Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML

Antwort
Alt 19.03.2012, 19:41   #16
cold_fire
 
EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp - Standard

EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp



Und weiter gehts im Text:

Code:
ATTFilter
19:39:12.0110 2684	TDSS rootkit removing tool 2.7.20.0 Mar  9 2012 17:10:43
19:39:13.0577 2684	============================================================
19:39:13.0577 2684	Current date / time: 2012/03/19 19:39:13.0577
19:39:13.0577 2684	SystemInfo:
19:39:13.0577 2684	
19:39:13.0577 2684	OS Version: 6.1.7601 ServicePack: 1.0
19:39:13.0577 2684	Product type: Workstation
19:39:13.0577 2684	ComputerName: FABIAN-PC
19:39:13.0577 2684	UserName: Fabian
19:39:13.0577 2684	Windows directory: C:\Windows
19:39:13.0577 2684	System windows directory: C:\Windows
19:39:13.0577 2684	Running under WOW64
19:39:13.0577 2684	Processor architecture: Intel x64
19:39:13.0577 2684	Number of processors: 4
19:39:13.0577 2684	Page size: 0x1000
19:39:13.0577 2684	Boot type: Normal boot
19:39:13.0577 2684	============================================================
19:39:14.0458 2684	Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:39:14.0475 2684	Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:39:14.0477 2684	\Device\Harddisk0\DR0:
19:39:14.0478 2684	MBR used
19:39:14.0478 2684	\Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
19:39:14.0478 2684	\Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x11B02000
19:39:14.0478 2684	\Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x11B34800, BlocksNum 0x11B34000
19:39:14.0478 2684	\Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x23668800, BlocksNum 0x16D1D000
19:39:14.0478 2684	\Device\Harddisk1\DR1:
19:39:14.0478 2684	MBR used
19:39:14.0478 2684	\Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705800
19:39:14.0585 2684	Initialize success
19:39:14.0585 2684	============================================================
19:39:50.0293 1472	============================================================
19:39:50.0293 1472	Scan started
19:39:50.0293 1472	Mode: Manual; SigCheck; TDLFS; 
19:39:50.0293 1472	============================================================
19:39:50.0830 1472	1394ohci        (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
19:39:50.0904 1472	1394ohci - ok
19:39:50.0950 1472	ACPI            (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
19:39:50.0969 1472	ACPI - ok
19:39:51.0001 1472	AcpiPmi         (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
19:39:51.0043 1472	AcpiPmi - ok
19:39:51.0114 1472	adp94xx         (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
19:39:51.0140 1472	adp94xx - ok
19:39:51.0160 1472	adpahci         (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
19:39:51.0171 1472	adpahci - ok
19:39:51.0187 1472	adpu320         (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
19:39:51.0196 1472	adpu320 - ok
19:39:51.0248 1472	AFD             (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
19:39:51.0287 1472	AFD - ok
19:39:51.0321 1472	agp440          (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
19:39:51.0335 1472	agp440 - ok
19:39:51.0349 1472	aliide          (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
19:39:51.0359 1472	aliide - ok
19:39:51.0376 1472	amdide          (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
19:39:51.0385 1472	amdide - ok
19:39:51.0400 1472	AmdK8           (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
19:39:51.0417 1472	AmdK8 - ok
19:39:51.0613 1472	amdkmdag        (322e5c178990f116f00e3d923f4e6b1c) C:\Windows\system32\DRIVERS\atikmdag.sys
19:39:51.0850 1472	amdkmdag - ok
19:39:51.0872 1472	amdkmdap        (961a81a84fdd700e361e8294528a37ba) C:\Windows\system32\DRIVERS\atikmpag.sys
19:39:51.0914 1472	amdkmdap - ok
19:39:51.0922 1472	AmdPPM          (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
19:39:51.0981 1472	AmdPPM - ok
19:39:52.0008 1472	amdsata         (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
19:39:52.0025 1472	amdsata - ok
19:39:52.0046 1472	amdsbs          (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
19:39:52.0066 1472	amdsbs - ok
19:39:52.0085 1472	amdxata         (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
19:39:52.0093 1472	amdxata - ok
19:39:52.0167 1472	AppID           (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
19:39:52.0230 1472	AppID - ok
19:39:52.0251 1472	arc             (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
19:39:52.0259 1472	arc - ok
19:39:52.0272 1472	arcsas          (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
19:39:52.0280 1472	arcsas - ok
19:39:52.0321 1472	AsyncMac        (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
19:39:52.0380 1472	AsyncMac - ok
19:39:52.0407 1472	atapi           (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
19:39:52.0414 1472	atapi - ok
19:39:52.0459 1472	AtiHDAudioService (230cf51113cd4b830b3bfd09b0d4c066) C:\Windows\system32\drivers\AtihdW76.sys
19:39:52.0485 1472	AtiHDAudioService - ok
19:39:52.0513 1472	AtiHdmiService  (7e2f5a758f63f80f8b03f889b4e6b19f) C:\Windows\system32\drivers\AtiHdmi.sys
19:39:52.0520 1472	AtiHdmiService - ok
19:39:52.0711 1472	atikmdag        (322e5c178990f116f00e3d923f4e6b1c) C:\Windows\system32\DRIVERS\atikmdag.sys
19:39:52.0798 1472	atikmdag - ok
19:39:52.0834 1472	atksgt          (fc0e8778c000291caf60eb88c011e931) C:\Windows\system32\DRIVERS\atksgt.sys
19:39:52.0842 1472	atksgt - ok
19:39:52.0885 1472	avgntflt        (aa8f79a1bdfc03b3bc70c44ab00589b4) C:\Windows\system32\DRIVERS\avgntflt.sys
19:39:52.0899 1472	avgntflt - ok
19:39:52.0920 1472	avipbb          (852e3c0a60d368c487949e55ad52a47f) C:\Windows\system32\DRIVERS\avipbb.sys
19:39:52.0933 1472	avipbb - ok
19:39:52.0960 1472	avkmgr          (248db59fc86de44d2779f4c7fb1a567d) C:\Windows\system32\DRIVERS\avkmgr.sys
19:39:52.0970 1472	avkmgr - ok
19:39:53.0008 1472	avmeject        (1dc2f715792cf33428ad7993acbd224d) C:\Windows\system32\drivers\avmeject.sys
19:39:53.0020 1472	avmeject - ok
19:39:53.0065 1472	b06bdrv         (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
19:39:53.0119 1472	b06bdrv - ok
19:39:53.0151 1472	b57nd60a        (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
19:39:53.0193 1472	b57nd60a - ok
19:39:53.0224 1472	Beep            (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
19:39:53.0282 1472	Beep - ok
19:39:53.0337 1472	blbdrive        (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
19:39:53.0363 1472	blbdrive - ok
19:39:53.0391 1472	bowser          (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
19:39:53.0409 1472	bowser - ok
19:39:53.0423 1472	BrFiltLo        (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
19:39:53.0455 1472	BrFiltLo - ok
19:39:53.0472 1472	BrFiltUp        (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
19:39:53.0492 1472	BrFiltUp - ok
19:39:53.0516 1472	Brserid         (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
19:39:53.0555 1472	Brserid - ok
19:39:53.0570 1472	BrSerWdm        (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
19:39:53.0599 1472	BrSerWdm - ok
19:39:53.0606 1472	BrUsbMdm        (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
19:39:53.0630 1472	BrUsbMdm - ok
19:39:53.0647 1472	BrUsbSer        (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
19:39:53.0663 1472	BrUsbSer - ok
19:39:53.0671 1472	BTHMODEM        (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
19:39:53.0692 1472	BTHMODEM - ok
19:39:53.0719 1472	cdfs            (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
19:39:53.0757 1472	cdfs - ok
19:39:53.0795 1472	cdrom           (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
19:39:53.0827 1472	cdrom - ok
19:39:53.0850 1472	circlass        (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
19:39:53.0883 1472	circlass - ok
19:39:53.0908 1472	CLFS            (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
19:39:53.0925 1472	CLFS - ok
19:39:53.0998 1472	CmBatt          (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
19:39:54.0024 1472	CmBatt - ok
19:39:54.0046 1472	cmdide          (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
19:39:54.0061 1472	cmdide - ok
19:39:54.0091 1472	CNG             (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
19:39:54.0120 1472	CNG - ok
19:39:54.0133 1472	Compbatt        (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
19:39:54.0140 1472	Compbatt - ok
19:39:54.0166 1472	CompositeBus    (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
19:39:54.0193 1472	CompositeBus - ok
19:39:54.0210 1472	crcdisk         (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
19:39:54.0225 1472	crcdisk - ok
19:39:54.0271 1472	CrystalSysInfo - ok
19:39:54.0360 1472	DfsC            (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
19:39:54.0417 1472	DfsC - ok
19:39:54.0463 1472	discache        (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
19:39:54.0488 1472	discache - ok
19:39:54.0509 1472	Disk            (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
19:39:54.0516 1472	Disk - ok
19:39:54.0554 1472	Dot4            (b42ed0320c6e41102fde0005154849bb) C:\Windows\system32\DRIVERS\Dot4.sys
19:39:54.0586 1472	Dot4 - ok
19:39:54.0623 1472	Dot4Print       (e9f5969233c5d89f3c35e3a66a52a361) C:\Windows\system32\drivers\Dot4Prt.sys
19:39:54.0653 1472	Dot4Print - ok
19:39:54.0684 1472	dot4usb         (fd05a02b0370bc3000f402e543ca5814) C:\Windows\system32\DRIVERS\dot4usb.sys
19:39:54.0711 1472	dot4usb - ok
19:39:54.0741 1472	drmkaud         (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
19:39:54.0771 1472	drmkaud - ok
19:39:54.0815 1472	DXGKrnl         (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
19:39:54.0841 1472	DXGKrnl - ok
19:39:54.0920 1472	ebdrv           (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
19:39:55.0042 1472	ebdrv - ok
19:39:55.0082 1472	elxstor         (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
19:39:55.0096 1472	elxstor - ok
19:39:55.0125 1472	ErrDev          (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
19:39:55.0149 1472	ErrDev - ok
19:39:55.0179 1472	exfat           (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
19:39:55.0228 1472	exfat - ok
19:39:55.0246 1472	fastfat         (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
19:39:55.0277 1472	fastfat - ok
19:39:55.0299 1472	fdc             (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
19:39:55.0308 1472	fdc - ok
19:39:55.0325 1472	FileInfo        (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
19:39:55.0332 1472	FileInfo - ok
19:39:55.0346 1472	Filetrace       (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
19:39:55.0379 1472	Filetrace - ok
19:39:55.0391 1472	flpydisk        (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
19:39:55.0400 1472	flpydisk - ok
19:39:55.0439 1472	FltMgr          (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
19:39:55.0450 1472	FltMgr - ok
19:39:55.0475 1472	FsDepends       (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
19:39:55.0482 1472	FsDepends - ok
19:39:55.0498 1472	Fs_Rec          (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
19:39:55.0506 1472	Fs_Rec - ok
19:39:55.0531 1472	fvevol          (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
19:39:55.0543 1472	fvevol - ok
19:39:55.0578 1472	FWLANUSB        (444534cba693dd23c1cc589681e01656) C:\Windows\system32\DRIVERS\fwlanusb.sys
19:39:55.0606 1472	FWLANUSB - ok
19:39:55.0618 1472	gagp30kx        (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
19:39:55.0626 1472	gagp30kx - ok
19:39:55.0683 1472	hamachi         (1e6438d4ea6e1174a3b3b1edc4de660b) C:\Windows\system32\DRIVERS\hamachi.sys
19:39:55.0693 1472	hamachi - ok
19:39:55.0715 1472	hcw85cir        (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
19:39:55.0739 1472	hcw85cir - ok
19:39:55.0760 1472	HCW88AUD        (6975832e10e552350680bc6fdbd11f9d) C:\Windows\system32\drivers\hcw88aud.sys
19:39:55.0778 1472	HCW88AUD - ok
19:39:55.0801 1472	hcw88bda        (daa54d174839b3f8248ff755711eaf8c) C:\Windows\system32\drivers\hcw88bda.sys
19:39:55.0824 1472	hcw88bda - ok
19:39:55.0841 1472	hcw88rc5        (ecef065a9df820df4e005da8ca45a7cf) C:\Windows\system32\Drivers\hcw88rc5.sys
19:39:55.0852 1472	hcw88rc5 - ok
19:39:55.0868 1472	HCW88TSE        (751b9e9e9166e8ee22a7cb1ff223bf47) C:\Windows\system32\drivers\hcw88tse.sys
19:39:55.0890 1472	HCW88TSE - ok
19:39:55.0906 1472	HCW88TUNE       (06d074c53f3d8f8fa11e0fb7ba30b2b3) C:\Windows\system32\drivers\hcw88tun.sys
19:39:55.0918 1472	HCW88TUNE - ok
19:39:55.0939 1472	hcw88vid        (93d909ccfb041ee6e8c9d32602588089) C:\Windows\system32\drivers\hcw88vid.sys
19:39:55.0963 1472	hcw88vid - ok
19:39:55.0970 1472	HCW88XBAR       (96baa4e70641abdf40822fb505d4f1e3) C:\Windows\system32\drivers\HCW88BAR.sys
19:39:55.0992 1472	HCW88XBAR - ok
19:39:56.0028 1472	HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
19:39:56.0078 1472	HdAudAddService - ok
19:39:56.0177 1472	HDAudBus        (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
19:39:56.0214 1472	HDAudBus - ok
19:39:56.0240 1472	HidBatt         (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
19:39:56.0261 1472	HidBatt - ok
19:39:56.0276 1472	HidBth          (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
19:39:56.0301 1472	HidBth - ok
19:39:56.0317 1472	HidIr           (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
19:39:56.0336 1472	HidIr - ok
19:39:56.0364 1472	HidUsb          (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
19:39:56.0385 1472	HidUsb - ok
19:39:56.0419 1472	HpSAMD          (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
19:39:56.0432 1472	HpSAMD - ok
19:39:56.0486 1472	HTTP            (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
19:39:56.0551 1472	HTTP - ok
19:39:56.0580 1472	hwpolicy        (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
19:39:56.0586 1472	hwpolicy - ok
19:39:56.0607 1472	i8042prt        (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
19:39:56.0616 1472	i8042prt - ok
19:39:56.0649 1472	iaStorV         (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
19:39:56.0665 1472	iaStorV - ok
19:39:56.0681 1472	iirsp           (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
19:39:56.0691 1472	iirsp - ok
19:39:56.0717 1472	intelide        (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
19:39:56.0726 1472	intelide - ok
19:39:56.0739 1472	intelppm        (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
19:39:56.0768 1472	intelppm - ok
19:39:56.0794 1472	IpFilterDriver  (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:39:56.0847 1472	IpFilterDriver - ok
19:39:56.0863 1472	IPMIDRV         (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
19:39:56.0872 1472	IPMIDRV - ok
19:39:56.0889 1472	IPNAT           (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
19:39:56.0940 1472	IPNAT - ok
19:39:56.0960 1472	IRENUM          (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
19:39:56.0981 1472	IRENUM - ok
19:39:56.0993 1472	isapnp          (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
19:39:56.0999 1472	isapnp - ok
19:39:57.0013 1472	iScsiPrt        (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
19:39:57.0023 1472	iScsiPrt - ok
19:39:57.0069 1472	JRAID           (86cfef6dc6de51aab0c10384fe98f48f) C:\Windows\system32\DRIVERS\jraid.sys
19:39:57.0082 1472	JRAID - ok
19:39:57.0123 1472	kbdclass        (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
19:39:57.0139 1472	kbdclass - ok
19:39:57.0146 1472	kbdhid          (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys
19:39:57.0159 1472	kbdhid - ok
19:39:57.0184 1472	KSecDD          (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
19:39:57.0195 1472	KSecDD - ok
19:39:57.0209 1472	KSecPkg         (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
19:39:57.0221 1472	KSecPkg - ok
19:39:57.0237 1472	ksthunk         (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
19:39:57.0294 1472	ksthunk - ok
19:39:57.0367 1472	lirsgt          (156ab2e56dc3ca0b582e3362e07cded7) C:\Windows\system32\DRIVERS\lirsgt.sys
19:39:57.0378 1472	lirsgt - ok
19:39:57.0397 1472	lltdio          (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
19:39:57.0446 1472	lltdio - ok
19:39:57.0476 1472	LSI_FC          (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
19:39:57.0484 1472	LSI_FC - ok
19:39:57.0501 1472	LSI_SAS         (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
19:39:57.0509 1472	LSI_SAS - ok
19:39:57.0520 1472	LSI_SAS2        (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
19:39:57.0527 1472	LSI_SAS2 - ok
19:39:57.0539 1472	LSI_SCSI        (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
19:39:57.0547 1472	LSI_SCSI - ok
19:39:57.0576 1472	luafv           (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
19:39:57.0631 1472	luafv - ok
19:39:57.0650 1472	megasas         (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
19:39:57.0657 1472	megasas - ok
19:39:57.0669 1472	MegaSR          (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
19:39:57.0680 1472	MegaSR - ok
19:39:57.0710 1472	Modem           (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
19:39:57.0755 1472	Modem - ok
19:39:57.0782 1472	monitor         (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
19:39:57.0800 1472	monitor - ok
19:39:57.0822 1472	mouclass        (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
19:39:57.0829 1472	mouclass - ok
19:39:57.0857 1472	mouhid          (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
19:39:57.0880 1472	mouhid - ok
19:39:57.0903 1472	mountmgr        (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
19:39:57.0919 1472	mountmgr - ok
19:39:57.0952 1472	mpio            (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
19:39:57.0961 1472	mpio - ok
19:39:57.0978 1472	mpsdrv          (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
19:39:58.0004 1472	mpsdrv - ok
19:39:58.0030 1472	MRxDAV          (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
19:39:58.0052 1472	MRxDAV - ok
19:39:58.0067 1472	mrxsmb          (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
19:39:58.0089 1472	mrxsmb - ok
19:39:58.0113 1472	mrxsmb10        (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:39:58.0134 1472	mrxsmb10 - ok
19:39:58.0141 1472	mrxsmb20        (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:39:58.0150 1472	mrxsmb20 - ok
19:39:58.0161 1472	msahci          (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
19:39:58.0168 1472	msahci - ok
19:39:58.0201 1472	msdsm           (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
19:39:58.0210 1472	msdsm - ok
19:39:58.0228 1472	Msfs            (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
19:39:58.0253 1472	Msfs - ok
19:39:58.0268 1472	mshidkmdf       (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
19:39:58.0323 1472	mshidkmdf - ok
19:39:58.0329 1472	msisadrv        (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
19:39:58.0336 1472	msisadrv - ok
19:39:58.0363 1472	MSKSSRV         (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
19:39:58.0395 1472	MSKSSRV - ok
19:39:58.0409 1472	MSPCLOCK        (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
19:39:58.0446 1472	MSPCLOCK - ok
19:39:58.0460 1472	MSPQM           (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
19:39:58.0503 1472	MSPQM - ok
19:39:58.0529 1472	MsRPC           (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
19:39:58.0540 1472	MsRPC - ok
19:39:58.0556 1472	mssmbios        (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
19:39:58.0563 1472	mssmbios - ok
19:39:58.0581 1472	MSTEE           (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
19:39:58.0616 1472	MSTEE - ok
19:39:58.0631 1472	MTConfig        (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
19:39:58.0642 1472	MTConfig - ok
19:39:58.0681 1472	MTsensor        (03b7145c889603537e9ffeabb1ad1089) C:\Windows\system32\DRIVERS\ASACPI.sys
19:39:58.0698 1472	MTsensor - ok
19:39:58.0720 1472	Mup             (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
19:39:58.0735 1472	Mup - ok
19:39:58.0764 1472	NativeWifiP     (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
19:39:58.0799 1472	NativeWifiP - ok
19:39:58.0860 1472	NDIS            (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
19:39:58.0890 1472	NDIS - ok
19:39:58.0901 1472	NdisCap         (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
19:39:58.0927 1472	NdisCap - ok
19:39:58.0938 1472	NdisTapi        (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
19:39:58.0969 1472	NdisTapi - ok
19:39:59.0000 1472	Ndisuio         (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
19:39:59.0041 1472	Ndisuio - ok
19:39:59.0076 1472	NdisWan         (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
19:39:59.0106 1472	NdisWan - ok
19:39:59.0131 1472	NDProxy         (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
19:39:59.0161 1472	NDProxy - ok
19:39:59.0192 1472	NetBIOS         (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
19:39:59.0230 1472	NetBIOS - ok
19:39:59.0259 1472	NetBT           (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
19:39:59.0311 1472	NetBT - ok
19:39:59.0333 1472	nfrd960         (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
19:39:59.0340 1472	nfrd960 - ok
19:39:59.0363 1472	Npfs            (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
19:39:59.0406 1472	Npfs - ok
19:39:59.0423 1472	nsiproxy        (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
19:39:59.0459 1472	nsiproxy - ok
19:39:59.0511 1472	Ntfs            (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
19:39:59.0543 1472	Ntfs - ok
19:39:59.0558 1472	Null            (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
19:39:59.0583 1472	Null - ok
19:39:59.0622 1472	nvraid          (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
19:39:59.0631 1472	nvraid - ok
19:39:59.0655 1472	nvstor          (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
19:39:59.0664 1472	nvstor - ok
19:39:59.0690 1472	nv_agp          (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
19:39:59.0700 1472	nv_agp - ok
19:39:59.0721 1472	ohci1394        (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
19:39:59.0738 1472	ohci1394 - ok
19:39:59.0772 1472	Parport         (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
19:39:59.0790 1472	Parport - ok
19:39:59.0819 1472	partmgr         (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys
19:39:59.0827 1472	partmgr - ok
19:39:59.0844 1472	pci             (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
19:39:59.0854 1472	pci - ok
19:39:59.0863 1472	pciide          (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
19:39:59.0870 1472	pciide - ok
19:39:59.0888 1472	pcmcia          (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
19:39:59.0897 1472	pcmcia - ok
19:39:59.0928 1472	pcouffin        (af7ce12c4f3dc8cb2b07685c916bbcfe) C:\Windows\system32\Drivers\pcouffin.sys
19:39:59.0956 1472	pcouffin - ok
19:39:59.0972 1472	pcw             (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
19:39:59.0987 1472	pcw - ok
19:40:00.0017 1472	PEAUTH          (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
19:40:00.0076 1472	PEAUTH - ok
19:40:00.0146 1472	PptpMiniport    (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
19:40:00.0202 1472	PptpMiniport - ok
19:40:00.0214 1472	Processor       (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
19:40:00.0232 1472	Processor - ok
19:40:00.0275 1472	Psched          (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
19:40:00.0325 1472	Psched - ok
19:40:00.0360 1472	ql2300          (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
19:40:00.0390 1472	ql2300 - ok
19:40:00.0402 1472	ql40xx          (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
19:40:00.0411 1472	ql40xx - ok
19:40:00.0428 1472	QWAVEdrv        (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
19:40:00.0450 1472	QWAVEdrv - ok
19:40:00.0464 1472	RasAcd          (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
19:40:00.0503 1472	RasAcd - ok
19:40:00.0521 1472	RasAgileVpn     (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
19:40:00.0547 1472	RasAgileVpn - ok
19:40:00.0578 1472	Rasl2tp         (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
19:40:00.0632 1472	Rasl2tp - ok
19:40:00.0652 1472	RasPppoe        (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
19:40:00.0677 1472	RasPppoe - ok
19:40:00.0691 1472	RasSstp         (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
19:40:00.0716 1472	RasSstp - ok
19:40:00.0752 1472	rdbss           (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
19:40:00.0807 1472	rdbss - ok
19:40:00.0817 1472	rdpbus          (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
19:40:00.0833 1472	rdpbus - ok
19:40:00.0850 1472	RDPCDD          (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
19:40:00.0876 1472	RDPCDD - ok
19:40:00.0904 1472	RDPENCDD        (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
19:40:00.0942 1472	RDPENCDD - ok
19:40:00.0960 1472	RDPREFMP        (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
19:40:00.0984 1472	RDPREFMP - ok
19:40:01.0011 1472	RDPWD           (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys
19:40:01.0048 1472	RDPWD - ok
19:40:01.0078 1472	rdyboost        (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
19:40:01.0096 1472	rdyboost - ok
19:40:01.0119 1472	rspndr          (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
19:40:01.0149 1472	rspndr - ok
19:40:01.0235 1472	RTL8167         (ee082e06a82ff630351d1e0ebbd3d8d0) C:\Windows\system32\DRIVERS\Rt64win7.sys
19:40:01.0255 1472	RTL8167 - ok
19:40:01.0281 1472	sbp2port        (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
19:40:01.0291 1472	sbp2port - ok
19:40:01.0315 1472	scfilter        (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
19:40:01.0345 1472	scfilter - ok
19:40:01.0360 1472	secdrv          (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
19:40:01.0385 1472	secdrv - ok
19:40:01.0409 1472	Serenum         (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
19:40:01.0421 1472	Serenum - ok
19:40:01.0440 1472	Serial          (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
19:40:01.0463 1472	Serial - ok
19:40:01.0476 1472	sermouse        (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
19:40:01.0486 1472	sermouse - ok
19:40:01.0514 1472	sffdisk         (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
19:40:01.0546 1472	sffdisk - ok
19:40:01.0558 1472	sffp_mmc        (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
19:40:01.0569 1472	sffp_mmc - ok
19:40:01.0576 1472	sffp_sd         (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
19:40:01.0598 1472	sffp_sd - ok
19:40:01.0614 1472	sfloppy         (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
19:40:01.0634 1472	sfloppy - ok
19:40:01.0651 1472	SiSRaid2        (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
19:40:01.0659 1472	SiSRaid2 - ok
19:40:01.0671 1472	SiSRaid4        (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
19:40:01.0680 1472	SiSRaid4 - ok
19:40:01.0710 1472	Smb             (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
19:40:01.0739 1472	Smb - ok
19:40:01.0762 1472	spldr           (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
19:40:01.0768 1472	spldr - ok
19:40:01.0794 1472	srv             (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
19:40:01.0808 1472	srv - ok
19:40:01.0828 1472	srv2            (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
19:40:01.0848 1472	srv2 - ok
19:40:01.0868 1472	srvnet          (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
19:40:01.0885 1472	srvnet - ok
19:40:01.0910 1472	SSHDRV65 - ok
19:40:01.0948 1472	stexstor        (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
19:40:01.0963 1472	stexstor - ok
19:40:02.0002 1472	swenum          (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
19:40:02.0015 1472	swenum - ok
19:40:02.0084 1472	Tcpip           (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys
19:40:02.0159 1472	Tcpip - ok
19:40:02.0182 1472	TCPIP6          (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys
19:40:02.0209 1472	TCPIP6 - ok
19:40:02.0239 1472	tcpipreg        (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
19:40:02.0287 1472	tcpipreg - ok
19:40:02.0308 1472	TDPIPE          (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
19:40:02.0323 1472	TDPIPE - ok
19:40:02.0347 1472	TDTCP           (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
19:40:02.0366 1472	TDTCP - ok
19:40:02.0398 1472	tdx             (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
19:40:02.0427 1472	tdx - ok
19:40:02.0443 1472	TermDD          (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
19:40:02.0450 1472	TermDD - ok
19:40:02.0474 1472	TFsExDisk       (48d9d00c2e0e72c3d4f52772c80355f6) C:\Windows\System32\Drivers\TFsExDisk.sys
19:40:02.0479 1472	TFsExDisk - ok
19:40:02.0511 1472	tssecsrv        (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
19:40:02.0560 1472	tssecsrv - ok
19:40:02.0591 1472	TsUsbFlt        (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
19:40:02.0623 1472	TsUsbFlt - ok
19:40:02.0678 1472	tunnel          (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
19:40:02.0728 1472	tunnel - ok
19:40:02.0739 1472	uagp35          (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
19:40:02.0746 1472	uagp35 - ok
19:40:02.0780 1472	udfs            (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
19:40:02.0825 1472	udfs - ok
19:40:02.0841 1472	uliagpkx        (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
19:40:02.0848 1472	uliagpkx - ok
19:40:02.0881 1472	umbus           (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys
19:40:02.0901 1472	umbus - ok
19:40:02.0917 1472	UmPass          (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
19:40:02.0933 1472	UmPass - ok
19:40:02.0961 1472	usbccgp         (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
19:40:02.0996 1472	usbccgp - ok
19:40:03.0030 1472	usbcir          (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
19:40:03.0061 1472	usbcir - ok
19:40:03.0078 1472	usbehci         (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys
19:40:03.0118 1472	usbehci - ok
19:40:03.0149 1472	usbhub          (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
19:40:03.0170 1472	usbhub - ok
19:40:03.0211 1472	usbohci         (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
19:40:03.0240 1472	usbohci - ok
19:40:03.0269 1472	usbprint        (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
19:40:03.0285 1472	usbprint - ok
19:40:03.0311 1472	usbscan         (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys
19:40:03.0329 1472	usbscan - ok
19:40:03.0357 1472	USBSTOR         (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:40:03.0375 1472	USBSTOR - ok
19:40:03.0405 1472	usbuhci         (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys
19:40:03.0426 1472	usbuhci - ok
19:40:03.0470 1472	vdrvroot        (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
19:40:03.0485 1472	vdrvroot - ok
19:40:03.0503 1472	vga             (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
19:40:03.0525 1472	vga - ok
19:40:03.0547 1472	VgaSave         (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
19:40:03.0580 1472	VgaSave - ok
19:40:03.0622 1472	vhdmp           (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
19:40:03.0642 1472	vhdmp - ok
19:40:03.0708 1472	VIAHdAudAddService (712bfd5dac2668fba4a2435fb06c3d00) C:\Windows\system32\drivers\viahduaa.sys
19:40:03.0746 1472	VIAHdAudAddService - ok
19:40:03.0765 1472	viaide          (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
19:40:03.0772 1472	viaide - ok
19:40:03.0788 1472	volmgr          (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
19:40:03.0795 1472	volmgr - ok
19:40:03.0825 1472	volmgrx         (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
19:40:03.0837 1472	volmgrx - ok
19:40:03.0857 1472	volsnap         (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
19:40:03.0868 1472	volsnap - ok
19:40:03.0887 1472	vsmraid         (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
19:40:03.0896 1472	vsmraid - ok
19:40:03.0913 1472	vwifibus        (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys
19:40:03.0935 1472	vwifibus - ok
19:40:03.0952 1472	WacomPen        (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
19:40:03.0969 1472	WacomPen - ok
19:40:03.0993 1472	WANARP          (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
19:40:04.0025 1472	WANARP - ok
19:40:04.0034 1472	Wanarpv6        (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
19:40:04.0059 1472	Wanarpv6 - ok
19:40:04.0083 1472	Wd              (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
19:40:04.0090 1472	Wd - ok
19:40:04.0111 1472	Wdf01000        (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
19:40:04.0127 1472	Wdf01000 - ok
19:40:04.0155 1472	WfpLwf          (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
19:40:04.0180 1472	WfpLwf - ok
19:40:04.0193 1472	WIMMount        (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
19:40:04.0200 1472	WIMMount - ok
19:40:04.0245 1472	WinUsb          (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
19:40:04.0256 1472	WinUsb - ok
19:40:04.0307 1472	WmiAcpi         (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
19:40:04.0324 1472	WmiAcpi - ok
19:40:04.0343 1472	ws2ifsl         (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
19:40:04.0367 1472	ws2ifsl - ok
19:40:04.0401 1472	WudfPf          (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
19:40:04.0440 1472	WudfPf - ok
19:40:04.0467 1472	WUDFRd          (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
19:40:04.0504 1472	WUDFRd - ok
19:40:04.0559 1472	xusb21          (2ee48cfce7ca8e0db4c44c7476c0943b) C:\Windows\system32\DRIVERS\xusb21.sys
19:40:04.0581 1472	xusb21 - ok
19:40:04.0668 1472	{95808DC4-FA4A-4C74-92FE-5B863F82066B} (74983addca2d9618512c088d856d6615) D:\Program Files (x86)\CyberLink\PowerDVD\000.fcl
19:40:04.0680 1472	{95808DC4-FA4A-4C74-92FE-5B863F82066B} - ok
19:40:04.0700 1472	MBR (0x1B8)     (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
19:40:04.0798 1472	\Device\Harddisk0\DR0 - ok
19:40:04.0816 1472	MBR (0x1B8)     (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk1\DR1
19:40:04.0877 1472	\Device\Harddisk1\DR1 - ok
19:40:04.0881 1472	Boot (0x1200)   (436f8dc48c97a22a7989d2b0d0cb8e56) \Device\Harddisk0\DR0\Partition0
19:40:04.0882 1472	\Device\Harddisk0\DR0\Partition0 - ok
19:40:04.0908 1472	Boot (0x1200)   (625886e6efd9124654c95fd4f30320f3) \Device\Harddisk0\DR0\Partition1
19:40:04.0909 1472	\Device\Harddisk0\DR0\Partition1 - ok
19:40:04.0922 1472	Boot (0x1200)   (0b72d127af9544f98f962634d33513bd) \Device\Harddisk0\DR0\Partition2
19:40:04.0923 1472	\Device\Harddisk0\DR0\Partition2 - ok
19:40:04.0942 1472	Boot (0x1200)   (3023392efd829adbc38211306e8afcf6) \Device\Harddisk0\DR0\Partition3
19:40:04.0943 1472	\Device\Harddisk0\DR0\Partition3 - ok
19:40:04.0965 1472	Boot (0x1200)   (74a77f400a0d2c1f92f403c11839ac7d) \Device\Harddisk1\DR1\Partition0
19:40:04.0967 1472	\Device\Harddisk1\DR1\Partition0 - ok
19:40:04.0967 1472	============================================================
19:40:04.0967 1472	Scan finished
19:40:04.0967 1472	============================================================
19:40:04.0980 3828	Detected object count: 0
19:40:04.0980 3828	Actual detected object count: 0
         

Alt 20.03.2012, 16:00   #17
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp - Standard

EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp



Dann bitte jetzt CF ausführen:

ComboFix

Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Schliesse alle Programme, vor allem dein Antivirenprogramm und andere Hintergrundwächter sowie deinen Internetbrowser.
  • Starte combofix.exe von deinem Desktop aus, bestätige die Warnmeldungen, führe die Updates durch (falls vorgeschlagen), installiere die Wiederherstellungskonsole (falls vorgeschlagen) und lass dein System durchsuchen.
    Vermeide es auch während Combofix läuft die Maus und Tastatur zu benutzen.
  • Im Anschluss öffnet sich automatisch eine combofix.txt, diesen Inhalt bitte kopieren ([Strg]a, [Strg]c) und in deinen Beitrag einfügen ([Strg]v). Die Datei findest du außerdem unter: C:\ComboFix.txt.
Wichtiger Hinweis:
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!

Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich ziehen und eine Bereinigung der Infektion noch erschweren.

Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie

Zitat:
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
startest du Windows dann manuell neu und die Fehlermeldungen sollten nicht mehr auftauchen.
__________________

__________________

Alt 21.03.2012, 22:04   #18
cold_fire
 
EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp - Standard

EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp



Einmal ComboFix log:

Code:
ATTFilter
ComboFix 12-03-21.02 - Fabian 21.03.2012  21:46:42.1.4 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.49.1031.18.4087.2910 [GMT 1:00]
ausgeführt von:: c:\users\Fabian\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((   Weitere Löschungen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\security\Database\tmp.edb
.
.
(((((((((((((((((((((((   Dateien erstellt von 2012-02-21 bis 2012-03-21  ))))))))))))))))))))))))))))))
.
.
2012-03-21 20:50 . 2012-03-21 20:50	--------	d-----w-	c:\users\Default\AppData\Local\temp
2012-03-20 10:59 . 2012-03-01 13:21	8643640	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{8D7A5B2D-A6A5-4DF0-AA8F-B3965449314B}\mpengine.dll
2012-03-19 18:23 . 2012-03-19 18:23	--------	d-----w-	c:\users\Fabian\AppData\Local\VirtualStore
2012-03-19 18:20 . 2012-03-19 18:20	--------	d-----w-	C:\_OTL
2012-03-18 15:36 . 2012-03-18 15:36	592824	----a-w-	c:\program files (x86)\Mozilla Firefox\gkmedias.dll
2012-03-18 15:36 . 2012-03-18 15:36	44472	----a-w-	c:\program files (x86)\Mozilla Firefox\mozglue.dll
2012-03-17 02:02 . 2012-03-17 02:02	--------	d-----w-	c:\users\Default\AppData\Local\Microsoft Help
2012-03-17 01:43 . 2012-03-17 01:43	--------	d-----w-	c:\program files (x86)\Common Files\Skype
2012-03-17 00:34 . 2012-03-17 00:34	--------	d-----w-	c:\program files (x86)\ESET
2012-03-16 01:07 . 2012-03-16 01:07	--------	d-----w-	c:\users\Fabian\AppData\Roaming\Malwarebytes
2012-03-16 01:06 . 2012-03-16 01:06	--------	d-----w-	c:\programdata\Malwarebytes
2012-03-16 01:06 . 2012-03-16 01:07	--------	d-----w-	c:\program files (x86)\Malwarebytes' Anti-Malware
2012-03-16 01:06 . 2011-12-10 14:24	23152	----a-w-	c:\windows\system32\drivers\mbam.sys
2012-03-16 01:01 . 2011-11-19 15:20	5559152	----a-w-	c:\windows\system32\ntoskrnl.exe
2012-03-16 01:01 . 2011-11-19 14:50	3968368	----a-w-	c:\windows\SysWow64\ntkrnlpa.exe
2012-03-16 01:01 . 2011-11-19 14:50	3913584	----a-w-	c:\windows\SysWow64\ntoskrnl.exe
2012-03-16 00:38 . 2011-12-30 06:26	515584	----a-w-	c:\windows\system32\timedate.cpl
2012-03-16 00:38 . 2011-12-30 05:27	478720	----a-w-	c:\windows\SysWow64\timedate.cpl
2012-03-16 00:38 . 2012-02-10 06:36	1544192	----a-w-	c:\windows\system32\DWrite.dll
2012-03-16 00:38 . 2012-02-10 05:38	1077248	----a-w-	c:\windows\SysWow64\DWrite.dll
2012-03-16 00:38 . 2011-12-16 08:46	634880	----a-w-	c:\windows\system32\msvcrt.dll
2012-03-16 00:38 . 2011-12-16 07:52	690688	----a-w-	c:\windows\SysWow64\msvcrt.dll
2012-03-16 00:38 . 2011-12-28 03:59	498688	----a-w-	c:\windows\system32\drivers\afd.sys
2012-03-16 00:37 . 2011-11-17 06:41	1731920	----a-w-	c:\windows\system32\ntdll.dll
2012-03-16 00:37 . 2011-11-17 05:38	1292080	----a-w-	c:\windows\SysWow64\ntdll.dll
2012-03-16 00:36 . 2011-11-19 14:58	77312	----a-w-	c:\windows\system32\packager.dll
2012-03-16 00:36 . 2011-11-19 14:01	67072	----a-w-	c:\windows\SysWow64\packager.dll
2012-03-16 00:36 . 2012-01-25 06:38	77312	----a-w-	c:\windows\system32\rdpwsx.dll
2012-03-16 00:36 . 2012-01-25 06:38	149504	----a-w-	c:\windows\system32\rdpcorekmts.dll
2012-03-16 00:36 . 2012-01-25 06:33	9216	----a-w-	c:\windows\system32\rdrmemptylst.exe
2012-03-16 00:36 . 2012-02-17 06:38	1031680	----a-w-	c:\windows\system32\rdpcore.dll
2012-03-16 00:36 . 2012-02-17 05:34	826880	----a-w-	c:\windows\SysWow64\rdpcore.dll
2012-03-16 00:36 . 2012-02-17 04:58	210944	----a-w-	c:\windows\system32\drivers\rdpwd.sys
2012-03-16 00:36 . 2012-02-17 04:57	23552	----a-w-	c:\windows\system32\drivers\tdtcp.sys
2012-03-15 20:50 . 2012-03-15 20:50	--------	d-----w-	c:\program files (x86)\NVIDIA Corporation
2012-03-07 21:44 . 2004-07-15 23:20	69715	----a-w-	c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\ctor.dll
2012-03-07 21:44 . 2004-07-15 23:19	266240	----a-w-	c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iscript.dll
2012-03-07 21:44 . 2004-07-15 23:18	172032	----a-w-	c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iuser.dll
2012-03-07 21:44 . 2004-07-15 23:18	5632	----a-w-	c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\DotNetInstaller.exe
2012-03-07 21:43 . 2012-03-07 21:43	180356	----a-w-	c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iGdi.dll
2012-03-07 21:43 . 2004-07-15 23:20	733184	----a-w-	c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iKernel.dll
2012-03-07 21:43 . 2012-03-07 21:43	303236	----a-w-	c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\setup.dll
2012-03-07 13:51 . 2012-03-07 13:51	8192	----a-r-	c:\users\Fabian\AppData\Roaming\Microsoft\Installer\{D0B36BAF-3E9D-423E-8821-ED238C18DB0A}\IconD0B36BAF3.exe
2012-03-07 13:51 . 2012-03-07 13:51	6144	----a-r-	c:\users\Fabian\AppData\Roaming\Microsoft\Installer\{D0B36BAF-3E9D-423E-8821-ED238C18DB0A}\Icon83F12F734.exe
2012-03-07 13:51 . 2012-03-07 13:51	11264	----a-r-	c:\users\Fabian\AppData\Roaming\Microsoft\Installer\{D0B36BAF-3E9D-423E-8821-ED238C18DB0A}\Icon8F99E711.exe
2012-02-21 22:36 . 2012-02-21 22:36	--------	d-----w-	c:\users\Fabian\AppData\Local\Microsoft Help
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-03-16 01:46 . 2011-06-01 17:21	414368	----a-w-	c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-02-23 09:18 . 2011-01-18 12:13	279656	------w-	c:\windows\system32\MpSigStub.exe
2012-02-15 23:36 . 2011-11-16 01:57	132320	----a-w-	c:\windows\system32\drivers\avipbb.sys
2012-02-07 13:40 . 2009-08-18 11:49	564632	----a-w-	c:\programdata\Microsoft\IdentityCRL\production\wlidui.dll
2012-02-07 13:40 . 2009-08-18 10:24	18328	----a-w-	c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"="c:\program files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" [2009-08-20 2363392]
"Steam"="e:\steam\steam.exe" [2011-08-24 1242448]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"="c:\program files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" [2010-01-18 2787840]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2009-08-31 36864]
"GrooveMonitor"="d:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"BDRegion"="c:\program files (x86)\Cyberlink\Shared Files\brs.exe" [2009-09-04 75048]
"RemoteControl"="d:\program files (x86)\CyberLink\PowerDVD\PDVDServ.exe" [2009-04-16 87336]
"LanguageShortcut"="d:\program files (x86)\CyberLink\PowerDVD\Language\Language.exe" [2009-04-16 62760]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
"TkBellExe"="c:\programdata\Real\update\realsched.exe" [2011-06-20 273544]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"AVMWlanClient"="c:\program files (x86)\avmwlanstick\wlangui.exe" [2010-10-22 2105344]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-11-09 343168]
"LogMeIn Hamachi Ui"="d:\program files (x86)\Hamachi\hamachi-2-ui.exe" [2011-08-04 1955208]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2011-10-19 258512]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
WinTV Recording Status..lnk - c:\program files (x86)\WinTV\WinTV7\WinTVTray.exe [2010-5-2 83456]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages	REG_MULTI_SZ   	kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]
"ATICustomerCare"="c:\program files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe"
"QuickTime Task"="d:\program files (x86)\QuickTime\QTTask.exe" -atboottime
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe"
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"TkBellExe"="c:\program files (x86)\Real\update\realsched.exe"  -osboot
"DivXUpdate"="c:\program files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
"DivX Download Manager"="c:\program files (x86)\DivX\DivX Plus Web Player\DDmService.exe" start
.
R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-02-29 158856]
R3 avmeject;AVM Eject;c:\windows\system32\drivers\avmeject.sys [x]
R3 DAUpdaterSvc;Dragon Age: Origins - Inhaltsupdater;c:\program files (x86)\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe [2009-12-15 25832]
R3 gupdatem;Google Update-Dienst (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [x]
R3 pcouffin;VSO Software pcouffin;c:\windows\system32\Drivers\pcouffin.sys [x]
R3 TFsExDisk;TFsExDisk;c:\windows\System32\Drivers\TFsExDisk.sys [2010-06-14 16448]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WPFFontCache_v0400;WPFFontCache_v0400;c:\windows\Microsoft.NET\Framework64\v4.0.30128\WPF\WPFFontCache_v0400.exe [x]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [x]
S1 HCW88AUD;Hauppauge WinTV 88x Audio Capture;c:\windows\system32\drivers\hcw88aud.sys [x]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2011-10-19 86224]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;d:\program files (x86)\Hamachi\hamachi-2.exe [2011-08-04 2329480]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [x]
S3 FWLANUSB;AVM FRITZ!WLAN;c:\windows\system32\DRIVERS\fwlanusb.sys [x]
S3 hcw88bda;Hauppauge WinTV 88x DVB Tuner/Demod;c:\windows\system32\drivers\hcw88bda.sys [x]
S3 hcw88rc5;Hauppauge WinTV 88x IR Decoder;c:\windows\system32\Drivers\hcw88rc5.sys [x]
S3 HCW88TSE;Hauppauge WinTV 88x MPEG/TS Capture;c:\windows\system32\drivers\hcw88tse.sys [x]
S3 HCW88TUNE;Hauppauge WinTV 88x Tuner;c:\windows\system32\drivers\hcw88tun.sys [x]
S3 hcw88vid;Hauppauge WinTV 88x Video;c:\windows\system32\drivers\hcw88vid.sys [x]
S3 HCW88XBAR;Hauppauge WinTV 88x Crossbar;c:\windows\system32\drivers\HCW88BAR.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [x]
.
.
--- Andere Dienste/Treiber im Speicher ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2009-08-20 11:24	451872	----a-w-	c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{2D46B6DC-2207-486B-B523-A557E6D54B47}]
2010-11-20 12:17	302592	----a-w-	c:\windows\System32\cmd.exe
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{A8D647C8-65AC-409F-B7B2-3C0FEE1A32F2}]
2010-02-16 17:02	114688	----a-w-	c:\program files (x86)\PixiePack Codec Pack\InstallerHelper.exe
.
Inhalt des "geplante Tasks" Ordners
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"XboxStat"="c:\program files\Microsoft Xbox 360 Accessories\XboxStat.exe" [2009-10-01 825184]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Zusätzlicher Suchlauf -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = 
mStart Page = 
mLocal Page = 
mSearch Bar = 
uInternet Settings,ProxyOverride = fritz.box
IE: Free YouTube Download - c:\users\Fabian\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm
IE: Nach Microsoft E&xel exportieren - d:\progra~1\MICROS~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.178.1
FF - ProfilePath - c:\users\Fabian\AppData\Roaming\Mozilla\Firefox\Profiles\y8pjkzvj.default\
FF - prefs.js: browser.search.defaulturl - 
FF - prefs.js: browser.startup.homepage - www.google.de
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe
AddRemove-Uninstall_is1 - c:\program files (x86)\Common Files\DVDVideoSoft\unins000.exe
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\{95808DC4-FA4A-4C74-92FE-5B863F82066B}]
"ImagePath"="\??\d:\program files (x86)\CyberLink\PowerDVD\000.fcl"
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\S-1-5-21-2216256275-4032692977-789257032-1003\Software\SecuROM\License information*]
"datasecu"=hex:fa,db,ec,4a,71,c9,23,db,f3,b4,70,d6,e8,60,eb,32,05,90,47,23,50,
   98,16,d0,e0,b8,e6,94,6b,61,8f,b7,25,e6,b6,38,00,52,b0,41,35,84,d1,0d,6d,98,\
"rkeysecu"=hex:eb,13,1b,74,4a,97,f1,16,3b,7d,52,f7,ce,67,ec,5e
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10v_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10v_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10v.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10v.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10v.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10v.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Weitere laufende Prozesse ------------------------
.
c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe
c:\program files (x86)\avmwlanstick\WlanNetService.exe
c:\progra~2\WinTV\TVServer\HAUPPA~1.EXE
c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe
c:\progra~2\WinTV\TVServer\CAPTUR~3.EXE
.
**************************************************************************
.
Zeit der Fertigstellung: 2012-03-21  21:55:28 - PC wurde neu gestartet
ComboFix-quarantined-files.txt  2012-03-21 20:55
.
Vor Suchlauf: 13 Verzeichnis(se), 81.226.567.680 Bytes frei
Nach Suchlauf: 18 Verzeichnis(se), 81.128.558.592 Bytes frei
.
- - End Of File - - 1B5D89A93329FD9C9E7AF08FF35EA417
         
Gruß, Fabian
__________________

Alt 22.03.2012, 11:52   #19
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp - Standard

EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp



Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.

Hinweis: Bitte den Virenscanner abstellen bevor du aswMBR ausführst, denn v.a. Avira meldet darin oft einen Fehalalrm!
  • Starte die aswMBR.exe Vista und Win7 User aswMBR per Rechtsklick "als Administrator ausführen"
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen) Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort. Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte es erneut nicht klappen teile mir das bitte mit.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 22.03.2012, 17:55   #20
cold_fire
 
EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp - Standard

EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp



Hier die Datei

Code:
ATTFilter
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-03-22 17:44:16
-----------------------------
17:44:16.410    OS Version: Windows x64 6.1.7601 Service Pack 1
17:44:16.410    Number of processors: 4 586 0x1E05
17:44:16.411    ComputerName: FABIAN-PC  UserName: Fabian
17:44:16.711    Initialize success
17:46:02.797    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
17:46:02.802    Disk 0 Vendor: WDC_WD5001AALS-00L3B2 01.03B01 Size: 476940MB BusType: 3
17:46:02.805    Disk 1  \Device\Harddisk1\DR1 -> \Device\Ide\IdeDeviceP0T1L0-2
17:46:02.808    Disk 1 Vendor: WDC_WD1001FALS-00E8B0 05.00K05 Size: 953869MB BusType: 3
17:46:02.815    Disk 0 MBR read successfully
17:46:02.818    Disk 0 MBR scan
17:46:02.822    Disk 0 Windows 7 default MBR code
17:46:02.827    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS          100 MB offset 2048
17:46:02.839    Disk 0 Partition 2 00     07    HPFS/NTFS NTFS       144900 MB offset 206848
17:46:02.853    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS       145000 MB offset 296962048
17:46:02.873    Disk 0 Partition 4 00     07    HPFS/NTFS NTFS       186938 MB offset 593922048
17:46:02.898    Disk 0 scanning C:\Windows\system32\drivers
17:46:07.560    Service scanning
17:46:17.844    Modules scanning
17:46:17.856    Disk 0 trace - called modules:
17:46:17.873    ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys ataport.SYS pciide.sys PCIIDEX.SYS hal.dll atapi.sys 
17:46:17.880    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004dde060]
17:46:17.887    3 CLASSPNP.SYS[fffff8800165143f] -> nt!IofCallDriver -> [0xfffffa8004a9e520]
17:46:17.892    5 ACPI.sys[fffff88000f237a1] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0xfffffa8004aa0060]
17:46:17.897    Scan finished successfully
17:46:39.870    Disk 0 MBR has been saved successfully to "C:\Users\Fabian\Desktop\MBR.dat"
17:46:39.874    The log file has been saved successfully to "C:\Users\Fabian\Desktop\aswMBR.txt"
         
Kann man schon sagen, in wie weit noch eine infektion vorliegt (noch auffälligkeiten und Prozesse vorhanden, oder nurnoch Prüfungen zur sicherheit?!), bzw. wielange das procedere noch ca dauert?

Grüße, Fabian


Alt 23.03.2012, 20:48   #21
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp - Standard

EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp



Sieht ok aus wir sind fast fertig. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs.
Denk dran beide Tools zu updaten vor dem Scan!!
__________________
--> EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp

Alt 26.03.2012, 17:27   #22
cold_fire
 
EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp - Standard

EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp



SASW:

Code:
ATTFilter
SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com

Generated 03/25/2012 at 11:26 PM

Application Version : 5.0.1146

Core Rules Database Version : 8377
Trace Rules Database Version: 6189

Scan type       : Complete Scan
Total Scan Time : 01:38:11

Operating System Information
Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601)
UAC On - Limited User

Memory items scanned      : 538
Memory threats detected   : 0
Registry items scanned    : 66762
Registry threats detected : 0
File items scanned        : 229680
File threats detected     : 534

Adware.Tracking Cookie
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\3BKXNUIG.txt [ /ad3.adfarm1.adition.com ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\0IFXNWCH.txt [ /ad2.adfarm1.adition.com ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\45MJXESH.txt [ /serving-sys.com ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\67OESV10.txt [ /bs.serving-sys.com ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\Y729APFG.txt [ /questionmarket.com ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\W1BWVSA7.txt [ /ads.creative-serving.com ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\JUQ86DAF.txt [ /dyntracker.com ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\MXKDS5XM.txt [ /apmebf.com ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\5W9XY0TV.txt [ /smartadserver.com ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\9ZJMZCBH.txt [ /adfarm1.adition.com ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\5ZOWQ67I.txt [ /fastclick.net ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\H8V7MGZE.txt [ /doubleclick.net ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\5RRGPA2T.txt [ /c.atdmt.com ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\BZ6DN3DQ.txt [ /atdmt.com ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\2071EVVH.txt [ /c1.atdmt.com ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\C729N1HI.txt [ /mediaplex.com ]
	C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\AXNB5H54.txt [ /imrworldwide.com ]
	C:\USERS\FABIAN\Cookies\3BKXNUIG.txt [ Cookie:fabian@ad3.adfarm1.adition.com/ ]
	C:\USERS\FABIAN\Cookies\0IFXNWCH.txt [ Cookie:fabian@ad2.adfarm1.adition.com/ ]
	C:\USERS\FABIAN\Cookies\45MJXESH.txt [ Cookie:fabian@serving-sys.com/ ]
	C:\USERS\FABIAN\Cookies\67OESV10.txt [ Cookie:fabian@bs.serving-sys.com/ ]
	C:\USERS\FABIAN\Cookies\Y729APFG.txt [ Cookie:fabian@questionmarket.com/ ]
	C:\USERS\FABIAN\Cookies\JUQ86DAF.txt [ Cookie:fabian@dyntracker.com/ ]
	C:\USERS\FABIAN\Cookies\MXKDS5XM.txt [ Cookie:fabian@apmebf.com/ ]
	C:\USERS\FABIAN\Cookies\5W9XY0TV.txt [ Cookie:fabian@smartadserver.com/ ]
	C:\USERS\FABIAN\Cookies\9ZJMZCBH.txt [ Cookie:fabian@adfarm1.adition.com/ ]
	C:\USERS\FABIAN\Cookies\5ZOWQ67I.txt [ Cookie:fabian@fastclick.net/ ]
	C:\USERS\FABIAN\Cookies\BZ6DN3DQ.txt [ Cookie:fabian@atdmt.com/ ]
	C:\USERS\FABIAN\Cookies\2071EVVH.txt [ Cookie:fabian@c1.atdmt.com/ ]
	C:\USERS\FABIAN\Cookies\C729N1HI.txt [ Cookie:fabian@mediaplex.com/ ]
	C:\USERS\FABIAN\Cookies\AXNB5H54.txt [ Cookie:fabian@imrworldwide.com/cgi-bin ]
	spenden.wikimedia.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	spenden.wikimedia.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.amazon-adsystem.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.amazon-adsystem.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ubisoft.missioncontrol.global-media.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wbkywkdpclp.stats.esomniture.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ad-emea.doubleclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adserver.adtechus.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.at.atwola.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.uk.at.atwola.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ar.atwola.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.interclick.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.interclick.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	counters.gigya.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.count.spring.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tto2.traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.eyewonder.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.yieldmanager.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	forexyard.advertserve.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	tracking.sim-technik.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.xiti.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.unrulymedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.olympiaverlag.122.2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.conrad.122.2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.game-advertising-online.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.eaeacom.112.2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tacoda.at.atwola.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tacoda.at.atwola.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.at.atwola.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.harrenmedianetwork.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.c1.atdmt.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	studivz.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.getclicky.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.static.getclicky.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	in.getclicky.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	adbuzzz.rotator.hadj7.adjuggler.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	adbuzzz.rotator.hadj7.adjuggler.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	mediapartner.bigpoint.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.pro-market.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	adserver.bravado.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	httptrack.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	httptrack.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.aim4media.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ads.247activemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	adsrv1.admediate.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.www.burstnet.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.lfstmedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.lfstmedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.lfstmedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.lfstmedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.sexfortunegames.newgrounds.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.sexfortunegames.newgrounds.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tracking.mindshare.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	tracking.mindshare.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	tracking.mindshare.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	tracking.mindshare.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	tracking.mindshare.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	tracking.mindshare.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.a.revenuemax.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.republicofadvertising.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tracking.mindshare.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adxvalue.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adxpose.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.hightraffic.hugoboss.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.hightraffic.hugoboss.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	server.adform.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.mediamarkt.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	tracking.hostgator.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	media-mgmt.armorgames.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad.adition.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad.adition.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	count.asnetworks.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	dc.tremormedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.overture.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.overture.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.stats.complex.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.stats.complex.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.burstnet.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.burstnet.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	gr.burstnet.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.c.atdmt.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.c.atdmt.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.account.live.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.account.live.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.paypal.112.2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.clickmanage.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.clickmanage.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	adserver.ps3m.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.112.2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.komtrack.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.komtrack.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tracking.booming.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	tracking.booming.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	statse.webtrendslive.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.eyewonder.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.www.traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	tracking.mlsat03.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.at.atwola.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	e2.emediate.se [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	e2.emediate.se [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	partners.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.clickfuse.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.clickfuse.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.clickfuse.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad.servestats.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.unister-adservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	stats.computecmedia.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.aka-cdn-ns.adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.lucidmedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	server.adform.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.bs.serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	edates.traffective-tracking.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	edates.traffective-tracking.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	edates.traffective-tracking.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	edates.traffective-tracking.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.account.swtor.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adlegend.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adlegend.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tradetracker.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.quartermedia.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.quartermedia.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.usenext.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	sega.missioncontrol.global-media.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad1.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ww251.smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.zanox-affiliate.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.unister-adservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.myroitracking.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad4.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad.adserver01.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	accounts.google.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ad-emea.doubleclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ad-emea.doubleclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.ad-emea.doubleclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad3.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.bs.serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	track.prd1.netshelter.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.kontera.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.weborama.fr [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.lanairlines.solution.weborama.fr [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.lanairlines.solution.weborama.fr [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.lanairlines.solution.weborama.fr [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.lanairlines.solution.weborama.fr [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	ad2.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.dyntracker.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adform.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
         
und Malwarebytes:

Code:
ATTFilter
Malwarebytes Anti-Malware 1.60.1.1000
www.malwarebytes.org

Datenbank Version: v2012.03.26.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Fabian :: FABIAN-PC [Administrator]

26.03.2012 17:35:11
mbam-log-2012-03-26 (17-35-11).txt

Art des Suchlaufs: Vollständiger Suchlauf
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 390745
Laufzeit: 45 Minute(n), 29 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)

(Ende)
         

Alt 26.03.2012, 18:36   #23
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp - Standard

EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp



Sieht ok aus, da wurden nur Cookies gefunden.
Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie )

Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 26.03.2012, 21:22   #24
cold_fire
 
EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp - Standard

EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp



Kann nicht klagen, dass es Probleme gäbe und Funde bleiben, glücklicherweise, auch aus.
Dann bedanke ich mich, für deine schnelle, freundliche und kompetente Hilfe und hoffe, dass ich sie nicht nochmal in Anspruch nehmen muss.

Vielen Dank ,
Fabian

P.S.: Ihr könntet bei gelegenheit die Anleitung von SUPERAntiSpyware mit neuen/aktuellen Bilddateien erneuern. hatte eine leicht abgeänderte Benutzeroberfläche.

Alt 27.03.2012, 10:21   #25
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp - Standard

EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp



Dann wären wir durch!

Die Programme, die hier zum Einsatz kamen, können alle wieder runter. CF kann über Start, Ausführen mit combofix /uninstall entfernt werden. Melde dich falls es da Fehlermeldungen zu gibt.
Malwarebytes zu behalten ist kein Fehler. Kannst ja 1x im Monat damit scannen, aber immer vorher ans Update denken.

Bitte abschließend die Updates prüfen, unten mein Leitfaden dazu. Um in Zukunft die Aktualität der installierten Programme besser im Überblick zu halten, kannst du zB Secunia PSI verwenden.
Für noch mehr Sicherheit solltest Du nach der beseitigten Infektion auch möglichst alle Passwörter ändern.


Microsoftupdate

Windows XP: Besuch mit dem IE die MS-Updateseite und lass Dir alle wichtigen Updates installieren.

Windows Vista/7: Anleitung Windows-Update


PDF-Reader aktualisieren
Ein veralteter AdobeReader stellt ein großes Sicherheitsrisiko dar. Du solltest daher besser alte Versionen vom AdobeReader über Systemsteuerung => Software bzw. Programme und Funktionen deinstallieren, indem Du dort auf "Adobe Reader x.0" klickst und das Programm entfernst. (falls du AdobeReader installiert hast)

Ich empfehle einen alternativen PDF-Reader wie PDF Xchange Viewer, SumatraPDF oder Foxit PDF Reader, die sind sehr viel schlanker und flotter als der AdobeReader.

Bitte überprüf bei der Gelegenheit auch die Aktualität des Flashplayers:

Adobe - Andere Version des Adobe Flash Player installieren

Notfalls kann man auch von Chip.de runterladen => http://filepony.de/?q=Flash+Player

Natürlich auch darauf achten, dass andere installierte Browser wie zB Firefox, Opera oder Chrome aktuell sind.


Java-Update
Veraltete Java-Installationen sind ein Sicherheitsrisiko, daher solltest Du die alten Versionen löschen (falls vorhanden, am besten mit JavaRa) und auf die neuste aktualisieren. Beende dazu alle Programme (v.a. die Browser), klick danach auf Start, Systemsteuerung, Software und deinstalliere darüber alle aufgelisteten Java-Versionen. Lad Dir danach von hier das aktuelle Java SE Runtime Environment (JRE) herunter und installiere es.
__________________
Logfiles bitte immer in CODE-Tags posten

Antwort

Themen zu EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp
.dll, administrator, antivir, aufsetzen, autostart, avg, avira, datei, dateisystem, desktop, explorer, fehler, folge, forum, free, heuristiks/extra, heuristiks/shuriken, infizierte, infizierte datei, malwarebytes, modul, msiexec.exe, namen, nt.dll, programm, prozesse, registry, service.exe, temp, verweise, warnung, windows




Ähnliche Themen: EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp


  1. TR/Agent.7375 in C:\Users\HerrTest\AppData\Local\Temp\nscA085.tmp\temp\5FT.zip
    Log-Analyse und Auswertung - 18.10.2015 (13)
  2. C:\Users\****\AppData\Local\Temp\jrscpls.exe
    Plagegeister aller Art und deren Bekämpfung - 30.09.2013 (39)
  3. C:\Users\*****\AppData\Local\Temp\jrscpls.exe
    Plagegeister aller Art und deren Bekämpfung - 23.02.2013 (3)
  4. deo0_sar.exe in der Appdata\local\Temp
    Plagegeister aller Art und deren Bekämpfung - 29.09.2012 (6)
  5. C:\Users\Name\AppData\Local\Temp\g7i0ol_kaz.exe, was ist das??
    Plagegeister aller Art und deren Bekämpfung - 10.08.2012 (15)
  6. BKA Trojaner | C:\Users\~Name\AppData\Local\Temp\g7i0ol_kaz.exe
    Plagegeister aller Art und deren Bekämpfung - 30.07.2012 (5)
  7. c:\users\***\appdata\local\temp\vcplt.dll
    Plagegeister aller Art und deren Bekämpfung - 05.06.2012 (21)
  8. C:\Users\***\AppData\Local\Temp!
    Plagegeister aller Art und deren Bekämpfung - 26.03.2012 (1)
  9. 2 Viren gefunden (Exploit) - EXP/CVE-2011-3544.E und EXP/CVE-2011-3544.J
    Plagegeister aller Art und deren Bekämpfung - 20.02.2012 (30)
  10. Avira findet TR/EyeStye.N.1213 unter C:\User\***\AppData\Local\Temp\203.temp
    Log-Analyse und Auswertung - 31.10.2011 (5)
  11. C:/Users/Appdata/Local/Temp/WAB.log
    Log-Analyse und Auswertung - 21.04.2011 (3)
  12. C:\windows\system32\AppData\Local\Temp\Kg0.exe
    Plagegeister aller Art und deren Bekämpfung - 02.01.2011 (9)
  13. TR/FraudPack.kvb.76 in C:\Users\***\AppData\Local\Temp\Fj0.exe
    Plagegeister aller Art und deren Bekämpfung - 31.12.2010 (4)
  14. XxX.xXx Malware in C:\Users\***\AppData\Local\Temp\XxX.xXx
    Plagegeister aller Art und deren Bekämpfung - 11.05.2010 (10)
  15. rundll32.exe in AppData/Local/Temp/59181BMP -> VIRUS ?
    Plagegeister aller Art und deren Bekämpfung - 10.04.2010 (3)
  16. TR/VB.Downloader.Gen in AppData\Local\Temp\setupv.exe
    Log-Analyse und Auswertung - 14.03.2010 (18)
  17. BDS/Bredavi.azd in C:\Users\****\AppData\Local\Temp\****.exe
    Plagegeister aller Art und deren Bekämpfung - 29.11.2009 (8)

Zum Thema EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp - Und weiter gehts im Text: Code: Alles auswählen Aufklappen ATTFilter 19:39:12.0110 2684 TDSS rootkit removing tool 2.7.20.0 Mar 9 2012 17:10:43 19:39:13.0577 2684 ============================================================ 19:39:13.0577 2684 Current date / time: - EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp...
Archiv
Du betrachtest: EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.