].TXT [ /TRAFFICTRACK ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@AD.YIELDMANAGER[2].TXT [ /AD.YIELDMANAGER ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ADS2.IT-POLAND[1].TXT [ /ADS2.IT-POLAND ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ETARGETNET[1].TXT [ /ETARGETNET ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ZANOX[1].TXT [ /ZANOX ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@DOUBLECLICK[1].TXT [ /DOUBLECLICK ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@AD2.ADFARM1.ADITION[2].TXT [ /AD2.ADFARM1.ADITION ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ADFARM1.ADITION[2].TXT [ /ADFARM1.ADITION ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@STATCOUNTER[2].TXT [ /STATCOUNTER ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@A.REVENUEMAX[1].TXT [ /A.REVENUEMAX ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@CONTENT.YIELDMANAGER[3].TXT [ /CONTENT.YIELDMANAGER ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@CONTENT.YIELDMANAGER[1].TXT [ /CONTENT.YIELDMANAGER ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ATDMT[1].TXT [ /ATDMT ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@WEBMASTERPLAN[2].TXT [ /WEBMASTERPLAN ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@TRADEDOUBLER[1].TXT [ /TRADEDOUBLER ]
	C:\USERS\JENNY\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\JENNY@ADTECH[1].TXT [ /ADTECH ]
	in.getclicky.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.getclicky.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.static.getclicky.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adsrv1.admediate.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.webtrekk.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.webtrekk.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.adition.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	stats.internet-yadro.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adultfriendfinder.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.nextag.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.nextag.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.kontera.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	stats.kroogy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	stats.kroogy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.www.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tto2.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.xm.xtendmedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.klicktel.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.klicktel.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www9.addfreestats.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.rambler.ru [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.adserver01.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.realmedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adcentriconline.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.openstat.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.digital-eliteboard.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.digital-eliteboard.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtechus.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adserver.adtechus.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.bravenet.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.clickaider.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.pubads.g.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	us.2.cqcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ads.247activemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.celebrity-sunglasses-finder.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.linksynergy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.linksynergy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.linksynergy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.linksynergy.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	wstat.wibiya.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ads.rokatraffic.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.xiti.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.stats.complex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.stats.complex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mediabrandsww.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.atomicwarez.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.cdn.atomicwarez.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.histats.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.histats.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	counter.hitslink.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.zanox-affiliate.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.trafficmp.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.trafficmp.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.trafficmp.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	s1.trafficmaxx.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	rgadvert.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.yieldmanager.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.c.gigcount.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.modepilot.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.modepilot.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ibanner.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.media.photobucket.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adxpose.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	warezleech.org [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	warezleech.org [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.pornmap.tv [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.aim4media.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.countomat.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.pro-market.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.eyewonder.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.eyewonder.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.dc-storm.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adserver.vistery.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adserver.gs [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.ontoplist.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.warezcz.cz [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.warezcz.cz [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.warezcz.cz [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.warezcz.cz [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	upvalue1.easymedia-adserver.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adservercentral.info [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.sim-technik.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	f.blogads.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.elitepartner.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.elitepartner.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ads.adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.deal69.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.a.revenuemax.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.liveperson.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.yadro.ru [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.usenext.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.at.atwola.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.at.atwola.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tacoda.at.atwola.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tacoda.at.atwola.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.chitika.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adserver.adreactor.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.sevenoneintermedia.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.122.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.122.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.snapfish.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.iscout24.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.germanwings.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.beiersdorf.122.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.nike.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.msnportal.112.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tns-counter.ru [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	advert.istanbul.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	dc.tremormedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adserv.kwick.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adserv.kwick.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ads.quartermedia.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ads.quartermedia.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adserver2.clipkit.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.estat.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.liveperson.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.burstnet.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.mediamarkt.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mediamarkt.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wgmiwpd5ecp.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	testdata.coremetrics.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.atrack.allposters.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	statse.webtrendslive.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.c.atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.c.atdmt.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.viewablemedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	keyword-advertising.gmx.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad-emea.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad-emea.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adserver.kauperts.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adserver.kauperts.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mmotraffic.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mmotraffic.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.gameforge.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.dyntracker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.azjmp.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.azjmp.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	edates.traffective-tracking.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	edates.traffective-tracking.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	edates.traffective-tracking.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.www.burstnet.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.gostats.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.aim4media.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.aim4media.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad4.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6aeloqkcpseo.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6aemiohdzacp.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad-emea.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.adition.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.adition.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad-emea.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6aelyopd5klo.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wdkoaoczeao.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wjmyugcpagq.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.burstnet.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wgl4ohdjsko.stats.esomniture.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	clicks.stylefruits.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.gostats.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.f.megaclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.f.megaclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.f.megaclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.megaclick.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.de.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.partypoker.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.generaltracking.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.generaltracking.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.generaltracking.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.generaltracking.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.generaltracking.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adform.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.bs.serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.clickfuse.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad2.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	www.counterstatistik.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ww251.smartadserver.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad3.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad1.adfarm1.adition.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	rts.pgmediaserve.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
	ad.velmedia.net [ C:\USERS\JENNY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YXFCBWVH.DEFAULT\COOKIES.SQLITE ]
         
ESET

Code:
ATTFilter
ESETSmartInstaller@High as CAB hook log:
OnlineScanner.ocx - registred OK
# version=7
# iexplore.exe=9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)
# OnlineScanner.ocx=1.0.0.6583
# api_version=3.0.2
# EOSSerial=d9ef1d72dcfe674f9e1aeb0196b23913
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2012-01-11 08:58:57
# local_time=2012-01-11 09:58:57 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.0.6002 NT Service Pack 2
# compatibility_mode=1797 16775165 100 100 26711 101825879 79961 0
# compatibility_mode=5892 16776573 100 100 4409 163843300 0 0
# compatibility_mode=8192 67108863 100 0 3918 3918 0 0
# scanned=144022
# found=2
# cleaned=0
# scan_time=4965
C:\Users\Jenny\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\eBay.lnk	Win32/Adware.ADON Anwendung (Säubern nicht möglich)	00000000000000000000000000000000	I
C:\Users\Jenny\AppData\Roaming\Microsoft\Windows\Start Menu\eBay.lnk	Win32/Adware.ADON Anwendung (Säubern nicht möglich)	00000000000000000000000000000000	I
esets_scanner_update returned -1 esets_gle=53251
# version=7
# iexplore.exe=9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)
# OnlineScanner.ocx=1.0.0.6583
# api_version=3.0.2
# EOSSerial=d9ef1d72dcfe674f9e1aeb0196b23913
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2012-01-18 08:26:17
# local_time=2012-01-18 09:26:17 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1033
# osver=6.0.6002 NT Service Pack 2
# compatibility_mode=1797 16775165 100 100 94758 102426239 1271 0
# compatibility_mode=5892 16776573 100 100 15565 164443660 0 0
# compatibility_mode=8192 67108863 100 0 604278 604278 0 0
# scanned=140570
# found=2
# cleaned=0
# scan_time=7445
C:\Users\Jenny\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\eBay.lnk	Win32/Adware.ADON application (unable to clean)	00000000000000000000000000000000	I
C:\Users\Jenny\AppData\Roaming\Microsoft\Windows\Start Menu\eBay.lnk	Win32/Adware.ADON application (unable to clean)	00000000000000000000000000000000	I
         

Alt 18.01.2012, 21:51   #28
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Sieht ok aus, da wurden nur Cookies gefunden. Die können weg.
Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie )

Noch Probleme oder weitere Funde in der Zwischenzeit?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 18.01.2012, 22:11   #29
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Zitat:
Zitat von cosinus Beitrag anzeigen
Sieht ok aus, da wurden nur Cookies gefunden. Die können weg.

Noch Probleme oder weitere Funde in der Zwischenzeit?
Hab ich mir gedacht, hab die Cookies und Browserverlauf gelöscht.

Ich würde jetzt mal im normalen Konto alles testen und nochmal Bescheid geben.

Meinste denn, das wir dann durch sind???

Alt 18.01.2012, 22:31   #30
Sunshine_Mel
 
Windows blockiert - 50€ Trojaner - Standard

Windows blockiert - 50€ Trojaner



Bin jetzt in das normale Benutzerkonto gegangen (vorher Admin).

Es erscheint noch immer www.conduit.de als Startseite, statt Google ...

kurz danach ist der Rechner immer abgeschmiert! Ging bisher aber seit juten 10 Minuten gut.

Macht es denn einen Unterschied in welchem Benutzerkonto ich bin?!

Ich habe jetzt Avast! Antivirus und Avira AntiVir drauf. Beißen die sich? Sollte ich eins runterkicken???

Geändert von Sunshine_Mel (18.01.2012 um 22:37 Uhr)

Antwort

Themen zu Windows blockiert - 50€ Trojaner
50€ trojaner, 50€-trojaner, abgesicherten, berlin, blockiert, desktop, direkt, erkennt, forum, frage, freundin, infizierte, internet, kaufen, laptop, lösung, modus, netzwerk, programme, scan, speicher, suche, system, trojane, trojaner, upgrade, windows, zusammen



Ähnliche Themen: Windows blockiert - 50€ Trojaner


  1. GVU Trojaner blockiert alles - Windows 7 64 bit
    Plagegeister aller Art und deren Bekämpfung - 05.09.2012 (9)
  2. Trojaner blockiert Windows start
    Plagegeister aller Art und deren Bekämpfung - 28.07.2012 (17)
  3. Trojaner blockiert Windows (Windows-Verschlüsselung)
    Log-Analyse und Auswertung - 20.05.2012 (1)
  4. 50-€-Trojaner, Windows 7 blockiert!
    Log-Analyse und Auswertung - 01.04.2012 (6)
  5. 50€ Trojaner, Windows blockiert
    Plagegeister aller Art und deren Bekämpfung - 29.03.2012 (6)
  6. Trojaner Windows blockiert
    Log-Analyse und Auswertung - 23.02.2012 (32)
  7. Trojaner :/ Windows-System ist blockiert..
    Plagegeister aller Art und deren Bekämpfung - 12.02.2012 (6)
  8. Trojaner Windows System ist blockiert
    Plagegeister aller Art und deren Bekämpfung - 12.02.2012 (3)
  9. 50 Euro Trojaner blockiert Windows 64 bit
    Log-Analyse und Auswertung - 30.01.2012 (27)
  10. Windows blockiert aus Sicherheitsgründen-Trojaner
    Log-Analyse und Auswertung - 30.01.2012 (30)
  11. 50 euro Trojaner blockiert windows 7
    Log-Analyse und Auswertung - 29.01.2012 (1)
  12. Windows blockiert aus Sicherheitsgründen - Trojaner
    Plagegeister aller Art und deren Bekämpfung - 25.01.2012 (18)
  13. Trojaner Windows blockiert eingefangen!
    Log-Analyse und Auswertung - 09.01.2012 (23)
  14. Trojaner, 50 € bezahlen, Windows blockiert
    Log-Analyse und Auswertung - 02.01.2012 (5)
  15. Windows blockiert. 50 Euro Trojaner.
    Log-Analyse und Auswertung - 29.12.2011 (7)
  16. Windows blockiert, 50€ Trojaner
    Plagegeister aller Art und deren Bekämpfung - 27.12.2011 (2)
  17. Windows blockiert! Virus/Trojaner
    Log-Analyse und Auswertung - 13.12.2011 (12)

Zum Thema Windows blockiert - 50€ Trojaner - Zitat: Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten => http://www.trojaner-board.de/82358-a...entfernen.html Ich kann auf dieser Seite nichts posten. Daher unten als CODE. Zitat: - Windows blockiert - 50€ Trojaner...
Archiv
Du betrachtest: Windows blockiert - 50€ Trojaner auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.