Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Trojan.RedirRdll2.Gen und Macaffe Firewall stopt

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 17.10.2012, 12:58   #16
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Standard

Trojan.RedirRdll2.Gen und Macaffe Firewall stopt



Ja natürlich musst du das wiederholen, OTL muss schon alle Benutzerprofile durchscannen!
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 17.10.2012, 13:58   #17
ebb8924
 
Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Standard

Trojan.RedirRdll2.Gen und Macaffe Firewall stopt



Hallo Cosinus,
werde ich, wenn ich heimkomme sofort machen.
Gruß
Heike
__________________


Alt 17.10.2012, 17:52   #18
ebb8924
 
Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Standard

Trojan.RedirRdll2.Gen und Macaffe Firewall stopt



Hallo Cosinus,
hier ist das neue File. Ich musste es wieder zippen weil es zu lang war. Den Haken habe ich diesmal gesetzt.
Gruß
Heike
__________________

Alt 17.10.2012, 18:53   #19
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Standard

Trojan.RedirRdll2.Gen und Macaffe Firewall stopt



Beende alle evtl. geöffneten Programme, auch Virenscanner deaktivieren (!), starte OTL und kopiere folgenden Text in die "Custom Scan/Fixes" Box (unten in OTL): (das ":OTL" muss mitkopiert werden!!!)

Code:
ATTFilter
:OTL
@Alternate Data Stream - 99 bytes -> C:\ProgramData\TEMP:0E636D62
@Alternate Data Stream - 406 bytes -> C:\ProgramData\TEMP:072B9E55
@Alternate Data Stream - 405 bytes -> C:\ProgramData\TEMP:80873EE2
@Alternate Data Stream - 405 bytes -> C:\ProgramData\TEMP:308B0C2B
@Alternate Data Stream - 403 bytes -> C:\ProgramData\TEMP:5072C8B3
@Alternate Data Stream - 400 bytes -> C:\ProgramData\TEMP:C72E5875
@Alternate Data Stream - 400 bytes -> C:\ProgramData\TEMP:990CDA66
@Alternate Data Stream - 395 bytes -> C:\ProgramData\TEMP:D4CD7005
@Alternate Data Stream - 393 bytes -> C:\ProgramData\TEMP:FB9BB3A3
@Alternate Data Stream - 393 bytes -> C:\ProgramData\TEMP:1E29E2EC
@Alternate Data Stream - 391 bytes -> C:\ProgramData\TEMP:69BAEA18
@Alternate Data Stream - 387 bytes -> C:\ProgramData\TEMP:344AB8D4
@Alternate Data Stream - 386 bytes -> C:\ProgramData\TEMP:B4832D1B
@Alternate Data Stream - 385 bytes -> C:\ProgramData\TEMP:650E86E6
@Alternate Data Stream - 385 bytes -> C:\ProgramData\TEMP:2FF93FB9
@Alternate Data Stream - 383 bytes -> C:\ProgramData\TEMP:E85C241C
@Alternate Data Stream - 382 bytes -> C:\ProgramData\TEMP:A700ABC5
@Alternate Data Stream - 381 bytes -> C:\ProgramData\TEMP:08DA230B
@Alternate Data Stream - 380 bytes -> C:\ProgramData\TEMP:9C68C476
@Alternate Data Stream - 380 bytes -> C:\ProgramData\TEMP:214562D2
@Alternate Data Stream - 378 bytes -> C:\ProgramData\TEMP:BE03B635
@Alternate Data Stream - 376 bytes -> C:\ProgramData\TEMP:8B38FB22
@Alternate Data Stream - 373 bytes -> C:\ProgramData\TEMP:2E96EDE5
@Alternate Data Stream - 370 bytes -> C:\ProgramData\TEMP:71629BB0
@Alternate Data Stream - 368 bytes -> C:\ProgramData\TEMP:87C6CF00
@Alternate Data Stream - 368 bytes -> C:\ProgramData\TEMP:0B8DC177
@Alternate Data Stream - 366 bytes -> C:\ProgramData\TEMP:35AAFF34
@Alternate Data Stream - 364 bytes -> C:\ProgramData\TEMP:06C757ED
@Alternate Data Stream - 363 bytes -> C:\ProgramData\TEMP:72DF296E
@Alternate Data Stream - 362 bytes -> C:\ProgramData\TEMP:918DED71
@Alternate Data Stream - 360 bytes -> C:\ProgramData\TEMP:B2B2F0D4
@Alternate Data Stream - 356 bytes -> C:\ProgramData\TEMP:A7F5A65E
@Alternate Data Stream - 350 bytes -> C:\ProgramData\TEMP:E603155F
@Alternate Data Stream - 350 bytes -> C:\ProgramData\TEMP:0C8F11F4
@Alternate Data Stream - 244 bytes -> C:\ProgramData\TEMP:2F5A06FD
@Alternate Data Stream - 211 bytes -> C:\ProgramData\TEMP:B0456F0C
@Alternate Data Stream - 159 bytes -> C:\ProgramData\TEMP:18C53152
@Alternate Data Stream - 158 bytes -> C:\ProgramData\TEMP:EBDC2C7A
@Alternate Data Stream - 158 bytes -> C:\ProgramData\TEMP:4D7938F6
@Alternate Data Stream - 157 bytes -> C:\ProgramData\TEMP:63C8DCBB
@Alternate Data Stream - 156 bytes -> C:\ProgramData\TEMP:69B07149
@Alternate Data Stream - 156 bytes -> C:\ProgramData\TEMP:5081B2E0
@Alternate Data Stream - 156 bytes -> C:\ProgramData\TEMP:28A1F3CB
@Alternate Data Stream - 156 bytes -> C:\ProgramData\TEMP:172D8D70
@Alternate Data Stream - 155 bytes -> C:\ProgramData\TEMP:BBD6565E
@Alternate Data Stream - 155 bytes -> C:\ProgramData\TEMP:AD2DB2F9
@Alternate Data Stream - 155 bytes -> C:\ProgramData\TEMP:8836A712
@Alternate Data Stream - 155 bytes -> C:\ProgramData\TEMP:5C5F2761
@Alternate Data Stream - 155 bytes -> C:\ProgramData\TEMP:059AEDF0
@Alternate Data Stream - 154 bytes -> C:\ProgramData\TEMP:D0AB8188
@Alternate Data Stream - 154 bytes -> C:\ProgramData\TEMP:D026A5A4
@Alternate Data Stream - 154 bytes -> C:\ProgramData\TEMP:7890F666
@Alternate Data Stream - 154 bytes -> C:\ProgramData\TEMP:6FB30371
@Alternate Data Stream - 154 bytes -> C:\ProgramData\TEMP:100384F2
@Alternate Data Stream - 154 bytes -> C:\ProgramData\TEMP:04A8F090
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:E1A6780D
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:C0321FEA
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:BBC21E74
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:AEEC88F6
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:A1D41B64
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:A039EDF9
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:8804E6C4
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:86FD97C7
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:62D0DCD7
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:60E1DBC1
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:5A9F1AE5
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:43C584D2
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:43ABA97D
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:35DC822B
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:319D783D
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:2F857862
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:2E338AC5
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:26B7B9EA
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:1E2D49E0
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:195E8317
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:14BB6494
@Alternate Data Stream - 153 bytes -> C:\ProgramData\TEMP:08542AEB
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:F36D7549
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:DF5ABA3D
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:DC87F3FA
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:C7696481
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:C4AAD3E4
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:AFAD2A47
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:AD62780D
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:A9E5D2F9
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:A47F887A
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:823606DE
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:639BB5E9
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:6301CE40
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:5C581A78
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:46A8281B
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:46283136
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:3FB882B1
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:3D11302A
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:33FE4F11
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:18295838
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:0F64164E
@Alternate Data Stream - 152 bytes -> C:\ProgramData\TEMP:05BAEA95
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:F92987E5
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:F74B380E
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:E95683AD
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:E4C1BB07
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:E47ADA47
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:E30B4B3D
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:E27663FD
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:DA6D0195
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:BDD6A972
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:BAD88AD2
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:B3A5945E
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:B13BAB9E
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:AF4DB2B1
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:A5948878
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:99FCCD3C
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:952245B1
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:80D6F29C
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:774C075A
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:6C3EA124
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:67CAA873
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:589B6F65
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:5068826C
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:4FD11E07
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:4C235828
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:2D4BD026
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:1C15C2AD
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:1BFEE019
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:15FA1ECB
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:07E55929
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:0534C904
@Alternate Data Stream - 151 bytes -> C:\ProgramData\TEMP:03FF739C
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:FD786DCA
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:F7EF495C
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:F56BE392
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:ED454F98
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:ED425875
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:E4BB3B5C
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:DCD58667
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:CA593CB0
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:C1B4B836
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:BC4F30ED
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:957AADD7
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:8EBDAD11
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:8E448A60
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:7D9C1270
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:7540476D
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:66CBBDB8
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:65CD165C
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:5EC423CA
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:4BB9495E
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:4B703588
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:3EBE372E
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:3C8A1547
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:391535F9
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:380AE4EE
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:30C74695
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:2F474C84
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:2DA8692F
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:258D2F8B
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:1A628363
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:157A85BF
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:1390879F
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:02CC0035
@Alternate Data Stream - 150 bytes -> C:\ProgramData\TEMP:020E3E0F
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:FE41A50B
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:F29EA80E
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:F2327E82
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:E9900C74
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:E6BEADB7
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:E562D9E1
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:E153075C
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:DA0E2D62
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:CF2D8E44
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:B110897C
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:B0618EB6
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:ACF1D93D
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:AB3339EF
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:A8280961
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:A3642ED6
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:A1E49723
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:A1D0527B
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:9F9D57FD
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:884C7316
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:84DEF113
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:743FBFC6
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:708FB123
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:6490AB71
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:59D0F747
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:59BB460B
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:524B8D87
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:5164A01F
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:4B1807BE
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:38D2EA83
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:37F7C765
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:36608448
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:2CB9631F
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:22D489B6
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:18491B67
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:0A038A59
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:05EAD381
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:02CB2721
@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:00715F64
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:FD38E906
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:FCBEDCFD
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:F7FFE8AF
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:F114CDB5
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:ED1F46B1
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:ECB488E5
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:EA2D188A
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:E779F65A
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:E5B07840
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:E2B0AAB4
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:C5F1E45D
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:C4B6B958
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:C37283B5
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:C1711BEE
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:B16047B8
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:A1A224DC
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:9E1CFAA1
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:8C6D5E8B
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:855BDAD7
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:80253E8D
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:7BFFC6A9
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:6C3C1AA8
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:69E7DEDD
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:5690D76E
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:51FA47D1
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:51A2D081
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:4BE0D478
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:4244811A
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:40EE25BB
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:386B39C3
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:2A874675
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:164561C8
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:10873493
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:104D4B7A
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:04ADB7A6
@Alternate Data Stream - 148 bytes -> C:\ProgramData\TEMP:0490FDBB
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:F8C2E3B9
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:EFC8E0D1
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:EF09C0E5
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:E690114B
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:E5BA9ADD
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:E3C19E60
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:E13F9D14
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:DB4758C6
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:D8F41EB9
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:D882BE37
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:C76CFF82
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:C6578E21
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:AED4A2B7
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:9F2DF453
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:94BEAE5E
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:92C69651
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:8DD7BAC3
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:8AE92FD3
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:77B90F12
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:6AEFE212
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:61CEFB31
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:5AE33054
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:59540531
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:578A8E86
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:51A20D23
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:48098650
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:3EC5BC08
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:3D4B733E
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:3407BF66
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:31C9BA96
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:3020A7D7
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:2BE12450
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:2ABB51D4
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:24391EC1
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:23834E1E
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:1A8854EC
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:140AD176
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:070F34E9
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:0410A323
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:01F4425C
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:EAF954B6
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:E6B95E40
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:E2C51D18
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:DB051353
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:D2397415
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:CD09E521
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:C9F873D0
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:C9BC8592
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:C966DE9F
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:C900B47A
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:C48A983C
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:B097AC8A
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:AD63DAF1
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:A9117599
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:A7964713
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:A4536607
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:A2FC7F08
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:A0921B2C
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:9FBC428A
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:9F3CEEE6
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:92D91D7E
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:8DD36B71
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:80347EE2
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:589A2088
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:53BA2DF6
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:51E83E25
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:519CAD78
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:4C33F119
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:4300D829
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:3A7527E8
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:3A4C8FE7
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:303528AB
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:26C9171C
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:244E4E3A
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:2208DD60
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:1CD511E5
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:183A9046
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:0D45D0F5
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:0B4B8EDA
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:00D99749
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:FD20BDA6
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:FC729D65
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:F42BB562
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:EC3A9923
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:E4C79C11
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:E0CDBB5A
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:DE8F8064
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:D696AA12
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:D0397AE3
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:CAF8DAC8
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:C7F08EA3
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:C7A094AF
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:C64C2839
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:C049ED37
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:BD0A043E
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:B65280E9
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:B53CFE3E
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:B4973B22
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:AE289451
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:ABEB24A6
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:A71DCB33
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:A6E02D6C
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:A6B07419
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:9373B271
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:8D15A230
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:85376176
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:82FDD600
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:788022C4
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:71973400
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:704905D3
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:6C59C3A1
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:6C3B96F0
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:6B79EC50
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:697B45E6
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:63ABD638
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:5CE65446
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:3D186293
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:2B9555D8
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:242E63C5
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:1604D047
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:093C07D7
@Alternate Data Stream - 145 bytes -> C:\ProgramData\TEMP:025DF3DE
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:FAB64002
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:F550FB94
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:ED51D3ED
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:EAB83E6E
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:E0648389
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:DD4208D9
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:D4558A0B
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:C7D35E8C
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:C6920A5D
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:A95E5E89
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:9AB47C16
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:8F781E82
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:83682B35
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:799B8AA7
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:72C99D4E
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:6E65510A
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:6720DF40
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:5C818B5D
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:55E1F0F4
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:4F79E059
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:47317C33
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:3E8A3E87
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:375E88A2
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:371060CE
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:35FFA83C
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:30E0D641
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:2E0BE9CA
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:2B856118
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:29629382
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:1C201DEB
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:1A5818E1
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:0EC9720B
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:090C2A14
@Alternate Data Stream - 144 bytes -> C:\ProgramData\TEMP:0168CC60
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:FDEE14AC
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:F5E8CAE0
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:F43B7E8F
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:EC769091
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:E8615736
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:E1B0CF05
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:DE3A8059
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:DE22D45C
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:D8A1AC56
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:CEBA48CB
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:CC5EA50C
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:CBC3E272
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:CAA2D3CC
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:C82CA1C0
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:C178954A
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:BCEEAD44
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:BA516E94
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:B6D84F71
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:B698CE52
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:B64F7263
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:B3606FCC
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:B1967253
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:AB9B31C2
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:AA0BC725
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:A9495ED0
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:9E38D9D0
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:9BE4A88F
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:98A8ABBD
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:92DB4653
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:9195103F
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:7FB8A209
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:7EABF26C
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:7CF060A5
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:7C8AA9A6
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:62AC0CCE
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:6294B369
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:5E8C18F1
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:4A8EB1C4
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:40F40566
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:3B454A5C
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:39EDBD33
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:2C371163
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:2B8B2A2E
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:2573B853
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:193CB03B
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:17EB5BAE
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:12383CAE
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:0ACF1AF5
@Alternate Data Stream - 143 bytes -> C:\ProgramData\TEMP:0968E571
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:FEB70DF9
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:F19EC797
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:EE198B1F
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:E265ED33
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:C9B27A06
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:C82210DD
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:C5340FA1
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:BE0654D6
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:BAFAD1DF
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:B5EC1B2F
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:A50DB5ED
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:9B2348B1
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:9A6A9036
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:99F8C0E6
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:94A31742
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:8DD20B4A
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:869C6B4A
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:7D288858
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:701B92FB
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:6CFD136C
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:6C5F503C
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:670A4B6C
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:64170090
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:568AC9E6
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:54A82907
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:491270B8
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:479B1CF9
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:4149A170
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:40F7CC51
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:38FF076E
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:3894C2D6
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:38019DCD
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:321156F2
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:2E6CEF29
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:2DE8C60F
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:28CDD861
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:26CA255B
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:268BA8AB
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:1F08F4B0
@Alternate Data Stream - 142 bytes -> C:\ProgramData\TEMP:067DA45B
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:FFC3922F
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:FE144218
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:FD7DCDA6
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:FC70A22A
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:F7581CE6
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:F53B274A
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:EB393E91
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:E8E51D31
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:E31EDFDE
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:E2CFA9CD
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:DBBE9F64
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:D621CFB8
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:D5BF78B4
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:CE3E87C1
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:C43C957E
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:C0BCE04B
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:BE6183AC
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:B78E962B
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:B3C7433B
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:B3A3C0E4
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:B0D93116
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:B0A727D1
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:AC0528D9
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:A8DFD30C
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:A477A19D
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:A10E88DE
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:9BA50BBA
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:965698AC
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:948CDB3D
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:943FEF5D
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:8AA7FD08
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:870649A4
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:86424782
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:73CCE32D
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:6896CCCE
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:5ACE199E
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:58E38390
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:4D8FCBEF
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:4A5F4E1B
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:48C21BA2
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:46F22D0B
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:3EA1C214
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:37661AA3
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:2979C892
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:274516E7
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:25F31665
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:20590537
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:1653203D
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:162E346C
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:15C4429D
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:122AC064
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:0E61938B
@Alternate Data Stream - 141 bytes -> C:\ProgramData\TEMP:000D6A25
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:FF75408C
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:FEB657E8
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:FBF21B24
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:F4485F9E
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:F131B2B8
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:F10B5CB6
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:EAF3ADF5
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:E9014DCF
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:E4FB4BB0
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:E4504623
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:DD835ECB
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:D7D0B4AF
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:D5CCCBAA
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:D1F023D6
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:CEE0D2ED
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:C4288847
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:B790962B
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:AE8FDB48
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:8855A119
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:86E35A58
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:79875988
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:795F6DEC
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:759BAE18
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:74847630
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:6EDF80C4
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:6ECD7CA1
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:6EA64886
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:6CF828C2
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:6A8BB05A
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:64649538
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:5DB36C47
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:55662D3E
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:52598916
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:4C8FA829
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:4C71A42B
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:4776379B
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:404908B5
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:3FD69132
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:3F266659
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:3E424252
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:3A4676D7
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:39FD2369
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:38293E85
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:36BA5D9D
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:3487C53E
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:33B17E7D
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:32289BE8
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:317F6070
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:2DFD7B60
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:1E288DA3
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:1AFB8C58
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:157D47AE
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:13CDB0E0
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:0ED1C542
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:041C0562
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:025C72E5
@Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:0256104B
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:FD11E093
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:FB967D49
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:FB71A279
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:F7F4DC88
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:EDE28CFC
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:ED6478EA
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:EAEE7554
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:E49B2ECC
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:DFA6ADE2
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:DD95E6D9
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:DB2748F7
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:D04FFD43
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:BEACE4C8
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:BD34FFC5
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:BCFEA004
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:BACD3198
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:B65E763D
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:B1E629F5
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:AE804D2B
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:AA0017FD
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:A819A132
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:A798AA1A
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:A6F30843
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:A6D6E537
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:A4076A3B
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:8868F8ED
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:751D6870
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:70354350
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:6EEA7FA7
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:6ECE93A8
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:6CD03C17
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:6757F885
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:651B3C3B
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:62AF94A0
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:59465B40
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:54D3B4D3
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:4C21784C
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:4ABDDCFB
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:473557EA
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:415BBA47
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:40752783
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:3F9F662A
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:3B43011E
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:3969ACF7
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:36FFA2FB
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:35629AE6
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:2F7643BA
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:2B8072F4
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:1709732A
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:160ADF0B
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:08DB8D99
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:06C34166
@Alternate Data Stream - 139 bytes -> C:\ProgramData\TEMP:021703B2
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:F5FC5DCE
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:F3591DDB
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:F30F2937
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:EB68CA55
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:EA6FBE43
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:E6537A16
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:E11D90D0
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:E0888117
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:E0848D16
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:DC3A4904
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:DBB33506
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:CE316153
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:BF6A2C54
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:B139DDF3
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:AD020DC3
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:A6AD54F3
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:A65A9C03
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:A653982F
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:9E05DEB0
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:97B3B270
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:9603033A
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:94BD36A2
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:9338F136
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:91FE43FF
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:883774F9
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:83A1BC35
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:7EF55396
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:763F1802
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:70BDB805
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:6EE8565A
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:60E0AB2A
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:5A25A61D
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:5304CF6F
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:4EFA2FC7
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:4EE323A4
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:4B1DA55E
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:46D8A372
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:41326804
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:402E8B54
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:2E5471E4
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:18B5F839
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:087D1C56
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:0255BA86
@Alternate Data Stream - 138 bytes -> C:\ProgramData\TEMP:0107E5CF
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:FC289904
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:FB07E290
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:F8A81876
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:F54781BF
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:E1E51784
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:DE29D4A1
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:DDF112BD
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:DA84DA4A
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:D1288D86
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:CEED62ED
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:CECB11E2
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:BEB823A7
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:BBC9C1EB
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:ADFAD95A
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:AD438972
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:A1DDEA35
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:9BAC4211
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:993F0BCE
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:902C848D
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:8F76671E
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:8EA1B54A
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:871D5BFB
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:7EC01D6D
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:78C04239
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:76466F4C
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:7425C891
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:6F07A587
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:688E43AA
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:5E73E1C2
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:587F3582
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:38ADF092
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:2AE74FF9
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:29455880
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:24ECC1BC
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:18DEBC51
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:152FD00E
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:10B970A9
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:0FE0A03C
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:0768C7C3
@Alternate Data Stream - 137 bytes -> C:\ProgramData\TEMP:03A039A3
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:FBD274CF
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:FA585D8D
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:F565FB91
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:F3C5E5A0
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:ED2D63E4
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:EBA6010F
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:EA468C69
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:E79B60CA
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:E369983A
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:E18C8D79
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:DAE7AE6D
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:D999FFD5
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:D92DB12F
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:D0AB0B4A
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:CF55A8AC
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:CAA40FE9
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:C78DECFC
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:ACDD7398
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:AC1DA023
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:AB0AD7C3
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:A33FC6E9
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:975C222A
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:822DC04E
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:797ED8B2
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:6A0A47E7
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:64671D2C
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:5E3B8D6E
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:512E1728
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:4E79C4F8
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:4B244549
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:4819880A
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:474022C7
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:436BE28C
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:3AED66BD
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:371A321E
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:3571475C
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:340A48AA
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:32531105
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:31380BB4
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:300E36AB
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:1960DAF2
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:0FE48065
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:0D560A24
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:07D64CD9
@Alternate Data Stream - 136 bytes -> C:\ProgramData\TEMP:005FA2D9
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:FD91EC29
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:EDBAF2DC
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:D566D82D
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:D36E068F
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:CBB33407
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:C71DF9C6
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:C639099E
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:C3D26A8A
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:BEF18713
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:BECA50FF
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:B837C568
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:B6E6C4EA
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:B6392329
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:B54E4B5A
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:AED33A42
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:A8606E6E
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:A69FAA24
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:9C337CCE
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:98CD9221
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:91BB656A
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:91A12471
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:8BE98D9F
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:83C47EED
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:83467B6D
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:801ED9DF
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:7AF85553
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:7903C039
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:77B64C59
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:6A9EDD31
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:683BD5A8
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:6764D965
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:5E8FAAFC
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:57A7A569
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:4E24EA2A
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:4C3D5A8B
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:479D2971
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:3D922890
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:3A7FFE28
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:2C86E2AD
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:2843C0F7
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:0BACBDD9
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:092BD83A
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:05C14794
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:045B567C
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:012BC84F
@Alternate Data Stream - 135 bytes -> C:\ProgramData\TEMP:00AA4B31
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:F6F0620D
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:F4BE8180
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:E894A3ED
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:E6B6120A
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:E2DDFA62
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:DE892EFB
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:DCA79AB3
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:D9656460
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:CC8AD379
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:C5EF5E3C
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:C45AA8C8
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:B96C57D4
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:ACDADE10
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:AABECEFB
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:A9ABA3FF
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:A6D89509
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:9720EBEF
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:96498373
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:93198714
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:92298B59
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:8C12CFCD
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:874ADA37
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:8075370B
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:7DC5D762
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:79363C4B
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:720EC388
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:71413C0D
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:6E7D6F26
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:6D00AE2A
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:6BE38463
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:6B52909D
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:5335CE76
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:4FA837B4
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:44F7ADB3
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:43F5FA9D
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:43180362
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:3FD11723
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:3F76D198
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:3C8DA795
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:3C7F3296
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:3539CD43
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:3031D8E8
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:301CA7B9
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:2E3F04BC
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:2040A5D7
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:14B2E0BD
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:122B3902
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:0FBDD25B
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:0A435166
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:08E5EE32
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:049C87B7
@Alternate Data Stream - 134 bytes -> C:\ProgramData\TEMP:02759897
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:E93F2F4D
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:E87AB4E3
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:E69B7EF5
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:E21433CE
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:DB662FF1
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:CC369F22
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:C695FBBC
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:C0893153
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:BA24E689
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:B51B45A3
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:B3AD86F1
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:AEF2AF4B
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:ADE91125
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:A851461E
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:9CF728A6
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:94B46CA2
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:79059537
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:6ED8B881
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:6DB7DB11
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:55E44EB7
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:55781AF7
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:48977386
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:48862C37
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:3E200C29
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:2F2C513F
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:2DC35960
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:26A148EB
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:25FF8A61
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:21BC8A4E
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:2020E69F
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:16BBC0E6
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:14362DF8
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:10CB85CA
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:0B941A88
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:07C99568
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:073139EC
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:FFDA30C6
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:FDE7A038
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:F89F2593
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:F541999C
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:EE76EF28
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:E287F8DD
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:E0A09032
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:DE875C30
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:CF1334B0
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:C9B600DB
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:BD91597E
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:AAEDCC2C
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:A5584049
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:A2B3764A
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:9C732DB0
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:8B2DC9C2
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:8924043A
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:8755BE01
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:85354988
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:845B8605
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:7ADB695A
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:6AF6BB0E
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:606EE652
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:4F7FE589
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:4AC7B5C1
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:4A48591F
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:41F14316
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:3DB6284E
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:3CEF7764
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:3C0887BF
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:380B35D4
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:31D86317
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:2FAB94E3
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:2C678471
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:28CE390D
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:263D6D33
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:1A792FDD
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:12A3FA49
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:12258D63
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:0856D69C
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:0807AFBC
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:07C0E0DB
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:05582920
@Alternate Data Stream - 132 bytes -> C:\ProgramData\TEMP:021496FB
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:FFC741D1
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:FF4E4842
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:FC11287A
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:F9689B72
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:ECF3C50F
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:EA43B001
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:E5496666
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:E222F217
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:CDB75348
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:C9E300DE
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:C5E2BAEE
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:C15430E0
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:BAE8784F
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:AD727397
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:A9A46BAC
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:A2FE7E90
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:94CFD695
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:91AB5285
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:8AC20936
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:80CC1319
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:76B6BC45
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:7267B0B5
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:65C4D44A
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:6310105A
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:6212DF7A
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:5CE91C67
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:5C0940F1
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:5B4686D7
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:52C24010
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:50F6138D
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:50764425
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:3AF35ED3
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:38583C87
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:318F58ED
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:1D8DA741
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:1D0F625E
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:19474103
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:13765436
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:0915A718
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:0696EC8E
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:03573464
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:02F30776
@Alternate Data Stream - 131 bytes -> C:\ProgramData\TEMP:02067B2A
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:FEE00EB9
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:FD6D11C9
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:F13867C6
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:EFF3C3C8
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:EDDBC69E
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:EA239AF3
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:E5E3042E
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:DE4CDA7F
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:D3A82449
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:CC141B05
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:BFE54417
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:B88DC997
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:B2112CA5
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:AFB89C92
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:A18121AD
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:9F464D14
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:95079543
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:94B85462
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:91DFBB4A
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:8E5D8044
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:80197AB9
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:715343A0
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:6DD124E2
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:69A6B28F
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:68A41423
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:6423D635
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:5FD26EF3
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:5CD70138
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:5080697C
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:44F20D76
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:447D840C
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:37207201
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:2AD33723
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:25612F5D
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:25263F30
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:23311E75
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:1E942FB9
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:1B47CB83
@Alternate Data Stream - 130 bytes -> C:\ProgramData\TEMP:120B3AFD
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:FB4262DE
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:F610C203
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:F26F5952
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:E9E67F10
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:E748547C
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:E5576A7A
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:E402E439
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:E0C92ACC
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:DB39F2A2
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:DB0E3610
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:DA9D42A5
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:D6C2C750
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:D3A89E47
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:D01ACC06
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:C42EB422
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:C0601E00
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:BFA8F8E2
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:BB16EB59
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:BA660D25
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:B6AE8DE6
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:A9056F42
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:A4241298
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:A174A5CD
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:A12FBF8D
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:9D03192E
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:98A71B94
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:980D86EF
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:81F6F7CD
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:7BB20DE8
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:7AF9CAEB
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:73B78E79
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:71112705
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:6B709AD7
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:65AAB2AD
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:5AC256BC
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:4CA05B44
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:47BC906D
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:44E16D4A
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:3CA557DB
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:384AA0FD
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:2F8138B7
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:2AF04C69
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:2936486C
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:27974442
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:1B389835
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:178CD274
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:0B42540E
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:07F1E224
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:057D335E
@Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:00325F08
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:F33C37D5
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:EE7AAC75
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:EBF0842B
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:E99B7847
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:DFD03865
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:D3CBE452
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:D39D0760
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:C7342A3B
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:C458CC0A
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:C370B84F
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:C0A9B815
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:BEE39E9B
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:B4F0E275
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:B36361EE
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:A26AFC00
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:9FF05345
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:9BB8C675
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:99B20AD0
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:90C320E1
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:8E11CC80
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:8497EEBD
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:7D2DF249
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:754E278B
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:71004506
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:6F0B6A5A
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:62D72D41
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:56FBA78D
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:5453E5AF
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:51E66512
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:50D4BAF7
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:4EC7F009
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:4C16B46B
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:486CFA26
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:3E8EC09D
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:398EFF0F
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:349E5B74
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:300319CF
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:2E636DD9
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:2CED8825
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:231902A8
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:2104E882
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:1FA4C06F
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:17FF6514
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:13632066
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:12D21A9A
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:1254AF99
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:11E1C455
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:114C90CA
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:10F54EB5
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:0513D3EB
@Alternate Data Stream - 128 bytes -> C:\ProgramData\TEMP:0112E544
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:F614E9D7
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:F5D01D7C
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:ED0B32CA
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:E4AF6738
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:E04570EE
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:DBC3D477
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:DA6F4C11
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:C211A5DF
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:C18013F9
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:BDC0F56E
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:B8791731
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:A9223B61
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:A42FABF7
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:A17BCEAD
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:922DA2DB
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:905BCB57
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:7BFAAE70
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:762408BA
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:6DDFD746
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:658DE22A
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:657027E7
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:65137F0D
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:57B374AB
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:4E10A40A
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:4CD3F344
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:4C9782FB
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:4BDE2F32
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:48F9F656
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:47A24D4B
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:366CED23
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:2F360FB3
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:2E33E4A6
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:2B353054
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:1DB77A89
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:1A15E356
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:12A11485
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:1234ADAE
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:1224B4C3
@Alternate Data Stream - 127 bytes -> C:\ProgramData\TEMP:0ADCCF52
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:F9F58B80
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:F98E6C67
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:F8EE1B63
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:EE64FA92
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:EB792F59
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:C642810F
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:B1786630
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:B0EA26E5
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:ACC8B9FE
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:9F8A968C
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:9DB67071
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:9B4E710C
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:86B7FDDB
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:8204AA35
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:7E4E56EA
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:7899E39D
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:71AEFFEB
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:70989864
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:678C1866
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:5AABC977
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:56FCF346
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:4D4CCFDE
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:4A906D4A
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:49EB69E2
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:45E33ED2
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:404C30E3
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:3D724856
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:21D36579
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:20FDCEDA
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:206470A5
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:19068864
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:18E3BAF3
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:18A25CF1
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:16A2C6C0
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:1392F09D
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:11EFE63D
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:1173185F
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:084612C9
@Alternate Data Stream - 126 bytes -> C:\ProgramData\TEMP:07D9FF25
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:F0FEF55C
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:EEBA2194
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:EE7A6A39
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:EE69D7DF
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:E31FAD5C
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:DF19F127
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:DE85158E
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:DC7EDF41
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:D1A3680D
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:CDA5E85E
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:C1C705A1
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:B480AC4F
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:B3EC70D7
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:B38BEEEE
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:ADCBD4B1
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:A542877D
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:9FCF32A8
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:96372A73
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:95460138
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:8B3E4368
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:84CFEE62
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:7C4DCB5B
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:6D5A15BF
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:663B62CA
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:5FD35242
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:5F13D96D
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:3DB6F365
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:363E775E
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:1B96CF22
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:16F4BC64
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:0F4A7B6A
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:0AE8A4AA
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:0794061A
@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:041ED421
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:FE6FC288
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:FBF4285F
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:F6A0889A
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:F2B81C2E
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:DAA03B47
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:D47B19A6
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:C53CB97B
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:C4E5F754
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:C49A5AD1
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:C104B0EF
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:BE3D26E5
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:BDDE9892
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:BD8010FE
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:A855A1F5
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:A1A86E40
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:A02025CE
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:9C7A32BB
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:9C3AAD57
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:9597EAFE
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:957E9765
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:8856A3B9
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:72A1B66A
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:702A7F20
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:5D4F063C
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:5C39FE43
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:5822E129
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:517EFA90
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:5133A494
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:4E682B93
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:43CBFAB2
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:4047CC8B
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:34BBA0EE
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:32EA849C
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:29C0641D
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:2652902F
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:1EDA006C
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:1919E614
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:09708CB7
@Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:063969F8
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:F9DBCA89
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:F860DBFD
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:F6C63FD4
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:E6EC5C2A
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:E3615992
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:D6603C06
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:CAB5CE82
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:CA1AFE85
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:BE714CCB
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:BE1DA945
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:BC6B5246
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:B7B09D45
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:B1381B34
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:A8ADEA55
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:988406DD
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:943971F5
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:8AED9359
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:7396B250
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:6A9CA6CB
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:62AF0D82
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:60F3D3BE
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:5E8CBF59
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:40AB1F79
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:375B96CE
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:3086B95F
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:2702660E
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:217A2324
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:13019F4B
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:10FDBA11
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:0FD467B3
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:0B32B6C9
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:020106A2
@Alternate Data Stream - 123 bytes -> C:\ProgramData\TEMP:01D59398
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:FD80436E
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:ED87F928
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:E8AEB2BF
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:E3E08656
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:E31543CC
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:DD0E44DE
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:D9771F40
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:D3A9D67D
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:CA99FD89
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:BE6B5FC3
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:BC1F7CAE
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:ACEDBECD
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:A967B48B
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:A900C3A3
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:A76A1B1B
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:A2C4E5BC
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:9D792BFF
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:9D640585
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:9B91915F
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:97AAB7F2
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:9424DF3A
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:8DAEE95B
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:88E4DD0D
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:84E5776A
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:7DCD39C9
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:6C031E3E
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:645E99F7
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:6260658C
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:61FEC5E3
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:57231008
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:4F852702
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:4DDE401B
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:4A2862FF
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:45CA8044
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:3C4BD225
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:2F70C0B4
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:21B987C4
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:217A2A36
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:1CF1FB36
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:134FBDE2
@Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:04E853D4
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:F135A76C
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:E99D1D3C
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:D0005E5A
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:CC4C59B4
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:AAA06E15
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:A4E7D25F
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:A1460B2A
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:87A3A233
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:7BE5BAAB
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:66871744
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:5ECEFF17
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:37C279BE
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:34C443B4
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:10D45FC3
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:109734F6
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:F760FD47
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:F5B51004
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:EE2DD6CC
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:E4EE99EF
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:BF6C81B2
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:AA60673F
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:98DD1050
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:96C9689F
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:8B79243A
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:7D9B1030
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:774A0E14
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:6B7447D4
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:5C4A588B
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:5A2E8BBF
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:1B3549F2
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:1416AAA6
@Alternate Data Stream - 120 bytes -> C:\ProgramData\TEMP:00258EE7
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:F7370879
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:E8B61305
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:E40D7F76
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:C7517D0A
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:C3AD9507
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:C2F24DB5
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:BACB6B6C
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:B4258C5D
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:927EC486
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:6FD36C4B
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:6F0C95A1
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:6E2D80C8
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:6C049F97
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:56C66609
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:553056F1
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:4C6F9D77
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:32FFF2D1
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:2C250258
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:2B40A7DB
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:29F0CA7D
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:28819F45
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:1BD02801
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:19636FDD
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:104A718B
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:04B1A0AC
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:F1F936DF
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:E40AB54F
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:D2C44806
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:CF61CE5A
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:CAE3AE67
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:C78DADEA
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:BCF55336
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:AFC732F7
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:AECF4772
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:A8185163
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:75798D9A
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:594C9FF8
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:46A2F27B
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:3B75B877
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:329BA65B
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:26499772
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:11590865
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:0FD8569B
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:01D2B3C4
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:E6708F08
@Alternate Data Stream - 117 bytes -> C:\ProgramData\TEMP:8CCDAB14
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:2216A431
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:A1023D41
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:1A5822A3
@Alternate Data Stream - 115 bytes -> C:\ProgramData\TEMP:064877B6
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:D453E38B
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:AE9351E0
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:97995ED4
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:50636E35
@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:149327FE
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:DBEF355E
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:6BF0805F
@Alternate Data Stream - 113 bytes -> C:\ProgramData\TEMP:60C897F3
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:DA5888A7
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:B1FBBD09
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:99C301D0
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:69FE2EE4
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:28476D43
@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:062AF572
@Alternate Data Stream - 111 bytes -> C:\ProgramData\TEMP:D507B5A8
@Alternate Data Stream - 111 bytes -> C:\ProgramData\TEMP:124B94C0
@Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:57B2B96C
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:90D89144
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:EB5BDBB0
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:6444B424
@Alternate Data Stream - 108 bytes -> C:\ProgramData\TEMP:12EA4DC9
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:EAFDF1CF
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:96AFAB10
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:24FECE50
@Alternate Data Stream - 107 bytes -> C:\ProgramData\TEMP:0AE2C68F
@Alternate Data Stream - 106 bytes -> C:\ProgramData\TEMP:3D36932D
@Alternate Data Stream - 103 bytes -> C:\ProgramData\TEMP:D2D4B33E
@Alternate Data Stream - 102 bytes -> C:\ProgramData\TEMP:45912F61
@Alternate Data Stream - 101 bytes -> C:\ProgramData\TEMP:F44D3C53
@Alternate Data Stream - 101 bytes -> C:\ProgramData\TEMP:880F0FEF
@Alternate Data Stream - 101 bytes -> C:\ProgramData\TEMP:74091520
@Alternate Data Stream - 100 bytes -> C:\ProgramData\TEMP:E2C9E369
:Files
C:\Users\Heike und Achim\AppData\Roaming\.#
ipconfig /flushdns /c
:Commands
[purity]
[emptytemp]
[resethosts]
         
Klick dann oben links auf den Button Fix!
Das Logfile müsste geöffnet werden, wenn Du nach dem Fixen auf ok klickst, poste das bitte. Evtl. wird der Rechner neu gestartet.

Die mit diesem Script gefixten Einträge, Dateien und Ordner werden zur Sicherheit nicht vollständig gelöscht, es wird eine Sicherheitskopie auf der Systempartition im Ordner "_OTL" erstellt.

Hinweis: Das obige Script ist nur für diesen einen User in dieser Situtation erstellt worden. Es ist auf keinen anderen Rechner portierbar und darf nicht anderweitig verwandt werden, da es das System nachhaltig schädigen kann!
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 17.10.2012, 19:33   #20
ebb8924
 
Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Standard

Trojan.RedirRdll2.Gen und Macaffe Firewall stopt



Hallo Cosinus,
hier ist die fix-Datei
Code:
ATTFilter
All processes killed
========== OTL ==========
ADS C:\ProgramData\TEMP:0E636D62 deleted successfully.
ADS C:\ProgramData\TEMP:072B9E55 deleted successfully.
ADS C:\ProgramData\TEMP:80873EE2 deleted successfully.
ADS C:\ProgramData\TEMP:308B0C2B deleted successfully.
ADS C:\ProgramData\TEMP:5072C8B3 deleted successfully.
ADS C:\ProgramData\TEMP:C72E5875 deleted successfully.
ADS C:\ProgramData\TEMP:990CDA66 deleted successfully.
ADS C:\ProgramData\TEMP:D4CD7005 deleted successfully.
ADS C:\ProgramData\TEMP:FB9BB3A3 deleted successfully.
ADS C:\ProgramData\TEMP:1E29E2EC deleted successfully.
ADS C:\ProgramData\TEMP:69BAEA18 deleted successfully.
ADS C:\ProgramData\TEMP:344AB8D4 deleted successfully.
ADS C:\ProgramData\TEMP:B4832D1B deleted successfully.
ADS C:\ProgramData\TEMP:650E86E6 deleted successfully.
ADS C:\ProgramData\TEMP:2FF93FB9 deleted successfully.
ADS C:\ProgramData\TEMP:E85C241C deleted successfully.
ADS C:\ProgramData\TEMP:A700ABC5 deleted successfully.
ADS C:\ProgramData\TEMP:08DA230B deleted successfully.
ADS C:\ProgramData\TEMP:9C68C476 deleted successfully.
ADS C:\ProgramData\TEMP:214562D2 deleted successfully.
ADS C:\ProgramData\TEMP:BE03B635 deleted successfully.
ADS C:\ProgramData\TEMP:8B38FB22 deleted successfully.
ADS C:\ProgramData\TEMP:2E96EDE5 deleted successfully.
ADS C:\ProgramData\TEMP:71629BB0 deleted successfully.
ADS C:\ProgramData\TEMP:87C6CF00 deleted successfully.
ADS C:\ProgramData\TEMP:0B8DC177 deleted successfully.
ADS C:\ProgramData\TEMP:35AAFF34 deleted successfully.
ADS C:\ProgramData\TEMP:06C757ED deleted successfully.
ADS C:\ProgramData\TEMP:72DF296E deleted successfully.
ADS C:\ProgramData\TEMP:918DED71 deleted successfully.
ADS C:\ProgramData\TEMP:B2B2F0D4 deleted successfully.
ADS C:\ProgramData\TEMP:A7F5A65E deleted successfully.
ADS C:\ProgramData\TEMP:E603155F deleted successfully.
ADS C:\ProgramData\TEMP:0C8F11F4 deleted successfully.
ADS C:\ProgramData\TEMP:2F5A06FD deleted successfully.
ADS C:\ProgramData\TEMP:B0456F0C deleted successfully.
ADS C:\ProgramData\TEMP:18C53152 deleted successfully.
ADS C:\ProgramData\TEMP:EBDC2C7A deleted successfully.
ADS C:\ProgramData\TEMP:4D7938F6 deleted successfully.
ADS C:\ProgramData\TEMP:63C8DCBB deleted successfully.
ADS C:\ProgramData\TEMP:69B07149 deleted successfully.
ADS C:\ProgramData\TEMP:5081B2E0 deleted successfully.
ADS C:\ProgramData\TEMP:28A1F3CB deleted successfully.
ADS C:\ProgramData\TEMP:172D8D70 deleted successfully.
ADS C:\ProgramData\TEMP:BBD6565E deleted successfully.
ADS C:\ProgramData\TEMP:AD2DB2F9 deleted successfully.
ADS C:\ProgramData\TEMP:8836A712 deleted successfully.
ADS C:\ProgramData\TEMP:5C5F2761 deleted successfully.
ADS C:\ProgramData\TEMP:059AEDF0 deleted successfully.
ADS C:\ProgramData\TEMP:D0AB8188 deleted successfully.
ADS C:\ProgramData\TEMP:D026A5A4 deleted successfully.
ADS C:\ProgramData\TEMP:7890F666 deleted successfully.
ADS C:\ProgramData\TEMP:6FB30371 deleted successfully.
ADS C:\ProgramData\TEMP:100384F2 deleted successfully.
ADS C:\ProgramData\TEMP:04A8F090 deleted successfully.
ADS C:\ProgramData\TEMP:E1A6780D deleted successfully.
ADS C:\ProgramData\TEMP:C0321FEA deleted successfully.
ADS C:\ProgramData\TEMP:BBC21E74 deleted successfully.
ADS C:\ProgramData\TEMP:AEEC88F6 deleted successfully.
ADS C:\ProgramData\TEMP:A1D41B64 deleted successfully.
ADS C:\ProgramData\TEMP:A039EDF9 deleted successfully.
ADS C:\ProgramData\TEMP:8804E6C4 deleted successfully.
ADS C:\ProgramData\TEMP:86FD97C7 deleted successfully.
ADS C:\ProgramData\TEMP:62D0DCD7 deleted successfully.
ADS C:\ProgramData\TEMP:60E1DBC1 deleted successfully.
ADS C:\ProgramData\TEMP:5A9F1AE5 deleted successfully.
ADS C:\ProgramData\TEMP:43C584D2 deleted successfully.
ADS C:\ProgramData\TEMP:43ABA97D deleted successfully.
ADS C:\ProgramData\TEMP:35DC822B deleted successfully.
ADS C:\ProgramData\TEMP:319D783D deleted successfully.
ADS C:\ProgramData\TEMP:2F857862 deleted successfully.
ADS C:\ProgramData\TEMP:2E338AC5 deleted successfully.
ADS C:\ProgramData\TEMP:26B7B9EA deleted successfully.
ADS C:\ProgramData\TEMP:1E2D49E0 deleted successfully.
ADS C:\ProgramData\TEMP:195E8317 deleted successfully.
ADS C:\ProgramData\TEMP:14BB6494 deleted successfully.
ADS C:\ProgramData\TEMP:08542AEB deleted successfully.
ADS C:\ProgramData\TEMP:F36D7549 deleted successfully.
ADS C:\ProgramData\TEMP:DF5ABA3D deleted successfully.
ADS C:\ProgramData\TEMP:DC87F3FA deleted successfully.
ADS C:\ProgramData\TEMP:C7696481 deleted successfully.
ADS C:\ProgramData\TEMP:C4AAD3E4 deleted successfully.
ADS C:\ProgramData\TEMP:AFAD2A47 deleted successfully.
ADS C:\ProgramData\TEMP:AD62780D deleted successfully.
ADS C:\ProgramData\TEMP:A9E5D2F9 deleted successfully.
ADS C:\ProgramData\TEMP:A47F887A deleted successfully.
ADS C:\ProgramData\TEMP:823606DE deleted successfully.
ADS C:\ProgramData\TEMP:639BB5E9 deleted successfully.
ADS C:\ProgramData\TEMP:6301CE40 deleted successfully.
ADS C:\ProgramData\TEMP:5C581A78 deleted successfully.
ADS C:\ProgramData\TEMP:46A8281B deleted successfully.
ADS C:\ProgramData\TEMP:46283136 deleted successfully.
ADS C:\ProgramData\TEMP:3FB882B1 deleted successfully.
ADS C:\ProgramData\TEMP:3D11302A deleted successfully.
ADS C:\ProgramData\TEMP:33FE4F11 deleted successfully.
ADS C:\ProgramData\TEMP:18295838 deleted successfully.
ADS C:\ProgramData\TEMP:0F64164E deleted successfully.
ADS C:\ProgramData\TEMP:05BAEA95 deleted successfully.
ADS C:\ProgramData\TEMP:F92987E5 deleted successfully.
ADS C:\ProgramData\TEMP:F74B380E deleted successfully.
ADS C:\ProgramData\TEMP:E95683AD deleted successfully.
ADS C:\ProgramData\TEMP:E4C1BB07 deleted successfully.
ADS C:\ProgramData\TEMP:E47ADA47 deleted successfully.
ADS C:\ProgramData\TEMP:E30B4B3D deleted successfully.
ADS C:\ProgramData\TEMP:E27663FD deleted successfully.
ADS C:\ProgramData\TEMP:DA6D0195 deleted successfully.
ADS C:\ProgramData\TEMP:BDD6A972 deleted successfully.
ADS C:\ProgramData\TEMP:BAD88AD2 deleted successfully.
ADS C:\ProgramData\TEMP:B3A5945E deleted successfully.
ADS C:\ProgramData\TEMP:B13BAB9E deleted successfully.
ADS C:\ProgramData\TEMP:AF4DB2B1 deleted successfully.
ADS C:\ProgramData\TEMP:A5948878 deleted successfully.
ADS C:\ProgramData\TEMP:99FCCD3C deleted successfully.
ADS C:\ProgramData\TEMP:952245B1 deleted successfully.
ADS C:\ProgramData\TEMP:80D6F29C deleted successfully.
ADS C:\ProgramData\TEMP:774C075A deleted successfully.
ADS C:\ProgramData\TEMP:6C3EA124 deleted successfully.
ADS C:\ProgramData\TEMP:67CAA873 deleted successfully.
ADS C:\ProgramData\TEMP:589B6F65 deleted successfully.
ADS C:\ProgramData\TEMP:5068826C deleted successfully.
ADS C:\ProgramData\TEMP:4FD11E07 deleted successfully.
ADS C:\ProgramData\TEMP:4C235828 deleted successfully.
ADS C:\ProgramData\TEMP:2D4BD026 deleted successfully.
ADS C:\ProgramData\TEMP:1C15C2AD deleted successfully.
ADS C:\ProgramData\TEMP:1BFEE019 deleted successfully.
ADS C:\ProgramData\TEMP:15FA1ECB deleted successfully.
ADS C:\ProgramData\TEMP:07E55929 deleted successfully.
ADS C:\ProgramData\TEMP:0534C904 deleted successfully.
ADS C:\ProgramData\TEMP:03FF739C deleted successfully.
ADS C:\ProgramData\TEMP:FD786DCA deleted successfully.
ADS C:\ProgramData\TEMP:F7EF495C deleted successfully.
ADS C:\ProgramData\TEMP:F56BE392 deleted successfully.
ADS C:\ProgramData\TEMP:ED454F98 deleted successfully.
ADS C:\ProgramData\TEMP:ED425875 deleted successfully.
ADS C:\ProgramData\TEMP:E4BB3B5C deleted successfully.
ADS C:\ProgramData\TEMP:DCD58667 deleted successfully.
ADS C:\ProgramData\TEMP:CA593CB0 deleted successfully.
ADS C:\ProgramData\TEMP:C1B4B836 deleted successfully.
ADS C:\ProgramData\TEMP:BC4F30ED deleted successfully.
ADS C:\ProgramData\TEMP:957AADD7 deleted successfully.
ADS C:\ProgramData\TEMP:8EBDAD11 deleted successfully.
ADS C:\ProgramData\TEMP:8E448A60 deleted successfully.
ADS C:\ProgramData\TEMP:7D9C1270 deleted successfully.
ADS C:\ProgramData\TEMP:7540476D deleted successfully.
ADS C:\ProgramData\TEMP:66CBBDB8 deleted successfully.
ADS C:\ProgramData\TEMP:65CD165C deleted successfully.
ADS C:\ProgramData\TEMP:5EC423CA deleted successfully.
ADS C:\ProgramData\TEMP:4BB9495E deleted successfully.
ADS C:\ProgramData\TEMP:4B703588 deleted successfully.
ADS C:\ProgramData\TEMP:3EBE372E deleted successfully.
ADS C:\ProgramData\TEMP:3C8A1547 deleted successfully.
ADS C:\ProgramData\TEMP:391535F9 deleted successfully.
ADS C:\ProgramData\TEMP:380AE4EE deleted successfully.
ADS C:\ProgramData\TEMP:30C74695 deleted successfully.
ADS C:\ProgramData\TEMP:2F474C84 deleted successfully.
ADS C:\ProgramData\TEMP:2DA8692F deleted successfully.
ADS C:\ProgramData\TEMP:258D2F8B deleted successfully.
ADS C:\ProgramData\TEMP:1A628363 deleted successfully.
ADS C:\ProgramData\TEMP:157A85BF deleted successfully.
ADS C:\ProgramData\TEMP:1390879F deleted successfully.
ADS C:\ProgramData\TEMP:02CC0035 deleted successfully.
ADS C:\ProgramData\TEMP:020E3E0F deleted successfully.
ADS C:\ProgramData\TEMP:FE41A50B deleted successfully.
ADS C:\ProgramData\TEMP:F29EA80E deleted successfully.
ADS C:\ProgramData\TEMP:F2327E82 deleted successfully.
ADS C:\ProgramData\TEMP:E9900C74 deleted successfully.
ADS C:\ProgramData\TEMP:E6BEADB7 deleted successfully.
ADS C:\ProgramData\TEMP:E562D9E1 deleted successfully.
ADS C:\ProgramData\TEMP:E153075C deleted successfully.
ADS C:\ProgramData\TEMP:DA0E2D62 deleted successfully.
ADS C:\ProgramData\TEMP:CF2D8E44 deleted successfully.
ADS C:\ProgramData\TEMP:B110897C deleted successfully.
ADS C:\ProgramData\TEMP:B0618EB6 deleted successfully.
ADS C:\ProgramData\TEMP:ACF1D93D deleted successfully.
ADS C:\ProgramData\TEMP:AB3339EF deleted successfully.
ADS C:\ProgramData\TEMP:A8280961 deleted successfully.
ADS C:\ProgramData\TEMP:A3642ED6 deleted successfully.
ADS C:\ProgramData\TEMP:A1E49723 deleted successfully.
ADS C:\ProgramData\TEMP:A1D0527B deleted successfully.
ADS C:\ProgramData\TEMP:9F9D57FD deleted successfully.
ADS C:\ProgramData\TEMP:884C7316 deleted successfully.
ADS C:\ProgramData\TEMP:84DEF113 deleted successfully.
ADS C:\ProgramData\TEMP:743FBFC6 deleted successfully.
ADS C:\ProgramData\TEMP:708FB123 deleted successfully.
ADS C:\ProgramData\TEMP:6490AB71 deleted successfully.
ADS C:\ProgramData\TEMP:59D0F747 deleted successfully.
ADS C:\ProgramData\TEMP:59BB460B deleted successfully.
ADS C:\ProgramData\TEMP:524B8D87 deleted successfully.
ADS C:\ProgramData\TEMP:5164A01F deleted successfully.
ADS C:\ProgramData\TEMP:4B1807BE deleted successfully.
ADS C:\ProgramData\TEMP:38D2EA83 deleted successfully.
ADS C:\ProgramData\TEMP:37F7C765 deleted successfully.
ADS C:\ProgramData\TEMP:36608448 deleted successfully.
ADS C:\ProgramData\TEMP:2CB9631F deleted successfully.
ADS C:\ProgramData\TEMP:22D489B6 deleted successfully.
ADS C:\ProgramData\TEMP:18491B67 deleted successfully.
ADS C:\ProgramData\TEMP:0A038A59 deleted successfully.
ADS C:\ProgramData\TEMP:05EAD381 deleted successfully.
ADS C:\ProgramData\TEMP:02CB2721 deleted successfully.
ADS C:\ProgramData\TEMP:00715F64 deleted successfully.
ADS C:\ProgramData\TEMP:FD38E906 deleted successfully.
ADS C:\ProgramData\TEMP:FCBEDCFD deleted successfully.
ADS C:\ProgramData\TEMP:F7FFE8AF deleted successfully.
ADS C:\ProgramData\TEMP:F114CDB5 deleted successfully.
ADS C:\ProgramData\TEMP:ED1F46B1 deleted successfully.
ADS C:\ProgramData\TEMP:ECB488E5 deleted successfully.
ADS C:\ProgramData\TEMP:EA2D188A deleted successfully.
ADS C:\ProgramData\TEMP:E779F65A deleted successfully.
ADS C:\ProgramData\TEMP:E5B07840 deleted successfully.
ADS C:\ProgramData\TEMP:E2B0AAB4 deleted successfully.
ADS C:\ProgramData\TEMP:C5F1E45D deleted successfully.
ADS C:\ProgramData\TEMP:C4B6B958 deleted successfully.
ADS C:\ProgramData\TEMP:C37283B5 deleted successfully.
ADS C:\ProgramData\TEMP:C1711BEE deleted successfully.
ADS C:\ProgramData\TEMP:B16047B8 deleted successfully.
ADS C:\ProgramData\TEMP:A1A224DC deleted successfully.
ADS C:\ProgramData\TEMP:9E1CFAA1 deleted successfully.
ADS C:\ProgramData\TEMP:8C6D5E8B deleted successfully.
ADS C:\ProgramData\TEMP:855BDAD7 deleted successfully.
ADS C:\ProgramData\TEMP:80253E8D deleted successfully.
ADS C:\ProgramData\TEMP:7BFFC6A9 deleted successfully.
ADS C:\ProgramData\TEMP:6C3C1AA8 deleted successfully.
ADS C:\ProgramData\TEMP:69E7DEDD deleted successfully.
ADS C:\ProgramData\TEMP:5690D76E deleted successfully.
ADS C:\ProgramData\TEMP:51FA47D1 deleted successfully.
ADS C:\ProgramData\TEMP:51A2D081 deleted successfully.
ADS C:\ProgramData\TEMP:4BE0D478 deleted successfully.
ADS C:\ProgramData\TEMP:4244811A deleted successfully.
ADS C:\ProgramData\TEMP:40EE25BB deleted successfully.
ADS C:\ProgramData\TEMP:386B39C3 deleted successfully.
ADS C:\ProgramData\TEMP:2A874675 deleted successfully.
ADS C:\ProgramData\TEMP:164561C8 deleted successfully.
ADS C:\ProgramData\TEMP:10873493 deleted successfully.
ADS C:\ProgramData\TEMP:104D4B7A deleted successfully.
ADS C:\ProgramData\TEMP:04ADB7A6 deleted successfully.
ADS C:\ProgramData\TEMP:0490FDBB deleted successfully.
ADS C:\ProgramData\TEMP:F8C2E3B9 deleted successfully.
ADS C:\ProgramData\TEMP:EFC8E0D1 deleted successfully.
ADS C:\ProgramData\TEMP:EF09C0E5 deleted successfully.
ADS C:\ProgramData\TEMP:E690114B deleted successfully.
ADS C:\ProgramData\TEMP:E5BA9ADD deleted successfully.
ADS C:\ProgramData\TEMP:E3C19E60 deleted successfully.
ADS C:\ProgramData\TEMP:E13F9D14 deleted successfully.
ADS C:\ProgramData\TEMP:DB4758C6 deleted successfully.
ADS C:\ProgramData\TEMP:D8F41EB9 deleted successfully.
ADS C:\ProgramData\TEMP:D882BE37 deleted successfully.
ADS C:\ProgramData\TEMP:C76CFF82 deleted successfully.
ADS C:\ProgramData\TEMP:C6578E21 deleted successfully.
ADS C:\ProgramData\TEMP:AED4A2B7 deleted successfully.
ADS C:\ProgramData\TEMP:9F2DF453 deleted successfully.
ADS C:\ProgramData\TEMP:94BEAE5E deleted successfully.
ADS C:\ProgramData\TEMP:92C69651 deleted successfully.
ADS C:\ProgramData\TEMP:8DD7BAC3 deleted successfully.
ADS C:\ProgramData\TEMP:8AE92FD3 deleted successfully.
ADS C:\ProgramData\TEMP:77B90F12 deleted successfully.
ADS C:\ProgramData\TEMP:6AEFE212 deleted successfully.
ADS C:\ProgramData\TEMP:61CEFB31 deleted successfully.
ADS C:\ProgramData\TEMP:5AE33054 deleted successfully.
ADS C:\ProgramData\TEMP:59540531 deleted successfully.
ADS C:\ProgramData\TEMP:578A8E86 deleted successfully.
ADS C:\ProgramData\TEMP:51A20D23 deleted successfully.
ADS C:\ProgramData\TEMP:48098650 deleted successfully.
ADS C:\ProgramData\TEMP:3EC5BC08 deleted successfully.
ADS C:\ProgramData\TEMP:3D4B733E deleted successfully.
ADS C:\ProgramData\TEMP:3407BF66 deleted successfully.
ADS C:\ProgramData\TEMP:31C9BA96 deleted successfully.
ADS C:\ProgramData\TEMP:3020A7D7 deleted successfully.
ADS C:\ProgramData\TEMP:2BE12450 deleted successfully.
ADS C:\ProgramData\TEMP:2ABB51D4 deleted successfully.
ADS C:\ProgramData\TEMP:24391EC1 deleted successfully.
ADS C:\ProgramData\TEMP:23834E1E deleted successfully.
ADS C:\ProgramData\TEMP:1A8854EC deleted successfully.
ADS C:\ProgramData\TEMP:140AD176 deleted successfully.
ADS C:\ProgramData\TEMP:070F34E9 deleted successfully.
ADS C:\ProgramData\TEMP:0410A323 deleted successfully.
ADS C:\ProgramData\TEMP:01F4425C deleted successfully.
ADS C:\ProgramData\TEMP:EAF954B6 deleted successfully.
ADS C:\ProgramData\TEMP:E6B95E40 deleted successfully.
ADS C:\ProgramData\TEMP:E2C51D18 deleted successfully.
ADS C:\ProgramData\TEMP:DB051353 deleted successfully.
ADS C:\ProgramData\TEMP:D2397415 deleted successfully.
ADS C:\ProgramData\TEMP:CD09E521 deleted successfully.
ADS C:\ProgramData\TEMP:C9F873D0 deleted successfully.
ADS C:\ProgramData\TEMP:C9BC8592 deleted successfully.
ADS C:\ProgramData\TEMP:C966DE9F deleted successfully.
ADS C:\ProgramData\TEMP:C900B47A deleted successfully.
ADS C:\ProgramData\TEMP:C48A983C deleted successfully.
ADS C:\ProgramData\TEMP:B097AC8A deleted successfully.
ADS C:\ProgramData\TEMP:AD63DAF1 deleted successfully.
ADS C:\ProgramData\TEMP:A9117599 deleted successfully.
ADS C:\ProgramData\TEMP:A7964713 deleted successfully.
ADS C:\ProgramData\TEMP:A4536607 deleted successfully.
ADS C:\ProgramData\TEMP:A2FC7F08 deleted successfully.
ADS C:\ProgramData\TEMP:A0921B2C deleted successfully.
ADS C:\ProgramData\TEMP:9FBC428A deleted successfully.
ADS C:\ProgramData\TEMP:9F3CEEE6 deleted successfully.
ADS C:\ProgramData\TEMP:92D91D7E deleted successfully.
ADS C:\ProgramData\TEMP:8DD36B71 deleted successfully.
ADS C:\ProgramData\TEMP:80347EE2 deleted successfully.
ADS C:\ProgramData\TEMP:589A2088 deleted successfully.
ADS C:\ProgramData\TEMP:53BA2DF6 deleted successfully.
ADS C:\ProgramData\TEMP:51E83E25 deleted successfully.
ADS C:\ProgramData\TEMP:519CAD78 deleted successfully.
ADS C:\ProgramData\TEMP:4C33F119 deleted successfully.
ADS C:\ProgramData\TEMP:4300D829 deleted successfully.
ADS C:\ProgramData\TEMP:3A7527E8 deleted successfully.
ADS C:\ProgramData\TEMP:3A4C8FE7 deleted successfully.
ADS C:\ProgramData\TEMP:303528AB deleted successfully.
ADS C:\ProgramData\TEMP:26C9171C deleted successfully.
ADS C:\ProgramData\TEMP:244E4E3A deleted successfully.
ADS C:\ProgramData\TEMP:2208DD60 deleted successfully.
ADS C:\ProgramData\TEMP:1CD511E5 deleted successfully.
ADS C:\ProgramData\TEMP:183A9046 deleted successfully.
ADS C:\ProgramData\TEMP:0D45D0F5 deleted successfully.
ADS C:\ProgramData\TEMP:0B4B8EDA deleted successfully.
ADS C:\ProgramData\TEMP:00D99749 deleted successfully.
ADS C:\ProgramData\TEMP:FD20BDA6 deleted successfully.
ADS C:\ProgramData\TEMP:FC729D65 deleted successfully.
ADS C:\ProgramData\TEMP:F42BB562 deleted successfully.
ADS C:\ProgramData\TEMP:EC3A9923 deleted successfully.
ADS C:\ProgramData\TEMP:E4C79C11 deleted successfully.
ADS C:\ProgramData\TEMP:E0CDBB5A deleted successfully.
ADS C:\ProgramData\TEMP:DE8F8064 deleted successfully.
ADS C:\ProgramData\TEMP:D696AA12 deleted successfully.
ADS C:\ProgramData\TEMP:D0397AE3 deleted successfully.
ADS C:\ProgramData\TEMP:CAF8DAC8 deleted successfully.
ADS C:\ProgramData\TEMP:C7F08EA3 deleted successfully.
ADS C:\ProgramData\TEMP:C7A094AF deleted successfully.
ADS C:\ProgramData\TEMP:C64C2839 deleted successfully.
ADS C:\ProgramData\TEMP:C049ED37 deleted successfully.
ADS C:\ProgramData\TEMP:BD0A043E deleted successfully.
ADS C:\ProgramData\TEMP:B65280E9 deleted successfully.
ADS C:\ProgramData\TEMP:B53CFE3E deleted successfully.
ADS C:\ProgramData\TEMP:B4973B22 deleted successfully.
ADS C:\ProgramData\TEMP:AE289451 deleted successfully.
ADS C:\ProgramData\TEMP:ABEB24A6 deleted successfully.
ADS C:\ProgramData\TEMP:A71DCB33 deleted successfully.
ADS C:\ProgramData\TEMP:A6E02D6C deleted successfully.
ADS C:\ProgramData\TEMP:A6B07419 deleted successfully.
ADS C:\ProgramData\TEMP:9373B271 deleted successfully.
ADS C:\ProgramData\TEMP:8D15A230 deleted successfully.
ADS C:\ProgramData\TEMP:85376176 deleted successfully.
ADS C:\ProgramData\TEMP:82FDD600 deleted successfully.
ADS C:\ProgramData\TEMP:788022C4 deleted successfully.
ADS C:\ProgramData\TEMP:71973400 deleted successfully.
ADS C:\ProgramData\TEMP:704905D3 deleted successfully.
ADS C:\ProgramData\TEMP:6C59C3A1 deleted successfully.
ADS C:\ProgramData\TEMP:6C3B96F0 deleted successfully.
ADS C:\ProgramData\TEMP:6B79EC50 deleted successfully.
ADS C:\ProgramData\TEMP:697B45E6 deleted successfully.
ADS C:\ProgramData\TEMP:63ABD638 deleted successfully.
ADS C:\ProgramData\TEMP:5CE65446 deleted successfully.
ADS C:\ProgramData\TEMP:3D186293 deleted successfully.
ADS C:\ProgramData\TEMP:2B9555D8 deleted successfully.
ADS C:\ProgramData\TEMP:242E63C5 deleted successfully.
ADS C:\ProgramData\TEMP:1604D047 deleted successfully.
ADS C:\ProgramData\TEMP:093C07D7 deleted successfully.
ADS C:\ProgramData\TEMP:025DF3DE deleted successfully.
ADS C:\ProgramData\TEMP:FAB64002 deleted successfully.
ADS C:\ProgramData\TEMP:F550FB94 deleted successfully.
ADS C:\ProgramData\TEMP:ED51D3ED deleted successfully.
ADS C:\ProgramData\TEMP:EAB83E6E deleted successfully.
ADS C:\ProgramData\TEMP:E0648389 deleted successfully.
ADS C:\ProgramData\TEMP:DD4208D9 deleted successfully.
ADS C:\ProgramData\TEMP:D4558A0B deleted successfully.
ADS C:\ProgramData\TEMP:C7D35E8C deleted successfully.
ADS C:\ProgramData\TEMP:C6920A5D deleted successfully.
ADS C:\ProgramData\TEMP:A95E5E89 deleted successfully.
ADS C:\ProgramData\TEMP:9AB47C16 deleted successfully.
ADS C:\ProgramData\TEMP:8F781E82 deleted successfully.
ADS C:\ProgramData\TEMP:83682B35 deleted successfully.
ADS C:\ProgramData\TEMP:799B8AA7 deleted successfully.
ADS C:\ProgramData\TEMP:72C99D4E deleted successfully.
ADS C:\ProgramData\TEMP:6E65510A deleted successfully.
ADS C:\ProgramData\TEMP:6720DF40 deleted successfully.
ADS C:\ProgramData\TEMP:5C818B5D deleted successfully.
ADS C:\ProgramData\TEMP:55E1F0F4 deleted successfully.
ADS C:\ProgramData\TEMP:4F79E059 deleted successfully.
ADS C:\ProgramData\TEMP:47317C33 deleted successfully.
ADS C:\ProgramData\TEMP:3E8A3E87 deleted successfully.
ADS C:\ProgramData\TEMP:375E88A2 deleted successfully.
ADS C:\ProgramData\TEMP:371060CE deleted successfully.
ADS C:\ProgramData\TEMP:35FFA83C deleted successfully.
ADS C:\ProgramData\TEMP:30E0D641 deleted successfully.
ADS C:\ProgramData\TEMP:2E0BE9CA deleted successfully.
ADS C:\ProgramData\TEMP:2B856118 deleted successfully.
ADS C:\ProgramData\TEMP:29629382 deleted successfully.
ADS C:\ProgramData\TEMP:1C201DEB deleted successfully.
ADS C:\ProgramData\TEMP:1A5818E1 deleted successfully.
ADS C:\ProgramData\TEMP:0EC9720B deleted successfully.
ADS C:\ProgramData\TEMP:090C2A14 deleted successfully.
ADS C:\ProgramData\TEMP:0168CC60 deleted successfully.
ADS C:\ProgramData\TEMP:FDEE14AC deleted successfully.
ADS C:\ProgramData\TEMP:F5E8CAE0 deleted successfully.
ADS C:\ProgramData\TEMP:F43B7E8F deleted successfully.
ADS C:\ProgramData\TEMP:EC769091 deleted successfully.
ADS C:\ProgramData\TEMP:E8615736 deleted successfully.
ADS C:\ProgramData\TEMP:E1B0CF05 deleted successfully.
ADS C:\ProgramData\TEMP:DE3A8059 deleted successfully.
ADS C:\ProgramData\TEMP:DE22D45C deleted successfully.
ADS C:\ProgramData\TEMP:D8A1AC56 deleted successfully.
ADS C:\ProgramData\TEMP:CEBA48CB deleted successfully.
ADS C:\ProgramData\TEMP:CC5EA50C deleted successfully.
ADS C:\ProgramData\TEMP:CBC3E272 deleted successfully.
ADS C:\ProgramData\TEMP:CAA2D3CC deleted successfully.
ADS C:\ProgramData\TEMP:C82CA1C0 deleted successfully.
ADS C:\ProgramData\TEMP:C178954A deleted successfully.
ADS C:\ProgramData\TEMP:BCEEAD44 deleted successfully.
ADS C:\ProgramData\TEMP:BA516E94 deleted successfully.
ADS C:\ProgramData\TEMP:B6D84F71 deleted successfully.
ADS C:\ProgramData\TEMP:B698CE52 deleted successfully.
ADS C:\ProgramData\TEMP:B64F7263 deleted successfully.
ADS C:\ProgramData\TEMP:B3606FCC deleted successfully.
ADS C:\ProgramData\TEMP:B1967253 deleted successfully.
ADS C:\ProgramData\TEMP:AB9B31C2 deleted successfully.
ADS C:\ProgramData\TEMP:AA0BC725 deleted successfully.
ADS C:\ProgramData\TEMP:A9495ED0 deleted successfully.
ADS C:\ProgramData\TEMP:9E38D9D0 deleted successfully.
ADS C:\ProgramData\TEMP:9BE4A88F deleted successfully.
ADS C:\ProgramData\TEMP:98A8ABBD deleted successfully.
ADS C:\ProgramData\TEMP:92DB4653 deleted successfully.
ADS C:\ProgramData\TEMP:9195103F deleted successfully.
ADS C:\ProgramData\TEMP:7FB8A209 deleted successfully.
ADS C:\ProgramData\TEMP:7EABF26C deleted successfully.
ADS C:\ProgramData\TEMP:7CF060A5 deleted successfully.
ADS C:\ProgramData\TEMP:7C8AA9A6 deleted successfully.
ADS C:\ProgramData\TEMP:62AC0CCE deleted successfully.
ADS C:\ProgramData\TEMP:6294B369 deleted successfully.
ADS C:\ProgramData\TEMP:5E8C18F1 deleted successfully.
ADS C:\ProgramData\TEMP:4A8EB1C4 deleted successfully.
ADS C:\ProgramData\TEMP:40F40566 deleted successfully.
ADS C:\ProgramData\TEMP:3B454A5C deleted successfully.
ADS C:\ProgramData\TEMP:39EDBD33 deleted successfully.
ADS C:\ProgramData\TEMP:2C371163 deleted successfully.
ADS C:\ProgramData\TEMP:2B8B2A2E deleted successfully.
ADS C:\ProgramData\TEMP:2573B853 deleted successfully.
ADS C:\ProgramData\TEMP:193CB03B deleted successfully.
ADS C:\ProgramData\TEMP:17EB5BAE deleted successfully.
ADS C:\ProgramData\TEMP:12383CAE deleted successfully.
ADS C:\ProgramData\TEMP:0ACF1AF5 deleted successfully.
ADS C:\ProgramData\TEMP:0968E571 deleted successfully.
ADS C:\ProgramData\TEMP:FEB70DF9 deleted successfully.
ADS C:\ProgramData\TEMP:F19EC797 deleted successfully.
ADS C:\ProgramData\TEMP:EE198B1F deleted successfully.
ADS C:\ProgramData\TEMP:E265ED33 deleted successfully.
ADS C:\ProgramData\TEMP:C9B27A06 deleted successfully.
ADS C:\ProgramData\TEMP:C82210DD deleted successfully.
ADS C:\ProgramData\TEMP:C5340FA1 deleted successfully.
ADS C:\ProgramData\TEMP:BE0654D6 deleted successfully.
ADS C:\ProgramData\TEMP:BAFAD1DF deleted successfully.
ADS C:\ProgramData\TEMP:B5EC1B2F deleted successfully.
ADS C:\ProgramData\TEMP:A50DB5ED deleted successfully.
ADS C:\ProgramData\TEMP:9B2348B1 deleted successfully.
ADS C:\ProgramData\TEMP:9A6A9036 deleted successfully.
ADS C:\ProgramData\TEMP:99F8C0E6 deleted successfully.
ADS C:\ProgramData\TEMP:94A31742 deleted successfully.
ADS C:\ProgramData\TEMP:8DD20B4A deleted successfully.
ADS C:\ProgramData\TEMP:869C6B4A deleted successfully.
ADS C:\ProgramData\TEMP:7D288858 deleted successfully.
ADS C:\ProgramData\TEMP:701B92FB deleted successfully.
ADS C:\ProgramData\TEMP:6CFD136C deleted successfully.
ADS C:\ProgramData\TEMP:6C5F503C deleted successfully.
ADS C:\ProgramData\TEMP:670A4B6C deleted successfully.
ADS C:\ProgramData\TEMP:64170090 deleted successfully.
ADS C:\ProgramData\TEMP:568AC9E6 deleted successfully.
ADS C:\ProgramData\TEMP:54A82907 deleted successfully.
ADS C:\ProgramData\TEMP:491270B8 deleted successfully.
ADS C:\ProgramData\TEMP:479B1CF9 deleted successfully.
ADS C:\ProgramData\TEMP:4149A170 deleted successfully.
ADS C:\ProgramData\TEMP:40F7CC51 deleted successfully.
ADS C:\ProgramData\TEMP:38FF076E deleted successfully.
ADS C:\ProgramData\TEMP:3894C2D6 deleted successfully.
ADS C:\ProgramData\TEMP:38019DCD deleted successfully.
ADS C:\ProgramData\TEMP:321156F2 deleted successfully.
ADS C:\ProgramData\TEMP:2E6CEF29 deleted successfully.
ADS C:\ProgramData\TEMP:2DE8C60F deleted successfully.
ADS C:\ProgramData\TEMP:28CDD861 deleted successfully.
ADS C:\ProgramData\TEMP:26CA255B deleted successfully.
ADS C:\ProgramData\TEMP:268BA8AB deleted successfully.
ADS C:\ProgramData\TEMP:1F08F4B0 deleted successfully.
ADS C:\ProgramData\TEMP:067DA45B deleted successfully.
ADS C:\ProgramData\TEMP:FFC3922F deleted successfully.
ADS C:\ProgramData\TEMP:FE144218 deleted successfully.
ADS C:\ProgramData\TEMP:FD7DCDA6 deleted successfully.
ADS C:\ProgramData\TEMP:FC70A22A deleted successfully.
ADS C:\ProgramData\TEMP:F7581CE6 deleted successfully.
ADS C:\ProgramData\TEMP:F53B274A deleted successfully.
ADS C:\ProgramData\TEMP:EB393E91 deleted successfully.
ADS C:\ProgramData\TEMP:E8E51D31 deleted successfully.
ADS C:\ProgramData\TEMP:E31EDFDE deleted successfully.
ADS C:\ProgramData\TEMP:E2CFA9CD deleted successfully.
ADS C:\ProgramData\TEMP:DBBE9F64 deleted successfully.
ADS C:\ProgramData\TEMP:D621CFB8 deleted successfully.
ADS C:\ProgramData\TEMP:D5BF78B4 deleted successfully.
ADS C:\ProgramData\TEMP:CE3E87C1 deleted successfully.
ADS C:\ProgramData\TEMP:C43C957E deleted successfully.
ADS C:\ProgramData\TEMP:C0BCE04B deleted successfully.
ADS C:\ProgramData\TEMP:BE6183AC deleted successfully.
ADS C:\ProgramData\TEMP:B78E962B deleted successfully.
ADS C:\ProgramData\TEMP:B3C7433B deleted successfully.
ADS C:\ProgramData\TEMP:B3A3C0E4 deleted successfully.
ADS C:\ProgramData\TEMP:B0D93116 deleted successfully.
ADS C:\ProgramData\TEMP:B0A727D1 deleted successfully.
ADS C:\ProgramData\TEMP:AC0528D9 deleted successfully.
ADS C:\ProgramData\TEMP:A8DFD30C deleted successfully.
ADS C:\ProgramData\TEMP:A477A19D deleted successfully.
ADS C:\ProgramData\TEMP:A10E88DE deleted successfully.
ADS C:\ProgramData\TEMP:9BA50BBA deleted successfully.
ADS C:\ProgramData\TEMP:965698AC deleted successfully.
ADS C:\ProgramData\TEMP:948CDB3D deleted successfully.
ADS C:\ProgramData\TEMP:943FEF5D deleted successfully.
ADS C:\ProgramData\TEMP:8AA7FD08 deleted successfully.
ADS C:\ProgramData\TEMP:870649A4 deleted successfully.
ADS C:\ProgramData\TEMP:86424782 deleted successfully.
ADS C:\ProgramData\TEMP:73CCE32D deleted successfully.
ADS C:\ProgramData\TEMP:6896CCCE deleted successfully.
ADS C:\ProgramData\TEMP:5ACE199E deleted successfully.
ADS C:\ProgramData\TEMP:58E38390 deleted successfully.
ADS C:\ProgramData\TEMP:4D8FCBEF deleted successfully.
ADS C:\ProgramData\TEMP:4A5F4E1B deleted successfully.
ADS C:\ProgramData\TEMP:48C21BA2 deleted successfully.
ADS C:\ProgramData\TEMP:46F22D0B deleted successfully.
ADS C:\ProgramData\TEMP:3EA1C214 deleted successfully.
ADS C:\ProgramData\TEMP:37661AA3 deleted successfully.
ADS C:\ProgramData\TEMP:2979C892 deleted successfully.
ADS C:\ProgramData\TEMP:274516E7 deleted successfully.
ADS C:\ProgramData\TEMP:25F31665 deleted successfully.
ADS C:\ProgramData\TEMP:20590537 deleted successfully.
ADS C:\ProgramData\TEMP:1653203D deleted successfully.
ADS C:\ProgramData\TEMP:162E346C deleted successfully.
ADS C:\ProgramData\TEMP:15C4429D deleted successfully.
ADS C:\ProgramData\TEMP:122AC064 deleted successfully.
ADS C:\ProgramData\TEMP:0E61938B deleted successfully.
ADS C:\ProgramData\TEMP:000D6A25 deleted successfully.
ADS C:\ProgramData\TEMP:FF75408C deleted successfully.
ADS C:\ProgramData\TEMP:FEB657E8 deleted successfully.
ADS C:\ProgramData\TEMP:FBF21B24 deleted successfully.
ADS C:\ProgramData\TEMP:F4485F9E deleted successfully.
ADS C:\ProgramData\TEMP:F131B2B8 deleted successfully.
ADS C:\ProgramData\TEMP:F10B5CB6 deleted successfully.
ADS C:\ProgramData\TEMP:EAF3ADF5 deleted successfully.
ADS C:\ProgramData\TEMP:E9014DCF deleted successfully.
ADS C:\ProgramData\TEMP:E4FB4BB0 deleted successfully.
ADS C:\ProgramData\TEMP:E4504623 deleted successfully.
ADS C:\ProgramData\TEMP:DD835ECB deleted successfully.
ADS C:\ProgramData\TEMP:D7D0B4AF deleted successfully.
ADS C:\ProgramData\TEMP:D5CCCBAA deleted successfully.
ADS C:\ProgramData\TEMP:D1F023D6 deleted successfully.
ADS C:\ProgramData\TEMP:CEE0D2ED deleted successfully.
ADS C:\ProgramData\TEMP:C4288847 deleted successfully.
ADS C:\ProgramData\TEMP:B790962B deleted successfully.
ADS C:\ProgramData\TEMP:AE8FDB48 deleted successfully.
ADS C:\ProgramData\TEMP:8855A119 deleted successfully.
ADS C:\ProgramData\TEMP:86E35A58 deleted successfully.
ADS C:\ProgramData\TEMP:79875988 deleted successfully.
ADS C:\ProgramData\TEMP:795F6DEC deleted successfully.
ADS C:\ProgramData\TEMP:759BAE18 deleted successfully.
ADS C:\ProgramData\TEMP:74847630 deleted successfully.
ADS C:\ProgramData\TEMP:6EDF80C4 deleted successfully.
ADS C:\ProgramData\TEMP:6ECD7CA1 deleted successfully.
ADS C:\ProgramData\TEMP:6EA64886 deleted successfully.
ADS C:\ProgramData\TEMP:6CF828C2 deleted successfully.
ADS C:\ProgramData\TEMP:6A8BB05A deleted successfully.
ADS C:\ProgramData\TEMP:64649538 deleted successfully.
ADS C:\ProgramData\TEMP:5DB36C47 deleted successfully.
ADS C:\ProgramData\TEMP:55662D3E deleted successfully.
ADS C:\ProgramData\TEMP:52598916 deleted successfully.
ADS C:\ProgramData\TEMP:4C8FA829 deleted successfully.
ADS C:\ProgramData\TEMP:4C71A42B deleted successfully.
ADS C:\ProgramData\TEMP:4776379B deleted successfully.
ADS C:\ProgramData\TEMP:404908B5 deleted successfully.
ADS C:\ProgramData\TEMP:3FD69132 deleted successfully.
ADS C:\ProgramData\TEMP:3F266659 deleted successfully.
ADS C:\ProgramData\TEMP:3E424252 deleted successfully.
ADS C:\ProgramData\TEMP:3A4676D7 deleted successfully.
ADS C:\ProgramData\TEMP:39FD2369 deleted successfully.
ADS C:\ProgramData\TEMP:38293E85 deleted successfully.
ADS C:\ProgramData\TEMP:36BA5D9D deleted successfully.
ADS C:\ProgramData\TEMP:3487C53E deleted successfully.
ADS C:\ProgramData\TEMP:33B17E7D deleted successfully.
ADS C:\ProgramData\TEMP:32289BE8 deleted successfully.
ADS C:\ProgramData\TEMP:317F6070 deleted successfully.
ADS C:\ProgramData\TEMP:2DFD7B60 deleted successfully.
ADS C:\ProgramData\TEMP:1E288DA3 deleted successfully.
ADS C:\ProgramData\TEMP:1AFB8C58 deleted successfully.
ADS C:\ProgramData\TEMP:157D47AE deleted successfully.
ADS C:\ProgramData\TEMP:13CDB0E0 deleted successfully.
ADS C:\ProgramData\TEMP:0ED1C542 deleted successfully.
ADS C:\ProgramData\TEMP:041C0562 deleted successfully.
ADS C:\ProgramData\TEMP:025C72E5 deleted successfully.
ADS C:\ProgramData\TEMP:0256104B deleted successfully.
ADS C:\ProgramData\TEMP:FD11E093 deleted successfully.
ADS C:\ProgramData\TEMP:FB967D49 deleted successfully.
ADS C:\ProgramData\TEMP:FB71A279 deleted successfully.
ADS C:\ProgramData\TEMP:F7F4DC88 deleted successfully.
ADS C:\ProgramData\TEMP:EDE28CFC deleted successfully.
ADS C:\ProgramData\TEMP:ED6478EA deleted successfully.
ADS C:\ProgramData\TEMP:EAEE7554 deleted successfully.
ADS C:\ProgramData\TEMP:E49B2ECC deleted successfully.
ADS C:\ProgramData\TEMP:DFA6ADE2 deleted successfully.
ADS C:\ProgramData\TEMP:DD95E6D9 deleted successfully.
ADS C:\ProgramData\TEMP:DB2748F7 deleted successfully.
ADS C:\ProgramData\TEMP:D04FFD43 deleted successfully.
ADS C:\ProgramData\TEMP:BEACE4C8 deleted successfully.
ADS C:\ProgramData\TEMP:BD34FFC5 deleted successfully.
ADS C:\ProgramData\TEMP:BCFEA004 deleted successfully.
ADS C:\ProgramData\TEMP:BACD3198 deleted successfully.
ADS C:\ProgramData\TEMP:B65E763D deleted successfully.
ADS C:\ProgramData\TEMP:B1E629F5 deleted successfully.
ADS C:\ProgramData\TEMP:AE804D2B deleted successfully.
ADS C:\ProgramData\TEMP:AA0017FD deleted successfully.
ADS C:\ProgramData\TEMP:A819A132 deleted successfully.
ADS C:\ProgramData\TEMP:A798AA1A deleted successfully.
ADS C:\ProgramData\TEMP:A6F30843 deleted successfully.
ADS C:\ProgramData\TEMP:A6D6E537 deleted successfully.
ADS C:\ProgramData\TEMP:A4076A3B deleted successfully.
ADS C:\ProgramData\TEMP:8868F8ED deleted successfully.
ADS C:\ProgramData\TEMP:751D6870 deleted successfully.
ADS C:\ProgramData\TEMP:70354350 deleted successfully.
ADS C:\ProgramData\TEMP:6EEA7FA7 deleted successfully.
ADS C:\ProgramData\TEMP:6ECE93A8 deleted successfully.
ADS C:\ProgramData\TEMP:6CD03C17 deleted successfully.
ADS C:\ProgramData\TEMP:6757F885 deleted successfully.
ADS C:\ProgramData\TEMP:651B3C3B deleted successfully.
ADS C:\ProgramData\TEMP:62AF94A0 deleted successfully.
ADS C:\ProgramData\TEMP:59465B40 deleted successfully.
ADS C:\ProgramData\TEMP:54D3B4D3 deleted successfully.
ADS C:\ProgramData\TEMP:4C21784C deleted successfully.
ADS C:\ProgramData\TEMP:4ABDDCFB deleted successfully.
ADS C:\ProgramData\TEMP:473557EA deleted successfully.
ADS C:\ProgramData\TEMP:415BBA47 deleted successfully.
ADS C:\ProgramData\TEMP:40752783 deleted successfully.
ADS C:\ProgramData\TEMP:3F9F662A deleted successfully.
ADS C:\ProgramData\TEMP:3B43011E deleted successfully.
ADS C:\ProgramData\TEMP:3969ACF7 deleted successfully.
ADS C:\ProgramData\TEMP:36FFA2FB deleted successfully.
ADS C:\ProgramData\TEMP:35629AE6 deleted successfully.
ADS C:\ProgramData\TEMP:2F7643BA deleted successfully.
ADS C:\ProgramData\TEMP:2B8072F4 deleted successfully.
ADS C:\ProgramData\TEMP:1709732A deleted successfully.
ADS C:\ProgramData\TEMP:160ADF0B deleted successfully.
ADS C:\ProgramData\TEMP:08DB8D99 deleted successfully.
ADS C:\ProgramData\TEMP:06C34166 deleted successfully.
ADS C:\ProgramData\TEMP:021703B2 deleted successfully.
ADS C:\ProgramData\TEMP:F5FC5DCE deleted successfully.
ADS C:\ProgramData\TEMP:F3591DDB deleted successfully.
ADS C:\ProgramData\TEMP:F30F2937 deleted successfully.
ADS C:\ProgramData\TEMP:EB68CA55 deleted successfully.
ADS C:\ProgramData\TEMP:EA6FBE43 deleted successfully.
ADS C:\ProgramData\TEMP:E6537A16 deleted successfully.
ADS C:\ProgramData\TEMP:E11D90D0 deleted successfully.
ADS C:\ProgramData\TEMP:E0888117 deleted successfully.
ADS C:\ProgramData\TEMP:E0848D16 deleted successfully.
ADS C:\ProgramData\TEMP:DC3A4904 deleted successfully.
ADS C:\ProgramData\TEMP:DBB33506 deleted successfully.
ADS C:\ProgramData\TEMP:CE316153 deleted successfully.
ADS C:\ProgramData\TEMP:BF6A2C54 deleted successfully.
ADS C:\ProgramData\TEMP:B139DDF3 deleted successfully.
ADS C:\ProgramData\TEMP:AD020DC3 deleted successfully.
ADS C:\ProgramData\TEMP:A6AD54F3 deleted successfully.
ADS C:\ProgramData\TEMP:A65A9C03 deleted successfully.
ADS C:\ProgramData\TEMP:A653982F deleted successfully.
ADS C:\ProgramData\TEMP:9E05DEB0 deleted successfully.
ADS C:\ProgramData\TEMP:97B3B270 deleted successfully.
ADS C:\ProgramData\TEMP:9603033A deleted successfully.
ADS C:\ProgramData\TEMP:94BD36A2 deleted successfully.
ADS C:\ProgramData\TEMP:9338F136 deleted successfully.
ADS C:\ProgramData\TEMP:91FE43FF deleted successfully.
ADS C:\ProgramData\TEMP:883774F9 deleted successfully.
ADS C:\ProgramData\TEMP:83A1BC35 deleted successfully.
ADS C:\ProgramData\TEMP:7EF55396 deleted successfully.
ADS C:\ProgramData\TEMP:763F1802 deleted successfully.
ADS C:\ProgramData\TEMP:70BDB805 deleted successfully.
ADS C:\ProgramData\TEMP:6EE8565A deleted successfully.
ADS C:\ProgramData\TEMP:60E0AB2A deleted successfully.
ADS C:\ProgramData\TEMP:5A25A61D deleted successfully.
ADS C:\ProgramData\TEMP:5304CF6F deleted successfully.
ADS C:\ProgramData\TEMP:4EFA2FC7 deleted successfully.
ADS C:\ProgramData\TEMP:4EE323A4 deleted successfully.
ADS C:\ProgramData\TEMP:4B1DA55E deleted successfully.
ADS C:\ProgramData\TEMP:46D8A372 deleted successfully.
ADS C:\ProgramData\TEMP:41326804 deleted successfully.
ADS C:\ProgramData\TEMP:402E8B54 deleted successfully.
ADS C:\ProgramData\TEMP:2E5471E4 deleted successfully.
ADS C:\ProgramData\TEMP:18B5F839 deleted successfully.
ADS C:\ProgramData\TEMP:087D1C56 deleted successfully.
ADS C:\ProgramData\TEMP:0255BA86 deleted successfully.
ADS C:\ProgramData\TEMP:0107E5CF deleted successfully.
ADS C:\ProgramData\TEMP:FC289904 deleted successfully.
ADS C:\ProgramData\TEMP:FB07E290 deleted successfully.
ADS C:\ProgramData\TEMP:F8A81876 deleted successfully.
ADS C:\ProgramData\TEMP:F54781BF deleted successfully.
ADS C:\ProgramData\TEMP:E1E51784 deleted successfully.
ADS C:\ProgramData\TEMP:DE29D4A1 deleted successfully.
ADS C:\ProgramData\TEMP:DDF112BD deleted successfully.
ADS C:\ProgramData\TEMP:DA84DA4A deleted successfully.
ADS C:\ProgramData\TEMP:D1288D86 deleted successfully.
ADS C:\ProgramData\TEMP:CEED62ED deleted successfully.
ADS C:\ProgramData\TEMP:CECB11E2 deleted successfully.
ADS C:\ProgramData\TEMP:BEB823A7 deleted successfully.
ADS C:\ProgramData\TEMP:BBC9C1EB deleted successfully.
ADS C:\ProgramData\TEMP:ADFAD95A deleted successfully.
ADS C:\ProgramData\TEMP:AD438972 deleted successfully.
ADS C:\ProgramData\TEMP:A1DDEA35 deleted successfully.
ADS C:\ProgramData\TEMP:9BAC4211 deleted successfully.
ADS C:\ProgramData\TEMP:993F0BCE deleted successfully.
ADS C:\ProgramData\TEMP:902C848D deleted successfully.
ADS C:\ProgramData\TEMP:8F76671E deleted successfully.
ADS C:\ProgramData\TEMP:8EA1B54A deleted successfully.
ADS C:\ProgramData\TEMP:871D5BFB deleted successfully.
ADS C:\ProgramData\TEMP:7EC01D6D deleted successfully.
ADS C:\ProgramData\TEMP:78C04239 deleted successfully.
ADS C:\ProgramData\TEMP:76466F4C deleted successfully.
ADS C:\ProgramData\TEMP:7425C891 deleted successfully.
ADS C:\ProgramData\TEMP:6F07A587 deleted successfully.
ADS C:\ProgramData\TEMP:688E43AA deleted successfully.
ADS C:\ProgramData\TEMP:5E73E1C2 deleted successfully.
ADS C:\ProgramData\TEMP:587F3582 deleted successfully.
ADS C:\ProgramData\TEMP:38ADF092 deleted successfully.
ADS C:\ProgramData\TEMP:2AE74FF9 deleted successfully.
ADS C:\ProgramData\TEMP:29455880 deleted successfully.
ADS C:\ProgramData\TEMP:24ECC1BC deleted successfully.
ADS C:\ProgramData\TEMP:18DEBC51 deleted successfully.
ADS C:\ProgramData\TEMP:152FD00E deleted successfully.
ADS C:\ProgramData\TEMP:10B970A9 deleted successfully.
ADS C:\ProgramData\TEMP:0FE0A03C deleted successfully.
ADS C:\ProgramData\TEMP:0768C7C3 deleted successfully.
ADS C:\ProgramData\TEMP:03A039A3 deleted successfully.
ADS C:\ProgramData\TEMP:FBD274CF deleted successfully.
ADS C:\ProgramData\TEMP:FA585D8D deleted successfully.
ADS C:\ProgramData\TEMP:F565FB91 deleted successfully.
ADS C:\ProgramData\TEMP:F3C5E5A0 deleted successfully.
ADS C:\ProgramData\TEMP:ED2D63E4 deleted successfully.
ADS C:\ProgramData\TEMP:EBA6010F deleted successfully.
ADS C:\ProgramData\TEMP:EA468C69 deleted successfully.
ADS C:\ProgramData\TEMP:E79B60CA deleted successfully.
ADS C:\ProgramData\TEMP:E369983A deleted successfully.
ADS C:\ProgramData\TEMP:E18C8D79 deleted successfully.
ADS C:\ProgramData\TEMP:DAE7AE6D deleted successfully.
ADS C:\ProgramData\TEMP:D999FFD5 deleted successfully.
ADS C:\ProgramData\TEMP:D92DB12F deleted successfully.
ADS C:\ProgramData\TEMP:D0AB0B4A deleted successfully.
ADS C:\ProgramData\TEMP:CF55A8AC deleted successfully.
ADS C:\ProgramData\TEMP:CAA40FE9 deleted successfully.
ADS C:\ProgramData\TEMP:C78DECFC deleted successfully.
ADS C:\ProgramData\TEMP:ACDD7398 deleted successfully.
ADS C:\ProgramData\TEMP:AC1DA023 deleted successfully.
ADS C:\ProgramData\TEMP:AB0AD7C3 deleted successfully.
ADS C:\ProgramData\TEMP:A33FC6E9 deleted successfully.
ADS C:\ProgramData\TEMP:975C222A deleted successfully.
ADS C:\ProgramData\TEMP:822DC04E deleted successfully.
ADS C:\ProgramData\TEMP:797ED8B2 deleted successfully.
ADS C:\ProgramData\TEMP:6A0A47E7 deleted successfully.
ADS C:\ProgramData\TEMP:64671D2C deleted successfully.
ADS C:\ProgramData\TEMP:5E3B8D6E deleted successfully.
ADS C:\ProgramData\TEMP:512E1728 deleted successfully.
ADS C:\ProgramData\TEMP:4E79C4F8 deleted successfully.
ADS C:\ProgramData\TEMP:4B244549 deleted successfully.
ADS C:\ProgramData\TEMP:4819880A deleted successfully.
ADS C:\ProgramData\TEMP:474022C7 deleted successfully.
ADS C:\ProgramData\TEMP:436BE28C deleted successfully.
ADS C:\ProgramData\TEMP:3AED66BD deleted successfully.
ADS C:\ProgramData\TEMP:371A321E deleted successfully.
ADS C:\ProgramData\TEMP:3571475C deleted successfully.
ADS C:\ProgramData\TEMP:340A48AA deleted successfully.
ADS C:\ProgramData\TEMP:32531105 deleted successfully.
ADS C:\ProgramData\TEMP:31380BB4 deleted successfully.
ADS C:\ProgramData\TEMP:300E36AB deleted successfully.
ADS C:\ProgramData\TEMP:1960DAF2 deleted successfully.
ADS C:\ProgramData\TEMP:0FE48065 deleted successfully.
ADS C:\ProgramData\TEMP:0D560A24 deleted successfully.
ADS C:\ProgramData\TEMP:07D64CD9 deleted successfully.
ADS C:\ProgramData\TEMP:005FA2D9 deleted successfully.
ADS C:\ProgramData\TEMP:FD91EC29 deleted successfully.
ADS C:\ProgramData\TEMP:EDBAF2DC deleted successfully.
ADS C:\ProgramData\TEMP:D566D82D deleted successfully.
ADS C:\ProgramData\TEMP:D36E068F deleted successfully.
ADS C:\ProgramData\TEMP:CBB33407 deleted successfully.
ADS C:\ProgramData\TEMP:C71DF9C6 deleted successfully.
ADS C:\ProgramData\TEMP:C639099E deleted successfully.
ADS C:\ProgramData\TEMP:C3D26A8A deleted successfully.
ADS C:\ProgramData\TEMP:BEF18713 deleted successfully.
ADS C:\ProgramData\TEMP:BECA50FF deleted successfully.
ADS C:\ProgramData\TEMP:B837C568 deleted successfully.
ADS C:\ProgramData\TEMP:B6E6C4EA deleted successfully.
ADS C:\ProgramData\TEMP:B6392329 deleted successfully.
ADS C:\ProgramData\TEMP:B54E4B5A deleted successfully.
ADS C:\ProgramData\TEMP:AED33A42 deleted successfully.
ADS C:\ProgramData\TEMP:A8606E6E deleted successfully.
ADS C:\ProgramData\TEMP:A69FAA24 deleted successfully.
ADS C:\ProgramData\TEMP:9C337CCE deleted successfully.
ADS C:\ProgramData\TEMP:98CD9221 deleted successfully.
ADS C:\ProgramData\TEMP:91BB656A deleted successfully.
ADS C:\ProgramData\TEMP:91A12471 deleted successfully.
ADS C:\ProgramData\TEMP:8BE98D9F deleted successfully.
ADS C:\ProgramData\TEMP:83C47EED deleted successfully.
ADS C:\ProgramData\TEMP:83467B6D deleted successfully.
ADS C:\ProgramData\TEMP:801ED9DF deleted successfully.
ADS C:\ProgramData\TEMP:7AF85553 deleted successfully.
ADS C:\ProgramData\TEMP:7903C039 deleted successfully.
ADS C:\ProgramData\TEMP:77B64C59 deleted successfully.
ADS C:\ProgramData\TEMP:6A9EDD31 deleted successfully.
ADS C:\ProgramData\TEMP:683BD5A8 deleted successfully.
ADS C:\ProgramData\TEMP:6764D965 deleted successfully.
ADS C:\ProgramData\TEMP:5E8FAAFC deleted successfully.
ADS C:\ProgramData\TEMP:57A7A569 deleted successfully.
ADS C:\ProgramData\TEMP:4E24EA2A deleted successfully.
ADS C:\ProgramData\TEMP:4C3D5A8B deleted successfully.
ADS C:\ProgramData\TEMP:479D2971 deleted successfully.
ADS C:\ProgramData\TEMP:3D922890 deleted successfully.
ADS C:\ProgramData\TEMP:3A7FFE28 deleted successfully.
ADS C:\ProgramData\TEMP:2C86E2AD deleted successfully.
ADS C:\ProgramData\TEMP:2843C0F7 deleted successfully.
ADS C:\ProgramData\TEMP:0BACBDD9 deleted successfully.
ADS C:\ProgramData\TEMP:092BD83A deleted successfully.
ADS C:\ProgramData\TEMP:05C14794 deleted successfully.
ADS C:\ProgramData\TEMP:045B567C deleted successfully.
ADS C:\ProgramData\TEMP:012BC84F deleted successfully.
ADS C:\ProgramData\TEMP:00AA4B31 deleted successfully.
ADS C:\ProgramData\TEMP:F6F0620D deleted successfully.
ADS C:\ProgramData\TEMP:F4BE8180 deleted successfully.
ADS C:\ProgramData\TEMP:E894A3ED deleted successfully.
ADS C:\ProgramData\TEMP:E6B6120A deleted successfully.
ADS C:\ProgramData\TEMP:E2DDFA62 deleted successfully.
ADS C:\ProgramData\TEMP:DE892EFB deleted successfully.
ADS C:\ProgramData\TEMP:DCA79AB3 deleted successfully.
ADS C:\ProgramData\TEMP:D9656460 deleted successfully.
ADS C:\ProgramData\TEMP:CC8AD379 deleted successfully.
ADS C:\ProgramData\TEMP:C5EF5E3C deleted successfully.
ADS C:\ProgramData\TEMP:C45AA8C8 deleted successfully.
ADS C:\ProgramData\TEMP:B96C57D4 deleted successfully.
ADS C:\ProgramData\TEMP:ACDADE10 deleted successfully.
ADS C:\ProgramData\TEMP:AABECEFB deleted successfully.
ADS C:\ProgramData\TEMP:A9ABA3FF deleted successfully.
ADS C:\ProgramData\TEMP:A6D89509 deleted successfully.
ADS C:\ProgramData\TEMP:9720EBEF deleted successfully.
ADS C:\ProgramData\TEMP:96498373 deleted successfully.
ADS C:\ProgramData\TEMP:93198714 deleted successfully.
ADS C:\ProgramData\TEMP:92298B59 deleted successfully.
ADS C:\ProgramData\TEMP:8C12CFCD deleted successfully.
ADS C:\ProgramData\TEMP:874ADA37 deleted successfully.
ADS C:\ProgramData\TEMP:8075370B deleted successfully.
ADS C:\ProgramData\TEMP:7DC5D762 deleted successfully.
ADS C:\ProgramData\TEMP:79363C4B deleted successfully.
ADS C:\ProgramData\TEMP:720EC388 deleted successfully.
ADS C:\ProgramData\TEMP:71413C0D deleted successfully.
ADS C:\ProgramData\TEMP:6E7D6F26 deleted successfully.
ADS C:\ProgramData\TEMP:6D00AE2A deleted successfully.
ADS C:\ProgramData\TEMP:6BE38463 deleted successfully.
ADS C:\ProgramData\TEMP:6B52909D deleted successfully.
ADS C:\ProgramData\TEMP:5335CE76 deleted successfully.
ADS C:\ProgramData\TEMP:4FA837B4 deleted successfully.
ADS C:\ProgramData\TEMP:44F7ADB3 deleted successfully.
ADS C:\ProgramData\TEMP:43F5FA9D deleted successfully.
ADS C:\ProgramData\TEMP:43180362 deleted successfully.
ADS C:\ProgramData\TEMP:3FD11723 deleted successfully.
ADS C:\ProgramData\TEMP:3F76D198 deleted successfully.
ADS C:\ProgramData\TEMP:3C8DA795 deleted successfully.
ADS C:\ProgramData\TEMP:3C7F3296 deleted successfully.
ADS C:\ProgramData\TEMP:3539CD43 deleted successfully.
ADS C:\ProgramData\TEMP:3031D8E8 deleted successfully.
ADS C:\ProgramData\TEMP:301CA7B9 deleted successfully.
ADS C:\ProgramData\TEMP:2E3F04BC deleted successfully.
ADS C:\ProgramData\TEMP:2040A5D7 deleted successfully.
ADS C:\ProgramData\TEMP:14B2E0BD deleted successfully.
ADS C:\ProgramData\TEMP:122B3902 deleted successfully.
ADS C:\ProgramData\TEMP:0FBDD25B deleted successfully.
ADS C:\ProgramData\TEMP:0A435166 deleted successfully.
ADS C:\ProgramData\TEMP:08E5EE32 deleted successfully.
ADS C:\ProgramData\TEMP:049C87B7 deleted successfully.
ADS C:\ProgramData\TEMP:02759897 deleted successfully.
ADS C:\ProgramData\TEMP:E93F2F4D deleted successfully.
ADS C:\ProgramData\TEMP:E87AB4E3 deleted successfully.
ADS C:\ProgramData\TEMP:E69B7EF5 deleted successfully.
ADS C:\ProgramData\TEMP:E21433CE deleted successfully.
ADS C:\ProgramData\TEMP:DB662FF1 deleted successfully.
ADS C:\ProgramData\TEMP:CC369F22 deleted successfully.
ADS C:\ProgramData\TEMP:C695FBBC deleted successfully.
ADS C:\ProgramData\TEMP:C0893153 deleted successfully.
ADS C:\ProgramData\TEMP:BA24E689 deleted successfully.
ADS C:\ProgramData\TEMP:B51B45A3 deleted successfully.
ADS C:\ProgramData\TEMP:B3AD86F1 deleted successfully.
ADS C:\ProgramData\TEMP:AEF2AF4B deleted successfully.
ADS C:\ProgramData\TEMP:ADE91125 deleted successfully.
ADS C:\ProgramData\TEMP:A851461E deleted successfully.
ADS C:\ProgramData\TEMP:9CF728A6 deleted successfully.
ADS C:\ProgramData\TEMP:94B46CA2 deleted successfully.
ADS C:\ProgramData\TEMP:79059537 deleted successfully.
ADS C:\ProgramData\TEMP:6ED8B881 deleted successfully.
ADS C:\ProgramData\TEMP:6DB7DB11 deleted successfully.
ADS C:\ProgramData\TEMP:55E44EB7 deleted successfully.
ADS C:\ProgramData\TEMP:55781AF7 deleted successfully.
ADS C:\ProgramData\TEMP:48977386 deleted successfully.
ADS C:\ProgramData\TEMP:48862C37 deleted successfully.
ADS C:\ProgramData\TEMP:3E200C29 deleted successfully.
ADS C:\ProgramData\TEMP:2F2C513F deleted successfully.
ADS C:\ProgramData\TEMP:2DC35960 deleted successfully.
ADS C:\ProgramData\TEMP:26A148EB deleted successfully.
ADS C:\ProgramData\TEMP:25FF8A61 deleted successfully.
ADS C:\ProgramData\TEMP:21BC8A4E deleted successfully.
ADS C:\ProgramData\TEMP:2020E69F deleted successfully.
ADS C:\ProgramData\TEMP:16BBC0E6 deleted successfully.
ADS C:\ProgramData\TEMP:14362DF8 deleted successfully.
ADS C:\ProgramData\TEMP:10CB85CA deleted successfully.
ADS C:\ProgramData\TEMP:0B941A88 deleted successfully.
ADS C:\ProgramData\TEMP:07C99568 deleted successfully.
ADS C:\ProgramData\TEMP:073139EC deleted successfully.
ADS C:\ProgramData\TEMP:FFDA30C6 deleted successfully.
ADS C:\ProgramData\TEMP:FDE7A038 deleted successfully.
ADS C:\ProgramData\TEMP:F89F2593 deleted successfully.
ADS C:\ProgramData\TEMP:F541999C deleted successfully.
ADS C:\ProgramData\TEMP:EE76EF28 deleted successfully.
ADS C:\ProgramData\TEMP:E287F8DD deleted successfully.
ADS C:\ProgramData\TEMP:E0A09032 deleted successfully.
ADS C:\ProgramData\TEMP:DE875C30 deleted successfully.
ADS C:\ProgramData\TEMP:CF1334B0 deleted successfully.
ADS C:\ProgramData\TEMP:C9B600DB deleted successfully.
ADS C:\ProgramData\TEMP:BD91597E deleted successfully.
ADS C:\ProgramData\TEMP:AAEDCC2C deleted successfully.
ADS C:\ProgramData\TEMP:A5584049 deleted successfully.
ADS C:\ProgramData\TEMP:A2B3764A deleted successfully.
ADS C:\ProgramData\TEMP:9C732DB0 deleted successfully.
ADS C:\ProgramData\TEMP:8B2DC9C2 deleted successfully.
ADS C:\ProgramData\TEMP:8924043A deleted successfully.
ADS C:\ProgramData\TEMP:8755BE01 deleted successfully.
ADS C:\ProgramData\TEMP:85354988 deleted successfully.
ADS C:\ProgramData\TEMP:845B8605 deleted successfully.
ADS C:\ProgramData\TEMP:7ADB695A deleted successfully.
ADS C:\ProgramData\TEMP:6AF6BB0E deleted successfully.
ADS C:\ProgramData\TEMP:606EE652 deleted successfully.
ADS C:\ProgramData\TEMP:4F7FE589 deleted successfully.
ADS C:\ProgramData\TEMP:4AC7B5C1 deleted successfully.
ADS C:\ProgramData\TEMP:4A48591F deleted successfully.
ADS C:\ProgramData\TEMP:41F14316 deleted successfully.
ADS C:\ProgramData\TEMP:3DB6284E deleted successfully.
ADS C:\ProgramData\TEMP:3CEF7764 deleted successfully.
ADS C:\ProgramData\TEMP:3C0887BF deleted successfully.
ADS C:\ProgramData\TEMP:380B35D4 deleted successfully.
ADS C:\ProgramData\TEMP:31D86317 deleted successfully.
ADS C:\ProgramData\TEMP:2FAB94E3 deleted successfully.
ADS C:\ProgramData\TEMP:2C678471 deleted successfully.
ADS C:\ProgramData\TEMP:28CE390D deleted successfully.
ADS C:\ProgramData\TEMP:263D6D33 deleted successfully.
ADS C:\ProgramData\TEMP:1A792FDD deleted successfully.
ADS C:\ProgramData\TEMP:12A3FA49 deleted successfully.
ADS C:\ProgramData\TEMP:12258D63 deleted successfully.
ADS C:\ProgramData\TEMP:0856D69C deleted successfully.
ADS C:\ProgramData\TEMP:0807AFBC deleted successfully.
ADS C:\ProgramData\TEMP:07C0E0DB deleted successfully.
ADS C:\ProgramData\TEMP:05582920 deleted successfully.
ADS C:\ProgramData\TEMP:021496FB deleted successfully.
ADS C:\ProgramData\TEMP:FFC741D1 deleted successfully.
ADS C:\ProgramData\TEMP:FF4E4842 deleted successfully.
ADS C:\ProgramData\TEMP:FC11287A deleted successfully.
ADS C:\ProgramData\TEMP:F9689B72 deleted successfully.
ADS C:\ProgramData\TEMP:ECF3C50F deleted successfully.
ADS C:\ProgramData\TEMP:EA43B001 deleted successfully.
ADS C:\ProgramData\TEMP:E5496666 deleted successfully.
ADS C:\ProgramData\TEMP:E222F217 deleted successfully.
ADS C:\ProgramData\TEMP:CDB75348 deleted successfully.
ADS C:\ProgramData\TEMP:C9E300DE deleted successfully.
ADS C:\ProgramData\TEMP:C5E2BAEE deleted successfully.
ADS C:\ProgramData\TEMP:C15430E0 deleted successfully.
ADS C:\ProgramData\TEMP:BAE8784F deleted successfully.
ADS C:\ProgramData\TEMP:AD727397 deleted successfully.
ADS C:\ProgramData\TEMP:A9A46BAC deleted successfully.
ADS C:\ProgramData\TEMP:A2FE7E90 deleted successfully.
ADS C:\ProgramData\TEMP:94CFD695 deleted successfully.
ADS C:\ProgramData\TEMP:91AB5285 deleted successfully.
ADS C:\ProgramData\TEMP:8AC20936 deleted successfully.
ADS C:\ProgramData\TEMP:80CC1319 deleted successfully.
ADS C:\ProgramData\TEMP:76B6BC45 deleted successfully.
ADS C:\ProgramData\TEMP:7267B0B5 deleted successfully.
ADS C:\ProgramData\TEMP:65C4D44A deleted successfully.
ADS C:\ProgramData\TEMP:6310105A deleted successfully.
ADS C:\ProgramData\TEMP:6212DF7A deleted successfully.
ADS C:\ProgramData\TEMP:5CE91C67 deleted successfully.
ADS C:\ProgramData\TEMP:5C0940F1 deleted successfully.
ADS C:\ProgramData\TEMP:5B4686D7 deleted successfully.
ADS C:\ProgramData\TEMP:52C24010 deleted successfully.
ADS C:\ProgramData\TEMP:50F6138D deleted successfully.
ADS C:\ProgramData\TEMP:50764425 deleted successfully.
ADS C:\ProgramData\TEMP:3AF35ED3 deleted successfully.
ADS C:\ProgramData\TEMP:38583C87 deleted successfully.
ADS C:\ProgramData\TEMP:318F58ED deleted successfully.
ADS C:\ProgramData\TEMP:1D8DA741 deleted successfully.
ADS C:\ProgramData\TEMP:1D0F625E deleted successfully.
ADS C:\ProgramData\TEMP:19474103 deleted successfully.
ADS C:\ProgramData\TEMP:13765436 deleted successfully.
ADS C:\ProgramData\TEMP:0915A718 deleted successfully.
ADS C:\ProgramData\TEMP:0696EC8E deleted successfully.
ADS C:\ProgramData\TEMP:03573464 deleted successfully.
ADS C:\ProgramData\TEMP:02F30776 deleted successfully.
ADS C:\ProgramData\TEMP:02067B2A deleted successfully.
ADS C:\ProgramData\TEMP:FEE00EB9 deleted successfully.
ADS C:\ProgramData\TEMP:FD6D11C9 deleted successfully.
ADS C:\ProgramData\TEMP:F13867C6 deleted successfully.
ADS C:\ProgramData\TEMP:EFF3C3C8 deleted successfully.
ADS C:\ProgramData\TEMP:EDDBC69E deleted successfully.
ADS C:\ProgramData\TEMP:EA239AF3 deleted successfully.
ADS C:\ProgramData\TEMP:E5E3042E deleted successfully.
ADS C:\ProgramData\TEMP:DE4CDA7F deleted successfully.
ADS C:\ProgramData\TEMP:D3A82449 deleted successfully.
ADS C:\ProgramData\TEMP:CC141B05 deleted successfully.
ADS C:\ProgramData\TEMP:BFE54417 deleted successfully.
ADS C:\ProgramData\TEMP:B88DC997 deleted successfully.
ADS C:\ProgramData\TEMP:B2112CA5 deleted successfully.
ADS C:\ProgramData\TEMP:AFB89C92 deleted successfully.
ADS C:\ProgramData\TEMP:A18121AD deleted successfully.
ADS C:\ProgramData\TEMP:9F464D14 deleted successfully.
ADS C:\ProgramData\TEMP:95079543 deleted successfully.
ADS C:\ProgramData\TEMP:94B85462 deleted successfully.
ADS C:\ProgramData\TEMP:91DFBB4A deleted successfully.
ADS C:\ProgramData\TEMP:8E5D8044 deleted successfully.
ADS C:\ProgramData\TEMP:80197AB9 deleted successfully.
ADS C:\ProgramData\TEMP:715343A0 deleted successfully.
ADS C:\ProgramData\TEMP:6DD124E2 deleted successfully.
ADS C:\ProgramData\TEMP:69A6B28F deleted successfully.
ADS C:\ProgramData\TEMP:68A41423 deleted successfully.
ADS C:\ProgramData\TEMP:6423D635 deleted successfully.
ADS C:\ProgramData\TEMP:5FD26EF3 deleted successfully.
ADS C:\ProgramData\TEMP:5CD70138 deleted successfully.
ADS C:\ProgramData\TEMP:5080697C deleted successfully.
ADS C:\ProgramData\TEMP:44F20D76 deleted successfully.
ADS C:\ProgramData\TEMP:447D840C deleted successfully.
ADS C:\ProgramData\TEMP:37207201 deleted successfully.
ADS C:\ProgramData\TEMP:2AD33723 deleted successfully.
ADS C:\ProgramData\TEMP:25612F5D deleted successfully.
ADS C:\ProgramData\TEMP:25263F30 deleted successfully.
ADS C:\ProgramData\TEMP:23311E75 deleted successfully.
ADS C:\ProgramData\TEMP:1E942FB9 deleted successfully.
ADS C:\ProgramData\TEMP:1B47CB83 deleted successfully.
ADS C:\ProgramData\TEMP:120B3AFD deleted successfully.
ADS C:\ProgramData\TEMP:FB4262DE deleted successfully.
ADS C:\ProgramData\TEMP:F610C203 deleted successfully.
ADS C:\ProgramData\TEMP:F26F5952 deleted successfully.
ADS C:\ProgramData\TEMP:E9E67F10 deleted successfully.
ADS C:\ProgramData\TEMP:E748547C deleted successfully.
ADS C:\ProgramData\TEMP:E5576A7A deleted successfully.
ADS C:\ProgramData\TEMP:E402E439 deleted successfully.
ADS C:\ProgramData\TEMP:E0C92ACC deleted successfully.
ADS C:\ProgramData\TEMP:DB39F2A2 deleted successfully.
ADS C:\ProgramData\TEMP:DB0E3610 deleted successfully.
ADS C:\ProgramData\TEMP:DA9D42A5 deleted successfully.
ADS C:\ProgramData\TEMP:D6C2C750 deleted successfully.
ADS C:\ProgramData\TEMP:D3A89E47 deleted successfully.
ADS C:\ProgramData\TEMP:D01ACC06 deleted successfully.
ADS C:\ProgramData\TEMP:C42EB422 deleted successfully.
ADS C:\ProgramData\TEMP:C0601E00 deleted successfully.
ADS C:\ProgramData\TEMP:BFA8F8E2 deleted successfully.
ADS C:\ProgramData\TEMP:BB16EB59 deleted successfully.
ADS C:\ProgramData\TEMP:BA660D25 deleted successfully.
ADS C:\ProgramData\TEMP:B6AE8DE6 deleted successfully.
ADS C:\ProgramData\TEMP:A9056F42 deleted successfully.
ADS C:\ProgramData\TEMP:A4241298 deleted successfully.
ADS C:\ProgramData\TEMP:A174A5CD deleted successfully.
ADS C:\ProgramData\TEMP:A12FBF8D deleted successfully.
ADS C:\ProgramData\TEMP:9D03192E deleted successfully.
ADS C:\ProgramData\TEMP:98A71B94 deleted successfully.
ADS C:\ProgramData\TEMP:980D86EF deleted successfully.
ADS C:\ProgramData\TEMP:81F6F7CD deleted successfully.
ADS C:\ProgramData\TEMP:7BB20DE8 deleted successfully.
ADS C:\ProgramData\TEMP:7AF9CAEB deleted successfully.
ADS C:\ProgramData\TEMP:73B78E79 deleted successfully.
ADS C:\ProgramData\TEMP:71112705 deleted successfully.
ADS C:\ProgramData\TEMP:6B709AD7 deleted successfully.
ADS C:\ProgramData\TEMP:65AAB2AD deleted successfully.
ADS C:\ProgramData\TEMP:5AC256BC deleted successfully.
ADS C:\ProgramData\TEMP:4CA05B44 deleted successfully.
ADS C:\ProgramData\TEMP:47BC906D deleted successfully.
ADS C:\ProgramData\TEMP:44E16D4A deleted successfully.
ADS C:\ProgramData\TEMP:3CA557DB deleted successfully.
ADS C:\ProgramData\TEMP:384AA0FD deleted successfully.
ADS C:\ProgramData\TEMP:2F8138B7 deleted successfully.
ADS C:\ProgramData\TEMP:2AF04C69 deleted successfully.
ADS C:\ProgramData\TEMP:2936486C deleted successfully.
ADS C:\ProgramData\TEMP:27974442 deleted successfully.
ADS C:\ProgramData\TEMP:1B389835 deleted successfully.
ADS C:\ProgramData\TEMP:178CD274 deleted successfully.
ADS C:\ProgramData\TEMP:0B42540E deleted successfully.
ADS C:\ProgramData\TEMP:07F1E224 deleted successfully.
ADS C:\ProgramData\TEMP:057D335E deleted successfully.
ADS C:\ProgramData\TEMP:00325F08 deleted successfully.
ADS C:\ProgramData\TEMP:F33C37D5 deleted successfully.
ADS C:\ProgramData\TEMP:EE7AAC75 deleted successfully.
ADS C:\ProgramData\TEMP:EBF0842B deleted successfully.
ADS C:\ProgramData\TEMP:E99B7847 deleted successfully.
ADS C:\ProgramData\TEMP:DFD03865 deleted successfully.
ADS C:\ProgramData\TEMP:D3CBE452 deleted successfully.
ADS C:\ProgramData\TEMP:D39D0760 deleted successfully.
ADS C:\ProgramData\TEMP:C7342A3B deleted successfully.
ADS C:\ProgramData\TEMP:C458CC0A deleted successfully.
ADS C:\ProgramData\TEMP:C370B84F deleted successfully.
ADS C:\ProgramData\TEMP:C0A9B815 deleted successfully.
ADS C:\ProgramData\TEMP:BEE39E9B deleted successfully.
ADS C:\ProgramData\TEMP:B4F0E275 deleted successfully.
ADS C:\ProgramData\TEMP:B36361EE deleted successfully.
ADS C:\ProgramData\TEMP:A26AFC00 deleted successfully.
ADS C:\ProgramData\TEMP:9FF05345 deleted successfully.
ADS C:\ProgramData\TEMP:9BB8C675 deleted successfully.
ADS C:\ProgramData\TEMP:99B20AD0 deleted successfully.
ADS C:\ProgramData\TEMP:90C320E1 deleted successfully.
ADS C:\ProgramData\TEMP:8E11CC80 deleted successfully.
ADS C:\ProgramData\TEMP:8497EEBD deleted successfully.
ADS C:\ProgramData\TEMP:7D2DF249 deleted successfully.
ADS C:\ProgramData\TEMP:754E278B deleted successfully.
ADS C:\ProgramData\TEMP:71004506 deleted successfully.
ADS C:\ProgramData\TEMP:6F0B6A5A deleted successfully.
ADS C:\ProgramData\TEMP:62D72D41 deleted successfully.
ADS C:\ProgramData\TEMP:56FBA78D deleted successfully.
ADS C:\ProgramData\TEMP:5453E5AF deleted successfully.
ADS C:\ProgramData\TEMP:51E66512 deleted successfully.
ADS C:\ProgramData\TEMP:50D4BAF7 deleted successfully.
ADS C:\ProgramData\TEMP:4EC7F009 deleted successfully.
ADS C:\ProgramData\TEMP:4C16B46B deleted successfully.
ADS C:\ProgramData\TEMP:486CFA26 deleted successfully.
ADS C:\ProgramData\TEMP:3E8EC09D deleted successfully.
ADS C:\ProgramData\TEMP:398EFF0F deleted successfully.
ADS C:\ProgramData\TEMP:349E5B74 deleted successfully.
ADS C:\ProgramData\TEMP:300319CF deleted successfully.
ADS C:\ProgramData\TEMP:2E636DD9 deleted successfully.
ADS C:\ProgramData\TEMP:2CED8825 deleted successfully.
ADS C:\ProgramData\TEMP:231902A8 deleted successfully.
ADS C:\ProgramData\TEMP:2104E882 deleted successfully.
ADS C:\ProgramData\TEMP:1FA4C06F deleted successfully.
ADS C:\ProgramData\TEMP:17FF6514 deleted successfully.
ADS C:\ProgramData\TEMP:13632066 deleted successfully.
ADS C:\ProgramData\TEMP:12D21A9A deleted successfully.
ADS C:\ProgramData\TEMP:1254AF99 deleted successfully.
ADS C:\ProgramData\TEMP:11E1C455 deleted successfully.
ADS C:\ProgramData\TEMP:114C90CA deleted successfully.
ADS C:\ProgramData\TEMP:10F54EB5 deleted successfully.
ADS C:\ProgramData\TEMP:0513D3EB deleted successfully.
ADS C:\ProgramData\TEMP:0112E544 deleted successfully.
ADS C:\ProgramData\TEMP:F614E9D7 deleted successfully.
ADS C:\ProgramData\TEMP:F5D01D7C deleted successfully.
ADS C:\ProgramData\TEMP:ED0B32CA deleted successfully.
ADS C:\ProgramData\TEMP:E4AF6738 deleted successfully.
ADS C:\ProgramData\TEMP:E04570EE deleted successfully.
ADS C:\ProgramData\TEMP:DBC3D477 deleted successfully.
ADS C:\ProgramData\TEMP:DA6F4C11 deleted successfully.
ADS C:\ProgramData\TEMP:C211A5DF deleted successfully.
ADS C:\ProgramData\TEMP:C18013F9 deleted successfully.
ADS C:\ProgramData\TEMP:BDC0F56E deleted successfully.
ADS C:\ProgramData\TEMP:B8791731 deleted successfully.
ADS C:\ProgramData\TEMP:A9223B61 deleted successfully.
ADS C:\ProgramData\TEMP:A42FABF7 deleted successfully.
ADS C:\ProgramData\TEMP:A17BCEAD deleted successfully.
ADS C:\ProgramData\TEMP:922DA2DB deleted successfully.
ADS C:\ProgramData\TEMP:905BCB57 deleted successfully.
ADS C:\ProgramData\TEMP:7BFAAE70 deleted successfully.
ADS C:\ProgramData\TEMP:762408BA deleted successfully.
ADS C:\ProgramData\TEMP:6DDFD746 deleted successfully.
ADS C:\ProgramData\TEMP:658DE22A deleted successfully.
ADS C:\ProgramData\TEMP:657027E7 deleted successfully.
ADS C:\ProgramData\TEMP:65137F0D deleted successfully.
ADS C:\ProgramData\TEMP:57B374AB deleted successfully.
ADS C:\ProgramData\TEMP:4E10A40A deleted successfully.
ADS C:\ProgramData\TEMP:4CD3F344 deleted successfully.
ADS C:\ProgramData\TEMP:4C9782FB deleted successfully.
ADS C:\ProgramData\TEMP:4BDE2F32 deleted successfully.
ADS C:\ProgramData\TEMP:48F9F656 deleted successfully.
ADS C:\ProgramData\TEMP:47A24D4B deleted successfully.
ADS C:\ProgramData\TEMP:366CED23 deleted successfully.
ADS C:\ProgramData\TEMP:2F360FB3 deleted successfully.
ADS C:\ProgramData\TEMP:2E33E4A6 deleted successfully.
ADS C:\ProgramData\TEMP:2B353054 deleted successfully.
ADS C:\ProgramData\TEMP:1DB77A89 deleted successfully.
ADS C:\ProgramData\TEMP:1A15E356 deleted successfully.
ADS C:\ProgramData\TEMP:12A11485 deleted successfully.
ADS C:\ProgramData\TEMP:1234ADAE deleted successfully.
ADS C:\ProgramData\TEMP:1224B4C3 deleted successfully.
ADS C:\ProgramData\TEMP:0ADCCF52 deleted successfully.
ADS C:\ProgramData\TEMP:F9F58B80 deleted successfully.
ADS C:\ProgramData\TEMP:F98E6C67 deleted successfully.
ADS C:\ProgramData\TEMP:F8EE1B63 deleted successfully.
ADS C:\ProgramData\TEMP:EE64FA92 deleted successfully.
ADS C:\ProgramData\TEMP:EB792F59 deleted successfully.
ADS C:\ProgramData\TEMP:C642810F deleted successfully.
ADS C:\ProgramData\TEMP:B1786630 deleted successfully.
ADS C:\ProgramData\TEMP:B0EA26E5 deleted successfully.
ADS C:\ProgramData\TEMP:ACC8B9FE deleted successfully.
ADS C:\ProgramData\TEMP:9F8A968C deleted successfully.
ADS C:\ProgramData\TEMP:9DB67071 deleted successfully.
ADS C:\ProgramData\TEMP:9B4E710C deleted successfully.
ADS C:\ProgramData\TEMP:86B7FDDB deleted successfully.
ADS C:\ProgramData\TEMP:8204AA35 deleted successfully.
ADS C:\ProgramData\TEMP:7E4E56EA deleted successfully.
ADS C:\ProgramData\TEMP:7899E39D deleted successfully.
ADS C:\ProgramData\TEMP:71AEFFEB deleted successfully.
ADS C:\ProgramData\TEMP:70989864 deleted successfully.
ADS C:\ProgramData\TEMP:678C1866 deleted successfully.
ADS C:\ProgramData\TEMP:5AABC977 deleted successfully.
ADS C:\ProgramData\TEMP:56FCF346 deleted successfully.
ADS C:\ProgramData\TEMP:4D4CCFDE deleted successfully.
ADS C:\ProgramData\TEMP:4A906D4A deleted successfully.
ADS C:\ProgramData\TEMP:49EB69E2 deleted successfully.
ADS C:\ProgramData\TEMP:45E33ED2 deleted successfully.
ADS C:\ProgramData\TEMP:404C30E3 deleted successfully.
ADS C:\ProgramData\TEMP:3D724856 deleted successfully.
ADS C:\ProgramData\TEMP:21D36579 deleted successfully.
ADS C:\ProgramData\TEMP:20FDCEDA deleted successfully.
ADS C:\ProgramData\TEMP:206470A5 deleted successfully.
ADS C:\ProgramData\TEMP:19068864 deleted successfully.
ADS C:\ProgramData\TEMP:18E3BAF3 deleted successfully.
ADS C:\ProgramData\TEMP:18A25CF1 deleted successfully.
ADS C:\ProgramData\TEMP:16A2C6C0 deleted successfully.
ADS C:\ProgramData\TEMP:1392F09D deleted successfully.
ADS C:\ProgramData\TEMP:11EFE63D deleted successfully.
ADS C:\ProgramData\TEMP:1173185F deleted successfully.
ADS C:\ProgramData\TEMP:084612C9 deleted successfully.
ADS C:\ProgramData\TEMP:07D9FF25 deleted successfully.
ADS C:\ProgramData\TEMP:F0FEF55C deleted successfully.
ADS C:\ProgramData\TEMP:EEBA2194 deleted successfully.
ADS C:\ProgramData\TEMP:EE7A6A39 deleted successfully.
ADS C:\ProgramData\TEMP:EE69D7DF deleted successfully.
ADS C:\ProgramData\TEMP:E31FAD5C deleted successfully.
ADS C:\ProgramData\TEMP:DF19F127 deleted successfully.
ADS C:\ProgramData\TEMP:DE85158E deleted successfully.
ADS C:\ProgramData\TEMP:DC7EDF41 deleted successfully.
ADS C:\ProgramData\TEMP:D1A3680D deleted successfully.
ADS C:\ProgramData\TEMP:CDA5E85E deleted successfully.
ADS C:\ProgramData\TEMP:C1C705A1 deleted successfully.
ADS C:\ProgramData\TEMP:B480AC4F deleted successfully.
ADS C:\ProgramData\TEMP:B3EC70D7 deleted successfully.
ADS C:\ProgramData\TEMP:B38BEEEE deleted successfully.
ADS C:\ProgramData\TEMP:ADCBD4B1 deleted successfully.
ADS C:\ProgramData\TEMP:A542877D deleted successfully.
ADS C:\ProgramData\TEMP:9FCF32A8 deleted successfully.
ADS C:\ProgramData\TEMP:96372A73 deleted successfully.
ADS C:\ProgramData\TEMP:95460138 deleted successfully.
ADS C:\ProgramData\TEMP:8B3E4368 deleted successfully.
ADS C:\ProgramData\TEMP:84CFEE62 deleted successfully.
ADS C:\ProgramData\TEMP:7C4DCB5B deleted successfully.
ADS C:\ProgramData\TEMP:6D5A15BF deleted successfully.
ADS C:\ProgramData\TEMP:663B62CA deleted successfully.
ADS C:\ProgramData\TEMP:5FD35242 deleted successfully.
ADS C:\ProgramData\TEMP:5F13D96D deleted successfully.
ADS C:\ProgramData\TEMP:3DB6F365 deleted successfully.
ADS C:\ProgramData\TEMP:363E775E deleted successfully.
ADS C:\ProgramData\TEMP:1B96CF22 deleted successfully.
ADS C:\ProgramData\TEMP:16F4BC64 deleted successfully.
ADS C:\ProgramData\TEMP:0F4A7B6A deleted successfully.
ADS C:\ProgramData\TEMP:0AE8A4AA deleted successfully.
ADS C:\ProgramData\TEMP:0794061A deleted successfully.
ADS C:\ProgramData\TEMP:041ED421 deleted successfully.
ADS C:\ProgramData\TEMP:FE6FC288 deleted successfully.
ADS C:\ProgramData\TEMP:FBF4285F deleted successfully.
ADS C:\ProgramData\TEMP:F6A0889A deleted successfully.
ADS C:\ProgramData\TEMP:F2B81C2E deleted successfully.
ADS C:\ProgramData\TEMP:DAA03B47 deleted successfully.
ADS C:\ProgramData\TEMP:D47B19A6 deleted successfully.
ADS C:\ProgramData\TEMP:C53CB97B deleted successfully.
ADS C:\ProgramData\TEMP:C4E5F754 deleted successfully.
ADS C:\ProgramData\TEMP:C49A5AD1 deleted successfully.
ADS C:\ProgramData\TEMP:C104B0EF deleted successfully.
ADS C:\ProgramData\TEMP:BE3D26E5 deleted successfully.
ADS C:\ProgramData\TEMP:BDDE9892 deleted successfully.
ADS C:\ProgramData\TEMP:BD8010FE deleted successfully.
ADS C:\ProgramData\TEMP:A855A1F5 deleted successfully.
ADS C:\ProgramData\TEMP:A1A86E40 deleted successfully.
ADS C:\ProgramData\TEMP:A02025CE deleted successfully.
ADS C:\ProgramData\TEMP:9C7A32BB deleted successfully.
ADS C:\ProgramData\TEMP:9C3AAD57 deleted successfully.
ADS C:\ProgramData\TEMP:9597EAFE deleted successfully.
ADS C:\ProgramData\TEMP:957E9765 deleted successfully.
ADS C:\ProgramData\TEMP:8856A3B9 deleted successfully.
ADS C:\ProgramData\TEMP:72A1B66A deleted successfully.
ADS C:\ProgramData\TEMP:702A7F20 deleted successfully.
ADS C:\ProgramData\TEMP:5D4F063C deleted successfully.
ADS C:\ProgramData\TEMP:5C39FE43 deleted successfully.
ADS C:\ProgramData\TEMP:5822E129 deleted successfully.
ADS C:\ProgramData\TEMP:517EFA90 deleted successfully.
ADS C:\ProgramData\TEMP:5133A494 deleted successfully.
ADS C:\ProgramData\TEMP:4E682B93 deleted successfully.
ADS C:\ProgramData\TEMP:43CBFAB2 deleted successfully.
ADS C:\ProgramData\TEMP:4047CC8B deleted successfully.
ADS C:\ProgramData\TEMP:34BBA0EE deleted successfully.
ADS C:\ProgramData\TEMP:32EA849C deleted successfully.
ADS C:\ProgramData\TEMP:29C0641D deleted successfully.
ADS C:\ProgramData\TEMP:2652902F deleted successfully.
ADS C:\ProgramData\TEMP:1EDA006C deleted successfully.
ADS C:\ProgramData\TEMP:1919E614 deleted successfully.
ADS C:\ProgramData\TEMP:09708CB7 deleted successfully.
ADS C:\ProgramData\TEMP:063969F8 deleted successfully.
ADS C:\ProgramData\TEMP:F9DBCA89 deleted successfully.
ADS C:\ProgramData\TEMP:F860DBFD deleted successfully.
ADS C:\ProgramData\TEMP:F6C63FD4 deleted successfully.
ADS C:\ProgramData\TEMP:E6EC5C2A deleted successfully.
ADS C:\ProgramData\TEMP:E3615992 deleted successfully.
ADS C:\ProgramData\TEMP:D6603C06 deleted successfully.
ADS C:\ProgramData\TEMP:CAB5CE82 deleted successfully.
ADS C:\ProgramData\TEMP:CA1AFE85 deleted successfully.
ADS C:\ProgramData\TEMP:BE714CCB deleted successfully.
ADS C:\ProgramData\TEMP:BE1DA945 deleted successfully.
ADS C:\ProgramData\TEMP:BC6B5246 deleted successfully.
ADS C:\ProgramData\TEMP:B7B09D45 deleted successfully.
ADS C:\ProgramData\TEMP:B1381B34 deleted successfully.
ADS C:\ProgramData\TEMP:A8ADEA55 deleted successfully.
ADS C:\ProgramData\TEMP:988406DD deleted successfully.
ADS C:\ProgramData\TEMP:943971F5 deleted successfully.
ADS C:\ProgramData\TEMP:8AED9359 deleted successfully.
ADS C:\ProgramData\TEMP:7396B250 deleted successfully.
ADS C:\ProgramData\TEMP:6A9CA6CB deleted successfully.
ADS C:\ProgramData\TEMP:62AF0D82 deleted successfully.
ADS C:\ProgramData\TEMP:60F3D3BE deleted successfully.
ADS C:\ProgramData\TEMP:5E8CBF59 deleted successfully.
ADS C:\ProgramData\TEMP:40AB1F79 deleted successfully.
ADS C:\ProgramData\TEMP:375B96CE deleted successfully.
ADS C:\ProgramData\TEMP:3086B95F deleted successfully.
ADS C:\ProgramData\TEMP:2702660E deleted successfully.
ADS C:\ProgramData\TEMP:217A2324 deleted successfully.
ADS C:\ProgramData\TEMP:13019F4B deleted successfully.
ADS C:\ProgramData\TEMP:10FDBA11 deleted successfully.
ADS C:\ProgramData\TEMP:0FD467B3 deleted successfully.
ADS C:\ProgramData\TEMP:0B32B6C9 deleted successfully.
ADS C:\ProgramData\TEMP:020106A2 deleted successfully.
ADS C:\ProgramData\TEMP:01D59398 deleted successfully.
ADS C:\ProgramData\TEMP:FD80436E deleted successfully.
ADS C:\ProgramData\TEMP:ED87F928 deleted successfully.
ADS C:\ProgramData\TEMP:E8AEB2BF deleted successfully.
ADS C:\ProgramData\TEMP:E3E08656 deleted successfully.
ADS C:\ProgramData\TEMP:E31543CC deleted successfully.
ADS C:\ProgramData\TEMP:DD0E44DE deleted successfully.
ADS C:\ProgramData\TEMP:D9771F40 deleted successfully.
ADS C:\ProgramData\TEMP:D3A9D67D deleted successfully.
ADS C:\ProgramData\TEMP:CA99FD89 deleted successfully.
ADS C:\ProgramData\TEMP:BE6B5FC3 deleted successfully.
ADS C:\ProgramData\TEMP:BC1F7CAE deleted successfully.
ADS C:\ProgramData\TEMP:ACEDBECD deleted successfully.
ADS C:\ProgramData\TEMP:A967B48B deleted successfully.
ADS C:\ProgramData\TEMP:A900C3A3 deleted successfully.
ADS C:\ProgramData\TEMP:A76A1B1B deleted successfully.
ADS C:\ProgramData\TEMP:A2C4E5BC deleted successfully.
ADS C:\ProgramData\TEMP:9D792BFF deleted successfully.
ADS C:\ProgramData\TEMP:9D640585 deleted successfully.
ADS C:\ProgramData\TEMP:9B91915F deleted successfully.
ADS C:\ProgramData\TEMP:97AAB7F2 deleted successfully.
ADS C:\ProgramData\TEMP:9424DF3A deleted successfully.
ADS C:\ProgramData\TEMP:8DAEE95B deleted successfully.
ADS C:\ProgramData\TEMP:88E4DD0D deleted successfully.
ADS C:\ProgramData\TEMP:84E5776A deleted successfully.
ADS C:\ProgramData\TEMP:7DCD39C9 deleted successfully.
ADS C:\ProgramData\TEMP:6C031E3E deleted successfully.
ADS C:\ProgramData\TEMP:645E99F7 deleted successfully.
ADS C:\ProgramData\TEMP:6260658C deleted successfully.
ADS C:\ProgramData\TEMP:61FEC5E3 deleted successfully.
ADS C:\ProgramData\TEMP:57231008 deleted successfully.
ADS C:\ProgramData\TEMP:4F852702 deleted successfully.
ADS C:\ProgramData\TEMP:4DDE401B deleted successfully.
ADS C:\ProgramData\TEMP:4A2862FF deleted successfully.
ADS C:\ProgramData\TEMP:45CA8044 deleted successfully.
ADS C:\ProgramData\TEMP:3C4BD225 deleted successfully.
ADS C:\ProgramData\TEMP:2F70C0B4 deleted successfully.
ADS C:\ProgramData\TEMP:21B987C4 deleted successfully.
ADS C:\ProgramData\TEMP:217A2A36 deleted successfully.
ADS C:\ProgramData\TEMP:1CF1FB36 deleted successfully.
ADS C:\ProgramData\TEMP:134FBDE2 deleted successfully.
ADS C:\ProgramData\TEMP:04E853D4 deleted successfully.
ADS C:\ProgramData\TEMP:F135A76C deleted successfully.
ADS C:\ProgramData\TEMP:E99D1D3C deleted successfully.
ADS C:\ProgramData\TEMP:D0005E5A deleted successfully.
ADS C:\ProgramData\TEMP:CC4C59B4 deleted successfully.
ADS C:\ProgramData\TEMP:AAA06E15 deleted successfully.
ADS C:\ProgramData\TEMP:A4E7D25F deleted successfully.
ADS C:\ProgramData\TEMP:A1460B2A deleted successfully.
ADS C:\ProgramData\TEMP:87A3A233 deleted successfully.
ADS C:\ProgramData\TEMP:7BE5BAAB deleted successfully.
ADS C:\ProgramData\TEMP:66871744 deleted successfully.
ADS C:\ProgramData\TEMP:5ECEFF17 deleted successfully.
ADS C:\ProgramData\TEMP:37C279BE deleted successfully.
ADS C:\ProgramData\TEMP:34C443B4 deleted successfully.
ADS C:\ProgramData\TEMP:10D45FC3 deleted successfully.
ADS C:\ProgramData\TEMP:109734F6 deleted successfully.
ADS C:\ProgramData\TEMP:F760FD47 deleted successfully.
ADS C:\ProgramData\TEMP:F5B51004 deleted successfully.
ADS C:\ProgramData\TEMP:EE2DD6CC deleted successfully.
ADS C:\ProgramData\TEMP:E4EE99EF deleted successfully.
ADS C:\ProgramData\TEMP:BF6C81B2 deleted successfully.
ADS C:\ProgramData\TEMP:AA60673F deleted successfully.
ADS C:\ProgramData\TEMP:98DD1050 deleted successfully.
ADS C:\ProgramData\TEMP:96C9689F deleted successfully.
ADS C:\ProgramData\TEMP:8B79243A deleted successfully.
ADS C:\ProgramData\TEMP:7D9B1030 deleted successfully.
ADS C:\ProgramData\TEMP:774A0E14 deleted successfully.
ADS C:\ProgramData\TEMP:6B7447D4 deleted successfully.
ADS C:\ProgramData\TEMP:5C4A588B deleted successfully.
ADS C:\ProgramData\TEMP:5A2E8BBF deleted successfully.
ADS C:\ProgramData\TEMP:1B3549F2 deleted successfully.
ADS C:\ProgramData\TEMP:1416AAA6 deleted successfully.
ADS C:\ProgramData\TEMP:00258EE7 deleted successfully.
ADS C:\ProgramData\TEMP:F7370879 deleted successfully.
ADS C:\ProgramData\TEMP:E8B61305 deleted successfully.
ADS C:\ProgramData\TEMP:E40D7F76 deleted successfully.
ADS C:\ProgramData\TEMP:C7517D0A deleted successfully.
ADS C:\ProgramData\TEMP:C3AD9507 deleted successfully.
ADS C:\ProgramData\TEMP:C2F24DB5 deleted successfully.
ADS C:\ProgramData\TEMP:BACB6B6C deleted successfully.
ADS C:\ProgramData\TEMP:B4258C5D deleted successfully.
ADS C:\ProgramData\TEMP:927EC486 deleted successfully.
ADS C:\ProgramData\TEMP:6FD36C4B deleted successfully.
ADS C:\ProgramData\TEMP:6F0C95A1 deleted successfully.
ADS C:\ProgramData\TEMP:6E2D80C8 deleted successfully.
ADS C:\ProgramData\TEMP:6C049F97 deleted successfully.
ADS C:\ProgramData\TEMP:56C66609 deleted successfully.
ADS C:\ProgramData\TEMP:553056F1 deleted successfully.
ADS C:\ProgramData\TEMP:4C6F9D77 deleted successfully.
ADS C:\ProgramData\TEMP:32FFF2D1 deleted successfully.
ADS C:\ProgramData\TEMP:2C250258 deleted successfully.
ADS C:\ProgramData\TEMP:2B40A7DB deleted successfully.
ADS C:\ProgramData\TEMP:29F0CA7D deleted successfully.
ADS C:\ProgramData\TEMP:28819F45 deleted successfully.
ADS C:\ProgramData\TEMP:1BD02801 deleted successfully.
ADS C:\ProgramData\TEMP:19636FDD deleted successfully.
ADS C:\ProgramData\TEMP:104A718B deleted successfully.
ADS C:\ProgramData\TEMP:04B1A0AC deleted successfully.
ADS C:\ProgramData\TEMP:F1F936DF deleted successfully.
ADS C:\ProgramData\TEMP:E40AB54F deleted successfully.
ADS C:\ProgramData\TEMP:D2C44806 deleted successfully.
ADS C:\ProgramData\TEMP:CF61CE5A deleted successfully.
ADS C:\ProgramData\TEMP:CAE3AE67 deleted successfully.
ADS C:\ProgramData\TEMP:C78DADEA deleted successfully.
ADS C:\ProgramData\TEMP:BCF55336 deleted successfully.
ADS C:\ProgramData\TEMP:AFC732F7 deleted successfully.
ADS C:\ProgramData\TEMP:AECF4772 deleted successfully.
ADS C:\ProgramData\TEMP:A8185163 deleted successfully.
ADS C:\ProgramData\TEMP:75798D9A deleted successfully.
ADS C:\ProgramData\TEMP:594C9FF8 deleted successfully.
ADS C:\ProgramData\TEMP:46A2F27B deleted successfully.
ADS C:\ProgramData\TEMP:3B75B877 deleted successfully.
ADS C:\ProgramData\TEMP:329BA65B deleted successfully.
ADS C:\ProgramData\TEMP:26499772 deleted successfully.
ADS C:\ProgramData\TEMP:11590865 deleted successfully.
ADS C:\ProgramData\TEMP:0FD8569B deleted successfully.
ADS C:\ProgramData\TEMP:01D2B3C4 deleted successfully.
ADS C:\ProgramData\TEMP:E6708F08 deleted successfully.
ADS C:\ProgramData\TEMP:8CCDAB14 deleted successfully.
ADS C:\ProgramData\TEMP:2216A431 deleted successfully.
ADS C:\ProgramData\TEMP:A1023D41 deleted successfully.
ADS C:\ProgramData\TEMP:1A5822A3 deleted successfully.
ADS C:\ProgramData\TEMP:064877B6 deleted successfully.
ADS C:\ProgramData\TEMP:D453E38B deleted successfully.
ADS C:\ProgramData\TEMP:AE9351E0 deleted successfully.
ADS C:\ProgramData\TEMP:97995ED4 deleted successfully.
ADS C:\ProgramData\TEMP:50636E35 deleted successfully.
ADS C:\ProgramData\TEMP:149327FE deleted successfully.
ADS C:\ProgramData\TEMP:DBEF355E deleted successfully.
ADS C:\ProgramData\TEMP:6BF0805F deleted successfully.
ADS C:\ProgramData\TEMP:60C897F3 deleted successfully.
ADS C:\ProgramData\TEMP:DA5888A7 deleted successfully.
ADS C:\ProgramData\TEMP:B1FBBD09 deleted successfully.
ADS C:\ProgramData\TEMP:99C301D0 deleted successfully.
ADS C:\ProgramData\TEMP:69FE2EE4 deleted successfully.
ADS C:\ProgramData\TEMP:28476D43 deleted successfully.
ADS C:\ProgramData\TEMP:062AF572 deleted successfully.
ADS C:\ProgramData\TEMP:D507B5A8 deleted successfully.
ADS C:\ProgramData\TEMP:124B94C0 deleted successfully.
ADS C:\ProgramData\TEMP:57B2B96C deleted successfully.
ADS C:\ProgramData\TEMP:90D89144 deleted successfully.
ADS C:\ProgramData\TEMP:EB5BDBB0 deleted successfully.
ADS C:\ProgramData\TEMP:6444B424 deleted successfully.
ADS C:\ProgramData\TEMP:12EA4DC9 deleted successfully.
ADS C:\ProgramData\TEMP:EAFDF1CF deleted successfully.
ADS C:\ProgramData\TEMP:96AFAB10 deleted successfully.
ADS C:\ProgramData\TEMP:24FECE50 deleted successfully.
ADS C:\ProgramData\TEMP:0AE2C68F deleted successfully.
ADS C:\ProgramData\TEMP:3D36932D deleted successfully.
ADS C:\ProgramData\TEMP:D2D4B33E deleted successfully.
ADS C:\ProgramData\TEMP:45912F61 deleted successfully.
ADS C:\ProgramData\TEMP:F44D3C53 deleted successfully.
ADS C:\ProgramData\TEMP:880F0FEF deleted successfully.
ADS C:\ProgramData\TEMP:74091520 deleted successfully.
ADS C:\ProgramData\TEMP:E2C9E369 deleted successfully.
========== FILES ==========
C:\Users\Heike und Achim\AppData\Roaming\.# folder moved successfully.
< ipconfig /flushdns /c >
Windows-IP-Konfiguration
Der DNS-Aufl”sungscache wurde geleert.
C:\Users\Heike und Achim\Desktop\cmd.bat deleted successfully.
C:\Users\Heike und Achim\Desktop\cmd.txt deleted successfully.
========== COMMANDS ==========
 
[EMPTYTEMP]
 
User: All Users
 
User: AppData
 
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56502 bytes
 
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
 
User: Heike und Achim
->Temp folder emptied: 11291244 bytes
->Temporary Internet Files folder emptied: 700483308 bytes
->Java cache emptied: 8558 bytes
->FireFox cache emptied: 1147302753 bytes
->Google Chrome cache emptied: 104853389 bytes
->Flash cache emptied: 85015042 bytes
 
User: Public
 
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 127466 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33170 bytes
%systemroot%\system32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 761 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 79274 bytes
RecycleBin emptied: 18125348 bytes
 
Total Files Cleaned = 1.972,00 mb
 
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
 
OTL by OldTimer - Version 3.2.69.0 log created on 10172012_201759

Files\Folders moved on Reboot...
C:\Users\Heike und Achim\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\Heike und Achim\AppData\Local\Temp\REG114A.tmp moved successfully.
C:\Users\Heike und Achim\AppData\Local\Temp\REG47D6.tmp moved successfully.
C:\Users\Heike und Achim\AppData\Local\Temp\REG779E.tmp moved successfully.
File\Folder C:\Users\Heike und Achim\AppData\Local\Temp\~DF0FD4554389552C1D.TMP not found!
File\Folder C:\Users\Heike und Achim\AppData\Local\Temp\~DF1037068412252310.TMP not found!
File\Folder C:\Users\Heike und Achim\AppData\Local\Temp\~DF50FF54D0C178014B.TMP not found!
File\Folder C:\Users\Heike und Achim\AppData\Local\Temp\~DF5A53AF887EB6DA60.TMP not found!
File\Folder C:\Users\Heike und Achim\AppData\Local\Temp\~DF67F317ABD41D87A2.TMP not found!
File\Folder C:\Users\Heike und Achim\AppData\Local\Temp\~DFB84F32DD0E13A077.TMP not found!
C:\Users\Heike und Achim\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YNZ9FOCW\ads[2].htm moved successfully.
C:\Users\Heike und Achim\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\P1UZAR28\plusone_gadget[1].htm moved successfully.
C:\Users\Heike und Achim\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1KVM7VM1\125416-trojan-redirrdll2-gen-macaffe-firewall-stopt-2[1].htm moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
         
Gruß
Heike


Alt 17.10.2012, 20:22   #21
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Standard

Trojan.RedirRdll2.Gen und Macaffe Firewall stopt



Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten Anleitung und Downloadlink hier => http://www.trojaner-board.de/82358-t...entfernen.html

Hinweis: Bitte den Virenscanner abstellen bevor du den TDSS-Killer ausführst, denn v.a. Avira meldet im TDSS-Tool oft einen Fehalalrm!

Das Tool so einstellen wie unten im Bild angegeben - klick auf change parameters und setze die Haken wie im folgenden Screenshot abgebildet,
Dann auf Start Scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten.

Wenn du das Log nicht findest oder den Inhalt kopieren und in dein Posting übertragen kannst, dann schau bitte direkt auf deiner Windows-Systempartition ( meistens Laufwerk C: ) nach, da speichert der TDSS-Killer seine Logs.

Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten!

__________________
--> Trojan.RedirRdll2.Gen und Macaffe Firewall stopt

Alt 17.10.2012, 20:34   #22
ebb8924
 
Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Standard

Trojan.RedirRdll2.Gen und Macaffe Firewall stopt



Hallo Cosinus
Hier das logfile:
Code:
ATTFilter
21:29:33.0571 6888  TDSS rootkit removing tool 2.8.13.0 Oct 12 2012 17:26:47
21:29:33.0664 6888  ============================================================
21:29:33.0664 6888  Current date / time: 2012/10/17 21:29:33.0664
21:29:33.0664 6888  SystemInfo:
21:29:33.0664 6888  
21:29:33.0664 6888  OS Version: 6.1.7600 ServicePack: 0.0
21:29:33.0664 6888  Product type: Workstation
21:29:33.0664 6888  ComputerName: MUEMMEL
21:29:33.0680 6888  UserName: Heike und Achim
21:29:33.0680 6888  Windows directory: C:\Windows
21:29:33.0680 6888  System windows directory: C:\Windows
21:29:33.0680 6888  Running under WOW64
21:29:33.0680 6888  Processor architecture: Intel x64
21:29:33.0680 6888  Number of processors: 4
21:29:33.0680 6888  Page size: 0x1000
21:29:33.0680 6888  Boot type: Normal boot
21:29:33.0680 6888  ============================================================
21:29:35.0302 6888  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
21:29:35.0318 6888  ============================================================
21:29:35.0318 6888  \Device\Harddisk0\DR0:
21:29:35.0333 6888  MBR partitions:
21:29:35.0333 6888  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1ADE800, BlocksNum 0x32000
21:29:35.0333 6888  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1B10800, BlocksNum 0x38875030
21:29:35.0333 6888  ============================================================
21:29:35.0521 6888  C: <-> \Device\Harddisk0\DR0\Partition2
21:29:35.0521 6888  ============================================================
21:29:35.0521 6888  Initialize success
21:29:35.0521 6888  ============================================================
21:30:47.0484 3524  ============================================================
21:30:47.0484 3524  Scan started
21:30:47.0484 3524  Mode: Manual; SigCheck; TDLFS; 
21:30:47.0484 3524  ============================================================
21:30:47.0936 3524  ================ Scan system memory ========================
21:30:47.0936 3524  System memory - ok
21:30:47.0936 3524  ================ Scan services =============================
21:30:48.0092 3524  [ 1B00662092F9F9568B995902F0CC40D5 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
21:30:48.0232 3524  1394ohci - ok
21:30:48.0342 3524  [ ADC420616C501B45D26C0FD3EF1E54E4 ] ACDaemon        C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
21:30:48.0373 3524  ACDaemon - ok
21:30:48.0404 3524  [ 6F11E88748CDEFD2F76AA215F97DDFE5 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
21:30:48.0435 3524  ACPI - ok
21:30:48.0451 3524  [ 63B05A0420CE4BF0E4AF6DCC7CADA254 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
21:30:48.0513 3524  AcpiPmi - ok
21:30:48.0544 3524  [ 34400005DE52842C4D6D4EE978B4D7CE ] AdobeActiveFileMonitor8.0 C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe
21:30:48.0576 3524  AdobeActiveFileMonitor8.0 - ok
21:30:48.0622 3524  [ D19C4EE2AC7C47B8F5F84FFF1A789D8A ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
21:30:48.0638 3524  AdobeARMservice - ok
21:30:50.0697 3524  [ 44C00A385CA9DBC1D5CF3781F8C26AEA ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
21:30:50.0713 3524  AdobeFlashPlayerUpdateSvc - ok
21:30:50.0869 3524  [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
21:30:50.0900 3524  adp94xx - ok
21:30:50.0962 3524  [ 597F78224EE9224EA1A13D6350CED962 ] adpahci         C:\Windows\system32\drivers\adpahci.sys
21:30:50.0994 3524  adpahci - ok
21:30:51.0025 3524  [ E109549C90F62FB570B9540C4B148E54 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
21:30:51.0056 3524  adpu320 - ok
21:30:51.0087 3524  [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
21:30:51.0150 3524  AeLookupSvc - ok
21:30:51.0196 3524  [ DB9D6C6B2CD95A9CA414D045B627422E ] AFD             C:\Windows\system32\drivers\afd.sys
21:30:51.0243 3524  AFD - ok
21:30:51.0274 3524  [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440          C:\Windows\system32\drivers\agp440.sys
21:30:51.0290 3524  agp440 - ok
21:30:51.0306 3524  [ 3290D6946B5E30E70414990574883DDB ] ALG             C:\Windows\System32\alg.exe
21:30:51.0337 3524  ALG - ok
21:30:51.0352 3524  [ 5812713A477A3AD7363C7438CA2EE038 ] aliide          C:\Windows\system32\drivers\aliide.sys
21:30:51.0368 3524  aliide - ok
21:30:51.0415 3524  [ 3F9B03B72577A6A7405BF30801CBD159 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
21:30:51.0446 3524  AMD External Events Utility - ok
21:30:51.0477 3524  [ 1FF8B4431C353CE385C875F194924C0C ] amdide          C:\Windows\system32\drivers\amdide.sys
21:30:51.0524 3524  amdide - ok
21:30:51.0555 3524  [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
21:30:51.0586 3524  AmdK8 - ok
21:30:51.0805 3524  [ EA244A8B88DE8B5986BF3B7903B063AF ] amdkmdag        C:\Windows\system32\DRIVERS\atikmdag.sys
21:30:51.0992 3524  amdkmdag - ok
21:30:52.0023 3524  [ DCA6E341A4A7C31EA8A14C6166C9B249 ] amdkmdap        C:\Windows\system32\DRIVERS\atikmpag.sys
21:30:52.0070 3524  amdkmdap - ok
21:30:52.0101 3524  [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM          C:\Windows\system32\drivers\amdppm.sys
21:30:52.0148 3524  AmdPPM - ok
21:30:52.0195 3524  [ EC7EBAB00A4D8448BAB68D1E49B4BEB9 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
21:30:52.0226 3524  amdsata - ok
21:30:52.0257 3524  [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
21:30:52.0273 3524  amdsbs - ok
21:30:52.0304 3524  [ DB27766102C7BF7E95140A2AA81D042E ] amdxata         C:\Windows\system32\drivers\amdxata.sys
21:30:52.0320 3524  amdxata - ok
21:30:52.0351 3524  [ 2D45F2DFBC3D8F53DF7EBEFFA8C9BC38 ] ApfiltrService  C:\Windows\system32\drivers\Apfiltr.sys
21:30:52.0366 3524  ApfiltrService - ok
21:30:52.0398 3524  [ 42FD751B27FA0E9C69BB39F39E409594 ] AppID           C:\Windows\system32\drivers\appid.sys
21:30:52.0429 3524  AppID - ok
21:30:52.0460 3524  [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
21:30:52.0538 3524  AppIDSvc - ok
21:30:52.0554 3524  [ D065BE66822847B7F127D1F90158376E ] Appinfo         C:\Windows\System32\appinfo.dll
21:30:52.0569 3524  Appinfo - ok
21:30:52.0600 3524  [ C484F8CEB1717C540242531DB7845C4E ] arc             C:\Windows\system32\drivers\arc.sys
21:30:52.0616 3524  arc - ok
21:30:52.0632 3524  [ 019AF6924AEFE7839F61C830227FE79C ] arcsas          C:\Windows\system32\drivers\arcsas.sys
21:30:52.0647 3524  arcsas - ok
21:30:52.0678 3524  [ C130BC4A51B1382B2BE8E44579EC4C0A ] ArcSoftKsUFilter C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys
21:30:52.0678 3524  ArcSoftKsUFilter - ok
21:30:52.0694 3524  [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
21:30:52.0756 3524  AsyncMac - ok
21:30:52.0772 3524  [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi           C:\Windows\system32\drivers\atapi.sys
21:30:52.0788 3524  atapi - ok
21:30:52.0850 3524  [ CCA705CDF038D5BC243203CE4416B345 ] athr            C:\Windows\system32\DRIVERS\athrx.sys
21:30:52.0897 3524  athr - ok
21:30:53.0037 3524  [ EA244A8B88DE8B5986BF3B7903B063AF ] atikmdag        C:\Windows\system32\DRIVERS\atikmdag.sys
21:30:53.0115 3524  atikmdag - ok
21:30:53.0162 3524  [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
21:30:53.0209 3524  AudioEndpointBuilder - ok
21:30:53.0224 3524  [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioSrv        C:\Windows\System32\Audiosrv.dll
21:30:53.0256 3524  AudioSrv - ok
21:30:53.0271 3524  [ B20B5FA5CA050E9926E4D1DB81501B32 ] AxInstSV        C:\Windows\System32\AxInstSV.dll
21:30:53.0302 3524  AxInstSV - ok
21:30:53.0365 3524  [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
21:30:53.0396 3524  b06bdrv - ok
21:30:53.0412 3524  [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
21:30:53.0443 3524  b57nd60a - ok
21:30:53.0474 3524  [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC          C:\Windows\System32\bdesvc.dll
21:30:53.0521 3524  BDESVC - ok
21:30:53.0536 3524  [ 16A47CE2DECC9B099349A5F840654746 ] Beep            C:\Windows\system32\drivers\Beep.sys
21:30:53.0646 3524  Beep - ok
21:30:53.0724 3524  [ 7F0C323FE3DA28AA4AA1BDA3F575707F ] BITS            C:\Windows\System32\qmgr.dll
21:30:53.0833 3524  BITS - ok
21:30:53.0895 3524  [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive        C:\Windows\system32\drivers\blbdrive.sys
21:30:53.0942 3524  blbdrive - ok
21:30:53.0973 3524  [ 19D20159708E152267E53B66677A4995 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
21:30:54.0020 3524  bowser - ok
21:30:54.0036 3524  [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo        C:\Windows\system32\drivers\BrFiltLo.sys
21:30:54.0098 3524  BrFiltLo - ok
21:30:54.0114 3524  [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp        C:\Windows\system32\drivers\BrFiltUp.sys
21:30:54.0129 3524  BrFiltUp - ok
21:30:54.0176 3524  [ 6B054C67AAA87843504E8E3C09102009 ] Browser         C:\Windows\System32\browser.dll
21:30:54.0223 3524  Browser - ok
21:30:54.0254 3524  [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
21:30:54.0301 3524  Brserid - ok
21:30:54.0316 3524  [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
21:30:54.0348 3524  BrSerWdm - ok
21:30:54.0348 3524  [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
21:30:54.0379 3524  BrUsbMdm - ok
21:30:54.0394 3524  [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
21:30:54.0410 3524  BrUsbSer - ok
21:30:54.0441 3524  [ CF98190A94F62E405C8CB255018B2315 ] BthEnum         C:\Windows\system32\drivers\BthEnum.sys
21:30:54.0472 3524  BthEnum - ok
21:30:54.0504 3524  [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
21:30:54.0535 3524  BTHMODEM - ok
21:30:54.0566 3524  [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan          C:\Windows\system32\DRIVERS\bthpan.sys
21:30:54.0597 3524  BthPan - ok
21:30:54.0613 3524  [ D59773C7FDD3D795D6FE402EEEA8D71E ] BTHPORT         C:\Windows\System32\Drivers\BTHport.sys
21:30:54.0660 3524  BTHPORT - ok
21:30:54.0691 3524  [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv         C:\Windows\system32\bthserv.dll
21:30:54.0753 3524  bthserv - ok
21:30:54.0753 3524  [ 8504842634DD144C075B6B0C982CCEC4 ] BTHUSB          C:\Windows\System32\Drivers\BTHUSB.sys
21:30:54.0784 3524  BTHUSB - ok
21:30:54.0816 3524  [ 59E3510784548C6939C1B3B985C232E3 ] btwampfl        C:\Windows\system32\drivers\btwampfl.sys
21:30:54.0831 3524  btwampfl - ok
21:30:54.0862 3524  [ 1872074ED0A3FB22E3F1E3197B984BFA ] btwaudio        C:\Windows\system32\drivers\btwaudio.sys
21:30:54.0878 3524  btwaudio - ok
21:30:54.0909 3524  [ 691CF076C33AB1C3A5B2FD5450300733 ] btwavdt         C:\Windows\system32\DRIVERS\btwavdt.sys
21:30:54.0909 3524  btwavdt - ok
21:30:55.0003 3524  [ 8BA6E93A182126781952A7895EC1E4B2 ] btwdins         C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
21:30:55.0018 3524  btwdins - ok
21:30:55.0050 3524  [ 07096D2BC22CCB6CEA5A532DF0BE8A75 ] btwl2cap        C:\Windows\system32\DRIVERS\btwl2cap.sys
21:30:55.0065 3524  btwl2cap - ok
21:30:55.0081 3524  [ C9273B20DEC8CE38DBCE5D29DE63C907 ] btwrchid        C:\Windows\system32\DRIVERS\btwrchid.sys
21:30:55.0096 3524  btwrchid - ok
21:30:55.0112 3524  [ B8BD2BB284668C84865658C77574381A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
21:30:55.0190 3524  cdfs - ok
21:30:55.0221 3524  [ 83D2D75E1EFB81B3450C18131443F7DB ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
21:30:55.0237 3524  cdrom - ok
21:30:55.0284 3524  [ 312E2F82AF11E79906898AC3E3D58A1F ] CertPropSvc     C:\Windows\System32\certprop.dll
21:30:55.0346 3524  CertPropSvc - ok
21:30:55.0393 3524  [ 7C6B5BE2696DFD2D0BF6C9EE20326EF8 ] cfwids          C:\Windows\system32\drivers\cfwids.sys
21:30:55.0424 3524  cfwids - ok
21:30:55.0440 3524  [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass        C:\Windows\system32\drivers\circlass.sys
21:30:55.0471 3524  circlass - ok
21:30:55.0502 3524  [ FE1EC06F2253F691FE36217C592A0206 ] CLFS            C:\Windows\system32\CLFS.sys
21:30:55.0533 3524  CLFS - ok
21:30:55.0580 3524  [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:30:55.0611 3524  clr_optimization_v2.0.50727_32 - ok
21:30:55.0658 3524  [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
21:30:55.0674 3524  clr_optimization_v2.0.50727_64 - ok
21:30:55.0720 3524  [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
21:30:55.0752 3524  clr_optimization_v4.0.30319_32 - ok
21:30:55.0783 3524  [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
21:30:55.0783 3524  clr_optimization_v4.0.30319_64 - ok
21:30:55.0814 3524  [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt          C:\Windows\system32\drivers\CmBatt.sys
21:30:55.0845 3524  CmBatt - ok
21:30:55.0892 3524  [ E19D3F095812725D88F9001985B94EDD ] cmdide          C:\Windows\system32\drivers\cmdide.sys
21:30:55.0923 3524  cmdide - ok
21:30:55.0954 3524  [ CA7720B73446FDDEC5C69519C1174C98 ] CNG             C:\Windows\system32\Drivers\cng.sys
21:30:56.0001 3524  CNG - ok
21:30:56.0017 3524  [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt        C:\Windows\system32\drivers\compbatt.sys
21:30:56.0032 3524  Compbatt - ok
21:30:56.0032 3524  [ F26B3A86F6FA87CA360B879581AB4123 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
21:30:56.0079 3524  CompositeBus - ok
21:30:56.0079 3524  COMSysApp - ok
21:30:56.0110 3524  [ 1C827878A998C18847245FE1F34EE597 ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
21:30:56.0126 3524  crcdisk - ok
21:30:56.0157 3524  [ BAF19B633933A9FB4883D27D66C39E9A ] CryptSvc        C:\Windows\system32\cryptsvc.dll
21:30:56.0188 3524  CryptSvc - ok
21:30:56.0251 3524  [ 7266972E86890E2B30C0C322E906B027 ] DcomLaunch      C:\Windows\system32\rpcss.dll
21:30:56.0313 3524  DcomLaunch - ok
21:30:56.0360 3524  [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc       C:\Windows\System32\defragsvc.dll
21:30:56.0438 3524  defragsvc - ok
21:30:56.0469 3524  [ 9C253CE7311CA60FC11C774692A13208 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
21:30:56.0516 3524  DfsC - ok
21:30:56.0532 3524  [ CE3B9562D997F69B330D181A8875960F ] Dhcp            C:\Windows\system32\dhcpcore.dll
21:30:56.0578 3524  Dhcp - ok
21:30:56.0594 3524  [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache        C:\Windows\system32\drivers\discache.sys
21:30:56.0641 3524  discache - ok
21:30:56.0672 3524  [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk            C:\Windows\system32\drivers\disk.sys
21:30:56.0688 3524  Disk - ok
21:30:56.0734 3524  [ 85CF424C74A1D5EC33533E1DBFF9920A ] Dnscache        C:\Windows\System32\dnsrslvr.dll
21:30:56.0766 3524  Dnscache - ok
21:30:56.0797 3524  [ 14452ACDB09B70964C8C21BF80A13ACB ] dot3svc         C:\Windows\System32\dot3svc.dll
21:30:56.0859 3524  dot3svc - ok
21:30:56.0890 3524  [ 8C2BA6BEA949EE6E68385F5692BAFB94 ] DPS             C:\Windows\system32\dps.dll
21:30:56.0937 3524  DPS - ok
21:30:56.0953 3524  [ 9B19F34400D24DF84C858A421C205754 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
21:30:56.0968 3524  drmkaud - ok
21:30:57.0093 3524  [ 1633B9ABF52784A1331476397A48CBEF ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
21:30:57.0140 3524  DXGKrnl - ok
21:30:57.0171 3524  [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost         C:\Windows\System32\eapsvc.dll
21:30:57.0234 3524  EapHost - ok
21:30:57.0343 3524  [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv           C:\Windows\system32\drivers\evbda.sys
21:30:57.0452 3524  ebdrv - ok
21:30:57.0483 3524  [ 156F6159457D0AA7E59B62681B56EB90 ] EFS             C:\Windows\System32\lsass.exe
21:30:57.0514 3524  EFS - ok
21:30:57.0592 3524  [ 47C071994C3F649F23D9CD075AC9304A ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
21:30:57.0639 3524  ehRecvr - ok
21:30:57.0670 3524  [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched         C:\Windows\ehome\ehsched.exe
21:30:57.0717 3524  ehSched - ok
21:30:57.0764 3524  [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
21:30:57.0811 3524  elxstor - ok
21:30:57.0826 3524  [ 34A3C54752046E79A126E15C51DB409B ] ErrDev          C:\Windows\system32\drivers\errdev.sys
21:30:57.0889 3524  ErrDev - ok
21:30:57.0951 3524  [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem     C:\Windows\system32\es.dll
21:30:58.0029 3524  EventSystem - ok
21:30:58.0060 3524  [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat           C:\Windows\system32\drivers\exfat.sys
21:30:58.0138 3524  exfat - ok
21:30:58.0138 3524  [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat         C:\Windows\system32\drivers\fastfat.sys
21:30:58.0185 3524  fastfat - ok
21:30:58.0248 3524  [ D607B2F1BEE3992AA6C2C92C0A2F0855 ] Fax             C:\Windows\system32\fxssvc.exe
21:30:58.0294 3524  Fax - ok
21:30:58.0326 3524  [ D765D19CD8EF61F650C384F62FAC00AB ] fdc             C:\Windows\system32\drivers\fdc.sys
21:30:58.0341 3524  fdc - ok
21:30:58.0357 3524  [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost         C:\Windows\system32\fdPHost.dll
21:30:58.0404 3524  fdPHost - ok
21:30:58.0419 3524  [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub        C:\Windows\system32\fdrespub.dll
21:30:58.0450 3524  FDResPub - ok
21:30:58.0482 3524  [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
21:30:58.0513 3524  FileInfo - ok
21:30:58.0528 3524  [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
21:30:58.0622 3524  Filetrace - ok
21:30:58.0700 3524  [ ABEDFD48AC042C6AAAD32452E77217A1 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
21:30:58.0731 3524  FLEXnet Licensing Service - ok
21:30:58.0762 3524  [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk        C:\Windows\system32\drivers\flpydisk.sys
21:30:58.0778 3524  flpydisk - ok
21:30:58.0778 3524  [ F7866AF72ABBAF84B1FA5AA195378C59 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
21:30:58.0794 3524  FltMgr - ok
21:30:58.0856 3524  [ CB5E4B9C319E3C6BB363EB7E58A4A051 ] FontCache       C:\Windows\system32\FntCache.dll
21:30:58.0903 3524  FontCache - ok
21:30:58.0950 3524  [ 8D89E3131C27FDD6932189CB785E1B7A ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
21:30:58.0981 3524  FontCache3.0.0.0 - ok
21:30:58.0996 3524  [ D43703496149971890703B4B1B723EAC ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
21:30:59.0012 3524  FsDepends - ok
21:30:59.0043 3524  [ D3E3F93D67821A2DB2B3D9FAC2DC2064 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
21:30:59.0074 3524  Fs_Rec - ok
21:30:59.0090 3524  [ AE87BA80D0EC3B57126ED2CDC15B24ED ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
21:30:59.0121 3524  fvevol - ok
21:30:59.0152 3524  [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
21:30:59.0168 3524  gagp30kx - ok
21:30:59.0199 3524  [ FE5AB4525BC2EC68B9119A6E5D40128B ] gpsvc           C:\Windows\System32\gpsvc.dll
21:30:59.0277 3524  gpsvc - ok
21:30:59.0324 3524  [ F02A533F517EB38333CB12A9E8963773 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
21:30:59.0355 3524  gupdate - ok
21:30:59.0355 3524  [ F02A533F517EB38333CB12A9E8963773 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
21:30:59.0371 3524  gupdatem - ok
21:30:59.0386 3524  [ 5D4BC124FAAE6730AC002CDB67BF1A1C ] gusvc           C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
21:30:59.0386 3524  gusvc - ok
21:30:59.0418 3524  [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
21:30:59.0449 3524  hcw85cir - ok
21:30:59.0464 3524  [ 6410F6F415B2A5A9037224C41DA8BF12 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
21:30:59.0496 3524  HdAudAddService - ok
21:30:59.0527 3524  [ 0A49913402747A0B67DE940FB42CBDBB ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
21:30:59.0558 3524  HDAudBus - ok
21:30:59.0574 3524  [ B6AC71AAA2B10848F57FC49D55A651AF ] HECIx64         C:\Windows\system32\drivers\HECIx64.sys
21:30:59.0574 3524  HECIx64 - ok
21:30:59.0605 3524  [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt         C:\Windows\system32\drivers\HidBatt.sys
21:30:59.0636 3524  HidBatt - ok
21:30:59.0652 3524  [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
21:30:59.0683 3524  HidBth - ok
21:30:59.0698 3524  [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr           C:\Windows\system32\drivers\hidir.sys
21:30:59.0730 3524  HidIr - ok
21:30:59.0776 3524  [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv         C:\Windows\system32\hidserv.dll
21:30:59.0839 3524  hidserv - ok
21:30:59.0870 3524  [ B3BF6B5B50006DEF50B66306D99FCF6F ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
21:30:59.0901 3524  HidUsb - ok
21:30:59.0979 3524  [ A894FB2CAE6A29F5D9C8EDA47B074623 ] HipShieldK      C:\Windows\system32\drivers\HipShieldK.sys
21:31:00.0010 3524  HipShieldK - ok
21:31:00.0057 3524  [ EFA58EDE58DD74388FFD04CB32681518 ] hkmsvc          C:\Windows\system32\kmsvc.dll
21:31:00.0151 3524  hkmsvc - ok
21:31:00.0166 3524  [ 046B2673767CA626E2CFB7FDF735E9E8 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
21:31:00.0198 3524  HomeGroupListener - ok
21:31:00.0244 3524  [ 06A7422224D9865A5613710A089987DF ] HomeGroupProvider C:\Windows\system32\provsvc.dll
21:31:00.0291 3524  HomeGroupProvider - ok
21:31:00.0322 3524  [ 0886D440058F203EBA0E1825E4355914 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
21:31:00.0354 3524  HpSAMD - ok
21:31:00.0400 3524  [ CEE049CAC4EFA7F4E1E4AD014414A5D4 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
21:31:00.0447 3524  HTTP - ok
21:31:00.0463 3524  [ F17766A19145F111856378DF337A5D79 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
21:31:00.0478 3524  hwpolicy - ok
21:31:00.0494 3524  [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
21:31:00.0510 3524  i8042prt - ok
21:31:00.0541 3524  [ ABBF174CB394F5C437410A788B7E404A ] iaStor          C:\Windows\system32\drivers\iaStor.sys
21:31:00.0556 3524  iaStor - ok
21:31:00.0619 3524  [ 31A0E93CDF29007D6C6FFFB632F375ED ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
21:31:00.0634 3524  IAStorDataMgrSvc - ok
21:31:00.0681 3524  [ B75E45C564E944A2657167D197AB29DA ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
21:31:00.0712 3524  iaStorV - ok
21:31:00.0759 3524  [ 2F2BE70D3E02B6FA877921AB9516D43C ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
21:31:00.0806 3524  idsvc - ok
21:31:01.0009 3524  [ 2A22AB054F4630D2EF4BAB2853F6D5F6 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
21:31:01.0274 3524  igfx ( UnsignedFile.Multi.Generic ) - warning
21:31:01.0274 3524  igfx - detected UnsignedFile.Multi.Generic (1)
21:31:01.0305 3524  [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
21:31:01.0321 3524  iirsp - ok
21:31:01.0368 3524  [ C5B4683680DF085B57BC53E5EF34861F ] IKEEXT          C:\Windows\System32\ikeext.dll
21:31:01.0414 3524  IKEEXT - ok
21:31:01.0430 3524  [ DD587A55390ED2295BCE6D36AD567DA9 ] Impcd           C:\Windows\system32\drivers\Impcd.sys
21:31:01.0477 3524  Impcd - ok
21:31:01.0555 3524  [ 526E482AFB586CB1CDD687869DECF686 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
21:31:01.0633 3524  IntcAzAudAddService - ok
21:31:01.0664 3524  [ 58CF58DEE26C909BD6F977B61D246295 ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
21:31:01.0680 3524  IntcDAud ( UnsignedFile.Multi.Generic ) - warning
21:31:01.0680 3524  IntcDAud - detected UnsignedFile.Multi.Generic (1)
21:31:01.0726 3524  [ F00F20E70C6EC3AA366910083A0518AA ] intelide        C:\Windows\system32\drivers\intelide.sys
21:31:01.0742 3524  intelide - ok
21:31:01.0758 3524  [ ADA036632C664CAA754079041CF1F8C1 ] intelppm        C:\Windows\system32\drivers\intelppm.sys
21:31:01.0789 3524  intelppm - ok
21:31:01.0820 3524  [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
21:31:01.0898 3524  IPBusEnum - ok
21:31:01.0914 3524  [ 722DD294DF62483CECAAE6E094B4D695 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
21:31:01.0945 3524  IpFilterDriver - ok
21:31:01.0976 3524  [ E2B4A4494DB7CB9B89B55CA268C337C5 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
21:31:02.0023 3524  IPMIDRV - ok
21:31:02.0023 3524  [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
21:31:02.0070 3524  IPNAT - ok
21:31:02.0101 3524  [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM          C:\Windows\system32\drivers\irenum.sys
21:31:02.0116 3524  IRENUM - ok
21:31:02.0148 3524  [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
21:31:02.0148 3524  isapnp - ok
21:31:02.0179 3524  [ FA4D2557DE56D45B0A346F93564BE6E1 ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
21:31:02.0194 3524  iScsiPrt - ok
21:31:02.0226 3524  [ 213822072085B5BBAD9AF30AB577D817 ] IviRegMgr       C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
21:31:02.0241 3524  IviRegMgr - ok
21:31:02.0257 3524  [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass        C:\Windows\system32\drivers\kbdclass.sys
21:31:02.0272 3524  kbdclass - ok
21:31:02.0304 3524  [ 6DEF98F8541E1B5DCEB2C822A11F7323 ] kbdhid          C:\Windows\system32\drivers\kbdhid.sys
21:31:02.0335 3524  kbdhid - ok
21:31:02.0350 3524  [ 156F6159457D0AA7E59B62681B56EB90 ] KeyIso          C:\Windows\system32\lsass.exe
21:31:02.0382 3524  KeyIso - ok
21:31:02.0397 3524  [ 4F4B5FDE429416877DE7143044582EB5 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
21:31:02.0413 3524  KSecDD - ok
21:31:02.0444 3524  [ 6F40465A44ECDC1731BEFAFEC5BDD03C ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
21:31:02.0444 3524  KSecPkg - ok
21:31:02.0475 3524  [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
21:31:02.0522 3524  ksthunk - ok
21:31:02.0569 3524  [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm           C:\Windows\system32\msdtckrm.dll
21:31:02.0616 3524  KtmRm - ok
21:31:02.0647 3524  [ 81F1D04D4D0E433099365127375FD501 ] LanmanServer    C:\Windows\system32\srvsvc.dll
21:31:02.0678 3524  LanmanServer - ok
21:31:02.0709 3524  [ 27026EAC8818E8A6C00A1CAD2F11D29A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
21:31:02.0756 3524  LanmanWorkstation - ok
21:31:02.0818 3524  [ 7772DFAB22611050B79504E671B06E6E ] LBTServ         C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
21:31:02.0850 3524  LBTServ - ok
21:31:02.0881 3524  [ 241F2648ADF090E2A10095BD6D6F5DCB ] LHidFilt        C:\Windows\system32\DRIVERS\LHidFilt.Sys
21:31:02.0896 3524  LHidFilt - ok
21:31:02.0896 3524  [ 1538831CF8AD2979A04C423779465827 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
21:31:02.0943 3524  lltdio - ok
21:31:02.0974 3524  [ C1185803384AB3FEED115F79F109427F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
21:31:03.0037 3524  lltdsvc - ok
21:31:03.0068 3524  [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts         C:\Windows\System32\lmhsvc.dll
21:31:03.0099 3524  lmhosts - ok
21:31:03.0130 3524  [ 342ED5A4B3326014438F36D22D803737 ] LMouFilt        C:\Windows\system32\DRIVERS\LMouFilt.Sys
21:31:03.0146 3524  LMouFilt - ok
21:31:03.0193 3524  [ 3D23191672D83E90D1CF63927EE98136 ] LMS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
21:31:03.0208 3524  LMS - ok
21:31:03.0240 3524  [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
21:31:03.0255 3524  LSI_FC - ok
21:31:03.0286 3524  [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
21:31:03.0286 3524  LSI_SAS - ok
21:31:03.0333 3524  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
21:31:03.0364 3524  LSI_SAS2 - ok
21:31:03.0380 3524  [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
21:31:03.0396 3524  LSI_SCSI - ok
21:31:03.0411 3524  [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv           C:\Windows\system32\drivers\luafv.sys
21:31:03.0458 3524  luafv - ok
21:31:03.0474 3524  [ B9FC4CCE5758B816F27DD4D1EED11841 ] MBAMProtector   C:\Windows\system32\drivers\mbam.sys
21:31:03.0474 3524  MBAMProtector - ok
21:31:03.0942 3524  [ 0DCF16B1449811EFA47AB52CAC84093C ] MBAMScheduler   C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
21:31:03.0988 3524  MBAMScheduler - ok
21:31:04.0035 3524  [ 9EAABA4D601004BEA4DAA6E146E19A96 ] MBAMService     C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
21:31:04.0051 3524  MBAMService - ok
21:31:04.0129 3524  [ F928E5E72BBA15DD0CE9A26E0413D236 ] McAfee SiteAdvisor Service C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
21:31:04.0160 3524  McAfee SiteAdvisor Service - ok
21:31:04.0176 3524  [ F928E5E72BBA15DD0CE9A26E0413D236 ] McMPFSvc        C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
21:31:04.0191 3524  McMPFSvc - ok
21:31:04.0191 3524  [ F928E5E72BBA15DD0CE9A26E0413D236 ] mcmscsvc        C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
21:31:04.0207 3524  mcmscsvc - ok
21:31:04.0207 3524  [ F928E5E72BBA15DD0CE9A26E0413D236 ] McNaiAnn        C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
21:31:04.0222 3524  McNaiAnn - ok
21:31:04.0238 3524  [ F928E5E72BBA15DD0CE9A26E0413D236 ] McNASvc         C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
21:31:04.0254 3524  McNASvc - ok
21:31:04.0378 3524  [ BE7C8C3F8FE52D8F7826E14CF11DE949 ] McODS           C:\Program Files\mcafee\VirusScan\mcods.exe
21:31:04.0394 3524  McODS - ok
21:31:04.0410 3524  [ F928E5E72BBA15DD0CE9A26E0413D236 ] McOobeSv        C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
21:31:04.0425 3524  McOobeSv - ok
21:31:04.0425 3524  [ F928E5E72BBA15DD0CE9A26E0413D236 ] McProxy         C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
21:31:04.0441 3524  McProxy - ok
21:31:04.0488 3524  [ D4F9C8CE2D7D5B9A1F739AADEBFFCA6F ] McShield        C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
21:31:04.0503 3524  McShield - ok
21:31:04.0581 3524  [ F84C8F1000BC11E3B7B23CBD3BAFF111 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
21:31:04.0628 3524  Mcx2Svc - ok
21:31:04.0675 3524  [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas         C:\Windows\system32\drivers\megasas.sys
21:31:04.0690 3524  megasas - ok
21:31:04.0737 3524  [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR          C:\Windows\system32\drivers\MegaSR.sys
21:31:04.0784 3524  MegaSR - ok
21:31:04.0831 3524  [ C73B93FED17829F11273459DA05E1976 ] mfeapfk         C:\Windows\system32\drivers\mfeapfk.sys
21:31:04.0862 3524  mfeapfk - ok
21:31:04.0909 3524  [ 298C065BB9E09D5F14CCD9E8244DE4A0 ] mfeavfk         C:\Windows\system32\drivers\mfeavfk.sys
21:31:04.0940 3524  mfeavfk - ok
21:31:04.0956 3524  mfeavfk01 - ok
21:31:05.0002 3524  [ AB66AF840EF1667AA73DDA6CE987D0E1 ] mfefire         C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
21:31:05.0034 3524  mfefire - ok
21:31:05.0080 3524  [ 4D604F0B85E98C5AD99B89AF72A4E28A ] mfefirek        C:\Windows\system32\drivers\mfefirek.sys
21:31:05.0096 3524  mfefirek - ok
21:31:05.0127 3524  [ 85AFDEAD1366BED11A84A5C6FC0A65D2 ] mfehidk         C:\Windows\system32\drivers\mfehidk.sys
21:31:05.0158 3524  mfehidk - ok
21:31:05.0205 3524  [ 1B08579938FD72626D92F3C2219903EA ] mferkdet        C:\Windows\system32\drivers\mferkdet.sys
21:31:05.0221 3524  mferkdet - ok
21:31:05.0268 3524  [ 984BBBB9BE02EF838DABDF3F3126A91B ] mfevtp          C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
21:31:05.0299 3524  mfevtp - ok
21:31:05.0346 3524  [ 6251BE428073704FF1002231520C8F16 ] mfewfpk         C:\Windows\system32\drivers\mfewfpk.sys
21:31:05.0361 3524  mfewfpk - ok
21:31:05.0392 3524  [ E40E80D0304A73E8D269F7141D77250B ] MMCSS           C:\Windows\system32\mmcss.dll
21:31:05.0470 3524  MMCSS - ok
21:31:05.0502 3524  [ 800BA92F7010378B09F9ED9270F07137 ] Modem           C:\Windows\system32\drivers\modem.sys
21:31:05.0564 3524  Modem - ok
21:31:05.0580 3524  [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
21:31:05.0626 3524  monitor - ok
21:31:05.0673 3524  [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
21:31:05.0689 3524  mouclass - ok
21:31:05.0704 3524  [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
21:31:05.0736 3524  mouhid - ok
21:31:05.0767 3524  [ 791AF66C4D0E7C90A3646066386FB571 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
21:31:05.0782 3524  mountmgr - ok
21:31:05.0860 3524  [ 46297FA8E30A6007F14118FC2B942FBC ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
21:31:05.0892 3524  MozillaMaintenance - ok
21:31:05.0923 3524  [ 609D1D87649ECC19796F4D76D4C15CEA ] mpio            C:\Windows\system32\drivers\mpio.sys
21:31:05.0938 3524  mpio - ok
21:31:05.0985 3524  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
21:31:06.0016 3524  mpsdrv - ok
21:31:06.0048 3524  [ 30524261BB51D96D6FCBAC20C810183C ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
21:31:06.0079 3524  MRxDAV - ok
21:31:06.0094 3524  [ 040D62A9D8AD28922632137ACDD984F2 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
21:31:06.0110 3524  mrxsmb - ok
21:31:06.0172 3524  [ F0067552F8F9B33D7C59403AB808A3CB ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
21:31:06.0204 3524  mrxsmb10 - ok
21:31:06.0235 3524  [ 3C142D31DE9F2F193218A53FE2632051 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
21:31:06.0266 3524  mrxsmb20 - ok
21:31:06.0297 3524  [ 5C37497276E3B3A5488B23A326A754B7 ] msahci          C:\Windows\system32\drivers\msahci.sys
21:31:06.0313 3524  msahci - ok
21:31:06.0328 3524  [ 8D27B597229AED79430FB9DB3BCBFBD0 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
21:31:06.0344 3524  msdsm - ok
21:31:06.0375 3524  [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC           C:\Windows\System32\msdtc.exe
21:31:06.0406 3524  MSDTC - ok
21:31:06.0422 3524  [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
21:31:06.0453 3524  Msfs - ok
21:31:06.0484 3524  [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
21:31:06.0516 3524  mshidkmdf - ok
21:31:06.0531 3524  [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
21:31:06.0547 3524  msisadrv - ok
21:31:06.0578 3524  [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
21:31:06.0625 3524  MSiSCSI - ok
21:31:06.0625 3524  msiserver - ok
21:31:06.0672 3524  [ F928E5E72BBA15DD0CE9A26E0413D236 ] MSK80Service    C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
21:31:06.0687 3524  MSK80Service - ok
21:31:06.0703 3524  [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
21:31:06.0734 3524  MSKSSRV - ok
21:31:06.0750 3524  [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
21:31:06.0796 3524  MSPCLOCK - ok
21:31:06.0812 3524  [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
21:31:06.0859 3524  MSPQM - ok
21:31:06.0890 3524  [ 89CB141AA8616D8C6A4610FA26C60964 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
21:31:06.0921 3524  MsRPC - ok
21:31:06.0952 3524  [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
21:31:06.0952 3524  mssmbios - ok
21:31:06.0984 3524  [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
21:31:07.0030 3524  MSTEE - ok
21:31:07.0046 3524  [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig        C:\Windows\system32\drivers\MTConfig.sys
21:31:07.0093 3524  MTConfig - ok
21:31:07.0124 3524  [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup             C:\Windows\system32\Drivers\mup.sys
21:31:07.0140 3524  Mup - ok
21:31:07.0171 3524  [ 4987E079A4530FA737A128BE54B63B12 ] napagent        C:\Windows\system32\qagentRT.dll
21:31:07.0233 3524  napagent - ok
21:31:07.0264 3524  [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
21:31:07.0296 3524  NativeWifiP - ok
21:31:07.0342 3524  [ CAD515DBD07D082BB317D9928CE8962C ] NDIS            C:\Windows\system32\drivers\ndis.sys
21:31:07.0374 3524  NDIS - ok
21:31:07.0405 3524  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
21:31:07.0436 3524  NdisCap - ok
21:31:07.0452 3524  [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
21:31:07.0498 3524  NdisTapi - ok
21:31:07.0530 3524  [ F105BA1E22BF1F2EE8F005D4305E4BEC ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
21:31:07.0608 3524  Ndisuio - ok
21:31:07.0623 3524  [ 557DFAB9CA1FCB036AC77564C010DAD3 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
21:31:07.0654 3524  NdisWan - ok
21:31:07.0670 3524  [ 659B74FB74B86228D6338D643CD3E3CF ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
21:31:07.0717 3524  NDProxy - ok
21:31:07.0717 3524  [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
21:31:07.0764 3524  NetBIOS - ok
21:31:07.0779 3524  [ 9162B273A44AB9DCE5B44362731D062A ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
21:31:07.0842 3524  NetBT - ok
21:31:07.0857 3524  [ 156F6159457D0AA7E59B62681B56EB90 ] Netlogon        C:\Windows\system32\lsass.exe
21:31:07.0873 3524  Netlogon - ok
21:31:07.0920 3524  [ 847D3AE376C0817161A14A82C8922A9E ] Netman          C:\Windows\System32\netman.dll
21:31:07.0966 3524  Netman - ok
21:31:07.0982 3524  [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm        C:\Windows\System32\netprofm.dll
21:31:08.0029 3524  netprofm - ok
21:31:08.0076 3524  [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:31:08.0091 3524  NetTcpPortSharing - ok
21:31:08.0138 3524  [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
21:31:08.0154 3524  nfrd960 - ok
21:31:08.0185 3524  [ D9A0CE66046D6EFA0C61BAA885CBA0A8 ] NlaSvc          C:\Windows\System32\nlasvc.dll
21:31:08.0294 3524  NlaSvc - ok
21:31:08.0325 3524  [ 903681BAB213D5F84717C0FC42AFB28A ] nmwcd           C:\Windows\system32\drivers\ccdcmbx64.sys
21:31:08.0372 3524  nmwcd - ok
21:31:08.0403 3524  [ EC4C5EBD003E0395BF4EA5A2EFD13CE6 ] nmwcdc          C:\Windows\system32\drivers\ccdcmbox64.sys
21:31:08.0419 3524  nmwcdc - ok
21:31:08.0544 3524  [ 5839A8027D6D324A7CD494051A96628C ] NOBU            C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
21:31:08.0622 3524  NOBU - ok
21:31:08.0668 3524  [ 1ACF98D80E95ADD298832C7A8996B48C ] nosGetPlusHelper C:\Program Files (x86)\NOS\bin\getPlus_Helper_3004.dll
21:31:08.0684 3524  nosGetPlusHelper - ok
21:31:08.0715 3524  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
21:31:08.0793 3524  Npfs - ok
21:31:08.0824 3524  [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi             C:\Windows\system32\nsisvc.dll
21:31:08.0871 3524  nsi - ok
21:31:08.0887 3524  [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
21:31:08.0934 3524  nsiproxy - ok
21:31:09.0027 3524  [ 184C189D4FC416978550FC599BB4EDDA ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
21:31:09.0105 3524  Ntfs - ok
21:31:09.0136 3524  [ 9899284589F75FA8724FF3D16AED75C1 ] Null            C:\Windows\system32\drivers\Null.sys
21:31:09.0168 3524  Null - ok
21:31:09.0214 3524  [ A4D9C9A608A97F59307C2F2600EDC6A4 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
21:31:09.0230 3524  nvraid - ok
21:31:09.0277 3524  [ 6C1D5F70E7A6A3FD1C90D840EDC048B9 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
21:31:09.0308 3524  nvstor - ok
21:31:09.0339 3524  [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
21:31:09.0355 3524  nv_agp - ok
21:31:09.0370 3524  [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
21:31:09.0386 3524  ohci1394 - ok
21:31:09.0433 3524  [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
21:31:09.0464 3524  ose - ok
21:31:09.0651 3524  [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
21:31:09.0823 3524  osppsvc - ok
21:31:09.0854 3524  [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
21:31:09.0885 3524  p2pimsvc - ok
21:31:09.0916 3524  [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc          C:\Windows\system32\p2psvc.dll
21:31:09.0948 3524  p2psvc - ok
21:31:09.0963 3524  [ 0086431C29C35BE1DBC43F52CC273887 ] Parport         C:\Windows\system32\drivers\parport.sys
21:31:09.0979 3524  Parport - ok
21:31:10.0010 3524  [ 90061B1ACFE8CCAA5345750FFE08D8B8 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
21:31:10.0041 3524  partmgr - ok
21:31:10.0041 3524  [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc          C:\Windows\System32\pcasvc.dll
21:31:10.0088 3524  PcaSvc - ok
21:31:10.0119 3524  [ BC0018C2D29F655188A0ED3FA94FDB24 ] pccsmcfd        C:\Windows\system32\DRIVERS\pccsmcfdx64.sys
21:31:10.0150 3524  pccsmcfd - ok
21:31:10.0166 3524  [ F36F6504009F2FB0DFD1B17A116AD74B ] pci             C:\Windows\system32\drivers\pci.sys
21:31:10.0182 3524  pci - ok
21:31:10.0213 3524  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide          C:\Windows\system32\drivers\pciide.sys
21:31:10.0244 3524  pciide - ok
21:31:10.0275 3524  [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
21:31:10.0291 3524  pcmcia - ok
21:31:10.0306 3524  [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw             C:\Windows\system32\drivers\pcw.sys
21:31:10.0322 3524  pcw - ok
21:31:10.0353 3524  [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
21:31:10.0416 3524  PEAUTH - ok
21:31:12.0303 3524  [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost        C:\Windows\SysWow64\perfhost.exe
21:31:12.0334 3524  PerfHost - ok
21:31:12.0506 3524  [ 557E9A86F65F0DE18C9B6751DFE9D3F1 ] pla             C:\Windows\system32\pla.dll
21:31:12.0600 3524  pla - ok
21:31:12.0678 3524  [ 98B1721B8718164293B9701B98C52D77 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
21:31:12.0724 3524  PlugPlay - ok
21:31:12.0865 3524  [ E9605A180001A6B5551112D91DE92CA1 ] PMBDeviceInfoProvider C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe
21:31:12.0912 3524  PMBDeviceInfoProvider - ok
21:31:12.0943 3524  [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
21:31:12.0974 3524  PNRPAutoReg - ok
21:31:13.0005 3524  [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
21:31:13.0021 3524  PNRPsvc - ok
21:31:13.0068 3524  [ 166EB40D1F5B47E615DE3D0FFFE5F243 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
21:31:13.0114 3524  PolicyAgent - ok
21:31:13.0161 3524  [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power           C:\Windows\system32\umpo.dll
21:31:13.0224 3524  Power - ok
21:31:13.0270 3524  [ 27CC19E81BA5E3403C48302127BDA717 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
21:31:13.0333 3524  PptpMiniport - ok
21:31:13.0364 3524  [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor       C:\Windows\system32\drivers\processr.sys
21:31:13.0395 3524  Processor - ok
21:31:13.0442 3524  [ 97293447431311C06703368AD0F6C4BE ] ProfSvc         C:\Windows\system32\profsvc.dll
21:31:13.0473 3524  ProfSvc - ok
21:31:13.0504 3524  [ 156F6159457D0AA7E59B62681B56EB90 ] ProtectedStorage C:\Windows\system32\lsass.exe
21:31:13.0520 3524  ProtectedStorage - ok
21:31:13.0551 3524  [ EE992183BD8EAEFD9973F352E587A299 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
21:31:13.0598 3524  Psched - ok
21:31:13.0629 3524  [ A6A7AD767BF5141665F5C675F671B3E1 ] PSI_SVC_2       C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
21:31:13.0660 3524  PSI_SVC_2 - ok
21:31:13.0692 3524  [ FBF4DB6D53585437E41A113300002A2B ] PxHlpa64        C:\Windows\system32\Drivers\PxHlpa64.sys
21:31:13.0707 3524  PxHlpa64 - ok
21:31:13.0754 3524  [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300          C:\Windows\system32\drivers\ql2300.sys
21:31:13.0801 3524  ql2300 - ok
21:31:13.0848 3524  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
21:31:13.0863 3524  ql40xx - ok
21:31:13.0894 3524  [ 906191634E99AEA92C4816150BDA3732 ] QWAVE           C:\Windows\system32\qwave.dll
21:31:13.0910 3524  QWAVE - ok
21:31:13.0941 3524  [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
21:31:14.0004 3524  QWAVEdrv - ok
21:31:14.0019 3524  [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
21:31:14.0050 3524  RasAcd - ok
21:31:14.0066 3524  [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
21:31:14.0113 3524  RasAgileVpn - ok
21:31:14.0128 3524  [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto         C:\Windows\System32\rasauto.dll
21:31:14.0191 3524  RasAuto - ok
21:31:14.0191 3524  [ 87A6E852A22991580D6D39ADC4790463 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
21:31:14.0238 3524  Rasl2tp - ok
21:31:14.0269 3524  [ 47394ED3D16D053F5906EFE5AB51CC83 ] RasMan          C:\Windows\System32\rasmans.dll
21:31:14.0347 3524  RasMan - ok
21:31:14.0347 3524  [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
21:31:14.0394 3524  RasPppoe - ok
21:31:14.0425 3524  [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
21:31:14.0472 3524  RasSstp - ok
21:31:14.0487 3524  [ 3BAC8142102C15D59A87757C1D41DCE5 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
21:31:14.0534 3524  rdbss - ok
21:31:14.0565 3524  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus          C:\Windows\system32\drivers\rdpbus.sys
21:31:14.0612 3524  rdpbus - ok
21:31:14.0643 3524  [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
21:31:14.0690 3524  RDPCDD - ok
21:31:14.0706 3524  [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
21:31:14.0768 3524  RDPENCDD - ok
21:31:14.0768 3524  [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
21:31:14.0815 3524  RDPREFMP - ok
21:31:14.0846 3524  [ 447DE7E3DEA39D422C1504F245B668B1 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
21:31:14.0877 3524  RDPWD - ok
21:31:14.0908 3524  [ E5DC9BA9E439D6DBDD79F8CAACB5BF01 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
21:31:14.0924 3524  rdyboost - ok
21:31:14.0955 3524  [ 4D9AFDDDA0EFE97CDBFD3B5FA48B05F6 ] regi            C:\Windows\system32\drivers\regi.sys
21:31:14.0955 3524  regi - ok
21:31:15.0018 3524  [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess    C:\Windows\System32\mprdim.dll
21:31:15.0080 3524  RemoteAccess - ok
21:31:15.0111 3524  [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
21:31:15.0158 3524  RemoteRegistry - ok
21:31:15.0205 3524  [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM          C:\Windows\system32\DRIVERS\rfcomm.sys
21:31:15.0252 3524  RFCOMM - ok
21:31:15.0283 3524  [ FA6ABC06B629DA29634D31F1FE0347BD ] rimspci         C:\Windows\system32\drivers\rimssne64.sys
21:31:15.0298 3524  rimspci - ok
21:31:15.0345 3524  [ 71700B4C5797DA5412E9250E26894586 ] RimUsb          C:\Windows\system32\Drivers\RimUsb_AMD64.sys
21:31:15.0361 3524  RimUsb - ok
21:31:15.0423 3524  [ C903D49655B4AAE46673F0AAA6BE0F58 ] RimVSerPort     C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys
21:31:15.0454 3524  RimVSerPort - ok
21:31:15.0517 3524  [ 8F8539A7F5C117D4407B2985995671F2 ] risdsnpe        C:\Windows\system32\drivers\risdsne64.sys
21:31:15.0548 3524  risdsnpe - ok
21:31:15.0579 3524  [ 388D3DD1A6457280F3BADBA9F3ACD6B1 ] ROOTMODEM       C:\Windows\system32\Drivers\RootMdm.sys
21:31:15.0657 3524  ROOTMODEM - ok
21:31:15.0688 3524  [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
21:31:15.0735 3524  RpcEptMapper - ok
21:31:15.0766 3524  [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator      C:\Windows\system32\locator.exe
21:31:15.0782 3524  RpcLocator - ok
21:31:15.0798 3524  [ 7266972E86890E2B30C0C322E906B027 ] RpcSs           C:\Windows\system32\rpcss.dll
21:31:15.0844 3524  RpcSs - ok
21:31:15.0860 3524  [ DDC86E4F8E7456261E637E3552E804FF ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
21:31:15.0907 3524  rspndr - ok
21:31:15.0954 3524  [ D6D381B76056C668679723938F06F16C ] RTHDMIAzAudService C:\Windows\system32\drivers\RtHDMIVX.sys
21:31:15.0985 3524  RTHDMIAzAudService - ok
21:31:16.0000 3524  [ 156F6159457D0AA7E59B62681B56EB90 ] SamSs           C:\Windows\system32\lsass.exe
21:31:16.0016 3524  SamSs - ok
21:31:16.0047 3524  [ E3BBB89983DAF5622C1D50CF49F28227 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
21:31:16.0063 3524  sbp2port - ok
21:31:16.0094 3524  [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr        C:\Windows\System32\SCardSvr.dll
21:31:16.0125 3524  SCardSvr - ok
21:31:16.0141 3524  [ C94DA20C7E3BA1DCA269BC8460D98387 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
21:31:16.0188 3524  scfilter - ok
21:31:16.0266 3524  [ 624D0F5FF99428BB90A5B8A4123E918E ] Schedule        C:\Windows\system32\schedsvc.dll
21:31:16.0328 3524  Schedule - ok
21:31:16.0359 3524  [ 312E2F82AF11E79906898AC3E3D58A1F ] SCPolicySvc     C:\Windows\System32\certprop.dll
21:31:16.0390 3524  SCPolicySvc - ok
21:31:16.0422 3524  [ 2C8D162EFAF73ABD36D8BCBB6340CAE7 ] sdbus           C:\Windows\system32\DRIVERS\sdbus.sys
21:31:16.0453 3524  sdbus - ok
21:31:16.0484 3524  [ 765A27C3279CE11D14CB9E4F5869FCA5 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
21:31:16.0531 3524  SDRSVC - ok
21:31:16.0546 3524  [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
21:31:16.0593 3524  secdrv - ok
21:31:16.0624 3524  [ 463B386EBC70F98DA5DFF85F7E654346 ] seclogon        C:\Windows\system32\seclogon.dll
21:31:16.0671 3524  seclogon - ok
21:31:16.0702 3524  [ C32AB8FA018EF34C0F113BD501436D21 ] SENS            C:\Windows\System32\sens.dll
21:31:16.0734 3524  SENS - ok
21:31:16.0749 3524  [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
21:31:16.0780 3524  SensrSvc - ok
21:31:16.0812 3524  [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum         C:\Windows\system32\drivers\serenum.sys
21:31:16.0858 3524  Serenum - ok
21:31:16.0890 3524  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial          C:\Windows\system32\drivers\serial.sys
21:31:16.0905 3524  Serial - ok
21:31:16.0936 3524  [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse        C:\Windows\system32\drivers\sermouse.sys
21:31:16.0968 3524  sermouse - ok
21:31:17.0046 3524  [ 12B41D84A4D058ADC60853C365DBFCCA ] ServiceLayer    C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
21:31:17.0092 3524  ServiceLayer ( UnsignedFile.Multi.Generic ) - warning
21:31:17.0092 3524  ServiceLayer - detected UnsignedFile.Multi.Generic (1)
21:31:17.0155 3524  [ C3BC61CE47FF6F4E88AB8A3B429A36AF ] SessionEnv      C:\Windows\system32\sessenv.dll
21:31:17.0202 3524  SessionEnv - ok
21:31:17.0233 3524  [ 286D3889E6AB5589646FF8A63CB928AE ] SFEP            C:\Windows\system32\drivers\SFEP.sys
21:31:17.0248 3524  SFEP - ok
21:31:17.0280 3524  [ A554811BCD09279536440C964AE35BBF ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
21:31:17.0295 3524  sffdisk - ok
21:31:17.0342 3524  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
21:31:17.0358 3524  sffp_mmc - ok
21:31:17.0389 3524  [ 178298F767FE638C9FEDCBDEF58BB5E4 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
21:31:17.0420 3524  sffp_sd - ok
21:31:17.0467 3524  [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
21:31:17.0482 3524  sfloppy - ok
21:31:17.0545 3524  [ 0298AC45D0EFFFB2DB4BAA7DD186E7BF ] ShellHWDetection C:\Windows\System32\shsvcs.dll
21:31:17.0638 3524  ShellHWDetection - ok
21:31:17.0670 3524  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
21:31:17.0685 3524  SiSRaid2 - ok
21:31:17.0716 3524  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
21:31:17.0732 3524  SiSRaid4 - ok
21:31:17.0810 3524  [ F07AF60B152221472FBDB2FECEC4896D ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
21:31:17.0826 3524  SkypeUpdate - ok
21:31:17.0841 3524  [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
21:31:17.0904 3524  Smb - ok
21:31:17.0935 3524  [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
21:31:17.0982 3524  SNMPTRAP - ok
21:31:18.0044 3524  [ C3E69DB0A4E59564230E053232F39AC7 ] SOHCImp         C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
21:31:18.0060 3524  SOHCImp - ok
21:31:18.0091 3524  [ 65CC4779A29C3E82B987BD4961790DFF ] SOHDms          C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
21:31:18.0106 3524  SOHDms - ok
21:31:18.0122 3524  [ F47D75CEE1844EEF4A9EA6EE768828FB ] SOHDs           C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
21:31:18.0138 3524  SOHDs - ok
21:31:18.0216 3524  [ 65E5659E9C2A0762D05657C0E22A7CA2 ] SpfService      C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
21:31:18.0247 3524  SpfService - ok
21:31:18.0278 3524  [ B9E31E5CACDFE584F34F730A677803F9 ] spldr           C:\Windows\system32\drivers\spldr.sys
21:31:18.0294 3524  spldr - ok
21:31:18.0325 3524  [ 567977DC43CC13C4C35ED7084C0B84D5 ] Spooler         C:\Windows\System32\spoolsv.exe
21:31:18.0340 3524  Spooler - ok
21:31:18.0465 3524  [ 913D843498553A1BC8F8DBAD6358E49F ] sppsvc          C:\Windows\system32\sppsvc.exe
21:31:18.0543 3524  sppsvc - ok
21:31:18.0590 3524  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
21:31:18.0621 3524  sppuinotify - ok
21:31:18.0668 3524  [ 2408C0366D96BCDF63E8F1C78E4A29C5 ] srv             C:\Windows\system32\DRIVERS\srv.sys
21:31:18.0699 3524  srv - ok
21:31:18.0730 3524  [ 76548F7B818881B47D8D1AE1BE9C11F8 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
21:31:18.0746 3524  srv2 - ok
21:31:18.0777 3524  [ 0AF6E19D39C70844C5CAA8FB0183C36E ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
21:31:18.0808 3524  srvnet - ok
21:31:18.0840 3524  [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
21:31:18.0886 3524  SSDPSRV - ok
21:31:18.0902 3524  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc         C:\Windows\system32\sstpsvc.dll
21:31:18.0933 3524  SstpSvc - ok
21:31:18.0980 3524  [ F3817967ED533D08327DC73BC4D5542A ] stexstor        C:\Windows\system32\drivers\stexstor.sys
21:31:18.0996 3524  stexstor - ok
21:31:19.0074 3524  [ 52D0E33B681BD0F33FDC08812FEE4F7D ] stisvc          C:\Windows\System32\wiaservc.dll
21:31:19.0120 3524  stisvc - ok
21:31:19.0136 3524  [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum          C:\Windows\system32\drivers\swenum.sys
21:31:19.0152 3524  swenum - ok
21:31:19.0183 3524  [ E08E46FDD841B7184194011CA1955A0B ] swprv           C:\Windows\System32\swprv.dll
21:31:19.0230 3524  swprv - ok
21:31:19.0276 3524  [ 3C1284516A62078FB68F768DE4F1A7BE ] SysMain         C:\Windows\system32\sysmain.dll
21:31:19.0308 3524  SysMain - ok
21:31:19.0339 3524  [ 238935C3CF2854886DC7CBB2A0E2CC66 ] TabletInputService C:\Windows\System32\TabSvc.dll
21:31:19.0370 3524  TabletInputService - ok
21:31:19.0401 3524  [ 884264AC597B690C5707C89723BB8E7B ] TapiSrv         C:\Windows\System32\tapisrv.dll
21:31:19.0448 3524  TapiSrv - ok
21:31:19.0464 3524  [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS             C:\Windows\System32\tbssvc.dll
21:31:19.0495 3524  TBS - ok
21:31:19.0573 3524  [ 624C5B3AA4C99B3184BB922D9ECE3FF0 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
21:31:19.0635 3524  Tcpip - ok
21:31:19.0682 3524  [ 624C5B3AA4C99B3184BB922D9ECE3FF0 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
21:31:19.0713 3524  TCPIP6 - ok
21:31:19.0760 3524  [ 76D078AF6F587B162D50210F761EB9ED ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
21:31:19.0807 3524  tcpipreg - ok
21:31:19.0822 3524  [ 3371D21011695B16333A3934340C4E7C ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
21:31:19.0854 3524  TDPIPE - ok
21:31:19.0900 3524  [ 7518F7BCFD4B308ABC9192BACAF6C970 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
21:31:19.0916 3524  TDTCP - ok
21:31:19.0947 3524  [ 079125C4B17B01FCAEEBCE0BCB290C0F ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
21:31:19.0994 3524  tdx - ok
21:31:20.0041 3524  [ C448651339196C0E869A355171875522 ] TermDD          C:\Windows\system32\drivers\termdd.sys
21:31:20.0041 3524  TermDD - ok
21:31:20.0088 3524  [ 0F05EC2887BFE197AD82A13287D2F404 ] TermService     C:\Windows\System32\termsrv.dll
21:31:20.0150 3524  TermService - ok
21:31:20.0150 3524  [ F0344071948D1A1FA732231785A0664C ] Themes          C:\Windows\system32\themeservice.dll
21:31:20.0166 3524  Themes - ok
21:31:20.0212 3524  [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER     C:\Windows\system32\mmcss.dll
21:31:20.0259 3524  THREADORDER - ok
21:31:20.0275 3524  [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks          C:\Windows\System32\trkwks.dll
21:31:20.0322 3524  TrkWks - ok
21:31:20.0384 3524  [ 840F7FB849F5887A49BA18C13B2DA920 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
21:31:20.0415 3524  TrustedInstaller - ok
21:31:20.0478 3524  [ 61B96C26131E37B24E93327A0BD1FB95 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
21:31:20.0540 3524  tssecsrv - ok
21:31:20.0649 3524  [ 811A229718C85356BC81EB20F35EB7F6 ] TuneUp.UtilitiesSvc C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe
21:31:20.0696 3524  TuneUp.UtilitiesSvc - ok
21:31:20.0743 3524  [ DCC94C51D27C7EC0DADECA8F64C94FCF ] TuneUpUtilitiesDrv C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys
21:31:20.0743 3524  TuneUpUtilitiesDrv - ok
21:31:20.0774 3524  [ 3836171A2CDF3AF8EF10856DB9835A70 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
21:31:20.0821 3524  tunnel - ok
21:31:20.0836 3524  [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
21:31:20.0852 3524  uagp35 - ok
21:31:20.0899 3524  [ 63F6D08C54D5B3C1B12A6172032055C7 ] uCamMonitor     C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
21:31:20.0899 3524  uCamMonitor - ok
21:31:20.0930 3524  [ 0E5E962B5649D544BE54E8C90761EA2B ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
21:31:20.0961 3524  udfs - ok
21:31:21.0008 3524  [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
21:31:21.0024 3524  UI0Detect - ok
21:31:21.0055 3524  [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
21:31:21.0055 3524  uliagpkx - ok
21:31:21.0086 3524  [ EAB6C35E62B1B0DB0D1B48B671D3A117 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
21:31:21.0102 3524  umbus - ok
21:31:21.0133 3524  [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass          C:\Windows\system32\drivers\umpass.sys
21:31:21.0148 3524  UmPass - ok
21:31:21.0258 3524  [ 11A559E0F10CC5E788984023DF400A6F ] UNS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
21:31:21.0304 3524  UNS - ok
21:31:21.0351 3524  [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost        C:\Windows\System32\upnphost.dll
21:31:21.0398 3524  upnphost - ok
21:31:21.0445 3524  [ 7168819F30FE9622284EA19BDE7F8AB4 ] upperdev        C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys
21:31:21.0476 3524  upperdev - ok
21:31:21.0523 3524  [ 7B6A127C93EE590E4D79A5F2A76FE46F ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
21:31:21.0554 3524  usbccgp - ok
21:31:21.0585 3524  [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
21:31:21.0616 3524  usbcir - ok
21:31:21.0663 3524  [ 92969BA5AC44E229C55A332864F79677 ] usbehci         C:\Windows\system32\drivers\usbehci.sys
21:31:21.0679 3524  usbehci - ok
21:31:21.0694 3524  [ E7DF1CFD28CA86B35EF5ADD0735CEEF3 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
21:31:21.0741 3524  usbhub - ok
21:31:21.0772 3524  [ F1BB1E55F1E7A65C5839CCC7B36D773E ] usbohci         C:\Windows\system32\drivers\usbohci.sys
21:31:21.0788 3524  usbohci - ok
21:31:21.0819 3524  [ 73188F58FB384E75C4063D29413CEE3D ] usbprint        C:\Windows\system32\drivers\usbprint.sys
21:31:21.0866 3524  usbprint - ok
21:31:21.0913 3524  [ 0F0C72A657C622286013788B886968AD ] usbser          C:\Windows\system32\drivers\usbser.sys
21:31:21.0928 3524  usbser - ok
21:31:21.0960 3524  [ 66C25CB20B2974E0C0CFDAB49FB72A02 ] UsbserFilt      C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys
21:31:22.0006 3524  UsbserFilt - ok
21:31:22.0053 3524  [ F39983647BC1F3E6100778DDFE9DCE29 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
21:31:22.0084 3524  USBSTOR - ok
21:31:22.0131 3524  [ BC3070350A491D84B518D7CCA9ABD36F ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
21:31:22.0162 3524  usbuhci - ok
21:31:22.0209 3524  [ 7CB8C573C6E4A2714402CC0A36EAB4FE ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
21:31:22.0225 3524  usbvideo - ok
21:31:22.0256 3524  [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms           C:\Windows\System32\uxsms.dll
21:31:22.0303 3524  UxSms - ok
21:31:22.0350 3524  [ 5BF180F7F7C2F68ED6D5777840270BCE ] UxTuneUp        C:\Windows\System32\uxtuneup.dll
21:31:22.0365 3524  UxTuneUp - ok
21:31:22.0412 3524  [ A60605FC66552B421EE1F3D4EBB9A4E0 ] VAIO Event Service C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
21:31:22.0428 3524  VAIO Event Service - ok
21:31:22.0490 3524  [ D469BE2723F79CF4B384680B1FDC577D ] VAIO Power Management C:\Program Files\Sony\VAIO Power Management\SPMService.exe
21:31:22.0521 3524  VAIO Power Management - ok
21:31:22.0537 3524  [ 156F6159457D0AA7E59B62681B56EB90 ] VaultSvc        C:\Windows\system32\lsass.exe
21:31:22.0552 3524  VaultSvc - ok
21:31:22.0646 3524  [ D00058C1FFF3F3DE990444A5734E9639 ] VCFw            C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
21:31:22.0693 3524  VCFw - ok
21:31:22.0786 3524  [ F19275655B42086C884ABCDAE2C659AE ] VcmIAlzMgr      C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
21:31:22.0818 3524  VcmIAlzMgr - ok
21:31:22.0880 3524  [ CBB9F0D1017E0BED4CB5BBC0EBF26DC1 ] VcmINSMgr       C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe
21:31:22.0927 3524  VcmINSMgr - ok
21:31:22.0989 3524  [ 32A3735F6874B7783C6209ED5CA36D9D ] VcmXmlIfHelper  C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe
21:31:23.0005 3524  VcmXmlIfHelper - ok
21:31:23.0067 3524  [ D347D3ABE070AA09C22FC37121555D52 ] VCService       C:\Program Files\Sony\VAIO Care\VCService.exe
21:31:23.0083 3524  VCService - ok
21:31:23.0130 3524  [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
21:31:23.0145 3524  vdrvroot - ok
21:31:23.0192 3524  [ 44D73E0BBC1D3C8981304BA15135C2F2 ] vds             C:\Windows\System32\vds.exe
21:31:23.0208 3524  vds - ok
21:31:23.0254 3524  [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
21:31:23.0270 3524  vga - ok
21:31:23.0301 3524  [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave         C:\Windows\System32\drivers\vga.sys
21:31:23.0348 3524  VgaSave - ok
21:31:23.0379 3524  [ C82E748660F62A242B2DFAC1442F22A4 ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
21:31:23.0395 3524  vhdmp - ok
21:31:23.0426 3524  [ E5689D93FFE4E5D66C0178761240DD54 ] viaide          C:\Windows\system32\drivers\viaide.sys
21:31:23.0442 3524  viaide - ok
21:31:23.0442 3524  [ 2B1A3DAE2B4E70DBBA822B7A03FBD4A3 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
21:31:23.0457 3524  volmgr - ok
21:31:23.0473 3524  [ 99B0CBB569CA79ACAED8C91461D765FB ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
21:31:23.0504 3524  volmgrx - ok
21:31:23.0535 3524  [ 58F82EED8CA24B461441F9C3E4F0BF5C ] volsnap         C:\Windows\system32\drivers\volsnap.sys
21:31:23.0551 3524  volsnap - ok
21:31:23.0566 3524  [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
21:31:23.0598 3524  vsmraid - ok
21:31:23.0676 3524  [ A7EB62C664A03901165290A714BD48D0 ] VSNService      C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
21:31:23.0722 3524  VSNService ( UnsignedFile.Multi.Generic ) - warning
21:31:23.0722 3524  VSNService - detected UnsignedFile.Multi.Generic (1)
21:31:23.0800 3524  [ 787898BF9FB6D7BD87A36E2D95C899BA ] VSS             C:\Windows\system32\vssvc.exe
21:31:23.0863 3524  VSS - ok
21:31:23.0956 3524  [ FB4A1695D2D74F9C92CA5E84795CDBE1 ] VUAgent         C:\Program Files\Sony\VAIO Update Common\VUAgent.exe
21:31:23.0988 3524  VUAgent - ok
21:31:24.0034 3524  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
21:31:24.0050 3524  vwifibus - ok
21:31:24.0066 3524  [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
21:31:24.0081 3524  vwififlt - ok
21:31:24.0097 3524  [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
21:31:24.0128 3524  vwifimp - ok
21:31:24.0159 3524  [ 1C9D80CC3849B3788048078C26486E1A ] W32Time         C:\Windows\system32\w32time.dll
21:31:24.0206 3524  W32Time - ok
21:31:24.0253 3524  [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
21:31:24.0284 3524  WacomPen - ok
21:31:24.0284 3524  [ 47CA49400643EFFD3F1C9A27E1D69324 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
21:31:24.0331 3524  WANARP - ok
21:31:24.0346 3524  [ 47CA49400643EFFD3F1C9A27E1D69324 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
21:31:24.0378 3524  Wanarpv6 - ok
21:31:24.0424 3524  [ 5AB1BB85BD8B5089CC5D64200DEDAE68 ] wbengine        C:\Windows\system32\wbengine.exe
21:31:24.0471 3524  wbengine - ok
21:31:24.0502 3524  [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
21:31:24.0518 3524  WbioSrvc - ok
21:31:24.0565 3524  [ DD1BAE8EBFC653824D29CCF8C9054D68 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
21:31:24.0596 3524  wcncsvc - ok
21:31:24.0643 3524  [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
21:31:24.0658 3524  WcsPlugInService - ok
21:31:24.0690 3524  [ 72889E16FF12BA0F235467D6091B17DC ] Wd              C:\Windows\system32\drivers\wd.sys
21:31:24.0705 3524  Wd - ok
21:31:24.0752 3524  [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
21:31:24.0799 3524  Wdf01000 - ok
21:31:24.0830 3524  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost  C:\Windows\system32\wdi.dll
21:31:24.0861 3524  WdiServiceHost - ok
21:31:24.0861 3524  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost   C:\Windows\system32\wdi.dll
21:31:24.0892 3524  WdiSystemHost - ok
21:31:24.0924 3524  [ 733006127F235BE7C35354EBEE7B9A7B ] WebClient       C:\Windows\System32\webclnt.dll
21:31:24.0939 3524  WebClient - ok
21:31:24.0970 3524  [ C749025A679C5103E575E3B48E092C43 ] Wecsvc          C:\Windows\system32\wecsvc.dll
21:31:25.0002 3524  Wecsvc - ok
21:31:25.0017 3524  [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
21:31:25.0064 3524  wercplsupport - ok
21:31:25.0080 3524  [ 6D137963730144698CBD10F202E9F251 ] WerSvc          C:\Windows\System32\WerSvc.dll
21:31:25.0111 3524  WerSvc - ok
21:31:25.0142 3524  [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
21:31:25.0173 3524  WfpLwf - ok
21:31:25.0204 3524  [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
21:31:25.0220 3524  WIMMount - ok
21:31:25.0236 3524  WinHttpAutoProxySvc - ok
21:31:25.0282 3524  [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
21:31:25.0392 3524  Winmgmt - ok
21:31:25.0470 3524  [ 41FBB751936B387F9179E7F03A74FE29 ] WinRM           C:\Windows\system32\WsmSvc.dll
21:31:25.0563 3524  WinRM - ok
21:31:25.0610 3524  [ 817EAFF5D38674EDD7713B9DFB8E9791 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
21:31:25.0641 3524  WinUsb - ok
21:31:25.0672 3524  [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc         C:\Windows\System32\wlansvc.dll
21:31:25.0704 3524  Wlansvc - ok
21:31:25.0735 3524  [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
21:31:25.0750 3524  WmiAcpi - ok
21:31:25.0797 3524  [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
21:31:25.0844 3524  wmiApSrv - ok
21:31:25.0875 3524  WMPNetworkSvc - ok
21:31:25.0906 3524  [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
21:31:25.0922 3524  WPCSvc - ok
21:31:25.0938 3524  [ 2E57DDF2880A7E52E76F41C7E96D327B ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
21:31:25.0953 3524  WPDBusEnum - ok
21:31:25.0984 3524  [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
21:31:26.0031 3524  ws2ifsl - ok
21:31:26.0031 3524  WSearch - ok
21:31:26.0281 3524  [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv        C:\Windows\system32\wuaueng.dll
21:31:26.0343 3524  wuauserv - ok
21:31:26.0374 3524  [ 7CADC74271DD6461C452C271B30BD378 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
21:31:26.0421 3524  WudfPf - ok
21:31:26.0452 3524  [ 3B197AF0FFF08AA66B6B2241CA538D64 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
21:31:26.0499 3524  WUDFRd - ok
21:31:26.0530 3524  [ B551D6637AA0E132C18AC6E504F7B79B ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
21:31:26.0577 3524  wudfsvc - ok
21:31:26.0655 3524  [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc         C:\Windows\System32\wwansvc.dll
21:31:26.0702 3524  WwanSvc - ok
21:31:26.0811 3524  [ 5250193EF8E173AA7491250F00EB367F ] yukonw7         C:\Windows\system32\DRIVERS\yk62x64.sys
21:31:26.0827 3524  yukonw7 - ok
21:31:26.0858 3524  ================ Scan global ===============================
21:31:26.0920 3524  [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
21:31:26.0967 3524  [ 79CDA06F75AD5373DD447F57575C4400 ] C:\Windows\system32\winsrv.dll
21:31:26.0983 3524  [ 79CDA06F75AD5373DD447F57575C4400 ] C:\Windows\system32\winsrv.dll
21:31:27.0014 3524  [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
21:31:27.0030 3524  [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
21:31:27.0030 3524  [Global] - ok
21:31:27.0045 3524  ================ Scan MBR ==================================
21:31:27.0045 3524  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
21:31:27.0451 3524  \Device\Harddisk0\DR0 - ok
21:31:27.0451 3524  ================ Scan VBR ==================================
21:31:27.0498 3524  [ AFB50AC67B2958360CAE28BAC7BD7F1B ] \Device\Harddisk0\DR0\Partition1
21:31:27.0498 3524  \Device\Harddisk0\DR0\Partition1 - ok
21:31:27.0498 3524  [ 8A6DC18BA0564A73262625F882328FAE ] \Device\Harddisk0\DR0\Partition2
21:31:27.0513 3524  \Device\Harddisk0\DR0\Partition2 - ok
21:31:27.0513 3524  ============================================================
21:31:27.0513 3524  Scan finished
21:31:27.0513 3524  ============================================================
21:31:27.0529 3452  Detected object count: 4
21:31:27.0529 3452  Actual detected object count: 4
21:31:42.0208 3452  igfx ( UnsignedFile.Multi.Generic ) - skipped by user
21:31:42.0208 3452  igfx ( UnsignedFile.Multi.Generic ) - User select action: Skip 
21:31:42.0208 3452  IntcDAud ( UnsignedFile.Multi.Generic ) - skipped by user
21:31:42.0208 3452  IntcDAud ( UnsignedFile.Multi.Generic ) - User select action: Skip 
21:31:42.0208 3452  ServiceLayer ( UnsignedFile.Multi.Generic ) - skipped by user
21:31:42.0208 3452  ServiceLayer ( UnsignedFile.Multi.Generic ) - User select action: Skip 
21:31:42.0208 3452  VSNService ( UnsignedFile.Multi.Generic ) - skipped by user
21:31:42.0208 3452  VSNService ( UnsignedFile.Multi.Generic ) - User select action: Skip
         
Gruß
Heike

Alt 17.10.2012, 21:17   #23
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Standard

Trojan.RedirRdll2.Gen und Macaffe Firewall stopt



Dann bitte jetzt CF ausführen:

ComboFix

Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Schliesse alle Programme, vor allem dein Antivirenprogramm und andere Hintergrundwächter sowie deinen Internetbrowser.
  • Starte combofix.exe von deinem Desktop aus, bestätige die Warnmeldungen, führe die Updates durch (falls vorgeschlagen), installiere die Wiederherstellungskonsole (falls vorgeschlagen) und lass dein System durchsuchen.
    Vermeide es auch während Combofix läuft die Maus und Tastatur zu benutzen.
  • Im Anschluss öffnet sich automatisch eine combofix.txt, diesen Inhalt bitte kopieren ([Strg]a, [Strg]c) und in deinen Beitrag einfügen ([Strg]v). Die Datei findest du außerdem unter: C:\ComboFix.txt.
Wichtiger Hinweis:
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!

Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich ziehen und eine Bereinigung der Infektion noch erschweren.

Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie

Zitat:
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
startest du Windows dann manuell neu und die Fehlermeldungen sollten nicht mehr auftauchen.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 17.10.2012, 23:36   #24
ebb8924
 
Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Standard

Trojan.RedirRdll2.Gen und Macaffe Firewall stopt



Hallo Cosinus, hier das logfile gezippt:
Gruß
Heike

Alt 18.10.2012, 09:58   #25
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Standard

Trojan.RedirRdll2.Gen und Macaffe Firewall stopt



Bitte nun Logs mit GMER und OSAM erstellen und posten.
GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen.
Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst.

Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM!

Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe - (aswMBR.exe Anleitung)
    Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten".
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen )
    Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS-Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort.

Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung

Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none).



Noch ein Hinweis: Sollte aswMBR abstürzen und es kommt eine Meldung wie "aswMBR.exe funktioniert nicht mehr, dann mach Folgendes:
Starte aswMBR neu, wähle unten links im Drop-Down-Menü (unten links im Fenster von aswMBR) bei "AV scan" (none) aus und klick nochmal auf den Scan-Button.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 18.10.2012, 18:56   #26
ebb8924
 
Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Standard

Trojan.RedirRdll2.Gen und Macaffe Firewall stopt



Hallo Cosinus,
hier ist die gmer-Datei:
[code]
GMER Logfile:
Code:
ATTFilter
GMER 1.0.15.15641 - hxxp://www.gmer.net
Rootkit scan 2012-10-18 19:53:06
Windows 6.1.7600  
Running: gr9iys5y.exe


---- Registry - GMER 1.0.15 ----

Reg  HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\0c6076a27abb                      
Reg  HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\c0cb38f22e71                      
Reg  HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\c0cb38f22e71@001f20239153         0x00 0x8B 0x39 0xDE ...
Reg  HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\f07bcbe77cb4                      
Reg  HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\0c6076a27abb (not active ControlSet)  
Reg  HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\c0cb38f22e71 (not active ControlSet)  
Reg  HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\c0cb38f22e71@001f20239153             0x00 0x8B 0x39 0xDE ...
Reg  HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\f07bcbe77cb4 (not active ControlSet)  

---- EOF - GMER 1.0.15 ----
         
--- --- ---

Als nächstes mache ich osam
Gruß
Heike

Hallo Cosinus,
hier ist da Osam-file:
Code:
ATTFilter
OSAM Logfile:
Code:
ATTFilter
Report of OSAM: Autorun Manager v5.0.11926.0
hxxp://www.online-solutions.ru/en/
Saved at 20:04:21 on 18.10.2012

OS: Windows 7 Home Premium Edition (Build 7600), 64-bit
Default Browser: Microsoft Corporation Internet Explorer 9.00.8112.16421

Scanner Settings
[x] Rootkits detection (hidden registry)
[x] Rootkits detection (hidden files)
[x] Retrieve files information
[x] Check Microsoft signatures

Filters
[ ] Trusted entries
[ ] Empty entries
[x] Hidden registry entries (rootkit activity)
[x] Exclusively opened files
[x] Not found files
[x] Files without detailed information
[x] Existing files
[ ] Non-startable services
[ ] Non-startable drivers
[x] Active entries
[x] Disabled entries


[Control Panel Objects]
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )-----
"NokiaConnectionManager" - "Nokia" - C:\PROGRA~2\Nokia\NOKIAP~1\CONNEC~1.CPL
"QuickTime" - "Apple Inc." - C:\Program Files (x86)\QuickTime\QTSystem\QuickTime.cpl

[Drivers]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"catchme" (catchme) - ? - C:\ComboFix\catchme.sys  (File not found)
"igfx" (igfx) - "Intel Corporation" - C:\Windows\System32\DRIVERS\igdkmd64.sys
"Intel(R) Display Audio" (IntcDAud) - "Intel(R) Corporation" - C:\Windows\System32\DRIVERS\IntcDAud.sys
"MBAMProtector" (MBAMProtector) - "Malwarebytes Corporation" - C:\Windows\system32\drivers\mbam.sys
"McAfee Inc." (mfeavfk01) - ? - C:\Windows\system32\drivers\mfeavfk01.sys  (File not found)
"PxHlpa64" (PxHlpa64) - "Sonic Solutions" - C:\Windows\System32\Drivers\PxHlpa64.sys
"regi" (regi) - "InterVideo" - C:\Windows\system32\drivers\regi.sys
"TuneUpUtilitiesDrv" (TuneUpUtilitiesDrv) - "TuneUp Software" - C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys

[Explorer]
-----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )-----
{F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll
-----( HKLM\Software\Classes\Protocols\Filter )-----
{3EF5086B-5478-4598-A054-786C45D75692} "McInternetProtocolRoot Class" - "McAfee, Inc." - c:\progra~2\mcafee\msc\mcsniepl.dll
{807573E5-5146-11D5-A672-00B0D022E945} "Microsoft Office InfoPath XML Mime Filter" - "Microsoft Corporation" - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
-----( HKLM\Software\Classes\Protocols\Handler )-----
{314111c7-a502-11d2-bbca-00c04f8ec294} "HxProtocol Class" - "Microsoft Corporation" - C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll
{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} "IEProtocolHandler Class" - "Skype Technologies" - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
{828030A1-22C1-4009-854F-8E305202313F} "livecall" - "Microsoft Corporation" - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
{5513F07E-936B-4E52-9B00-067394E91CC5} "McAfee SACore Protocol Handler" - "McAfee, Inc." - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
{5513F07E-936B-4E52-9B00-067394E91CC5} "McAfee SACore Protocol Handler" - "McAfee, Inc." - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
{828030A1-22C1-4009-854F-8E305202313F} "msnim" - "Microsoft Corporation" - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
{03C514A3-1EFB-4856-9F99-10D7BE1653C0} "Windows Live Mail HTML Asynchronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{5E2121EE-0300-11D4-8D3B-444553540000} "Catalyst Context Menu extension" - ? -   (File not found | COM-object registry key not found)
{D66DC78C-4F61-447F-942B-3FB6980118CF} "CInfoTipShellExt Class" - "Microsoft Corporation" - C:\Program Files (x86)\Microsoft Office\Office14\VISSHE.DLL
{0563DB41-F538-4B37-A92D-4659049B7766} "CLSID_WLMCMimeFilter" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll
{506F4668-F13E-4AA1-BB04-B43203AB3CC0} "ImageExtractorShellExt Class" - "Microsoft Corporation" - C:\Program Files (x86)\Microsoft Office\Office14\VISSHE.DLL
{42042206-2D85-11D3-8CFF-005004838597} "Microsoft Office HTML Icon Handler" - "Microsoft Corporation" - C:\Program Files (x86)\Microsoft Office\Office14\msohevi.dll
{993BE281-6695-4BA5-8A2A-7AACBFAAB69E} "Microsoft Office Metadata Handler" - "Microsoft Corporation" - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\msoshext.dll
{C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} "Microsoft Office Thumbnail Handler" - "Microsoft Corporation" - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\msoshext.dll
{0875DCB6-C686-4243-9432-ADCCF0B9F2D7} "Microsoft OneNote Namespace Extension for Windows Desktop Search" - "Microsoft Corporation" - C:\Program Files (x86)\Microsoft Office\Office14\ONFILTER.DLL
{416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A} "Nokia Phone Browser" - "Nokia" - C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
{4838CD50-7E5D-4811-9B17-C47A85539F28} "TuneUp Disk Space Explorer Shell Extension" - "TuneUp Software" - C:\Program Files (x86)\TuneUp Utilities 2012\DseShExt-x86.dll
{4858E7D9-8E12-45a3-B6A3-1CD128C9D403} "TuneUp Shredder Shell Extension" - "TuneUp Software" - C:\Program Files (x86)\TuneUp Utilities 2012\SDShelEx-win32.dll
{E6FB5E20-DE35-11CF-9C87-00AA005127ED} "WebCheck" - ? -   (File not found | COM-object registry key not found)
{2BE99FD4-A181-4996-BFA9-58C5FFD11F6C} "Windows Live Photo Gallery Autoplay Drop Target" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F30F64-AC33-42F5-8FD1-5DC2D3FDE06C} "Windows Live Photo Gallery Editor Drop Target" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F3712A-CA79-45B4-9E4D-D7891E7F8B9D} "Windows Live Photo Gallery Editor Shim" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F30F90-3E96-453B-AFCD-D71989ECC2C7} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F33137-EE26-412F-8D71-F84E4C2C6625} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F374B7-B390-4884-B372-2FC349F2172B} "Windows Live Photo Gallery Viewer Drop Target" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F346CB-35A4-465B-8B8F-65A29DBAB1F6} "Windows Live Photo Gallery Viewer Shim" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll
{06A2568A-CED6-4187-BB20-400B8C02BE5A} "{06A2568A-CED6-4187-BB20-400B8C02BE5A}" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad )-----
{E6FB5E20-DE35-11CF-9C87-00AA005127ED} "WebCheck" - ? -   (File not found | COM-object registry key not found)

[Internet Explorer]
-----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )-----
<binary data> "Google Toolbar" - "Google Inc." - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
ITBar7Height "ITBar7Height" - ? -   (File not found | COM-object registry key not found)
ITBar7Height64 "ITBar7Height64" - ? -   (File not found | COM-object registry key not found)
<binary data> "ITBar7Layout" - ? -   (File not found | COM-object registry key not found)
<binary data> "ITBar7Layout64" - ? -   (File not found | COM-object registry key not found)
<binary data> "{2015C8D4-8534-48DB-B5FB-5C76291F080C}" - ? -   (File not found | COM-object registry key not found)
-----( HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks )-----
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} "McAfee SiteAdvisor Toolbar" - "McAfee, Inc." - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
-----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )-----
{E2883E8F-472F-4FB0-9522-AC9BF37916A7} "get_atlcom Class" - "NOS Microsystems Ltd." - C:\Windows\Downloaded Program Files\gp.ocx / hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} "Java Plug-in 1.6.0_33" - "Oracle Corporation" - C:\Program Files (x86)\Java\jre7\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
{8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 10.5.0" - "Oracle Corporation" - C:\Program Files (x86)\Java\jre7\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 10.5.0" - "Oracle Corporation" - C:\Program Files (x86)\Java\jre7\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
{02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} "QuickTime Object" - "Apple Inc." - C:\Program Files (x86)\QuickTime\QTPlugin.ocx / hxxp://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )-----
{BC0E0A5D-AB5A-4fa4-A5FA-280E1D58EEEE} "Add to Evernote" - "Evernote Corporation" - C:\Program Files (x86)\Evernote\Evernote3.5\enbar.dll
{48E73304-E1D6-4330-914C-F5F514E3486C} "An OneNote senden" - "Microsoft Corporation" - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
{5F7B1267-94A9-47F5-98DB-E99415F33AEC} "In Blog veröffentlichen" - "Microsoft Corporation" - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
{FFFDC614-B694-4AE6-AB38-5D6374584B52} "Verknüpfte &OneNote-Notizen" - "Microsoft Corporation" - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar )-----
<binary data> "Google Toolbar" - "Google Inc." - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} "McAfee SiteAdvisor Toolbar" - "McAfee, Inc." - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )-----
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper" - "Adobe Systems Incorporated" - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
{AA58ED58-01DD-4d91-8333-CF10577473F7} "Google Toolbar Helper" - "Google Inc." - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
{DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Oracle Corporation" - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} "Java(tm) Plug-In SSV Helper" - "Oracle Corporation" - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
{27B4851A-3207-45A2-B947-BE8AFE6163AB} "McAfee Phishing Filter" - ? - c:\progra~1\mcafee\msk\mskapbho.dll
{B164E929-A1B6-4A06-B104-2CD0E90A88FF} "McAfee SiteAdvisor BHO" - "McAfee, Inc." - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
{B4F3A835-0E21-4959-BA22-42B3008E02FF} "Office Document Cache Handler" - "Microsoft Corporation" - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
{7DB2D5A0-7241-4E79-B68D-6309F01C5231} "scriptproxy" - "McAfee, Inc." - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120627200458.dll
{9030D464-4C02-4ABF-8ECC-5164760863C6} "Windows Live Anmelde-Hilfsprogramm" - "Microsoft Corporation" - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

[Logon]
-----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )-----
"CAHeadless" - "Adobe Systems Incorporated" - C:\Program Files (x86)\Adobe\Elements Organizer 8.0\CAHeadless\ElementsAutoAnalyzer.exe                                                                                                                                                                                  
"Elbserver" - ? - C:\Program Files (x86)\Sony\Media Gallery\ElbServer.exe /Stay
"swg" - "Google Inc." - "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
-----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )-----
"StartupPrograms" - ? - rdpclip  (File not found)
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )-----
"APSDaemon" - "Apple Inc." - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
"EMET Notifier" - "Microsoft Corporation" - C:\Program Files (x86)\EMET\EMET_notifier.exe
"IAStorIcon" - "Intel Corporation" - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
"mcui_exe" - "McAfee, Inc." - "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
"NokiaMServer" - "Nokia" - C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
"Norton Online Backup" - "Symantec Corporation" - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe                                                                                                                                                                                                      
"NSU_agent" - ? - "C:\Program Files (x86)\Nokia\Nokia Software Updater\nsu3ui_agent.exe"  (File found, but it contains no detailed information)
"PMBVolumeWatcher" - "Sony Corporation" - C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe
"SHTtray.exe" - "Sony Corporation" - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SHTtray.exe
"StartCCC" - "Advanced Micro Devices, Inc." - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

[Print Monitors]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors )-----
"doPDF 7 Monitor" - "Softland" - C:\Windows\system32\dopdfmn7.dll

[Services]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"@%ProgramFiles%\Windows Defender\MsMpRes.dll,-103" (WinDefend) - ? - C:\Program Files (x86)\Windows Defender\mpsvc.dll  (File not found)
"@%SystemRoot%\System32\uxtuneup.dll,-4096" (UxTuneUp) - "TuneUp Software" - C:\Windows\System32\uxtuneup.dll
"Adobe Acrobat Update Service" (AdobeARMservice) - "Adobe Systems Incorporated" - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
"Adobe Flash Player Update Service" (AdobeFlashPlayerUpdateSvc) - "Adobe Systems Incorporated" - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
"ArcSoft Connect Daemon" (ACDaemon) - "ArcSoft Inc." - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
"Bluetooth Service" (btwdins) - "Broadcom Corporation." - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
"CamMonitor" (uCamMonitor) - "ArcSoft, Inc." - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
"FLEXnet Licensing Service" (FLEXnet Licensing Service) - "Acresso Software Inc." - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
"getPlus(R) Helper 3004" (nosGetPlusHelper) - "NOS Microsystems Ltd." - C:\Program Files (x86)\NOS\bin\getPlus_Helper_3004.dll
"Google Software Updater" (gusvc) - "Google" - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
"Google Update Service (gupdate)" (gupdate) - "Google Inc." - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
"Google Update-Dienst (gupdatem)" (gupdatem) - "Google Inc." - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
"Intel(R) Management & Security Application User Notification Service" (UNS) - "Intel Corporation" - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
"Intel(R) Management and Security Application Local Management Service" (LMS) - "Intel Corporation" - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
"Intel(R) Rapid Storage Technology" (IAStorDataMgrSvc) - "Intel Corporation" - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
"IviRegMgr" (IviRegMgr) - "InterVideo" - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
"Logitech Bluetooth Service" (LBTServ) - "Logitech, Inc." - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
"MBAMScheduler" (MBAMScheduler) - "Malwarebytes Corporation" - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
"MBAMService" (MBAMService) - "Malwarebytes Corporation" - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
"McAfee Anti-Spam Service" (MSK80Service) - "McAfee, Inc." - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
"McAfee Application Installer Cleanup (0289411350573602)" (0289411350573602mcinstcleanup) - "McAfee, Inc." - C:\Windows\TEMP\028941~1.EXE
"McAfee Firewall Core Service" (mfefire) - "McAfee, Inc." - C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
"McAfee McShield" (McShield) - "McAfee, Inc." - C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
"McAfee Network Agent" (McNASvc) - "McAfee, Inc." - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
"McAfee Personal Firewall Service" (McMPFSvc) - "McAfee, Inc." - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
"McAfee Proxy Service" (McProxy) - "McAfee, Inc." - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
"McAfee Scanner" (McODS) - "McAfee, Inc." - C:\Program Files\mcafee\VirusScan\mcods.exe
"McAfee Services" (mcmscsvc) - "McAfee, Inc." - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
"McAfee SiteAdvisor Service" (McAfee SiteAdvisor Service) - "McAfee, Inc." - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
"McAfee Validation Trust Protection Service" (mfevtp) - "McAfee, Inc." - C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
"McAfee VirusScan Announcer" (McNaiAnn) - "McAfee, Inc." - C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe
"Microsoft .NET Framework NGEN v4.0.30319_X64" (clr_optimization_v4.0.30319_64) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
"Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
"Mozilla Maintenance Service" (MozillaMaintenance) - "Mozilla Foundation" - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
"Office  Source Engine" (ose) - "Microsoft Corporation" - C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
"Office Software Protection Platform" (osppsvc) - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
"PMBDeviceInfoProvider" (PMBDeviceInfoProvider) - "Sony Corporation" - C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe
"Protexis Licensing V2" (PSI_SVC_2) - "Protexis Inc." - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
"ServiceLayer" (ServiceLayer) - "Nokia" - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
"Skype Updater" (SkypeUpdate) - "Skype Technologies" - C:\Program Files (x86)\Skype\Updater\Updater.exe
"TuneUp Utilities Service" (TuneUp.UtilitiesSvc) - "TuneUp Software" - C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe
"VAIO Care Performance Service" (SampleCollector) - "Sony Corporation" - C:\Program Files\Sony\VAIO Care\VCPerfService.exe
"VAIO Content Folder Watcher" (VCFw) - "Sony Corporation" - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
"VAIO Content Metadata Intelligent Analyzing Manager" (VcmIAlzMgr) - "Sony Corporation" - C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
"VAIO Content Metadata Intelligent Network Service Manager" (VcmINSMgr) - "Sony Corporation" - C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe
"VAIO Content Metadata XML Interface" (VcmXmlIfHelper) - "Sony Corporation" - C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe
"VAIO Entertainment Common Service" (SpfService) - "Sony Corporation" - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
"VAIO Event Service" (VAIO Event Service) - "Sony Corporation" - C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
"VAIO Media plus Content Importer" (SOHCImp) - "Sony Corporation" - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
"VAIO Media plus Device Searcher" (SOHDs) - "Sony Corporation" - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
"VAIO Media plus Digital Media Server" (SOHDms) - "Sony Corporation" - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
"VAIO Power Management" (VAIO Power Management) - "Sony Corporation" - C:\Program Files\Sony\VAIO Power Management\SPMService.exe
"VCService" (VCService) - "Sony Corporation" - C:\Program Files\Sony\VAIO Care\VCService.exe
"VSNService" (VSNService) - "Sony Corporation" - C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
"VUAgent" (VUAgent) - "Sony Corporation" - C:\Program Files\Sony\VAIO Update Common\VUAgent.exe

[Winlogon]
-----( HKCU\Control Panel\Desktop )-----
"SCRNSAVE.EXE" - ? - C:\PROGRA~2\OBERON~2\116906~1\FISHDO~1.SCR  (File not found)

===[ Logfile end ]=========================================[ Logfile end ]===
         
--- --- --- If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru
Gruß
Heike

Hallo Cosinus,
hier die letzte Datei:
Code:
ATTFilter
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-10-18 20:23:15
-----------------------------
20:23:15.975    OS Version: Windows x64 6.1.7600 
20:23:15.975    Number of processors: 4 586 0x2505
20:23:15.975    ComputerName: MUEMMEL  UserName: 
20:23:17.332    Initialize success
20:23:23.292    AVAST engine defs: 12101801
20:23:48.938    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
20:23:48.954    Disk 0 Vendor: SAMSUNG_ 2AC1 Size: 476940MB BusType: 3
20:23:48.954    Disk 0 MBR read successfully
20:23:48.969    Disk 0 MBR scan
20:23:48.969    Disk 0 Windows 7 default MBR code
20:23:48.985    Disk 0 Partition 1 00     27 Hidden NTFS WinRE NTFS        13756 MB offset 2048
20:23:49.000    Disk 0 Partition 2 80 (A) 07    HPFS/NTFS NTFS          100 MB offset 28174336
20:23:49.016    Disk 0 Partition 3 00     07    HPFS/NTFS NTFS       463082 MB offset 28379136
20:23:49.063    Disk 0 scanning C:\Windows\system32\drivers
20:24:02.073    Service scanning
20:24:29.326    Modules scanning
20:24:29.342    Disk 0 trace - called modules:
20:24:29.389    ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys iaStor.sys hal.dll 
20:24:29.389    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80063b3060]
20:24:29.404    3 CLASSPNP.SYS[fffff8800100143f] -> nt!IofCallDriver -> [0xfffffa8004327a90]
20:24:29.420    5 ACPI.sys[fffff88000f2a781] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa800432d050]
20:24:29.420    Scan finished successfully
20:24:46.471    Disk 0 MBR has been saved successfully to "C:\Users\Heike und Achim\Desktop\MBR.dat"
20:24:46.471    The log file has been saved successfully to "C:\Users\Heike und Achim\Desktop\aswMBR.txt"
         
Ich hoffe ja, dass jetzt soweit alles okay ist.
Gruß
Heike

Alt 18.10.2012, 20:45   #27
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Standard

Trojan.RedirRdll2.Gen und Macaffe Firewall stopt



Sieht ok aus. Wir sollten fast durch sein. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SUPERAntiSpyware und poste die Logs.
Denk dran beide Tools zu updaten vor dem Scan!!
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 18.10.2012, 20:46   #28
ebb8924
 
Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Standard

Trojan.RedirRdll2.Gen und Macaffe Firewall stopt



Hallo Cosinus, es funktioniert fast alls wieder.
Mein Lautsprechersymbol ist verschwunden und das Wartungscentersymbol ist weg und läßt sich auch nicht aktivieren (grau). Der Lautsprecher funktioniert und das Wartungscenter habe ich in der Systemsteuerung auch entdeckt, aber für den Lautsprecher hätte ich schon gern das Symbol in der Leiste zum Einstellen. An den Scans bin ich dran. Malwarebytes läuft gerade.
Gruß
Heike

Hi Cosinus,
hier das Malwarebyte-Log:
Code:
ATTFilter
Malwarebytes Anti-Malware 1.65.0.1400
www.malwarebytes.org

Datenbank Version: v2012.10.16.11

Windows 7 x64 NTFS
Internet Explorer 9.0.8112.16421
Heike und Achim :: MUEMMEL [Administrator]

18.10.2012 21:49:17
mbam-log-2012-10-18 (21-49-17).txt

Art des Suchlaufs: Vollständiger Suchlauf (C:\|)
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 487506
Laufzeit: 3 Stunde(n), 56 Minute(n), 59 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 1
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGalleryRepair.exe (Trojan.Inject) -> Erfolgreich gelöscht und in Quarantäne gestellt.

(Ende)
         
Oh Gott, was ist das? Jetzt mache ich noch den 2. Scan.
Ich hatte so gehofft, dass ich jetzt Vierenfrei bin.
Gruß
Heike

Code:
ATTFilter
SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com

Generated 10/19/2012 at 06:57 AM

Application Version : 5.6.1012

Core Rules Database Version : 9435
Trace Rules Database Version: 7247

Scan type       : Complete Scan
Total Scan Time : 03:56:14

Operating System Information
Windows 7 Home Premium 64-bit (Build 6.01.7600)
UAC On - Limited User

Memory items scanned      : 940
Memory threats detected   : 0
Registry items scanned    : 75534
Registry threats detected : 0
File items scanned        : 239761
File threats detected     : 691

Adware.Tracking Cookie
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\H9XUXM1J.txt [ /ad4.adfarm1.adition.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\7IYURCNE.txt [ /px.steelhousemedia.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\EG27J9V1.txt [ /lucidmedia.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\OIHOGK7N.txt [ /zanox-affiliate.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\EP1PDCW3.txt [ /fastclick.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\271CBLWA.txt [ /ad.zanox.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\X0MR3C7J.txt [ /adserver.adtechus.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\KAUODSP4.txt [ /ww251.smartadserver.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\LOW7DY8D.txt [ /adserver.psinternet.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\AJPK8M8R.txt [ /invitemedia.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\GFH09FA1.txt [ /bs.serving-sys.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\1PVZQHYX.txt [ /www.etracker.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\P0G9ZX89.txt [ /ad.dyntracker.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\BYEU6G6Q.txt [ /media.gan-online.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\KOE6V10V.txt [ /harrenmedianetwork.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\1VIASSV3.txt [ /track.adform.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\WWF6VC4B.txt [ /adx.chip.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\9LXTDJZ5.txt [ /adxpose.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\C8SR76SW.txt [ /ad.yieldmanager.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\QXUQS1FL.txt [ /track.effiliation.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\R399DSVJ.txt [ /revsci.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\F3AJFSFO.txt [ /tribalfusion.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\PL8AS0QD.txt [ /tradedoubler.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\5YJY83JW.txt [ /clickfuse.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\5280TGKE.txt [ /serving-sys.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\JBDWDLKX.txt [ /im.banner.t-online.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\35GEP53I.txt [ /statcounter.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\6THAMFK2.txt [ /zanox.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\5G8XPOUW.txt [ /apmebf.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\0E0UC85Z.txt [ /server.lon.liveperson.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\2K2URJL8.txt [ /atdmt.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\YF9LTA1U.txt [ /doubleclick.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\GBBVR02X.txt [ /in.getclicky.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\2LA4YZAX.txt [ /unitymedia.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\N3Z1HS4N.txt [ /adviva.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\9X043WG6.txt [ /webmasterplan.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\49B6W5XG.txt [ /questionmarket.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\CQFRCQ62.txt [ /de.sitestat.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\JTUH0IXL.txt [ /amazon-adsystem.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\SYJZGI7Z.txt [ /adform.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\V5M6E0RT.txt [ /ad.123-template.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\A41P0CBH.txt [ /ads.pubmatic.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\845BVCAM.txt [ /ad3.adfarm1.adition.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\VHMLMS91.txt [ /smartadserver.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\CYBZ97T6.txt [ /ads.ad4game.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\C1KYRKBH.txt [ /partners.webmasterplan.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\CECYLKT1.txt [ /2o7.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\2WO4O6YL.txt [ /adfarm1.adition.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\H4RAG0AX.txt [ /ad.adc-serv.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\DF241G2Z.txt [ /fr.sitestat.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\RI0EVL6W.txt [ /advertising.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\4GNRN53R.txt [ /specificclick.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\R7TJGS02.txt [ /adserver.zenoviaexchange.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\0R9NW01S.txt [ /ad2.adfarm1.adition.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\LZVZBYML.txt [ /ru4.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\U0XVCD1T.txt [ /trackingpixel.bigpoint.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\4NEY2K7H.txt [ /ads.creative-serving.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\7O4MZRT2.txt [ /ad.ad-srv.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\XTX5WF6H.txt [ /tracking.mindshare.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\YSJBKCG3.txt [ /adtech.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\S595TX2G.txt [ /adbrite.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\GNF8KTO2.txt [ /www.usenext.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\5SUL413E.txt [ /ads.advrtice.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\WWWHADTH.txt [ /tomtailor.dyntracker.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\7971GO5S.txt [ /de.sitestat.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\KOHHR4HL.txt [ /casalemedia.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\K877Z38Z.txt [ /traffictrack.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\94A2GXEI.txt [ /mediapartners.bigpoint.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\3T8WIARQ.txt [ /ad1.adfarm1.adition.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\33AAAOU3.txt [ /media6degrees.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\O0EY3DWM.txt [ /eas.apm.emediate.eu ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\33F5U6SN.txt [ /server.adform.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\12LHFWC1.txt [ /stat.dealtime.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\RHN8JG1R.txt [ /www.active-tracking.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\6RZ1CUAJ.txt [ /mediaplex.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\SEHQZXND.txt [ /xiti.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\PUNM2RKG.txt [ /liveperson.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\36CQMISQ.txt [ /statse.webtrendslive.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\ZDEX2ZXO.txt [ /tracking.quisma.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\WLV8CMQM.txt [ /ad.360yield.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\WKXL0FI4.txt [ /steelhousemedia.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\CIL2RNFT.txt [ /imrworldwide.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\G1G405HF.txt [ /quartermedia.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\K1572LD0.txt [ /adserving.avazudsp.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\VV5LF7OK.txt [ /yieldmanager.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\UXBXVBA7.txt [ /1click-downloader.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\YTR5HVI3.txt [ /www.googleadservices.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\DMPQPS1N.txt [ /microsoftsto.112.2o7.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\Z4WM6UAI.txt [ /tracking.s24.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\MPL6OT1V.txt [ /c1.atdmt.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\82POUJNK.txt [ /ads.bleepingcomputer.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\R15N93VY.txt [ /www.googleadservices.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\M4W1JSY0.txt [ /at.atwola.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\LW6D6PMD.txt [ /fr.sitestat.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\KMCB4NJU.txt [ /bizrate.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\CMIP5CP8.txt [ /ads.immobilienscout24.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\07DYEN7X.txt [ /track.zalando.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\IBL9IP8H.txt [ /www.googleadservices.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\65D4U7LE.txt [ /tradetracker.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\Q80Y389Z.txt [ /dealtime.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\2X3RYJ6S.txt [ /zedo.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\Z95C6WOY.txt [ /server.adformdsp.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\JHRMPV29.txt [ /www.googleadservices.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\8X0ESWF7.txt [ /collective-media.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\KZYDP1T0.txt [ /dk-adserver.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\MNKD1CYU.txt [ /www.googleadservices.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\6VN0EJA0.txt [ /www.googleadservices.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\2MBX25AC.txt [ /bo12.media-hmc.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\1RR9BAB4.txt [ /ad.mlnadvertising.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\JM8QKNDC.txt [ /track.effiliation.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\D6Z16951.txt [ /sonyeurope.112.2o7.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\TURHIK8N.txt [ /adserver.thema.cc ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\2EA2SZD7.txt [ /a.revenuemax.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\MJC9PM7F.txt [ /www.googleadservices.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\A3N0Q9YN.txt [ /skydeutschland.122.2o7.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\PEG4S6NW.txt [ /www.googleadservices.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\SGZRNEFK.txt [ /impr.adservicemedia.dk ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\E1VLRA3I.txt [ /unister-adservices.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\RP08BF1X.txt [ /fr.sitestat.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\JHH1M9OD.txt [ /de.sitestat.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\RRI3K5EE.txt [ /www.zanox-affiliate.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\G9HWVDSK.txt [ /liveperson.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\64J1JLKY.txt [ /clicks.pangora.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\PJLHNKAP.txt [ /forexyard.advertserve.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\88279QYN.txt [ /estat.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\WMQJZLTI.txt [ /ad.adnet.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\WFXTD06A.txt [ /myroitracking.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\ADDOGK22.txt [ /ads.travelaudience.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\SITEGT30.txt [ /de.sitestat.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\NXA27AWU.txt [ /www.mediamarkt.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\W9KL5P9F.txt [ /tracker.vinsight.de ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\YOWDDO91.txt [ /fr.sitestat.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\QIMN90PA.txt [ /adformdsp.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\TMWBX6EK.txt [ /saymedia.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\CW7A1M2V.txt [ /microsoftwindows.112.2o7.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\JFBU6ATF.txt [ /c.atdmt.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\1OAE772A.txt [ /clicksor.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\6T6TVPTE.txt [ /adnet.affinity.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\H825HOBO.txt [ /kontera.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\KIWZUPL0.txt [ /www.googleadservices.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\SC9CB1HD.txt [ /eas4.emediate.eu ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\PW93IYEW.txt [ Cookie:heike und achim@sdc.comparis.ch/dcsf5cocc65w83f52pr8hdkqz_2o7h ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\LDFUVIBG.txt [ Cookie:heike und achim@www.abendblatt.de/ratgeber/multimedia/article2398357/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\N2AC7SS6.txt [ Cookie:heike und achim@px.steelhousemedia.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\DU0T7ZK4.txt [ Cookie:heike und achim@www.googleadservices.com/pagead/conversion/1028174362/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\0Z92093N.txt [ Cookie:heike und achim@zanox-affiliate.de/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\MXMZBRDL.txt [ Cookie:heike und achim@fastclick.net/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\ZAENVOOJ.txt [ Cookie:heike und achim@ad.zanox.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\BOHS31LO.txt [ Cookie:heike und achim@adserver.psinternet.de/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\8ITNF42A.txt [ Cookie:heike und achim@invitemedia.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\JTRCE9H9.txt [ Cookie:heike und achim@track.adform.net/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\CMKTZ86O.txt [ Cookie:heike und achim@adxpose.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\6I195T7U.txt [ Cookie:heike und achim@ad.yieldmanager.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\JV1ZO55I.txt [ Cookie:heike und achim@track.effiliation.com/servlet/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\H2BUJ9OU.txt [ Cookie:heike und achim@revsci.net/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\Y1MKWBPC.txt [ Cookie:heike und achim@tribalfusion.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\RALX1UFQ.txt [ Cookie:heike und achim@clickfuse.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\MDUQNR1B.txt [ Cookie:heike und achim@tradedoubler.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\EIEFBFNH.txt [ Cookie:heike und achim@im.banner.t-online.de/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\WH4HI7XO.txt [ Cookie:heike und achim@apmebf.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\TBY9693L.txt [ Cookie:heike und achim@zanox.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\Q4QXF9X8.txt [ Cookie:heike und achim@doubleclick.net/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\1E41W7N6.txt [ Cookie:heike und achim@adviva.net/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\UP5ANNBY.txt [ Cookie:heike und achim@amazon-adsystem.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\L4JCIXMS.txt [ Cookie:heike und achim@adform.net/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\OHGME9SU.txt [ Cookie:heike und achim@collective-media.net/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\OHZB1H21.txt [ Cookie:heike und achim@smartadserver.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\3AKSV0LK.txt [ Cookie:heike und achim@2o7.net/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\DZTZFEHV.txt [ Cookie:heike und achim@adfarm1.adition.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\CFOJKXNZ.txt [ Cookie:heike und achim@specificclick.net/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\AIBUT94H.txt [ Cookie:heike und achim@advertising.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\AHV8CJBW.txt [ Cookie:heike und achim@track.effiliation.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\KW4A6CGX.txt [ Cookie:heike und achim@ad2.adfarm1.adition.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\3SRX8YJX.txt [ Cookie:heike und achim@adserver.thema.cc/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\KJUUMB13.txt [ Cookie:heike und achim@a.revenuemax.de/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\ICNJD0R6.txt [ Cookie:heike und achim@adtech.de/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\7DKSOWXH.txt [ Cookie:heike und achim@4stats.de/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\2JGZ1XGH.txt [ Cookie:heike und achim@adbrite.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\AP42FN27.txt [ Cookie:heike und achim@tomtailor.dyntracker.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\S2R8EU7E.txt [ Cookie:heike und achim@www.zanox-affiliate.de/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\M11XFYMA.txt [ Cookie:heike und achim@casalemedia.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\SA2QQJ9Y.txt [ Cookie:heike und achim@traffictrack.de/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\DE0SBV2W.txt [ Cookie:heike und achim@guj.122.2o7.net/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\10OBCWMO.txt [ Cookie:heike und achim@eas.apm.emediate.eu/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\POK0AUG8.txt [ Cookie:heike und achim@mediaplex.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\Q1WBRQKI.txt [ Cookie:heike und achim@statse.webtrendslive.com/ ]
	C:\USERS\HEIKE UND ACHIM\AppData\Roaming\Microsoft\Windows\Cookies\Low\EVED8QE4.txt [ Cookie:heike und achim@steelhousemedia.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\7IYURCNE.txt [ Cookie:heike und achim@px.steelhousemedia.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\EG27J9V1.txt [ Cookie:heike und achim@lucidmedia.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\OIHOGK7N.txt [ Cookie:heike und achim@zanox-affiliate.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\EP1PDCW3.txt [ Cookie:heike und achim@fastclick.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\271CBLWA.txt [ Cookie:heike und achim@ad.zanox.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\KAUODSP4.txt [ Cookie:heike und achim@ww251.smartadserver.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\PW93IYEW.txt [ Cookie:heike und achim@sdc.comparis.ch/dcsf5cocc65w83f52pr8hdkqz_2o7h ]
	C:\USERS\HEIKE UND ACHIM\Cookies\LOW7DY8D.txt [ Cookie:heike und achim@adserver.psinternet.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\AJPK8M8R.txt [ Cookie:heike und achim@invitemedia.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\1PVZQHYX.txt [ Cookie:heike und achim@www.etracker.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\P0G9ZX89.txt [ Cookie:heike und achim@ad.dyntracker.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\1VIASSV3.txt [ Cookie:heike und achim@track.adform.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\WWF6VC4B.txt [ Cookie:heike und achim@adx.chip.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\9LXTDJZ5.txt [ Cookie:heike und achim@adxpose.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\C8SR76SW.txt [ Cookie:heike und achim@ad.yieldmanager.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\QXUQS1FL.txt [ Cookie:heike und achim@track.effiliation.com/servlet/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\R399DSVJ.txt [ Cookie:heike und achim@revsci.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\F3AJFSFO.txt [ Cookie:heike und achim@tribalfusion.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\PL8AS0QD.txt [ Cookie:heike und achim@tradedoubler.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\5YJY83JW.txt [ Cookie:heike und achim@clickfuse.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\JBDWDLKX.txt [ Cookie:heike und achim@im.banner.t-online.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\35GEP53I.txt [ Cookie:heike und achim@statcounter.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\6THAMFK2.txt [ Cookie:heike und achim@zanox.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\5G8XPOUW.txt [ Cookie:heike und achim@apmebf.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\YF9LTA1U.txt [ Cookie:heike und achim@doubleclick.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\GBBVR02X.txt [ Cookie:heike und achim@in.getclicky.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\2LA4YZAX.txt [ Cookie:heike und achim@unitymedia.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\N3Z1HS4N.txt [ Cookie:heike und achim@adviva.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\49B6W5XG.txt [ Cookie:heike und achim@questionmarket.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\CQFRCQ62.txt [ Cookie:heike und achim@de.sitestat.com/ndr/ardsport/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\JTUH0IXL.txt [ Cookie:heike und achim@amazon-adsystem.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\SYJZGI7Z.txt [ Cookie:heike und achim@adform.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\VHMLMS91.txt [ Cookie:heike und achim@smartadserver.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\C1KYRKBH.txt [ Cookie:heike und achim@partners.webmasterplan.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\CECYLKT1.txt [ Cookie:heike und achim@2o7.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\2WO4O6YL.txt [ Cookie:heike und achim@adfarm1.adition.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\RI0EVL6W.txt [ Cookie:heike und achim@advertising.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\4GNRN53R.txt [ Cookie:heike und achim@specificclick.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\0R9NW01S.txt [ Cookie:heike und achim@ad2.adfarm1.adition.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\LZVZBYML.txt [ Cookie:heike und achim@ru4.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\U0XVCD1T.txt [ Cookie:heike und achim@trackingpixel.bigpoint.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\YSJBKCG3.txt [ Cookie:heike und achim@adtech.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\S595TX2G.txt [ Cookie:heike und achim@adbrite.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\GNF8KTO2.txt [ Cookie:heike und achim@www.usenext.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\WWWHADTH.txt [ Cookie:heike und achim@tomtailor.dyntracker.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\7971GO5S.txt [ Cookie:heike und achim@de.sitestat.com/ndr/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\KOHHR4HL.txt [ Cookie:heike und achim@casalemedia.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\K877Z38Z.txt [ Cookie:heike und achim@traffictrack.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\94A2GXEI.txt [ Cookie:heike und achim@mediapartners.bigpoint.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\O0EY3DWM.txt [ Cookie:heike und achim@eas.apm.emediate.eu/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\12LHFWC1.txt [ Cookie:heike und achim@stat.dealtime.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\RHN8JG1R.txt [ Cookie:heike und achim@www.active-tracking.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\6RZ1CUAJ.txt [ Cookie:heike und achim@mediaplex.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\PUNM2RKG.txt [ Cookie:heike und achim@liveperson.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\36CQMISQ.txt [ Cookie:heike und achim@statse.webtrendslive.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\WKXL0FI4.txt [ Cookie:heike und achim@steelhousemedia.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\CIL2RNFT.txt [ Cookie:heike und achim@imrworldwide.com/cgi-bin ]
	C:\USERS\HEIKE UND ACHIM\Cookies\K1572LD0.txt [ Cookie:heike und achim@adserving.avazudsp.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\VV5LF7OK.txt [ Cookie:heike und achim@yieldmanager.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\UXBXVBA7.txt [ Cookie:heike und achim@1click-downloader.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\YTR5HVI3.txt [ Cookie:heike und achim@www.googleadservices.com/pagead/conversion/1047508216/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\DMPQPS1N.txt [ Cookie:heike und achim@microsoftsto.112.2o7.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\Z4WM6UAI.txt [ Cookie:heike und achim@tracking.s24.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\M4W1JSY0.txt [ Cookie:heike und achim@at.atwola.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\KMCB4NJU.txt [ Cookie:heike und achim@bizrate.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\07DYEN7X.txt [ Cookie:heike und achim@track.zalando.de/789345933667438/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\IBL9IP8H.txt [ Cookie:heike und achim@www.googleadservices.com/pagead/conversion/1013361525/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\65D4U7LE.txt [ Cookie:heike und achim@tradetracker.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\Q80Y389Z.txt [ Cookie:heike und achim@dealtime.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\2X3RYJ6S.txt [ Cookie:heike und achim@zedo.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\Z95C6WOY.txt [ Cookie:heike und achim@server.adformdsp.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\8X0ESWF7.txt [ Cookie:heike und achim@collective-media.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\MNKD1CYU.txt [ Cookie:heike und achim@www.googleadservices.com/pagead/conversion/1012284249/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\2MBX25AC.txt [ Cookie:heike und achim@bo12.media-hmc.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\1RR9BAB4.txt [ Cookie:heike und achim@ad.mlnadvertising.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\JM8QKNDC.txt [ Cookie:heike und achim@track.effiliation.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\D6Z16951.txt [ Cookie:heike und achim@sonyeurope.112.2o7.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\TURHIK8N.txt [ Cookie:heike und achim@adserver.thema.cc/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\2EA2SZD7.txt [ Cookie:heike und achim@a.revenuemax.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\MJC9PM7F.txt [ Cookie:heike und achim@www.googleadservices.com/pagead/conversion/977182483/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\A3N0Q9YN.txt [ Cookie:heike und achim@skydeutschland.122.2o7.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\PEG4S6NW.txt [ Cookie:heike und achim@www.googleadservices.com/pagead/conversion/1067509870/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\RP08BF1X.txt [ Cookie:heike und achim@fr.sitestat.com/europcar/europcar-at/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\JHH1M9OD.txt [ Cookie:heike und achim@de.sitestat.com/idgcom-de/pcwelt/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\RRI3K5EE.txt [ Cookie:heike und achim@www.zanox-affiliate.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\G9HWVDSK.txt [ Cookie:heike und achim@liveperson.net/hc/85950269 ]
	C:\USERS\HEIKE UND ACHIM\Cookies\88279QYN.txt [ Cookie:heike und achim@estat.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\WMQJZLTI.txt [ Cookie:heike und achim@ad.adnet.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\WFXTD06A.txt [ Cookie:heike und achim@myroitracking.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\SITEGT30.txt [ Cookie:heike und achim@de.sitestat.com/ndr/tagesschau/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\LDFUVIBG.txt [ Cookie:heike und achim@www.abendblatt.de/ratgeber/multimedia/article2398357/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\NXA27AWU.txt [ Cookie:heike und achim@www.mediamarkt.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\W9KL5P9F.txt [ Cookie:heike und achim@tracker.vinsight.de/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\YOWDDO91.txt [ Cookie:heike und achim@fr.sitestat.com/europcar/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\QIMN90PA.txt [ Cookie:heike und achim@adformdsp.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\TMWBX6EK.txt [ Cookie:heike und achim@saymedia.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\CW7A1M2V.txt [ Cookie:heike und achim@microsoftwindows.112.2o7.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\JFBU6ATF.txt [ Cookie:heike und achim@c.atdmt.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\1OAE772A.txt [ Cookie:heike und achim@clicksor.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\6T6TVPTE.txt [ Cookie:heike und achim@adnet.affinity.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\H825HOBO.txt [ Cookie:heike und achim@kontera.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\KIWZUPL0.txt [ Cookie:heike und achim@www.googleadservices.com/pagead/conversion/1068035743/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\SC9CB1HD.txt [ Cookie:heike und achim@eas4.emediate.eu/ ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	track.effiliation.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	track.effiliation.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	track.effiliation.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	track.effiliation.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	track.effiliation.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.tradedoubler.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.bshg.122.2o7.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ads20.wwe-media.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad1.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.zanox.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.tracking.hannoversche.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.zanox-affiliate.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.tradedoubler.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.tradedoubler.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.traffictrack.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.im.banner.t-online.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad4.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	ad2.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.xiti.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.apmebf.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.mediaplex.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.doubleclick.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
	.sonyeurope.112.2o7.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.xiti.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ads20.wwe-media.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	rotator.adjuggler.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	rotator.adjuggler.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	adsrv.admediate.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	adsrv.admediate.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.broadwaycom.122.2o7.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.interclick.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.interclick.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.interclick.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.zedo.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	eas4.emediate.eu [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.imrworldwide.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	dc.tremormedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.apmebf.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.premiumtv.122.2o7.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	fr.sitestat.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	fr.sitestat.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.azjmp.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.guj.122.2o7.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.collective-media.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.elite.smithoptics.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.dyntracker.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adserver.adtechus.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	trackingpixel.bigpoint.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	trackingpixel.bigpoint.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	trackingpixel.bigpoint.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	trackingpixel.bigpoint.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.adition.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.adition.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.112.2o7.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.hightraffic.hugoboss.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.hightraffic.hugoboss.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.hightraffic.hugoboss.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	tracking.sim-technik.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.a.revenuemax.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.insightexpressai.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	stats.sevengames.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.amazon-adsystem.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.amazon-adsystem.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	tracking.mlsat02.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.specificclick.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.ad.adnet.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.windfinder.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.windfinder.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.windfinder.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.ardmediathek.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.ads20.wwe-media.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	dk-adserver.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	banner.testberichte.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	server.adformdsp.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adformdsp.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adform.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	server.adform.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	aimfar.solution.weborama.fr [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.weborama.fr [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.weborama.fr [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.weborama.fr [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.weboramapublishertrackinguk2.solution.weborama.fr [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.weboramapublishertrackinguk2.solution.weborama.fr [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	tracking.klicktel.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	tracking.klicktel.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.etracker.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	eas4.emediate.eu [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	track.effiliation.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	tomtailor.dyntracker.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.unrulymedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.unrulymedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	e2.emediate.se [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	e2.emediate.se [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adform.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	dk-adserver.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.liveperson.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.liveperson.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	server.lon.liveperson.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.overture.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	partners.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.windfinder.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.windfinder.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.windfinder.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.windfinder.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.windfinder.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.windfinder.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.windfinder.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.stats4free.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.stats4free.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.media1.roseversand.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.media1.roseversand.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.media1.roseversand.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	fr.sitestat.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	fr.sitestat.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	fr.sitestat.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.stats4free.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	targeting.revenuemax.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.2o7.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.lfstmedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.at.atwola.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.clickfuse.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.ru4.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.unister-adservices.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad1.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.fastclick.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tribalfusion.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	media.gan-online.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adtech.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adxpose.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	adserver.thema.cc [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	server.adform.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	statse.webtrendslive.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.stats4free.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.stats4free.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.advertising.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.mediaplex.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tracking.quisma.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adbrite.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.casalemedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	forexyard.advertserve.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.dealtime.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	stat.dealtime.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adviva.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.dyntracker.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	adx2.chip.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.googleadservices.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	de.sitestat.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.zanox-affiliate.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tradedoubler.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.traffictrack.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.im.banner.t-online.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.invitemedia.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	adx.chip.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	adserver1.mokono.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	eas.apm.emediate.eu [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	track.adform.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adform.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.quartermedia.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.quartermedia.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad3.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.questionmarket.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ww251.smartadserver.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.yieldmanager.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.estat.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.tracker-star.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.tracker-star.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tracker-star.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tracker-star.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tracker-star.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	www.tracker-star.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.tracker.vinsight.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.atdmt.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.c1.atdmt.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.smartadserver.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.revenuemax.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.zanox-affiliate.de [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad4.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad2.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.adfarm1.adition.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.serving-sys.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.bs.serving-sys.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	accounts.google.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.doubleclick.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.revsci.net [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.zanox.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	ad.zanox.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
	.webmasterplan.com [ C:\USERS\HEIKE UND ACHIM\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8YC8MQNR.DEFAULT\COOKIES.SQLITE ]
         
Hallo Cosinus,
eine Frage habe ich noch.SUPERAntiSpyware hat mich gefragt, ob ich die Dateine in Quarantäne stecken soll. Das habe ich jetzt getan. War das falsch. Hätte ich das Abfragefenster per Kreuz einfach schließen sollen und direkt auf die Log-Datei gehen. Ich war da sehr unsicher. Hoffentlich habe ich jetzt nichts kaputt gemacht.
Gruß
Heike

Hallo Cosinus,
eine weitere Auffälligkeit habe ich noch gesehen. In meiner Musikbibliothek liegen im Grundverzeichnis ein paar Dateien. Wenn ich im Dateimanager dorthin gehe, bleibt die Anzeige nicht stabil. Die Dateien tauschen die Position. Sonst habe ich dieses Phänomen bisher nicht gesehen. Was kann das sein?

Hallo Cosinus,
jetzt ist mein explorer mal abgestürzt und neu gestartet und das Lautsprechersymbol ist da. Allerdings läuft mein Prozessor fast immer mit 30%. Liegt das an SASW?
Und was ist mit dem Virus der noch drauf war?
Gruß
Heike

Hallo Cosinus,
ich hatte festgestellt, dass das eine log ohne admin-rechte war hier das richtige:
Code:
ATTFilter
SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com

Generated 10/19/2012 at 09:33 PM

Application Version : 5.6.1012

Core Rules Database Version : 9435
Trace Rules Database Version: 7247

Scan type       : Complete Scan
Total Scan Time : 02:35:06

Operating System Information
Windows 7 Home Premium 64-bit (Build 6.01.7600)
UAC On - Administrator

Memory items scanned      : 1003
Memory threats detected   : 0
Registry items scanned    : 75669
Registry threats detected : 0
File items scanned        : 239836
File threats detected     : 14

Adware.Tracking Cookie
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\089A0YOB.txt [ /ad.zanox.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\WEGVVRPG.txt [ /tribalfusion.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\9589GUV1.txt [ /serving-sys.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\F6743P9O.txt [ /zanox.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\MDCO00V7.txt [ /atdmt.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\9J16EYLP.txt [ /doubleclick.net ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\Q7IMMCRW.txt [ /track.effiliation.com ]
	C:\Users\Heike und Achim\AppData\Roaming\Microsoft\Windows\Cookies\9VV54SJK.txt [ /adtech.de ]
	C:\USERS\HEIKE UND ACHIM\Cookies\089A0YOB.txt [ Cookie:heike und achim@ad.zanox.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\WEGVVRPG.txt [ Cookie:heike und achim@tribalfusion.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\F6743P9O.txt [ Cookie:heike und achim@zanox.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\9J16EYLP.txt [ Cookie:heike und achim@doubleclick.net/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\Q7IMMCRW.txt [ Cookie:heike und achim@track.effiliation.com/ ]
	C:\USERS\HEIKE UND ACHIM\Cookies\9VV54SJK.txt [ Cookie:heike und achim@adtech.de/ ]
         
Gruß
Heike

Was ist der Dienst !sascore sas core service?

Geändert von ebb8924 (18.10.2012 um 21:42 Uhr)

Alt 22.10.2012, 10:20   #29
ebb8924
 
Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Standard

Trojan.RedirRdll2.Gen und Macaffe Firewall stopt Erinnerung



Hallo Cosinus,
habe seit Donnerstag nichts mehr gehört. Kannst Du bitte nochmal in mein Thema reinschauen.
Gruß
Heike

Alt 22.10.2012, 13:01   #30
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Standard

Trojan.RedirRdll2.Gen und Macaffe Firewall stopt



Sieht ok aus, da wurden nur Cookies gefunden, die können alle weg. Malwarebytes hatte nur einen Fehlalarm.
Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie )


Wegen Cookies und anderer Dinge im Web: Um die Pest von vornherein zu blocken (also TrackingCookies, Werbebanner etc.) müsstest du dir mal sowas wie MVPS Hosts File anschauen => Blocking Unwanted Parasites with a Hosts File - sinnvollerweise solltest du alle 4 Wochen mal bei MVPS nachsehen, ob er eine neue Hosts Datei herausgebracht hat.

Ansonsten gibt es noch gute Cookiemanager, Erweiterungen für den Firefox zB wäre da CookieCuller http://filepony.de/download-cookie_culler/
Wenn du aber damit leben kannst, dich bei jeder Browsersession überall neu einzuloggen (zB Facebook, Ebay, GMX, oder auch Trojaner-Board) dann stell den Browser einfach so ein, dass einfach alles beim Beenden des Browser inkl. Cookies gelöscht wird.

Ich halte es so, dass ich zum "wilden Surfen" den Opera-Browser oder Chromium unter meinem Linux verwende. Mein Hauptbrowser (Firefox) speichert nur die Cookies von den Sites die ich auch will, alles andere lehne ich manuell ab (der FF fragt mich immer) - die anderen Browser nehmen alles an Cookies zwar an, aber spätestens beim nächsten Start von Opera oder Chromium sind keine Cookies mehr da.

Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
__________________
Logfiles bitte immer in CODE-Tags posten

Antwort

Themen zu Trojan.RedirRdll2.Gen und Macaffe Firewall stopt
administrator, anti-malware, appdata, autostart, cosinus, dateien, erinnerung, explorer, firewall, gelöscht, komplett, löschen, meldet, microsoft, nichts, quarantäne, reagiert, rechner, roaming, rundll, rundll32.exe, scan, software, speicher, starten, stopt, thema, troja, trojan.redirrdll2.gen, version




Ähnliche Themen: Trojan.RedirRdll2.Gen und Macaffe Firewall stopt


  1. Avira-Firewall oder die Windows-Firewall benutzen?
    Antiviren-, Firewall- und andere Schutzprogramme - 26.10.2015 (6)
  2. [Win XP] botnet: ntp-muliplier; desinfect: Trojan.Script.Iframer, Trojan.Heur.TP, Win.Trojan.Iniduoh, Win.Trojan.Ramnit
    Log-Analyse und Auswertung - 08.02.2014 (16)
  3. Sicherheits-Dienst konnte nicht gestartet werden und Firewall deaktiviert (Trojan.Siredef.C)
    Plagegeister aller Art und deren Bekämpfung - 28.01.2014 (11)
  4. Virenproblem-30 verschiedene Meldungen mit Antivirenscanner,Scanner stopt immer bei 98%
    Plagegeister aller Art und deren Bekämpfung - 21.09.2013 (5)
  5. Trojan.Zaccess und Windows Firewall Fehlercode 0x80070424
    Plagegeister aller Art und deren Bekämpfung - 15.09.2013 (11)
  6. Vista: Trojan.Ransom.Gen; Trojan.0Access; Trojan.Agent; Firewall inaktiv
    Plagegeister aller Art und deren Bekämpfung - 28.03.2013 (3)
  7. Windows-Firewall-Fehlercode 0x8007042c/Befall durch Trojan.0Access
    Log-Analyse und Auswertung - 06.02.2013 (25)
  8. Virus deaktivierte Defender, Udpate und Firewall. Jetzt noch Trojan.0Access gefunden
    Log-Analyse und Auswertung - 04.10.2012 (34)
  9. Hilfe- Virus stopt sicherungen!
    Mülltonne - 12.12.2008 (6)
  10. Trojan-Spy.HTML.Bankfraud.dq von Windows Firewall gemeldet
    Plagegeister aller Art und deren Bekämpfung - 13.10.2008 (13)
  11. Firewall entdeckt Trojan.Win32.Patched/ Ordner nicht auffindbar
    Plagegeister aller Art und deren Bekämpfung - 07.08.2008 (2)
  12. Trojan.Downloader JS - Anti-Viren-Programm/Firewall wird automatisch deaktiviert.
    Log-Analyse und Auswertung - 24.05.2007 (1)
  13. Firewall hinter Router-Firewall ?
    Antiviren-, Firewall- und andere Schutzprogramme - 27.01.2007 (4)
  14. Windows XP Firewall Symbol in Taskleiste ist nicht da, obwohl Firewall aktiviert ist!
    Antiviren-, Firewall- und andere Schutzprogramme - 15.01.2007 (7)
  15. aktivierte Windows Firewall ersetzt Personal Firewall??
    Antiviren-, Firewall- und andere Schutzprogramme - 22.02.2005 (3)
  16. Antivir hat nen trojaner der im stopt...
    Log-Analyse und Auswertung - 16.01.2005 (5)
  17. Sygate Firewall Pro / Advanced Trojan Protection ??
    Antiviren-, Firewall- und andere Schutzprogramme - 25.07.2004 (1)

Zum Thema Trojan.RedirRdll2.Gen und Macaffe Firewall stopt - Ja natürlich musst du das wiederholen, OTL muss schon alle Benutzerprofile durchscannen! - Trojan.RedirRdll2.Gen und Macaffe Firewall stopt...
Archiv
Du betrachtest: Trojan.RedirRdll2.Gen und Macaffe Firewall stopt auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.