Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Rechner gesperrt

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML

Antwort
Alt 17.09.2012, 20:36   #16
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Rechner gesperrt - Standard

Rechner gesperrt



Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten Anleitung und Downloadlink hier => http://www.trojaner-board.de/82358-t...entfernen.html

Hinweis: Bitte den Virenscanner abstellen bevor du den TDSS-Killer ausführst, denn v.a. Avira meldet im TDSS-Tool oft einen Fehalalrm!

Das Tool so einstellen wie unten im Bild angegeben - klick auf change parameters und setze die Haken wie im folgenden Screenshot abgebildet,
Dann auf Start Scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten.

Wenn du das Log nicht findest oder den Inhalt kopieren und in dein Posting übertragen kannst, dann schau bitte direkt auf deiner Windows-Systempartition ( meistens Laufwerk C: ) nach, da speichert der TDSS-Killer seine Logs.

Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten!

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 17.09.2012, 21:30   #17
traudel769
 
Rechner gesperrt - Standard

Rechner gesperrt



Scan ist mit der Version 2.8.8.0 erfolgt
die aktuellste Version ist wohl 2.8.9.0
Hätte ich aktuallisieren sollen?

Code:
ATTFilter
 
22:25:34.0001 3360  TDSS rootkit removing tool 2.8.8.0 Aug 24 2012 13:27:48
22:26:13.0157 3360  ============================================================
22:26:13.0157 3360  Current date / time: 2012/09/17 22:26:13.0157
22:26:13.0157 3360  SystemInfo:
22:26:13.0157 3360  
22:26:13.0157 3360  OS Version: 6.0.6002 ServicePack: 2.0
22:26:13.0157 3360  Product type: Workstation
22:26:13.0157 3360  ComputerName: LAPTOP
22:26:13.0157 3360  UserName: Susan
22:26:13.0157 3360  Windows directory: C:\Windows
22:26:13.0157 3360  System windows directory: C:\Windows
22:26:13.0157 3360  Processor architecture: Intel x86
22:26:13.0157 3360  Number of processors: 2
22:26:13.0157 3360  Page size: 0x1000
22:26:13.0157 3360  Boot type: Normal boot
22:26:13.0157 3360  ============================================================
22:26:14.0405 3360  Drive \Device\Harddisk0\DR0 - Size: 0x25433D6000 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x4C01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
22:26:14.0421 3360  ============================================================
22:26:14.0421 3360  \Device\Harddisk0\DR0:
22:26:14.0421 3360  MBR partitions:
22:26:14.0421 3360  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2EE800, BlocksNum 0x950C800
22:26:14.0421 3360  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x97FB000, BlocksNum 0x921E800
22:26:14.0421 3360  ============================================================
22:26:14.0452 3360  C: <-> \Device\Harddisk0\DR0\Partition1
22:26:14.0499 3360  E: <-> \Device\Harddisk0\DR0\Partition2
22:26:14.0499 3360  ============================================================
22:26:14.0499 3360  Initialize success
22:26:14.0499 3360  ============================================================
22:26:28.0804 5576  ============================================================
22:26:28.0804 5576  Scan started
22:26:28.0804 5576  Mode: Manual; SigCheck; TDLFS; 
22:26:28.0804 5576  ============================================================
22:26:30.0801 5576  ================ Scan system memory ========================
22:26:30.0801 5576  System memory - ok
22:26:30.0801 5576  ================ Scan services =============================
22:26:31.0035 5576  [ 82B296AE1892FE3DBEE00C9CF92F8AC7 ] ACPI            C:\Windows\system32\drivers\acpi.sys
22:26:31.0191 5576  ACPI - ok
22:26:31.0362 5576  [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
22:26:31.0378 5576  AdobeARMservice - ok
22:26:31.0440 5576  [ A9D3B95E8466BD58EEB8A1154654E162 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
22:26:31.0472 5576  AdobeFlashPlayerUpdateSvc - ok
22:26:31.0518 5576  [ 2EDC5BBAC6C651ECE337BDE8ED97C9FB ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
22:26:31.0581 5576  adp94xx - ok
22:26:31.0628 5576  [ B84088CA3CDCA97DA44A984C6CE1CCAD ] adpahci         C:\Windows\system32\drivers\adpahci.sys
22:26:31.0643 5576  adpahci - ok
22:26:31.0674 5576  [ 7880C67BCCC27C86FD05AA2AFB5EA469 ] adpu160m        C:\Windows\system32\drivers\adpu160m.sys
22:26:31.0690 5576  adpu160m - ok
22:26:31.0721 5576  [ 9AE713F8E30EFC2ABCCD84904333DF4D ] adpu320         C:\Windows\system32\drivers\adpu320.sys
22:26:31.0737 5576  adpu320 - ok
22:26:31.0799 5576  [ 9D1FDA9E086BA64E3C93C9DE32461BCF ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
22:26:31.0955 5576  AeLookupSvc - ok
22:26:32.0064 5576  [ 3911B972B55FEA0478476B2E777B29FA ] AFD             C:\Windows\system32\drivers\afd.sys
22:26:32.0174 5576  AFD - ok
22:26:32.0220 5576  [ 39E435C90C9C4F780FA0ED05CA3C3A1B ] AgereModemAudio C:\Windows\system32\agrsmsvc.exe
22:26:32.0267 5576  AgereModemAudio - ok
22:26:32.0345 5576  [ CE91B158FA490CF4C4D487A4130F4660 ] AgereSoftModem  C:\Windows\system32\DRIVERS\AGRSM.sys
22:26:32.0454 5576  AgereSoftModem - ok
22:26:32.0517 5576  [ EF23439CDD587F64C2C1B8825CEAD7D8 ] agp440          C:\Windows\system32\drivers\agp440.sys
22:26:32.0532 5576  agp440 - ok
22:26:32.0579 5576  [ AE1FDF7BF7BB6C6A70F67699D880592A ] aic78xx         C:\Windows\system32\drivers\djsvs.sys
22:26:32.0595 5576  aic78xx - ok
22:26:32.0642 5576  [ A1545B731579895D8CC44FC0481C1192 ] ALG             C:\Windows\System32\alg.exe
22:26:32.0766 5576  ALG - ok
22:26:32.0798 5576  [ 90395B64600EBB4552E26E178C94B2E4 ] aliide          C:\Windows\system32\drivers\aliide.sys
22:26:32.0829 5576  aliide - ok
22:26:32.0891 5576  [ 2B13E304C9DFDFA5EB582F6A149FA2C7 ] amdagp          C:\Windows\system32\drivers\amdagp.sys
22:26:32.0907 5576  amdagp - ok
22:26:32.0922 5576  [ 0577DF1D323FE75A739C787893D300EA ] amdide          C:\Windows\system32\drivers\amdide.sys
22:26:32.0938 5576  amdide - ok
22:26:32.0954 5576  [ DC487885BCEF9F28EECE6FAC0E5DDFC5 ] AmdK7           C:\Windows\system32\drivers\amdk7.sys
22:26:33.0125 5576  AmdK7 - ok
22:26:33.0156 5576  [ 93AE7F7DD54AB986A6F1A1B37BE7442D ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
22:26:33.0219 5576  AmdK8 - ok
22:26:33.0328 5576  [ 466A0D95960DAD3222C896D2CEA99993 ] AntiVirSchedulerService C:\Program Files\Avira\AntiVir Desktop\sched.exe
22:26:33.0344 5576  AntiVirSchedulerService - ok
22:26:33.0422 5576  [ A489BE6BB0AA1FF406B488B60542314B ] AntiVirService  C:\Program Files\Avira\AntiVir Desktop\avguard.exe
22:26:33.0437 5576  AntiVirService - ok
22:26:33.0484 5576  [ 7C2F57BCE81FA74933F0E1C84A97C9DB ] ApfiltrService  C:\Windows\system32\DRIVERS\Apfiltr.sys
22:26:33.0546 5576  ApfiltrService - ok
22:26:33.0593 5576  [ C6D704C7F0434DC791AAC37CAC4B6E14 ] Appinfo         C:\Windows\System32\appinfo.dll
22:26:33.0656 5576  Appinfo - ok
22:26:33.0687 5576  [ 5F673180268BB1FDB69C99B6619FE379 ] arc             C:\Windows\system32\drivers\arc.sys
22:26:33.0702 5576  arc - ok
22:26:33.0718 5576  [ 957F7540B5E7F602E44648C7DE5A1C05 ] arcsas          C:\Windows\system32\drivers\arcsas.sys
22:26:33.0734 5576  arcsas - ok
22:26:33.0780 5576  [ 53B202ABEE6455406254444303E87BE1 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
22:26:33.0858 5576  AsyncMac - ok
22:26:33.0905 5576  [ 1F05B78AB91C9075565A9D8A4B880BC4 ] atapi           C:\Windows\system32\drivers\atapi.sys
22:26:33.0921 5576  atapi - ok
22:26:33.0999 5576  [ 8BE56F8300E1C37B578DA23C71816B7A ] athr            C:\Windows\system32\DRIVERS\athr.sys
22:26:34.0155 5576  athr - ok
22:26:34.0233 5576  [ 826C36EF415E0A0AF7A78BA435AEFD86 ] Ati External Event Utility C:\Windows\system32\Ati2evxx.exe
22:26:34.0373 5576  Ati External Event Utility - ok
22:26:34.0529 5576  [ 462A206DDA06FB77AF792A009375C899 ] atikmdag        C:\Windows\system32\DRIVERS\atikmdag.sys
22:26:34.0701 5576  atikmdag - ok
22:26:34.0748 5576  [ 68E2A1A0407A66CF50DA0300852424AB ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
22:26:34.0794 5576  AudioEndpointBuilder - ok
22:26:34.0794 5576  [ 68E2A1A0407A66CF50DA0300852424AB ] Audiosrv        C:\Windows\System32\Audiosrv.dll
22:26:34.0826 5576  Audiosrv - ok
22:26:34.0872 5576  [ D5541F0AFB767E85FC412FC609D96A74 ] avgntflt        C:\Windows\system32\DRIVERS\avgntflt.sys
22:26:35.0340 5576  avgntflt - ok
22:26:35.0387 5576  [ 7D967A682D4694DF7FA57D63A2DB01FE ] avipbb          C:\Windows\system32\DRIVERS\avipbb.sys
22:26:35.0403 5576  avipbb - ok
22:26:35.0434 5576  [ 271CFD1A989209B1964E24D969552BF7 ] avkmgr          C:\Windows\system32\DRIVERS\avkmgr.sys
22:26:35.0450 5576  avkmgr - ok
22:26:35.0496 5576  [ 67E506B75BD5326A3EC7B70BD014DFB6 ] Beep            C:\Windows\system32\drivers\Beep.sys
22:26:35.0559 5576  Beep - ok
22:26:35.0621 5576  [ C789AF0F724FDA5852FB9A7D3A432381 ] BFE             C:\Windows\System32\bfe.dll
22:26:35.0684 5576  BFE - ok
22:26:35.0762 5576  [ 93952506C6D67330367F7E7934B6A02F ] BITS            C:\Windows\System32\qmgr.dll
22:26:35.0840 5576  BITS - ok
22:26:35.0840 5576  blbdrive - ok
22:26:35.0871 5576  BlueletAudio - ok
22:26:35.0886 5576  BlueletSCOAudio - ok
22:26:35.0949 5576  [ 3F56903E124E820AEECE6D471583C6C1 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
22:26:35.0964 5576  Bonjour Service - ok
22:26:35.0996 5576  [ 35F376253F687BDE63976CCB3F2108CA ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
22:26:36.0058 5576  bowser - ok
22:26:36.0105 5576  [ 9F9ACC7F7CCDE8A15C282D3F88B43309 ] BrFiltLo        C:\Windows\system32\drivers\brfiltlo.sys
22:26:36.0152 5576  BrFiltLo - ok
22:26:36.0183 5576  [ 56801AD62213A41F6497F96DEE83755A ] BrFiltUp        C:\Windows\system32\drivers\brfiltup.sys
22:26:36.0214 5576  BrFiltUp - ok
22:26:36.0261 5576  [ A3629A0C4226F9E9C72FAAEEBC3AD33C ] Browser         C:\Windows\System32\browser.dll
22:26:36.0323 5576  Browser - ok
22:26:36.0354 5576  [ B304E75CFF293029EDDF094246747113 ] Brserid         C:\Windows\system32\drivers\brserid.sys
22:26:36.0448 5576  Brserid - ok
22:26:36.0479 5576  [ 203F0B1E73ADADBBB7B7B1FABD901F6B ] BrSerWdm        C:\Windows\system32\drivers\brserwdm.sys
22:26:36.0557 5576  BrSerWdm - ok
22:26:36.0573 5576  [ BD456606156BA17E60A04E18016AE54B ] BrUsbMdm        C:\Windows\system32\drivers\brusbmdm.sys
22:26:36.0651 5576  BrUsbMdm - ok
22:26:36.0666 5576  [ AF72ED54503F717A43268B3CC5FAEC2E ] BrUsbSer        C:\Windows\system32\drivers\brusbser.sys
22:26:36.0744 5576  BrUsbSer - ok
22:26:36.0760 5576  BT - ok
22:26:36.0776 5576  BTCOM - ok
22:26:36.0776 5576  BTCOMBUS - ok
22:26:36.0807 5576  Btcsrusb - ok
22:26:36.0822 5576  BtHidBus - ok
22:26:36.0854 5576  BTHidEnum - ok
22:26:36.0869 5576  BTHidMgr - ok
22:26:36.0885 5576  [ AD07C1EC6665B8B35741AB91200C6B68 ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
22:26:36.0978 5576  BTHMODEM - ok
22:26:37.0041 5576  [ 7BB8AC22BC9E6A1E7707DAECADA95CD9 ] btnetBUs        C:\Windows\system32\Drivers\btnetBus.sys
22:26:37.0041 5576  btnetBUs - ok
22:26:37.0088 5576  [ 7ADD03E75BEB9E6DD102C3081D29840A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
22:26:37.0134 5576  cdfs - ok
22:26:37.0197 5576  [ 6B4BFFB9BECD728097024276430DB314 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
22:26:37.0228 5576  cdrom - ok
22:26:37.0290 5576  [ 312EC3E37A0A1F2006534913E37B4423 ] CertPropSvc     C:\Windows\System32\certprop.dll
22:26:37.0337 5576  CertPropSvc - ok
22:26:37.0431 5576  [ C82162949BBA6CC5D006C7BD008F3CF1 ] CFSvcs          C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
22:26:37.0446 5576  CFSvcs ( UnsignedFile.Multi.Generic ) - warning
22:26:37.0446 5576  CFSvcs - detected UnsignedFile.Multi.Generic (1)
22:26:37.0478 5576  [ DA8E0AFC7BAA226C538EF53AC2F90897 ] circlass        C:\Windows\system32\drivers\circlass.sys
22:26:37.0556 5576  circlass - ok
22:26:37.0602 5576  [ D7659D3B5B92C31E84E53C1431F35132 ] CLFS            C:\Windows\system32\CLFS.sys
22:26:37.0618 5576  CLFS - ok
22:26:37.0680 5576  [ 8EE772032E2FE80A924F3B8DD5082194 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:26:37.0696 5576  clr_optimization_v2.0.50727_32 - ok
22:26:37.0790 5576  [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:26:37.0852 5576  clr_optimization_v4.0.30319_32 - ok
22:26:37.0899 5576  [ 99AFC3795B58CC478FBBBCDC658FCB56 ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
22:26:37.0977 5576  CmBatt - ok
22:26:38.0024 5576  [ 45201046C776FFDAF3FC8A0029C581C8 ] cmdide          C:\Windows\system32\drivers\cmdide.sys
22:26:38.0039 5576  cmdide - ok
22:26:38.0070 5576  [ 6AFEF0B60FA25DE07C0968983EE4F60A ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
22:26:38.0086 5576  Compbatt - ok
22:26:38.0102 5576  COMSysApp - ok
22:26:38.0102 5576  [ 2A213AE086BBEC5E937553C7D9A2B22C ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
22:26:38.0117 5576  crcdisk - ok
22:26:38.0148 5576  [ 22A7F883508176489F559EE745B5BF5D ] Crusoe          C:\Windows\system32\drivers\crusoe.sys
22:26:38.0211 5576  Crusoe - ok
22:26:38.0273 5576  [ 75C6A297E364014840B48ECCD7525E30 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
22:26:38.0320 5576  CryptSvc - ok
22:26:38.0398 5576  [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] DcomLaunch      C:\Windows\system32\rpcss.dll
22:26:38.0445 5576  DcomLaunch - ok
22:26:38.0476 5576  [ 622C41A07CA7E6DD91770F50D532CB6C ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
22:26:38.0507 5576  DfsC - ok
22:26:38.0632 5576  [ 2CC3DCFB533A1035B13DCAB6160AB38B ] DFSR            C:\Windows\system32\DFSR.exe
22:26:38.0882 5576  DFSR - ok
22:26:38.0960 5576  [ F9F31A9F2A8C0DD0CEB6E380BF0985D4 ] dg_ssudbus      C:\Windows\system32\DRIVERS\ssudbus.sys
22:26:38.0991 5576  dg_ssudbus - ok
22:26:39.0069 5576  [ 9028559C132146FB75EB7ACF384B086A ] Dhcp            C:\Windows\System32\dhcpcsvc.dll
22:26:39.0100 5576  Dhcp - ok
22:26:39.0147 5576  [ 5D4AEFC3386920236A548271F8F1AF6A ] disk            C:\Windows\system32\drivers\disk.sys
22:26:39.0162 5576  disk - ok
22:26:39.0209 5576  [ 57D762F6F5974AF0DA2BE88A3349BAAA ] Dnscache        C:\Windows\System32\dnsrslvr.dll
22:26:39.0256 5576  Dnscache - ok
22:26:39.0287 5576  [ 324FD74686B1EF5E7C19A8AF49E748F6 ] dot3svc         C:\Windows\System32\dot3svc.dll
22:26:39.0334 5576  dot3svc - ok
22:26:39.0381 5576  [ A622E888F8AA2F6B49E9BC466F0E5DEF ] DPS             C:\Windows\system32\dps.dll
22:26:39.0428 5576  DPS - ok
22:26:39.0459 5576  [ 97FEF831AB90BEE128C9AF390E243F80 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
22:26:39.0506 5576  drmkaud - ok
22:26:39.0568 5576  [ C68AC676B0EF30CFBB1080ADCE49EB1F ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
22:26:39.0646 5576  DXGKrnl - ok
22:26:39.0693 5576  [ F88FB26547FD2CE6D0A5AF2985892C48 ] E1G60           C:\Windows\system32\DRIVERS\E1G60I32.sys
22:26:39.0755 5576  E1G60 - ok
22:26:39.0786 5576  [ C0B95E40D85CD807D614E264248A45B9 ] EapHost         C:\Windows\System32\eapsvc.dll
22:26:39.0833 5576  EapHost - ok
22:26:39.0896 5576  [ 7F64EA048DCFAC7ACF8B4D7B4E6FE371 ] Ecache          C:\Windows\system32\drivers\ecache.sys
22:26:39.0911 5576  Ecache - ok
22:26:40.0005 5576  [ 9BE3744D295A7701EB425332014F0797 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
22:26:40.0036 5576  ehRecvr - ok
22:26:40.0067 5576  [ AD1870C8E5D6DD340C829E6074BF3C3F ] ehSched         C:\Windows\ehome\ehsched.exe
22:26:40.0145 5576  ehSched - ok
22:26:40.0161 5576  [ C27C4EE8926E74AA72EFCAB24C5242C3 ] ehstart         C:\Windows\ehome\ehstart.dll
22:26:40.0192 5576  ehstart - ok
22:26:40.0239 5576  [ D71233D7CCC2E64F8715A20428D5A33B ] ElbyCDIO        C:\Windows\system32\Drivers\ElbyCDIO.sys
22:26:40.0254 5576  ElbyCDIO - ok
22:26:40.0301 5576  [ E8F3F21A71720C84BCF423B80028359F ] elxstor         C:\Windows\system32\drivers\elxstor.sys
22:26:40.0317 5576  elxstor - ok
22:26:40.0457 5576  [ 4E6B23DFC917EA39306B529B773950F4 ] EMDMgmt         C:\Windows\system32\emdmgmt.dll
22:26:40.0785 5576  EMDMgmt - ok
22:26:40.0878 5576  [ 67058C46504BC12D821F38CF99B7B28F ] EventSystem     C:\Windows\system32\es.dll
22:26:40.0925 5576  EventSystem - ok
22:26:41.0003 5576  [ 22B408651F9123527BCEE54B4F6C5CAE ] exfat           C:\Windows\system32\drivers\exfat.sys
22:26:41.0050 5576  exfat - ok
22:26:41.0097 5576  [ 1E9B9A70D332103C52995E957DC09EF8 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
22:26:41.0159 5576  fastfat - ok
22:26:41.0175 5576  [ 63BDADA84951B9C03E641800E176898A ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
22:26:41.0253 5576  fdc - ok
22:26:41.0300 5576  [ 6629B5F0E98151F4AFDD87567EA32BA3 ] fdPHost         C:\Windows\system32\fdPHost.dll
22:26:41.0331 5576  fdPHost - ok
22:26:41.0362 5576  [ 89ED56DCE8E47AF40892778A5BD31FD2 ] FDResPub        C:\Windows\system32\fdrespub.dll
22:26:41.0440 5576  FDResPub - ok
22:26:41.0487 5576  [ A8C0139A884861E3AAE9CFE73B208A9F ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
22:26:41.0502 5576  FileInfo - ok
22:26:41.0534 5576  [ 0AE429A696AECBC5970E3CF2C62635AE ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
22:26:41.0580 5576  Filetrace - ok
22:26:41.0674 5576  [ 167D24A045499EBEF438F231976158DF ] FirebirdServerMAGIXInstance C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe
22:26:41.0799 5576  FirebirdServerMAGIXInstance ( UnsignedFile.Multi.Generic ) - warning
22:26:41.0799 5576  FirebirdServerMAGIXInstance - detected UnsignedFile.Multi.Generic (1)
22:26:41.0877 5576  [ 227846995AFEEFA70D328BF5334A86A5 ] FLEXnet Licensing Service C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
22:26:41.0970 5576  FLEXnet Licensing Service ( UnsignedFile.Multi.Generic ) - warning
22:26:41.0970 5576  FLEXnet Licensing Service - detected UnsignedFile.Multi.Generic (1)
22:26:42.0002 5576  [ 6603957EFF5EC62D25075EA8AC27DE68 ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
22:26:42.0095 5576  flpydisk - ok
22:26:42.0126 5576  [ 01334F9EA68E6877C4EF05D3EA8ABB05 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
22:26:42.0158 5576  FltMgr - ok
22:26:42.0220 5576  [ 8CE364388C8ECA59B14B539179276D44 ] FontCache       C:\Windows\system32\FntCache.dll
22:26:42.0376 5576  FontCache - ok
22:26:42.0454 5576  [ C7FBDD1ED42F82BFA35167A5C9803EA3 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
22:26:42.0470 5576  FontCache3.0.0.0 - ok
22:26:42.0501 5576  [ B972A66758577E0BFD1DE0F91AAA27B5 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
22:26:42.0563 5576  Fs_Rec - ok
22:26:42.0594 5576  [ 4E1CD0A45C50A8882616CAE5BF82F3C5 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
22:26:42.0610 5576  gagp30kx - ok
22:26:42.0657 5576  [ 8182FF89C65E4D38B2DE4BB0FB18564E ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
22:26:42.0672 5576  GEARAspiWDM - ok
22:26:42.0719 5576  [ 007AEA2E06E7CEF7372E40C277163959 ] ggflt           C:\Windows\system32\DRIVERS\ggflt.sys
22:26:42.0735 5576  ggflt - ok
22:26:42.0750 5576  [ C73DE35960CA75C5AB4AE636B127C64E ] ggsemc          C:\Windows\system32\DRIVERS\ggsemc.sys
22:26:42.0766 5576  ggsemc - ok
22:26:42.0828 5576  [ CD5D0AEEE35DFD4E986A5AA1500A6E66 ] gpsvc           C:\Windows\System32\gpsvc.dll
22:26:42.0953 5576  gpsvc - ok
22:26:43.0047 5576  [ CC839E8D766CC31A7710C9F38CF3E375 ] gusvc           C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
22:26:43.0062 5576  gusvc - ok
22:26:43.0125 5576  [ CB04C744BE0A61B1D648FAED182C3B59 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
22:26:43.0203 5576  HdAudAddService - ok
22:26:43.0265 5576  [ 062452B7FFD68C8C042A6261FE8DFF4A ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
22:26:43.0406 5576  HDAudBus - ok
22:26:43.0437 5576  [ 1338520E78D90154ED6BE8F84DE5FCEB ] HidBth          C:\Windows\system32\drivers\hidbth.sys
22:26:43.0515 5576  HidBth - ok
22:26:43.0530 5576  [ FF3160C3A2445128C5A6D9B076DA519E ] HidIr           C:\Windows\system32\drivers\hidir.sys
22:26:43.0608 5576  HidIr - ok
22:26:43.0655 5576  [ 84067081F3318162797385E11A8F0582 ] hidserv         C:\Windows\system32\hidserv.dll
22:26:43.0686 5576  hidserv - ok
22:26:43.0718 5576  [ CCA4B519B17E23A00B826C55716809CC ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
22:26:43.0764 5576  HidUsb - ok
22:26:43.0796 5576  [ D8AD255B37DA92434C26E4876DB7D418 ] hkmsvc          C:\Windows\system32\kmsvc.dll
22:26:43.0858 5576  hkmsvc - ok
22:26:43.0874 5576  [ DF353B401001246853763C4B7AAA6F50 ] HpCISSs         C:\Windows\system32\drivers\hpcisss.sys
22:26:43.0889 5576  HpCISSs - ok
22:26:43.0952 5576  [ F870AA3E254628EBEAFE754108D664DE ] HTTP            C:\Windows\system32\drivers\HTTP.sys
22:26:44.0061 5576  HTTP - ok
22:26:44.0076 5576  hwdatacard - ok
22:26:44.0123 5576  [ 324C2152FF2C61ABAE92D09F3CCA4D63 ] i2omp           C:\Windows\system32\drivers\i2omp.sys
22:26:44.0139 5576  i2omp - ok
22:26:44.0217 5576  [ 22D56C8184586B7A1F6FA60BE5F5A2BD ] i8042prt        C:\Windows\system32\DRIVERS\i8042prt.sys
22:26:44.0248 5576  i8042prt - ok
22:26:44.0279 5576  [ C957BF4B5D80B46C5017BF0101E6C906 ] iaStorV         C:\Windows\system32\drivers\iastorv.sys
22:26:44.0310 5576  iaStorV - ok
22:26:44.0373 5576  [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT        C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
22:26:44.0388 5576  IDriverT ( UnsignedFile.Multi.Generic ) - warning
22:26:44.0388 5576  IDriverT - detected UnsignedFile.Multi.Generic (1)
22:26:44.0466 5576  [ 98477B08E61945F974ED9FDC4CB6BDAB ] idsvc           C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
22:26:44.0576 5576  idsvc - ok
22:26:44.0607 5576  [ 2D077BF86E843F901D8DB709C95B49A5 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
22:26:44.0622 5576  iirsp - ok
22:26:44.0669 5576  [ 9908D8A397B76CD8D31D0D383C5773C9 ] IKEEXT          C:\Windows\System32\ikeext.dll
22:26:44.0747 5576  IKEEXT - ok
22:26:44.0841 5576  [ B84732D9F8459ABF6323D28A3270DC19 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
22:26:44.0981 5576  IntcAzAudAddService - ok
22:26:45.0044 5576  [ 97469037714070E45194ED318D636401 ] intelide        C:\Windows\system32\drivers\intelide.sys
22:26:45.0044 5576  intelide - ok
22:26:45.0075 5576  [ CE44CC04262F28216DD4341E9E36A16F ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
22:26:45.0137 5576  intelppm - ok
22:26:45.0184 5576  [ 9AC218C6E6105477484C6FDBE7D409A4 ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
22:26:45.0231 5576  IPBusEnum - ok
22:26:45.0262 5576  [ 62C265C38769B864CB25B4BCF62DF6C3 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
22:26:45.0309 5576  IpFilterDriver - ok
22:26:45.0356 5576  [ 1998BD97F950680BB55F55A7244679C2 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
22:26:45.0402 5576  iphlpsvc - ok
22:26:45.0402 5576  IpInIp - ok
22:26:45.0449 5576  [ 40F34F8ABA2A015D780E4B09138B6C17 ] IPMIDRV         C:\Windows\system32\drivers\ipmidrv.sys
22:26:45.0527 5576  IPMIDRV - ok
22:26:45.0574 5576  [ 8793643A67B42CEC66490B2A0CF92D68 ] IPNAT           C:\Windows\system32\DRIVERS\ipnat.sys
22:26:45.0636 5576  IPNAT - ok
22:26:45.0668 5576  [ 109C0DFB82C3632FBD11949B73AEEAC9 ] IRENUM          C:\Windows\system32\drivers\irenum.sys
22:26:45.0714 5576  IRENUM - ok
22:26:45.0777 5576  [ 350FCA7E73CF65BCEF43FAE1E4E91293 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
22:26:45.0792 5576  isapnp - ok
22:26:45.0855 5576  [ 232FA340531D940AAC623B121A595034 ] iScsiPrt        C:\Windows\system32\DRIVERS\msiscsi.sys
22:26:45.0870 5576  iScsiPrt - ok
22:26:45.0902 5576  [ BCED60D16156E428F8DF8CF27B0DF150 ] iteatapi        C:\Windows\system32\drivers\iteatapi.sys
22:26:45.0917 5576  iteatapi - ok
22:26:45.0948 5576  [ 06FA654504A498C30ADCA8BEC4E87E7E ] iteraid         C:\Windows\system32\drivers\iteraid.sys
22:26:45.0964 5576  iteraid - ok
22:26:45.0995 5576  IvtBtBUs - ok
22:26:46.0042 5576  [ 37605E0A8CF00CBBA538E753E4344C6E ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
22:26:46.0058 5576  kbdclass - ok
22:26:46.0073 5576  [ D2600CB17B7408B4A83F231DC9A11AC3 ] kbdhid          C:\Windows\system32\drivers\kbdhid.sys
22:26:46.0151 5576  kbdhid - ok
22:26:46.0182 5576  [ A3E186B4B935905B829219502557314E ] KeyIso          C:\Windows\system32\lsass.exe
22:26:46.0229 5576  KeyIso - ok
22:26:46.0276 5576  [ A383F2CEA0A8F4E76E71ABC869BD5748 ] KR10I           C:\Windows\system32\drivers\kr10i.sys
22:26:46.0323 5576  KR10I - ok
22:26:46.0354 5576  [ 6E9922332386C2A49936B30B2B6FD298 ] KR10N           C:\Windows\system32\drivers\kr10n.sys
22:26:46.0385 5576  KR10N - ok
22:26:46.0432 5576  [ 4A1445EFA932A3BAF5BDB02D7131EE20 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
22:26:46.0479 5576  KSecDD - ok
22:26:46.0541 5576  [ 8078F8F8F7A79E2E6B494523A828C585 ] KtmRm           C:\Windows\system32\msdtckrm.dll
22:26:46.0619 5576  KtmRm - ok
22:26:46.0650 5576  [ 1BF5EEBFD518DD7298434D8C862F825D ] LanmanServer    C:\Windows\system32\srvsvc.dll
22:26:46.0697 5576  LanmanServer - ok
22:26:46.0744 5576  [ 1DB69705B695B987082C8BAEC0C6B34F ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
22:26:46.0806 5576  LanmanWorkstation - ok
22:26:46.0838 5576  [ D1C5883087A0C3F1344D9D55A44901F6 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
22:26:46.0884 5576  lltdio - ok
22:26:46.0916 5576  [ 2D5A428872F1442631D0959A34ABFF63 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
22:26:46.0962 5576  lltdsvc - ok
22:26:47.0009 5576  [ 35D40113E4A5B961B6CE5C5857702518 ] lmhosts         C:\Windows\System32\lmhsvc.dll
22:26:47.0072 5576  lmhosts - ok
22:26:47.0087 5576  [ 515FC18CABEE0158A324B08B1C2667CF ] LPCFilter       C:\Windows\system32\DRIVERS\LPCFilter.sys
22:26:47.0118 5576  LPCFilter - ok
22:26:47.0150 5576  [ A2262FB9F28935E862B4DB46438C80D2 ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
22:26:47.0165 5576  LSI_FC - ok
22:26:47.0196 5576  [ 30D73327D390F72A62F32C103DAF1D6D ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
22:26:47.0212 5576  LSI_SAS - ok
22:26:47.0228 5576  [ E1E36FEFD45849A95F1AB81DE0159FE3 ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
22:26:47.0243 5576  LSI_SCSI - ok
22:26:47.0290 5576  [ 8F5C7426567798E62A3B3614965D62CC ] luafv           C:\Windows\system32\drivers\luafv.sys
22:26:47.0337 5576  luafv - ok
22:26:47.0368 5576  [ 65E794E86468B61F2BC79ABC48BC4433 ] MBAMProtector   C:\Windows\system32\drivers\mbam.sys
22:26:47.0384 5576  MBAMProtector - ok
22:26:47.0462 5576  [ 0DCF16B1449811EFA47AB52CAC84093C ] MBAMScheduler   C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
22:26:47.0493 5576  MBAMScheduler - ok
22:26:47.0540 5576  [ 9EAABA4D601004BEA4DAA6E146E19A96 ] MBAMService     C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
22:26:47.0586 5576  MBAMService - ok
22:26:47.0649 5576  [ AEF9BABB8A506BC4CE0451A64AADED46 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
22:26:47.0680 5576  Mcx2Svc - ok
22:26:47.0711 5576  [ D153B14FC6598EAE8422A2037553ADCE ] megasas         C:\Windows\system32\drivers\megasas.sys
22:26:47.0727 5576  megasas - ok
22:26:47.0742 5576  [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] MMCSS           C:\Windows\system32\mmcss.dll
22:26:47.0805 5576  MMCSS - ok
22:26:47.0836 5576  [ E13B5EA0F51BA5B1512EC671393D09BA ] Modem           C:\Windows\system32\drivers\modem.sys
22:26:47.0883 5576  Modem - ok
22:26:47.0930 5576  [ 0A9BB33B56E294F686ABB7C1E4E2D8A8 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
22:26:47.0976 5576  monitor - ok
22:26:48.0008 5576  [ 5BF6A1326A335C5298477754A506D263 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
22:26:48.0023 5576  mouclass - ok
22:26:48.0070 5576  [ 93B8D4869E12CFBE663915502900876F ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
22:26:48.0132 5576  mouhid - ok
22:26:48.0195 5576  [ BDAFC88AA6B92F7842416EA6A48E1600 ] MountMgr        C:\Windows\system32\drivers\mountmgr.sys
22:26:48.0210 5576  MountMgr - ok
22:26:48.0273 5576  [ 46297FA8E30A6007F14118FC2B942FBC ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
22:26:48.0304 5576  MozillaMaintenance - ok
22:26:48.0351 5576  [ 583A41F26278D9E0EA548163D6139397 ] mpio            C:\Windows\system32\drivers\mpio.sys
22:26:48.0382 5576  mpio - ok
22:26:48.0429 5576  [ 22241FEBA9B2DEFA669C8CB0A8DD7D2E ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
22:26:48.0476 5576  mpsdrv - ok
22:26:48.0522 5576  [ 5DE62C6E9108F14F6794060A9BDECAEC ] MpsSvc          C:\Windows\system32\mpssvc.dll
22:26:48.0585 5576  MpsSvc - ok
22:26:48.0616 5576  [ 4FBBB70D30FD20EC51F80061703B001E ] Mraid35x        C:\Windows\system32\drivers\mraid35x.sys
22:26:48.0647 5576  Mraid35x - ok
22:26:48.0694 5576  [ 82CEA0395524AACFEB58BA1448E8325C ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
22:26:48.0710 5576  MRxDAV - ok
22:26:48.0756 5576  [ 1E94971C4B446AB2290DEB71D01CF0C2 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
22:26:48.0788 5576  mrxsmb - ok
22:26:48.0834 5576  [ 4FCCB34D793B116423209C0F8B7A3B03 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
22:26:48.0866 5576  mrxsmb10 - ok
22:26:48.0881 5576  [ C3CB1B40AD4A0124D617A1199B0B9D7C ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
22:26:48.0912 5576  mrxsmb20 - ok
22:26:48.0959 5576  [ 742AED7939E734C36B7E8D6228CE26B7 ] msahci          C:\Windows\system32\drivers\msahci.sys
22:26:48.0975 5576  msahci - ok
22:26:49.0006 5576  [ 3FC82A2AE4CC149165A94699183D3028 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
22:26:49.0022 5576  msdsm - ok
22:26:49.0053 5576  [ FD7520CC3A80C5FC8C48852BB24C6DED ] MSDTC           C:\Windows\System32\msdtc.exe
22:26:49.0100 5576  MSDTC - ok
22:26:49.0162 5576  [ A9927F4A46B816C92F461ACB90CF8515 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
22:26:49.0209 5576  Msfs - ok
22:26:49.0256 5576  [ 0F400E306F385C56317357D6DEA56F62 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
22:26:49.0271 5576  msisadrv - ok
22:26:49.0302 5576  [ 85466C0757A23D9A9AECDC0755203CB2 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
22:26:49.0365 5576  MSiSCSI - ok
22:26:49.0365 5576  msiserver - ok
22:26:49.0412 5576  [ D8C63D34D9C9E56C059E24EC7185CC07 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
22:26:49.0458 5576  MSKSSRV - ok
22:26:49.0521 5576  [ 1D373C90D62DDB641D50E55B9E78D65E ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
22:26:49.0568 5576  MSPCLOCK - ok
22:26:49.0583 5576  [ B572DA05BF4E098D4BBA3A4734FB505B ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
22:26:49.0646 5576  MSPQM - ok
22:26:49.0677 5576  [ B49456D70555DE905C311BCDA6EC6ADB ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
22:26:49.0708 5576  MsRPC - ok
22:26:49.0755 5576  [ E384487CB84BE41D09711C30CA79646C ] mssmbios        C:\Windows\system32\DRIVERS\mssmbios.sys
22:26:49.0770 5576  mssmbios - ok
22:26:49.0786 5576  [ 7199C1EEC1E4993CAF96B8C0A26BD58A ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
22:26:49.0833 5576  MSTEE - ok
22:26:49.0848 5576  [ 6A57B5733D4CB702C8EA4542E836B96C ] Mup             C:\Windows\system32\Drivers\mup.sys
22:26:49.0864 5576  Mup - ok
22:26:49.0911 5576  [ E4EAF0C5C1B41B5C83386CF212CA9584 ] napagent        C:\Windows\system32\qagentRT.dll
22:26:49.0958 5576  napagent - ok
22:26:49.0989 5576  [ 85C44FDFF9CF7E72A40DCB7EC06A4416 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
22:26:50.0020 5576  NativeWifiP - ok
22:26:50.0082 5576  [ 1357274D1883F68300AEADD15D7BBB42 ] NDIS            C:\Windows\system32\drivers\ndis.sys
22:26:50.0129 5576  NDIS - ok
22:26:50.0160 5576  [ 0E186E90404980569FB449BA7519AE61 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
22:26:50.0207 5576  NdisTapi - ok
22:26:50.0238 5576  [ D6973AA34C4D5D76C0430B181C3CD389 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
22:26:50.0285 5576  Ndisuio - ok
22:26:50.0316 5576  [ 818F648618AE34F729FDB47EC68345C3 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
22:26:50.0348 5576  NdisWan - ok
22:26:50.0394 5576  [ 71DAB552B41936358F3B541AE5997FB3 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
22:26:50.0441 5576  NDProxy - ok
22:26:50.0441 5576  [ BCD093A5A6777CF626434568DC7DBA78 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
22:26:50.0488 5576  NetBIOS - ok
22:26:50.0535 5576  [ ECD64230A59CBD93C85F1CD1CAB9F3F6 ] netbt           C:\Windows\system32\DRIVERS\netbt.sys
22:26:50.0582 5576  netbt - ok
22:26:50.0597 5576  [ A3E186B4B935905B829219502557314E ] Netlogon        C:\Windows\system32\lsass.exe
22:26:50.0628 5576  Netlogon - ok
22:26:50.0660 5576  [ C8052711DAECC48B982434C5116CA401 ] Netman          C:\Windows\System32\netman.dll
22:26:50.0722 5576  Netman - ok
22:26:50.0753 5576  [ 2EF3BBE22E5A5ACD1428EE387A0D0172 ] netprofm        C:\Windows\System32\netprofm.dll
22:26:50.0831 5576  netprofm - ok
22:26:50.0878 5576  [ D6C4E4A39A36029AC0813D476FBD0248 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
22:26:50.0894 5576  NetTcpPortSharing - ok
22:26:50.0909 5576  [ 2E7FB731D4790A1BC6270ACCEFACB36E ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
22:26:50.0925 5576  nfrd960 - ok
22:26:50.0972 5576  [ 2997B15415F9BBE05B5A4C1C85E0C6A2 ] NlaSvc          C:\Windows\System32\nlasvc.dll
22:26:51.0018 5576  NlaSvc - ok
22:26:51.0050 5576  [ D36F239D7CCE1931598E8FB90A0DBC26 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
22:26:51.0081 5576  Npfs - ok
22:26:51.0112 5576  [ 8BB86F0C7EEA2BDED6FE095D0B4CA9BD ] nsi             C:\Windows\system32\nsisvc.dll
22:26:51.0159 5576  nsi - ok
22:26:51.0190 5576  [ 609773E344A97410CE4EBF74A8914FCF ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
22:26:51.0237 5576  nsiproxy - ok
22:26:51.0315 5576  [ 6A4A98CEE84CF9E99564510DDA4BAA47 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
22:26:51.0408 5576  Ntfs - ok
22:26:51.0440 5576  [ E875C093AEC0C978A90F30C9E0DFBB72 ] ntrigdigi       C:\Windows\system32\drivers\ntrigdigi.sys
22:26:51.0502 5576  ntrigdigi - ok
22:26:51.0549 5576  [ C5DBBCDA07D780BDA9B685DF333BB41E ] Null            C:\Windows\system32\drivers\Null.sys
22:26:51.0580 5576  Null - ok
22:26:51.0596 5576  [ E69E946F80C1C31C53003BFBF50CBB7C ] nvraid          C:\Windows\system32\drivers\nvraid.sys
22:26:51.0627 5576  nvraid - ok
22:26:51.0627 5576  [ 9E0BA19A28C498A6D323D065DB76DFFC ] nvstor          C:\Windows\system32\drivers\nvstor.sys
22:26:51.0642 5576  nvstor - ok
22:26:51.0674 5576  [ 07C186427EB8FCC3D8D7927187F260F7 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
22:26:51.0689 5576  nv_agp - ok
22:26:51.0689 5576  NwlnkFlt - ok
22:26:51.0705 5576  NwlnkFwd - ok
22:26:51.0798 5576  [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv          C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
22:26:51.0845 5576  odserv - ok
22:26:51.0892 5576  [ 6F310E890D46E246E0E261A63D9B36B4 ] ohci1394        C:\Windows\system32\DRIVERS\ohci1394.sys
22:26:51.0970 5576  ohci1394 - ok
22:26:52.0048 5576  [ 5A432A042DAE460ABE7199B758E8606C ] ose             C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
22:26:52.0064 5576  ose - ok
22:26:52.0157 5576  [ 0C8E8E61AD1EB0B250B846712C917506 ] p2pimsvc        C:\Windows\system32\p2psvc.dll
22:26:52.0298 5576  p2pimsvc - ok
22:26:52.0313 5576  [ 0C8E8E61AD1EB0B250B846712C917506 ] p2psvc          C:\Windows\system32\p2psvc.dll
22:26:52.0360 5576  p2psvc - ok
22:26:52.0407 5576  [ 0FA9B5055484649D63C303FE404E5F4D ] Parport         C:\Windows\system32\drivers\parport.sys
22:26:52.0485 5576  Parport - ok
22:26:52.0516 5576  [ B9C2B89F08670E159F7181891E449CD9 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
22:26:52.0532 5576  partmgr - ok
22:26:52.0547 5576  [ 4F9A6A8A31413180D0FCB279AD5D8112 ] Parvdm          C:\Windows\system32\drivers\parvdm.sys
22:26:52.0625 5576  Parvdm - ok
22:26:52.0656 5576  [ C6276AD11F4BB49B58AA1ED88537F14A ] PcaSvc          C:\Windows\System32\pcasvc.dll
22:26:52.0719 5576  PcaSvc - ok
22:26:52.0734 5576  pccsmcfd - ok
22:26:52.0781 5576  [ 941DC1D19E7E8620F40BBC206981EFDB ] pci             C:\Windows\system32\drivers\pci.sys
22:26:52.0797 5576  pci - ok
22:26:52.0828 5576  [ 1636D43F10416AEB483BC6001097B26C ] pciide          C:\Windows\system32\drivers\pciide.sys
22:26:52.0844 5576  pciide - ok
22:26:52.0875 5576  [ 3BB2244F343B610C29C98035504C9B75 ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
22:26:52.0890 5576  pcmcia - ok
22:26:52.0953 5576  [ 6349F6ED9C623B44B52EA3C63C831A92 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
22:26:53.0124 5576  PEAUTH - ok
22:26:53.0234 5576  [ B1689DF169143F57053F795390C99DB3 ] pla             C:\Windows\system32\pla.dll
22:26:53.0374 5576  pla - ok
22:26:53.0421 5576  [ C5E7F8A996EC0A82D508FD9064A5569E ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
22:26:53.0468 5576  PlugPlay - ok
22:26:53.0514 5576  [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPAutoReg     C:\Windows\system32\p2psvc.dll
22:26:53.0561 5576  PNRPAutoReg - ok
22:26:53.0577 5576  [ 0C8E8E61AD1EB0B250B846712C917506 ] PNRPsvc         C:\Windows\system32\p2psvc.dll
22:26:53.0639 5576  PNRPsvc - ok
22:26:53.0702 5576  [ D0494460421A03CD5225CCA0059AA146 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
22:26:53.0795 5576  PolicyAgent - ok
22:26:53.0842 5576  [ ECFFFAEC0C1ECD8DBC77F39070EA1DB1 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
22:26:53.0889 5576  PptpMiniport - ok
22:26:53.0936 5576  [ 0E3CEF5D28B40CF273281D620C50700A ] Processor       C:\Windows\system32\drivers\processr.sys
22:26:54.0014 5576  Processor - ok
22:26:54.0045 5576  [ 0508FAA222D28835310B7BFCA7A77346 ] ProfSvc         C:\Windows\system32\profsvc.dll
22:26:54.0107 5576  ProfSvc - ok
22:26:54.0123 5576  [ A3E186B4B935905B829219502557314E ] ProtectedStorage C:\Windows\system32\lsass.exe
22:26:54.0138 5576  ProtectedStorage - ok
22:26:54.0170 5576  [ 99514FAA8DF93D34B5589187DB3AA0BA ] PSched          C:\Windows\system32\DRIVERS\pacer.sys
22:26:54.0216 5576  PSched - ok
22:26:54.0248 5576  [ 153D02480A0A2F45785522E814C634B6 ] PxHelp20        C:\Windows\system32\Drivers\PxHelp20.sys
22:26:54.0263 5576  PxHelp20 - ok
22:26:54.0310 5576  [ CCDAC889326317792480C0A67156A1EC ] ql2300          C:\Windows\system32\drivers\ql2300.sys
22:26:54.0388 5576  ql2300 - ok
22:26:54.0419 5576  [ 81A7E5C076E59995D54BC1ED3A16E60B ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
22:26:54.0450 5576  ql40xx - ok
22:26:54.0497 5576  [ E9ECAE663F47E6CB43962D18AB18890F ] QWAVE           C:\Windows\system32\qwave.dll
22:26:54.0544 5576  QWAVE - ok
22:26:54.0575 5576  [ 9F5E0E1926014D17486901C88ECA2DB7 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
22:26:54.0622 5576  QWAVEdrv - ok
22:26:54.0669 5576  [ 147D7F9C556D259924351FEB0DE606C3 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
22:26:54.0731 5576  RasAcd - ok
22:26:54.0762 5576  [ F6A452EB4CEADBB51C9E0EE6B3ECEF0F ] RasAuto         C:\Windows\System32\rasauto.dll
22:26:54.0825 5576  RasAuto - ok
22:26:54.0856 5576  [ A214ADBAF4CB47DD2728859EF31F26B0 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
22:26:54.0903 5576  Rasl2tp - ok
22:26:54.0950 5576  [ 75D47445D70CA6F9F894B032FBC64FCF ] RasMan          C:\Windows\System32\rasmans.dll
22:26:54.0996 5576  RasMan - ok
22:26:55.0028 5576  [ 509A98DD18AF4375E1FC40BC175F1DEF ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
22:26:55.0074 5576  RasPppoe - ok
22:26:55.0121 5576  [ 2005F4A1E05FA09389AC85840F0A9E4D ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
22:26:55.0152 5576  RasSstp - ok
22:26:55.0199 5576  [ B14C9D5B9ADD2F84F70570BBBFAA7935 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
22:26:55.0246 5576  rdbss - ok
22:26:55.0277 5576  [ 89E59BE9A564262A3FB6C4F4F1CD9899 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
22:26:55.0340 5576  RDPCDD - ok
22:26:55.0386 5576  [ E8BD98D46F2ED77132BA927FCCB47D8B ] rdpdr           C:\Windows\system32\drivers\rdpdr.sys
22:26:55.0464 5576  rdpdr - ok
22:26:55.0480 5576  [ 9D91FE5286F748862ECFFA05F8A0710C ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
22:26:55.0527 5576  RDPENCDD - ok
22:26:55.0558 5576  [ C127EBD5AFAB31524662C48DFCEB773A ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
22:26:55.0620 5576  RDPWD - ok
22:26:55.0667 5576  [ BCDD6B4804D06B1F7EBF29E53A57ECE9 ] RemoteAccess    C:\Windows\System32\mprdim.dll
22:26:55.0714 5576  RemoteAccess - ok
22:26:55.0745 5576  [ 9E6894EA18DAFF37B63E1005F83AE4AB ] RemoteRegistry  C:\Windows\system32\regsvc.dll
22:26:55.0792 5576  RemoteRegistry - ok
22:26:55.0854 5576  [ 75E8A6BFA7374ABA833AE92BF41AE4E6 ] ROOTMODEM       C:\Windows\system32\Drivers\RootMdm.sys
22:26:55.0886 5576  ROOTMODEM - ok
22:26:55.0917 5576  [ 5123F83CBC4349D065534EEB6BBDC42B ] RpcLocator      C:\Windows\system32\locator.exe
22:26:55.0964 5576  RpcLocator - ok
22:26:55.0995 5576  [ 3B5B4D53FEC14F7476CA29A20CC31AC9 ] RpcSs           C:\Windows\system32\rpcss.dll
22:26:56.0042 5576  RpcSs - ok
22:26:56.0088 5576  [ 9C508F4074A39E8B4B31D27198146FAD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
22:26:56.0135 5576  rspndr - ok
22:26:56.0151 5576  [ 8AC16411B25E29124F6D421ADD58FBE6 ] RTL8169         C:\Windows\system32\DRIVERS\Rtlh86.sys
22:26:56.0198 5576  RTL8169 - ok
22:26:56.0291 5576  [ 12A851F30853A5A8E7B50341FA4B0FFB ] s1018bus        C:\Windows\system32\DRIVERS\s1018bus.sys
22:26:56.0307 5576  s1018bus - ok
22:26:56.0338 5576  [ A0141D5DC689A892B3F30446CBE52575 ] s1018mdfl       C:\Windows\system32\DRIVERS\s1018mdfl.sys
22:26:56.0354 5576  s1018mdfl - ok
22:26:56.0400 5576  [ 07D430E4B2BFDE6B07F31F1DA6E7CAB0 ] s1018mdm        C:\Windows\system32\DRIVERS\s1018mdm.sys
22:26:56.0416 5576  s1018mdm - ok
22:26:56.0463 5576  [ D73C20D3F0F825C8FD23F841CDCB14C0 ] s1018mgmt       C:\Windows\system32\DRIVERS\s1018mgmt.sys
22:26:56.0478 5576  s1018mgmt - ok
22:26:56.0525 5576  [ 895A1A2812DBD5AFDD5CA4686A89A33C ] s1018nd5        C:\Windows\system32\DRIVERS\s1018nd5.sys
22:26:56.0541 5576  s1018nd5 - ok
22:26:56.0572 5576  [ A986E9683C74FA06456FD2AD34BA1490 ] s1018obex       C:\Windows\system32\DRIVERS\s1018obex.sys
22:26:56.0588 5576  s1018obex - ok
22:26:56.0634 5576  [ DA83525924C23F30F37AC1D1F11D6F15 ] s1018unic       C:\Windows\system32\DRIVERS\s1018unic.sys
22:26:56.0650 5576  s1018unic - ok
22:26:56.0666 5576  [ A3E186B4B935905B829219502557314E ] SamSs           C:\Windows\system32\lsass.exe
22:26:56.0681 5576  SamSs - ok
22:26:56.0728 5576  [ 3CE8F073A557E172B330109436984E30 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
22:26:56.0744 5576  sbp2port - ok
22:26:56.0775 5576  [ 77B7A11A0C3D78D3386398FBBEA1B632 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
22:26:56.0822 5576  SCardSvr - ok
22:26:56.0884 5576  [ 1A58069DB21D05EB2AB58EE5753EBE8D ] Schedule        C:\Windows\system32\schedsvc.dll
22:26:56.0962 5576  Schedule - ok
22:26:57.0009 5576  [ 312EC3E37A0A1F2006534913E37B4423 ] SCPolicySvc     C:\Windows\System32\certprop.dll
22:26:57.0040 5576  SCPolicySvc - ok
22:26:57.0071 5576  [ 8F36B54688C31EED4580129040C6A3D3 ] sdbus           C:\Windows\system32\DRIVERS\sdbus.sys
22:26:57.0102 5576  sdbus - ok
22:26:57.0134 5576  [ 716313D9F6B0529D03F726D5AAF6F191 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
22:26:57.0180 5576  SDRSVC - ok
22:26:57.0212 5576  [ 90A3935D05B494A5A39D37E71F09A677 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
22:26:57.0290 5576  secdrv - ok
22:26:57.0321 5576  [ FD5199D4D8A521005E4B5EE7FE00FA9B ] seclogon        C:\Windows\system32\seclogon.dll
22:26:57.0352 5576  seclogon - ok
22:26:57.0383 5576  [ A9BBAB5759771E523F55563D6CBE140F ] SENS            C:\Windows\System32\sens.dll
22:26:57.0430 5576  SENS - ok
22:26:57.0461 5576  [ 68E44E331D46F0FB38F0863A84CD1A31 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
22:26:57.0524 5576  Serenum - ok
22:26:57.0555 5576  [ C70D69A918B178D3C3B06339B40C2E1B ] Serial          C:\Windows\system32\drivers\serial.sys
22:26:57.0633 5576  Serial - ok
22:26:57.0664 5576  [ 8AF3D28A879BF75DB53A0EE7A4289624 ] sermouse        C:\Windows\system32\drivers\sermouse.sys
22:26:57.0695 5576  sermouse - ok
22:26:57.0742 5576  [ D2193326F729B163125610DBF3E17D57 ] SessionEnv      C:\Windows\system32\sessenv.dll
22:26:57.0773 5576  SessionEnv - ok
22:26:57.0820 5576  [ 3EFA810BDCA87F6ECC24F9832243FE86 ] sffdisk         C:\Windows\system32\DRIVERS\sffdisk.sys
22:26:57.0867 5576  sffdisk - ok
22:26:57.0882 5576  [ 8FD08A310645FE872EEEC6E08C6BF3EE ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
22:26:57.0976 5576  sffp_mmc - ok
22:26:58.0007 5576  [ 9F66A46C55D6F1CCABC79BB7AFCCC545 ] sffp_sd         C:\Windows\system32\DRIVERS\sffp_sd.sys
22:26:58.0054 5576  sffp_sd - ok
22:26:58.0085 5576  [ 46ED8E91793B2E6F848015445A0AC188 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
22:26:58.0163 5576  sfloppy - ok
22:26:58.0194 5576  [ E1499BD0FF76B1B2FBBF1AF339D91165 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
22:26:58.0257 5576  SharedAccess - ok
22:26:58.0288 5576  [ C7230FBEE14437716701C15BE02C27B8 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
22:26:58.0350 5576  ShellHWDetection - ok
22:26:58.0366 5576  [ D2A595D6EEBEEAF4334F8E50EFBC9931 ] sisagp          C:\Windows\system32\drivers\sisagp.sys
22:26:58.0382 5576  sisagp - ok
22:26:58.0428 5576  [ CEDD6F4E7D84E9F98B34B3FE988373AA ] SiSRaid2        C:\Windows\system32\drivers\sisraid2.sys
22:26:58.0444 5576  SiSRaid2 - ok
22:26:58.0460 5576  [ DF843C528C4F69D12CE41CE462E973A7 ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
22:26:58.0475 5576  SiSRaid4 - ok
22:26:58.0600 5576  [ 862BB4CBC05D80C5B45BE430E5EF872F ] slsvc           C:\Windows\system32\SLsvc.exe
22:26:58.0912 5576  slsvc - ok
22:26:58.0959 5576  [ 6EDC422215CD78AA8A9CDE6B30ABBD35 ] SLUINotify      C:\Windows\system32\SLUINotify.dll
22:26:59.0006 5576  SLUINotify - ok
22:26:59.0052 5576  [ 7B75299A4D201D6A6533603D6914AB04 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
22:26:59.0099 5576  Smb - ok
22:26:59.0162 5576  [ 2A146A055B4401C16EE62D18B8E2A032 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
22:26:59.0177 5576  SNMPTRAP - ok
22:26:59.0208 5576  [ 7AEBDEEF071FE28B0EEF2CDD69102BFF ] spldr           C:\Windows\system32\drivers\spldr.sys
22:26:59.0224 5576  spldr - ok
22:26:59.0271 5576  [ 8554097E5136C3BF9F69FE578A1B35F4 ] Spooler         C:\Windows\System32\spoolsv.exe
22:26:59.0318 5576  Spooler - ok
22:26:59.0364 5576  [ 41987F9FC0E61ADF54F581E15029AD91 ] srv             C:\Windows\system32\DRIVERS\srv.sys
22:26:59.0411 5576  srv - ok
22:26:59.0442 5576  [ FF33AFF99564B1AA534F58868CBE41EF ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
22:26:59.0474 5576  srv2 - ok
22:26:59.0489 5576  [ 7605C0E1D01A08F3ECD743F38B834A44 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
22:26:59.0536 5576  srvnet - ok
22:26:59.0567 5576  [ 03D50B37234967433A5EA5BA72BC0B62 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
22:26:59.0598 5576  SSDPSRV - ok
22:26:59.0645 5576  [ A36EE93698802CD899F98BFD553D8185 ] ssmdrv          C:\Windows\system32\DRIVERS\ssmdrv.sys
22:26:59.0661 5576  ssmdrv - ok
22:26:59.0708 5576  [ 6F1A32E7B7B30F004D9A20AFADB14944 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
22:26:59.0739 5576  SstpSvc - ok
22:26:59.0786 5576  [ 07318149E102FD9197AB444C27774372 ] ssudmdm         C:\Windows\system32\DRIVERS\ssudmdm.sys
22:26:59.0801 5576  ssudmdm - ok
22:26:59.0864 5576  [ 5DE7D67E49B88F5F07F3E53C4B92A352 ] stisvc          C:\Windows\System32\wiaservc.dll
22:26:59.0957 5576  stisvc - ok
22:26:59.0973 5576  [ 7BA58ECF0C0A9A69D44B3DCA62BECF56 ] swenum          C:\Windows\system32\DRIVERS\swenum.sys
22:26:59.0988 5576  swenum - ok
22:27:00.0035 5576  [ F21FD248040681CCA1FB6C9A03AAA93D ] swprv           C:\Windows\System32\swprv.dll
22:27:00.0098 5576  swprv - ok
22:27:00.0113 5576  [ 192AA3AC01DF071B541094F251DEED10 ] Symc8xx         C:\Windows\system32\drivers\symc8xx.sys
22:27:00.0129 5576  Symc8xx - ok
22:27:00.0160 5576  [ 8C8EB8C76736EBAF3B13B633B2E64125 ] Sym_hi          C:\Windows\system32\drivers\sym_hi.sys
22:27:00.0176 5576  Sym_hi - ok
22:27:00.0191 5576  [ 8072AF52B5FD103BBBA387A1E49F62CB ] Sym_u3          C:\Windows\system32\drivers\sym_u3.sys
22:27:00.0207 5576  Sym_u3 - ok
22:27:00.0254 5576  [ 5EFCEDCF3DAF5C8D9E8B77A34A4EEC99 ] SynTP           C:\Windows\system32\DRIVERS\SynTP.sys
22:27:00.0285 5576  SynTP - ok
22:27:00.0332 5576  [ 9A51B04E9886AA4EE90093586B0BA88D ] SysMain         C:\Windows\system32\sysmain.dll
22:27:00.0441 5576  SysMain - ok
22:27:00.0472 5576  [ 2DCA225EAE15F42C0933E998EE0231C3 ] TabletInputService C:\Windows\System32\TabSvc.dll
22:27:00.0519 5576  TabletInputService - ok
22:27:00.0566 5576  [ D7673E4B38CE21EE54C59EEEB65E2483 ] TapiSrv         C:\Windows\System32\tapisrv.dll
22:27:00.0612 5576  TapiSrv - ok
22:27:00.0659 5576  [ D7F411C5AF992BB44E86083A6AA7B045 ] tbhsd           C:\Windows\system32\drivers\tbhsd.sys
22:27:00.0659 5576  tbhsd - ok
22:27:00.0706 5576  [ CB05822CD9CC6C688168E113C603DBE7 ] TBS             C:\Windows\System32\tbssvc.dll
22:27:00.0753 5576  TBS - ok
22:27:00.0815 5576  [ 27D470DABC77BC60D0A3B0E4DEB6CB91 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
22:27:00.0893 5576  Tcpip - ok
22:27:00.0909 5576  [ 27D470DABC77BC60D0A3B0E4DEB6CB91 ] Tcpip6          C:\Windows\system32\DRIVERS\tcpip.sys
22:27:00.0987 5576  Tcpip6 - ok
22:27:01.0018 5576  [ 608C345A255D82A6289C2D468EB41FD7 ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
22:27:01.0065 5576  tcpipreg - ok
22:27:01.0112 5576  [ 1825BCEB47BF41C5A9F0E44DE82FC27A ] tdcmdpst        C:\Windows\system32\DRIVERS\tdcmdpst.sys
22:27:01.0158 5576  tdcmdpst - ok
22:27:01.0221 5576  [ 5DCF5E267BE67A1AE926F2DF77FBCC56 ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
22:27:01.0268 5576  TDPIPE - ok
22:27:01.0299 5576  [ 389C63E32B3CEFED425B61ED92D3F021 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
22:27:01.0346 5576  TDTCP - ok
22:27:01.0392 5576  [ 76B06EB8A01FC8624D699E7045303E54 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
22:27:01.0439 5576  tdx - ok
22:27:01.0486 5576  [ 3CAD38910468EAB9A6479E2F01DB43C7 ] TermDD          C:\Windows\system32\DRIVERS\termdd.sys
22:27:01.0502 5576  TermDD - ok
22:27:01.0517 5576  [ BB95DA09BEF6E7A131BFF3BA5032090D ] TermService     C:\Windows\System32\termsrv.dll
22:27:01.0595 5576  TermService - ok
22:27:01.0642 5576  [ C7230FBEE14437716701C15BE02C27B8 ] Themes          C:\Windows\system32\shsvcs.dll
22:27:01.0658 5576  Themes - ok
22:27:01.0673 5576  [ 1076FFCFFAAE8385FD62DFCB25AC4708 ] THREADORDER     C:\Windows\system32\mmcss.dll
22:27:01.0720 5576  THREADORDER - ok
22:27:01.0767 5576  [ 28B7F973C36D157A7885B1AE42A4A2A9 ] tifm21          C:\Windows\system32\drivers\tifm21.sys
22:27:01.0814 5576  tifm21 - ok
22:27:01.0892 5576  [ 38E18DCE385FF2DED57423A279559DBC ] TNaviSrv        C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe
22:27:01.0923 5576  TNaviSrv ( UnsignedFile.Multi.Generic ) - warning
22:27:01.0923 5576  TNaviSrv - detected UnsignedFile.Multi.Generic (1)
22:27:01.0970 5576  [ D540858E65BFA6FDED41AD2495ECE344 ] TODDSrv         C:\Windows\system32\TODDSrv.exe
22:27:02.0001 5576  TODDSrv ( UnsignedFile.Multi.Generic ) - warning
22:27:02.0001 5576  TODDSrv - detected UnsignedFile.Multi.Generic (1)
22:27:02.0063 5576  [ 6A54C28B53C6B50D333C8EE974C6B208 ] TosCoSrv        C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
22:27:02.0126 5576  TosCoSrv - ok
22:27:02.0141 5576  TOSHIBA Bluetooth Service - ok
22:27:02.0204 5576  [ 266DF087A8C24DA34FF40CF3DF86CCFB ] tosrfbd         C:\Windows\system32\DRIVERS\tosrfbd.sys
22:27:02.0266 5576  tosrfbd - ok
22:27:02.0266 5576  Tosrfcom - ok
22:27:02.0313 5576  [ 7C807BA9660E2995CC0217A14A24094C ] Tosrfhid        C:\Windows\system32\DRIVERS\Tosrfhid.sys
22:27:02.0344 5576  Tosrfhid - ok
22:27:02.0391 5576  [ CDDA265C7617A2745B48E0DE572012A6 ] Tosrfusb        C:\Windows\system32\DRIVERS\tosrfusb.sys
22:27:02.0438 5576  Tosrfusb - ok
22:27:02.0484 5576  [ 1EA5F27C29405BF49799FECA77186DA9 ] tos_sps32       C:\Windows\system32\DRIVERS\tos_sps32.sys
22:27:02.0547 5576  tos_sps32 - ok
22:27:02.0578 5576  TpChoice - ok
22:27:02.0625 5576  [ EC74E77D0EB004BD3A809B5F8FB8C2CE ] TrkWks          C:\Windows\System32\trkwks.dll
22:27:02.0687 5576  TrkWks - ok
22:27:02.0750 5576  [ 97D9D6A04E3AD9B6C626B9931DB78DBA ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
22:27:02.0796 5576  TrustedInstaller - ok
22:27:02.0828 5576  [ DCF0F056A2E4F52287264F5AB29CF206 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
22:27:02.0890 5576  tssecsrv - ok
22:27:02.0921 5576  [ CAECC0120AC49E3D2F758B9169872D38 ] tunmp           C:\Windows\system32\DRIVERS\tunmp.sys
22:27:02.0952 5576  tunmp - ok
22:27:02.0984 5576  [ 300DB877AC094FEAB0BE7688C3454A9C ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
22:27:03.0015 5576  tunnel - ok
22:27:03.0046 5576  [ 792A8B80F8188ABA4B2BE271583F3E46 ] TVALZ           C:\Windows\system32\DRIVERS\TVALZ_O.SYS
22:27:03.0062 5576  TVALZ - ok
22:27:03.0093 5576  [ C3ADE15414120033A36C0F293D4A4121 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
22:27:03.0108 5576  uagp35 - ok
22:27:03.0155 5576  [ D9728AF68C4C7693CB100B8441CBDEC6 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
22:27:03.0186 5576  udfs - ok
22:27:03.0233 5576  [ ECEF404F62863755951E09C802C94AD5 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
22:27:03.0280 5576  UI0Detect - ok
22:27:03.0311 5576  [ 0A1822D12CF103633893CAF9CAE4E69D ] UimBus          C:\Windows\system32\DRIVERS\UimBus.sys
22:27:03.0327 5576  UimBus - ok
22:27:03.0358 5576  [ 42F7398A76D279E0F63FC600920AB90C ] Uim_IM          C:\Windows\system32\Drivers\Uim_IM.sys
22:27:03.0405 5576  Uim_IM - ok
22:27:03.0420 5576  [ 48AD04132FCAC71E0EEC3DE5FB22D66E ] Uim_Vim         C:\Windows\system32\Drivers\Uim_Vim.sys
22:27:03.0452 5576  Uim_Vim - ok
22:27:03.0514 5576  [ 332D341D92B933600D41953B08360DFB ] UleadBurningHelper C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
22:27:03.0530 5576  UleadBurningHelper ( UnsignedFile.Multi.Generic ) - warning
22:27:03.0530 5576  UleadBurningHelper - detected UnsignedFile.Multi.Generic (1)
22:27:03.0561 5576  [ 75E6890EBFCE0841D3291B02E7A8BDB0 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
22:27:03.0576 5576  uliagpkx - ok
22:27:03.0592 5576  [ 3CD4EA35A6221B85DCC25DAA46313F8D ] uliahci         C:\Windows\system32\drivers\uliahci.sys
22:27:03.0608 5576  uliahci - ok
22:27:03.0639 5576  [ 8514D0E5CD0534467C5FC61BE94A569F ] UlSata          C:\Windows\system32\drivers\ulsata.sys
22:27:03.0654 5576  UlSata - ok
22:27:03.0670 5576  [ 38C3C6E62B157A6BC46594FADA45C62B ] ulsata2         C:\Windows\system32\drivers\ulsata2.sys
22:27:03.0701 5576  ulsata2 - ok
22:27:03.0732 5576  [ 32CFF9F809AE9AED85464492BF3E32D2 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
22:27:03.0764 5576  umbus - ok
22:27:03.0810 5576  [ 68308183F4AE0BE7BF8ECD07CB297999 ] upnphost        C:\Windows\System32\upnphost.dll
22:27:03.0873 5576  upnphost - ok
22:27:03.0920 5576  [ CAF811AE4C147FFCD5B51750C7F09142 ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
22:27:03.0951 5576  usbccgp - ok
22:27:03.0998 5576  [ E9476E6C486E76BC4898074768FB7131 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
22:27:04.0076 5576  usbcir - ok
22:27:04.0107 5576  [ 79E96C23A97CE7B8F14D310DA2DB0C9B ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
22:27:04.0154 5576  usbehci - ok
22:27:04.0169 5576  [ 4673BBCB006AF60E7ABDDBE7A130BA42 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
22:27:04.0200 5576  usbhub - ok
22:27:04.0247 5576  [ CE697FEE0D479290D89BEC80DFE793B7 ] usbohci         C:\Windows\system32\DRIVERS\usbohci.sys
22:27:04.0294 5576  usbohci - ok
22:27:04.0325 5576  [ E75C4B5269091D15A2E7DC0B6D35F2F5 ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
22:27:04.0388 5576  usbprint - ok
22:27:04.0434 5576  [ A508C9BD8724980512136B039BBA65E9 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
22:27:04.0466 5576  usbscan - ok
22:27:04.0512 5576  [ BE3DA31C191BC222D9AD503C5224F2AD ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
22:27:04.0544 5576  USBSTOR - ok
22:27:04.0575 5576  [ 325DBBACB8A36AF9988CCF40EAC228CC ] usbuhci         C:\Windows\system32\DRIVERS\usbuhci.sys
22:27:04.0653 5576  usbuhci - ok
22:27:04.0700 5576  [ 1509E705F3AC1D474C92454A5C2DD81F ] UxSms           C:\Windows\System32\uxsms.dll
22:27:04.0731 5576  UxSms - ok
22:27:04.0793 5576  [ FCE98C43B5C5DB8E0DA8EA0E2B45E044 ] VClone          C:\Windows\system32\DRIVERS\VClone.sys
22:27:04.0840 5576  VClone - ok
22:27:04.0856 5576  VComm - ok
22:27:04.0871 5576  VcommMgr - ok
22:27:04.0918 5576  [ CD88D1B7776DC17A119049742EC07EB4 ] vds             C:\Windows\System32\vds.exe
22:27:04.0980 5576  vds - ok
22:27:05.0027 5576  [ 7D92BE0028ECDEDEC74617009084B5EF ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
22:27:05.0090 5576  vga - ok
22:27:05.0121 5576  [ 2E93AC0A1D8C79D019DB6C51F036636C ] VgaSave         C:\Windows\System32\drivers\vga.sys
22:27:05.0168 5576  VgaSave - ok
22:27:05.0199 5576  [ 045D9961E591CF0674A920B6BA3BA5CB ] viaagp          C:\Windows\system32\drivers\viaagp.sys
22:27:05.0214 5576  viaagp - ok
22:27:05.0246 5576  [ 56A4DE5F02F2E88182B0981119B4DD98 ] ViaC7           C:\Windows\system32\drivers\viac7.sys
22:27:05.0308 5576  ViaC7 - ok
22:27:05.0324 5576  [ FD2E3175FCADA350C7AB4521DCA187EC ] viaide          C:\Windows\system32\drivers\viaide.sys
22:27:05.0339 5576  viaide - ok
22:27:05.0355 5576  [ 69503668AC66C77C6CD7AF86FBDF8C43 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
22:27:05.0386 5576  volmgr - ok
22:27:05.0417 5576  [ 23E41B834759917BFD6B9A0D625D0C28 ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
22:27:05.0448 5576  volmgrx - ok
22:27:05.0495 5576  [ 147281C01FCB1DF9252DE2A10D5E7093 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
22:27:05.0511 5576  volsnap - ok
22:27:05.0558 5576  [ D984439746D42B30FC65A4C3546C6829 ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
22:27:05.0573 5576  vsmraid - ok
22:27:05.0636 5576  [ DB3D19F850C6EB32BDCB9BC0836ACDDB ] VSS             C:\Windows\system32\vssvc.exe
22:27:05.0792 5576  VSS - ok
22:27:05.0838 5576  [ 96EA68B9EB310A69C25EBB0282B2B9DE ] W32Time         C:\Windows\system32\w32time.dll
22:27:05.0901 5576  W32Time - ok
22:27:05.0932 5576  [ 48DFEE8F1AF7C8235D4E626F0C4FE031 ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
22:27:06.0010 5576  WacomPen - ok
22:27:06.0041 5576  [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarp          C:\Windows\system32\DRIVERS\wanarp.sys
22:27:06.0072 5576  Wanarp - ok
22:27:06.0072 5576  [ 55201897378CCA7AF8B5EFD874374A26 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
22:27:06.0104 5576  Wanarpv6 - ok
22:27:06.0135 5576  [ A3CD60FD826381B49F03832590E069AF ] wcncsvc         C:\Windows\System32\wcncsvc.dll
22:27:06.0197 5576  wcncsvc - ok
22:27:06.0228 5576  [ 11BCB7AFCDD7AADACB5746F544D3A9C7 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
22:27:06.0275 5576  WcsPlugInService - ok
22:27:06.0322 5576  [ AFC5AD65B991C1E205CF25CFDBF7A6F4 ] Wd              C:\Windows\system32\drivers\wd.sys
22:27:06.0338 5576  Wd - ok
22:27:06.0384 5576  [ B6F0A7AD6D4BD325FBCD8BAC96CD8D96 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
22:27:06.0416 5576  Wdf01000 - ok
22:27:06.0478 5576  [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiServiceHost  C:\Windows\system32\wdi.dll
22:27:06.0525 5576  WdiServiceHost - ok
22:27:06.0525 5576  [ ABFC76B48BB6C96E3338D8943C5D93B5 ] WdiSystemHost   C:\Windows\system32\wdi.dll
22:27:06.0572 5576  WdiSystemHost - ok
22:27:06.0603 5576  [ 04C37D8107320312FBAE09926103D5E2 ] WebClient       C:\Windows\System32\webclnt.dll
22:27:06.0634 5576  WebClient - ok
22:27:06.0665 5576  [ AE3736E7E8892241C23E4EBBB7453B60 ] Wecsvc          C:\Windows\system32\wecsvc.dll
22:27:06.0712 5576  Wecsvc - ok
22:27:06.0743 5576  [ 670FF720071ED741206D69BD995EA453 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
22:27:06.0790 5576  wercplsupport - ok
22:27:06.0837 5576  [ 32B88481D3B326DA6DEB07B1D03481E7 ] WerSvc          C:\Windows\System32\WerSvc.dll
22:27:06.0884 5576  WerSvc - ok
22:27:06.0930 5576  [ 4575AA12561C5648483403541D0D7F2B ] WinDefend       C:\Program Files\Windows Defender\mpsvc.dll
22:27:06.0962 5576  WinDefend - ok
22:27:06.0962 5576  WinHttpAutoProxySvc - ok
22:27:07.0008 5576  [ 6B2A1D0E80110E3D04E6863C6E62FD8A ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
22:27:07.0040 5576  Winmgmt - ok
22:27:07.0102 5576  [ 7CFE68BDC065E55AA5E8421607037511 ] WinRM           C:\Windows\system32\WsmSvc.dll
22:27:07.0258 5576  WinRM - ok
22:27:07.0320 5576  [ C008405E4FEEB069E30DA1D823910234 ] Wlansvc         C:\Windows\System32\wlansvc.dll
22:27:07.0430 5576  Wlansvc - ok
22:27:07.0461 5576  [ 701A9F884A294327E9141D73746EE279 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
22:27:07.0539 5576  WmiAcpi - ok
22:27:07.0586 5576  [ 43BE3875207DCB62A85C8C49970B66CC ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
22:27:07.0617 5576  wmiApSrv - ok
22:27:07.0710 5576  [ 3978704576A121A9204F8CC49A301A9B ] WMPNetworkSvc   C:\Program Files\Windows Media Player\wmpnetwk.exe
22:27:07.0835 5576  WMPNetworkSvc - ok
22:27:07.0882 5576  [ CFC5A04558F5070CEE3E3A7809F3FF52 ] WPCSvc          C:\Windows\System32\wpcsvc.dll
22:27:07.0960 5576  WPCSvc - ok
22:27:07.0991 5576  [ 801FBDB89D472B3C467EB112A0FC9246 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
22:27:08.0022 5576  WPDBusEnum - ok
22:27:08.0069 5576  [ DE9D36F91A4DF3D911626643DEBF11EA ] WpdUsb          C:\Windows\system32\DRIVERS\wpdusb.sys
22:27:08.0100 5576  WpdUsb - ok
22:27:08.0241 5576  [ DCF3E3EDF5109EE8BC02FE6E1F045795 ] WPFFontCache_v0400 C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
22:27:08.0350 5576  WPFFontCache_v0400 - ok
22:27:08.0397 5576  [ E3A3CB253C0EC2494D4A61F5E43A389C ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
22:27:08.0428 5576  ws2ifsl - ok
22:27:08.0459 5576  [ 1CA6C40261DDC0425987980D0CD2AAAB ] wscsvc          C:\Windows\System32\wscsvc.dll
22:27:08.0475 5576  wscsvc - ok
22:27:08.0490 5576  WSearch - ok
22:27:08.0568 5576  [ FC3EC24FCE372C89423E015A2AC1A31E ] wuauserv        C:\Windows\system32\wuaueng.dll
22:27:08.0724 5576  wuauserv - ok
22:27:08.0771 5576  [ AC13CB789D93412106B0FB6C7EB2BCB6 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
22:27:08.0802 5576  WUDFRd - ok
22:27:08.0834 5576  [ 575A4190D989F64732119E4114045A4F ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
22:27:08.0865 5576  wudfsvc - ok
22:27:08.0896 5576  ================ Scan global ===============================
22:27:08.0912 5576  [ F31EEBC1A1C81FD04005489CC3DCDFE7 ] C:\Windows\system32\basesrv.dll
22:27:08.0958 5576  [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
22:27:08.0974 5576  [ D2293B069E4B63DC17B2F08D45E71124 ] C:\Windows\system32\winsrv.dll
22:27:09.0021 5576  [ D4E6D91C1349B7BFB3599A6ADA56851B ] C:\Windows\system32\services.exe
22:27:09.0021 5576  [Global] - ok
22:27:09.0021 5576  ================ Scan MBR ==================================
22:27:09.0036 5576  [ 5C616939100B85E558DA92B899A0FC36 ] \Device\Harddisk0\DR0
22:27:09.0380 5576  \Device\Harddisk0\DR0 - ok
22:27:09.0380 5576  ================ Scan VBR ==================================
22:27:09.0395 5576  [ BDB5C099E84C3DC435440315BBD1E215 ] \Device\Harddisk0\DR0\Partition1
22:27:09.0395 5576  \Device\Harddisk0\DR0\Partition1 - ok
22:27:09.0411 5576  [ 1EB40DBB2D0319FA613994585909E183 ] \Device\Harddisk0\DR0\Partition2
22:27:09.0411 5576  \Device\Harddisk0\DR0\Partition2 - ok
22:27:09.0426 5576  ============================================================
22:27:09.0426 5576  Scan finished
22:27:09.0426 5576  ============================================================
22:27:09.0442 2408  Detected object count: 7
22:27:09.0442 2408  Actual detected object count: 7
22:27:30.0206 2408  CFSvcs ( UnsignedFile.Multi.Generic ) - skipped by user
22:27:30.0206 2408  CFSvcs ( UnsignedFile.Multi.Generic ) - User select action: Skip 
22:27:30.0206 2408  FirebirdServerMAGIXInstance ( UnsignedFile.Multi.Generic ) - skipped by user
22:27:30.0206 2408  FirebirdServerMAGIXInstance ( UnsignedFile.Multi.Generic ) - User select action: Skip 
22:27:30.0206 2408  FLEXnet Licensing Service ( UnsignedFile.Multi.Generic ) - skipped by user
22:27:30.0206 2408  FLEXnet Licensing Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 
22:27:30.0221 2408  IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
22:27:30.0221 2408  IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip 
22:27:30.0221 2408  TNaviSrv ( UnsignedFile.Multi.Generic ) - skipped by user
22:27:30.0221 2408  TNaviSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 
22:27:30.0237 2408  TODDSrv ( UnsignedFile.Multi.Generic ) - skipped by user
22:27:30.0237 2408  TODDSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip 
22:27:30.0237 2408  UleadBurningHelper ( UnsignedFile.Multi.Generic ) - skipped by user
22:27:30.0237 2408  UleadBurningHelper ( UnsignedFile.Multi.Generic ) - User select action: Skip
         
__________________


Alt 19.09.2012, 09:31   #18
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Rechner gesperrt - Standard

Rechner gesperrt



Dann bitte jetzt CF ausführen:

ComboFix

Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Schliesse alle Programme, vor allem dein Antivirenprogramm und andere Hintergrundwächter sowie deinen Internetbrowser.
  • Starte combofix.exe von deinem Desktop aus, bestätige die Warnmeldungen, führe die Updates durch (falls vorgeschlagen), installiere die Wiederherstellungskonsole (falls vorgeschlagen) und lass dein System durchsuchen.
    Vermeide es auch während Combofix läuft die Maus und Tastatur zu benutzen.
  • Im Anschluss öffnet sich automatisch eine combofix.txt, diesen Inhalt bitte kopieren ([Strg]a, [Strg]c) und in deinen Beitrag einfügen ([Strg]v). Die Datei findest du außerdem unter: C:\ComboFix.txt.
Wichtiger Hinweis:
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!

Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich ziehen und eine Bereinigung der Infektion noch erschweren.

Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie

Zitat:
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
startest du Windows dann manuell neu und die Fehlermeldungen sollten nicht mehr auftauchen.
__________________
__________________

Alt 19.09.2012, 17:07   #19
traudel769
 
Rechner gesperrt - Standard

Rechner gesperrt



Wiederherstellungskonsole wurde nicht vorgeschlagen
Ich hoffe es ist richtig, dass ich das wieder i Code-tags poste.

VG


[code] Combofix Logfile:
Code:
ATTFilter
ComboFix 12-09-18.07 - Susan 19.09.2012  17:34:45.1.2 - x86
Microsoft® Windows Vista™ Home Premium   6.0.6002.2.1252.49.1031.18.1917.947 [GMT 2:00]
ausgeführt von:: c:\users\Susan\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((   Weitere Löschungen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Susan\AppData\Roaming\Microsoft\Windows\Recent\mxfilerelatedcache.mxc2
c:\users\Susan\Favorites\mxfilerelatedcache.mxc2
c:\windows\security\Database\tmp.edb
c:\windows\system32\spool\prtprocs\w32x86\ppbiPr.dll
.
.
(((((((((((((((((((((((   Dateien erstellt von 2012-08-19 bis 2012-09-19  ))))))))))))))))))))))))))))))
.
.
2012-09-19 15:45 . 2012-09-19 15:45	--------	dc----w-	c:\users\Saskia\AppData\Local\temp
2012-09-19 15:45 . 2012-09-19 15:45	--------	dc----w-	c:\users\Default\AppData\Local\temp
2012-09-19 15:25 . 2012-08-23 07:15	7022536	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{5F5E50F0-B904-4EB9-B4C7-BB7FB26408A2}\mpengine.dll
2012-09-17 15:15 . 2012-09-17 15:15	--------	dc----w-	C:\_OTL
2012-09-13 04:25 . 2012-09-13 04:25	--------	dc----w-	c:\program files\ESET
2012-09-12 15:30 . 2012-09-12 15:30	--------	dc----w-	c:\users\Susan\AppData\Roaming\Malwarebytes
2012-09-12 15:30 . 2012-09-12 15:30	--------	dc----w-	c:\programdata\Malwarebytes
2012-09-12 15:29 . 2012-09-12 15:36	--------	dc----w-	c:\program files\Malwarebytes' Anti-Malware
2012-09-12 15:29 . 2012-09-07 15:04	22856	-c--a-w-	c:\windows\system32\drivers\mbam.sys
2012-09-09 07:47 . 2012-09-09 07:47	--------	dc----w-	c:\users\Susan\AppData\Local\Lupinho.Net
2012-09-08 19:13 . 2012-09-08 19:13	--------	dc----w-	c:\users\Saskia\AppData\Roaming\Canneverbe Limited
2012-09-08 18:39 . 2012-09-08 18:39	--------	dc----w-	c:\programdata\backup
2012-09-08 18:39 . 2012-09-08 18:39	--------	dc----w-	c:\programdata\explauncher
2012-09-08 18:39 . 2012-09-08 18:39	--------	dc----w-	c:\programdata\launcher
2012-09-01 16:02 . 2012-09-01 16:02	--------	dc----w-	c:\users\Susan\AppData\Roaming\DVDVideoSoftIEHelpers
2012-09-01 16:01 . 2012-08-24 13:58	405152	-c--a-w-	c:\windows\system32\Newtonsoft.Json.Net20.dll
2012-09-01 16:01 . 2012-09-01 16:01	--------	dc----w-	c:\program files\Common Files\DVDVideoSoft
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-08-15 16:13 . 2012-03-30 18:05	426184	-c--a-w-	c:\windows\system32\FlashPlayerApp.exe
2012-08-15 16:13 . 2011-05-23 16:51	70344	-c--a-w-	c:\windows\system32\FlashPlayerCPLApp.cpl
2012-07-19 21:21 . 2012-07-19 21:21	39016	-c--a-w-	c:\windows\system32\drivers\tbhsd.sys
2012-07-07 14:37 . 2012-07-07 14:37	1207568	-c--a-w-	c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2012-07-04 14:02 . 2012-08-15 16:24	2047488	-c--a-w-	c:\windows\system32\win32k.sys
2012-06-27 15:59 . 2012-08-15 05:07	834048	-c--a-w-	c:\windows\system32\wininet.dll
2012-06-27 14:15 . 2012-08-15 05:07	389632	-c--a-w-	c:\windows\system32\html.iec
2012-06-27 13:49 . 2012-08-15 05:07	1383424	-c--a-w-	c:\windows\system32\mshtml.tlb
2009-12-10 08:38 . 2009-12-15 18:25	1924200	-c--a-w-	c:\program files\install_flash_player10.0.42.34.exe
2012-07-19 17:31 . 2011-06-05 15:04	136672	-c--a-w-	c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1233920]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="RtHDVCpl.exe" [2007-04-25 4444160]
"TPwrMain"="c:\program files\TOSHIBA\Power Saver\TPwrMain.EXE" [2007-03-29 411192]
"HSON"="c:\program files\TOSHIBA\TBS\HSON.exe" [2006-12-07 55416]
"00TCrdMain"="c:\program files\TOSHIBA\FlashCards\TCrdMain.exe" [2007-05-22 538744]
"KeNotify"="c:\program files\TOSHIBA\Utilities\KeNotify.exe" [2006-11-06 34352]
"SVPWUTIL"="c:\program files\TOSHIBA\Utilities\SVPWUTIL.exe" [2006-03-22 438272]
"NDSTray.exe"="NDSTray.exe" [BU]
"topi"="c:\program files\TOSHIBA\Toshiba Online Product Information\topi.exe" [2007-04-02 577536]
"Toshiba Registration"="c:\program files\Toshiba\Registration\ToshibaRegistration.exe" [2007-05-04 571024]
"FreePDF Assistant"="c:\program files\FreePDF_XP\fpassist.exe" [2007-06-26 312320]
"PaperPort PTD"="c:\program files\ScanSoft\PaperPort\pptd40nt.exe" [2005-03-17 57393]
"IndexSearch"="c:\program files\ScanSoft\PaperPort\IndexSearch.exe" [2005-03-17 40960]
"BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2006-11-24 622592]
"ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2006-07-19 65536]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-03-20 1451304]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2012-08-08 348664]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-03-17 421888]
"VirtualCloneDrive"="e:\programme\VirtualCloneDrive\VCDDaemon.exe" [2011-03-07 89456]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HWSetup]
\HWSetup.exe hwSetUP [X]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Apoint]
2006-09-11 14:21	180224	-c--a-w-	c:\program files\Apoint2K\Apoint.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Garmin Lifetime Updater]
2012-06-04 07:31	1466760	-c--a-w-	c:\program files\Garmin\Lifetime Updater\GarminLifetime.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation	REG_MULTI_SZ   	FontCache
.
Inhalt des "geplante Tasks" Ordners
.
2012-09-18 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-03-30 16:13]
.
2012-09-19 c:\windows\Tasks\User_Feed_Synchronization-{BD71E7E2-ECDB-4F93-B0DC-4A2B232F98A8}.job
- c:\windows\system32\msfeedssync.exe [2008-06-26 07:33]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://www.takinus-blog.blogspot.com/
uDefault_Search_URL = 
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = 
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Free YouTube to MP3 Converter - c:\users\Susan\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_70C5B381380DB17F.dll/cmsidewiki.html
IE: Nach Microsoft &Excel exportieren - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
IE: Nach Microsoft E&xel exportieren - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
LSP: c:\windows\system32\wpclsp.dll
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Susan\AppData\Roaming\Mozilla\Firefox\Profiles\efjwbygu.default\
FF - prefs.js: browser.startup.homepage - hxxp://takinus-blog.blogspot.com/
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
MSConfigStartUp-hweyvybrdvmqiuw - c:\programdata\hweyvybr.exe
AddRemove-dm-Fotowelt - g:\programme\dm-Fotowelt\uninstall.exe
AddRemove-Uninstall_is1 - c:\program files\Common Files\DVDVideoSoft\unins000.exe
AddRemove-{D0795B21-0CDA-4a92-AB9E-6E92D8111E44} - e:\programme\Samsung\USB Drivers\Uninstall.exe
AddRemove-01_Simmental - e:\programme\Samsung\USB Drivers\01_Simmental\Uninstall.exe
AddRemove-02_Siberian - e:\programme\Samsung\USB Drivers\02_Siberian\Uninstall.exe
AddRemove-03_Swallowtail - e:\programme\Samsung\USB Drivers\03_Swallowtail\Uninstall.exe
AddRemove-04_semseyite - e:\programme\Samsung\USB Drivers\04_semseyite\Uninstall.exe
AddRemove-05_Sloan - e:\programme\Samsung\USB Drivers\05_Sloan\Uninstall.exe
AddRemove-06_Spencer - e:\programme\Samsung\USB Drivers\06_Spencer\Uninstall.exe
AddRemove-07_Schorl - e:\programme\Samsung\USB Drivers\07_Schorl\Uninstall.exe
AddRemove-08_EMPChipset - e:\programme\Samsung\USB Drivers\08_EMPChipset\Uninstall.exe
AddRemove-09_Hsp - e:\programme\Samsung\USB Drivers\09_Hsp\Uninstall.exe
AddRemove-11_HSP_Plus_Default - e:\programme\Samsung\USB Drivers\11_HSP_Plus_Default\Uninstall.exe
AddRemove-16_Shrewsbury - e:\programme\Samsung\USB Drivers\16_Shrewsbury\Uninstall.exe
AddRemove-17_EMP_Chipset2 - e:\programme\Samsung\USB Drivers\17_EMP_Chipset2\Uninstall.exe
AddRemove-18_Zinia_Serial_Driver - e:\programme\Samsung\USB Drivers\18_Zinia_Serial_Driver\Uninstall.exe
AddRemove-19_VIA_driver - e:\programme\Samsung\USB Drivers\19_VIA_driver\Uninstall.exe
AddRemove-20_NXP_Driver - e:\programme\Samsung\USB Drivers\20_NXP_Driver\Uninstall.exe
AddRemove-22_WiBro_WiMAX - e:\programme\Samsung\USB Drivers\22_WiBro_WiMAX\Uninstall.exe
AddRemove-24_flashusbdriver - e:\programme\Samsung\USB Drivers\24_flashusbdriver\Uninstall.exe
AddRemove-25_escape - e:\programme\Samsung\USB Drivers\25_escape\Uninstall.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net
Rootkit scan 2012-09-19 17:46
Windows 6.0.6002 Service Pack 2 NTFS
.
Scanne versteckte Prozesse... 
.
Scanne versteckte Autostarteinträge... 
.
Scanne versteckte Dateien... 
.
Scan erfolgreich abgeschlossen
versteckte Dateien: 0
.
**************************************************************************
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Zeit der Fertigstellung: 2012-09-19  17:51:29
ComboFix-quarantined-files.txt  2012-09-19 15:51
.
Vor Suchlauf: 10 Verzeichnis(se), 25.537.212.416 Bytes frei
Nach Suchlauf: 16 Verzeichnis(se), 24.887.525.376 Bytes frei
.
- - End Of File - - 7E1E9E6A588F80A086CDC626EC22CB1C
         
--- --- ---

Alt 19.09.2012, 21:29   #20
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Rechner gesperrt - Standard

Rechner gesperrt



Die Wiederherstellungskonsole gibt es nur bei WinXP

Bitte nun Logs mit GMER und OSAM erstellen und posten.
GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen.
Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst.

Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM!

Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe - (aswMBR.exe Anleitung)
    Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten".
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen )
    Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS-Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort.

Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung

Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none).



Noch ein Hinweis: Sollte aswMBR abstürzen und es kommt eine Meldung wie "aswMBR.exe funktioniert nicht mehr, dann mach Folgendes:
Starte aswMBR neu, wähle unten links im Drop-Down-Menü (unten links im Fenster von aswMBR) bei "AV scan" (none) aus und klick nochmal auf den Scan-Button.

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 20.09.2012, 19:26   #21
traudel769
 
Rechner gesperrt - Standard

Rechner gesperrt



Alle 3 Scans sind problemlos gelaufen, soweit ich das beurteilen kann. Es gab jedenfalls keine Abbrüche.

Hier die logs

VG

[code] GMER Logfile:
Code:
ATTFilter
GMER 1.0.15.15641 - hxxp://www.gmer.net
Rootkit scan 2012-09-20 19:34:55
Windows 6.0.6002 Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 Hitachi_HTS541616J9SA00 rev.SB4OC7DP
Running: gpkdnwpv.exe; Driver: C:\Users\Susan\AppData\Local\Temp\fwddapow.sys


---- System - GMER 1.0.15 ----

SSDT            8A9904AE                                   ZwCreateSection
SSDT            8A9904B8                                   ZwRequestWaitReplyPort
SSDT            8A9904B3                                   ZwSetContextThread
SSDT            8A9904BD                                   ZwSetSecurityObject
SSDT            8A9904C2                                   ZwSystemDebugControl
SSDT            8A99044F                                   ZwTerminateProcess

---- Kernel code sections - GMER 1.0.15 ----

.text           ntkrnlpa.exe!KeSetEvent + 215              82CC98D8 4 Bytes  [AE, 04, 99, 8A]
.text           ntkrnlpa.exe!KeSetEvent + 539              82CC9BFC 4 Bytes  [B8, 04, 99, 8A]
.text           ntkrnlpa.exe!KeSetEvent + 56D              82CC9C30 4 Bytes  [B3, 04, 99, 8A]
.text           ntkrnlpa.exe!KeSetEvent + 5D1              82CC9C94 4 Bytes  [BD, 04, 99, 8A]
.text           ntkrnlpa.exe!KeSetEvent + 619              82CC9CDC 4 Bytes  [C2, 04, 99, 8A]
.text           ...                                        
.text           C:\Windows\system32\DRIVERS\tos_sps32.sys  section is writeable [0x88955000, 0x4036D, 0xE8000020]
.dsrt           C:\Windows\system32\DRIVERS\tos_sps32.sys  unknown last section [0x8899E000, 0x510, 0x40000040]

---- Devices - GMER 1.0.15 ----

AttachedDevice  \Driver\kbdclass \Device\KeyboardClass0    Wdf01000.sys (WDF Dynamic/Microsoft Corporation)
AttachedDevice  \Driver\kbdclass \Device\KeyboardClass1    Wdf01000.sys (WDF Dynamic/Microsoft Corporation)

---- EOF - GMER 1.0.15 ----
         
--- --- ---



OSAM Logfile:
Code:
ATTFilter
Report of OSAM: Autorun Manager v5.0.11926.0
hxxp://www.online-solutions.ru/en/
Saved at 19:51:44 on 20.09.2012

OS: Windows Vista Home Premium Edition Service Pack 2 (Build 6002), 32-bit
Default Browser: Mozilla Corporation Firefox 14.0.1

Scanner Settings
[x] Rootkits detection (hidden registry)
[x] Rootkits detection (hidden files)
[x] Retrieve files information
[x] Check Microsoft signatures

Filters
[ ] Trusted entries
[ ] Empty entries
[x] Hidden registry entries (rootkit activity)
[x] Exclusively opened files
[x] Not found files
[x] Files without detailed information
[x] Existing files
[ ] Non-startable services
[ ] Non-startable drivers
[x] Active entries
[x] Disabled entries


[Common]
-----( %SystemRoot%\Tasks )-----
"Adobe Flash Player Updater.job" - "Adobe Systems Incorporated" - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

[Control Panel Objects]
-----( %SystemRoot%\system32 )-----
"FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\Windows\system32\FlashPlayerCPLApp.cpl
"TOSCDSPD.cpl" - ? - C:\Windows\system32\TOSCDSPD.cpl  (File found, but it contains no detailed information)
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )-----
"mlcfg32.cpl" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\MLCFG32.CPL
"QuickTime" - "Apple Inc." - C:\Program Files\QuickTime\QTSystem\QuickTime.cpl

[Drivers]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"avgntflt" (avgntflt) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avgntflt.sys
"avipbb" (avipbb) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avipbb.sys
"avkmgr" (avkmgr) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avkmgr.sys
"Bluetooth Audio Service" (BlueletAudio) - ? - C:\Windows\System32\DRIVERS\blueletaudio.sys  (File not found)
"Bluetooth HID Bus Service" (BtHidBus) - ? - C:\Windows\System32\Drivers\BtHidBus.sys  (File not found)
"Bluetooth HID Enumerator" (BTHidEnum) - ? - C:\Windows\System32\Drivers\vbtenum.sys  (File not found)
"Bluetooth HID Manager Service" (BTHidMgr) - ? - C:\Windows\System32\Drivers\BTHidMgr.sys  (File not found)
"Bluetooth PAN Bus Service" (btnetBUs) - ? - C:\Windows\System32\Drivers\btnetBus.sys  (File signed by Microsoft | File found, but it contains no detailed information)
"Bluetooth PAN Network Adapter" (BT) - ? - C:\Windows\System32\DRIVERS\btnetdrv.sys  (File not found)
"Bluetooth SCO Audio Service" (BlueletSCOAudio) - ? - C:\Windows\System32\DRIVERS\BlueletSCOAudio.sys  (File not found)
"Bluetooth Serial Port Bus Service" (BTCOMBUS) - ? - C:\Windows\System32\Drivers\btcombus.sys  (File not found)
"Bluetooth Serial port driver" (BTCOM) - ? - C:\Windows\System32\DRIVERS\btcomport.sys  (File not found)
"Bluetooth USB For Bluetooth Service" (Btcsrusb) - ? - C:\Windows\System32\Drivers\btcusb.sys  (File not found)
"Bluetooth VComm Manager Service" (VcommMgr) - ? - C:\Windows\System32\Drivers\VcommMgr.sys  (File not found)
"catchme" (catchme) - ? - C:\Users\Susan\AppData\Local\Temp\catchme.sys  (File not found)
"ElbyCDIO Driver" (ElbyCDIO) - "Elaborate Bytes AG" - C:\Windows\System32\Drivers\ElbyCDIO.sys
"Huawei DataCard USB Modem and USB Serial" (hwdatacard) - ? - C:\Windows\System32\DRIVERS\ewusbmdm.sys  (File not found)
"IP in IP Tunnel Driver" (IpInIp) - ? - C:\Windows\System32\DRIVERS\ipinip.sys  (File not found)
"IPX Traffic Filter Driver" (NwlnkFlt) - ? - C:\Windows\System32\DRIVERS\nwlnkflt.sys  (File not found)
"IPX Traffic Forwarder Driver" (NwlnkFwd) - ? - C:\Windows\System32\DRIVERS\nwlnkfwd.sys  (File not found)
"IVT Bluetooth Bus Service" (IvtBtBUs) - ? - C:\Windows\System32\Drivers\IvtBtBus.sys  (File not found)
"MBAMProtector" (MBAMProtector) - "Malwarebytes Corporation" - C:\Windows\system32\drivers\mbam.sys
"PCCS Mode Change Filter Driver" (pccsmcfd) - ? - C:\Windows\System32\DRIVERS\pccsmcfd.sys  (File not found)
"ssmdrv" (ssmdrv) - "Avira GmbH" - C:\Windows\System32\DRIVERS\ssmdrv.sys
"Tosrfcom" (Tosrfcom) - ? - C:\Windows\system32\drivers\Tosrfcom.sys  (File not found)
"Touch Pad Detection Filter driver" (TpChoice) - ? - C:\Windows\System32\DRIVERS\TpChoice.sys  (File not found)
"Virtual Serial port driver" (VComm) - ? - C:\Windows\System32\DRIVERS\VComm.sys  (File not found)

[Explorer]
-----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )-----
{F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll
-----( HKLM\Software\Classes\Protocols\Filter )-----
{807563E5-5146-11D5-A672-00B0D022E945} "Microsoft Office InfoPath XML Mime Filter" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
-----( HKLM\Software\Classes\Protocols\Handler )-----
{314111c7-a502-11d2-bbca-00c04f8ec294} "HxProtocol Class" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} "IEProtocolHandler Class" - "Skype Technologies" - C:\Windows\system32\Skype4COM.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{911051fa-c21c-4246-b470-070cd8df6dc4} ".cab or .zip files" - ? -   (File not found | COM-object registry key not found)
{1b24a030-9b20-49bc-97ac-1be4426f9e59} "ActiveDirectory Folder" - ? -   (File not found | COM-object registry key not found)
{34449847-FD14-4fc8-A75A-7432F5181EFB} "ActiveDirectory Folder" - ? -   (File not found | COM-object registry key not found)
{0F8604A5-4ECE-4DE1-BA7D-CF10F8AA4F48} "Contacts folder" - ? -   (File not found | COM-object registry key not found)
{2C2577C2-63A7-40e3-9B7F-586602617ECB} "Explorer Query Band" - ? -   (File not found | COM-object registry key not found)
{42042206-2D85-11D3-8CFF-005004838597} "Microsoft Office HTML Icon Handler" - "Microsoft Corporation" - C:\Program Files\Microsoft Office\Office12\msohevi.dll
{993BE281-6695-4BA5-8A2A-7AACBFAAB69E} "Microsoft Office Metadata Handler" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll
{00020D75-0000-0000-C000-000000000046} "Microsoft Office Outlook" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\MLSHEXT.DLL
{C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} "Microsoft Office Thumbnail Handler" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll
{0006F045-0000-0000-C000-000000000046} "Outlook File Icon Extension" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\OLKFSTUB.DLL
{C8494E42-ACDD-4739-B0FB-217361E4894F} "Sam Account Folder" - ? -   (File not found | COM-object registry key not found)
{E29F9716-5C08-4FCD-955A-119FDB5A522D} "Sam Account Folder" - ? -   (File not found | COM-object registry key not found)
{45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\shlext.dll
{5E2121EE-0300-11D4-8D3B-444553540000} "SimpleShlExt Class" - ? - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll
{B7056B8E-4F99-44f8-8CBD-282390FE5428} "VirtualCloneDrive Shell Extension" - "Elaborate Bytes AG" - E:\Programme\VirtualCloneDrive\ElbyVCDShell.dll
{BDEADF00-C265-11D0-BCED-00A0C90AB50F} "Webordner" - "Microsoft Corporation" - C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL
{da67b8ad-e81b-4c70-9b91b417b5e33527} "Windows Search Shell Service" - ? -   (File not found | COM-object registry key not found)
{B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" - ? - C:\Program Files\WinRAR\rarext.dll  (File found, but it contains no detailed information)

[Internet Explorer]
-----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )-----
ITBar7Height "ITBar7Height" - ? -   (File not found | COM-object registry key not found)
<binary data> "ITBar7Layout" - ? -   (File not found | COM-object registry key not found)
-----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )-----
{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} "Java Plug-in 1.6.0_25" - "Oracle Corporation" - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
{8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 10.5.1" - "Oracle Corporation" - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
{8FFBE65D-2C9C-4669-84BD-5829DC0B603C} "{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}" - ? -   (File not found | COM-object registry key not found) / hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )-----
"Amazon.de" - ? - hxxp://www.amazon.de/exec/obidos/redirect-home?tag=Toshibadebholink-21&site=home  (HTTP value)
"eBay - Der weltweite Online Marktplatz" - ? - hxxp://rover.ebay.com/rover/1/707-44556-9400-3/4  (HTTP value)
{FF059E31-CC5A-4E2E-BF3B-96E929D65503} "Research" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )-----
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper" - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
{DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Oracle Corporation" - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} "Java(tm) Plug-In SSV Helper" - "Oracle Corporation" - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll

[Logon]
-----( %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\Users\Susan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
-----( %AllUsersProfile%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
-----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )-----
"StartupPrograms" - ? - rdpclip  (File not found)
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )-----
"00TCrdMain" - "TOSHIBA Corporation" - %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
"Adobe ARM" - "Adobe Systems Incorporated" - "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"avgnt" - "Avira Operations GmbH & Co. KG" - "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
"BrMfcWnd" - "Brother Industries, Ltd." - C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN
"ControlCenter3" - "Brother Industries, Ltd." - C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun
"FreePDF Assistant" - "shbox.de" - C:\Program Files\FreePDF_XP\fpassist.exe
"HSON" - "TOSHIBA Corporation" - %ProgramFiles%\TOSHIBA\TBS\HSON.exe
"IndexSearch" - "ScanSoft, Inc." - C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
"KeNotify" - ? - C:\Program Files\TOSHIBA\Utilities\KeNotify.exe
"NDSTray.exe" - ? - NDSTray.exe  (File not found)
"PaperPort PTD" - "ScanSoft, Inc." - C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
"QuickTime Task" - "Apple Inc." - "C:\Program Files\QuickTime\QTTask.exe" -atboottime
"SVPWUTIL" - "TOSHIBA" - C:\Program Files\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL
"topi" - "TOSHIBA" - C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe -startup
"Toshiba Registration" - "Toshiba" - C:\Program Files\Toshiba\Registration\ToshibaRegistration.exe
"TPwrMain" - "TOSHIBA Corporation" - %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
"VirtualCloneDrive" - "Elaborate Bytes AG" - "E:\Programme\VirtualCloneDrive\VCDDaemon.exe" /s

[Print Monitors]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors )-----
"Redirected Port" - ? - C:\Windows\system32\redmonnt.dll  (File found, but it contains no detailed information)
"Toshiba Bluetooth Monitor" - "TOSHIBA CORPORATION." - C:\Windows\system32\tbtmon.dll

[Services]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100" (WPFFontCache_v0400) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
"Adobe Acrobat Update Service" (AdobeARMservice) - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
"Adobe Flash Player Update Service" (AdobeFlashPlayerUpdateSvc) - "Adobe Systems Incorporated" - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
"Avira Echtzeit Scanner" (AntiVirService) - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
"Avira Planer" (AntiVirSchedulerService) - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\sched.exe
"Bonjour-Dienst" (Bonjour Service) - "Apple Inc." - C:\Program Files\Bonjour\mDNSResponder.exe
"ConfigFree Service" (CFSvcs) - "TOSHIBA CORPORATION" - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
"Firebird Server - MAGIX Instance" (FirebirdServerMAGIXInstance) - "MAGIX®" - C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe
"FLEXnet Licensing Service" (FLEXnet Licensing Service) - "Macrovision Europe Ltd." - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
"Google Software Updater" (gusvc) - "Google" - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
"InstallDriver Table Manager" (IDriverT) - "Macrovision Corporation" - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
"MBAMScheduler" (MBAMScheduler) - "Malwarebytes Corporation" - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
"MBAMService" (MBAMService) - "Malwarebytes Corporation" - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
"Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
"Microsoft Office Diagnostics Service" (odserv) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
"Mozilla Maintenance Service" (MozillaMaintenance) - "Mozilla Foundation" - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
"Office Source Engine" (ose) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
"TOSHIBA Bluetooth Service" (TOSHIBA Bluetooth Service) - ? - c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe  (File not found)
"TOSHIBA Navi Support Service" (TNaviSrv) - "TOSHIBA Corporation" - C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe
"TOSHIBA Optical Disc Drive Service" (TODDSrv) - "TOSHIBA Corporation" - C:\Windows\system32\TODDSrv.exe
"TOSHIBA Power Saver" (TosCoSrv) - "TOSHIBA Corporation" - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
"Ulead Burning Helper" (UleadBurningHelper) - "Ulead Systems, Inc." - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

[Winsock Providers]
-----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries )-----
"mdnsNSP" - "Apple Inc." - C:\Program Files\Bonjour\mdnsNSP.dll

===[ Logfile end ]=========================================[ Logfile end ]===
         
--- --- ---



Code:
ATTFilter
 
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-09-20 19:52:33
-----------------------------
19:52:33.293    OS Version: Windows 6.0.6002 Service Pack 2
19:52:33.293    Number of processors: 2 586 0x4802
19:52:33.293    ComputerName: LAPTOP  UserName: Susan
19:52:34.557    Initialize success
19:56:36.755    AVAST engine defs: 12092000
19:57:15.458    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
19:57:15.458    Disk 0 Vendor: Hitachi_HTS541616J9SA00 SB4OC7DP Size: 152627MB BusType: 3
19:57:15.489    Disk 0 MBR read successfully
19:57:15.489    Disk 0 MBR scan
19:57:15.505    Disk 0 Windows VISTA default MBR code
19:57:15.521    Disk 0 Partition 1 00     27 Hidden NTFS WinRE NTFS         1500 MB offset 2048
19:57:15.552    Disk 0 Partition 2 80 (A) 07    HPFS/NTFS NTFS        76313 MB offset 3074048
19:57:15.583    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS        74813 MB offset 159363072
19:57:15.614    Disk 0 scanning sectors +312580096
19:57:15.677    Disk 0 scanning C:\Windows\system32\drivers
19:57:30.372    Service scanning
19:58:10.027    Modules scanning
19:58:20.042    Disk 0 trace - called modules:
19:58:20.058    ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll ataport.SYS pciide.sys PCIIDEX.SYS atapi.sys 
19:58:20.073    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x85d6e120]
19:58:20.073    3 CLASSPNP.SYS[887168b3] -> nt!IofCallDriver -> [0x85b55918]
19:58:20.089    5 acpi.sys[806176bc] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x85b00b98]
19:58:20.838    AVAST engine scan C:\Windows
19:58:25.705    AVAST engine scan C:\Windows\system32
20:03:37.065    AVAST engine scan C:\Windows\system32\drivers
20:04:07.267    AVAST engine scan C:\Users\Susan
20:11:47.327    AVAST engine scan C:\ProgramData
20:14:41.813    Scan finished successfully
20:20:15.793    Disk 0 MBR has been saved successfully to "C:\Users\Susan\Desktop\MBR.dat"
20:20:15.793    The log file has been saved successfully to "C:\Users\Susan\Desktop\aswMBR.txt"
         

Alt 21.09.2012, 11:43   #22
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Rechner gesperrt - Standard

Rechner gesperrt



Sieht ok aus. Wir sollten fast durch sein. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs.
Denk dran beide Tools zu updaten vor dem Scan!!
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 21.09.2012, 21:40   #23
traudel769
 
Rechner gesperrt - Standard

Rechner gesperrt



Code:
ATTFilter
 
 Malwarebytes Anti-Malware  (Test) 1.65.0.1400
www.malwarebytes.org

Datenbank Version: v2012.09.21.07

Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 7.0.6002.18005
Susan :: LAPTOP [Administrator]

Schutz: Deaktiviert

21.09.2012 17:28:27
mbam-log-2012-09-21 (17-28-27).txt

Art des Suchlaufs: Vollständiger Suchlauf (C:\|E:\|)
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 384005
Laufzeit: 2 Stunde(n), 12 Minute(n), 41 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)

(Ende)
         
Code:
ATTFilter
 
SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com

Generated 09/21/2012 at 10:16 PM

Application Version : 5.5.1016

Core Rules Database Version : 9268
Trace Rules Database Version: 7080

Scan type       : Complete Scan
Total Scan Time : 02:15:55

Operating System Information
Windows Vista Home Premium 32-bit, Service Pack 2 (Build 6.00.6002)
UAC On - Administrator

Memory items scanned      : 669
Memory threats detected   : 0
Registry items scanned    : 34156
Registry threats detected : 0
File items scanned        : 164020
File threats detected     : 506

Adware.Tracking Cookie
	C:\Users\Susan\AppData\Roaming\Microsoft\Windows\Cookies\I9R3O101.txt [ /adfarm1.adition.com ]
	C:\Users\Susan\AppData\Roaming\Microsoft\Windows\Cookies\WFQ3X4WR.txt [ /imrworldwide.com ]
	C:\Users\Susan\AppData\Roaming\Microsoft\Windows\Cookies\VFLV7P1Q.txt [ /ad.zanox.com ]
	C:\Users\Susan\AppData\Roaming\Microsoft\Windows\Cookies\A0KCBUSN.txt [ /eas.apm.emediate.eu ]
	C:\Users\Susan\AppData\Roaming\Microsoft\Windows\Cookies\D1574GJR.txt [ /amazon-adsystem.com ]
	C:\Users\Susan\AppData\Roaming\Microsoft\Windows\Cookies\4NQDPEDM.txt [ /adform.net ]
	C:\Users\Susan\AppData\Roaming\Microsoft\Windows\Cookies\VX7E5HY7.txt [ /ad2.adfarm1.adition.com ]
	C:\Users\Susan\AppData\Roaming\Microsoft\Windows\Cookies\PR4GRXFI.txt [ /track.adform.net ]
	C:\Users\Susan\AppData\Roaming\Microsoft\Windows\Cookies\CO857K92.txt [ /ad1.adfarm1.adition.com ]
	C:\Users\Susan\AppData\Roaming\Microsoft\Windows\Cookies\1ROL20X9.txt [ /zanox.com ]
	C:\USERS\SASKIA\AppData\Roaming\Microsoft\Windows\Cookies\CQGDQTNC.txt [ Cookie:saskia@fastclick.net/ ]
	C:\USERS\SASKIA\AppData\Roaming\Microsoft\Windows\Cookies\AZS9TDXY.txt [ Cookie:saskia@apmebf.com/ ]
	C:\USERS\SASKIA\AppData\Roaming\Microsoft\Windows\Cookies\AE3H894V.txt [ Cookie:saskia@doubleclick.net/ ]
	C:\USERS\SASKIA\AppData\Roaming\Microsoft\Windows\Cookies\Low\O1KHEB1D.txt [ Cookie:saskia@atdmt.com/ ]
	C:\USERS\SASKIA\AppData\Roaming\Microsoft\Windows\Cookies\Low\O0W28TJG.txt [ Cookie:saskia@apmebf.com/ ]
	C:\USERS\SASKIA\AppData\Roaming\Microsoft\Windows\Cookies\Low\XHU956G3.txt [ Cookie:saskia@fl01.ct2.comclick.com/ ]
	C:\USERS\SASKIA\Cookies\CQGDQTNC.txt [ Cookie:saskia@fastclick.net/ ]
	C:\USERS\SASKIA\Cookies\AZS9TDXY.txt [ Cookie:saskia@apmebf.com/ ]
	C:\USERS\SASKIA\Cookies\AE3H894V.txt [ Cookie:saskia@doubleclick.net/ ]
	C:\USERS\SUSAN\AppData\Roaming\Microsoft\Windows\Cookies\susan@www.google[7].txt [ Cookie:susan@www.google.com/accounts ]
	C:\USERS\SUSAN\AppData\Roaming\Microsoft\Windows\Cookies\Low\susan@www.google[1].txt [ Cookie:susan@www.google.com/accounts ]
	C:\USERS\SUSAN\Cookies\I9R3O101.txt [ Cookie:susan@adfarm1.adition.com/ ]
	C:\USERS\SUSAN\Cookies\WFQ3X4WR.txt [ Cookie:susan@imrworldwide.com/cgi-bin ]
	C:\USERS\SUSAN\Cookies\VFLV7P1Q.txt [ Cookie:susan@ad.zanox.com/ ]
	C:\USERS\SUSAN\Cookies\A0KCBUSN.txt [ Cookie:susan@eas.apm.emediate.eu/ ]
	C:\USERS\SUSAN\Cookies\D1574GJR.txt [ Cookie:susan@amazon-adsystem.com/ ]
	C:\USERS\SUSAN\Cookies\4NQDPEDM.txt [ Cookie:susan@adform.net/ ]
	C:\USERS\SUSAN\Cookies\VX7E5HY7.txt [ Cookie:susan@ad2.adfarm1.adition.com/ ]
	C:\USERS\SUSAN\Cookies\PR4GRXFI.txt [ Cookie:susan@track.adform.net/ ]
	C:\USERS\SUSAN\Cookies\CO857K92.txt [ Cookie:susan@ad1.adfarm1.adition.com/ ]
	C:\USERS\SUSAN\Cookies\1ROL20X9.txt [ Cookie:susan@zanox.com/ ]
	C:\USERS\SUSAN\Cookies\susan@www.google[7].txt [ Cookie:susan@www.google.com/accounts ]
	.getclicky.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.static.getclicky.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	in.getclicky.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.stats4free.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.stats4free.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.stats4free.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.stats4free.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.countomat.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	ad4.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	statse.webtrendslive.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adform.net [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	www.zanox-affiliate.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	tracking.mlsat02.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	ad3.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	ad1.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	ad2.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.unitymedia.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.unitymedia.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.tracker.vinsight.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.microsoftsto.112.2o7.net [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	ww251.smartadserver.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\SASKIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4SBDS9LL.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.xiti.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mediafire.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mediafire.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.a.revenuemax.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	tracking.sim-technik.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.eyewonder.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tto2.traffictrack.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.guj.122.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.amazon-adsystem.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.countomat.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.amazon-adsystem.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.eyewonder.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.lfstmedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	auslieferung.commindo-media-ressourcen.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.lfstmedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.aim4media.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.at.atwola.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	search.freefind.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mmotraffic.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.liveperson.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.bizrate.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.secmedia.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mediafire.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.cewecolor.112.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.pornoeye.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.pornoeye.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adxpansion.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.liveperson.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	s09.flagcounter.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.overture.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tracking.3gnet.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	keyword-advertising.web.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.cracked.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.dmtracker.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.cracked.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.cracked.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.cracked.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.cracked.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.cracked.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.hightraffic.hugoboss.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	e2.emediate.se [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.cunda.122.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad.adserver01.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.countrymusic.about.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.lucidmedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.apodiscounter.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.apodiscounter.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.apodiscounter.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.apodiscounter.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.apodiscounter.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	adserver.createoceans.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.microsoftsto.112.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.blogads.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	adserver.adreactor.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.yieldmanager.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mmotraffic.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.zanox-affiliate.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.c.gigcount.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.c.atdmt.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.c.atdmt.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tacoda.at.atwola.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tacoda.at.atwola.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.at.atwola.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tacoda.at.atwola.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tacoda.at.atwola.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.ar.atwola.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	teufel-media.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.linksynergy.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.linksynergy.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.linksynergy.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.prepaid-discounter.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.prepaid-discounter.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	in.getclicky.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad.adserver01.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	tracker.roitesting.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	adserv.quality-channel.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	adserv.quality-channel.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ads.falkemedia.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	track.zalando.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	accounts.google.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.lfstmedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adxpose.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	account.samsung.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.mediaconverter.org [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mediaconverter.org [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mediaconverter.org [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	click-the-shutter.xobor.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	click-the-shutter.xobor.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.deutschepostag.112.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	banner.slashcam.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	tracking.quisma.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	tracking.tchibo.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mywebsearch.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.c1.atdmt.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	partners.webmasterplan.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.comvelgmbh.112.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.flagcounter.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.yadro.ru [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.accounts.google.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.accounts.google.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.overture.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.serialcodes.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.serialcodes.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.serialcodes.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.harrenmedianetwork.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	insight.torbit.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.googleads.g.doubleclick.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.discounto.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.discounto.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.discounto.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.discounto.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.discounto.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	targeting.revenuemax.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.bs.serving-sys.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.bs.serving-sys.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.technoratimedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.technoratimedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.statcounter.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.technoratimedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.lfstmedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.clickfuse.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	tracking.dc-storm.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	tracking.dc-storm.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.unitymedia.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.unitymedia.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	statse.webtrendslive.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad1.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	tomtailor.dyntracker.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.vodafonegroup.122.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.ads20.wwe-media.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.myhammer.122.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mediafire.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mediafire.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.mediafire.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.mediafire.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.mediafire.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.mediafire.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.media6degrees.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.lucidmedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	accounts.youtube.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.loyaltypartner.122.2o7.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.at.atwola.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	auslieferung.commindo-media-ressourcen.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adform.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.zanox-affiliate.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.myroitracking.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.clicksor.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ww251.smartadserver.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tracker.vinsight.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.tradetracker.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad4.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad2.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	ad3.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	adfarm1.adition.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	accounts.google.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]
	accounts.google.com [ C:\USERS\SUSAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EFJWBYGU.DEFAULT\COOKIES.SQLITE ]

Trojan.Agent/Gen-Malintent
	C:\PROGRAM FILES\WINRAR\DEFAULT.SFX
         
Leider hab ich nicht gefunden, wie ich nach dem Scan mit SUPERAntiSpyware fortfahren soll. So habe ich nicht auf Remove geklickt, sondern auf abbrechen.
War das richtig so?
Ich werde mal das Programm noch nicht deinstallieren

Alt 22.09.2012, 16:04   #24
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Rechner gesperrt - Standard

Rechner gesperrt



Sieht ok aus, da wurden nur Cookies gefunden, der angebliche Fund bei WinRAR ist ein Fehalarm.
Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie )


Wegen Cookies und anderer Dinge im Web: Um die Pest von vornherein zu blocken (also TrackingCookies, Werbebanner etc.) müsstest du dir mal sowas wie MVPS Hosts File anschauen => Blocking Unwanted Parasites with a Hosts File - sinnvollerweise solltest du alle 4 Wochen mal bei MVPS nachsehen, ob er eine neue Hosts Datei herausgebracht hat.

Ansonsten gibt es noch gute Cookiemanager, Erweiterungen für den Firefox zB wäre da CookieCuller http://filepony.de/download-cookie_culler/
Wenn du aber damit leben kannst, dich bei jeder Browsersession überall neu einzuloggen (zB Facebook, Ebay, GMX, oder auch Trojaner-Board) dann stell den Browser einfach so ein, dass einfach alles beim Beenden des Browser inkl. Cookies gelöscht wird.

Ich halte es so, dass ich zum "wilden Surfen" den Opera-Browser oder Chromium unter meinem Linux verwende. Mein Hauptbrowser (Firefox) speichert nur die Cookies von den Sites die ich auch will, alles andere lehne ich manuell ab (der FF fragt mich immer) - die anderen Browser nehmen alles an Cookies zwar an, aber spätestens beim nächsten Start von Opera oder Chromium sind keine Cookies mehr da.

Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 22.09.2012, 17:26   #25
traudel769
 
Rechner gesperrt - Standard

Rechner gesperrt



Jedes Mal einloggen müssen ist nicht so schön. Ich werde mir dann mal CookieCuller anschauen. Danke für den Tipp. Einen 2. Browser fürs Surfen zulegen ist auch eine Überlegung wert. FF hat mich noch nie gefragt, wob ich Cookies speichern will. Ich find auch grad gar nichts, wo ich das einstellen kann.
Für Blockung Unwanted Parasites with a Hosts File ist mein Englisch leider zu schlecht? ;-(


Ansonsten gibt es keine Funde. Probleme? Wie gesagt, ich hab jetzt nichts mit dem Rechner gemacht, außer deine Anleitung abzuarbeiten. Aber dabei ist mir nichts aufgefallen.

Heißt das etwa, dass ich jetzt wieder clean bin und der Trojanaer erfolgreich bekämpft wurde? *freu*
Danke!!!!!!! Danke für die super Hilfe.
Ich kann meine Begeisterung kaum in Worte fassen.

Was mach ich jetzt mit den Funden in der Quarantäne?

Geändert von traudel769 (22.09.2012 um 17:41 Uhr)

Alt 22.09.2012, 20:19   #26
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Rechner gesperrt - Standard

Rechner gesperrt



Was habt ihr alle immer nur mit der Quarantäne?
Überleg doch mal was eine Quarantäne ist. Ob da die schädliche Datei drinbleibt oder nicht, das hat keine Auswirkungen. Schädlinge in der Quarantäne können nichts mehr anrichten, sie sind dort isoliert. Du solltest grundsätzlich mit der Quarantäne arbeiten, denn falls der Virenscanner durch einen Fehlalarm was wichtiges löscht, kannst Du notfalls noch über die Quarantäne an die Datei ran.


Dann wären wir durch!

Die Programme, die hier zum Einsatz kamen, können alle wieder runter. Mit Hilfe von OTL kannst du auch viele Tools entfernen:

Starte bitte OTL und klicke auf Bereinigung.
Dies wird die meisten Tools entfernen, die wir zur Bereinigung benötigt haben. Sollte etwas bestehen bleiben, bitte mit Rechtsklick --> Löschen entfernen.


Malwarebytes zu behalten ist zu empfehlen. Kannst ja 1x im Monat damit einen Vollscan machen, aber immer vorher ans Update denken.


Bitte abschließend die Updates prüfen, unten mein Leitfaden dazu. Um in Zukunft die Aktualität der installierten Programme besser im Überblick zu halten, kannst du zB Secunia PSI verwenden.
Für noch mehr Sicherheit solltest Du nach der beseitigten Infektion auch möglichst alle Passwörter ändern.


Microsoftupdate

Windows XP: Besuch mit dem IE die MS-Updateseite und lass Dir alle wichtigen Updates installieren.

Windows Vista/7: Anleitung Windows-Update


PDF-Reader aktualisieren
Ein veralteter AdobeReader stellt ein großes Sicherheitsrisiko dar. Du solltest daher besser alte Versionen vom AdobeReader über Systemsteuerung => Software bzw. Programme und Funktionen deinstallieren, indem Du dort auf "Adobe Reader x.0" klickst und das Programm entfernst. (falls du AdobeReader installiert hast)

Ich empfehle einen alternativen PDF-Reader wie PDF Xchange Viewer, SumatraPDF oder Foxit PDF Reader, die sind sehr viel schlanker und flotter als der AdobeReader.

Bitte überprüf bei der Gelegenheit auch die Aktualität des Flashplayers:
Prüfen => Adobe - Flash Player
Downloadlinks => Adobe Flash Player Distribution | Adobe

Natürlich auch darauf achten, dass andere installierte Browser wie zB Firefox, Opera oder Chrome aktuell sind.


Java-Update
Veraltete Java-Installationen sind ein Sicherheitsrisiko, daher solltest Du die alten Versionen löschen (falls vorhanden, am besten mit JavaRa) und auf die neuste aktualisieren. Beende dazu alle Programme (v.a. die Browser), klick danach auf Start, Systemsteuerung, Software und deinstalliere darüber alle aufgelisteten Java-Versionen. Lad Dir danach von hier das aktuelle Java SE Runtime Environment (JRE) herunter und installiere es.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 22.09.2012, 20:35   #27
traudel769
 
Rechner gesperrt - Standard

Rechner gesperrt



Oh durch!
Danke

Na, wenn der Kram nicht aus der Quarantäne ausbrechen kann, ist ja gut.
Du siehst, du hattest es hier mit einem Laien zu tun
Umso größerer Dank, dass du das mit mir durchgestanden hast.

Deine Hinweise werde ich gern befolgen.

Schönen Abend noch.
Ich bin so happy

Antwort

Themen zu Rechner gesperrt
anleitung, antivirus, avira, bildschirm, bildschirm weiß, clean, code, crash, euro, free, gesperrt, infiziert?, kaspersky, locker, malwarebytes, meldung, nichts, plötzlich, problem, programme, quarantäne, rechner, seite, seiten, surfen, trojaner, unlocker, windows, zahlung




Ähnliche Themen: Rechner gesperrt


  1. GVU-Trojaner, Rechner gesperrt
    Log-Analyse und Auswertung - 28.09.2013 (17)
  2. Bundespolizei hat Rechner gesperrt?
    Log-Analyse und Auswertung - 16.06.2013 (33)
  3. Rechner gesperrt - "Polizei - Ihr Computer wurde gesperrt"
    Log-Analyse und Auswertung - 12.02.2013 (5)
  4. GVU / mein rechner ist gesperrt
    Plagegeister aller Art und deren Bekämpfung - 27.01.2013 (35)
  5. GVU- WinXP- Rechner gesperrt
    Plagegeister aller Art und deren Bekämpfung - 08.01.2013 (23)
  6. BKA Trojaner - Rechner gesperrt
    Plagegeister aller Art und deren Bekämpfung - 22.11.2012 (35)
  7. Rechner gesperrt BP will Geld
    Plagegeister aller Art und deren Bekämpfung - 18.11.2012 (19)
  8. GVU Virus, Rechner ist gesperrt!
    Plagegeister aller Art und deren Bekämpfung - 24.09.2012 (9)
  9. doppelt AW: Rechner gesperrt
    Mülltonne - 16.09.2012 (0)
  10. Rechner gesperrt
    Plagegeister aller Art und deren Bekämpfung - 15.09.2012 (10)
  11. GVU Trojaner - Rechner gesperrt -
    Log-Analyse und Auswertung - 10.09.2012 (19)
  12. Celas - Rechner gesperrt
    Plagegeister aller Art und deren Bekämpfung - 02.09.2012 (3)
  13. Bundespolizei, Ihe Rechner wurde gesperrt
    Plagegeister aller Art und deren Bekämpfung - 28.08.2012 (11)
  14. Bundespolizeit Trojaner Rechner gesperrt
    Plagegeister aller Art und deren Bekämpfung - 13.08.2012 (19)
  15. rechner gesperrt
    Plagegeister aller Art und deren Bekämpfung - 11.06.2012 (1)
  16. 50 € Trojaner - Rechner gesperrt
    Log-Analyse und Auswertung - 19.02.2012 (1)
  17. Rechner gesperrt; Eingabeaufforderung von 50 € zur Freigabe
    Plagegeister aller Art und deren Bekämpfung - 24.12.2011 (7)

Zum Thema Rechner gesperrt - Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten Anleitung und Downloadlink hier => http://www.trojaner-board.de/82358-t...entfernen.html Hinweis : Bitte den Virenscanner abstellen bevor du den - Rechner gesperrt...
Archiv
Du betrachtest: Rechner gesperrt auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.