Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Mystart Incredibar

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML

Antwort
Alt 15.07.2012, 17:45   #16
Darwin
 
Mystart Incredibar - Standard

Mystart Incredibar



Code:
ATTFilter
 All processes killed
========== OTL ==========
Registry key HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\SearchScopes\{52403564-EB1D-4FFF-8D1D-70272E9700A9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52403564-EB1D-4FFF-8D1D-70272E9700A9}\ not found.
Registry key HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\SearchScopes\{584758EB-E772-413D-A2D2-CCB8CB44A3D8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{584758EB-E772-413D-A2D2-CCB8CB44A3D8}\ not found.
Registry key HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\SearchScopes\{5D72D9B0-231A-4CB0-A676-0525728CE656}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D72D9B0-231A-4CB0-A676-0525728CE656}\ not found.
Registry key HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\SearchScopes\{C9A8C8CA-BA55-46E3-9D6B-DA30C9326755}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C9A8C8CA-BA55-46E3-9D6B-DA30C9326755}\ not found.
Registry key HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\SearchScopes\{F44702F3-85FD-456E-82C9-56E6DE38678A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F44702F3-85FD-456E-82C9-56E6DE38678A}\ not found.
Prefs.js: 0 removed from network.proxy.type
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found.
Registry value HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
Registry value HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{C424171E-592A-415A-9EB1-DFD6D95D3530} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C424171E-592A-415A-9EB1-DFD6D95D3530}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\ConsentPromptBehaviorAdmin deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\ConsentPromptBehaviorUser deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom\\AutoRun|DWORD:1 /E : value set successfully!
C:\autoexec.bat moved successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9f174409-f1a5-11df-80f8-6c626d5ba775}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9f174409-f1a5-11df-80f8-6c626d5ba775}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9f174409-f1a5-11df-80f8-6c626d5ba775}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9f174409-f1a5-11df-80f8-6c626d5ba775}\ not found.
File F:\pushinst.exe not found.
========== FILES ==========
C:\Config.Msi\573b2.rbf moved successfully.
C:\user.js moved successfully.
C:\Windows\System32\ZSHP1018.EXE moved successfully.
C:\ProgramData\PKP_DLdu.DAT moved successfully.
C:\Users\Ulrike\AppData\Roaming\.# folder moved successfully.
File\Folder C:\Program Files\Common Files\Spigot not found.
C:\Windows\Installer\573e9.msi moved successfully.
========== COMMANDS ==========
 
[EMPTYTEMP]
 
User: All Users
 
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56504 bytes
 
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
 
User: Klaus
->Temp folder emptied: 245724268 bytes
->Temporary Internet Files folder emptied: 203307361 bytes
->Java cache emptied: 14914726 bytes
->FireFox cache emptied: 234114146 bytes
->Opera cache emptied: 191878 bytes
->Flash cache emptied: 59636 bytes
 
User: Public
 
User: Ulrike
->Temp folder emptied: 41691390 bytes
->Temporary Internet Files folder emptied: 12802129 bytes
->Java cache emptied: 16238596 bytes
->FireFox cache emptied: 160175239 bytes
->Flash cache emptied: 74834 bytes
 
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 218115698 bytes
RecycleBin emptied: 0 bytes
 
Total Files Cleaned = 1,094.00 mb
 
 
[EMPTYFLASH]
 
User: All Users
 
User: Default
->Flash cache emptied: 0 bytes
 
User: Default User
->Flash cache emptied: 0 bytes
 
User: Klaus
->Flash cache emptied: 0 bytes
 
User: Public
 
User: Ulrike
->Flash cache emptied: 0 bytes
 
Total Flash Files Cleaned = 0.00 mb
 
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
 
OTL by OldTimer - Version 3.2.54.0 log created on 07152012_183809

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
         

Alt 15.07.2012, 18:52   #17
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Mystart Incredibar - Standard

Mystart Incredibar



Ich brauch den Quarantäneordner von OTL. Bitte folgendes machen:

1.) GANZ WICHTIG!! Virenscanner deaktivieren, der darf das Packen nicht beeinflussen!
2.) Ordner MovedFiles in C:\_OTL in eine Datei zippen
3.) Die erstellte ZIP-Datei hier hochladen => http://www.trojaner-board.de/54791-a...ner-board.html

Hinweis: Die Datei bitte wie in der Anleitung zum UpChannel angegeben auch da hochladen. Bitte NICHT die ZIP-Datei hier als Anhang in den Thread posten!

4.) Wenns erfolgreich war Bescheid sagen
5.) Erst dann wieder den Virenscanner einschalten
__________________

__________________

Alt 15.07.2012, 19:11   #18
Darwin
 
Mystart Incredibar - Standard

Mystart Incredibar



Datei hochgeladen
__________________

Alt 15.07.2012, 20:18   #19
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Mystart Incredibar - Standard

Mystart Incredibar



Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten Anleitung und Downloadlink hier => http://www.trojaner-board.de/82358-t...entfernen.html

Hinweis: Bitte den Virenscanner abstellen bevor du den TDSS-Killer ausführst, denn v.a. Avira meldet im TDSS-Tool oft einen Fehalalrm!

Das Tool so einstellen wie unten im Bild angegeben - klick auf change parameters und setze die Haken wie im folgenden Screenshot abgebildet,
Dann auf Start Scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten.
Wenn du das Log nicht findest oder den Inhalt kopieren und in dein Posting übertragen kannst, dann schau bitte direkt auf deiner Windows-Systempartition (meistens Laufwerk C nach, da speichert der TDSS-Killer seine Logs.

Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten!

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 15.07.2012, 20:54   #20
Darwin
 
Mystart Incredibar - Standard

Mystart Incredibar



Code:
ATTFilter
 21:50:27.0855 3664	TDSS rootkit removing tool 2.7.45.0 Jul  9 2012 12:46:35
21:50:28.0058 3664	============================================================
21:50:28.0058 3664	Current date / time: 2012/07/15 21:50:28.0058
21:50:28.0058 3664	SystemInfo:
21:50:28.0058 3664	
21:50:28.0058 3664	OS Version: 6.1.7601 ServicePack: 1.0
21:50:28.0058 3664	Product type: Workstation
21:50:28.0058 3664	ComputerName: DESKTOP
21:50:28.0058 3664	UserName: Klaus
21:50:28.0058 3664	Windows directory: C:\Windows
21:50:28.0058 3664	System windows directory: C:\Windows
21:50:28.0058 3664	Processor architecture: Intel x86
21:50:28.0058 3664	Number of processors: 2
21:50:28.0058 3664	Page size: 0x1000
21:50:28.0058 3664	Boot type: Normal boot
21:50:28.0058 3664	============================================================
21:50:29.0088 3664	Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
21:50:29.0103 3664	============================================================
21:50:29.0103 3664	\Device\Harddisk0\DR0:
21:50:29.0119 3664	MBR partitions:
21:50:29.0119 3664	\Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
21:50:29.0119 3664	\Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x6F4D3000
21:50:29.0119 3664	\Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x6F505800, BlocksNum 0x5000000
21:50:29.0119 3664	============================================================
21:50:29.0150 3664	C: <-> \Device\Harddisk0\DR0\Partition1
21:50:29.0197 3664	D: <-> \Device\Harddisk0\DR0\Partition2
21:50:29.0197 3664	============================================================
21:50:29.0197 3664	Initialize success
21:50:29.0197 3664	============================================================
21:50:36.0389 2584	============================================================
21:50:36.0389 2584	Scan started
21:50:36.0389 2584	Mode: Manual; SigCheck; TDLFS; 
21:50:36.0389 2584	============================================================
21:50:37.0637 2584	1394ohci        (1b133875b8aa8ac48969bd3458afe9f5) C:\Windows\system32\drivers\1394ohci.sys
21:50:37.0746 2584	1394ohci - ok
21:50:37.0793 2584	ACPI            (cea80c80bed809aa0da6febc04733349) C:\Windows\system32\drivers\ACPI.sys
21:50:37.0808 2584	ACPI - ok
21:50:37.0824 2584	AcpiPmi         (1efbc664abff416d1d07db115dcb264f) C:\Windows\system32\drivers\acpipmi.sys
21:50:37.0886 2584	AcpiPmi - ok
21:50:37.0995 2584	AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
21:50:38.0011 2584	AdobeARMservice - ok
21:50:38.0105 2584	AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
21:50:38.0136 2584	AdobeFlashPlayerUpdateSvc - ok
21:50:38.0183 2584	adp94xx         (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
21:50:38.0214 2584	adp94xx - ok
21:50:38.0245 2584	adpahci         (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
21:50:38.0261 2584	adpahci - ok
21:50:38.0292 2584	adpu320         (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
21:50:38.0307 2584	adpu320 - ok
21:50:38.0323 2584	AeLookupSvc     (8b5eefeec1e6d1a72a06c526628ad161) C:\Windows\System32\aelupsvc.dll
21:50:38.0370 2584	AeLookupSvc - ok
21:50:38.0417 2584	AFD             (9ebbba55060f786f0fcaa3893bfa2806) C:\Windows\system32\drivers\afd.sys
21:50:38.0463 2584	AFD - ok
21:50:38.0573 2584	Agile1Password  (adc2ce8edcdc709c2af01df3eb12dbfa) C:\Program Files\1Password\Agile1pService.exe
21:50:38.0604 2584	Agile1Password - ok
21:50:38.0619 2584	agp440          (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\drivers\agp440.sys
21:50:38.0635 2584	agp440 - ok
21:50:38.0666 2584	aic78xx         (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
21:50:38.0682 2584	aic78xx - ok
21:50:38.0713 2584	ALG             (18a54e132947cd98fea9accc57f98f13) C:\Windows\System32\alg.exe
21:50:38.0760 2584	ALG - ok
21:50:38.0760 2584	aliide          (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\drivers\aliide.sys
21:50:38.0775 2584	aliide - ok
21:50:38.0807 2584	AMD External Events Utility (60201ad353105d8c6796c1b69e6c49f0) C:\Windows\system32\atiesrxx.exe
21:50:38.0853 2584	AMD External Events Utility - ok
21:50:38.0869 2584	amdagp          (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\drivers\amdagp.sys
21:50:38.0885 2584	amdagp - ok
21:50:38.0916 2584	amdide          (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\drivers\amdide.sys
21:50:38.0931 2584	amdide - ok
21:50:38.0947 2584	AmdK8           (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
21:50:38.0994 2584	AmdK8 - ok
21:50:39.0275 2584	amdkmdag        (51610b74a9a1d84dc86fce1019beaff4) C:\Windows\system32\DRIVERS\atikmdag.sys
21:50:39.0477 2584	amdkmdag - ok
21:50:39.0587 2584	amdkmdap        (cd1d86ab81eece67d7bd6f7ef9786ccc) C:\Windows\system32\DRIVERS\atikmpag.sys
21:50:39.0618 2584	amdkmdap - ok
21:50:39.0649 2584	AmdPPM          (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
21:50:39.0680 2584	AmdPPM - ok
21:50:39.0711 2584	amdsata         (d320bf87125326f996d4904fe24300fc) C:\Windows\system32\drivers\amdsata.sys
21:50:39.0727 2584	amdsata - ok
21:50:39.0743 2584	amdsbs          (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
21:50:39.0758 2584	amdsbs - ok
21:50:39.0758 2584	amdxata         (46387fb17b086d16dea267d5be23a2f2) C:\Windows\system32\drivers\amdxata.sys
21:50:39.0774 2584	amdxata - ok
21:50:39.0836 2584	AntiVirSchedulerService (466a0d95960dad3222c896d2cea99993) C:\Program Files\Avira\AntiVir Desktop\sched.exe
21:50:39.0852 2584	AntiVirSchedulerService - ok
21:50:39.0899 2584	AntiVirService  (a489be6bb0aa1ff406b488b60542314b) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
21:50:39.0914 2584	AntiVirService - ok
21:50:39.0930 2584	AppID           (aea177f783e20150ace5383ee368da19) C:\Windows\system32\drivers\appid.sys
21:50:40.0023 2584	AppID - ok
21:50:40.0039 2584	AppIDSvc        (62a9c86cb6085e20db4823e4e97826f5) C:\Windows\System32\appidsvc.dll
21:50:40.0070 2584	AppIDSvc - ok
21:50:40.0101 2584	Appinfo         (fb1959012294d6ad43e5304df65e3c26) C:\Windows\System32\appinfo.dll
21:50:40.0133 2584	Appinfo - ok
21:50:40.0164 2584	arc             (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
21:50:40.0179 2584	arc - ok
21:50:40.0195 2584	arcsas          (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
21:50:40.0211 2584	arcsas - ok
21:50:40.0273 2584	aspnet_state    (39cdcb109bf200cc8a05b9c7e6272d11) C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
21:50:40.0289 2584	aspnet_state - ok
21:50:40.0304 2584	AsyncMac        (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
21:50:40.0398 2584	AsyncMac - ok
21:50:40.0429 2584	atapi           (338c86357871c167a96ab976519bf59e) C:\Windows\system32\drivers\atapi.sys
21:50:40.0429 2584	atapi - ok
21:50:40.0491 2584	AtiHdmiService  (8df873d0587596c1d35a9cececc61da1) C:\Windows\system32\drivers\AtiHdmi.sys
21:50:40.0507 2584	AtiHdmiService - ok
21:50:40.0554 2584	AudioEndpointBuilder (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll
21:50:40.0585 2584	AudioEndpointBuilder - ok
21:50:40.0601 2584	Audiosrv        (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll
21:50:40.0616 2584	Audiosrv - ok
21:50:40.0663 2584	avgntflt        (d5541f0afb767e85fc412fc609d96a74) C:\Windows\system32\DRIVERS\avgntflt.sys
21:50:40.0679 2584	avgntflt - ok
21:50:40.0710 2584	avipbb          (7d967a682d4694df7fa57d63a2db01fe) C:\Windows\system32\DRIVERS\avipbb.sys
21:50:40.0725 2584	avipbb - ok
21:50:40.0741 2584	avkmgr          (271cfd1a989209b1964e24d969552bf7) C:\Windows\system32\DRIVERS\avkmgr.sys
21:50:40.0757 2584	avkmgr - ok
21:50:40.0788 2584	avmeject        (263cf9d248fd5e020a1333ed4f7eaa88) C:\Windows\system32\drivers\avmeject.sys
21:50:40.0819 2584	avmeject ( UnsignedFile.Multi.Generic ) - warning
21:50:40.0819 2584	avmeject - detected UnsignedFile.Multi.Generic (1)
21:50:40.0850 2584	AxInstSV        (6e30d02aac9cac84f421622e3a2f6178) C:\Windows\System32\AxInstSV.dll
21:50:40.0913 2584	AxInstSV - ok
21:50:40.0959 2584	b06bdrv         (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
21:50:41.0006 2584	b06bdrv - ok
21:50:41.0037 2584	b57nd60x        (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
21:50:41.0053 2584	b57nd60x - ok
21:50:41.0100 2584	BDESVC          (ee1e9c3bb8228ae423dd38db69128e71) C:\Windows\System32\bdesvc.dll
21:50:41.0147 2584	BDESVC - ok
21:50:41.0147 2584	Beep            (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
21:50:41.0178 2584	Beep - ok
21:50:41.0240 2584	BFE             (1e2bac209d184bb851e1a187d8a29136) C:\Windows\System32\bfe.dll
21:50:41.0271 2584	BFE - ok
21:50:41.0318 2584	BITS            (e585445d5021971fae10393f0f1c3961) C:\Windows\System32\qmgr.dll
21:50:41.0349 2584	BITS - ok
21:50:41.0412 2584	blbdrive        (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
21:50:41.0412 2584	blbdrive - ok
21:50:41.0443 2584	bowser          (8f2da3028d5fcbd1a060a3de64cd6506) C:\Windows\system32\DRIVERS\bowser.sys
21:50:41.0490 2584	bowser - ok
21:50:41.0505 2584	BrFiltLo        (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
21:50:41.0537 2584	BrFiltLo - ok
21:50:41.0552 2584	BrFiltUp        (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
21:50:41.0583 2584	BrFiltUp - ok
21:50:41.0615 2584	Browser         (6e11f33d14d020f58d5e02e4d67dfa19) C:\Windows\System32\browser.dll
21:50:41.0661 2584	Browser - ok
21:50:41.0677 2584	Brserid         (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
21:50:41.0724 2584	Brserid - ok
21:50:41.0739 2584	BrSerWdm        (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
21:50:41.0771 2584	BrSerWdm - ok
21:50:41.0802 2584	BrUsbMdm        (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
21:50:41.0833 2584	BrUsbMdm - ok
21:50:41.0849 2584	BrUsbSer        (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
21:50:41.0880 2584	BrUsbSer - ok
21:50:41.0895 2584	BTHMODEM        (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
21:50:41.0911 2584	BTHMODEM - ok
21:50:41.0942 2584	bthserv         (1df19c96eef6c29d1c3e1a8678e07190) C:\Windows\system32\bthserv.dll
21:50:41.0973 2584	bthserv - ok
21:50:42.0020 2584	cdfs            (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
21:50:42.0051 2584	cdfs - ok
21:50:42.0098 2584	cdrom           (be167ed0fdb9c1fa1133953c18d5a6c9) C:\Windows\system32\drivers\cdrom.sys
21:50:42.0129 2584	cdrom - ok
21:50:42.0161 2584	CertPropSvc     (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll
21:50:42.0192 2584	CertPropSvc - ok
21:50:42.0192 2584	circlass        (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
21:50:42.0239 2584	circlass - ok
21:50:42.0270 2584	CLFS            (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
21:50:42.0285 2584	CLFS - ok
21:50:42.0332 2584	clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:50:42.0348 2584	clr_optimization_v2.0.50727_32 - ok
21:50:42.0395 2584	clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
21:50:42.0410 2584	clr_optimization_v4.0.30319_32 - ok
21:50:42.0426 2584	CmBatt          (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
21:50:42.0441 2584	CmBatt - ok
21:50:42.0473 2584	cmdide          (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\drivers\cmdide.sys
21:50:42.0488 2584	cmdide - ok
21:50:42.0519 2584	CNG             (247b4ce2dab1160cd422d532d5241e1f) C:\Windows\system32\Drivers\cng.sys
21:50:42.0551 2584	CNG - ok
21:50:42.0566 2584	Compbatt        (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
21:50:42.0582 2584	Compbatt - ok
21:50:42.0629 2584	CompositeBus    (cbe8c58a8579cfe5fccf809e6f114e89) C:\Windows\system32\drivers\CompositeBus.sys
21:50:42.0644 2584	CompositeBus - ok
21:50:42.0660 2584	COMSysApp - ok
21:50:42.0691 2584	crcdisk         (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
21:50:42.0691 2584	crcdisk - ok
21:50:42.0738 2584	CryptSvc        (06e771aa596b8761107ab57e99f128d7) C:\Windows\system32\cryptsvc.dll
21:50:42.0769 2584	CryptSvc - ok
21:50:42.0816 2584	DcomLaunch      (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll
21:50:42.0847 2584	DcomLaunch - ok
21:50:42.0863 2584	defragsvc       (8d6e10a2d9a5eed59562d9b82cf804e1) C:\Windows\System32\defragsvc.dll
21:50:42.0909 2584	defragsvc - ok
21:50:42.0941 2584	DfsC            (f024449c97ec1e464aaffda18593db88) C:\Windows\system32\Drivers\dfsc.sys
21:50:42.0972 2584	DfsC - ok
21:50:43.0003 2584	dg_ssudbus      (73fc5bc52572084ec1241514cf6230a0) C:\Windows\system32\DRIVERS\ssudbus.sys
21:50:43.0019 2584	dg_ssudbus - ok
21:50:43.0097 2584	Dhcp            (e9e01eb683c132f7fa27cd607b8a2b63) C:\Windows\system32\dhcpcore.dll
21:50:43.0128 2584	Dhcp - ok
21:50:43.0143 2584	discache        (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
21:50:43.0175 2584	discache - ok
21:50:43.0190 2584	Disk            (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
21:50:43.0206 2584	Disk - ok
21:50:43.0237 2584	Dnscache        (33ef4861f19a0736b11314aad9ae28d0) C:\Windows\System32\dnsrslvr.dll
21:50:43.0331 2584	Dnscache - ok
21:50:43.0362 2584	dot3svc         (366ba8fb4b7bb7435e3b9eacb3843f67) C:\Windows\System32\dot3svc.dll
21:50:43.0393 2584	dot3svc - ok
21:50:43.0424 2584	DPS             (8ec04ca86f1d68da9e11952eb85973d6) C:\Windows\system32\dps.dll
21:50:43.0455 2584	DPS - ok
21:50:43.0502 2584	drmkaud         (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
21:50:43.0533 2584	drmkaud - ok
21:50:43.0580 2584	DXGKrnl         (23f5d28378a160352ba8f817bd8c71cb) C:\Windows\System32\drivers\dxgkrnl.sys
21:50:43.0611 2584	DXGKrnl - ok
21:50:43.0658 2584	EapHost         (8600142fa91c1b96367d3300ad0f3f3a) C:\Windows\System32\eapsvc.dll
21:50:43.0689 2584	EapHost - ok
21:50:43.0939 2584	ebdrv           (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
21:50:44.0048 2584	ebdrv - ok
21:50:44.0142 2584	EFS             (81951f51e318aecc2d68559e47485cc4) C:\Windows\System32\lsass.exe
21:50:44.0173 2584	EFS - ok
21:50:44.0251 2584	ehRecvr         (a8c362018efc87beb013ee28f29c0863) C:\Windows\ehome\ehRecvr.exe
21:50:44.0282 2584	ehRecvr - ok
21:50:44.0313 2584	ehSched         (d389bff34f80caede417bf9d1507996a) C:\Windows\ehome\ehsched.exe
21:50:44.0360 2584	ehSched - ok
21:50:44.0438 2584	elxstor         (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
21:50:44.0454 2584	elxstor - ok
21:50:44.0485 2584	ErrDev          (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\drivers\errdev.sys
21:50:44.0501 2584	ErrDev - ok
21:50:44.0563 2584	EventSystem     (f6916efc29d9953d5d0df06882ae8e16) C:\Windows\system32\es.dll
21:50:44.0594 2584	EventSystem - ok
21:50:44.0610 2584	exfat           (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
21:50:44.0641 2584	exfat - ok
21:50:44.0657 2584	fastfat         (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
21:50:44.0688 2584	fastfat - ok
21:50:44.0750 2584	Fax             (967ea5b213e9984cbe270205df37755b) C:\Windows\system32\fxssvc.exe
21:50:44.0781 2584	Fax - ok
21:50:44.0797 2584	fdc             (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
21:50:44.0813 2584	fdc - ok
21:50:44.0828 2584	fdPHost         (f3222c893bd2f5821a0179e5c71e88fb) C:\Windows\system32\fdPHost.dll
21:50:44.0859 2584	fdPHost - ok
21:50:44.0875 2584	FDResPub        (7dbe8cbfe79efbdeb98c9fb08d3a9a5b) C:\Windows\system32\fdrespub.dll
21:50:44.0922 2584	FDResPub - ok
21:50:44.0937 2584	FileInfo        (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
21:50:44.0953 2584	FileInfo - ok
21:50:44.0969 2584	Filetrace       (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
21:50:45.0015 2584	Filetrace - ok
21:50:45.0031 2584	flpydisk        (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
21:50:45.0062 2584	flpydisk - ok
21:50:45.0078 2584	FltMgr          (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
21:50:45.0109 2584	FltMgr - ok
21:50:45.0171 2584	FontCache       (b3a5ec6b6b6673db7e87c2bcdbddc074) C:\Windows\system32\FntCache.dll
21:50:45.0218 2584	FontCache - ok
21:50:45.0265 2584	FontCache3.0.0.0 (e56f39f6b7fda0ac77a79b0fd3de1a2f) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
21:50:45.0281 2584	FontCache3.0.0.0 - ok
21:50:45.0312 2584	FsDepends       (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
21:50:45.0327 2584	FsDepends - ok
21:50:45.0343 2584	Fs_Rec          (7dae5ebcc80e45d3253f4923dc424d05) C:\Windows\system32\drivers\Fs_Rec.sys
21:50:45.0359 2584	Fs_Rec - ok
21:50:45.0390 2584	fvevol          (8a73e79089b282100b9393b644cb853b) C:\Windows\system32\DRIVERS\fvevol.sys
21:50:45.0421 2584	fvevol - ok
21:50:45.0468 2584	fwlanusbn       (fc06a5be1ab381cd47af3d69006e88f0) C:\Windows\system32\DRIVERS\fwlanusbn.sys
21:50:45.0499 2584	fwlanusbn - ok
21:50:45.0530 2584	gagp30kx        (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
21:50:45.0546 2584	gagp30kx - ok
21:50:45.0608 2584	gpsvc           (e897eaf5ed6ba41e081060c9b447a673) C:\Windows\System32\gpsvc.dll
21:50:45.0671 2584	gpsvc - ok
21:50:45.0795 2584	gupdate         (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
21:50:45.0811 2584	gupdate - ok
21:50:45.0827 2584	gupdatem        (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
21:50:45.0842 2584	gupdatem - ok
21:50:45.0905 2584	gusvc           (c1b577b2169900f4cf7190c39f085794) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
21:50:45.0920 2584	gusvc - ok
21:50:45.0951 2584	hcw85cir        (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
21:50:45.0983 2584	hcw85cir - ok
21:50:46.0014 2584	HdAudAddService (3530cad25deba7dc7de8bb51632cbc5f) C:\Windows\system32\drivers\HdAudio.sys
21:50:46.0045 2584	HdAudAddService - ok
21:50:46.0092 2584	HDAudBus        (9036377b8a6c15dc2eec53e489d159b5) C:\Windows\system32\drivers\HDAudBus.sys
21:50:46.0107 2584	HDAudBus - ok
21:50:46.0123 2584	HidBatt         (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
21:50:46.0139 2584	HidBatt - ok
21:50:46.0170 2584	HidBth          (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
21:50:46.0201 2584	HidBth - ok
21:50:46.0217 2584	HidIr           (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
21:50:46.0248 2584	HidIr - ok
21:50:46.0263 2584	hidserv         (2bc6f6a1992b3a77f5f41432ca6b3b6b) C:\Windows\system32\hidserv.dll
21:50:46.0295 2584	hidserv - ok
21:50:46.0310 2584	HidUsb          (25072fb35ac90b25f9e4e3bacf774102) C:\Windows\system32\DRIVERS\hidusb.sys
21:50:46.0326 2584	HidUsb - ok
21:50:46.0373 2584	hkmsvc          (196b4e3f4cccc24af836ce58facbb699) C:\Windows\system32\kmsvc.dll
21:50:46.0404 2584	hkmsvc - ok
21:50:46.0435 2584	HomeGroupListener (6658f4404de03d75fe3ba09f7aba6a30) C:\Windows\system32\ListSvc.dll
21:50:46.0482 2584	HomeGroupListener - ok
21:50:46.0638 2584	HomeGroupProvider (dbc02d918fff1cad628acbe0c0eaa8e8) C:\Windows\system32\provsvc.dll
21:50:46.0669 2584	HomeGroupProvider - ok
21:50:46.0763 2584	hpqcxs08        (0a3c6aa4a9fc38c20ba4eac2c3351c05) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
21:50:46.0794 2584	hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning
21:50:46.0794 2584	hpqcxs08 - detected UnsignedFile.Multi.Generic (1)
21:50:46.0825 2584	HpSAMD          (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\drivers\HpSAMD.sys
21:50:46.0841 2584	HpSAMD - ok
21:50:46.0903 2584	HTTP            (871917b07a141bff43d76d8844d48106) C:\Windows\system32\drivers\HTTP.sys
21:50:46.0950 2584	HTTP - ok
21:50:46.0950 2584	hwpolicy        (0c4e035c7f105f1299258c90886c64c5) C:\Windows\system32\drivers\hwpolicy.sys
21:50:46.0965 2584	hwpolicy - ok
21:50:46.0997 2584	i8042prt        (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\drivers\i8042prt.sys
21:50:47.0028 2584	i8042prt - ok
21:50:47.0059 2584	iaStor          (26541a068572f650a2fa490726fe81be) C:\Windows\system32\DRIVERS\iaStor.sys
21:50:47.0075 2584	iaStor - ok
21:50:47.0168 2584	IAStorDataMgrSvc (31a0e93cdf29007d6c6fffb632f375ed) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
21:50:47.0168 2584	IAStorDataMgrSvc - ok
21:50:47.0215 2584	iaStorV         (5cd5f9a5444e6cdcb0ac89bd62d8b76e) C:\Windows\system32\drivers\iaStorV.sys
21:50:47.0246 2584	iaStorV - ok
21:50:47.0293 2584	IDriverT        (1cf03c69b49acb70c722df92755c0c8c) C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
21:50:47.0309 2584	IDriverT ( UnsignedFile.Multi.Generic ) - warning
21:50:47.0309 2584	IDriverT - detected UnsignedFile.Multi.Generic (1)
21:50:47.0418 2584	idsvc           (c521d7eb6497bb1af6afa89e322fb43c) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
21:50:47.0480 2584	idsvc - ok
21:50:47.0995 2584	igfx            (ad626f6964f4d364d226c39e06872dd3) C:\Windows\system32\DRIVERS\igdkmd32.sys
21:50:48.0120 2584	igfx - ok
21:50:48.0213 2584	iirsp           (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
21:50:48.0229 2584	iirsp - ok
21:50:48.0291 2584	IKEEXT          (f95622f161474511b8d80d6b093aa610) C:\Windows\System32\ikeext.dll
21:50:48.0338 2584	IKEEXT - ok
21:50:48.0557 2584	IntcAzAudAddService (f4427e5df32cde359b2e2e5512d18001) C:\Windows\system32\drivers\RTKVHDA.sys
21:50:48.0619 2584	IntcAzAudAddService - ok
21:50:48.0759 2584	intelide        (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\drivers\intelide.sys
21:50:48.0775 2584	intelide - ok
21:50:48.0822 2584	intelppm        (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
21:50:48.0822 2584	intelppm - ok
21:50:48.0853 2584	IPBusEnum       (acb364b9075a45c0736e5c47be5cae19) C:\Windows\system32\ipbusenum.dll
21:50:48.0900 2584	IPBusEnum - ok
21:50:48.0915 2584	IpFilterDriver  (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
21:50:48.0931 2584	IpFilterDriver - ok
21:50:48.0978 2584	iphlpsvc        (4d65a07b795d6674312f879d09aa7663) C:\Windows\System32\iphlpsvc.dll
21:50:49.0025 2584	iphlpsvc - ok
21:50:49.0040 2584	IPMIDRV         (4bd7134618c1d2a27466a099062547bf) C:\Windows\system32\drivers\IPMIDrv.sys
21:50:49.0071 2584	IPMIDRV - ok
21:50:49.0087 2584	IPNAT           (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
21:50:49.0134 2584	IPNAT - ok
21:50:49.0149 2584	IRENUM          (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
21:50:49.0181 2584	IRENUM - ok
21:50:49.0181 2584	isapnp          (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\drivers\isapnp.sys
21:50:49.0196 2584	isapnp - ok
21:50:49.0227 2584	iScsiPrt        (cb7a9abb12b8415bce5d74994c7ba3ae) C:\Windows\system32\drivers\msiscsi.sys
21:50:49.0243 2584	iScsiPrt - ok
21:50:49.0274 2584	kbdclass        (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\DRIVERS\kbdclass.sys
21:50:49.0290 2584	kbdclass - ok
21:50:49.0321 2584	kbdhid          (3d9f0ebf350edcfd6498057301455964) C:\Windows\system32\DRIVERS\kbdhid.sys
21:50:49.0337 2584	kbdhid - ok
21:50:49.0352 2584	KeyIso          (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:50:49.0368 2584	KeyIso - ok
21:50:49.0399 2584	KSecDD          (b7895b4182c0d16f6efadeb8081e8d36) C:\Windows\system32\Drivers\ksecdd.sys
21:50:49.0415 2584	KSecDD - ok
21:50:49.0430 2584	KSecPkg         (d30159ac9237519fbc62c6ec247d2d46) C:\Windows\system32\Drivers\ksecpkg.sys
21:50:49.0446 2584	KSecPkg - ok
21:50:49.0477 2584	KtmRm           (89a7b9cc98d0d80c6f31b91c0a310fcd) C:\Windows\system32\msdtckrm.dll
21:50:49.0524 2584	KtmRm - ok
21:50:49.0571 2584	LanmanServer    (d64af876d53eca3668bb97b51b4e70ab) C:\Windows\system32\srvsvc.dll
21:50:49.0586 2584	LanmanServer - ok
21:50:49.0617 2584	LanmanWorkstation (58405e4f68ba8e4057c6e914f326aba2) C:\Windows\System32\wkssvc.dll
21:50:49.0649 2584	LanmanWorkstation - ok
21:50:49.0680 2584	lltdio          (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
21:50:49.0727 2584	lltdio - ok
21:50:49.0758 2584	lltdsvc         (5700673e13a2117fa3b9020c852c01e2) C:\Windows\System32\lltdsvc.dll
21:50:49.0789 2584	lltdsvc - ok
21:50:49.0805 2584	lmhosts         (55ca01ba19d0006c8f2639b6c045e08b) C:\Windows\System32\lmhsvc.dll
21:50:49.0836 2584	lmhosts - ok
21:50:49.0867 2584	LSI_FC          (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
21:50:49.0883 2584	LSI_FC - ok
21:50:49.0914 2584	LSI_SAS         (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
21:50:49.0929 2584	LSI_SAS - ok
21:50:49.0961 2584	LSI_SAS2        (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
21:50:49.0976 2584	LSI_SAS2 - ok
21:50:49.0992 2584	LSI_SCSI        (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
21:50:50.0007 2584	LSI_SCSI - ok
21:50:50.0039 2584	luafv           (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
21:50:50.0070 2584	luafv - ok
21:50:50.0085 2584	Mcx2Svc         (bfb9ee8ee977efe85d1a3105abef6dd1) C:\Windows\system32\Mcx2Svc.dll
21:50:50.0117 2584	Mcx2Svc - ok
21:50:50.0117 2584	megasas         (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
21:50:50.0148 2584	megasas - ok
21:50:50.0179 2584	MegaSR          (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
21:50:50.0210 2584	MegaSR - ok
21:50:50.0226 2584	MMCSS           (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
21:50:50.0273 2584	MMCSS - ok
21:50:50.0288 2584	Modem           (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
21:50:50.0319 2584	Modem - ok
21:50:50.0351 2584	monitor         (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
21:50:50.0366 2584	monitor - ok
21:50:50.0397 2584	mouclass        (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\DRIVERS\mouclass.sys
21:50:50.0413 2584	mouclass - ok
21:50:50.0429 2584	mouhid          (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
21:50:50.0460 2584	mouhid - ok
21:50:50.0475 2584	mountmgr        (fc8771f45ecccfd89684e38842539b9b) C:\Windows\system32\drivers\mountmgr.sys
21:50:50.0491 2584	mountmgr - ok
21:50:50.0569 2584	MozillaMaintenance (15d5398eed42c2504bb3d4fc875c15d1) C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
21:50:50.0585 2584	MozillaMaintenance - ok
21:50:50.0616 2584	mpio            (2d699fb6e89ce0d8da14ecc03b3edfe0) C:\Windows\system32\drivers\mpio.sys
21:50:50.0631 2584	mpio - ok
21:50:50.0663 2584	mpsdrv          (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
21:50:50.0678 2584	mpsdrv - ok
21:50:50.0756 2584	MpsSvc          (9835584e999d25004e1ee8e5f3e3b881) C:\Windows\system32\mpssvc.dll
21:50:50.0803 2584	MpsSvc - ok
21:50:50.0819 2584	MRxDAV          (ceb46ab7c01c9f825f8cc6babc18166a) C:\Windows\system32\drivers\mrxdav.sys
21:50:50.0850 2584	MRxDAV - ok
21:50:50.0897 2584	mrxsmb          (5d16c921e3671636c0eba3bbaac5fd25) C:\Windows\system32\DRIVERS\mrxsmb.sys
21:50:50.0928 2584	mrxsmb - ok
21:50:50.0959 2584	mrxsmb10        (6d17a4791aca19328c685d256349fefc) C:\Windows\system32\DRIVERS\mrxsmb10.sys
21:50:50.0975 2584	mrxsmb10 - ok
21:50:50.0990 2584	mrxsmb20        (b81f204d146000be76651a50670a5e9e) C:\Windows\system32\DRIVERS\mrxsmb20.sys
21:50:51.0021 2584	mrxsmb20 - ok
21:50:51.0037 2584	msahci          (012c5f4e9349e711e11e0f19a8589f0a) C:\Windows\system32\drivers\msahci.sys
21:50:51.0053 2584	msahci - ok
21:50:51.0099 2584	msdsm           (55055f8ad8be27a64c831322a780a228) C:\Windows\system32\drivers\msdsm.sys
21:50:51.0115 2584	msdsm - ok
21:50:51.0131 2584	MSDTC           (e1bce74a3bd9902b72599c0192a07e27) C:\Windows\System32\msdtc.exe
21:50:51.0162 2584	MSDTC - ok
21:50:51.0193 2584	Msfs            (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
21:50:51.0224 2584	Msfs - ok
21:50:51.0240 2584	mshidkmdf       (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
21:50:51.0271 2584	mshidkmdf - ok
21:50:51.0287 2584	msisadrv        (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\drivers\msisadrv.sys
21:50:51.0287 2584	msisadrv - ok
21:50:51.0333 2584	MSiSCSI         (90f7d9e6b6f27e1a707d4a297f077828) C:\Windows\system32\iscsiexe.dll
21:50:51.0365 2584	MSiSCSI - ok
21:50:51.0365 2584	msiserver - ok
21:50:51.0380 2584	MSKSSRV         (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
21:50:51.0427 2584	MSKSSRV - ok
21:50:51.0427 2584	MSPCLOCK        (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
21:50:51.0458 2584	MSPCLOCK - ok
21:50:51.0474 2584	MSPQM           (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
21:50:51.0505 2584	MSPQM - ok
21:50:51.0521 2584	MsRPC           (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
21:50:51.0536 2584	MsRPC - ok
21:50:51.0614 2584	mssmbios        (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\drivers\mssmbios.sys
21:50:51.0630 2584	mssmbios - ok
21:50:51.0645 2584	MSTEE           (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
21:50:51.0677 2584	MSTEE - ok
21:50:51.0692 2584	MTConfig        (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
21:50:51.0723 2584	MTConfig - ok
21:50:51.0739 2584	Mup             (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
21:50:51.0739 2584	Mup - ok
21:50:51.0801 2584	napagent        (61d57a5d7c6d9afe10e77dae6e1b445e) C:\Windows\system32\qagentRT.dll
21:50:51.0848 2584	napagent - ok
21:50:51.0895 2584	NativeWifiP     (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
21:50:51.0911 2584	NativeWifiP - ok
21:50:51.0973 2584	NDIS            (e7c54812a2aaf43316eb6930c1ffa108) C:\Windows\system32\drivers\ndis.sys
21:50:52.0004 2584	NDIS - ok
21:50:52.0020 2584	NdisCap         (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
21:50:52.0051 2584	NdisCap - ok
21:50:52.0067 2584	NdisTapi        (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
21:50:52.0098 2584	NdisTapi - ok
21:50:52.0129 2584	Ndisuio         (d8a65dafb3eb41cbb622745676fcd072) C:\Windows\system32\DRIVERS\ndisuio.sys
21:50:52.0145 2584	Ndisuio - ok
21:50:52.0176 2584	NdisWan         (38fbe267e7e6983311179230facb1017) C:\Windows\system32\DRIVERS\ndiswan.sys
21:50:52.0207 2584	NdisWan - ok
21:50:52.0207 2584	NDProxy         (a4bdc541e69674fbff1a8ff00be913f2) C:\Windows\system32\drivers\NDProxy.sys
21:50:52.0238 2584	NDProxy - ok
21:50:52.0270 2584	NetBIOS         (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
21:50:52.0301 2584	NetBIOS - ok
21:50:52.0332 2584	NetBT           (280122ddcf04b378edd1ad54d71c1e54) C:\Windows\system32\DRIVERS\netbt.sys
21:50:52.0363 2584	NetBT - ok
21:50:52.0379 2584	Netlogon        (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:50:52.0394 2584	Netlogon - ok
21:50:52.0426 2584	Netman          (7cccfca7510684768da22092d1fa4db2) C:\Windows\System32\netman.dll
21:50:52.0457 2584	Netman - ok
21:50:52.0504 2584	netprofm        (8c338238c16777a802d6a9211eb2ba50) C:\Windows\System32\netprofm.dll
21:50:52.0550 2584	netprofm - ok
21:50:52.0613 2584	NetTcpPortSharing (f476ec40033cdb91efbe73eb99b8362d) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:50:52.0628 2584	NetTcpPortSharing - ok
21:50:52.0660 2584	nfrd960         (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
21:50:52.0675 2584	nfrd960 - ok
21:50:52.0706 2584	NlaSvc          (912084381d30d8b89ec4e293053f4710) C:\Windows\System32\nlasvc.dll
21:50:52.0753 2584	NlaSvc - ok
21:50:52.0769 2584	Npfs            (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
21:50:52.0800 2584	Npfs - ok
21:50:52.0831 2584	nsi             (ba387e955e890c8a88306d9b8d06bf17) C:\Windows\system32\nsisvc.dll
21:50:52.0847 2584	nsi - ok
21:50:52.0862 2584	nsiproxy        (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
21:50:52.0909 2584	nsiproxy - ok
21:50:53.0003 2584	Ntfs            (81189c3d7763838e55c397759d49007a) C:\Windows\system32\drivers\Ntfs.sys
21:50:53.0050 2584	Ntfs - ok
21:50:53.0143 2584	Null            (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
21:50:53.0190 2584	Null - ok
21:50:53.0221 2584	nvraid          (b3e25ee28883877076e0e1ff877d02e0) C:\Windows\system32\drivers\nvraid.sys
21:50:53.0237 2584	nvraid - ok
21:50:53.0252 2584	nvstor          (4380e59a170d88c4f1022eff6719a8a4) C:\Windows\system32\drivers\nvstor.sys
21:50:53.0268 2584	nvstor - ok
21:50:53.0299 2584	nv_agp          (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\drivers\nv_agp.sys
21:50:53.0315 2584	nv_agp - ok
21:50:53.0346 2584	ohci1394        (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\drivers\ohci1394.sys
21:50:53.0362 2584	ohci1394 - ok
21:50:53.0408 2584	p2pimsvc        (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
21:50:53.0440 2584	p2pimsvc - ok
21:50:53.0471 2584	p2psvc          (59c3ddd501e39e006dac31bf55150d91) C:\Windows\system32\p2psvc.dll
21:50:53.0486 2584	p2psvc - ok
21:50:53.0518 2584	Parport         (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
21:50:53.0533 2584	Parport - ok
21:50:53.0564 2584	partmgr         (3f34a1b4c5f6475f320c275e63afce9b) C:\Windows\system32\drivers\partmgr.sys
21:50:53.0580 2584	partmgr - ok
21:50:53.0596 2584	Parvdm          (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
21:50:53.0627 2584	Parvdm - ok
21:50:53.0658 2584	PcaSvc          (358ab7956d3160000726574083dfc8a6) C:\Windows\System32\pcasvc.dll
21:50:53.0674 2584	PcaSvc - ok
21:50:53.0689 2584	pci             (673e55c3498eb970088e812ea820aa8f) C:\Windows\system32\drivers\pci.sys
21:50:53.0705 2584	pci - ok
21:50:53.0705 2584	pciide          (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\drivers\pciide.sys
21:50:53.0736 2584	pciide - ok
21:50:53.0767 2584	pcmcia          (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
21:50:53.0783 2584	pcmcia - ok
21:50:53.0798 2584	pcw             (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
21:50:53.0798 2584	pcw - ok
21:50:53.0861 2584	PEAUTH          (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
21:50:53.0908 2584	PEAUTH - ok
21:50:54.0095 2584	pla             (414bba67a3ded1d28437eb66aeb8a720) C:\Windows\system32\pla.dll
21:50:54.0157 2584	pla - ok
21:50:54.0298 2584	PlugPlay        (ec7bc28d207da09e79b3e9faf8b232ca) C:\Windows\system32\umpnpmgr.dll
21:50:54.0329 2584	PlugPlay - ok
21:50:54.0360 2584	PNRPAutoReg     (63ff8572611249931eb16bb8eed6afc8) C:\Windows\system32\pnrpauto.dll
21:50:54.0391 2584	PNRPAutoReg - ok
21:50:54.0422 2584	PNRPsvc         (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
21:50:54.0422 2584	PNRPsvc - ok
21:50:54.0469 2584	PolicyAgent     (53946b69ba0836bd95b03759530c81ec) C:\Windows\System32\ipsecsvc.dll
21:50:54.0516 2584	PolicyAgent - ok
21:50:54.0563 2584	Power           (f87d30e72e03d579a5199ccb3831d6ea) C:\Windows\system32\umpo.dll
21:50:54.0594 2584	Power - ok
21:50:54.0656 2584	PptpMiniport    (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
21:50:54.0703 2584	PptpMiniport - ok
21:50:54.0703 2584	Processor       (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
21:50:54.0719 2584	Processor - ok
21:50:54.0750 2584	ProfSvc         (43ca4ccc22d52fb58e8988f0198851d0) C:\Windows\system32\profsvc.dll
21:50:54.0766 2584	ProfSvc - ok
21:50:54.0781 2584	ProtectedStorage (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:50:54.0797 2584	ProtectedStorage - ok
21:50:54.0812 2584	Psched          (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
21:50:54.0844 2584	Psched - ok
21:50:54.0890 2584	PSI_SVC_2       (a6a7ad767bf5141665f5c675f671b3e1) c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
21:50:54.0906 2584	PSI_SVC_2 - ok
21:50:55.0015 2584	ql2300          (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
21:50:55.0062 2584	ql2300 - ok
21:50:55.0218 2584	ql40xx          (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
21:50:55.0249 2584	ql40xx - ok
21:50:55.0265 2584	QWAVE           (31ac809e7707eb580b2bdb760390765a) C:\Windows\system32\qwave.dll
21:50:55.0296 2584	QWAVE - ok
21:50:55.0327 2584	QWAVEdrv        (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
21:50:55.0343 2584	QWAVEdrv - ok
21:50:55.0358 2584	RasAcd          (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
21:50:55.0390 2584	RasAcd - ok
21:50:55.0421 2584	RasAgileVpn     (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
21:50:55.0436 2584	RasAgileVpn - ok
21:50:55.0452 2584	RasAuto         (a60f1839849c0c00739787fd5ec03f13) C:\Windows\System32\rasauto.dll
21:50:55.0483 2584	RasAuto - ok
21:50:55.0499 2584	Rasl2tp         (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
21:50:55.0530 2584	Rasl2tp - ok
21:50:55.0561 2584	RasMan          (cb9e04dc05eacf5b9a36ca276d475006) C:\Windows\System32\rasmans.dll
21:50:55.0608 2584	RasMan - ok
21:50:55.0624 2584	RasPppoe        (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
21:50:55.0655 2584	RasPppoe - ok
21:50:55.0686 2584	RasSstp         (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
21:50:55.0717 2584	RasSstp - ok
21:50:55.0764 2584	rdbss           (d528bc58a489409ba40334ebf96a311b) C:\Windows\system32\DRIVERS\rdbss.sys
21:50:55.0795 2584	rdbss - ok
21:50:55.0826 2584	rdpbus          (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
21:50:55.0842 2584	rdpbus - ok
21:50:55.0858 2584	RDPCDD          (23dae03f29d253ae74c44f99e515f9a1) C:\Windows\system32\DRIVERS\RDPCDD.sys
21:50:55.0889 2584	RDPCDD - ok
21:50:55.0920 2584	RDPENCDD        (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
21:50:55.0951 2584	RDPENCDD - ok
21:50:55.0967 2584	RDPREFMP        (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
21:50:55.0998 2584	RDPREFMP - ok
21:50:56.0045 2584	RDPWD           (f031683e6d1fea157abb2ff260b51e61) C:\Windows\system32\drivers\RDPWD.sys
21:50:56.0076 2584	RDPWD - ok
21:50:56.0107 2584	rdyboost        (518395321dc96fe2c9f0e96ac743b656) C:\Windows\system32\drivers\rdyboost.sys
21:50:56.0123 2584	rdyboost - ok
21:50:56.0154 2584	RemoteAccess    (7b5e1419717fac363a31cc302895217a) C:\Windows\System32\mprdim.dll
21:50:56.0185 2584	RemoteAccess - ok
21:50:56.0216 2584	RemoteRegistry  (cb9a8683f4ef2bf99e123d79950d7935) C:\Windows\system32\regsvc.dll
21:50:56.0263 2584	RemoteRegistry - ok
21:50:56.0326 2584	RMCAST          (906dcfc5ebf4ec0433f8d4fffb0ba334) C:\Windows\system32\DRIVERS\RMCAST.sys
21:50:56.0357 2584	RMCAST - ok
21:50:56.0372 2584	RpcEptMapper    (78d072f35bc45d9e4e1b61895c152234) C:\Windows\System32\RpcEpMap.dll
21:50:56.0404 2584	RpcEptMapper - ok
21:50:56.0419 2584	RpcLocator      (94d36c0e44677dd26981d2bfeef2a29d) C:\Windows\system32\locator.exe
21:50:56.0450 2584	RpcLocator - ok
21:50:56.0497 2584	RpcSs           (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll
21:50:56.0528 2584	RpcSs - ok
21:50:56.0544 2584	rspndr          (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
21:50:56.0575 2584	rspndr - ok
21:50:56.0638 2584	RTL8167         (5283b9a27ff230f2ff70d92451ff409a) C:\Windows\system32\DRIVERS\Rt86win7.sys
21:50:56.0653 2584	RTL8167 - ok
21:50:56.0700 2584	RTL8192su       (9ce8deffaffccbf473015d76ae8ee514) C:\Windows\system32\DRIVERS\RTL8192su.sys
21:50:56.0731 2584	RTL8192su - ok
21:50:56.0794 2584	SamSs           (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:50:56.0809 2584	SamSs - ok
21:50:56.0934 2584	sbp2port        (05d860da1040f111503ac416ccef2bca) C:\Windows\system32\drivers\sbp2port.sys
21:50:56.0950 2584	sbp2port - ok
21:50:56.0981 2584	SCardSvr        (8fc518ffe9519c2631d37515a68009c4) C:\Windows\System32\SCardSvr.dll
21:50:57.0012 2584	SCardSvr - ok
21:50:57.0012 2584	scfilter        (0693b5ec673e34dc147e195779a4dcf6) C:\Windows\system32\DRIVERS\scfilter.sys
21:50:57.0043 2584	scfilter - ok
21:50:57.0106 2584	Schedule        (a04bb13f8a72f8b6e8b4071723e4e336) C:\Windows\system32\schedsvc.dll
21:50:57.0152 2584	Schedule - ok
21:50:57.0184 2584	SCPolicySvc     (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll
21:50:57.0199 2584	SCPolicySvc - ok
21:50:57.0215 2584	SDRSVC          (08236c4bce5edd0a0318a438af28e0f7) C:\Windows\System32\SDRSVC.dll
21:50:57.0246 2584	SDRSVC - ok
21:50:57.0277 2584	secdrv          (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
21:50:57.0308 2584	secdrv - ok
21:50:57.0340 2584	seclogon        (a59b3a4442c52060cc7a85293aa3546f) C:\Windows\system32\seclogon.dll
21:50:57.0355 2584	seclogon - ok
21:50:57.0371 2584	SENS            (dcb7fcdcc97f87360f75d77425b81737) C:\Windows\System32\sens.dll
21:50:57.0402 2584	SENS - ok
21:50:57.0418 2584	SensrSvc        (50087fe1ee447009c9cc2997b90de53f) C:\Windows\system32\sensrsvc.dll
21:50:57.0433 2584	SensrSvc - ok
21:50:57.0449 2584	Serenum         (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
21:50:57.0480 2584	Serenum - ok
21:50:57.0496 2584	Serial          (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
21:50:57.0527 2584	Serial - ok
21:50:57.0542 2584	sermouse        (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
21:50:57.0558 2584	sermouse - ok
21:50:57.0589 2584	SessionEnv      (4ae380f39a0032eab7dd953030b26d28) C:\Windows\system32\sessenv.dll
21:50:57.0636 2584	SessionEnv - ok
21:50:57.0652 2584	sffdisk         (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\drivers\sffdisk.sys
21:50:57.0683 2584	sffdisk - ok
21:50:57.0698 2584	sffp_mmc        (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\drivers\sffp_mmc.sys
21:50:57.0730 2584	sffp_mmc - ok
21:50:57.0730 2584	sffp_sd         (a0708bbd07d245c06ff9de549ca47185) C:\Windows\system32\drivers\sffp_sd.sys
21:50:57.0761 2584	sffp_sd - ok
21:50:57.0776 2584	sfloppy         (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
21:50:57.0792 2584	sfloppy - ok
21:50:57.0823 2584	SharedAccess    (d1a079a0de2ea524513b6930c24527a2) C:\Windows\System32\ipnathlp.dll
21:50:57.0854 2584	SharedAccess - ok
21:50:57.0901 2584	ShellHWDetection (414da952a35bf5d50192e28263b40577) C:\Windows\System32\shsvcs.dll
21:50:57.0932 2584	ShellHWDetection - ok
21:50:57.0964 2584	sisagp          (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\drivers\sisagp.sys
21:50:57.0979 2584	sisagp - ok
21:50:57.0995 2584	SiSRaid2        (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
21:50:58.0010 2584	SiSRaid2 - ok
21:50:58.0026 2584	SiSRaid4        (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
21:50:58.0042 2584	SiSRaid4 - ok
21:50:58.0073 2584	Smb             (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
21:50:58.0104 2584	Smb - ok
21:50:58.0151 2584	SNMPTRAP        (6a984831644eca1a33ffeae4126f4f37) C:\Windows\System32\snmptrap.exe
21:50:58.0166 2584	SNMPTRAP - ok
21:50:58.0182 2584	spldr           (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
21:50:58.0198 2584	spldr - ok
21:50:58.0244 2584	Spooler         (866a43013535dc8587c258e43579c764) C:\Windows\System32\spoolsv.exe
21:50:58.0291 2584	Spooler - ok
21:50:58.0525 2584	sppsvc          (cf87a1de791347e75b98885214ced2b8) C:\Windows\system32\sppsvc.exe
21:50:58.0603 2584	sppsvc - ok
21:50:58.0697 2584	sppuinotify     (b0180b20b065d89232a78a40fe56eaa6) C:\Windows\system32\sppuinotify.dll
21:50:58.0744 2584	sppuinotify - ok
21:50:58.0775 2584	srv             (e4c2764065d66ea1d2d3ebc28fe99c46) C:\Windows\system32\DRIVERS\srv.sys
21:50:58.0822 2584	srv - ok
21:50:58.0853 2584	srv2            (03f0545bd8d4c77fa0ae1ceedfcc71ab) C:\Windows\system32\DRIVERS\srv2.sys
21:50:58.0884 2584	srv2 - ok
21:50:58.0900 2584	srvnet          (be6bd660caa6f291ae06a718a4fa8abc) C:\Windows\system32\DRIVERS\srvnet.sys
21:50:58.0931 2584	srvnet - ok
21:50:58.0962 2584	SSDPSRV         (d887c9fd02ac9fa880f6e5027a43e118) C:\Windows\System32\ssdpsrv.dll
21:50:59.0009 2584	SSDPSRV - ok
21:50:59.0056 2584	ssmdrv          (a36ee93698802cd899f98bfd553d8185) C:\Windows\system32\DRIVERS\ssmdrv.sys
21:50:59.0071 2584	ssmdrv - ok
21:50:59.0087 2584	SstpSvc         (d318f23be45d5e3a107469eb64815b50) C:\Windows\system32\sstpsvc.dll
21:50:59.0134 2584	SstpSvc - ok
21:50:59.0165 2584	ssudmdm         (07318149e102fd9197ab444c27774372) C:\Windows\system32\DRIVERS\ssudmdm.sys
21:50:59.0180 2584	ssudmdm - ok
21:50:59.0196 2584	stexstor        (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
21:50:59.0212 2584	stexstor - ok
21:50:59.0258 2584	StiSvc          (e1fb3706030fb4578a0d72c2fc3689e4) C:\Windows\System32\wiaservc.dll
21:50:59.0305 2584	StiSvc - ok
21:50:59.0321 2584	swenum          (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\drivers\swenum.sys
21:50:59.0336 2584	swenum - ok
21:50:59.0368 2584	swprv           (a28bd92df340e57b024ba433165d34d7) C:\Windows\System32\swprv.dll
21:50:59.0414 2584	swprv - ok
21:50:59.0524 2584	SysMain         (36650d618ca34c9d357dfd3d89b2c56f) C:\Windows\system32\sysmain.dll
21:50:59.0570 2584	SysMain - ok
21:50:59.0602 2584	TabletInputService (763fecdc3d30c815fe72dd57936c6cd1) C:\Windows\System32\TabSvc.dll
21:50:59.0633 2584	TabletInputService - ok
21:50:59.0664 2584	TapiSrv         (613bf4820361543956909043a265c6ac) C:\Windows\System32\tapisrv.dll
21:50:59.0711 2584	TapiSrv - ok
21:50:59.0742 2584	TBS             (b799d9fdb26111737f58288d8dc172d9) C:\Windows\System32\tbssvc.dll
21:50:59.0789 2584	TBS - ok
21:50:59.0929 2584	Tcpip           (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\drivers\tcpip.sys
21:50:59.0976 2584	Tcpip - ok
21:51:00.0132 2584	TCPIP6          (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\DRIVERS\tcpip.sys
21:51:00.0148 2584	TCPIP6 - ok
21:51:00.0288 2584	tcpipreg        (cca24162e055c3714ce5a88b100c64ed) C:\Windows\system32\drivers\tcpipreg.sys
21:51:00.0319 2584	tcpipreg - ok
21:51:00.0335 2584	TDPIPE          (1cb91b2bd8f6dd367dfc2ef26fd751b2) C:\Windows\system32\drivers\tdpipe.sys
21:51:00.0382 2584	TDPIPE - ok
21:51:00.0413 2584	TDTCP           (2c2c5afe7ee4f620d69c23c0617651a8) C:\Windows\system32\drivers\tdtcp.sys
21:51:00.0428 2584	TDTCP - ok
21:51:00.0506 2584	tdx             (b459575348c20e8121d6039da063c704) C:\Windows\system32\DRIVERS\tdx.sys
21:51:00.0553 2584	tdx - ok
21:51:00.0569 2584	TermDD          (04dbf4b01ea4bf25a9a3e84affac9b20) C:\Windows\system32\drivers\termdd.sys
21:51:00.0584 2584	TermDD - ok
21:51:00.0678 2584	TermService     (382c804c92811be57829d8e550a900e2) C:\Windows\System32\termsrv.dll
21:51:00.0725 2584	TermService - ok
21:51:00.0756 2584	Themes          (42fb6afd6b79d9fe07381609172e7ca4) C:\Windows\system32\themeservice.dll
21:51:00.0772 2584	Themes - ok
21:51:00.0787 2584	THREADORDER     (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
21:51:00.0803 2584	THREADORDER - ok
21:51:00.0850 2584	TrkWks          (4792c0378db99a9bc2ae2de6cfff0c3a) C:\Windows\System32\trkwks.dll
21:51:00.0896 2584	TrkWks - ok
21:51:00.0928 2584	TrustedInstaller (2c49b175aee1d4364b91b531417fe583) C:\Windows\servicing\TrustedInstaller.exe
21:51:00.0959 2584	TrustedInstaller - ok
21:51:00.0974 2584	tssecsrv        (254bb140eee3c59d6114c1a86b636877) C:\Windows\system32\DRIVERS\tssecsrv.sys
21:51:01.0006 2584	tssecsrv - ok
21:51:01.0052 2584	TsUsbFlt        (fd1d6c73e6333be727cbcc6054247654) C:\Windows\system32\drivers\tsusbflt.sys
21:51:01.0084 2584	TsUsbFlt - ok
21:51:01.0130 2584	tunnel          (b2fa25d9b17a68bb93d58b0556e8c90d) C:\Windows\system32\DRIVERS\tunnel.sys
21:51:01.0162 2584	tunnel - ok
21:51:01.0193 2584	uagp35          (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
21:51:01.0208 2584	uagp35 - ok
21:51:01.0240 2584	udfs            (ee43346c7e4b5e63e54f927babbb32ff) C:\Windows\system32\DRIVERS\udfs.sys
21:51:01.0271 2584	udfs - ok
21:51:01.0318 2584	UI0Detect       (8344fd4fce927880aa1aa7681d4927e5) C:\Windows\system32\UI0Detect.exe
21:51:01.0349 2584	UI0Detect - ok
21:51:01.0380 2584	uliagpkx        (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\drivers\uliagpkx.sys
21:51:01.0396 2584	uliagpkx - ok
21:51:01.0411 2584	umbus           (d295bed4b898f0fd999fcfa9b32b071b) C:\Windows\system32\drivers\umbus.sys
21:51:01.0442 2584	umbus - ok
21:51:01.0458 2584	UmPass          (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
21:51:01.0489 2584	UmPass - ok
21:51:01.0520 2584	upnphost        (833fbb672460efce8011d262175fad33) C:\Windows\System32\upnphost.dll
21:51:01.0552 2584	upnphost - ok
21:51:01.0567 2584	usbccgp         (8455c4ed038efd09e99327f9d2d48ffa) C:\Windows\system32\DRIVERS\usbccgp.sys
21:51:01.0583 2584	usbccgp - ok
21:51:01.0614 2584	usbcir          (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\drivers\usbcir.sys
21:51:01.0645 2584	usbcir - ok
21:51:01.0661 2584	usbehci         (f92de757e4b7ce9c07c5e65423f3ae3b) C:\Windows\system32\DRIVERS\usbehci.sys
21:51:01.0692 2584	usbehci - ok
21:51:01.0739 2584	usbhub          (8dc94aec6a7e644a06135ae7506dc2e9) C:\Windows\system32\DRIVERS\usbhub.sys
21:51:01.0770 2584	usbhub - ok
21:51:01.0786 2584	usbohci         (a6fb7957ea7afb1165991e54ce934b74) C:\Windows\system32\DRIVERS\usbohci.sys
21:51:01.0801 2584	usbohci - ok
21:51:01.0832 2584	usbprint        (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
21:51:01.0910 2584	usbprint - ok
21:51:01.0942 2584	usbscan         (576096ccbc07e7c4ea4f5e6686d6888f) C:\Windows\system32\DRIVERS\usbscan.sys
21:51:01.0957 2584	usbscan - ok
21:51:01.0988 2584	USBSTOR         (d8889d56e0d27e57ed4591837fe71d27) C:\Windows\system32\DRIVERS\USBSTOR.SYS
21:51:02.0004 2584	USBSTOR - ok
21:51:02.0035 2584	usbuhci         (68df884cf41cdada664beb01daf67e3d) C:\Windows\system32\DRIVERS\usbuhci.sys
21:51:02.0051 2584	usbuhci - ok
21:51:02.0082 2584	UxSms           (081e6e1c91aec36758902a9f727cd23c) C:\Windows\System32\uxsms.dll
21:51:02.0113 2584	UxSms - ok
21:51:02.0129 2584	VaultSvc        (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:51:02.0144 2584	VaultSvc - ok
21:51:02.0176 2584	vdrvroot        (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\drivers\vdrvroot.sys
21:51:02.0191 2584	vdrvroot - ok
21:51:02.0238 2584	vds             (c3cd30495687c2a2f66a65ca6fd89be9) C:\Windows\System32\vds.exe
21:51:02.0285 2584	vds - ok
21:51:02.0300 2584	vga             (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
21:51:02.0332 2584	vga - ok
21:51:02.0347 2584	VgaSave         (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
21:51:02.0378 2584	VgaSave - ok
21:51:02.0410 2584	vhdmp           (5461686cca2fda57b024547733ab42e3) C:\Windows\system32\drivers\vhdmp.sys
21:51:02.0425 2584	vhdmp - ok
21:51:02.0441 2584	viaagp          (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\drivers\viaagp.sys
21:51:02.0456 2584	viaagp - ok
21:51:02.0472 2584	ViaC7           (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
21:51:02.0503 2584	ViaC7 - ok
21:51:02.0519 2584	viaide          (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\drivers\viaide.sys
21:51:02.0534 2584	viaide - ok
21:51:02.0550 2584	volmgr          (4c63e00f2f4b5f86ab48a58cd990f212) C:\Windows\system32\drivers\volmgr.sys
21:51:02.0566 2584	volmgr - ok
21:51:02.0597 2584	volmgrx         (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
21:51:02.0612 2584	volmgrx - ok
21:51:02.0644 2584	volsnap         (f497f67932c6fa693d7de2780631cfe7) C:\Windows\system32\drivers\volsnap.sys
21:51:02.0675 2584	volsnap - ok
21:51:02.0706 2584	vsmraid         (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
21:51:02.0722 2584	vsmraid - ok
21:51:02.0846 2584	VSS             (209a3b1901b83aeb8527ed211cce9e4c) C:\Windows\system32\vssvc.exe
21:51:02.0893 2584	VSS - ok
21:51:02.0909 2584	vwifibus        (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\system32\DRIVERS\vwifibus.sys
21:51:02.0924 2584	vwifibus - ok
21:51:02.0940 2584	vwififlt        (7090d3436eeb4e7da3373090a23448f7) C:\Windows\system32\DRIVERS\vwififlt.sys
21:51:02.0971 2584	vwififlt - ok
21:51:02.0987 2584	vwifimp         (a3f04cbea6c2a10e6cb01f8b47611882) C:\Windows\system32\DRIVERS\vwifimp.sys
21:51:03.0002 2584	vwifimp - ok
21:51:03.0034 2584	W32Time         (55187fd710e27d5095d10a472c8baf1c) C:\Windows\system32\w32time.dll
21:51:03.0080 2584	W32Time - ok
21:51:03.0096 2584	WacomPen        (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
21:51:03.0112 2584	WacomPen - ok
21:51:03.0143 2584	WANARP          (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
21:51:03.0174 2584	WANARP - ok
21:51:03.0174 2584	Wanarpv6        (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
21:51:03.0190 2584	Wanarpv6 - ok
21:51:03.0283 2584	wbengine        (691e3285e53dca558e1a84667f13e15a) C:\Windows\system32\wbengine.exe
21:51:03.0346 2584	wbengine - ok
21:51:03.0377 2584	WbioSrvc        (9614b5d29dc76ac3c29f6d2d3aa70e67) C:\Windows\System32\wbiosrvc.dll
21:51:03.0408 2584	WbioSrvc - ok
21:51:03.0455 2584	wcncsvc         (34eee0dfaadb4f691d6d5308a51315dc) C:\Windows\System32\wcncsvc.dll
21:51:03.0486 2584	wcncsvc - ok
21:51:03.0502 2584	WcsPlugInService (5d930b6357a6d2af4d7653bdabbf352f) C:\Windows\System32\WcsPlugInService.dll
21:51:03.0533 2584	WcsPlugInService - ok
21:51:03.0580 2584	Wd              (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
21:51:03.0595 2584	Wd - ok
21:51:03.0626 2584	Wdf01000        (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
21:51:03.0658 2584	Wdf01000 - ok
21:51:03.0689 2584	WdiServiceHost  (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
21:51:03.0720 2584	WdiServiceHost - ok
21:51:03.0720 2584	WdiSystemHost   (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
21:51:03.0736 2584	WdiSystemHost - ok
21:51:03.0798 2584	WebClient       (a9d880f97530d5b8fee278923349929d) C:\Windows\System32\webclnt.dll
21:51:03.0829 2584	WebClient - ok
21:51:03.0845 2584	Wecsvc          (760f0afe937a77cff27153206534f275) C:\Windows\system32\wecsvc.dll
21:51:03.0876 2584	Wecsvc - ok
21:51:03.0892 2584	wercplsupport   (ac804569bb2364fb6017370258a4091b) C:\Windows\System32\wercplsupport.dll
21:51:03.0938 2584	wercplsupport - ok
21:51:03.0970 2584	WerSvc          (08e420d873e4fd85241ee2421b02c4a4) C:\Windows\System32\WerSvc.dll
21:51:03.0985 2584	WerSvc - ok
21:51:04.0016 2584	WfpLwf          (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
21:51:04.0048 2584	WfpLwf - ok
21:51:04.0063 2584	WIMMount        (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
21:51:04.0079 2584	WIMMount - ok
21:51:04.0157 2584	WinDefend       (3fae8f94296001c32eab62cd7d82e0fd) C:\Program Files\Windows Defender\mpsvc.dll
21:51:04.0204 2584	WinDefend - ok
21:51:04.0204 2584	WinHttpAutoProxySvc - ok
21:51:04.0266 2584	Winmgmt         (f62e510b6ad4c21eb9fe8668ed251826) C:\Windows\system32\wbem\WMIsvc.dll
21:51:04.0297 2584	Winmgmt - ok
21:51:04.0406 2584	WinRM           (1b91cd34ea3a90ab6a4ef0550174f4cc) C:\Windows\system32\WsmSvc.dll
21:51:04.0469 2584	WinRM - ok
21:51:04.0531 2584	WinUsb          (a67e5f9a400f3bd1be3d80613b45f708) C:\Windows\system32\DRIVERS\WinUsb.sys
21:51:04.0547 2584	WinUsb - ok
21:51:04.0609 2584	Wlansvc         (16935c98ff639d185086a3529b1f2067) C:\Windows\System32\wlansvc.dll
21:51:04.0656 2584	Wlansvc - ok
21:51:04.0687 2584	WmiAcpi         (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\drivers\wmiacpi.sys
21:51:04.0703 2584	WmiAcpi - ok
21:51:04.0765 2584	wmiApSrv        (6eb6b66517b048d87dc1856ddf1f4c3f) C:\Windows\system32\wbem\WmiApSrv.exe
21:51:04.0781 2584	wmiApSrv - ok
21:51:04.0890 2584	WMPNetworkSvc   (3b40d3a61aa8c21b88ae57c58ab3122e) C:\Program Files\Windows Media Player\wmpnetwk.exe
21:51:04.0952 2584	WMPNetworkSvc - ok
21:51:05.0062 2584	WPCSvc          (a2f0ec770a92f2b3f9de6d518e11409c) C:\Windows\System32\wpcsvc.dll
21:51:05.0093 2584	WPCSvc - ok
21:51:05.0108 2584	WPDBusEnum      (aa53356d60af47eacc85bc617a4f3f66) C:\Windows\system32\wpdbusenum.dll
21:51:05.0140 2584	WPDBusEnum - ok
21:51:05.0171 2584	ws2ifsl         (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
21:51:05.0186 2584	ws2ifsl - ok
21:51:05.0202 2584	wscsvc          (6f5d49efe0e7164e03ae773a3fe25340) C:\Windows\System32\wscsvc.dll
21:51:05.0218 2584	wscsvc - ok
21:51:05.0218 2584	WSearch - ok
21:51:05.0374 2584	wuauserv        (fc3ec24fce372c89423e015a2ac1a31e) C:\Windows\system32\wuaueng.dll
21:51:05.0420 2584	wuauserv - ok
21:51:05.0545 2584	WudfPf          (e714a1c0354636837e20ccbf00888ee7) C:\Windows\system32\drivers\WudfPf.sys
21:51:05.0576 2584	WudfPf - ok
21:51:05.0592 2584	WUDFRd          (1023ee888c9b47178c5293ed5336ab69) C:\Windows\system32\DRIVERS\WUDFRd.sys
21:51:05.0623 2584	WUDFRd - ok
21:51:05.0670 2584	wudfsvc         (8d1e1e529a2c9e9b6a85b55a345f7629) C:\Windows\System32\WUDFSvc.dll
21:51:05.0701 2584	wudfsvc - ok
21:51:05.0732 2584	WwanSvc         (ff2d745b560f7c71b31f30f4d49f73d2) C:\Windows\System32\wwansvc.dll
21:51:05.0764 2584	WwanSvc - ok
21:51:05.0795 2584	MBR (0x1B8)     (c79b30cb8852157f6f908e4698cfe0d0) \Device\Harddisk0\DR0
21:51:08.0213 2584	\Device\Harddisk0\DR0 - ok
21:51:08.0244 2584	Boot (0x1200)   (a96290b5401c2da5a08bb9471d76d503) \Device\Harddisk0\DR0\Partition0
21:51:08.0260 2584	\Device\Harddisk0\DR0\Partition0 - ok
21:51:08.0275 2584	Boot (0x1200)   (046bbd7303f14eb983a3f0c302651470) \Device\Harddisk0\DR0\Partition1
21:51:08.0291 2584	\Device\Harddisk0\DR0\Partition1 - ok
21:51:08.0338 2584	Boot (0x1200)   (376b50b18dd730f4a63e4b8227f4638c) \Device\Harddisk0\DR0\Partition2
21:51:08.0369 2584	\Device\Harddisk0\DR0\Partition2 - ok
21:51:08.0384 2584	============================================================
21:51:08.0384 2584	Scan finished
21:51:08.0384 2584	============================================================
21:51:08.0384 3548	Detected object count: 3
21:51:08.0384 3548	Actual detected object count: 3
21:52:04.0124 3548	avmeject ( UnsignedFile.Multi.Generic ) - skipped by user
21:52:04.0124 3548	avmeject ( UnsignedFile.Multi.Generic ) - User select action: Skip 
21:52:04.0124 3548	hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user
21:52:04.0124 3548	hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
21:52:04.0140 3548	IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
21:52:04.0140 3548	IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip 
21:52:05.0357 1876	============================================================
21:52:05.0357 1876	Scan started
21:52:05.0357 1876	Mode: Manual; SigCheck; TDLFS; 
21:52:05.0357 1876	============================================================
21:52:05.0731 1876	1394ohci        (1b133875b8aa8ac48969bd3458afe9f5) C:\Windows\system32\drivers\1394ohci.sys
21:52:05.0762 1876	1394ohci - ok
21:52:05.0793 1876	ACPI            (cea80c80bed809aa0da6febc04733349) C:\Windows\system32\drivers\ACPI.sys
21:52:05.0809 1876	ACPI - ok
21:52:05.0825 1876	AcpiPmi         (1efbc664abff416d1d07db115dcb264f) C:\Windows\system32\drivers\acpipmi.sys
21:52:05.0840 1876	AcpiPmi - ok
21:52:05.0918 1876	AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
21:52:05.0949 1876	AdobeARMservice - ok
21:52:06.0012 1876	AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
21:52:06.0027 1876	AdobeFlashPlayerUpdateSvc - ok
21:52:06.0105 1876	adp94xx         (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
21:52:06.0137 1876	adp94xx - ok
21:52:06.0168 1876	adpahci         (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
21:52:06.0183 1876	adpahci - ok
21:52:06.0215 1876	adpu320         (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
21:52:06.0230 1876	adpu320 - ok
21:52:06.0246 1876	AeLookupSvc     (8b5eefeec1e6d1a72a06c526628ad161) C:\Windows\System32\aelupsvc.dll
21:52:06.0261 1876	AeLookupSvc - ok
21:52:06.0293 1876	AFD             (9ebbba55060f786f0fcaa3893bfa2806) C:\Windows\system32\drivers\afd.sys
21:52:06.0293 1876	AFD - ok
21:52:06.0402 1876	Agile1Password  (adc2ce8edcdc709c2af01df3eb12dbfa) C:\Program Files\1Password\Agile1pService.exe
21:52:06.0433 1876	Agile1Password - ok
21:52:06.0449 1876	agp440          (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\drivers\agp440.sys
21:52:06.0449 1876	agp440 - ok
21:52:06.0464 1876	aic78xx         (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
21:52:06.0480 1876	aic78xx - ok
21:52:06.0495 1876	ALG             (18a54e132947cd98fea9accc57f98f13) C:\Windows\System32\alg.exe
21:52:06.0511 1876	ALG - ok
21:52:06.0527 1876	aliide          (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\drivers\aliide.sys
21:52:06.0527 1876	aliide - ok
21:52:06.0558 1876	AMD External Events Utility (60201ad353105d8c6796c1b69e6c49f0) C:\Windows\system32\atiesrxx.exe
21:52:06.0573 1876	AMD External Events Utility - ok
21:52:06.0589 1876	amdagp          (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\drivers\amdagp.sys
21:52:06.0605 1876	amdagp - ok
21:52:06.0605 1876	amdide          (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\drivers\amdide.sys
21:52:06.0620 1876	amdide - ok
21:52:06.0636 1876	AmdK8           (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
21:52:06.0651 1876	AmdK8 - ok
21:52:06.0948 1876	amdkmdag        (51610b74a9a1d84dc86fce1019beaff4) C:\Windows\system32\DRIVERS\atikmdag.sys
21:52:07.0010 1876	amdkmdag - ok
21:52:07.0119 1876	amdkmdap        (cd1d86ab81eece67d7bd6f7ef9786ccc) C:\Windows\system32\DRIVERS\atikmpag.sys
21:52:07.0135 1876	amdkmdap - ok
21:52:07.0151 1876	AmdPPM          (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
21:52:07.0166 1876	AmdPPM - ok
21:52:07.0182 1876	amdsata         (d320bf87125326f996d4904fe24300fc) C:\Windows\system32\drivers\amdsata.sys
21:52:07.0197 1876	amdsata - ok
21:52:07.0213 1876	amdsbs          (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
21:52:07.0229 1876	amdsbs - ok
21:52:07.0229 1876	amdxata         (46387fb17b086d16dea267d5be23a2f2) C:\Windows\system32\drivers\amdxata.sys
21:52:07.0229 1876	amdxata - ok
21:52:07.0291 1876	AntiVirSchedulerService (466a0d95960dad3222c896d2cea99993) C:\Program Files\Avira\AntiVir Desktop\sched.exe
21:52:07.0322 1876	AntiVirSchedulerService - ok
21:52:07.0338 1876	AntiVirService  (a489be6bb0aa1ff406b488b60542314b) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
21:52:07.0353 1876	AntiVirService - ok
21:52:07.0385 1876	AppID           (aea177f783e20150ace5383ee368da19) C:\Windows\system32\drivers\appid.sys
21:52:07.0400 1876	AppID - ok
21:52:07.0416 1876	AppIDSvc        (62a9c86cb6085e20db4823e4e97826f5) C:\Windows\System32\appidsvc.dll
21:52:07.0447 1876	AppIDSvc - ok
21:52:07.0463 1876	Appinfo         (fb1959012294d6ad43e5304df65e3c26) C:\Windows\System32\appinfo.dll
21:52:07.0478 1876	Appinfo - ok
21:52:07.0509 1876	arc             (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
21:52:07.0525 1876	arc - ok
21:52:07.0525 1876	arcsas          (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
21:52:07.0541 1876	arcsas - ok
21:52:07.0587 1876	aspnet_state    (39cdcb109bf200cc8a05b9c7e6272d11) C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
21:52:07.0587 1876	aspnet_state - ok
21:52:07.0603 1876	AsyncMac        (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
21:52:07.0619 1876	AsyncMac - ok
21:52:07.0650 1876	atapi           (338c86357871c167a96ab976519bf59e) C:\Windows\system32\drivers\atapi.sys
21:52:07.0650 1876	atapi - ok
21:52:07.0681 1876	AtiHdmiService  (8df873d0587596c1d35a9cececc61da1) C:\Windows\system32\drivers\AtiHdmi.sys
21:52:07.0681 1876	AtiHdmiService - ok
21:52:07.0728 1876	AudioEndpointBuilder (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll
21:52:07.0743 1876	AudioEndpointBuilder - ok
21:52:07.0759 1876	Audiosrv        (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll
21:52:07.0775 1876	Audiosrv - ok
21:52:07.0806 1876	avgntflt        (d5541f0afb767e85fc412fc609d96a74) C:\Windows\system32\DRIVERS\avgntflt.sys
21:52:07.0806 1876	avgntflt - ok
21:52:07.0837 1876	avipbb          (7d967a682d4694df7fa57d63a2db01fe) C:\Windows\system32\DRIVERS\avipbb.sys
21:52:07.0837 1876	avipbb - ok
21:52:07.0853 1876	avkmgr          (271cfd1a989209b1964e24d969552bf7) C:\Windows\system32\DRIVERS\avkmgr.sys
21:52:07.0868 1876	avkmgr - ok
21:52:07.0884 1876	avmeject        (263cf9d248fd5e020a1333ed4f7eaa88) C:\Windows\system32\drivers\avmeject.sys
21:52:07.0884 1876	avmeject ( UnsignedFile.Multi.Generic ) - warning
21:52:07.0884 1876	avmeject - detected UnsignedFile.Multi.Generic (1)
21:52:07.0915 1876	AxInstSV        (6e30d02aac9cac84f421622e3a2f6178) C:\Windows\System32\AxInstSV.dll
21:52:07.0915 1876	AxInstSV - ok
21:52:07.0962 1876	b06bdrv         (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
21:52:07.0993 1876	b06bdrv - ok
21:52:08.0009 1876	b57nd60x        (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
21:52:08.0024 1876	b57nd60x - ok
21:52:08.0040 1876	BDESVC          (ee1e9c3bb8228ae423dd38db69128e71) C:\Windows\System32\bdesvc.dll
21:52:08.0055 1876	BDESVC - ok
21:52:08.0071 1876	Beep            (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
21:52:08.0087 1876	Beep - ok
21:52:08.0133 1876	BFE             (1e2bac209d184bb851e1a187d8a29136) C:\Windows\System32\bfe.dll
21:52:08.0149 1876	BFE - ok
21:52:08.0180 1876	BITS            (e585445d5021971fae10393f0f1c3961) C:\Windows\System32\qmgr.dll
21:52:08.0211 1876	BITS - ok
21:52:08.0227 1876	blbdrive        (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
21:52:08.0243 1876	blbdrive - ok
21:52:08.0258 1876	bowser          (8f2da3028d5fcbd1a060a3de64cd6506) C:\Windows\system32\DRIVERS\bowser.sys
21:52:08.0274 1876	bowser - ok
21:52:08.0289 1876	BrFiltLo        (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
21:52:08.0305 1876	BrFiltLo - ok
21:52:08.0321 1876	BrFiltUp        (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
21:52:08.0321 1876	BrFiltUp - ok
21:52:08.0352 1876	Browser         (6e11f33d14d020f58d5e02e4d67dfa19) C:\Windows\System32\browser.dll
21:52:08.0367 1876	Browser - ok
21:52:08.0383 1876	Brserid         (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
21:52:08.0399 1876	Brserid - ok
21:52:08.0414 1876	BrSerWdm        (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
21:52:08.0430 1876	BrSerWdm - ok
21:52:08.0445 1876	BrUsbMdm        (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
21:52:08.0461 1876	BrUsbMdm - ok
21:52:08.0492 1876	BrUsbSer        (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
21:52:08.0492 1876	BrUsbSer - ok
21:52:08.0508 1876	BTHMODEM        (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
21:52:08.0523 1876	BTHMODEM - ok
21:52:08.0555 1876	bthserv         (1df19c96eef6c29d1c3e1a8678e07190) C:\Windows\system32\bthserv.dll
21:52:08.0570 1876	bthserv - ok
21:52:08.0586 1876	cdfs            (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
21:52:08.0601 1876	cdfs - ok
21:52:08.0633 1876	cdrom           (be167ed0fdb9c1fa1133953c18d5a6c9) C:\Windows\system32\drivers\cdrom.sys
21:52:08.0633 1876	cdrom - ok
21:52:08.0664 1876	CertPropSvc     (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll
21:52:08.0679 1876	CertPropSvc - ok
21:52:08.0711 1876	circlass        (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
21:52:08.0711 1876	circlass - ok
21:52:08.0742 1876	CLFS            (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
21:52:08.0757 1876	CLFS - ok
21:52:08.0804 1876	clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:52:08.0820 1876	clr_optimization_v2.0.50727_32 - ok
21:52:08.0867 1876	clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
21:52:08.0882 1876	clr_optimization_v4.0.30319_32 - ok
21:52:08.0898 1876	CmBatt          (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
21:52:08.0913 1876	CmBatt - ok
21:52:08.0945 1876	cmdide          (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\drivers\cmdide.sys
21:52:08.0945 1876	cmdide - ok
21:52:08.0976 1876	CNG             (247b4ce2dab1160cd422d532d5241e1f) C:\Windows\system32\Drivers\cng.sys
21:52:08.0991 1876	CNG - ok
21:52:09.0023 1876	Compbatt        (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
21:52:09.0038 1876	Compbatt - ok
21:52:09.0054 1876	CompositeBus    (cbe8c58a8579cfe5fccf809e6f114e89) C:\Windows\system32\drivers\CompositeBus.sys
21:52:09.0054 1876	CompositeBus - ok
21:52:09.0054 1876	COMSysApp - ok
21:52:09.0069 1876	crcdisk         (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
21:52:09.0085 1876	crcdisk - ok
21:52:09.0116 1876	CryptSvc        (06e771aa596b8761107ab57e99f128d7) C:\Windows\system32\cryptsvc.dll
21:52:09.0116 1876	CryptSvc - ok
21:52:09.0163 1876	DcomLaunch      (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll
21:52:09.0194 1876	DcomLaunch - ok
21:52:09.0225 1876	defragsvc       (8d6e10a2d9a5eed59562d9b82cf804e1) C:\Windows\System32\defragsvc.dll
21:52:09.0241 1876	defragsvc - ok
21:52:09.0272 1876	DfsC            (f024449c97ec1e464aaffda18593db88) C:\Windows\system32\Drivers\dfsc.sys
21:52:09.0288 1876	DfsC - ok
21:52:09.0303 1876	dg_ssudbus      (73fc5bc52572084ec1241514cf6230a0) C:\Windows\system32\DRIVERS\ssudbus.sys
21:52:09.0319 1876	dg_ssudbus - ok
21:52:09.0350 1876	Dhcp            (e9e01eb683c132f7fa27cd607b8a2b63) C:\Windows\system32\dhcpcore.dll
21:52:09.0366 1876	Dhcp - ok
21:52:09.0397 1876	discache        (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
21:52:09.0413 1876	discache - ok
21:52:09.0413 1876	Disk            (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
21:52:09.0428 1876	Disk - ok
21:52:09.0459 1876	Dnscache        (33ef4861f19a0736b11314aad9ae28d0) C:\Windows\System32\dnsrslvr.dll
21:52:09.0459 1876	Dnscache - ok
21:52:09.0491 1876	dot3svc         (366ba8fb4b7bb7435e3b9eacb3843f67) C:\Windows\System32\dot3svc.dll
21:52:09.0506 1876	dot3svc - ok
21:52:09.0537 1876	DPS             (8ec04ca86f1d68da9e11952eb85973d6) C:\Windows\system32\dps.dll
21:52:09.0553 1876	DPS - ok
21:52:09.0584 1876	drmkaud         (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
21:52:09.0584 1876	drmkaud - ok
21:52:09.0647 1876	DXGKrnl         (23f5d28378a160352ba8f817bd8c71cb) C:\Windows\System32\drivers\dxgkrnl.sys
21:52:09.0662 1876	DXGKrnl - ok
21:52:09.0693 1876	EapHost         (8600142fa91c1b96367d3300ad0f3f3a) C:\Windows\System32\eapsvc.dll
21:52:09.0709 1876	EapHost - ok
21:52:09.0881 1876	ebdrv           (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
21:52:09.0912 1876	ebdrv - ok
21:52:10.0021 1876	EFS             (81951f51e318aecc2d68559e47485cc4) C:\Windows\System32\lsass.exe
21:52:10.0037 1876	EFS - ok
21:52:10.0099 1876	ehRecvr         (a8c362018efc87beb013ee28f29c0863) C:\Windows\ehome\ehRecvr.exe
21:52:10.0130 1876	ehRecvr - ok
21:52:10.0161 1876	ehSched         (d389bff34f80caede417bf9d1507996a) C:\Windows\ehome\ehsched.exe
21:52:10.0161 1876	ehSched - ok
21:52:10.0224 1876	elxstor         (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
21:52:10.0239 1876	elxstor - ok
21:52:10.0255 1876	ErrDev          (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\drivers\errdev.sys
21:52:10.0271 1876	ErrDev - ok
21:52:10.0302 1876	EventSystem     (f6916efc29d9953d5d0df06882ae8e16) C:\Windows\system32\es.dll
21:52:10.0333 1876	EventSystem - ok
21:52:10.0349 1876	exfat           (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
21:52:10.0364 1876	exfat - ok
21:52:10.0380 1876	fastfat         (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
21:52:10.0411 1876	fastfat - ok
21:52:10.0458 1876	Fax             (967ea5b213e9984cbe270205df37755b) C:\Windows\system32\fxssvc.exe
21:52:10.0489 1876	Fax - ok
21:52:10.0505 1876	fdc             (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
21:52:10.0505 1876	fdc - ok
21:52:10.0536 1876	fdPHost         (f3222c893bd2f5821a0179e5c71e88fb) C:\Windows\system32\fdPHost.dll
21:52:10.0567 1876	fdPHost - ok
21:52:10.0583 1876	FDResPub        (7dbe8cbfe79efbdeb98c9fb08d3a9a5b) C:\Windows\system32\fdrespub.dll
21:52:10.0598 1876	FDResPub - ok
21:52:10.0614 1876	FileInfo        (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
21:52:10.0629 1876	FileInfo - ok
21:52:10.0645 1876	Filetrace       (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
21:52:10.0661 1876	Filetrace - ok
21:52:10.0692 1876	flpydisk        (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
21:52:10.0707 1876	flpydisk - ok
21:52:10.0723 1876	FltMgr          (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
21:52:10.0739 1876	FltMgr - ok
21:52:10.0801 1876	FontCache       (b3a5ec6b6b6673db7e87c2bcdbddc074) C:\Windows\system32\FntCache.dll
21:52:10.0832 1876	FontCache - ok
21:52:10.0879 1876	FontCache3.0.0.0 (e56f39f6b7fda0ac77a79b0fd3de1a2f) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
21:52:10.0895 1876	FontCache3.0.0.0 - ok
21:52:10.0926 1876	FsDepends       (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
21:52:10.0941 1876	FsDepends - ok
21:52:10.0957 1876	Fs_Rec          (7dae5ebcc80e45d3253f4923dc424d05) C:\Windows\system32\drivers\Fs_Rec.sys
21:52:10.0973 1876	Fs_Rec - ok
21:52:11.0004 1876	fvevol          (8a73e79089b282100b9393b644cb853b) C:\Windows\system32\DRIVERS\fvevol.sys
21:52:11.0019 1876	fvevol - ok
21:52:11.0051 1876	fwlanusbn       (fc06a5be1ab381cd47af3d69006e88f0) C:\Windows\system32\DRIVERS\fwlanusbn.sys
21:52:11.0066 1876	fwlanusbn - ok
21:52:11.0097 1876	gagp30kx        (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
21:52:11.0113 1876	gagp30kx - ok
21:52:11.0160 1876	gpsvc           (e897eaf5ed6ba41e081060c9b447a673) C:\Windows\System32\gpsvc.dll
21:52:11.0175 1876	gpsvc - ok
21:52:11.0269 1876	gupdate         (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
21:52:11.0285 1876	gupdate - ok
21:52:11.0285 1876	gupdatem        (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
21:52:11.0300 1876	gupdatem - ok
21:52:11.0331 1876	gusvc           (c1b577b2169900f4cf7190c39f085794) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
21:52:11.0331 1876	gusvc - ok
21:52:11.0363 1876	hcw85cir        (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
21:52:11.0363 1876	hcw85cir - ok
21:52:11.0394 1876	HdAudAddService (3530cad25deba7dc7de8bb51632cbc5f) C:\Windows\system32\drivers\HdAudio.sys
21:52:11.0409 1876	HdAudAddService - ok
21:52:11.0425 1876	HDAudBus        (9036377b8a6c15dc2eec53e489d159b5) C:\Windows\system32\drivers\HDAudBus.sys
21:52:11.0441 1876	HDAudBus - ok
21:52:11.0456 1876	HidBatt         (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
21:52:11.0472 1876	HidBatt - ok
21:52:11.0487 1876	HidBth          (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
21:52:11.0487 1876	HidBth - ok
21:52:11.0519 1876	HidIr           (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
21:52:11.0534 1876	HidIr - ok
21:52:11.0550 1876	hidserv         (2bc6f6a1992b3a77f5f41432ca6b3b6b) C:\Windows\system32\hidserv.dll
21:52:11.0565 1876	hidserv - ok
21:52:11.0581 1876	HidUsb          (25072fb35ac90b25f9e4e3bacf774102) C:\Windows\system32\DRIVERS\hidusb.sys
21:52:11.0597 1876	HidUsb - ok
21:52:11.0612 1876	hkmsvc          (196b4e3f4cccc24af836ce58facbb699) C:\Windows\system32\kmsvc.dll
21:52:11.0643 1876	hkmsvc - ok
21:52:11.0659 1876	HomeGroupListener (6658f4404de03d75fe3ba09f7aba6a30) C:\Windows\system32\ListSvc.dll
21:52:11.0675 1876	HomeGroupListener - ok
21:52:11.0690 1876	HomeGroupProvider (dbc02d918fff1cad628acbe0c0eaa8e8) C:\Windows\system32\provsvc.dll
21:52:11.0706 1876	HomeGroupProvider - ok
21:52:11.0799 1876	hpqcxs08        (0a3c6aa4a9fc38c20ba4eac2c3351c05) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
21:52:11.0799 1876	hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning
21:52:11.0799 1876	hpqcxs08 - detected UnsignedFile.Multi.Generic (1)
21:52:11.0831 1876	HpSAMD          (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\drivers\HpSAMD.sys
21:52:11.0831 1876	HpSAMD - ok
21:52:11.0877 1876	HTTP            (871917b07a141bff43d76d8844d48106) C:\Windows\system32\drivers\HTTP.sys
21:52:11.0909 1876	HTTP - ok
21:52:11.0909 1876	hwpolicy        (0c4e035c7f105f1299258c90886c64c5) C:\Windows\system32\drivers\hwpolicy.sys
21:52:11.0924 1876	hwpolicy - ok
21:52:11.0940 1876	i8042prt        (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\drivers\i8042prt.sys
21:52:11.0955 1876	i8042prt - ok
21:52:12.0002 1876	iaStor          (26541a068572f650a2fa490726fe81be) C:\Windows\system32\DRIVERS\iaStor.sys
21:52:12.0002 1876	iaStor - ok
21:52:12.0065 1876	IAStorDataMgrSvc (31a0e93cdf29007d6c6fffb632f375ed) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
21:52:12.0080 1876	IAStorDataMgrSvc - ok
21:52:12.0127 1876	iaStorV         (5cd5f9a5444e6cdcb0ac89bd62d8b76e) C:\Windows\system32\drivers\iaStorV.sys
21:52:12.0143 1876	iaStorV - ok
21:52:12.0189 1876	IDriverT        (1cf03c69b49acb70c722df92755c0c8c) C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
21:52:12.0205 1876	IDriverT ( UnsignedFile.Multi.Generic ) - warning
21:52:12.0205 1876	IDriverT - detected UnsignedFile.Multi.Generic (1)
21:52:12.0314 1876	idsvc           (c521d7eb6497bb1af6afa89e322fb43c) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
21:52:12.0345 1876	idsvc - ok
21:52:12.0735 1876	igfx            (ad626f6964f4d364d226c39e06872dd3) C:\Windows\system32\DRIVERS\igdkmd32.sys
21:52:12.0782 1876	igfx - ok
21:52:12.0938 1876	iirsp           (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
21:52:12.0969 1876	iirsp - ok
21:52:13.0016 1876	IKEEXT          (f95622f161474511b8d80d6b093aa610) C:\Windows\System32\ikeext.dll
21:52:13.0047 1876	IKEEXT - ok
21:52:13.0219 1876	IntcAzAudAddService (f4427e5df32cde359b2e2e5512d18001) C:\Windows\system32\drivers\RTKVHDA.sys
21:52:13.0281 1876	IntcAzAudAddService - ok
21:52:13.0375 1876	intelide        (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\drivers\intelide.sys
21:52:13.0391 1876	intelide - ok
21:52:13.0406 1876	intelppm        (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
21:52:13.0422 1876	intelppm - ok
21:52:13.0437 1876	IPBusEnum       (acb364b9075a45c0736e5c47be5cae19) C:\Windows\system32\ipbusenum.dll
21:52:13.0469 1876	IPBusEnum - ok
21:52:13.0469 1876	IpFilterDriver  (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
21:52:13.0500 1876	IpFilterDriver - ok
21:52:13.0531 1876	iphlpsvc        (4d65a07b795d6674312f879d09aa7663) C:\Windows\System32\iphlpsvc.dll
21:52:13.0562 1876	iphlpsvc - ok
21:52:13.0578 1876	IPMIDRV         (4bd7134618c1d2a27466a099062547bf) C:\Windows\system32\drivers\IPMIDrv.sys
21:52:13.0593 1876	IPMIDRV - ok
21:52:13.0625 1876	IPNAT           (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
21:52:13.0640 1876	IPNAT - ok
21:52:13.0656 1876	IRENUM          (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
21:52:13.0656 1876	IRENUM - ok
21:52:13.0671 1876	isapnp          (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\drivers\isapnp.sys
21:52:13.0687 1876	isapnp - ok
21:52:13.0718 1876	iScsiPrt        (cb7a9abb12b8415bce5d74994c7ba3ae) C:\Windows\system32\drivers\msiscsi.sys
21:52:13.0718 1876	iScsiPrt - ok
21:52:13.0734 1876	kbdclass        (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\DRIVERS\kbdclass.sys
21:52:13.0749 1876	kbdclass - ok
21:52:13.0765 1876	kbdhid          (3d9f0ebf350edcfd6498057301455964) C:\Windows\system32\DRIVERS\kbdhid.sys
21:52:13.0765 1876	kbdhid - ok
21:52:13.0781 1876	KeyIso          (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:52:13.0796 1876	KeyIso - ok
21:52:13.0827 1876	KSecDD          (b7895b4182c0d16f6efadeb8081e8d36) C:\Windows\system32\Drivers\ksecdd.sys
21:52:13.0843 1876	KSecDD - ok
21:52:13.0874 1876	KSecPkg         (d30159ac9237519fbc62c6ec247d2d46) C:\Windows\system32\Drivers\ksecpkg.sys
21:52:13.0874 1876	KSecPkg - ok
21:52:13.0921 1876	KtmRm           (89a7b9cc98d0d80c6f31b91c0a310fcd) C:\Windows\system32\msdtckrm.dll
21:52:13.0952 1876	KtmRm - ok
21:52:13.0983 1876	LanmanServer    (d64af876d53eca3668bb97b51b4e70ab) C:\Windows\system32\srvsvc.dll
21:52:13.0999 1876	LanmanServer - ok
21:52:14.0015 1876	LanmanWorkstation (58405e4f68ba8e4057c6e914f326aba2) C:\Windows\System32\wkssvc.dll
21:52:14.0046 1876	LanmanWorkstation - ok
21:52:14.0061 1876	lltdio          (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
21:52:14.0077 1876	lltdio - ok
21:52:14.0108 1876	lltdsvc         (5700673e13a2117fa3b9020c852c01e2) C:\Windows\System32\lltdsvc.dll
21:52:14.0124 1876	lltdsvc - ok
21:52:14.0139 1876	lmhosts         (55ca01ba19d0006c8f2639b6c045e08b) C:\Windows\System32\lmhsvc.dll
21:52:14.0155 1876	lmhosts - ok
21:52:14.0171 1876	LSI_FC          (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
21:52:14.0186 1876	LSI_FC - ok
21:52:14.0202 1876	LSI_SAS         (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
21:52:14.0217 1876	LSI_SAS - ok
21:52:14.0233 1876	LSI_SAS2        (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
21:52:14.0249 1876	LSI_SAS2 - ok
21:52:14.0280 1876	LSI_SCSI        (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
21:52:14.0280 1876	LSI_SCSI - ok
21:52:14.0311 1876	luafv           (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
21:52:14.0327 1876	luafv - ok
21:52:14.0342 1876	Mcx2Svc         (bfb9ee8ee977efe85d1a3105abef6dd1) C:\Windows\system32\Mcx2Svc.dll
21:52:14.0358 1876	Mcx2Svc - ok
21:52:14.0373 1876	megasas         (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
21:52:14.0373 1876	megasas - ok
21:52:14.0405 1876	MegaSR          (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
21:52:14.0405 1876	MegaSR - ok
21:52:14.0436 1876	MMCSS           (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
21:52:14.0451 1876	MMCSS - ok
21:52:14.0467 1876	Modem           (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
21:52:14.0498 1876	Modem - ok
21:52:14.0514 1876	monitor         (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
21:52:14.0529 1876	monitor - ok
21:52:14.0545 1876	mouclass        (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\DRIVERS\mouclass.sys
21:52:14.0561 1876	mouclass - ok
21:52:14.0561 1876	mouhid          (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
21:52:14.0576 1876	mouhid - ok
21:52:14.0592 1876	mountmgr        (fc8771f45ecccfd89684e38842539b9b) C:\Windows\system32\drivers\mountmgr.sys
21:52:14.0607 1876	mountmgr - ok
21:52:14.0670 1876	MozillaMaintenance (15d5398eed42c2504bb3d4fc875c15d1) C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
21:52:14.0685 1876	MozillaMaintenance - ok
21:52:14.0717 1876	mpio            (2d699fb6e89ce0d8da14ecc03b3edfe0) C:\Windows\system32\drivers\mpio.sys
21:52:14.0732 1876	mpio - ok
21:52:14.0763 1876	mpsdrv          (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
21:52:14.0779 1876	mpsdrv - ok
21:52:14.0826 1876	MpsSvc          (9835584e999d25004e1ee8e5f3e3b881) C:\Windows\system32\mpssvc.dll
21:52:14.0873 1876	MpsSvc - ok
21:52:14.0888 1876	MRxDAV          (ceb46ab7c01c9f825f8cc6babc18166a) C:\Windows\system32\drivers\mrxdav.sys
21:52:14.0904 1876	MRxDAV - ok
21:52:14.0935 1876	mrxsmb          (5d16c921e3671636c0eba3bbaac5fd25) C:\Windows\system32\DRIVERS\mrxsmb.sys
21:52:14.0951 1876	mrxsmb - ok
21:52:14.0982 1876	mrxsmb10        (6d17a4791aca19328c685d256349fefc) C:\Windows\system32\DRIVERS\mrxsmb10.sys
21:52:14.0982 1876	mrxsmb10 - ok
21:52:14.0997 1876	mrxsmb20        (b81f204d146000be76651a50670a5e9e) C:\Windows\system32\DRIVERS\mrxsmb20.sys
21:52:15.0013 1876	mrxsmb20 - ok
21:52:15.0029 1876	msahci          (012c5f4e9349e711e11e0f19a8589f0a) C:\Windows\system32\drivers\msahci.sys
21:52:15.0044 1876	msahci - ok
21:52:15.0060 1876	msdsm           (55055f8ad8be27a64c831322a780a228) C:\Windows\system32\drivers\msdsm.sys
21:52:15.0075 1876	msdsm - ok
21:52:15.0107 1876	MSDTC           (e1bce74a3bd9902b72599c0192a07e27) C:\Windows\System32\msdtc.exe
21:52:15.0107 1876	MSDTC - ok
21:52:15.0138 1876	Msfs            (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
21:52:15.0153 1876	Msfs - ok
21:52:15.0169 1876	mshidkmdf       (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
21:52:15.0185 1876	mshidkmdf - ok
21:52:15.0200 1876	msisadrv        (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\drivers\msisadrv.sys
21:52:15.0200 1876	msisadrv - ok
21:52:15.0231 1876	MSiSCSI         (90f7d9e6b6f27e1a707d4a297f077828) C:\Windows\system32\iscsiexe.dll
21:52:15.0247 1876	MSiSCSI - ok
21:52:15.0263 1876	msiserver - ok
21:52:15.0263 1876	MSKSSRV         (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
21:52:15.0294 1876	MSKSSRV - ok
21:52:15.0294 1876	MSPCLOCK        (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
21:52:15.0309 1876	MSPCLOCK - ok
21:52:15.0325 1876	MSPQM           (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
21:52:15.0341 1876	MSPQM - ok
21:52:15.0356 1876	MsRPC           (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
21:52:15.0372 1876	MsRPC - ok
21:52:15.0387 1876	mssmbios        (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\drivers\mssmbios.sys
21:52:15.0403 1876	mssmbios - ok
21:52:15.0419 1876	MSTEE           (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
21:52:15.0434 1876	MSTEE - ok
21:52:15.0450 1876	MTConfig        (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
21:52:15.0450 1876	MTConfig - ok
21:52:15.0481 1876	Mup             (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
21:52:15.0481 1876	Mup - ok
21:52:15.0528 1876	napagent        (61d57a5d7c6d9afe10e77dae6e1b445e) C:\Windows\system32\qagentRT.dll
21:52:15.0559 1876	napagent - ok
21:52:15.0575 1876	NativeWifiP     (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
21:52:15.0590 1876	NativeWifiP - ok
21:52:15.0637 1876	NDIS            (e7c54812a2aaf43316eb6930c1ffa108) C:\Windows\system32\drivers\ndis.sys
21:52:15.0668 1876	NDIS - ok
21:52:15.0668 1876	NdisCap         (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
21:52:15.0684 1876	NdisCap - ok
21:52:15.0699 1876	NdisTapi        (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
21:52:15.0715 1876	NdisTapi - ok
21:52:15.0731 1876	Ndisuio         (d8a65dafb3eb41cbb622745676fcd072) C:\Windows\system32\DRIVERS\ndisuio.sys
21:52:15.0762 1876	Ndisuio - ok
21:52:15.0777 1876	NdisWan         (38fbe267e7e6983311179230facb1017) C:\Windows\system32\DRIVERS\ndiswan.sys
21:52:15.0793 1876	NdisWan - ok
21:52:15.0809 1876	NDProxy         (a4bdc541e69674fbff1a8ff00be913f2) C:\Windows\system32\drivers\NDProxy.sys
21:52:15.0824 1876	NDProxy - ok
21:52:15.0840 1876	NetBIOS         (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
21:52:15.0855 1876	NetBIOS - ok
21:52:15.0887 1876	NetBT           (280122ddcf04b378edd1ad54d71c1e54) C:\Windows\system32\DRIVERS\netbt.sys
21:52:15.0902 1876	NetBT - ok
21:52:15.0902 1876	Netlogon        (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:52:15.0918 1876	Netlogon - ok
21:52:15.0949 1876	Netman          (7cccfca7510684768da22092d1fa4db2) C:\Windows\System32\netman.dll
21:52:15.0980 1876	Netman - ok
21:52:15.0996 1876	netprofm        (8c338238c16777a802d6a9211eb2ba50) C:\Windows\System32\netprofm.dll
21:52:16.0027 1876	netprofm - ok
21:52:16.0074 1876	NetTcpPortSharing (f476ec40033cdb91efbe73eb99b8362d) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:52:16.0089 1876	NetTcpPortSharing - ok
21:52:16.0105 1876	nfrd960         (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
21:52:16.0105 1876	nfrd960 - ok
21:52:16.0152 1876	NlaSvc          (912084381d30d8b89ec4e293053f4710) C:\Windows\System32\nlasvc.dll
21:52:16.0167 1876	NlaSvc - ok
21:52:16.0183 1876	Npfs            (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
21:52:16.0199 1876	Npfs - ok
21:52:16.0214 1876	nsi             (ba387e955e890c8a88306d9b8d06bf17) C:\Windows\system32\nsisvc.dll
21:52:16.0245 1876	nsi - ok
21:52:16.0245 1876	nsiproxy        (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
21:52:16.0277 1876	nsiproxy - ok
21:52:16.0355 1876	Ntfs            (81189c3d7763838e55c397759d49007a) C:\Windows\system32\drivers\Ntfs.sys
21:52:16.0386 1876	Ntfs - ok
21:52:16.0479 1876	Null            (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
21:52:16.0511 1876	Null - ok
21:52:16.0542 1876	nvraid          (b3e25ee28883877076e0e1ff877d02e0) C:\Windows\system32\drivers\nvraid.sys
21:52:16.0557 1876	nvraid - ok
21:52:16.0573 1876	nvstor          (4380e59a170d88c4f1022eff6719a8a4) C:\Windows\system32\drivers\nvstor.sys
21:52:16.0589 1876	nvstor - ok
21:52:16.0620 1876	nv_agp          (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\drivers\nv_agp.sys
21:52:16.0635 1876	nv_agp - ok
21:52:16.0651 1876	ohci1394        (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\drivers\ohci1394.sys
21:52:16.0667 1876	ohci1394 - ok
21:52:16.0698 1876	p2pimsvc        (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
21:52:16.0713 1876	p2pimsvc - ok
21:52:16.0745 1876	p2psvc          (59c3ddd501e39e006dac31bf55150d91) C:\Windows\system32\p2psvc.dll
21:52:16.0760 1876	p2psvc - ok
21:52:16.0776 1876	Parport         (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
21:52:16.0791 1876	Parport - ok
21:52:16.0823 1876	partmgr         (3f34a1b4c5f6475f320c275e63afce9b) C:\Windows\system32\drivers\partmgr.sys
21:52:16.0838 1876	partmgr - ok
21:52:16.0854 1876	Parvdm          (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
21:52:16.0854 1876	Parvdm - ok
21:52:16.0885 1876	PcaSvc          (358ab7956d3160000726574083dfc8a6) C:\Windows\System32\pcasvc.dll
21:52:16.0885 1876	PcaSvc - ok
21:52:16.0916 1876	pci             (673e55c3498eb970088e812ea820aa8f) C:\Windows\system32\drivers\pci.sys
21:52:16.0932 1876	pci - ok
21:52:16.0947 1876	pciide          (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\drivers\pciide.sys
21:52:16.0947 1876	pciide - ok
21:52:16.0979 1876	pcmcia          (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
21:52:16.0994 1876	pcmcia - ok
21:52:16.0994 1876	pcw             (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
21:52:17.0010 1876	pcw - ok
21:52:17.0041 1876	PEAUTH          (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
21:52:17.0072 1876	PEAUTH - ok
21:52:17.0181 1876	pla             (414bba67a3ded1d28437eb66aeb8a720) C:\Windows\system32\pla.dll
21:52:17.0228 1876	pla - ok
21:52:17.0337 1876	PlugPlay        (ec7bc28d207da09e79b3e9faf8b232ca) C:\Windows\system32\umpnpmgr.dll
21:52:17.0369 1876	PlugPlay - ok
21:52:17.0384 1876	PNRPAutoReg     (63ff8572611249931eb16bb8eed6afc8) C:\Windows\system32\pnrpauto.dll
21:52:17.0400 1876	PNRPAutoReg - ok
21:52:17.0431 1876	PNRPsvc         (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
21:52:17.0431 1876	PNRPsvc - ok
21:52:17.0478 1876	PolicyAgent     (53946b69ba0836bd95b03759530c81ec) C:\Windows\System32\ipsecsvc.dll
21:52:17.0509 1876	PolicyAgent - ok
21:52:17.0556 1876	Power           (f87d30e72e03d579a5199ccb3831d6ea) C:\Windows\system32\umpo.dll
21:52:17.0571 1876	Power - ok
21:52:17.0603 1876	PptpMiniport    (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
21:52:17.0634 1876	PptpMiniport - ok
21:52:17.0649 1876	Processor       (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
21:52:17.0649 1876	Processor - ok
21:52:17.0681 1876	ProfSvc         (43ca4ccc22d52fb58e8988f0198851d0) C:\Windows\system32\profsvc.dll
21:52:17.0712 1876	ProfSvc - ok
21:52:17.0712 1876	ProtectedStorage (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:52:17.0727 1876	ProtectedStorage - ok
21:52:17.0743 1876	Psched          (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
21:52:17.0759 1876	Psched - ok
21:52:17.0805 1876	PSI_SVC_2       (a6a7ad767bf5141665f5c675f671b3e1) c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
21:52:17.0837 1876	PSI_SVC_2 - ok
21:52:17.0915 1876	ql2300          (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
21:52:17.0946 1876	ql2300 - ok
21:52:18.0055 1876	ql40xx          (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
21:52:18.0071 1876	ql40xx - ok
21:52:18.0102 1876	QWAVE           (31ac809e7707eb580b2bdb760390765a) C:\Windows\system32\qwave.dll
21:52:18.0117 1876	QWAVE - ok
21:52:18.0133 1876	QWAVEdrv        (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
21:52:18.0133 1876	QWAVEdrv - ok
21:52:18.0149 1876	RasAcd          (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
21:52:18.0164 1876	RasAcd - ok
21:52:18.0195 1876	RasAgileVpn     (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
21:52:18.0211 1876	RasAgileVpn - ok
21:52:18.0227 1876	RasAuto         (a60f1839849c0c00739787fd5ec03f13) C:\Windows\System32\rasauto.dll
21:52:18.0242 1876	RasAuto - ok
21:52:18.0258 1876	Rasl2tp         (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
21:52:18.0289 1876	Rasl2tp - ok
21:52:18.0320 1876	RasMan          (cb9e04dc05eacf5b9a36ca276d475006) C:\Windows\System32\rasmans.dll
21:52:18.0336 1876	RasMan - ok
21:52:18.0351 1876	RasPppoe        (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
21:52:18.0367 1876	RasPppoe - ok
21:52:18.0398 1876	RasSstp         (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
21:52:18.0414 1876	RasSstp - ok
21:52:18.0429 1876	rdbss           (d528bc58a489409ba40334ebf96a311b) C:\Windows\system32\DRIVERS\rdbss.sys
21:52:18.0445 1876	rdbss - ok
21:52:18.0461 1876	rdpbus          (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
21:52:18.0476 1876	rdpbus - ok
21:52:18.0507 1876	RDPCDD          (23dae03f29d253ae74c44f99e515f9a1) C:\Windows\system32\DRIVERS\RDPCDD.sys
21:52:18.0523 1876	RDPCDD - ok
21:52:18.0554 1876	RDPENCDD        (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
21:52:18.0570 1876	RDPENCDD - ok
21:52:18.0570 1876	RDPREFMP        (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
21:52:18.0585 1876	RDPREFMP - ok
21:52:18.0617 1876	RDPWD           (f031683e6d1fea157abb2ff260b51e61) C:\Windows\system32\drivers\RDPWD.sys
21:52:18.0632 1876	RDPWD - ok
21:52:18.0663 1876	rdyboost        (518395321dc96fe2c9f0e96ac743b656) C:\Windows\system32\drivers\rdyboost.sys
21:52:18.0679 1876	rdyboost - ok
21:52:18.0695 1876	RemoteAccess    (7b5e1419717fac363a31cc302895217a) C:\Windows\System32\mprdim.dll
21:52:18.0726 1876	RemoteAccess - ok
21:52:18.0741 1876	RemoteRegistry  (cb9a8683f4ef2bf99e123d79950d7935) C:\Windows\system32\regsvc.dll
21:52:18.0773 1876	RemoteRegistry - ok
21:52:18.0804 1876	RMCAST          (906dcfc5ebf4ec0433f8d4fffb0ba334) C:\Windows\system32\DRIVERS\RMCAST.sys
21:52:18.0819 1876	RMCAST - ok
21:52:18.0835 1876	RpcEptMapper    (78d072f35bc45d9e4e1b61895c152234) C:\Windows\System32\RpcEpMap.dll
21:52:18.0851 1876	RpcEptMapper - ok
21:52:18.0866 1876	RpcLocator      (94d36c0e44677dd26981d2bfeef2a29d) C:\Windows\system32\locator.exe
21:52:18.0882 1876	RpcLocator - ok
21:52:18.0913 1876	RpcSs           (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll
21:52:18.0944 1876	RpcSs - ok
21:52:18.0960 1876	rspndr          (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
21:52:18.0991 1876	rspndr - ok
21:52:19.0053 1876	RTL8167         (5283b9a27ff230f2ff70d92451ff409a) C:\Windows\system32\DRIVERS\Rt86win7.sys
21:52:19.0069 1876	RTL8167 - ok
21:52:19.0131 1876	RTL8192su       (9ce8deffaffccbf473015d76ae8ee514) C:\Windows\system32\DRIVERS\RTL8192su.sys
21:52:19.0147 1876	RTL8192su - ok
21:52:19.0163 1876	SamSs           (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:52:19.0178 1876	SamSs - ok
21:52:19.0209 1876	sbp2port        (05d860da1040f111503ac416ccef2bca) C:\Windows\system32\drivers\sbp2port.sys
21:52:19.0225 1876	sbp2port - ok
21:52:19.0241 1876	SCardSvr        (8fc518ffe9519c2631d37515a68009c4) C:\Windows\System32\SCardSvr.dll
21:52:19.0272 1876	SCardSvr - ok
21:52:19.0287 1876	scfilter        (0693b5ec673e34dc147e195779a4dcf6) C:\Windows\system32\DRIVERS\scfilter.sys
21:52:19.0303 1876	scfilter - ok
21:52:19.0350 1876	Schedule        (a04bb13f8a72f8b6e8b4071723e4e336) C:\Windows\system32\schedsvc.dll
21:52:19.0381 1876	Schedule - ok
21:52:19.0412 1876	SCPolicySvc     (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll
21:52:19.0428 1876	SCPolicySvc - ok
21:52:19.0459 1876	SDRSVC          (08236c4bce5edd0a0318a438af28e0f7) C:\Windows\System32\SDRSVC.dll
21:52:19.0459 1876	SDRSVC - ok
21:52:19.0490 1876	secdrv          (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
21:52:19.0506 1876	secdrv - ok
21:52:19.0521 1876	seclogon        (a59b3a4442c52060cc7a85293aa3546f) C:\Windows\system32\seclogon.dll
21:52:19.0537 1876	seclogon - ok
21:52:19.0568 1876	SENS            (dcb7fcdcc97f87360f75d77425b81737) C:\Windows\System32\sens.dll
21:52:19.0584 1876	SENS - ok
21:52:19.0599 1876	SensrSvc        (50087fe1ee447009c9cc2997b90de53f) C:\Windows\system32\sensrsvc.dll
21:52:19.0599 1876	SensrSvc - ok
21:52:19.0615 1876	Serenum         (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
21:52:19.0615 1876	Serenum - ok
21:52:19.0646 1876	Serial          (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
21:52:19.0646 1876	Serial - ok
21:52:19.0677 1876	sermouse        (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
21:52:19.0677 1876	sermouse - ok
21:52:19.0709 1876	SessionEnv      (4ae380f39a0032eab7dd953030b26d28) C:\Windows\system32\sessenv.dll
21:52:19.0740 1876	SessionEnv - ok
21:52:19.0755 1876	sffdisk         (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\drivers\sffdisk.sys
21:52:19.0755 1876	sffdisk - ok
21:52:19.0771 1876	sffp_mmc        (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\drivers\sffp_mmc.sys
21:52:19.0787 1876	sffp_mmc - ok
21:52:19.0787 1876	sffp_sd         (a0708bbd07d245c06ff9de549ca47185) C:\Windows\system32\drivers\sffp_sd.sys
21:52:19.0802 1876	sffp_sd - ok
21:52:19.0818 1876	sfloppy         (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
21:52:19.0833 1876	sfloppy - ok
21:52:19.0865 1876	SharedAccess    (d1a079a0de2ea524513b6930c24527a2) C:\Windows\System32\ipnathlp.dll
21:52:19.0880 1876	SharedAccess - ok
21:52:19.0927 1876	ShellHWDetection (414da952a35bf5d50192e28263b40577) C:\Windows\System32\shsvcs.dll
21:52:19.0943 1876	ShellHWDetection - ok
21:52:19.0974 1876	sisagp          (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\drivers\sisagp.sys
21:52:19.0974 1876	sisagp - ok
21:52:19.0989 1876	SiSRaid2        (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
21:52:20.0005 1876	SiSRaid2 - ok
21:52:20.0005 1876	SiSRaid4        (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
21:52:20.0021 1876	SiSRaid4 - ok
21:52:20.0052 1876	Smb             (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
21:52:20.0067 1876	Smb - ok
21:52:20.0099 1876	SNMPTRAP        (6a984831644eca1a33ffeae4126f4f37) C:\Windows\System32\snmptrap.exe
21:52:20.0114 1876	SNMPTRAP - ok
21:52:20.0114 1876	spldr           (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
21:52:20.0130 1876	spldr - ok
21:52:20.0161 1876	Spooler         (866a43013535dc8587c258e43579c764) C:\Windows\System32\spoolsv.exe
21:52:20.0177 1876	Spooler - ok
21:52:20.0411 1876	sppsvc          (cf87a1de791347e75b98885214ced2b8) C:\Windows\system32\sppsvc.exe
21:52:20.0457 1876	sppsvc - ok
21:52:20.0535 1876	sppuinotify     (b0180b20b065d89232a78a40fe56eaa6) C:\Windows\system32\sppuinotify.dll
21:52:20.0567 1876	sppuinotify - ok
21:52:20.0629 1876	srv             (e4c2764065d66ea1d2d3ebc28fe99c46) C:\Windows\system32\DRIVERS\srv.sys
21:52:20.0645 1876	srv - ok
21:52:20.0660 1876	srv2            (03f0545bd8d4c77fa0ae1ceedfcc71ab) C:\Windows\system32\DRIVERS\srv2.sys
21:52:20.0676 1876	srv2 - ok
21:52:20.0691 1876	srvnet          (be6bd660caa6f291ae06a718a4fa8abc) C:\Windows\system32\DRIVERS\srvnet.sys
21:52:20.0691 1876	srvnet - ok
21:52:20.0723 1876	SSDPSRV         (d887c9fd02ac9fa880f6e5027a43e118) C:\Windows\System32\ssdpsrv.dll
21:52:20.0738 1876	SSDPSRV - ok
21:52:20.0754 1876	ssmdrv          (a36ee93698802cd899f98bfd553d8185) C:\Windows\system32\DRIVERS\ssmdrv.sys
21:52:20.0769 1876	ssmdrv - ok
21:52:20.0785 1876	SstpSvc         (d318f23be45d5e3a107469eb64815b50) C:\Windows\system32\sstpsvc.dll
21:52:20.0801 1876	SstpSvc - ok
21:52:20.0816 1876	ssudmdm         (07318149e102fd9197ab444c27774372) C:\Windows\system32\DRIVERS\ssudmdm.sys
21:52:20.0832 1876	ssudmdm - ok
21:52:20.0863 1876	stexstor        (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
21:52:20.0863 1876	stexstor - ok
21:52:20.0910 1876	StiSvc          (e1fb3706030fb4578a0d72c2fc3689e4) C:\Windows\System32\wiaservc.dll
21:52:20.0925 1876	StiSvc - ok
21:52:20.0941 1876	swenum          (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\drivers\swenum.sys
21:52:20.0941 1876	swenum - ok
21:52:20.0988 1876	swprv           (a28bd92df340e57b024ba433165d34d7) C:\Windows\System32\swprv.dll
21:52:21.0019 1876	swprv - ok
21:52:21.0081 1876	SysMain         (36650d618ca34c9d357dfd3d89b2c56f) C:\Windows\system32\sysmain.dll
21:52:21.0113 1876	SysMain - ok
21:52:21.0128 1876	TabletInputService (763fecdc3d30c815fe72dd57936c6cd1) C:\Windows\System32\TabSvc.dll
21:52:21.0144 1876	TabletInputService - ok
21:52:21.0175 1876	TapiSrv         (613bf4820361543956909043a265c6ac) C:\Windows\System32\tapisrv.dll
21:52:21.0191 1876	TapiSrv - ok
21:52:21.0222 1876	TBS             (b799d9fdb26111737f58288d8dc172d9) C:\Windows\System32\tbssvc.dll
21:52:21.0237 1876	TBS - ok
21:52:21.0362 1876	Tcpip           (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\drivers\tcpip.sys
21:52:21.0393 1876	Tcpip - ok
21:52:21.0518 1876	TCPIP6          (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\DRIVERS\tcpip.sys
21:52:21.0549 1876	TCPIP6 - ok
21:52:21.0612 1876	tcpipreg        (cca24162e055c3714ce5a88b100c64ed) C:\Windows\system32\drivers\tcpipreg.sys
21:52:21.0643 1876	tcpipreg - ok
21:52:21.0674 1876	TDPIPE          (1cb91b2bd8f6dd367dfc2ef26fd751b2) C:\Windows\system32\drivers\tdpipe.sys
21:52:21.0674 1876	TDPIPE - ok
21:52:21.0705 1876	TDTCP           (2c2c5afe7ee4f620d69c23c0617651a8) C:\Windows\system32\drivers\tdtcp.sys
21:52:21.0721 1876	TDTCP - ok
21:52:21.0737 1876	tdx             (b459575348c20e8121d6039da063c704) C:\Windows\system32\DRIVERS\tdx.sys
21:52:21.0752 1876	tdx - ok
21:52:21.0768 1876	TermDD          (04dbf4b01ea4bf25a9a3e84affac9b20) C:\Windows\system32\drivers\termdd.sys
21:52:21.0768 1876	TermDD - ok
21:52:21.0815 1876	TermService     (382c804c92811be57829d8e550a900e2) C:\Windows\System32\termsrv.dll
21:52:21.0830 1876	TermService - ok
21:52:21.0861 1876	Themes          (42fb6afd6b79d9fe07381609172e7ca4) C:\Windows\system32\themeservice.dll
21:52:21.0861 1876	Themes - ok
21:52:21.0893 1876	THREADORDER     (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
21:52:21.0908 1876	THREADORDER - ok
21:52:21.0924 1876	TrkWks          (4792c0378db99a9bc2ae2de6cfff0c3a) C:\Windows\System32\trkwks.dll
21:52:21.0939 1876	TrkWks - ok
21:52:21.0986 1876	TrustedInstaller (2c49b175aee1d4364b91b531417fe583) C:\Windows\servicing\TrustedInstaller.exe
21:52:22.0002 1876	TrustedInstaller - ok
21:52:22.0017 1876	tssecsrv        (254bb140eee3c59d6114c1a86b636877) C:\Windows\system32\DRIVERS\tssecsrv.sys
21:52:22.0033 1876	tssecsrv - ok
21:52:22.0064 1876	TsUsbFlt        (fd1d6c73e6333be727cbcc6054247654) C:\Windows\system32\drivers\tsusbflt.sys
21:52:22.0064 1876	TsUsbFlt - ok
21:52:22.0111 1876	tunnel          (b2fa25d9b17a68bb93d58b0556e8c90d) C:\Windows\system32\DRIVERS\tunnel.sys
21:52:22.0127 1876	tunnel - ok
21:52:22.0142 1876	uagp35          (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
21:52:22.0158 1876	uagp35 - ok
21:52:22.0189 1876	udfs            (ee43346c7e4b5e63e54f927babbb32ff) C:\Windows\system32\DRIVERS\udfs.sys
21:52:22.0205 1876	udfs - ok
21:52:22.0220 1876	UI0Detect       (8344fd4fce927880aa1aa7681d4927e5) C:\Windows\system32\UI0Detect.exe
21:52:22.0236 1876	UI0Detect - ok
21:52:22.0251 1876	uliagpkx        (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\drivers\uliagpkx.sys
21:52:22.0267 1876	uliagpkx - ok
21:52:22.0283 1876	umbus           (d295bed4b898f0fd999fcfa9b32b071b) C:\Windows\system32\drivers\umbus.sys
21:52:22.0298 1876	umbus - ok
21:52:22.0298 1876	UmPass          (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
21:52:22.0314 1876	UmPass - ok
21:52:22.0345 1876	upnphost        (833fbb672460efce8011d262175fad33) C:\Windows\System32\upnphost.dll
21:52:22.0361 1876	upnphost - ok
21:52:22.0376 1876	usbccgp         (8455c4ed038efd09e99327f9d2d48ffa) C:\Windows\system32\DRIVERS\usbccgp.sys
21:52:22.0392 1876	usbccgp - ok
21:52:22.0423 1876	usbcir          (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\drivers\usbcir.sys
21:52:22.0423 1876	usbcir - ok
21:52:22.0454 1876	usbehci         (f92de757e4b7ce9c07c5e65423f3ae3b) C:\Windows\system32\DRIVERS\usbehci.sys
21:52:22.0454 1876	usbehci - ok
21:52:22.0501 1876	usbhub          (8dc94aec6a7e644a06135ae7506dc2e9) C:\Windows\system32\DRIVERS\usbhub.sys
21:52:22.0517 1876	usbhub - ok
21:52:22.0532 1876	usbohci         (a6fb7957ea7afb1165991e54ce934b74) C:\Windows\system32\DRIVERS\usbohci.sys
21:52:22.0548 1876	usbohci - ok
21:52:22.0563 1876	usbprint        (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
21:52:22.0579 1876	usbprint - ok
21:52:22.0610 1876	usbscan         (576096ccbc07e7c4ea4f5e6686d6888f) C:\Windows\system32\DRIVERS\usbscan.sys
21:52:22.0610 1876	usbscan - ok
21:52:22.0626 1876	USBSTOR         (d8889d56e0d27e57ed4591837fe71d27) C:\Windows\system32\DRIVERS\USBSTOR.SYS
21:52:22.0641 1876	USBSTOR - ok
21:52:22.0657 1876	usbuhci         (68df884cf41cdada664beb01daf67e3d) C:\Windows\system32\DRIVERS\usbuhci.sys
21:52:22.0673 1876	usbuhci - ok
21:52:22.0688 1876	UxSms           (081e6e1c91aec36758902a9f727cd23c) C:\Windows\System32\uxsms.dll
21:52:22.0704 1876	UxSms - ok
21:52:22.0719 1876	VaultSvc        (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:52:22.0735 1876	VaultSvc - ok
21:52:22.0751 1876	vdrvroot        (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\drivers\vdrvroot.sys
21:52:22.0766 1876	vdrvroot - ok
21:52:22.0797 1876	vds             (c3cd30495687c2a2f66a65ca6fd89be9) C:\Windows\System32\vds.exe
21:52:22.0829 1876	vds - ok
21:52:22.0844 1876	vga             (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
21:52:22.0860 1876	vga - ok
21:52:22.0875 1876	VgaSave         (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
21:52:22.0891 1876	VgaSave - ok
21:52:22.0922 1876	vhdmp           (5461686cca2fda57b024547733ab42e3) C:\Windows\system32\drivers\vhdmp.sys
21:52:22.0938 1876	vhdmp - ok
21:52:22.0953 1876	viaagp          (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\drivers\viaagp.sys
21:52:22.0969 1876	viaagp - ok
21:52:22.0969 1876	ViaC7           (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
21:52:22.0985 1876	ViaC7 - ok
21:52:23.0000 1876	viaide          (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\drivers\viaide.sys
21:52:23.0016 1876	viaide - ok
21:52:23.0031 1876	volmgr          (4c63e00f2f4b5f86ab48a58cd990f212) C:\Windows\system32\drivers\volmgr.sys
21:52:23.0031 1876	volmgr - ok
21:52:23.0063 1876	volmgrx         (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
21:52:23.0078 1876	volmgrx - ok
21:52:23.0094 1876	volsnap         (f497f67932c6fa693d7de2780631cfe7) C:\Windows\system32\drivers\volsnap.sys
21:52:23.0109 1876	volsnap - ok
21:52:23.0141 1876	vsmraid         (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
21:52:23.0156 1876	vsmraid - ok
21:52:23.0234 1876	VSS             (209a3b1901b83aeb8527ed211cce9e4c) C:\Windows\system32\vssvc.exe
21:52:23.0265 1876	VSS - ok
21:52:23.0281 1876	vwifibus        (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\system32\DRIVERS\vwifibus.sys
21:52:23.0297 1876	vwifibus - ok
21:52:23.0297 1876	vwififlt        (7090d3436eeb4e7da3373090a23448f7) C:\Windows\system32\DRIVERS\vwififlt.sys
21:52:23.0312 1876	vwififlt - ok
21:52:23.0328 1876	vwifimp         (a3f04cbea6c2a10e6cb01f8b47611882) C:\Windows\system32\DRIVERS\vwifimp.sys
21:52:23.0343 1876	vwifimp - ok
21:52:23.0359 1876	W32Time         (55187fd710e27d5095d10a472c8baf1c) C:\Windows\system32\w32time.dll
21:52:23.0390 1876	W32Time - ok
21:52:23.0406 1876	WacomPen        (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
21:52:23.0421 1876	WacomPen - ok
21:52:23.0437 1876	WANARP          (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
21:52:23.0468 1876	WANARP - ok
21:52:23.0468 1876	Wanarpv6        (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
21:52:23.0484 1876	Wanarpv6 - ok
21:52:23.0562 1876	wbengine        (691e3285e53dca558e1a84667f13e15a) C:\Windows\system32\wbengine.exe
21:52:23.0593 1876	wbengine - ok
21:52:23.0609 1876	WbioSrvc        (9614b5d29dc76ac3c29f6d2d3aa70e67) C:\Windows\System32\wbiosrvc.dll
21:52:23.0624 1876	WbioSrvc - ok
21:52:23.0655 1876	wcncsvc         (34eee0dfaadb4f691d6d5308a51315dc) C:\Windows\System32\wcncsvc.dll
21:52:23.0671 1876	wcncsvc - ok
21:52:23.0702 1876	WcsPlugInService (5d930b6357a6d2af4d7653bdabbf352f) C:\Windows\System32\WcsPlugInService.dll
21:52:23.0702 1876	WcsPlugInService - ok
21:52:23.0749 1876	Wd              (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
21:52:23.0765 1876	Wd - ok
21:52:23.0811 1876	Wdf01000        (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
21:52:23.0827 1876	Wdf01000 - ok
21:52:23.0843 1876	WdiServiceHost  (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
21:52:23.0858 1876	WdiServiceHost - ok
21:52:23.0858 1876	WdiSystemHost   (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
21:52:23.0874 1876	WdiSystemHost - ok
21:52:23.0905 1876	WebClient       (a9d880f97530d5b8fee278923349929d) C:\Windows\System32\webclnt.dll
21:52:23.0921 1876	WebClient - ok
21:52:23.0952 1876	Wecsvc          (760f0afe937a77cff27153206534f275) C:\Windows\system32\wecsvc.dll
21:52:23.0967 1876	Wecsvc - ok
21:52:23.0983 1876	wercplsupport   (ac804569bb2364fb6017370258a4091b) C:\Windows\System32\wercplsupport.dll
21:52:23.0999 1876	wercplsupport - ok
21:52:24.0030 1876	WerSvc          (08e420d873e4fd85241ee2421b02c4a4) C:\Windows\System32\WerSvc.dll
21:52:24.0045 1876	WerSvc - ok
21:52:24.0077 1876	WfpLwf          (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
21:52:24.0092 1876	WfpLwf - ok
21:52:24.0108 1876	WIMMount        (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
21:52:24.0123 1876	WIMMount - ok
21:52:24.0201 1876	WinDefend       (3fae8f94296001c32eab62cd7d82e0fd) C:\Program Files\Windows Defender\mpsvc.dll
21:52:24.0233 1876	WinDefend - ok
21:52:24.0233 1876	WinHttpAutoProxySvc - ok
21:52:24.0279 1876	Winmgmt         (f62e510b6ad4c21eb9fe8668ed251826) C:\Windows\system32\wbem\WMIsvc.dll
21:52:24.0311 1876	Winmgmt - ok
21:52:24.0404 1876	WinRM           (1b91cd34ea3a90ab6a4ef0550174f4cc) C:\Windows\system32\WsmSvc.dll
21:52:24.0451 1876	WinRM - ok
21:52:24.0498 1876	WinUsb          (a67e5f9a400f3bd1be3d80613b45f708) C:\Windows\system32\DRIVERS\WinUsb.sys
21:52:24.0529 1876	WinUsb - ok
21:52:24.0576 1876	Wlansvc         (16935c98ff639d185086a3529b1f2067) C:\Windows\System32\wlansvc.dll
21:52:24.0607 1876	Wlansvc - ok
21:52:24.0638 1876	WmiAcpi         (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\drivers\wmiacpi.sys
21:52:24.0654 1876	WmiAcpi - ok
21:52:24.0701 1876	wmiApSrv        (6eb6b66517b048d87dc1856ddf1f4c3f) C:\Windows\system32\wbem\WmiApSrv.exe
21:52:24.0716 1876	wmiApSrv - ok
21:52:24.0841 1876	WMPNetworkSvc   (3b40d3a61aa8c21b88ae57c58ab3122e) C:\Program Files\Windows Media Player\wmpnetwk.exe
21:52:24.0872 1876	WMPNetworkSvc - ok
21:52:24.0950 1876	WPCSvc          (a2f0ec770a92f2b3f9de6d518e11409c) C:\Windows\System32\wpcsvc.dll
21:52:24.0966 1876	WPCSvc - ok
21:52:24.0981 1876	WPDBusEnum      (aa53356d60af47eacc85bc617a4f3f66) C:\Windows\system32\wpdbusenum.dll
21:52:24.0997 1876	WPDBusEnum - ok
21:52:25.0028 1876	ws2ifsl         (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
21:52:25.0044 1876	ws2ifsl - ok
21:52:25.0059 1876	wscsvc          (6f5d49efe0e7164e03ae773a3fe25340) C:\Windows\System32\wscsvc.dll
21:52:25.0059 1876	wscsvc - ok
21:52:25.0075 1876	WSearch - ok
21:52:25.0200 1876	wuauserv        (fc3ec24fce372c89423e015a2ac1a31e) C:\Windows\system32\wuaueng.dll
21:52:25.0231 1876	wuauserv - ok
21:52:25.0325 1876	WudfPf          (e714a1c0354636837e20ccbf00888ee7) C:\Windows\system32\drivers\WudfPf.sys
21:52:25.0356 1876	WudfPf - ok
21:52:25.0371 1876	WUDFRd          (1023ee888c9b47178c5293ed5336ab69) C:\Windows\system32\DRIVERS\WUDFRd.sys
21:52:25.0387 1876	WUDFRd - ok
21:52:25.0418 1876	wudfsvc         (8d1e1e529a2c9e9b6a85b55a345f7629) C:\Windows\System32\WUDFSvc.dll
21:52:25.0434 1876	wudfsvc - ok
21:52:25.0449 1876	WwanSvc         (ff2d745b560f7c71b31f30f4d49f73d2) C:\Windows\System32\wwansvc.dll
21:52:25.0465 1876	WwanSvc - ok
21:52:25.0496 1876	MBR (0x1B8)     (c79b30cb8852157f6f908e4698cfe0d0) \Device\Harddisk0\DR0
21:52:27.0805 1876	\Device\Harddisk0\DR0 - ok
21:52:27.0805 1876	Boot (0x1200)   (a96290b5401c2da5a08bb9471d76d503) \Device\Harddisk0\DR0\Partition0
21:52:27.0805 1876	\Device\Harddisk0\DR0\Partition0 - ok
21:52:27.0836 1876	Boot (0x1200)   (046bbd7303f14eb983a3f0c302651470) \Device\Harddisk0\DR0\Partition1
21:52:27.0836 1876	\Device\Harddisk0\DR0\Partition1 - ok
21:52:27.0883 1876	Boot (0x1200)   (376b50b18dd730f4a63e4b8227f4638c) \Device\Harddisk0\DR0\Partition2
21:52:27.0883 1876	\Device\Harddisk0\DR0\Partition2 - ok
21:52:27.0883 1876	============================================================
21:52:27.0883 1876	Scan finished
21:52:27.0883 1876	============================================================
21:52:27.0899 0308	Detected object count: 3
21:52:27.0899 0308	Actual detected object count: 3
21:52:58.0303 0308	avmeject ( UnsignedFile.Multi.Generic ) - skipped by user
21:52:58.0303 0308	avmeject ( UnsignedFile.Multi.Generic ) - User select action: Skip 
21:52:58.0303 0308	hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user
21:52:58.0303 0308	hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
21:52:58.0303 0308	IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
21:52:58.0303 0308	IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip
         


Alt 16.07.2012, 10:40   #21
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Mystart Incredibar - Standard

Mystart Incredibar



Dann bitte jetzt CF ausführen:

ComboFix

Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Schliesse alle Programme, vor allem dein Antivirenprogramm und andere Hintergrundwächter sowie deinen Internetbrowser.
  • Starte combofix.exe von deinem Desktop aus, bestätige die Warnmeldungen, führe die Updates durch (falls vorgeschlagen), installiere die Wiederherstellungskonsole (falls vorgeschlagen) und lass dein System durchsuchen.
    Vermeide es auch während Combofix läuft die Maus und Tastatur zu benutzen.
  • Im Anschluss öffnet sich automatisch eine combofix.txt, diesen Inhalt bitte kopieren ([Strg]a, [Strg]c) und in deinen Beitrag einfügen ([Strg]v). Die Datei findest du außerdem unter: C:\ComboFix.txt.
Wichtiger Hinweis:
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!

Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich ziehen und eine Bereinigung der Infektion noch erschweren.

Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie

Zitat:
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
startest du Windows dann manuell neu und die Fehlermeldungen sollten nicht mehr auftauchen.
__________________
--> Mystart Incredibar

Alt 16.07.2012, 11:41   #22
Darwin
 
Mystart Incredibar - Standard

Mystart Incredibar



Combofix Logfile:
Code:
ATTFilter
ComboFix 12-07-14.01 - Klaus 16.07.2012  12:24:41.1.2 - x86
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.49.1031.18.3071.1648 [GMT 2:00]
ausgeführt von:: c:\users\Klaus\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((   Weitere Löschungen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Klaus\4.0
c:\users\Klaus\AppData\Local\Temp\26b4a1dd-e07b-48af-be4e-9642b273284b\CliSecureRT.dll
c:\users\Ulrike\4.0
c:\windows\system32\drivers\etc\hosts.ics
c:\windows\system32\muzapp.exe
c:\windows\system32\roboot.exe
.
.
(((((((((((((((((((((((   Dateien erstellt von 2012-06-16 bis 2012-07-16  ))))))))))))))))))))))))))))))
.
.
2012-07-16 10:29 . 2012-07-16 10:31	--------	d-----w-	c:\users\Klaus\AppData\Local\temp
2012-07-16 07:56 . 2012-07-16 07:56	--------	d-----w-	c:\windows\LastGood.Tmp
2012-07-15 16:38 . 2012-07-15 18:07	--------	d-----w-	C:\_OTL
2012-07-12 09:39 . 2012-06-12 02:40	2345984	----a-w-	c:\windows\system32\win32k.sys
2012-07-11 17:43 . 2012-07-11 17:43	--------	d-----w-	c:\users\Klaus\AppData\Roaming\Malwarebytes
2012-07-11 17:43 . 2012-07-11 17:43	--------	d-----w-	c:\program files\Malwarebytes' Anti-Malware
2012-07-11 17:43 . 2012-07-11 17:43	--------	d-----w-	c:\programdata\Malwarebytes
2012-07-11 17:43 . 2012-04-04 13:56	22344	----a-w-	c:\windows\system32\drivers\mbam.sys
2012-07-06 09:46 . 2012-07-06 09:46	--------	d-----w-	c:\program files\ESET
2012-07-06 08:06 . 2012-05-31 03:41	6762896	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{20BF89B2-A1EA-41B0-A46D-E92D08E18F1C}\mpengine.dll
2012-07-05 15:21 . 2012-07-05 15:21	--------	d-----w-	c:\program files\Common Files\Java
2012-07-05 15:20 . 2012-07-05 15:20	--------	d-----w-	c:\program files\Oracle
2012-06-22 15:40 . 2012-05-04 17:29	772504	----a-w-	c:\windows\system32\npdeployJava1.dll
2012-06-22 15:40 . 2012-07-05 15:19	--------	d-----w-	c:\program files\Java
2012-06-21 06:41 . 2012-06-02 22:19	53784	----a-w-	c:\windows\system32\wuauclt.exe
2012-06-21 06:41 . 2012-06-02 22:19	45080	----a-w-	c:\windows\system32\wups2.dll
2012-06-21 06:41 . 2012-06-02 22:12	2422272	----a-w-	c:\windows\system32\wucltux.dll
2012-06-21 06:41 . 2012-06-02 22:19	1933848	----a-w-	c:\windows\system32\wuaueng.dll
2012-06-21 06:41 . 2012-06-02 22:19	35864	----a-w-	c:\windows\system32\wups.dll
2012-06-21 06:41 . 2012-06-02 22:19	577048	----a-w-	c:\windows\system32\wuapi.dll
2012-06-21 06:41 . 2012-06-02 22:12	88576	----a-w-	c:\windows\system32\wudriver.dll
2012-06-21 06:40 . 2012-06-02 13:19	171904	----a-w-	c:\windows\system32\wuwebv.dll
2012-06-21 06:40 . 2012-06-02 13:12	33792	----a-w-	c:\windows\system32\wuapp.exe
2012-06-20 15:19 . 2012-06-20 15:19	--------	d-----w-	c:\programdata\HPSSUPPLY
2012-06-20 15:18 . 2010-06-29 13:15	293888	----a-w-	c:\windows\system32\Spool\prtprocs\w32x86\HP1006S.DLL
2012-06-20 15:18 . 2010-06-29 13:15	286720	----a-w-	c:\windows\system32\HP1006LM.DLL
2012-06-20 15:18 . 2010-01-13 10:42	65536	----a-w-	c:\windows\system32\HPPLVS.dll
2012-06-20 15:17 . 2012-06-20 15:17	--------	d-----w-	C:\hp_P1000_P1500_Full_Solution
2012-06-20 14:45 . 2012-06-20 14:45	--------	d-----w-	c:\windows\system32\URTTEMP
2012-06-20 14:41 . 2012-06-20 15:18	--------	d--h--w-	c:\program files\Avago-HP
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-07-13 09:45 . 2012-04-15 17:49	426184	----a-w-	c:\windows\system32\FlashPlayerApp.exe
2012-07-13 09:45 . 2011-05-15 11:57	70344	----a-w-	c:\windows\system32\FlashPlayerCPLApp.cpl
2012-06-10 14:22 . 2010-12-14 20:12	2300696	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2012-06-10 14:21 . 2011-01-10 17:43	42776	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM-2\StartResources.dll
2012-06-10 14:21 . 2010-12-14 20:11	1236816	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2012-06-08 16:53 . 2011-01-10 17:43	2300696	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\markup.dll
2012-06-08 16:53 . 2010-12-14 20:12	42776	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
2012-06-08 15:52 . 2010-12-24 09:09	1236816	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2012-05-29 07:38 . 2011-12-23 19:58	330240	----a-w-	c:\windows\MASetupCaller.dll
2012-05-11 05:34 . 2012-05-11 05:34	181432	----a-w-	c:\windows\system32\drivers\ssudmdm.sys
2012-05-08 08:08 . 2012-02-09 19:39	83392	----a-w-	c:\windows\system32\drivers\avgntflt.sys
2012-05-08 08:08 . 2012-02-09 19:39	137928	----a-w-	c:\windows\system32\drivers\avipbb.sys
2012-05-04 17:29 . 2010-06-30 10:03	687504	----a-w-	c:\windows\system32\deployJava1.dll
2012-04-28 03:17 . 2012-06-13 05:50	183808	----a-w-	c:\windows\system32\drivers\rdpwd.sys
2012-04-26 04:45 . 2012-06-13 05:50	58880	----a-w-	c:\windows\system32\rdpwsx.dll
2012-04-26 04:45 . 2012-06-13 05:50	129536	----a-w-	c:\windows\system32\rdpcorekmts.dll
2012-04-26 04:41 . 2012-06-13 05:50	8192	----a-w-	c:\windows\system32\rdrmemptylst.exe
2012-06-16 17:53 . 2011-05-06 16:47	85472	----a-w-	c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"KiesPDLR"="c:\program files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe" [2012-06-08 21432]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-03-04 284696]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2009-11-02 103720]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2010-04-07 8555040]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-05-27 98304]
"Nikon Transfer Monitor"="c:\program files\Common Files\Nikon\Monitor\NkMonitor.exe" [2009-05-29 479232]
"KiesTrayAgent"="c:\program files\Samsung\Kies\KiesTrayAgent.exe" [2012-06-08 3521464]
"Agile1pAgent"="c:\program files\1Password\Agile1pAgent.exe" [2012-03-31 2204424]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2012-05-08 348624]
"hpqSRMon"="c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe" [2008-08-20 150016]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2011-05-10 49208]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-04-04 843712]
.
c:\users\Ulrike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OpenOffice.org 3.2.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2010-5-20 1195008]
.
c:\users\Klaus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Klaus\AppData\Roaming\Dropbox\bin\Dropbox.exe [2012-5-24 27112840]
OpenOffice.org 3.2.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2010-5-20 1195008]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
R2 gupdate;Google Update-Dienst (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [x]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
R3 avmeject;AVM Eject;c:\windows\system32\drivers\avmeject.sys [x]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys [x]
R3 fwlanusbn;FRITZ!WLAN N;c:\windows\system32\DRIVERS\fwlanusbn.sys [x]
R3 gupdatem;Google Update-Dienst (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [x]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [x]
R3 ssudmdm;SAMSUNG  Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [x]
S2 Agile1Password;1Password;c:\program files\1Password\Agile1pService.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 AntiVirSchedulerService;Avira Planer;c:\program files\Avira\AntiVir Desktop\sched.exe [x]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8192su.sys [x]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
hpdevmgmt	REG_MULTI_SZ   	hpqcxs08
.
Inhalt des "geplante Tasks" Ordners
.
2012-07-16 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-15 09:45]
.
2012-07-16 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-09-19 19:21]
.
2012-07-16 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-09-19 19:21]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://www.google.de/
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: {{0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - hxxp://rover.ebay.com/rover/1/707-37276-17534-31/4
TCP: DhcpNameServer = 192.168.178.1
FF - ProfilePath - c:\users\Klaus\AppData\Roaming\Mozilla\Firefox\Profiles\72m40r9y.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - www.google.de
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
HKCU-Run-KiesHelper - c:\program files\Samsung\Kies\KiesHelper.exe
SafeBoot-BsScanner
AddRemove-01_Simmental - c:\program files\Samsung\USB Drivers\01_Simmental\Uninstall.exe
AddRemove-02_Siberian - c:\program files\Samsung\USB Drivers\02_Siberian\Uninstall.exe
AddRemove-03_Swallowtail - c:\program files\Samsung\USB Drivers\03_Swallowtail\Uninstall.exe
AddRemove-04_semseyite - c:\program files\Samsung\USB Drivers\04_semseyite\Uninstall.exe
AddRemove-05_Sloan - c:\program files\Samsung\USB Drivers\05_Sloan\Uninstall.exe
AddRemove-06_Spencer - c:\program files\Samsung\USB Drivers\06_Spencer\Uninstall.exe
AddRemove-07_Schorl - c:\program files\Samsung\USB Drivers\07_Schorl\Uninstall.exe
AddRemove-08_EMPChipset - c:\program files\Samsung\USB Drivers\08_EMPChipset\Uninstall.exe
AddRemove-09_Hsp - c:\program files\Samsung\USB Drivers\09_Hsp\Uninstall.exe
AddRemove-11_HSP_Plus_Default - c:\program files\Samsung\USB Drivers\11_HSP_Plus_Default\Uninstall.exe
AddRemove-16_Shrewsbury - c:\program files\Samsung\USB Drivers\16_Shrewsbury\Uninstall.exe
AddRemove-17_EMP_Chipset2 - c:\program files\Samsung\USB Drivers\17_EMP_Chipset2\Uninstall.exe
AddRemove-18_Zinia_Serial_Driver - c:\program files\Samsung\USB Drivers\18_Zinia_Serial_Driver\Uninstall.exe
AddRemove-19_VIA_driver - c:\program files\Samsung\USB Drivers\19_VIA_driver\Uninstall.exe
AddRemove-20_NXP_Driver - c:\program files\Samsung\USB Drivers\20_NXP_Driver\Uninstall.exe
AddRemove-21_Searsburg - c:\program files\Samsung\USB Drivers\21_Searsburg\Uninstall.exe
AddRemove-22_WiBro_WiMAX - c:\program files\Samsung\USB Drivers\22_WiBro_WiMAX\Uninstall.exe
AddRemove-24_flashusbdriver - c:\program files\Samsung\USB Drivers\24_flashusbdriver\Uninstall.exe
AddRemove-25_escape - c:\program files\Samsung\USB Drivers\25_escape\Uninstall.exe
.
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Weitere laufende Prozesse ------------------------
.
c:\windows\system32\atieclxx.exe
c:\program files\Avira\AntiVir Desktop\avguard.exe
c:\program files\Common Files\Protexis\License Service\PsiService_2.exe
c:\program files\Avira\AntiVir Desktop\avshadow.exe
c:\windows\system32\conhost.exe
c:\windows\system32\WUDFHost.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\spool\DRIVERS\W32X86\3\HP1006MC.EXE
c:\windows\system32\conhost.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\OpenOffice.org 3\program\soffice.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
c:\program files\OpenOffice.org 3\program\soffice.bin
c:\windows\system32\sppsvc.exe
.
**************************************************************************
.
Zeit der Fertigstellung: 2012-07-16  12:34:23 - PC wurde neu gestartet
ComboFix-quarantined-files.txt  2012-07-16 10:34
.
Vor Suchlauf: 10 Verzeichnis(se), 844.196.601.856 Bytes frei
Nach Suchlauf: 14 Verzeichnis(se), 843.948.343.296 Bytes frei
.
- - End Of File - - A7915631D87C6371FBC2EB29159A3237
         
--- --- ---

Alt 16.07.2012, 16:22   #23
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Mystart Incredibar - Standard

Mystart Incredibar



Bitte nun Logs mit GMER und OSAM erstellen und posten.
GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen.
Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst.

Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM!

Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe - (aswMBR.exe Anleitung)
    Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten".
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen )
    Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS-Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort.

Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung

Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none).



Noch ein Hinweis: Sollte aswMBR abstürzen und es kommt eine Meldung wie "aswMBR.exe funktioniert nicht mehr, dann mach Folgendes:
Starte aswMBR neu, wähle unten links im Drop-Down-Menü (unten links im Fenster von aswMBR) bei "AV scan" (none) aus und klick nochmal auf den Scan-Button.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 16.07.2012, 19:00   #24
Darwin
 
Mystart Incredibar - Standard

Mystart Incredibar



GMER Logfile:
Code:
ATTFilter
GMER 1.0.15.15641 - hxxp://www.gmer.net
Rootkit scan 2012-07-16 20:00:39
Windows 6.1.7601 Service Pack 1 Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 Hitachi_ rev.JP4O
Running: yxfpomk0.exe; Driver: C:\Users\Klaus\AppData\Local\Temp\fwddapoc.sys


---- Kernel code sections - GMER 1.0.15 ----

.text           ntkrnlpa.exe!ZwRollbackEnlistment + 140D                                                               834433C9 1 Byte  [06]
.text           ntkrnlpa.exe!KiDispatchInterrupt + 5A2                                                                 8347CD52 19 Bytes  [E0, 0F, BA, F0, 07, 73, 09, ...] {LOOPNZ 0x11; MOV EDX, 0x97307f0; MOV CR4, EAX; OR AL, 0x80; MOV CR4, EAX; RET ; MOV ECX, CR3}
.text           C:\Windows\system32\DRIVERS\atikmdag.sys                                                               section is writeable [0x92036000, 0x2FBAB4, 0xE8000020]
?               C:\Windows\system32\Drivers\PROCEXP113.SYS                                                             Das System kann die angegebene Datei nicht finden. !
.text           autochk.exe                                                                                            002C11D1 15 Bytes  [FF, FF, FF, 76, 01, 0A, 36, ...]
.text           autochk.exe                                                                                            002C1204 4 Bytes  [00, 00, 00, FF] {ADD [EAX], AL; ADD BH, BH}
.text           autochk.exe                                                                                            002C120C 1 Byte  [00]
.text           autochk.exe                                                                                            002C1210 1 Byte  [00]
.text           autochk.exe                                                                                            002C1214 2 Bytes  [00, 00] {ADD [EAX], AL}
.text           ...                                                                                                    

---- User code sections - GMER 1.0.15 ----

.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] kernel32.dll!CreateThread                        76EEDCC2 5 Bytes  JMP 6D6A75CB C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!EnableWindow                          75B28D02 5 Bytes  JMP 6D6E9EAC C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!CallNextHookEx                        75B2ABE1 5 Bytes  JMP 6D707FDF C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!UnhookWindowsHookEx                   75B2ADF9 5 Bytes  JMP 6D72ECE0 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!DefWindowProcA                        75B2BB1C 7 Bytes  JMP 6D6A97F5 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!CreateWindowExA                       75B2BF40 5 Bytes  JMP 6D6B362B C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!SetWindowsHookExW                     75B2E30C 5 Bytes  JMP 6D6E25AC C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!CreateWindowExW                       75B2EC7C 5 Bytes  JMP 6D7103B7 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!DefWindowProcW                        75B3507D 7 Bytes  JMP 6D708042 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!DialogBoxParamW                       75B43B9B 5 Bytes  JMP 6D64187B C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!DialogBoxIndirectParamW               75B53B7F 5 Bytes  JMP 6D838D86 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!DialogBoxParamA                       75B6CF42 5 Bytes  JMP 6D838D21 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!DialogBoxIndirectParamA               75B6D274 5 Bytes  JMP 6D838DEB C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!MessageBoxIndirectA                   75B7E869 5 Bytes  JMP 6D838CA8 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!MessageBoxIndirectW                   75B7E963 5 Bytes  JMP 6D838C2F C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!MessageBoxExA                         75B7E9C9 5 Bytes  JMP 6D838BCB C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!MessageBoxExW                         75B7E9ED 5 Bytes  JMP 6D838B67 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[1284] ole32.dll!OleLoadFromStream                      76A76143 5 Bytes  JMP 6D83955F C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe[2108] ntdll.dll!DbgUiRemoteBreakin  7760F17D 1 Byte  [C3]
.text           C:\Program Files\Mozilla Firefox\firefox.exe[5444] ntdll.dll!LdrLoadDll                                775D223E 5 Bytes  JMP 59BAFA35 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text           C:\Program Files\Mozilla Firefox\firefox.exe[5444] kernel32.dll!MapViewOfFile                          76EE93DB 5 Bytes  JMP 59E5079E C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text           C:\Program Files\Mozilla Firefox\firefox.exe[5444] kernel32.dll!VirtualAlloc                           76EEC43A 5 Bytes  JMP 59E507C5 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text           C:\Program Files\Mozilla Firefox\firefox.exe[5444] GDI32.dll!CreateDIBSection                          77268850 5 Bytes  JMP 59E50728 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!EnableWindow                          75B28D02 5 Bytes  JMP 6D6E9EAC C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!DialogBoxParamW                       75B43B9B 5 Bytes  JMP 6D64187B C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!DialogBoxIndirectParamW               75B53B7F 5 Bytes  JMP 6D838D86 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!DialogBoxParamA                       75B6CF42 5 Bytes  JMP 6D838D21 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!DialogBoxIndirectParamA               75B6D274 5 Bytes  JMP 6D838DEB C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!MessageBoxIndirectA                   75B7E869 5 Bytes  JMP 6D838CA8 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!MessageBoxIndirectW                   75B7E963 5 Bytes  JMP 6D838C2F C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!MessageBoxExA                         75B7E9C9 5 Bytes  JMP 6D838BCB C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text           C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!MessageBoxExW                         75B7E9ED 5 Bytes  JMP 6D838B67 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)

---- User IAT/EAT - GMER 1.0.15 ----

IAT             C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipAlloc]                         [743824CB] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT             C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdiplusStartup]                    [7436562E] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT             C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdiplusShutdown]                   [743656EC] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT             C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipFree]                          [74382546] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT             C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipDeleteGraphics]                [743785AA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT             C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipDisposeImage]                  [74374D5E] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT             C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipGetImageWidth]                 [74375105] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT             C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipGetImageHeight]                [743751DA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT             C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipCreateBitmapFromHBITMAP]       [74376707] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT             C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipCreateFromHDC]                 [74378301] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT             C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipSetCompositingMode]            [74378850] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT             C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipSetInterpolationMode]          [743790B1] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT             C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipDrawImageRectI]                [7437E254] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT             C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipCloneImage]                    [74374C90] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)

---- Devices - GMER 1.0.15 ----

Device          \Driver\ACPI_HAL \Device\00000047                                                                      halmacpi.dll (Hardware Abstraction Layer DLL/Microsoft Corporation)

AttachedDevice  \Driver\volmgr \Device\HarddiskVolume1                                                                 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume2                                                                 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume3                                                                 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume4                                                                 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume5                                                                 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume6                                                                 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)

---- EOF - GMER 1.0.15 ----
         
--- --- ---


OSAM Logfile:
Code:
ATTFilter
Report of OSAM: Autorun Manager v5.0.11926.0
hxxp://www.online-solutions.ru/en/
Saved at 20:12:11 on 16.07.2012

OS: Windows 7 Home Premium Edition Service Pack 1 (Build 7601), 32-bit
Default Browser: Mozilla Corporation Firefox 13.0.1

Scanner Settings
[x] Rootkits detection (hidden registry)
[x] Rootkits detection (hidden files)
[x] Retrieve files information
[x] Check Microsoft signatures

Filters
[ ] Trusted entries
[ ] Empty entries
[x] Hidden registry entries (rootkit activity)
[x] Exclusively opened files
[x] Not found files
[x] Files without detailed information
[x] Existing files
[ ] Non-startable services
[ ] Non-startable drivers
[x] Active entries
[x] Disabled entries


[Common]
-----( %SystemRoot%\Tasks )-----
"GoogleUpdateTaskMachineCore.job" - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe
"GoogleUpdateTaskMachineUA.job" - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe
"Adobe Flash Player Updater.job" - "Adobe Systems Incorporated" - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

[Control Panel Objects]
-----( %SystemRoot%\system32 )-----
"FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\Windows\system32\FlashPlayerCPLApp.cpl

[Drivers]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"avgntflt" (avgntflt) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avgntflt.sys
"avipbb" (avipbb) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avipbb.sys
"avkmgr" (avkmgr) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avkmgr.sys
"AVM Eject" (avmeject) - "AVM Berlin" - C:\Windows\System32\drivers\avmeject.sys
"catchme" (catchme) - ? - C:\Users\Klaus\AppData\Local\Temp\catchme.sys  (File not found)
"fwddapoc" (fwddapoc) - ? - C:\Users\Klaus\AppData\Local\Temp\fwddapoc.sys  (Hidden registry entry, rootkit activity | File not found)
"mbr" (mbr) - ? - C:\Users\Klaus\AppData\Local\Temp\mbr.sys  (Hidden registry entry, rootkit activity | File not found)
"ssmdrv" (ssmdrv) - "Avira GmbH" - C:\Windows\System32\DRIVERS\ssmdrv.sys

[Explorer]
-----( HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{FB314ED9-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" - ? -   (File not found | COM-object registry key not found)
{FB314EDA-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" - ? -   (File not found | COM-object registry key not found)
{FB314EDB-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" - ? -   (File not found | COM-object registry key not found)
{FB314EDC-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" - ? -   (File not found | COM-object registry key not found)
-----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )-----
{F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll
{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} "{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
-----( HKLM\Software\Classes\Protocols\Handler )-----
{828030A1-22C1-4009-854F-8E305202313F} "livecall" - "Microsoft Corporation" - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
{828030A1-22C1-4009-854F-8E305202313F} "msnim" - "Microsoft Corporation" - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
{B658800C-F66E-4EF3-AB85-6C0C227862A9} "ViProtocolOLE Class" - ? - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll
{03C514A3-1EFB-4856-9F99-10D7BE1653C0} "Windows Live Mail HTML Asynchronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\Program Files\Windows Live\Mail\mailcomm.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{23170F69-40C1-278A-1000-000100020000} "7-Zip Shell Extension" - "Igor Pavlov" - C:\Program Files\7-Zip\7-zip.dll
{DE902992-61FC-4A01-8091-53E1895C9775} "CDR Icon Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{7AD101F2-0B93-4D66-A1CA-DF73F3C4377B} "CDR preview provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellVista.dll
{7FA63AC0-F5BC-4F3B-A9CF-94328D812B62} "CDR Property Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellVista.dll
{1462EBAA-96E7-4D93-9A66-0E4068DE4FCF} "CDR Thumbnail provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{0563DB41-F538-4B37-A92D-4659049B7766} "CLSID_WLMCMimeFilter" - "Microsoft Corporation" - C:\Program Files\Windows Live\Mail\mailcomm.dll
{DE902994-61FC-4A01-8091-53E1895C9775} "CMX Icon Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{1462EBAC-96E7-4D93-9A66-0E4068DE4FCF} "CMX Thumbnail provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{DE902993-61FC-4A01-8091-53E1895C9775} "CPT Icon Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{7FA63AC1-F5BC-4F3B-A9CF-94328D812B62} "CPT Property Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellVista.dll
{1462EBAB-96E7-4D93-9A66-0E4068DE4FCF} "CPT Thumbnail provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{872A9397-E0D6-4e28-B64D-52B8D0A7EA35} "DisplayCplExt Class" - "Advanced Micro Devices, Inc." - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiamaxx.dll
{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} "OpenOffice.org Column Handler" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{087B3AE3-E237-4467-B8DB-5A38AB959AC9} "OpenOffice.org Infotip Handler" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{63542C48-9552-494A-84F7-73AA6A7C99C1} "OpenOffice.org Property Sheet Handler" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{3B092F0C-7696-40E3-A80F-68D74DA84210} "OpenOffice.org Thumbnail Viewer" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\shlext.dll
{5E2121EE-0300-11D4-8D3B-444553540000} "SimpleShlExt Class" - "Advanced Micro Devices, Inc." - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll
{2BE99FD4-A181-4996-BFA9-58C5FFD11F6C} "Windows Live Photo Gallery Autoplay Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F30F64-AC33-42F5-8FD1-5DC2D3FDE06C} "Windows Live Photo Gallery Editor Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F3712A-CA79-45B4-9E4D-D7891E7F8B9D} "Windows Live Photo Gallery Editor Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F30F90-3E96-453B-AFCD-D71989ECC2C7} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F33137-EE26-412F-8D71-F84E4C2C6625} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F374B7-B390-4884-B372-2FC349F2172B} "Windows Live Photo Gallery Viewer Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F346CB-35A4-465B-8B8F-65A29DBAB1F6} "Windows Live Photo Gallery Viewer Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{06A2568A-CED6-4187-BB20-400B8C02BE5A} "{06A2568A-CED6-4187-BB20-400B8C02BE5A}" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe

[Internet Explorer]
-----( HKCU\SOFTWARE\Microsoft\Internet Explorer\Extensions )-----
"eBay - Der weltweite Online-Marktplatz" - ? - hxxp://rover.ebay.com/rover/1/707-37276-17534-31/4  (HTTP value)
-----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )-----
ITBar7Height "ITBar7Height" - ? -   (File not found | COM-object registry key not found)
<binary data> "ITBar7Layout" - ? -   (File not found | COM-object registry key not found)
<binary data> "{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}" - ? -   (File not found | COM-object registry key not found)
-----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )-----
{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} "Java Plug-in 1.6.0_33" - "Oracle Corporation" - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
{8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 10.5.1" - "Oracle Corporation" - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 10.5.1" - "Oracle Corporation" - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )-----
{5D7B119E-062F-476B-A5E7-797FAF554BA2} "1Password" - "AgileBits" - C:\PROGRA~1\1PASSW~1\AGILE1~1.DLL
"eBay - Der weltweite Online-Marktplatz" - ? - hxxp://rover.ebay.com/rover/1/707-37276-17534-31/4  (HTTP value)
{5F7B1267-94A9-47F5-98DB-E99415F33AEC} "In Blog veröffentlichen" - "Microsoft Corporation" - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar )-----
<binary data> "AVG Security Toolbar" - ? - C:\Program Files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )-----
{CB1A24DA-7416-4921-A0CF-5AA1160AAE2A} "1Password" - "AgileBits" - C:\PROGRA~1\1PASSW~1\AGILE1~1.DLL
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper" - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
{95B7759C-8C7F-4BF1-B163-73684A933233} "AVG Security Toolbar" - ? - C:\Program Files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll
{DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Oracle Corporation" - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} "Java(tm) Plug-In SSV Helper" - "Oracle Corporation" - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
{9030D464-4C02-4ABF-8ECC-5164760863C6} "Windows Live Anmelde-Hilfsprogramm" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

[Logon]
-----( %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
"Dropbox.lnk" - "Dropbox, Inc." - C:\Users\Klaus\AppData\Roaming\Dropbox\bin\Dropbox.exe  (Shortcut exists | File exists)
"OpenOffice.org 3.2.lnk" - ? - C:\Program Files\OpenOffice.org 3\program\quickstart.exe  (Shortcut exists | File found, but it contains no detailed information | File exists)
-----( %AllUsersProfile%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
-----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )-----
"KiesPDLR" - ? - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
-----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )-----
"StartupPrograms" - ? - rdpclip  (File not found)
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )-----
"Adobe ARM" - "Adobe Systems Incorporated" - "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"Agile1pAgent" - "AgileBits" - C:\Program Files\1Password\Agile1pAgent.exe
"avgnt" - "Avira Operations GmbH & Co. KG" - "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
"CLMLServer" - "CyberLink" - "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"
"HP Software Update" - "Hewlett-Packard" - C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
"hpqSRMon" - "Hewlett-Packard" - C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
"IAStorIcon" - "Intel Corporation" - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
"KiesTrayAgent" - "Samsung Electronics Co., Ltd." - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
"Nikon Transfer Monitor" - "Nikon Corporation" - C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
"StartCCC" - "Advanced Micro Devices, Inc." - "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
"SunJavaUpdateSched" - "Sun Microsystems, Inc." - "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
"vProt" - ? - "C:\Program Files\AVG Secure Search\vprot.exe"
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce )-----
"InnoSetupRegFile.0000000001" - ? - "C:\Windows\is-MFJPS.exe" /REG /REGSVRMODE

[Print Monitors]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors )-----
"pdfcmon" - "pdfforge GbR" - C:\Windows\system32\pdfcmon.dll

[Services]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"1Password" (Agile1Password) - "AgileBits" - C:\Program Files\1Password\Agile1pService.exe
"Adobe Acrobat Update Service" (AdobeARMservice) - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
"Adobe Flash Player Update Service" (AdobeFlashPlayerUpdateSvc) - "Adobe Systems Incorporated" - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
"Avira Echtzeit Scanner" (AntiVirService) - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
"Avira Planer" (AntiVirSchedulerService) - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\sched.exe
"Google Update-Dienst (gupdate)" (gupdate) - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe
"Google Update-Dienst (gupdatem)" (gupdatem) - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe
"Google Updater Service" (gusvc) - "Google" - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
"hpqcxs08" (hpqcxs08) - "Hewlett-Packard Co." - C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
"InstallDriver Table Manager" (IDriverT) - "Macrovision Corporation" - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
"Intel(R) Rapid Storage Technology" (IAStorDataMgrSvc) - "Intel Corporation" - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
"Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
"Mozilla Maintenance Service" (MozillaMaintenance) - "Mozilla Foundation" - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
"Protexis Licensing V2" (PSI_SVC_2) - "Protexis Inc." - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
"vToolbarUpdater11.2.0" (vToolbarUpdater11.2.0) - ? - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe

===[ Logfile end ]=========================================[ Logfile end ]===
         
--- --- ---

If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru

aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-07-16 20:14:20
-----------------------------
20:14:20.396 OS Version: Windows 6.1.7601 Service Pack 1
20:14:20.396 Number of processors: 2 586 0x170A
20:14:20.397 ComputerName: DESKTOP UserName: Klaus
20:14:24.019 Initialize success
20:17:01.742 AVAST engine defs: 12071600
20:46:32.420 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
20:46:32.424 Disk 0 Vendor: Hitachi_ JP4O Size: 953869MB BusType: 3
20:46:32.434 Disk 0 MBR read successfully
20:46:32.438 Disk 0 MBR scan
20:46:32.445 Disk 0 unknown MBR code
20:46:32.482 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
20:46:32.524 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 911782 MB offset 206848
20:46:32.563 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 40960 MB offset 1867536384
20:46:32.614 Disk 0 Partition 4 00 12 Compaq diag NTFS 1025 MB offset 1951422464
20:46:32.660 Disk 0 scanning sectors +1953521664
20:46:32.779 Disk 0 scanning C:\Windows\system32\drivers
20:47:07.553 Service scanning
20:47:23.450 Modules scanning
20:48:01.374 Disk 0 trace - called modules:
20:48:01.390 ntkrnlpa.exe CLASSPNP.SYS disk.sys iaStor.sys halmacpi.dll
20:48:01.394 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x88583948]
20:48:01.399 3 CLASSPNP.SYS[8bf9159e] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0x866b1028]
20:48:05.222 AVAST engine scan C:\Windows
20:48:16.504 AVAST engine scan C:\Windows\system32
20:50:55.003 AVAST engine scan C:\Windows\system32\drivers
20:51:08.880 AVAST engine scan C:\Users\Klaus
20:55:58.048 AVAST engine scan C:\ProgramData
20:56:28.758 Scan finished successfully
20:58:16.879 Disk 0 MBR has been saved successfully to "C:\Users\Klaus\Desktop\MBR.dat"
20:58:16.885 The log file has been saved successfully to "C:\Users\Klaus\Desktop\aswMBR.txt"

Alt 17.07.2012, 10:19   #25
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Mystart Incredibar - Standard

Mystart Incredibar



Wir sollten den MBR fixen, sichere für den Fall der Fälle ALLE wichtigen Daten, auch wenn meistens alles glatt geht.

Hinweis: Mach bitte NICHT den MBR-Fix, wenn du noch andere Betriebssysteme wie zB Ubuntu installiert hast, ein MBR-Fix mit Windows-Tools macht ein parallel installiertes (Dualboot) Linux unbootbar.
Mach den Fix auch dann nicht, wenn du zB mit TrueCrypt oder anderen Verschlüsselungsprogrammen eine Vollverschlüsselung der Windowspartition bzw. gesamten Festplatte hast


Starte nach der Datensicherung aswmbr erneut und klick auf den Button FIXMBR.

Hinweis: Bitte den Virenscanner abstellen bevor du aswMBR ausführst, denn v.a. Avira meldet darin oft einen Fehalalrm!

Anschließend Windows neu starten und ein neues Log mit aswMBR machen.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 17.07.2012, 13:28   #26
Darwin
 
Mystart Incredibar - Standard

Mystart Incredibar



aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-07-16 20:14:20
-----------------------------
20:14:20.396 OS Version: Windows 6.1.7601 Service Pack 1
20:14:20.396 Number of processors: 2 586 0x170A
20:14:20.397 ComputerName: DESKTOP UserName: Klaus
20:14:24.019 Initialize success
20:17:01.742 AVAST engine defs: 12071600
20:46:32.420 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
20:46:32.424 Disk 0 Vendor: Hitachi_ JP4O Size: 953869MB BusType: 3
20:46:32.434 Disk 0 MBR read successfully
20:46:32.438 Disk 0 MBR scan
20:46:32.445 Disk 0 unknown MBR code
20:46:32.482 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
20:46:32.524 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 911782 MB offset 206848
20:46:32.563 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 40960 MB offset 1867536384
20:46:32.614 Disk 0 Partition 4 00 12 Compaq diag NTFS 1025 MB offset 1951422464
20:46:32.660 Disk 0 scanning sectors +1953521664
20:46:32.779 Disk 0 scanning C:\Windows\system32\drivers
20:47:07.553 Service scanning
20:47:23.450 Modules scanning
20:48:01.374 Disk 0 trace - called modules:
20:48:01.390 ntkrnlpa.exe CLASSPNP.SYS disk.sys iaStor.sys halmacpi.dll
20:48:01.394 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x88583948]
20:48:01.399 3 CLASSPNP.SYS[8bf9159e] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0x866b1028]
20:48:05.222 AVAST engine scan C:\Windows
20:48:16.504 AVAST engine scan C:\Windows\system32
20:50:55.003 AVAST engine scan C:\Windows\system32\drivers
20:51:08.880 AVAST engine scan C:\Users\Klaus
20:55:58.048 AVAST engine scan C:\ProgramData
20:56:28.758 Scan finished successfully
20:58:16.879 Disk 0 MBR has been saved successfully to "C:\Users\Klaus\Desktop\MBR.dat"
20:58:16.885 The log file has been saved successfully to "C:\Users\Klaus\Desktop\aswMBR.txt"


aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-07-17 13:58:26
-----------------------------
13:58:26.759 OS Version: Windows 6.1.7601 Service Pack 1
13:58:26.759 Number of processors: 2 586 0x170A
13:58:26.759 ComputerName: DESKTOP UserName: Klaus
13:58:50.112 Initialize success
13:58:56.462 AVAST engine defs: 12071600
13:59:10.018 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
13:59:10.018 Disk 0 Vendor: Hitachi_ JP4O Size: 953869MB BusType: 3
13:59:10.034 Disk 0 MBR read successfully
13:59:10.034 Disk 0 MBR scan
13:59:10.034 Disk 0 Windows 7 default MBR code
13:59:10.049 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
13:59:10.065 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 911782 MB offset 206848
13:59:10.096 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 40960 MB offset 1867536384
13:59:10.112 Disk 0 Partition 4 00 12 Compaq diag NTFS 1025 MB offset 1951422464
13:59:10.127 Disk 0 scanning sectors +1953521664
13:59:10.190 Disk 0 scanning C:\Windows\system32\drivers
13:59:18.021 Service scanning
13:59:38.706 Modules scanning
13:59:44.042 Disk 0 trace - called modules:
13:59:44.057 ntkrnlpa.exe CLASSPNP.SYS disk.sys iaStor.sys halmacpi.dll
13:59:44.057 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x88584700]
13:59:44.073 3 CLASSPNP.SYS[8bdaa59e] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0x866b2028]
13:59:46.538 AVAST engine scan C:\Windows
13:59:51.077 AVAST engine scan C:\Windows\system32
14:02:05.300 AVAST engine scan C:\Windows\system32\drivers
14:02:15.830 AVAST engine scan C:\Users\Klaus
14:09:03.318 AVAST engine scan C:\ProgramData
14:10:20.289 Scan finished successfully
14:27:16.465 Disk 0 MBR has been saved successfully to "C:\Users\Klaus\Desktop\MBR.dat"
14:27:16.481 The log file has been saved successfully to "C:\Users\Klaus\Desktop\aswMBR.txt"

Alt 18.07.2012, 13:03   #27
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Mystart Incredibar - Standard

Mystart Incredibar



Sieht ok aus. Wir sollten fast durch sein. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs.
Denk dran beide Tools zu updaten vor dem Scan!!
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 18.07.2012, 15:59   #28
Darwin
 
Mystart Incredibar - Standard

Mystart Incredibar



Code:
ATTFilter
 Malwarebytes Anti-Malware 1.62.0.1300
www.malwarebytes.org

Datenbank Version: v2012.07.18.06

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
Klaus :: DESKTOP [Administrator]

18.07.2012 16:22:11
mbam-log-2012-07-18 (16-22-11).txt

Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|J:\|)
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 356510
Laufzeit: 35 Minute(n), 58 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)

(Ende)
         
Code:
ATTFilter
 SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com

Generated 07/18/2012 at 05:10 PM

Application Version : 5.5.1006

Core Rules Database Version : 8918
Trace Rules Database Version: 6730

Scan type       : Quick Scan
Total Scan Time : 00:03:41

Operating System Information
Windows 7 Home Premium 32-bit, Service Pack 1 (Build 6.01.7601)
UAC On - Administrator

Memory items scanned      : 1002
Memory threats detected   : 0
Registry items scanned    : 27442
Registry threats detected : 0
File items scanned        : 7766
File threats detected     : 158

Adware.Tracking Cookie
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\klaus@adx.chip[1].txt [ /adx.chip ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\EMQGHCBO.txt [ /mediaplex.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\U060JT45.txt [ /track.adform.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\V882OH5L.txt [ /doubleclick.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\4TJZYUZ0.txt [ /zanox-affiliate.de ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\3D9PYS8G.txt [ /c.atdmt.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\7KYNVJJO.txt [ /atdmt.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\Y2V7VM2T.txt [ /zanox.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\HF26T5I3.txt [ /adfarm1.adition.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\4Q1FSU2O.txt [ /dyntracker.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\SM9UC2I5.txt [ /apmebf.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\UN1DNEGC.txt [ /openstat.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\H4K9NKNO.txt [ /ad.zanox.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\ZO0HS8O3.txt [ /smartadserver.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\UCMK9RC0.txt [ /ad1.adfarm1.adition.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\T5I3TJXZ.txt [ /specificclick.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\36WLW080.txt [ /ad2.adfarm1.adition.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\3NR6XBA9.txt [ /fastclick.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\KVYZ94P7.txt [ /ad.dyntracker.de ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\1VE1WN3D.txt [ /tracking.quisma.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\PEAAUF1J.txt [ /adform.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\F5W633T5.txt [ /imrworldwide.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\Q0TSAC6G.txt [ /www.zanox-affiliate.de ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@im.banner.t-online[1].txt [ Cookie:klaus@im.banner.t-online.de/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\PB3HE9AE.txt [ Cookie:klaus@doubleclick.net/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\IPVONUIX.txt [ Cookie:klaus@serving-sys.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\B3BXLTT8.txt [ Cookie:klaus@c.atdmt.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\D8OVI6CX.txt [ Cookie:klaus@atdmt.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\L4CQUS46.txt [ Cookie:klaus@bs.serving-sys.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@apmebf[1].txt [ Cookie:klaus@apmebf.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\D4873IMC.txt [ Cookie:klaus@ad.zanox.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@xiti[1].txt [ Cookie:klaus@xiti.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\8YFUBEV3.txt [ Cookie:klaus@microsoftinternetexplorer.112.2o7.net/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\TY3EWPOL.txt [ Cookie:klaus@specificclick.net/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@interclick[1].txt [ Cookie:klaus@interclick.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@fastclick[1].txt [ Cookie:klaus@fastclick.net/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@statse.webtrendslive[2].txt [ Cookie:klaus@statse.webtrendslive.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\1ALPUBXU.txt [ Cookie:klaus@ad.yieldmanager.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\B1VPWEEO.txt [ Cookie:klaus@imrworldwide.com/cgi-bin ]
	C:\USERS\KLAUS\Cookies\V882OH5L.txt [ Cookie:klaus@doubleclick.net/ ]
	C:\USERS\KLAUS\Cookies\4TJZYUZ0.txt [ Cookie:klaus@zanox-affiliate.de/ ]
	C:\USERS\KLAUS\Cookies\3D9PYS8G.txt [ Cookie:klaus@c.atdmt.com/ ]
	C:\USERS\KLAUS\Cookies\7KYNVJJO.txt [ Cookie:klaus@atdmt.com/ ]
	C:\USERS\KLAUS\Cookies\Y2V7VM2T.txt [ Cookie:klaus@zanox.com/ ]
	C:\USERS\KLAUS\Cookies\SM9UC2I5.txt [ Cookie:klaus@apmebf.com/ ]
	C:\USERS\KLAUS\Cookies\UN1DNEGC.txt [ Cookie:klaus@openstat.net/ ]
	C:\USERS\KLAUS\Cookies\H4K9NKNO.txt [ Cookie:klaus@ad.zanox.com/ ]
	C:\USERS\KLAUS\Cookies\UCMK9RC0.txt [ Cookie:klaus@ad1.adfarm1.adition.com/ ]
	C:\USERS\KLAUS\Cookies\T5I3TJXZ.txt [ Cookie:klaus@specificclick.net/ ]
	C:\USERS\KLAUS\Cookies\3NR6XBA9.txt [ Cookie:klaus@fastclick.net/ ]
	C:\USERS\KLAUS\Cookies\KVYZ94P7.txt [ Cookie:klaus@ad.dyntracker.de/ ]
	C:\USERS\KLAUS\Cookies\1VE1WN3D.txt [ Cookie:klaus@tracking.quisma.com/ ]
	C:\USERS\KLAUS\Cookies\PEAAUF1J.txt [ Cookie:klaus@adform.net/ ]
	C:\USERS\KLAUS\Cookies\F5W633T5.txt [ Cookie:klaus@imrworldwide.com/cgi-bin ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\5U1SON2J.txt [ Cookie:ulrike@adform.net/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\BWGR63SW.txt [ Cookie:ulrike@atdmt.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\T9UMDV1L.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\PV75LRWO.txt [ Cookie:ulrike@track.adform.net/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\B84YNK8V.txt [ Cookie:ulrike@zanox-affiliate.de/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\K0292JRJ.txt [ Cookie:ulrike@www.zanox-affiliate.de/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\ulrike@stat.aldi[2].txt [ Cookie:ulrike@stat.aldi.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\QVC0LPA8.txt [ Cookie:ulrike@tracking.quisma.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\W4FAOT2V.txt [ Cookie:ulrike@fastclick.net/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\MQ7N65SF.txt [ Cookie:ulrike@ad1.adfarm1.adition.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\TDZZNZMA.txt [ Cookie:ulrike@ad.zanox.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\IEM0HL99.txt [ Cookie:ulrike@imrworldwide.com/cgi-bin ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@serving-sys[1].txt [ Cookie:ulrike@serving-sys.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\1Q7O3I7B.txt [ Cookie:ulrike@atdmt.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@bs.serving-sys[1].txt [ Cookie:ulrike@bs.serving-sys.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\F3PTY4OR.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@tradedoubler[2].txt [ Cookie:ulrike@tradedoubler.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\185LJYC6.txt [ Cookie:ulrike@specificclick.net/ ]
	C:\USERS\ULRIKE\Cookies\5U1SON2J.txt [ Cookie:ulrike@adform.net/ ]
	C:\USERS\ULRIKE\Cookies\BWGR63SW.txt [ Cookie:ulrike@atdmt.com/ ]
	C:\USERS\ULRIKE\Cookies\T9UMDV1L.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
	C:\USERS\ULRIKE\Cookies\PV75LRWO.txt [ Cookie:ulrike@track.adform.net/ ]
	C:\USERS\ULRIKE\Cookies\B84YNK8V.txt [ Cookie:ulrike@zanox-affiliate.de/ ]
	C:\USERS\ULRIKE\Cookies\K0292JRJ.txt [ Cookie:ulrike@www.zanox-affiliate.de/ ]
	C:\USERS\ULRIKE\Cookies\ulrike@stat.aldi[2].txt [ Cookie:ulrike@stat.aldi.com/ ]
	C:\USERS\ULRIKE\Cookies\QVC0LPA8.txt [ Cookie:ulrike@tracking.quisma.com/ ]
	C:\USERS\ULRIKE\Cookies\W4FAOT2V.txt [ Cookie:ulrike@fastclick.net/ ]
	C:\USERS\ULRIKE\Cookies\MQ7N65SF.txt [ Cookie:ulrike@ad1.adfarm1.adition.com/ ]
	C:\USERS\ULRIKE\Cookies\TDZZNZMA.txt [ Cookie:ulrike@ad.zanox.com/ ]
	.microsoftwllivemkt.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	in.getclicky.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.deutschepostag.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wdk4kpcpgfq.stats.esomniture.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	nl.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	nl.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.gemoneysdenac.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.histats.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.histats.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.xiti.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6aelyomcjiep.stats.esomniture.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.tracker.vinsight.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.stepstone.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	traffic.brand-wall.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	stat.onestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	stat.onestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	statse.webtrendslive.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.roberthalf.122.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.oms.122.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
         

Alt 18.07.2012, 20:34   #29
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Mystart Incredibar - Standard

Mystart Incredibar



Das war mit SUPERAntiSpyware nur ein Quickscan! Machen solltest du aber einen Vollscan!
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 18.07.2012, 20:57   #30
Darwin
 
Mystart Incredibar - Standard

Mystart Incredibar



Code:
ATTFilter
 SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com

Generated 07/18/2012 at 09:49 PM

Application Version : 5.5.1006

Core Rules Database Version : 8921
Trace Rules Database Version: 6733

Scan type       : Quick Scan
Total Scan Time : 00:04:10

Operating System Information
Windows 7 Home Premium 32-bit, Service Pack 1 (Build 6.01.7601)
UAC On - Administrator

Memory items scanned      : 1025
Memory threats detected   : 0
Registry items scanned    : 27442
Registry threats detected : 0
File items scanned        : 7772
File threats detected     : 158

Adware.Tracking Cookie
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\klaus@adx.chip[1].txt [ /adx.chip ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\EMQGHCBO.txt [ /mediaplex.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\U060JT45.txt [ /track.adform.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\V882OH5L.txt [ /doubleclick.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\4TJZYUZ0.txt [ /zanox-affiliate.de ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\3D9PYS8G.txt [ /c.atdmt.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\7KYNVJJO.txt [ /atdmt.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\Y2V7VM2T.txt [ /zanox.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\HF26T5I3.txt [ /adfarm1.adition.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\4Q1FSU2O.txt [ /dyntracker.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\SM9UC2I5.txt [ /apmebf.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\SOKGSMM0.txt [ /openstat.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\H4K9NKNO.txt [ /ad.zanox.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\ZO0HS8O3.txt [ /smartadserver.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\UCMK9RC0.txt [ /ad1.adfarm1.adition.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\T5I3TJXZ.txt [ /specificclick.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\36WLW080.txt [ /ad2.adfarm1.adition.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\3NR6XBA9.txt [ /fastclick.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\KVYZ94P7.txt [ /ad.dyntracker.de ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\1VE1WN3D.txt [ /tracking.quisma.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\PEAAUF1J.txt [ /adform.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\F5W633T5.txt [ /imrworldwide.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\Q0TSAC6G.txt [ /www.zanox-affiliate.de ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@im.banner.t-online[1].txt [ Cookie:klaus@im.banner.t-online.de/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\PB3HE9AE.txt [ Cookie:klaus@doubleclick.net/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\IPVONUIX.txt [ Cookie:klaus@serving-sys.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\B3BXLTT8.txt [ Cookie:klaus@c.atdmt.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\D8OVI6CX.txt [ Cookie:klaus@atdmt.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\L4CQUS46.txt [ Cookie:klaus@bs.serving-sys.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@apmebf[1].txt [ Cookie:klaus@apmebf.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\D4873IMC.txt [ Cookie:klaus@ad.zanox.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@xiti[1].txt [ Cookie:klaus@xiti.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\8YFUBEV3.txt [ Cookie:klaus@microsoftinternetexplorer.112.2o7.net/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\TY3EWPOL.txt [ Cookie:klaus@specificclick.net/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@interclick[1].txt [ Cookie:klaus@interclick.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@fastclick[1].txt [ Cookie:klaus@fastclick.net/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@statse.webtrendslive[2].txt [ Cookie:klaus@statse.webtrendslive.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\1ALPUBXU.txt [ Cookie:klaus@ad.yieldmanager.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\B1VPWEEO.txt [ Cookie:klaus@imrworldwide.com/cgi-bin ]
	C:\USERS\KLAUS\Cookies\V882OH5L.txt [ Cookie:klaus@doubleclick.net/ ]
	C:\USERS\KLAUS\Cookies\4TJZYUZ0.txt [ Cookie:klaus@zanox-affiliate.de/ ]
	C:\USERS\KLAUS\Cookies\3D9PYS8G.txt [ Cookie:klaus@c.atdmt.com/ ]
	C:\USERS\KLAUS\Cookies\7KYNVJJO.txt [ Cookie:klaus@atdmt.com/ ]
	C:\USERS\KLAUS\Cookies\Y2V7VM2T.txt [ Cookie:klaus@zanox.com/ ]
	C:\USERS\KLAUS\Cookies\SM9UC2I5.txt [ Cookie:klaus@apmebf.com/ ]
	C:\USERS\KLAUS\Cookies\SOKGSMM0.txt [ Cookie:klaus@openstat.net/ ]
	C:\USERS\KLAUS\Cookies\H4K9NKNO.txt [ Cookie:klaus@ad.zanox.com/ ]
	C:\USERS\KLAUS\Cookies\UCMK9RC0.txt [ Cookie:klaus@ad1.adfarm1.adition.com/ ]
	C:\USERS\KLAUS\Cookies\T5I3TJXZ.txt [ Cookie:klaus@specificclick.net/ ]
	C:\USERS\KLAUS\Cookies\3NR6XBA9.txt [ Cookie:klaus@fastclick.net/ ]
	C:\USERS\KLAUS\Cookies\KVYZ94P7.txt [ Cookie:klaus@ad.dyntracker.de/ ]
	C:\USERS\KLAUS\Cookies\1VE1WN3D.txt [ Cookie:klaus@tracking.quisma.com/ ]
	C:\USERS\KLAUS\Cookies\PEAAUF1J.txt [ Cookie:klaus@adform.net/ ]
	C:\USERS\KLAUS\Cookies\F5W633T5.txt [ Cookie:klaus@imrworldwide.com/cgi-bin ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\5U1SON2J.txt [ Cookie:ulrike@adform.net/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\BWGR63SW.txt [ Cookie:ulrike@atdmt.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\T9UMDV1L.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\PV75LRWO.txt [ Cookie:ulrike@track.adform.net/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\B84YNK8V.txt [ Cookie:ulrike@zanox-affiliate.de/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\K0292JRJ.txt [ Cookie:ulrike@www.zanox-affiliate.de/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\ulrike@stat.aldi[2].txt [ Cookie:ulrike@stat.aldi.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\QVC0LPA8.txt [ Cookie:ulrike@tracking.quisma.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\W4FAOT2V.txt [ Cookie:ulrike@fastclick.net/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\MQ7N65SF.txt [ Cookie:ulrike@ad1.adfarm1.adition.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\TDZZNZMA.txt [ Cookie:ulrike@ad.zanox.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\IEM0HL99.txt [ Cookie:ulrike@imrworldwide.com/cgi-bin ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@serving-sys[1].txt [ Cookie:ulrike@serving-sys.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\1Q7O3I7B.txt [ Cookie:ulrike@atdmt.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@bs.serving-sys[1].txt [ Cookie:ulrike@bs.serving-sys.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\F3PTY4OR.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@tradedoubler[2].txt [ Cookie:ulrike@tradedoubler.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\185LJYC6.txt [ Cookie:ulrike@specificclick.net/ ]
	C:\USERS\ULRIKE\Cookies\5U1SON2J.txt [ Cookie:ulrike@adform.net/ ]
	C:\USERS\ULRIKE\Cookies\BWGR63SW.txt [ Cookie:ulrike@atdmt.com/ ]
	C:\USERS\ULRIKE\Cookies\T9UMDV1L.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
	C:\USERS\ULRIKE\Cookies\PV75LRWO.txt [ Cookie:ulrike@track.adform.net/ ]
	C:\USERS\ULRIKE\Cookies\B84YNK8V.txt [ Cookie:ulrike@zanox-affiliate.de/ ]
	C:\USERS\ULRIKE\Cookies\K0292JRJ.txt [ Cookie:ulrike@www.zanox-affiliate.de/ ]
	C:\USERS\ULRIKE\Cookies\ulrike@stat.aldi[2].txt [ Cookie:ulrike@stat.aldi.com/ ]
	C:\USERS\ULRIKE\Cookies\QVC0LPA8.txt [ Cookie:ulrike@tracking.quisma.com/ ]
	C:\USERS\ULRIKE\Cookies\W4FAOT2V.txt [ Cookie:ulrike@fastclick.net/ ]
	C:\USERS\ULRIKE\Cookies\MQ7N65SF.txt [ Cookie:ulrike@ad1.adfarm1.adition.com/ ]
	C:\USERS\ULRIKE\Cookies\TDZZNZMA.txt [ Cookie:ulrike@ad.zanox.com/ ]
	.microsoftwllivemkt.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	in.getclicky.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.deutschepostag.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wdk4kpcpgfq.stats.esomniture.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	nl.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	nl.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.gemoneysdenac.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.histats.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.histats.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.xiti.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6aelyomcjiep.stats.esomniture.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.tracker.vinsight.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.stepstone.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	traffic.brand-wall.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	stat.onestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	stat.onestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	statse.webtrendslive.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.roberthalf.122.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.oms.122.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
         
Quick scan sehe ich auch im Log, eingestellt hatte ich complete scan. Probiere es noch mal.

Code:
ATTFilter
 SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com

Generated 07/18/2012 at 11:20 PM

Application Version : 5.5.1006

Core Rules Database Version : 8921
Trace Rules Database Version: 6733

Scan type       : Complete Scan
Total Scan Time : 01:19:03

Operating System Information
Windows 7 Home Premium 32-bit, Service Pack 1 (Build 6.01.7601)
UAC On - Administrator

Memory items scanned      : 1028
Memory threats detected   : 0
Registry items scanned    : 35223
Registry threats detected : 0
File items scanned        : 125893
File threats detected     : 408

Adware.Tracking Cookie
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\klaus@adx.chip[1].txt [ /adx.chip ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\EMQGHCBO.txt [ /mediaplex.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\U060JT45.txt [ /track.adform.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\V882OH5L.txt [ /doubleclick.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\4TJZYUZ0.txt [ /zanox-affiliate.de ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\3D9PYS8G.txt [ /c.atdmt.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\7KYNVJJO.txt [ /atdmt.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\Y2V7VM2T.txt [ /zanox.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\HF26T5I3.txt [ /adfarm1.adition.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\4Q1FSU2O.txt [ /dyntracker.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\SM9UC2I5.txt [ /apmebf.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\SOKGSMM0.txt [ /openstat.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\H4K9NKNO.txt [ /ad.zanox.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\ZO0HS8O3.txt [ /smartadserver.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\UCMK9RC0.txt [ /ad1.adfarm1.adition.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\T5I3TJXZ.txt [ /specificclick.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\36WLW080.txt [ /ad2.adfarm1.adition.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\3NR6XBA9.txt [ /fastclick.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\KVYZ94P7.txt [ /ad.dyntracker.de ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\1VE1WN3D.txt [ /tracking.quisma.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\PEAAUF1J.txt [ /adform.net ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\F5W633T5.txt [ /imrworldwide.com ]
	C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\Q0TSAC6G.txt [ /www.zanox-affiliate.de ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@im.banner.t-online[1].txt [ Cookie:klaus@im.banner.t-online.de/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\PB3HE9AE.txt [ Cookie:klaus@doubleclick.net/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\IPVONUIX.txt [ Cookie:klaus@serving-sys.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\B3BXLTT8.txt [ Cookie:klaus@c.atdmt.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\D8OVI6CX.txt [ Cookie:klaus@atdmt.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\L4CQUS46.txt [ Cookie:klaus@bs.serving-sys.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@apmebf[1].txt [ Cookie:klaus@apmebf.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\D4873IMC.txt [ Cookie:klaus@ad.zanox.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@xiti[1].txt [ Cookie:klaus@xiti.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\8YFUBEV3.txt [ Cookie:klaus@microsoftinternetexplorer.112.2o7.net/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\TY3EWPOL.txt [ Cookie:klaus@specificclick.net/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@interclick[1].txt [ Cookie:klaus@interclick.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@fastclick[1].txt [ Cookie:klaus@fastclick.net/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@statse.webtrendslive[2].txt [ Cookie:klaus@statse.webtrendslive.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\1ALPUBXU.txt [ Cookie:klaus@ad.yieldmanager.com/ ]
	C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\B1VPWEEO.txt [ Cookie:klaus@imrworldwide.com/cgi-bin ]
	C:\USERS\KLAUS\Cookies\V882OH5L.txt [ Cookie:klaus@doubleclick.net/ ]
	C:\USERS\KLAUS\Cookies\4TJZYUZ0.txt [ Cookie:klaus@zanox-affiliate.de/ ]
	C:\USERS\KLAUS\Cookies\3D9PYS8G.txt [ Cookie:klaus@c.atdmt.com/ ]
	C:\USERS\KLAUS\Cookies\7KYNVJJO.txt [ Cookie:klaus@atdmt.com/ ]
	C:\USERS\KLAUS\Cookies\Y2V7VM2T.txt [ Cookie:klaus@zanox.com/ ]
	C:\USERS\KLAUS\Cookies\SM9UC2I5.txt [ Cookie:klaus@apmebf.com/ ]
	C:\USERS\KLAUS\Cookies\SOKGSMM0.txt [ Cookie:klaus@openstat.net/ ]
	C:\USERS\KLAUS\Cookies\H4K9NKNO.txt [ Cookie:klaus@ad.zanox.com/ ]
	C:\USERS\KLAUS\Cookies\UCMK9RC0.txt [ Cookie:klaus@ad1.adfarm1.adition.com/ ]
	C:\USERS\KLAUS\Cookies\T5I3TJXZ.txt [ Cookie:klaus@specificclick.net/ ]
	C:\USERS\KLAUS\Cookies\3NR6XBA9.txt [ Cookie:klaus@fastclick.net/ ]
	C:\USERS\KLAUS\Cookies\KVYZ94P7.txt [ Cookie:klaus@ad.dyntracker.de/ ]
	C:\USERS\KLAUS\Cookies\1VE1WN3D.txt [ Cookie:klaus@tracking.quisma.com/ ]
	C:\USERS\KLAUS\Cookies\PEAAUF1J.txt [ Cookie:klaus@adform.net/ ]
	C:\USERS\KLAUS\Cookies\F5W633T5.txt [ Cookie:klaus@imrworldwide.com/cgi-bin ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\5U1SON2J.txt [ Cookie:ulrike@adform.net/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\BWGR63SW.txt [ Cookie:ulrike@atdmt.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\T9UMDV1L.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\PV75LRWO.txt [ Cookie:ulrike@track.adform.net/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\B84YNK8V.txt [ Cookie:ulrike@zanox-affiliate.de/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\K0292JRJ.txt [ Cookie:ulrike@www.zanox-affiliate.de/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\ulrike@stat.aldi[2].txt [ Cookie:ulrike@stat.aldi.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\QVC0LPA8.txt [ Cookie:ulrike@tracking.quisma.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\W4FAOT2V.txt [ Cookie:ulrike@fastclick.net/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\MQ7N65SF.txt [ Cookie:ulrike@ad1.adfarm1.adition.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\TDZZNZMA.txt [ Cookie:ulrike@ad.zanox.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\IEM0HL99.txt [ Cookie:ulrike@imrworldwide.com/cgi-bin ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@serving-sys[1].txt [ Cookie:ulrike@serving-sys.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\1Q7O3I7B.txt [ Cookie:ulrike@atdmt.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@bs.serving-sys[1].txt [ Cookie:ulrike@bs.serving-sys.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\F3PTY4OR.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@tradedoubler[2].txt [ Cookie:ulrike@tradedoubler.com/ ]
	C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\185LJYC6.txt [ Cookie:ulrike@specificclick.net/ ]
	C:\USERS\ULRIKE\Cookies\5U1SON2J.txt [ Cookie:ulrike@adform.net/ ]
	C:\USERS\ULRIKE\Cookies\BWGR63SW.txt [ Cookie:ulrike@atdmt.com/ ]
	C:\USERS\ULRIKE\Cookies\T9UMDV1L.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
	C:\USERS\ULRIKE\Cookies\PV75LRWO.txt [ Cookie:ulrike@track.adform.net/ ]
	C:\USERS\ULRIKE\Cookies\B84YNK8V.txt [ Cookie:ulrike@zanox-affiliate.de/ ]
	C:\USERS\ULRIKE\Cookies\K0292JRJ.txt [ Cookie:ulrike@www.zanox-affiliate.de/ ]
	C:\USERS\ULRIKE\Cookies\ulrike@stat.aldi[2].txt [ Cookie:ulrike@stat.aldi.com/ ]
	C:\USERS\ULRIKE\Cookies\QVC0LPA8.txt [ Cookie:ulrike@tracking.quisma.com/ ]
	C:\USERS\ULRIKE\Cookies\W4FAOT2V.txt [ Cookie:ulrike@fastclick.net/ ]
	C:\USERS\ULRIKE\Cookies\MQ7N65SF.txt [ Cookie:ulrike@ad1.adfarm1.adition.com/ ]
	C:\USERS\ULRIKE\Cookies\TDZZNZMA.txt [ Cookie:ulrike@ad.zanox.com/ ]
	.microsoftwllivemkt.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	in.getclicky.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.deutschepostag.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wdk4kpcpgfq.stats.esomniture.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	nl.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	nl.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.gemoneysdenac.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.histats.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.histats.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.xiti.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6aelyomcjiep.stats.esomniture.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.tracker.vinsight.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.stepstone.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	traffic.brand-wall.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	stat.onestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	stat.onestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	statse.webtrendslive.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.roberthalf.122.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	.oms.122.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
	C:\USERS\ULRIKE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\ULRIKE@DOUBLECLICK[1].TXT [ /DOUBLECLICK ]
	.adtech.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.shopping.112.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.sevenoneintermedia.112.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	track.webtrekk.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.guj.122.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.a.revenuemax.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.vodafonegroup.122.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.xiti.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ad.adition.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ad.adition.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.kontera.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	track.webtrekk.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	track.webtrekk.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wjloajdzghp.stats.esomniture.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	in.getclicky.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	stat.dealtime.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.yieldmanager.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	track.webtrekk.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	secure.img-cdn.mediaplex.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.discount24.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	eas4.emediate.eu [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.mediacenter.betzold.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	piwik.mediamarketing.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ads7.wwe.biz [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.ssl4stats.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.ssl4stats.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	stat.aldi.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.112.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.liveperson.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.interclick.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.interclick.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.interclick.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.nextag.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.nextag.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wjkyuidjoep.stats.esomniture.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	clickerhunde.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	www.bannerreport.org [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.ikea.122.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ads20.wwe-media.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.getclicky.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.static.getclicky.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.bizrate.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.nextag.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	adserver.department-x.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.opodo.122.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.cheaptickets.122.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.ehg-cheaptickets.hitbox.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.hitbox.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.adinterax.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.4stats.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.4stats.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.bwr-media.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.adinterax.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	wstat.wibiya.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	fl01.ct2.comclick.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.amazon-adsystem.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6aemikmd5gkp.stats.esomniture.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.aim4media.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.aim4media.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.yadro.ru [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.webstats4u.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.e-2dj6wbkyagajaao.stats.esomniture.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.overture.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.amazon-adsystem.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ads.adxvalue.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	advertising.tierpunkt.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.findix.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.at.atwola.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	adserver.mainz05.onvert.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	adserver.tiervermittlung.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	adserver.tiervermittlung.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	adserver.tiervermittlung.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	adserver.advertisingbox.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.4stats.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.4stats.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.countomat.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	stat.novasol.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	www.zanox-affiliate.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	count.asnetworks.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.clickundtrick.beepworld.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.clickundtrickhundewissen.blogspot.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	www.adservspot.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.clickerhunde.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.eyewonder.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.eyewonder.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	s03.flagcounter.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.overture.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	adserver1.mokono.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	img-cdn.mediaplex.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.hightraffic.hugoboss.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.stepstone.112.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.bs.serving-sys.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.urbia.wwe-media.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.ad.de.doubleclick.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	adfarm1.adition.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ads.familymedia.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ad3.adfarm1.adition.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	keyword-advertising.web.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ad1.adfarm1.adition.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ad2.adfarm1.adition.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ad4.adfarm1.adition.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.c.atdmt.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.c.atdmt.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.overture.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	tracking.klicktel.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	tracking.tchibo.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	track.webtrekk.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.demandwarecrocs.112.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.dealtime.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.tracking.onmarketing.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	vb.mol.vs.bluedotmedia.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	vb.mol.vs.bluedotmedia.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.philips.112.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.histats.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.histats.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	agrifinder.proplanta.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	agrifinder.proplanta.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	accounts.google.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.accounts.google.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.accounts.google.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	clicks.pangora.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	clicks.pangora.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.bizrate.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.clicker.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.clicker.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.clicker.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.clicker.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	.112.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
	statse.webtrendslive.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
         
So jetzt funzt es

Antwort

Themen zu Mystart Incredibar
appdata, browser, entfernen, ergebnis, eset, files, firefox, folge, funktioniert, gen, internet, microsoft, mystart incredibar, neue, neue seite, opera, pdfforge, scan, scanner, search, seite, super, temporary, thema, variant, version, win, windows




Ähnliche Themen: Mystart Incredibar


  1. MyStart/Incredibar
    Plagegeister aller Art und deren Bekämpfung - 05.10.2013 (9)
  2. MyStart by IncrediBar.com
    Log-Analyse und Auswertung - 06.05.2013 (11)
  3. MyStart by IncrediBar.com
    Plagegeister aller Art und deren Bekämpfung - 21.12.2012 (9)
  4. MyStart by IncrediBar.com
    Plagegeister aller Art und deren Bekämpfung - 24.10.2012 (18)
  5. MyStart by IncrediBar.com
    Log-Analyse und Auswertung - 18.10.2012 (1)
  6. MyStart by IncrediBar.com
    Log-Analyse und Auswertung - 14.10.2012 (17)
  7. Mystart.Incredibar
    Plagegeister aller Art und deren Bekämpfung - 14.10.2012 (37)
  8. mystart.incredibar.com
    Log-Analyse und Auswertung - 29.09.2012 (2)
  9. Mystart.Incredibar
    Plagegeister aller Art und deren Bekämpfung - 27.09.2012 (3)
  10. mystart incredibar
    Plagegeister aller Art und deren Bekämpfung - 09.09.2012 (2)
  11. MyStart @ Incredibar und MyStart Search trotz Deinstallation des Programms
    Plagegeister aller Art und deren Bekämpfung - 09.09.2012 (2)
  12. MySTart by Incredibar
    Plagegeister aller Art und deren Bekämpfung - 30.08.2012 (1)
  13. MyStart incredibar
    Log-Analyse und Auswertung - 23.07.2012 (1)
  14. Mystart Incredibar
    Log-Analyse und Auswertung - 16.07.2012 (7)
  15. MyStart Incredibar
    Plagegeister aller Art und deren Bekämpfung - 15.07.2012 (3)
  16. Mystart by incredibar
    Plagegeister aller Art und deren Bekämpfung - 04.07.2012 (1)
  17. mystart.incredibar.com
    Log-Analyse und Auswertung - 07.06.2012 (9)

Zum Thema Mystart Incredibar - Code: Alles auswählen Aufklappen ATTFilter All processes killed ========== OTL ========== Registry key HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\SearchScopes\{52403564-EB1D-4FFF-8D1D-70272E9700A9}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52403564-EB1D-4FFF-8D1D-70272E9700A9}\ not found. Registry key HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\SearchScopes\{584758EB-E772-413D-A2D2-CCB8CB44A3D8}\ deleted successfully. Registry key - Mystart Incredibar...
Archiv
Du betrachtest: Mystart Incredibar auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.