Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Log-Analyse und Auswertung (https://www.trojaner-board.de/log-analyse-auswertung/)
-   -   EXP/2011-3544.BU.1 in AppData\Local\Temp\jar_cache1546302327481531767.tmp (https://www.trojaner-board.de/111629-exp-2011-3544-bu-1-appdata-local-temp-jar_cache1546302327481531767-tmp.html)

cold_fire 19.03.2012 19:41

Und weiter gehts im Text:

Code:

19:39:12.0110 2684        TDSS rootkit removing tool 2.7.20.0 Mar  9 2012 17:10:43
19:39:13.0577 2684        ============================================================
19:39:13.0577 2684        Current date / time: 2012/03/19 19:39:13.0577
19:39:13.0577 2684        SystemInfo:
19:39:13.0577 2684       
19:39:13.0577 2684        OS Version: 6.1.7601 ServicePack: 1.0
19:39:13.0577 2684        Product type: Workstation
19:39:13.0577 2684        ComputerName: FABIAN-PC
19:39:13.0577 2684        UserName: Fabian
19:39:13.0577 2684        Windows directory: C:\Windows
19:39:13.0577 2684        System windows directory: C:\Windows
19:39:13.0577 2684        Running under WOW64
19:39:13.0577 2684        Processor architecture: Intel x64
19:39:13.0577 2684        Number of processors: 4
19:39:13.0577 2684        Page size: 0x1000
19:39:13.0577 2684        Boot type: Normal boot
19:39:13.0577 2684        ============================================================
19:39:14.0458 2684        Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:39:14.0475 2684        Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
19:39:14.0477 2684        \Device\Harddisk0\DR0:
19:39:14.0478 2684        MBR used
19:39:14.0478 2684        \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
19:39:14.0478 2684        \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x11B02000
19:39:14.0478 2684        \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x11B34800, BlocksNum 0x11B34000
19:39:14.0478 2684        \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x23668800, BlocksNum 0x16D1D000
19:39:14.0478 2684        \Device\Harddisk1\DR1:
19:39:14.0478 2684        MBR used
19:39:14.0478 2684        \Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705800
19:39:14.0585 2684        Initialize success
19:39:14.0585 2684        ============================================================
19:39:50.0293 1472        ============================================================
19:39:50.0293 1472        Scan started
19:39:50.0293 1472        Mode: Manual; SigCheck; TDLFS;
19:39:50.0293 1472        ============================================================
19:39:50.0830 1472        1394ohci        (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
19:39:50.0904 1472        1394ohci - ok
19:39:50.0950 1472        ACPI            (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
19:39:50.0969 1472        ACPI - ok
19:39:51.0001 1472        AcpiPmi        (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
19:39:51.0043 1472        AcpiPmi - ok
19:39:51.0114 1472        adp94xx        (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
19:39:51.0140 1472        adp94xx - ok
19:39:51.0160 1472        adpahci        (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
19:39:51.0171 1472        adpahci - ok
19:39:51.0187 1472        adpu320        (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
19:39:51.0196 1472        adpu320 - ok
19:39:51.0248 1472        AFD            (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
19:39:51.0287 1472        AFD - ok
19:39:51.0321 1472        agp440          (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
19:39:51.0335 1472        agp440 - ok
19:39:51.0349 1472        aliide          (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
19:39:51.0359 1472        aliide - ok
19:39:51.0376 1472        amdide          (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
19:39:51.0385 1472        amdide - ok
19:39:51.0400 1472        AmdK8          (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
19:39:51.0417 1472        AmdK8 - ok
19:39:51.0613 1472        amdkmdag        (322e5c178990f116f00e3d923f4e6b1c) C:\Windows\system32\DRIVERS\atikmdag.sys
19:39:51.0850 1472        amdkmdag - ok
19:39:51.0872 1472        amdkmdap        (961a81a84fdd700e361e8294528a37ba) C:\Windows\system32\DRIVERS\atikmpag.sys
19:39:51.0914 1472        amdkmdap - ok
19:39:51.0922 1472        AmdPPM          (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
19:39:51.0981 1472        AmdPPM - ok
19:39:52.0008 1472        amdsata        (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
19:39:52.0025 1472        amdsata - ok
19:39:52.0046 1472        amdsbs          (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
19:39:52.0066 1472        amdsbs - ok
19:39:52.0085 1472        amdxata        (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
19:39:52.0093 1472        amdxata - ok
19:39:52.0167 1472        AppID          (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
19:39:52.0230 1472        AppID - ok
19:39:52.0251 1472        arc            (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
19:39:52.0259 1472        arc - ok
19:39:52.0272 1472        arcsas          (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
19:39:52.0280 1472        arcsas - ok
19:39:52.0321 1472        AsyncMac        (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
19:39:52.0380 1472        AsyncMac - ok
19:39:52.0407 1472        atapi          (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
19:39:52.0414 1472        atapi - ok
19:39:52.0459 1472        AtiHDAudioService (230cf51113cd4b830b3bfd09b0d4c066) C:\Windows\system32\drivers\AtihdW76.sys
19:39:52.0485 1472        AtiHDAudioService - ok
19:39:52.0513 1472        AtiHdmiService  (7e2f5a758f63f80f8b03f889b4e6b19f) C:\Windows\system32\drivers\AtiHdmi.sys
19:39:52.0520 1472        AtiHdmiService - ok
19:39:52.0711 1472        atikmdag        (322e5c178990f116f00e3d923f4e6b1c) C:\Windows\system32\DRIVERS\atikmdag.sys
19:39:52.0798 1472        atikmdag - ok
19:39:52.0834 1472        atksgt          (fc0e8778c000291caf60eb88c011e931) C:\Windows\system32\DRIVERS\atksgt.sys
19:39:52.0842 1472        atksgt - ok
19:39:52.0885 1472        avgntflt        (aa8f79a1bdfc03b3bc70c44ab00589b4) C:\Windows\system32\DRIVERS\avgntflt.sys
19:39:52.0899 1472        avgntflt - ok
19:39:52.0920 1472        avipbb          (852e3c0a60d368c487949e55ad52a47f) C:\Windows\system32\DRIVERS\avipbb.sys
19:39:52.0933 1472        avipbb - ok
19:39:52.0960 1472        avkmgr          (248db59fc86de44d2779f4c7fb1a567d) C:\Windows\system32\DRIVERS\avkmgr.sys
19:39:52.0970 1472        avkmgr - ok
19:39:53.0008 1472        avmeject        (1dc2f715792cf33428ad7993acbd224d) C:\Windows\system32\drivers\avmeject.sys
19:39:53.0020 1472        avmeject - ok
19:39:53.0065 1472        b06bdrv        (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
19:39:53.0119 1472        b06bdrv - ok
19:39:53.0151 1472        b57nd60a        (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
19:39:53.0193 1472        b57nd60a - ok
19:39:53.0224 1472        Beep            (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
19:39:53.0282 1472        Beep - ok
19:39:53.0337 1472        blbdrive        (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
19:39:53.0363 1472        blbdrive - ok
19:39:53.0391 1472        bowser          (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
19:39:53.0409 1472        bowser - ok
19:39:53.0423 1472        BrFiltLo        (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
19:39:53.0455 1472        BrFiltLo - ok
19:39:53.0472 1472        BrFiltUp        (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
19:39:53.0492 1472        BrFiltUp - ok
19:39:53.0516 1472        Brserid        (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
19:39:53.0555 1472        Brserid - ok
19:39:53.0570 1472        BrSerWdm        (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
19:39:53.0599 1472        BrSerWdm - ok
19:39:53.0606 1472        BrUsbMdm        (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
19:39:53.0630 1472        BrUsbMdm - ok
19:39:53.0647 1472        BrUsbSer        (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
19:39:53.0663 1472        BrUsbSer - ok
19:39:53.0671 1472        BTHMODEM        (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
19:39:53.0692 1472        BTHMODEM - ok
19:39:53.0719 1472        cdfs            (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
19:39:53.0757 1472        cdfs - ok
19:39:53.0795 1472        cdrom          (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
19:39:53.0827 1472        cdrom - ok
19:39:53.0850 1472        circlass        (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
19:39:53.0883 1472        circlass - ok
19:39:53.0908 1472        CLFS            (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
19:39:53.0925 1472        CLFS - ok
19:39:53.0998 1472        CmBatt          (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
19:39:54.0024 1472        CmBatt - ok
19:39:54.0046 1472        cmdide          (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
19:39:54.0061 1472        cmdide - ok
19:39:54.0091 1472        CNG            (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
19:39:54.0120 1472        CNG - ok
19:39:54.0133 1472        Compbatt        (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
19:39:54.0140 1472        Compbatt - ok
19:39:54.0166 1472        CompositeBus    (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
19:39:54.0193 1472        CompositeBus - ok
19:39:54.0210 1472        crcdisk        (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
19:39:54.0225 1472        crcdisk - ok
19:39:54.0271 1472        CrystalSysInfo - ok
19:39:54.0360 1472        DfsC            (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
19:39:54.0417 1472        DfsC - ok
19:39:54.0463 1472        discache        (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
19:39:54.0488 1472        discache - ok
19:39:54.0509 1472        Disk            (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
19:39:54.0516 1472        Disk - ok
19:39:54.0554 1472        Dot4            (b42ed0320c6e41102fde0005154849bb) C:\Windows\system32\DRIVERS\Dot4.sys
19:39:54.0586 1472        Dot4 - ok
19:39:54.0623 1472        Dot4Print      (e9f5969233c5d89f3c35e3a66a52a361) C:\Windows\system32\drivers\Dot4Prt.sys
19:39:54.0653 1472        Dot4Print - ok
19:39:54.0684 1472        dot4usb        (fd05a02b0370bc3000f402e543ca5814) C:\Windows\system32\DRIVERS\dot4usb.sys
19:39:54.0711 1472        dot4usb - ok
19:39:54.0741 1472        drmkaud        (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
19:39:54.0771 1472        drmkaud - ok
19:39:54.0815 1472        DXGKrnl        (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
19:39:54.0841 1472        DXGKrnl - ok
19:39:54.0920 1472        ebdrv          (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
19:39:55.0042 1472        ebdrv - ok
19:39:55.0082 1472        elxstor        (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
19:39:55.0096 1472        elxstor - ok
19:39:55.0125 1472        ErrDev          (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
19:39:55.0149 1472        ErrDev - ok
19:39:55.0179 1472        exfat          (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
19:39:55.0228 1472        exfat - ok
19:39:55.0246 1472        fastfat        (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
19:39:55.0277 1472        fastfat - ok
19:39:55.0299 1472        fdc            (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
19:39:55.0308 1472        fdc - ok
19:39:55.0325 1472        FileInfo        (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
19:39:55.0332 1472        FileInfo - ok
19:39:55.0346 1472        Filetrace      (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
19:39:55.0379 1472        Filetrace - ok
19:39:55.0391 1472        flpydisk        (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
19:39:55.0400 1472        flpydisk - ok
19:39:55.0439 1472        FltMgr          (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
19:39:55.0450 1472        FltMgr - ok
19:39:55.0475 1472        FsDepends      (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
19:39:55.0482 1472        FsDepends - ok
19:39:55.0498 1472        Fs_Rec          (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
19:39:55.0506 1472        Fs_Rec - ok
19:39:55.0531 1472        fvevol          (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
19:39:55.0543 1472        fvevol - ok
19:39:55.0578 1472        FWLANUSB        (444534cba693dd23c1cc589681e01656) C:\Windows\system32\DRIVERS\fwlanusb.sys
19:39:55.0606 1472        FWLANUSB - ok
19:39:55.0618 1472        gagp30kx        (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
19:39:55.0626 1472        gagp30kx - ok
19:39:55.0683 1472        hamachi        (1e6438d4ea6e1174a3b3b1edc4de660b) C:\Windows\system32\DRIVERS\hamachi.sys
19:39:55.0693 1472        hamachi - ok
19:39:55.0715 1472        hcw85cir        (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
19:39:55.0739 1472        hcw85cir - ok
19:39:55.0760 1472        HCW88AUD        (6975832e10e552350680bc6fdbd11f9d) C:\Windows\system32\drivers\hcw88aud.sys
19:39:55.0778 1472        HCW88AUD - ok
19:39:55.0801 1472        hcw88bda        (daa54d174839b3f8248ff755711eaf8c) C:\Windows\system32\drivers\hcw88bda.sys
19:39:55.0824 1472        hcw88bda - ok
19:39:55.0841 1472        hcw88rc5        (ecef065a9df820df4e005da8ca45a7cf) C:\Windows\system32\Drivers\hcw88rc5.sys
19:39:55.0852 1472        hcw88rc5 - ok
19:39:55.0868 1472        HCW88TSE        (751b9e9e9166e8ee22a7cb1ff223bf47) C:\Windows\system32\drivers\hcw88tse.sys
19:39:55.0890 1472        HCW88TSE - ok
19:39:55.0906 1472        HCW88TUNE      (06d074c53f3d8f8fa11e0fb7ba30b2b3) C:\Windows\system32\drivers\hcw88tun.sys
19:39:55.0918 1472        HCW88TUNE - ok
19:39:55.0939 1472        hcw88vid        (93d909ccfb041ee6e8c9d32602588089) C:\Windows\system32\drivers\hcw88vid.sys
19:39:55.0963 1472        hcw88vid - ok
19:39:55.0970 1472        HCW88XBAR      (96baa4e70641abdf40822fb505d4f1e3) C:\Windows\system32\drivers\HCW88BAR.sys
19:39:55.0992 1472        HCW88XBAR - ok
19:39:56.0028 1472        HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
19:39:56.0078 1472        HdAudAddService - ok
19:39:56.0177 1472        HDAudBus        (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
19:39:56.0214 1472        HDAudBus - ok
19:39:56.0240 1472        HidBatt        (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
19:39:56.0261 1472        HidBatt - ok
19:39:56.0276 1472        HidBth          (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
19:39:56.0301 1472        HidBth - ok
19:39:56.0317 1472        HidIr          (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
19:39:56.0336 1472        HidIr - ok
19:39:56.0364 1472        HidUsb          (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
19:39:56.0385 1472        HidUsb - ok
19:39:56.0419 1472        HpSAMD          (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
19:39:56.0432 1472        HpSAMD - ok
19:39:56.0486 1472        HTTP            (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
19:39:56.0551 1472        HTTP - ok
19:39:56.0580 1472        hwpolicy        (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
19:39:56.0586 1472        hwpolicy - ok
19:39:56.0607 1472        i8042prt        (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
19:39:56.0616 1472        i8042prt - ok
19:39:56.0649 1472        iaStorV        (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
19:39:56.0665 1472        iaStorV - ok
19:39:56.0681 1472        iirsp          (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
19:39:56.0691 1472        iirsp - ok
19:39:56.0717 1472        intelide        (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
19:39:56.0726 1472        intelide - ok
19:39:56.0739 1472        intelppm        (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
19:39:56.0768 1472        intelppm - ok
19:39:56.0794 1472        IpFilterDriver  (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
19:39:56.0847 1472        IpFilterDriver - ok
19:39:56.0863 1472        IPMIDRV        (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
19:39:56.0872 1472        IPMIDRV - ok
19:39:56.0889 1472        IPNAT          (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
19:39:56.0940 1472        IPNAT - ok
19:39:56.0960 1472        IRENUM          (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
19:39:56.0981 1472        IRENUM - ok
19:39:56.0993 1472        isapnp          (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
19:39:56.0999 1472        isapnp - ok
19:39:57.0013 1472        iScsiPrt        (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
19:39:57.0023 1472        iScsiPrt - ok
19:39:57.0069 1472        JRAID          (86cfef6dc6de51aab0c10384fe98f48f) C:\Windows\system32\DRIVERS\jraid.sys
19:39:57.0082 1472        JRAID - ok
19:39:57.0123 1472        kbdclass        (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
19:39:57.0139 1472        kbdclass - ok
19:39:57.0146 1472        kbdhid          (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\DRIVERS\kbdhid.sys
19:39:57.0159 1472        kbdhid - ok
19:39:57.0184 1472        KSecDD          (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
19:39:57.0195 1472        KSecDD - ok
19:39:57.0209 1472        KSecPkg        (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
19:39:57.0221 1472        KSecPkg - ok
19:39:57.0237 1472        ksthunk        (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
19:39:57.0294 1472        ksthunk - ok
19:39:57.0367 1472        lirsgt          (156ab2e56dc3ca0b582e3362e07cded7) C:\Windows\system32\DRIVERS\lirsgt.sys
19:39:57.0378 1472        lirsgt - ok
19:39:57.0397 1472        lltdio          (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
19:39:57.0446 1472        lltdio - ok
19:39:57.0476 1472        LSI_FC          (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
19:39:57.0484 1472        LSI_FC - ok
19:39:57.0501 1472        LSI_SAS        (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
19:39:57.0509 1472        LSI_SAS - ok
19:39:57.0520 1472        LSI_SAS2        (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
19:39:57.0527 1472        LSI_SAS2 - ok
19:39:57.0539 1472        LSI_SCSI        (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
19:39:57.0547 1472        LSI_SCSI - ok
19:39:57.0576 1472        luafv          (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
19:39:57.0631 1472        luafv - ok
19:39:57.0650 1472        megasas        (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
19:39:57.0657 1472        megasas - ok
19:39:57.0669 1472        MegaSR          (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
19:39:57.0680 1472        MegaSR - ok
19:39:57.0710 1472        Modem          (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
19:39:57.0755 1472        Modem - ok
19:39:57.0782 1472        monitor        (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
19:39:57.0800 1472        monitor - ok
19:39:57.0822 1472        mouclass        (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
19:39:57.0829 1472        mouclass - ok
19:39:57.0857 1472        mouhid          (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
19:39:57.0880 1472        mouhid - ok
19:39:57.0903 1472        mountmgr        (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
19:39:57.0919 1472        mountmgr - ok
19:39:57.0952 1472        mpio            (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
19:39:57.0961 1472        mpio - ok
19:39:57.0978 1472        mpsdrv          (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
19:39:58.0004 1472        mpsdrv - ok
19:39:58.0030 1472        MRxDAV          (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
19:39:58.0052 1472        MRxDAV - ok
19:39:58.0067 1472        mrxsmb          (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
19:39:58.0089 1472        mrxsmb - ok
19:39:58.0113 1472        mrxsmb10        (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
19:39:58.0134 1472        mrxsmb10 - ok
19:39:58.0141 1472        mrxsmb20        (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
19:39:58.0150 1472        mrxsmb20 - ok
19:39:58.0161 1472        msahci          (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
19:39:58.0168 1472        msahci - ok
19:39:58.0201 1472        msdsm          (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
19:39:58.0210 1472        msdsm - ok
19:39:58.0228 1472        Msfs            (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
19:39:58.0253 1472        Msfs - ok
19:39:58.0268 1472        mshidkmdf      (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
19:39:58.0323 1472        mshidkmdf - ok
19:39:58.0329 1472        msisadrv        (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
19:39:58.0336 1472        msisadrv - ok
19:39:58.0363 1472        MSKSSRV        (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
19:39:58.0395 1472        MSKSSRV - ok
19:39:58.0409 1472        MSPCLOCK        (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
19:39:58.0446 1472        MSPCLOCK - ok
19:39:58.0460 1472        MSPQM          (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
19:39:58.0503 1472        MSPQM - ok
19:39:58.0529 1472        MsRPC          (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
19:39:58.0540 1472        MsRPC - ok
19:39:58.0556 1472        mssmbios        (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
19:39:58.0563 1472        mssmbios - ok
19:39:58.0581 1472        MSTEE          (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
19:39:58.0616 1472        MSTEE - ok
19:39:58.0631 1472        MTConfig        (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
19:39:58.0642 1472        MTConfig - ok
19:39:58.0681 1472        MTsensor        (03b7145c889603537e9ffeabb1ad1089) C:\Windows\system32\DRIVERS\ASACPI.sys
19:39:58.0698 1472        MTsensor - ok
19:39:58.0720 1472        Mup            (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
19:39:58.0735 1472        Mup - ok
19:39:58.0764 1472        NativeWifiP    (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
19:39:58.0799 1472        NativeWifiP - ok
19:39:58.0860 1472        NDIS            (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
19:39:58.0890 1472        NDIS - ok
19:39:58.0901 1472        NdisCap        (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
19:39:58.0927 1472        NdisCap - ok
19:39:58.0938 1472        NdisTapi        (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
19:39:58.0969 1472        NdisTapi - ok
19:39:59.0000 1472        Ndisuio        (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
19:39:59.0041 1472        Ndisuio - ok
19:39:59.0076 1472        NdisWan        (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
19:39:59.0106 1472        NdisWan - ok
19:39:59.0131 1472        NDProxy        (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
19:39:59.0161 1472        NDProxy - ok
19:39:59.0192 1472        NetBIOS        (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
19:39:59.0230 1472        NetBIOS - ok
19:39:59.0259 1472        NetBT          (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
19:39:59.0311 1472        NetBT - ok
19:39:59.0333 1472        nfrd960        (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
19:39:59.0340 1472        nfrd960 - ok
19:39:59.0363 1472        Npfs            (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
19:39:59.0406 1472        Npfs - ok
19:39:59.0423 1472        nsiproxy        (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
19:39:59.0459 1472        nsiproxy - ok
19:39:59.0511 1472        Ntfs            (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
19:39:59.0543 1472        Ntfs - ok
19:39:59.0558 1472        Null            (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
19:39:59.0583 1472        Null - ok
19:39:59.0622 1472        nvraid          (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
19:39:59.0631 1472        nvraid - ok
19:39:59.0655 1472        nvstor          (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
19:39:59.0664 1472        nvstor - ok
19:39:59.0690 1472        nv_agp          (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
19:39:59.0700 1472        nv_agp - ok
19:39:59.0721 1472        ohci1394        (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
19:39:59.0738 1472        ohci1394 - ok
19:39:59.0772 1472        Parport        (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
19:39:59.0790 1472        Parport - ok
19:39:59.0819 1472        partmgr        (871eadac56b0a4c6512bbe32753ccf79) C:\Windows\system32\drivers\partmgr.sys
19:39:59.0827 1472        partmgr - ok
19:39:59.0844 1472        pci            (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
19:39:59.0854 1472        pci - ok
19:39:59.0863 1472        pciide          (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
19:39:59.0870 1472        pciide - ok
19:39:59.0888 1472        pcmcia          (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
19:39:59.0897 1472        pcmcia - ok
19:39:59.0928 1472        pcouffin        (af7ce12c4f3dc8cb2b07685c916bbcfe) C:\Windows\system32\Drivers\pcouffin.sys
19:39:59.0956 1472        pcouffin - ok
19:39:59.0972 1472        pcw            (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
19:39:59.0987 1472        pcw - ok
19:40:00.0017 1472        PEAUTH          (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
19:40:00.0076 1472        PEAUTH - ok
19:40:00.0146 1472        PptpMiniport    (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
19:40:00.0202 1472        PptpMiniport - ok
19:40:00.0214 1472        Processor      (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
19:40:00.0232 1472        Processor - ok
19:40:00.0275 1472        Psched          (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
19:40:00.0325 1472        Psched - ok
19:40:00.0360 1472        ql2300          (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
19:40:00.0390 1472        ql2300 - ok
19:40:00.0402 1472        ql40xx          (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
19:40:00.0411 1472        ql40xx - ok
19:40:00.0428 1472        QWAVEdrv        (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
19:40:00.0450 1472        QWAVEdrv - ok
19:40:00.0464 1472        RasAcd          (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
19:40:00.0503 1472        RasAcd - ok
19:40:00.0521 1472        RasAgileVpn    (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
19:40:00.0547 1472        RasAgileVpn - ok
19:40:00.0578 1472        Rasl2tp        (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
19:40:00.0632 1472        Rasl2tp - ok
19:40:00.0652 1472        RasPppoe        (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
19:40:00.0677 1472        RasPppoe - ok
19:40:00.0691 1472        RasSstp        (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
19:40:00.0716 1472        RasSstp - ok
19:40:00.0752 1472        rdbss          (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
19:40:00.0807 1472        rdbss - ok
19:40:00.0817 1472        rdpbus          (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
19:40:00.0833 1472        rdpbus - ok
19:40:00.0850 1472        RDPCDD          (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
19:40:00.0876 1472        RDPCDD - ok
19:40:00.0904 1472        RDPENCDD        (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
19:40:00.0942 1472        RDPENCDD - ok
19:40:00.0960 1472        RDPREFMP        (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
19:40:00.0984 1472        RDPREFMP - ok
19:40:01.0011 1472        RDPWD          (6d76e6433574b058adcb0c50df834492) C:\Windows\system32\drivers\RDPWD.sys
19:40:01.0048 1472        RDPWD - ok
19:40:01.0078 1472        rdyboost        (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
19:40:01.0096 1472        rdyboost - ok
19:40:01.0119 1472        rspndr          (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
19:40:01.0149 1472        rspndr - ok
19:40:01.0235 1472        RTL8167        (ee082e06a82ff630351d1e0ebbd3d8d0) C:\Windows\system32\DRIVERS\Rt64win7.sys
19:40:01.0255 1472        RTL8167 - ok
19:40:01.0281 1472        sbp2port        (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
19:40:01.0291 1472        sbp2port - ok
19:40:01.0315 1472        scfilter        (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
19:40:01.0345 1472        scfilter - ok
19:40:01.0360 1472        secdrv          (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
19:40:01.0385 1472        secdrv - ok
19:40:01.0409 1472        Serenum        (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
19:40:01.0421 1472        Serenum - ok
19:40:01.0440 1472        Serial          (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
19:40:01.0463 1472        Serial - ok
19:40:01.0476 1472        sermouse        (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
19:40:01.0486 1472        sermouse - ok
19:40:01.0514 1472        sffdisk        (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
19:40:01.0546 1472        sffdisk - ok
19:40:01.0558 1472        sffp_mmc        (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
19:40:01.0569 1472        sffp_mmc - ok
19:40:01.0576 1472        sffp_sd        (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
19:40:01.0598 1472        sffp_sd - ok
19:40:01.0614 1472        sfloppy        (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
19:40:01.0634 1472        sfloppy - ok
19:40:01.0651 1472        SiSRaid2        (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
19:40:01.0659 1472        SiSRaid2 - ok
19:40:01.0671 1472        SiSRaid4        (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
19:40:01.0680 1472        SiSRaid4 - ok
19:40:01.0710 1472        Smb            (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
19:40:01.0739 1472        Smb - ok
19:40:01.0762 1472        spldr          (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
19:40:01.0768 1472        spldr - ok
19:40:01.0794 1472        srv            (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
19:40:01.0808 1472        srv - ok
19:40:01.0828 1472        srv2            (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
19:40:01.0848 1472        srv2 - ok
19:40:01.0868 1472        srvnet          (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
19:40:01.0885 1472        srvnet - ok
19:40:01.0910 1472        SSHDRV65 - ok
19:40:01.0948 1472        stexstor        (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
19:40:01.0963 1472        stexstor - ok
19:40:02.0002 1472        swenum          (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
19:40:02.0015 1472        swenum - ok
19:40:02.0084 1472        Tcpip          (fc62769e7bff2896035aeed399108162) C:\Windows\system32\drivers\tcpip.sys
19:40:02.0159 1472        Tcpip - ok
19:40:02.0182 1472        TCPIP6          (fc62769e7bff2896035aeed399108162) C:\Windows\system32\DRIVERS\tcpip.sys
19:40:02.0209 1472        TCPIP6 - ok
19:40:02.0239 1472        tcpipreg        (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
19:40:02.0287 1472        tcpipreg - ok
19:40:02.0308 1472        TDPIPE          (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
19:40:02.0323 1472        TDPIPE - ok
19:40:02.0347 1472        TDTCP          (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
19:40:02.0366 1472        TDTCP - ok
19:40:02.0398 1472        tdx            (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
19:40:02.0427 1472        tdx - ok
19:40:02.0443 1472        TermDD          (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
19:40:02.0450 1472        TermDD - ok
19:40:02.0474 1472        TFsExDisk      (48d9d00c2e0e72c3d4f52772c80355f6) C:\Windows\System32\Drivers\TFsExDisk.sys
19:40:02.0479 1472        TFsExDisk - ok
19:40:02.0511 1472        tssecsrv        (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
19:40:02.0560 1472        tssecsrv - ok
19:40:02.0591 1472        TsUsbFlt        (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
19:40:02.0623 1472        TsUsbFlt - ok
19:40:02.0678 1472        tunnel          (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
19:40:02.0728 1472        tunnel - ok
19:40:02.0739 1472        uagp35          (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
19:40:02.0746 1472        uagp35 - ok
19:40:02.0780 1472        udfs            (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
19:40:02.0825 1472        udfs - ok
19:40:02.0841 1472        uliagpkx        (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
19:40:02.0848 1472        uliagpkx - ok
19:40:02.0881 1472        umbus          (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\drivers\umbus.sys
19:40:02.0901 1472        umbus - ok
19:40:02.0917 1472        UmPass          (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
19:40:02.0933 1472        UmPass - ok
19:40:02.0961 1472        usbccgp        (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
19:40:02.0996 1472        usbccgp - ok
19:40:03.0030 1472        usbcir          (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
19:40:03.0061 1472        usbcir - ok
19:40:03.0078 1472        usbehci        (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys
19:40:03.0118 1472        usbehci - ok
19:40:03.0149 1472        usbhub          (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
19:40:03.0170 1472        usbhub - ok
19:40:03.0211 1472        usbohci        (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
19:40:03.0240 1472        usbohci - ok
19:40:03.0269 1472        usbprint        (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
19:40:03.0285 1472        usbprint - ok
19:40:03.0311 1472        usbscan        (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys
19:40:03.0329 1472        usbscan - ok
19:40:03.0357 1472        USBSTOR        (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS
19:40:03.0375 1472        USBSTOR - ok
19:40:03.0405 1472        usbuhci        (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys
19:40:03.0426 1472        usbuhci - ok
19:40:03.0470 1472        vdrvroot        (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
19:40:03.0485 1472        vdrvroot - ok
19:40:03.0503 1472        vga            (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
19:40:03.0525 1472        vga - ok
19:40:03.0547 1472        VgaSave        (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
19:40:03.0580 1472        VgaSave - ok
19:40:03.0622 1472        vhdmp          (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
19:40:03.0642 1472        vhdmp - ok
19:40:03.0708 1472        VIAHdAudAddService (712bfd5dac2668fba4a2435fb06c3d00) C:\Windows\system32\drivers\viahduaa.sys
19:40:03.0746 1472        VIAHdAudAddService - ok
19:40:03.0765 1472        viaide          (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
19:40:03.0772 1472        viaide - ok
19:40:03.0788 1472        volmgr          (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
19:40:03.0795 1472        volmgr - ok
19:40:03.0825 1472        volmgrx        (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
19:40:03.0837 1472        volmgrx - ok
19:40:03.0857 1472        volsnap        (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
19:40:03.0868 1472        volsnap - ok
19:40:03.0887 1472        vsmraid        (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
19:40:03.0896 1472        vsmraid - ok
19:40:03.0913 1472        vwifibus        (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys
19:40:03.0935 1472        vwifibus - ok
19:40:03.0952 1472        WacomPen        (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
19:40:03.0969 1472        WacomPen - ok
19:40:03.0993 1472        WANARP          (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
19:40:04.0025 1472        WANARP - ok
19:40:04.0034 1472        Wanarpv6        (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
19:40:04.0059 1472        Wanarpv6 - ok
19:40:04.0083 1472        Wd              (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
19:40:04.0090 1472        Wd - ok
19:40:04.0111 1472        Wdf01000        (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
19:40:04.0127 1472        Wdf01000 - ok
19:40:04.0155 1472        WfpLwf          (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
19:40:04.0180 1472        WfpLwf - ok
19:40:04.0193 1472        WIMMount        (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
19:40:04.0200 1472        WIMMount - ok
19:40:04.0245 1472        WinUsb          (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
19:40:04.0256 1472        WinUsb - ok
19:40:04.0307 1472        WmiAcpi        (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
19:40:04.0324 1472        WmiAcpi - ok
19:40:04.0343 1472        ws2ifsl        (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
19:40:04.0367 1472        ws2ifsl - ok
19:40:04.0401 1472        WudfPf          (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
19:40:04.0440 1472        WudfPf - ok
19:40:04.0467 1472        WUDFRd          (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
19:40:04.0504 1472        WUDFRd - ok
19:40:04.0559 1472        xusb21          (2ee48cfce7ca8e0db4c44c7476c0943b) C:\Windows\system32\DRIVERS\xusb21.sys
19:40:04.0581 1472        xusb21 - ok
19:40:04.0668 1472        {95808DC4-FA4A-4C74-92FE-5B863F82066B} (74983addca2d9618512c088d856d6615) D:\Program Files (x86)\CyberLink\PowerDVD\000.fcl
19:40:04.0680 1472        {95808DC4-FA4A-4C74-92FE-5B863F82066B} - ok
19:40:04.0700 1472        MBR (0x1B8)    (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
19:40:04.0798 1472        \Device\Harddisk0\DR0 - ok
19:40:04.0816 1472        MBR (0x1B8)    (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk1\DR1
19:40:04.0877 1472        \Device\Harddisk1\DR1 - ok
19:40:04.0881 1472        Boot (0x1200)  (436f8dc48c97a22a7989d2b0d0cb8e56) \Device\Harddisk0\DR0\Partition0
19:40:04.0882 1472        \Device\Harddisk0\DR0\Partition0 - ok
19:40:04.0908 1472        Boot (0x1200)  (625886e6efd9124654c95fd4f30320f3) \Device\Harddisk0\DR0\Partition1
19:40:04.0909 1472        \Device\Harddisk0\DR0\Partition1 - ok
19:40:04.0922 1472        Boot (0x1200)  (0b72d127af9544f98f962634d33513bd) \Device\Harddisk0\DR0\Partition2
19:40:04.0923 1472        \Device\Harddisk0\DR0\Partition2 - ok
19:40:04.0942 1472        Boot (0x1200)  (3023392efd829adbc38211306e8afcf6) \Device\Harddisk0\DR0\Partition3
19:40:04.0943 1472        \Device\Harddisk0\DR0\Partition3 - ok
19:40:04.0965 1472        Boot (0x1200)  (74a77f400a0d2c1f92f403c11839ac7d) \Device\Harddisk1\DR1\Partition0
19:40:04.0967 1472        \Device\Harddisk1\DR1\Partition0 - ok
19:40:04.0967 1472        ============================================================
19:40:04.0967 1472        Scan finished
19:40:04.0967 1472        ============================================================
19:40:04.0980 3828        Detected object count: 0
19:40:04.0980 3828        Actual detected object count: 0


cosinus 20.03.2012 16:00

Dann bitte jetzt CF ausführen:

ComboFix

Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Schliesse alle Programme, vor allem dein Antivirenprogramm und andere Hintergrundwächter sowie deinen Internetbrowser.
  • Starte combofix.exe von deinem Desktop aus, bestätige die Warnmeldungen, führe die Updates durch (falls vorgeschlagen), installiere die Wiederherstellungskonsole (falls vorgeschlagen) und lass dein System durchsuchen.
    Vermeide es auch während Combofix läuft die Maus und Tastatur zu benutzen.
  • Im Anschluss öffnet sich automatisch eine combofix.txt, diesen Inhalt bitte kopieren ([Strg]a, [Strg]c) und in deinen Beitrag einfügen ([Strg]v). Die Datei findest du außerdem unter: C:\ComboFix.txt.
Wichtiger Hinweis:
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!

Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich ziehen und eine Bereinigung der Infektion noch erschweren.

Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie

Zitat:

Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
startest du Windows dann manuell neu und die Fehlermeldungen sollten nicht mehr auftauchen.

cold_fire 21.03.2012 22:04

Einmal ComboFix log:

Code:

ComboFix 12-03-21.02 - Fabian 21.03.2012  21:46:42.1.4 - x64
Microsoft Windows 7 Home Premium  6.1.7601.1.1252.49.1031.18.4087.2910 [GMT 1:00]
ausgeführt von:: c:\users\Fabian\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((  Weitere Löschungen  ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\security\Database\tmp.edb
.
.
(((((((((((((((((((((((  Dateien erstellt von 2012-02-21 bis 2012-03-21  ))))))))))))))))))))))))))))))
.
.
2012-03-21 20:50 . 2012-03-21 20:50        --------        d-----w-        c:\users\Default\AppData\Local\temp
2012-03-20 10:59 . 2012-03-01 13:21        8643640        ----a-w-        c:\programdata\Microsoft\Windows Defender\Definition Updates\{8D7A5B2D-A6A5-4DF0-AA8F-B3965449314B}\mpengine.dll
2012-03-19 18:23 . 2012-03-19 18:23        --------        d-----w-        c:\users\Fabian\AppData\Local\VirtualStore
2012-03-19 18:20 . 2012-03-19 18:20        --------        d-----w-        C:\_OTL
2012-03-18 15:36 . 2012-03-18 15:36        592824        ----a-w-        c:\program files (x86)\Mozilla Firefox\gkmedias.dll
2012-03-18 15:36 . 2012-03-18 15:36        44472        ----a-w-        c:\program files (x86)\Mozilla Firefox\mozglue.dll
2012-03-17 02:02 . 2012-03-17 02:02        --------        d-----w-        c:\users\Default\AppData\Local\Microsoft Help
2012-03-17 01:43 . 2012-03-17 01:43        --------        d-----w-        c:\program files (x86)\Common Files\Skype
2012-03-17 00:34 . 2012-03-17 00:34        --------        d-----w-        c:\program files (x86)\ESET
2012-03-16 01:07 . 2012-03-16 01:07        --------        d-----w-        c:\users\Fabian\AppData\Roaming\Malwarebytes
2012-03-16 01:06 . 2012-03-16 01:06        --------        d-----w-        c:\programdata\Malwarebytes
2012-03-16 01:06 . 2012-03-16 01:07        --------        d-----w-        c:\program files (x86)\Malwarebytes' Anti-Malware
2012-03-16 01:06 . 2011-12-10 14:24        23152        ----a-w-        c:\windows\system32\drivers\mbam.sys
2012-03-16 01:01 . 2011-11-19 15:20        5559152        ----a-w-        c:\windows\system32\ntoskrnl.exe
2012-03-16 01:01 . 2011-11-19 14:50        3968368        ----a-w-        c:\windows\SysWow64\ntkrnlpa.exe
2012-03-16 01:01 . 2011-11-19 14:50        3913584        ----a-w-        c:\windows\SysWow64\ntoskrnl.exe
2012-03-16 00:38 . 2011-12-30 06:26        515584        ----a-w-        c:\windows\system32\timedate.cpl
2012-03-16 00:38 . 2011-12-30 05:27        478720        ----a-w-        c:\windows\SysWow64\timedate.cpl
2012-03-16 00:38 . 2012-02-10 06:36        1544192        ----a-w-        c:\windows\system32\DWrite.dll
2012-03-16 00:38 . 2012-02-10 05:38        1077248        ----a-w-        c:\windows\SysWow64\DWrite.dll
2012-03-16 00:38 . 2011-12-16 08:46        634880        ----a-w-        c:\windows\system32\msvcrt.dll
2012-03-16 00:38 . 2011-12-16 07:52        690688        ----a-w-        c:\windows\SysWow64\msvcrt.dll
2012-03-16 00:38 . 2011-12-28 03:59        498688        ----a-w-        c:\windows\system32\drivers\afd.sys
2012-03-16 00:37 . 2011-11-17 06:41        1731920        ----a-w-        c:\windows\system32\ntdll.dll
2012-03-16 00:37 . 2011-11-17 05:38        1292080        ----a-w-        c:\windows\SysWow64\ntdll.dll
2012-03-16 00:36 . 2011-11-19 14:58        77312        ----a-w-        c:\windows\system32\packager.dll
2012-03-16 00:36 . 2011-11-19 14:01        67072        ----a-w-        c:\windows\SysWow64\packager.dll
2012-03-16 00:36 . 2012-01-25 06:38        77312        ----a-w-        c:\windows\system32\rdpwsx.dll
2012-03-16 00:36 . 2012-01-25 06:38        149504        ----a-w-        c:\windows\system32\rdpcorekmts.dll
2012-03-16 00:36 . 2012-01-25 06:33        9216        ----a-w-        c:\windows\system32\rdrmemptylst.exe
2012-03-16 00:36 . 2012-02-17 06:38        1031680        ----a-w-        c:\windows\system32\rdpcore.dll
2012-03-16 00:36 . 2012-02-17 05:34        826880        ----a-w-        c:\windows\SysWow64\rdpcore.dll
2012-03-16 00:36 . 2012-02-17 04:58        210944        ----a-w-        c:\windows\system32\drivers\rdpwd.sys
2012-03-16 00:36 . 2012-02-17 04:57        23552        ----a-w-        c:\windows\system32\drivers\tdtcp.sys
2012-03-15 20:50 . 2012-03-15 20:50        --------        d-----w-        c:\program files (x86)\NVIDIA Corporation
2012-03-07 21:44 . 2004-07-15 23:20        69715        ----a-w-        c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\ctor.dll
2012-03-07 21:44 . 2004-07-15 23:19        266240        ----a-w-        c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iscript.dll
2012-03-07 21:44 . 2004-07-15 23:18        172032        ----a-w-        c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iuser.dll
2012-03-07 21:44 . 2004-07-15 23:18        5632        ----a-w-        c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\DotNetInstaller.exe
2012-03-07 21:43 . 2012-03-07 21:43        180356        ----a-w-        c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iGdi.dll
2012-03-07 21:43 . 2004-07-15 23:20        733184        ----a-w-        c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\iKernel.dll
2012-03-07 21:43 . 2012-03-07 21:43        303236        ----a-w-        c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\10\01\Intel32\setup.dll
2012-03-07 13:51 . 2012-03-07 13:51        8192        ----a-r-        c:\users\Fabian\AppData\Roaming\Microsoft\Installer\{D0B36BAF-3E9D-423E-8821-ED238C18DB0A}\IconD0B36BAF3.exe
2012-03-07 13:51 . 2012-03-07 13:51        6144        ----a-r-        c:\users\Fabian\AppData\Roaming\Microsoft\Installer\{D0B36BAF-3E9D-423E-8821-ED238C18DB0A}\Icon83F12F734.exe
2012-03-07 13:51 . 2012-03-07 13:51        11264        ----a-r-        c:\users\Fabian\AppData\Roaming\Microsoft\Installer\{D0B36BAF-3E9D-423E-8821-ED238C18DB0A}\Icon8F99E711.exe
2012-02-21 22:36 . 2012-02-21 22:36        --------        d-----w-        c:\users\Fabian\AppData\Local\Microsoft Help
.
.
.
((((((((((((((((((((((((((((((((((((  Find3M Bericht  ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-03-16 01:46 . 2011-06-01 17:21        414368        ----a-w-        c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-02-23 09:18 . 2011-01-18 12:13        279656        ------w-        c:\windows\system32\MpSigStub.exe
2012-02-15 23:36 . 2011-11-16 01:57        132320        ----a-w-        c:\windows\system32\drivers\avipbb.sys
2012-02-07 13:40 . 2009-08-18 11:49        564632        ----a-w-        c:\programdata\Microsoft\IdentityCRL\production\wlidui.dll
2012-02-07 13:40 . 2009-08-18 10:24        18328        ----a-w-        c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
.
.
((((((((((((((((((((((((((((  Autostartpunkte der Registrierung  ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"="c:\program files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" [2009-08-20 2363392]
"Steam"="e:\steam\steam.exe" [2011-08-24 1242448]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"="c:\program files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" [2010-01-18 2787840]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2009-08-31 36864]
"GrooveMonitor"="d:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"BDRegion"="c:\program files (x86)\Cyberlink\Shared Files\brs.exe" [2009-09-04 75048]
"RemoteControl"="d:\program files (x86)\CyberLink\PowerDVD\PDVDServ.exe" [2009-04-16 87336]
"LanguageShortcut"="d:\program files (x86)\CyberLink\PowerDVD\Language\Language.exe" [2009-04-16 62760]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
"TkBellExe"="c:\programdata\Real\update\realsched.exe" [2011-06-20 273544]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"AVMWlanClient"="c:\program files (x86)\avmwlanstick\wlangui.exe" [2010-10-22 2105344]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-11-09 343168]
"LogMeIn Hamachi Ui"="d:\program files (x86)\Hamachi\hamachi-2-ui.exe" [2011-08-04 1955208]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2011-10-19 258512]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
WinTV Recording Status..lnk - c:\program files (x86)\WinTV\WinTV7\WinTVTray.exe [2010-5-2 83456]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages        REG_MULTI_SZ          kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]
"ATICustomerCare"="c:\program files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe"
"QuickTime Task"="d:\program files (x86)\QuickTime\QTTask.exe" -atboottime
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe"
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"TkBellExe"="c:\program files (x86)\Real\update\realsched.exe"  -osboot
"DivXUpdate"="c:\program files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
"DivX Download Manager"="c:\program files (x86)\DivX\DivX Plus Web Player\DDmService.exe" start
.
R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-02-29 158856]
R3 avmeject;AVM Eject;c:\windows\system32\drivers\avmeject.sys [x]
R3 DAUpdaterSvc;Dragon Age: Origins - Inhaltsupdater;c:\program files (x86)\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe [2009-12-15 25832]
R3 gupdatem;Google Update-Dienst (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [x]
R3 pcouffin;VSO Software pcouffin;c:\windows\system32\Drivers\pcouffin.sys [x]
R3 TFsExDisk;TFsExDisk;c:\windows\System32\Drivers\TFsExDisk.sys [2010-06-14 16448]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WPFFontCache_v0400;WPFFontCache_v0400;c:\windows\Microsoft.NET\Framework64\v4.0.30128\WPF\WPFFontCache_v0400.exe [x]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [x]
S1 HCW88AUD;Hauppauge WinTV 88x Audio Capture;c:\windows\system32\drivers\hcw88aud.sys [x]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2011-10-19 86224]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;d:\program files (x86)\Hamachi\hamachi-2.exe [2011-08-04 2329480]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [x]
S3 FWLANUSB;AVM FRITZ!WLAN;c:\windows\system32\DRIVERS\fwlanusb.sys [x]
S3 hcw88bda;Hauppauge WinTV 88x DVB Tuner/Demod;c:\windows\system32\drivers\hcw88bda.sys [x]
S3 hcw88rc5;Hauppauge WinTV 88x IR Decoder;c:\windows\system32\Drivers\hcw88rc5.sys [x]
S3 HCW88TSE;Hauppauge WinTV 88x MPEG/TS Capture;c:\windows\system32\drivers\hcw88tse.sys [x]
S3 HCW88TUNE;Hauppauge WinTV 88x Tuner;c:\windows\system32\drivers\hcw88tun.sys [x]
S3 hcw88vid;Hauppauge WinTV 88x Video;c:\windows\system32\drivers\hcw88vid.sys [x]
S3 HCW88XBAR;Hauppauge WinTV 88x Crossbar;c:\windows\system32\drivers\HCW88BAR.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [x]
.
.
--- Andere Dienste/Treiber im Speicher ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2009-08-20 11:24        451872        ----a-w-        c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{2D46B6DC-2207-486B-B523-A557E6D54B47}]
2010-11-20 12:17        302592        ----a-w-        c:\windows\System32\cmd.exe
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{A8D647C8-65AC-409F-B7B2-3C0FEE1A32F2}]
2010-02-16 17:02        114688        ----a-w-        c:\program files (x86)\PixiePack Codec Pack\InstallerHelper.exe
.
Inhalt des "geplante Tasks" Ordners
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"XboxStat"="c:\program files\Microsoft Xbox 360 Accessories\XboxStat.exe" [2009-10-01 825184]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Zusätzlicher Suchlauf -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page =
mStart Page =
mLocal Page =
mSearch Bar =
uInternet Settings,ProxyOverride = fritz.box
IE: Free YouTube Download - c:\users\Fabian\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm
IE: Nach Microsoft E&xel exportieren - d:\progra~1\MICROS~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.178.1
FF - ProfilePath - c:\users\Fabian\AppData\Roaming\Mozilla\Firefox\Profiles\y8pjkzvj.default\
FF - prefs.js: browser.search.defaulturl -
FF - prefs.js: browser.startup.homepage - www.google.de
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe
AddRemove-Uninstall_is1 - c:\program files (x86)\Common Files\DVDVideoSoft\unins000.exe
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\{95808DC4-FA4A-4C74-92FE-5B863F82066B}]
"ImagePath"="\??\d:\program files (x86)\CyberLink\PowerDVD\000.fcl"
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\S-1-5-21-2216256275-4032692977-789257032-1003\Software\SecuROM\License information*]
"datasecu"=hex:fa,db,ec,4a,71,c9,23,db,f3,b4,70,d6,e8,60,eb,32,05,90,47,23,50,
  98,16,d0,e0,b8,e6,94,6b,61,8f,b7,25,e6,b6,38,00,52,b0,41,35,84,d1,0d,6d,98,\
"rkeysecu"=hex:eb,13,1b,74,4a,97,f1,16,3b,7d,52,f7,ce,67,ec,5e
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10v_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10v_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10v.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10v.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10v.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10v.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Weitere laufende Prozesse ------------------------
.
c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe
c:\program files (x86)\avmwlanstick\WlanNetService.exe
c:\progra~2\WinTV\TVServer\HAUPPA~1.EXE
c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe
c:\progra~2\WinTV\TVServer\CAPTUR~3.EXE
.
**************************************************************************
.
Zeit der Fertigstellung: 2012-03-21  21:55:28 - PC wurde neu gestartet
ComboFix-quarantined-files.txt  2012-03-21 20:55
.
Vor Suchlauf: 13 Verzeichnis(se), 81.226.567.680 Bytes frei
Nach Suchlauf: 18 Verzeichnis(se), 81.128.558.592 Bytes frei
.
- - End Of File - - 1B5D89A93329FD9C9E7AF08FF35EA417

Gruß, Fabian

cosinus 22.03.2012 11:52

Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.

Hinweis: Bitte den Virenscanner abstellen bevor du aswMBR ausführst, denn v.a. Avira meldet darin oft einen Fehalalrm!
  • Starte die aswMBR.exe Vista und Win7 User aswMBR per Rechtsklick "als Administrator ausführen"
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen) Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort. Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte es erneut nicht klappen teile mir das bitte mit.

cold_fire 22.03.2012 17:55

Hier die Datei

Code:

aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-03-22 17:44:16
-----------------------------
17:44:16.410    OS Version: Windows x64 6.1.7601 Service Pack 1
17:44:16.410    Number of processors: 4 586 0x1E05
17:44:16.411    ComputerName: FABIAN-PC  UserName: Fabian
17:44:16.711    Initialize success
17:46:02.797    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
17:46:02.802    Disk 0 Vendor: WDC_WD5001AALS-00L3B2 01.03B01 Size: 476940MB BusType: 3
17:46:02.805    Disk 1  \Device\Harddisk1\DR1 -> \Device\Ide\IdeDeviceP0T1L0-2
17:46:02.808    Disk 1 Vendor: WDC_WD1001FALS-00E8B0 05.00K05 Size: 953869MB BusType: 3
17:46:02.815    Disk 0 MBR read successfully
17:46:02.818    Disk 0 MBR scan
17:46:02.822    Disk 0 Windows 7 default MBR code
17:46:02.827    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS          100 MB offset 2048
17:46:02.839    Disk 0 Partition 2 00    07    HPFS/NTFS NTFS      144900 MB offset 206848
17:46:02.853    Disk 0 Partition 3 00    07    HPFS/NTFS NTFS      145000 MB offset 296962048
17:46:02.873    Disk 0 Partition 4 00    07    HPFS/NTFS NTFS      186938 MB offset 593922048
17:46:02.898    Disk 0 scanning C:\Windows\system32\drivers
17:46:07.560    Service scanning
17:46:17.844    Modules scanning
17:46:17.856    Disk 0 trace - called modules:
17:46:17.873    ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys ataport.SYS pciide.sys PCIIDEX.SYS hal.dll atapi.sys
17:46:17.880    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004dde060]
17:46:17.887    3 CLASSPNP.SYS[fffff8800165143f] -> nt!IofCallDriver -> [0xfffffa8004a9e520]
17:46:17.892    5 ACPI.sys[fffff88000f237a1] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0xfffffa8004aa0060]
17:46:17.897    Scan finished successfully
17:46:39.870    Disk 0 MBR has been saved successfully to "C:\Users\Fabian\Desktop\MBR.dat"
17:46:39.874    The log file has been saved successfully to "C:\Users\Fabian\Desktop\aswMBR.txt"

Kann man schon sagen, in wie weit noch eine infektion vorliegt (noch auffälligkeiten und Prozesse vorhanden, oder nurnoch Prüfungen zur sicherheit?!), bzw. wielange das procedere noch ca dauert?

Grüße, Fabian

cosinus 23.03.2012 20:48

Sieht ok aus wir sind fast fertig. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SASW und poste die Logs.
Denk dran beide Tools zu updaten vor dem Scan!!

cold_fire 26.03.2012 17:27

SASW:

Code:

SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com

Generated 03/25/2012 at 11:26 PM

Application Version : 5.0.1146

Core Rules Database Version : 8377
Trace Rules Database Version: 6189

Scan type      : Complete Scan
Total Scan Time : 01:38:11

Operating System Information
Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601)
UAC On - Limited User

Memory items scanned      : 538
Memory threats detected  : 0
Registry items scanned    : 66762
Registry threats detected : 0
File items scanned        : 229680
File threats detected    : 534

Adware.Tracking Cookie
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\3BKXNUIG.txt [ /ad3.adfarm1.adition.com ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\0IFXNWCH.txt [ /ad2.adfarm1.adition.com ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\45MJXESH.txt [ /serving-sys.com ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\67OESV10.txt [ /bs.serving-sys.com ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\Y729APFG.txt [ /questionmarket.com ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\W1BWVSA7.txt [ /ads.creative-serving.com ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\JUQ86DAF.txt [ /dyntracker.com ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\MXKDS5XM.txt [ /apmebf.com ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\5W9XY0TV.txt [ /smartadserver.com ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\9ZJMZCBH.txt [ /adfarm1.adition.com ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\5ZOWQ67I.txt [ /fastclick.net ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\H8V7MGZE.txt [ /doubleclick.net ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\5RRGPA2T.txt [ /c.atdmt.com ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\BZ6DN3DQ.txt [ /atdmt.com ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\2071EVVH.txt [ /c1.atdmt.com ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\C729N1HI.txt [ /mediaplex.com ]
        C:\Users\Fabian\AppData\Roaming\Microsoft\Windows\Cookies\AXNB5H54.txt [ /imrworldwide.com ]
        C:\USERS\FABIAN\Cookies\3BKXNUIG.txt [ Cookie:fabian@ad3.adfarm1.adition.com/ ]
        C:\USERS\FABIAN\Cookies\0IFXNWCH.txt [ Cookie:fabian@ad2.adfarm1.adition.com/ ]
        C:\USERS\FABIAN\Cookies\45MJXESH.txt [ Cookie:fabian@serving-sys.com/ ]
        C:\USERS\FABIAN\Cookies\67OESV10.txt [ Cookie:fabian@bs.serving-sys.com/ ]
        C:\USERS\FABIAN\Cookies\Y729APFG.txt [ Cookie:fabian@questionmarket.com/ ]
        C:\USERS\FABIAN\Cookies\JUQ86DAF.txt [ Cookie:fabian@dyntracker.com/ ]
        C:\USERS\FABIAN\Cookies\MXKDS5XM.txt [ Cookie:fabian@apmebf.com/ ]
        C:\USERS\FABIAN\Cookies\5W9XY0TV.txt [ Cookie:fabian@smartadserver.com/ ]
        C:\USERS\FABIAN\Cookies\9ZJMZCBH.txt [ Cookie:fabian@adfarm1.adition.com/ ]
        C:\USERS\FABIAN\Cookies\5ZOWQ67I.txt [ Cookie:fabian@fastclick.net/ ]
        C:\USERS\FABIAN\Cookies\BZ6DN3DQ.txt [ Cookie:fabian@atdmt.com/ ]
        C:\USERS\FABIAN\Cookies\2071EVVH.txt [ Cookie:fabian@c1.atdmt.com/ ]
        C:\USERS\FABIAN\Cookies\C729N1HI.txt [ Cookie:fabian@mediaplex.com/ ]
        C:\USERS\FABIAN\Cookies\AXNB5H54.txt [ Cookie:fabian@imrworldwide.com/cgi-bin ]
        spenden.wikimedia.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        spenden.wikimedia.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .apmebf.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .mediaplex.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .specificclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .amazon-adsystem.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .amazon-adsystem.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .atdmt.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        eas.apm.emediate.eu [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .fastclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .imrworldwide.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .imrworldwide.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ubisoft.missioncontrol.global-media.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        fl01.ct2.comclick.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .e-2dj6wbkywkdpclp.stats.esomniture.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ad-emea.doubleclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adserver.adtechus.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .at.atwola.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .uk.at.atwola.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .advertising.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .advertising.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .advertising.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ar.atwola.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .interclick.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .interclick.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ru4.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adbrite.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        counters.gigya.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .count.spring.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tradedoubler.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tradedoubler.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tto2.traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adxvalue.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        fl01.ct2.comclick.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .eyewonder.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .insightexpressai.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .insightexpressai.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .insightexpressai.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .zedo.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .yieldmanager.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ad.adnet.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        forexyard.advertserve.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        tracking.sim-technik.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .xiti.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        fl01.ct2.comclick.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .unrulymedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .olympiaverlag.122.2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .conrad.122.2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .doubleclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .game-advertising-online.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .eaeacom.112.2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ru4.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .insightexpressai.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .insightexpressai.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .insightexpressai.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .insightexpressai.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tacoda.at.atwola.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tacoda.at.atwola.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .at.atwola.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adxvalue.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .harrenmedianetwork.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .c1.atdmt.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        studivz.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .apmebf.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        fl01.ct2.comclick.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .getclicky.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .static.getclicky.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        in.getclicky.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .im.banner.t-online.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .statcounter.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        adbuzzz.rotator.hadj7.adjuggler.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        adbuzzz.rotator.hadj7.adjuggler.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        mediapartner.bigpoint.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .pro-market.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        adserver.bravado.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        httptrack.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        httptrack.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        media.gan-online.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .aim4media.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ads.247activemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        adsrv1.admediate.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ad.adnet.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ad.adnet.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .www.burstnet.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .lfstmedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .lfstmedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .lfstmedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .apmebf.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .lfstmedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .sexfortunegames.newgrounds.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .sexfortunegames.newgrounds.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        track.adform.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tracking.mindshare.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        tracking.mindshare.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        tracking.mindshare.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        tracking.mindshare.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        tracking.mindshare.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        tracking.mindshare.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .a.revenuemax.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.republicofadvertising.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        eas.apm.emediate.eu [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .zedo.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        eas.apm.emediate.eu [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tracking.mindshare.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adxvalue.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adxpose.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad.zanox.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .hightraffic.hugoboss.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .hightraffic.hugoboss.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        server.adform.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.mediamarkt.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        tracking.hostgator.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        media-mgmt.armorgames.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad.adition.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad.adition.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        count.asnetworks.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        dc.tremormedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .overture.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .overture.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .questionmarket.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        track.effiliation.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        track.effiliation.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        track.effiliation.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        track.effiliation.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        track.effiliation.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        track.effiliation.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .stats.complex.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .stats.complex.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .burstnet.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .burstnet.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        gr.burstnet.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .atdmt.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .c.atdmt.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .c.atdmt.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .account.live.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .account.live.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .paypal.112.2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .mediaplex.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.clickmanage.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.clickmanage.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        adserver.ps3m.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .112.2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .komtrack.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .komtrack.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tracking.booming.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        tracking.booming.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .im.banner.t-online.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .im.banner.t-online.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        statse.webtrendslive.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .eyewonder.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .www.traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ads.pointroll.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        tracking.mlsat03.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .im.banner.t-online.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tradedoubler.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .at.atwola.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adbrite.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adbrite.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adbrite.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adbrite.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        e2.emediate.se [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        e2.emediate.se [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        eas.apm.emediate.eu [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        partners.webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .clickfuse.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .clickfuse.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .clickfuse.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        track.adform.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad.servestats.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .unister-adservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .media6degrees.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .im.banner.t-online.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adviva.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .doubleclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        stats.computecmedia.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .aka-cdn-ns.adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .lucidmedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .fastclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        server.adform.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .bs.serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .2o7.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        edates.traffective-tracking.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        edates.traffective-tracking.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        edates.traffective-tracking.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        edates.traffective-tracking.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .mediaplex.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .account.swtor.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .im.banner.t-online.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .collective-media.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tribalfusion.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .casalemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .casalemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .casalemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .casalemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .casalemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .casalemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adbrite.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adbrite.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .media6degrees.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .media6degrees.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .media6degrees.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .server.cpmstar.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adlegend.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adlegend.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tradetracker.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .quartermedia.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .quartermedia.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tradedoubler.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.usenext.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        sega.missioncontrol.global-media.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .traffictrack.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad1.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        eas.apm.emediate.eu [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ww251.smartadserver.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.zanox-affiliate.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tradedoubler.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tradedoubler.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .unister-adservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .clicksor.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .clicksor.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .clicksor.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .myroitracking.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .advertising.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .advertising.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad4.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad.adserver01.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad.yieldmanager.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .questionmarket.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .questionmarket.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .questionmarket.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        adx.chip.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        adx.chip.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        adx.chip.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .apmebf.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .zanox-affiliate.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        accounts.google.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ad-emea.doubleclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ad-emea.doubleclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .ad-emea.doubleclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad.zanox.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad3.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .bs.serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        track.prd1.netshelter.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .kontera.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .weborama.fr [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .lanairlines.solution.weborama.fr [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .lanairlines.solution.weborama.fr [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .lanairlines.solution.weborama.fr [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .lanairlines.solution.weborama.fr [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        ad2.adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .serving-sys.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .zanox.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .dyntracker.com [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        track.adform.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adform.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .doubleclick.net [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]
        .adtech.de [ C:\USERS\FABIAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\Y8PJKZVJ.DEFAULT\COOKIES.SQLITE ]

und Malwarebytes:

Code:

Malwarebytes Anti-Malware 1.60.1.1000
www.malwarebytes.org

Datenbank Version: v2012.03.26.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Fabian :: FABIAN-PC [Administrator]

26.03.2012 17:35:11
mbam-log-2012-03-26 (17-35-11).txt

Art des Suchlaufs: Vollständiger Suchlauf
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 390745
Laufzeit: 45 Minute(n), 29 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)

(Ende)


cosinus 26.03.2012 18:36

Sieht ok aus, da wurden nur Cookies gefunden.
Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie )

Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?

cold_fire 26.03.2012 21:22

Kann nicht klagen, dass es Probleme gäbe und Funde bleiben, glücklicherweise, auch aus.
Dann bedanke ich mich, für deine schnelle, freundliche und kompetente Hilfe und hoffe, dass ich sie nicht nochmal in Anspruch nehmen muss.

Vielen Dank:daumenhoc ,
Fabian

P.S.: Ihr könntet bei gelegenheit die Anleitung von SASW mit neuen/aktuellen Bilddateien erneuern. hatte eine leicht abgeänderte Benutzeroberfläche.

cosinus 27.03.2012 10:21

Dann wären wir durch! :abklatsch:

Die Programme, die hier zum Einsatz kamen, können alle wieder runter. CF kann über Start, Ausführen mit combofix /uninstall entfernt werden. Melde dich falls es da Fehlermeldungen zu gibt.
Malwarebytes zu behalten ist kein Fehler. Kannst ja 1x im Monat damit scannen, aber immer vorher ans Update denken.

Bitte abschließend die Updates prüfen, unten mein Leitfaden dazu. Um in Zukunft die Aktualität der installierten Programme besser im Überblick zu halten, kannst du zB Secunia PSI verwenden.
Für noch mehr Sicherheit solltest Du nach der beseitigten Infektion auch möglichst alle Passwörter ändern.


Microsoftupdate

Windows XP: Besuch mit dem IE die MS-Updateseite und lass Dir alle wichtigen Updates installieren.

Windows Vista/7: Anleitung Windows-Update


PDF-Reader aktualisieren
Ein veralteter AdobeReader stellt ein großes Sicherheitsrisiko dar. Du solltest daher besser alte Versionen vom AdobeReader über Systemsteuerung => Software bzw. Programme und Funktionen deinstallieren, indem Du dort auf "Adobe Reader x.0" klickst und das Programm entfernst. (falls du AdobeReader installiert hast)

Ich empfehle einen alternativen PDF-Reader wie PDF Xchange Viewer, SumatraPDF oder Foxit PDF Reader, die sind sehr viel schlanker und flotter als der AdobeReader.

Bitte überprüf bei der Gelegenheit auch die Aktualität des Flashplayers:

Adobe - Andere Version des Adobe Flash Player installieren

Notfalls kann man auch von Chip.de runterladen => http://filepony.de/?q=Flash+Player

Natürlich auch darauf achten, dass andere installierte Browser wie zB Firefox, Opera oder Chrome aktuell sind.


Java-Update
Veraltete Java-Installationen sind ein Sicherheitsrisiko, daher solltest Du die alten Versionen löschen (falls vorhanden, am besten mit JavaRa) und auf die neuste aktualisieren. Beende dazu alle Programme (v.a. die Browser), klick danach auf Start, Systemsteuerung, Software und deinstalliere darüber alle aufgelisteten Java-Versionen. Lad Dir danach von hier das aktuelle Java SE Runtime Environment (JRE) herunter und installiere es.


Alle Zeitangaben in WEZ +1. Es ist jetzt 14:54 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58