Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Log-Analyse und Auswertung (https://www.trojaner-board.de/log-analyse-auswertung/)
-   -   Mystart Incredibar (https://www.trojaner-board.de/118692-mystart-incredibar.html)

Darwin 15.07.2012 17:45

Code:

All processes killed
========== OTL ==========
Registry key HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\SearchScopes\{52403564-EB1D-4FFF-8D1D-70272E9700A9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52403564-EB1D-4FFF-8D1D-70272E9700A9}\ not found.
Registry key HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\SearchScopes\{584758EB-E772-413D-A2D2-CCB8CB44A3D8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{584758EB-E772-413D-A2D2-CCB8CB44A3D8}\ not found.
Registry key HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\SearchScopes\{5D72D9B0-231A-4CB0-A676-0525728CE656}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D72D9B0-231A-4CB0-A676-0525728CE656}\ not found.
Registry key HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\SearchScopes\{C9A8C8CA-BA55-46E3-9D6B-DA30C9326755}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C9A8C8CA-BA55-46E3-9D6B-DA30C9326755}\ not found.
Registry key HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\SearchScopes\{F44702F3-85FD-456E-82C9-56E6DE38678A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F44702F3-85FD-456E-82C9-56E6DE38678A}\ not found.
Prefs.js: 0 removed from network.proxy.type
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found.
Registry value HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
Registry value HKEY_USERS\S-1-5-21-3038251257-2812385310-3806119334-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{C424171E-592A-415A-9EB1-DFD6D95D3530} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C424171E-592A-415A-9EB1-DFD6D95D3530}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\ConsentPromptBehaviorAdmin deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\ConsentPromptBehaviorUser deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom\\AutoRun|DWORD:1 /E : value set successfully!
C:\autoexec.bat moved successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9f174409-f1a5-11df-80f8-6c626d5ba775}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9f174409-f1a5-11df-80f8-6c626d5ba775}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9f174409-f1a5-11df-80f8-6c626d5ba775}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9f174409-f1a5-11df-80f8-6c626d5ba775}\ not found.
File F:\pushinst.exe not found.
========== FILES ==========
C:\Config.Msi\573b2.rbf moved successfully.
C:\user.js moved successfully.
C:\Windows\System32\ZSHP1018.EXE moved successfully.
C:\ProgramData\PKP_DLdu.DAT moved successfully.
C:\Users\Ulrike\AppData\Roaming\.# folder moved successfully.
File\Folder C:\Program Files\Common Files\Spigot not found.
C:\Windows\Installer\573e9.msi moved successfully.
========== COMMANDS ==========
 
[EMPTYTEMP]
 
User: All Users
 
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56504 bytes
 
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
 
User: Klaus
->Temp folder emptied: 245724268 bytes
->Temporary Internet Files folder emptied: 203307361 bytes
->Java cache emptied: 14914726 bytes
->FireFox cache emptied: 234114146 bytes
->Opera cache emptied: 191878 bytes
->Flash cache emptied: 59636 bytes
 
User: Public
 
User: Ulrike
->Temp folder emptied: 41691390 bytes
->Temporary Internet Files folder emptied: 12802129 bytes
->Java cache emptied: 16238596 bytes
->FireFox cache emptied: 160175239 bytes
->Flash cache emptied: 74834 bytes
 
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 218115698 bytes
RecycleBin emptied: 0 bytes
 
Total Files Cleaned = 1,094.00 mb
 
 
[EMPTYFLASH]
 
User: All Users
 
User: Default
->Flash cache emptied: 0 bytes
 
User: Default User
->Flash cache emptied: 0 bytes
 
User: Klaus
->Flash cache emptied: 0 bytes
 
User: Public
 
User: Ulrike
->Flash cache emptied: 0 bytes
 
Total Flash Files Cleaned = 0.00 mb
 
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
 
OTL by OldTimer - Version 3.2.54.0 log created on 07152012_183809

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...


cosinus 15.07.2012 18:52

Ich brauch den Quarantäneordner von OTL. Bitte folgendes machen:

1.) GANZ WICHTIG!! Virenscanner deaktivieren, der darf das Packen nicht beeinflussen!
2.) Ordner MovedFiles in C:\_OTL in eine Datei zippen
3.) Die erstellte ZIP-Datei hier hochladen => http://www.trojaner-board.de/54791-a...ner-board.html

Hinweis: Die Datei bitte wie in der Anleitung zum UpChannel angegeben auch da hochladen. Bitte NICHT die ZIP-Datei hier als Anhang in den Thread posten!

4.) Wenns erfolgreich war Bescheid sagen
5.) Erst dann wieder den Virenscanner einschalten

Darwin 15.07.2012 19:11

Datei hochgeladen

cosinus 15.07.2012 20:18

Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten Anleitung und Downloadlink hier => http://www.trojaner-board.de/82358-t...entfernen.html

Hinweis: Bitte den Virenscanner abstellen bevor du den TDSS-Killer ausführst, denn v.a. Avira meldet im TDSS-Tool oft einen Fehalalrm!

Das Tool so einstellen wie unten im Bild angegeben - klick auf change parameters und setze die Haken wie im folgenden Screenshot abgebildet,
Dann auf Start Scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten.
Wenn du das Log nicht findest oder den Inhalt kopieren und in dein Posting übertragen kannst, dann schau bitte direkt auf deiner Windows-Systempartition (meistens Laufwerk C:) nach, da speichert der TDSS-Killer seine Logs.

Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten!

http://saved.im/mtkwmtcxexhp/setting...8_16-25-18.jpg

Darwin 15.07.2012 20:54

Code:

21:50:27.0855 3664        TDSS rootkit removing tool 2.7.45.0 Jul  9 2012 12:46:35
21:50:28.0058 3664        ============================================================
21:50:28.0058 3664        Current date / time: 2012/07/15 21:50:28.0058
21:50:28.0058 3664        SystemInfo:
21:50:28.0058 3664       
21:50:28.0058 3664        OS Version: 6.1.7601 ServicePack: 1.0
21:50:28.0058 3664        Product type: Workstation
21:50:28.0058 3664        ComputerName: DESKTOP
21:50:28.0058 3664        UserName: Klaus
21:50:28.0058 3664        Windows directory: C:\Windows
21:50:28.0058 3664        System windows directory: C:\Windows
21:50:28.0058 3664        Processor architecture: Intel x86
21:50:28.0058 3664        Number of processors: 2
21:50:28.0058 3664        Page size: 0x1000
21:50:28.0058 3664        Boot type: Normal boot
21:50:28.0058 3664        ============================================================
21:50:29.0088 3664        Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
21:50:29.0103 3664        ============================================================
21:50:29.0103 3664        \Device\Harddisk0\DR0:
21:50:29.0119 3664        MBR partitions:
21:50:29.0119 3664        \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
21:50:29.0119 3664        \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x6F4D3000
21:50:29.0119 3664        \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x6F505800, BlocksNum 0x5000000
21:50:29.0119 3664        ============================================================
21:50:29.0150 3664        C: <-> \Device\Harddisk0\DR0\Partition1
21:50:29.0197 3664        D: <-> \Device\Harddisk0\DR0\Partition2
21:50:29.0197 3664        ============================================================
21:50:29.0197 3664        Initialize success
21:50:29.0197 3664        ============================================================
21:50:36.0389 2584        ============================================================
21:50:36.0389 2584        Scan started
21:50:36.0389 2584        Mode: Manual; SigCheck; TDLFS;
21:50:36.0389 2584        ============================================================
21:50:37.0637 2584        1394ohci        (1b133875b8aa8ac48969bd3458afe9f5) C:\Windows\system32\drivers\1394ohci.sys
21:50:37.0746 2584        1394ohci - ok
21:50:37.0793 2584        ACPI            (cea80c80bed809aa0da6febc04733349) C:\Windows\system32\drivers\ACPI.sys
21:50:37.0808 2584        ACPI - ok
21:50:37.0824 2584        AcpiPmi        (1efbc664abff416d1d07db115dcb264f) C:\Windows\system32\drivers\acpipmi.sys
21:50:37.0886 2584        AcpiPmi - ok
21:50:37.0995 2584        AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
21:50:38.0011 2584        AdobeARMservice - ok
21:50:38.0105 2584        AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
21:50:38.0136 2584        AdobeFlashPlayerUpdateSvc - ok
21:50:38.0183 2584        adp94xx        (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
21:50:38.0214 2584        adp94xx - ok
21:50:38.0245 2584        adpahci        (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
21:50:38.0261 2584        adpahci - ok
21:50:38.0292 2584        adpu320        (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
21:50:38.0307 2584        adpu320 - ok
21:50:38.0323 2584        AeLookupSvc    (8b5eefeec1e6d1a72a06c526628ad161) C:\Windows\System32\aelupsvc.dll
21:50:38.0370 2584        AeLookupSvc - ok
21:50:38.0417 2584        AFD            (9ebbba55060f786f0fcaa3893bfa2806) C:\Windows\system32\drivers\afd.sys
21:50:38.0463 2584        AFD - ok
21:50:38.0573 2584        Agile1Password  (adc2ce8edcdc709c2af01df3eb12dbfa) C:\Program Files\1Password\Agile1pService.exe
21:50:38.0604 2584        Agile1Password - ok
21:50:38.0619 2584        agp440          (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\drivers\agp440.sys
21:50:38.0635 2584        agp440 - ok
21:50:38.0666 2584        aic78xx        (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
21:50:38.0682 2584        aic78xx - ok
21:50:38.0713 2584        ALG            (18a54e132947cd98fea9accc57f98f13) C:\Windows\System32\alg.exe
21:50:38.0760 2584        ALG - ok
21:50:38.0760 2584        aliide          (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\drivers\aliide.sys
21:50:38.0775 2584        aliide - ok
21:50:38.0807 2584        AMD External Events Utility (60201ad353105d8c6796c1b69e6c49f0) C:\Windows\system32\atiesrxx.exe
21:50:38.0853 2584        AMD External Events Utility - ok
21:50:38.0869 2584        amdagp          (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\drivers\amdagp.sys
21:50:38.0885 2584        amdagp - ok
21:50:38.0916 2584        amdide          (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\drivers\amdide.sys
21:50:38.0931 2584        amdide - ok
21:50:38.0947 2584        AmdK8          (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
21:50:38.0994 2584        AmdK8 - ok
21:50:39.0275 2584        amdkmdag        (51610b74a9a1d84dc86fce1019beaff4) C:\Windows\system32\DRIVERS\atikmdag.sys
21:50:39.0477 2584        amdkmdag - ok
21:50:39.0587 2584        amdkmdap        (cd1d86ab81eece67d7bd6f7ef9786ccc) C:\Windows\system32\DRIVERS\atikmpag.sys
21:50:39.0618 2584        amdkmdap - ok
21:50:39.0649 2584        AmdPPM          (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
21:50:39.0680 2584        AmdPPM - ok
21:50:39.0711 2584        amdsata        (d320bf87125326f996d4904fe24300fc) C:\Windows\system32\drivers\amdsata.sys
21:50:39.0727 2584        amdsata - ok
21:50:39.0743 2584        amdsbs          (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
21:50:39.0758 2584        amdsbs - ok
21:50:39.0758 2584        amdxata        (46387fb17b086d16dea267d5be23a2f2) C:\Windows\system32\drivers\amdxata.sys
21:50:39.0774 2584        amdxata - ok
21:50:39.0836 2584        AntiVirSchedulerService (466a0d95960dad3222c896d2cea99993) C:\Program Files\Avira\AntiVir Desktop\sched.exe
21:50:39.0852 2584        AntiVirSchedulerService - ok
21:50:39.0899 2584        AntiVirService  (a489be6bb0aa1ff406b488b60542314b) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
21:50:39.0914 2584        AntiVirService - ok
21:50:39.0930 2584        AppID          (aea177f783e20150ace5383ee368da19) C:\Windows\system32\drivers\appid.sys
21:50:40.0023 2584        AppID - ok
21:50:40.0039 2584        AppIDSvc        (62a9c86cb6085e20db4823e4e97826f5) C:\Windows\System32\appidsvc.dll
21:50:40.0070 2584        AppIDSvc - ok
21:50:40.0101 2584        Appinfo        (fb1959012294d6ad43e5304df65e3c26) C:\Windows\System32\appinfo.dll
21:50:40.0133 2584        Appinfo - ok
21:50:40.0164 2584        arc            (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
21:50:40.0179 2584        arc - ok
21:50:40.0195 2584        arcsas          (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
21:50:40.0211 2584        arcsas - ok
21:50:40.0273 2584        aspnet_state    (39cdcb109bf200cc8a05b9c7e6272d11) C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
21:50:40.0289 2584        aspnet_state - ok
21:50:40.0304 2584        AsyncMac        (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
21:50:40.0398 2584        AsyncMac - ok
21:50:40.0429 2584        atapi          (338c86357871c167a96ab976519bf59e) C:\Windows\system32\drivers\atapi.sys
21:50:40.0429 2584        atapi - ok
21:50:40.0491 2584        AtiHdmiService  (8df873d0587596c1d35a9cececc61da1) C:\Windows\system32\drivers\AtiHdmi.sys
21:50:40.0507 2584        AtiHdmiService - ok
21:50:40.0554 2584        AudioEndpointBuilder (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll
21:50:40.0585 2584        AudioEndpointBuilder - ok
21:50:40.0601 2584        Audiosrv        (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll
21:50:40.0616 2584        Audiosrv - ok
21:50:40.0663 2584        avgntflt        (d5541f0afb767e85fc412fc609d96a74) C:\Windows\system32\DRIVERS\avgntflt.sys
21:50:40.0679 2584        avgntflt - ok
21:50:40.0710 2584        avipbb          (7d967a682d4694df7fa57d63a2db01fe) C:\Windows\system32\DRIVERS\avipbb.sys
21:50:40.0725 2584        avipbb - ok
21:50:40.0741 2584        avkmgr          (271cfd1a989209b1964e24d969552bf7) C:\Windows\system32\DRIVERS\avkmgr.sys
21:50:40.0757 2584        avkmgr - ok
21:50:40.0788 2584        avmeject        (263cf9d248fd5e020a1333ed4f7eaa88) C:\Windows\system32\drivers\avmeject.sys
21:50:40.0819 2584        avmeject ( UnsignedFile.Multi.Generic ) - warning
21:50:40.0819 2584        avmeject - detected UnsignedFile.Multi.Generic (1)
21:50:40.0850 2584        AxInstSV        (6e30d02aac9cac84f421622e3a2f6178) C:\Windows\System32\AxInstSV.dll
21:50:40.0913 2584        AxInstSV - ok
21:50:40.0959 2584        b06bdrv        (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
21:50:41.0006 2584        b06bdrv - ok
21:50:41.0037 2584        b57nd60x        (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
21:50:41.0053 2584        b57nd60x - ok
21:50:41.0100 2584        BDESVC          (ee1e9c3bb8228ae423dd38db69128e71) C:\Windows\System32\bdesvc.dll
21:50:41.0147 2584        BDESVC - ok
21:50:41.0147 2584        Beep            (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
21:50:41.0178 2584        Beep - ok
21:50:41.0240 2584        BFE            (1e2bac209d184bb851e1a187d8a29136) C:\Windows\System32\bfe.dll
21:50:41.0271 2584        BFE - ok
21:50:41.0318 2584        BITS            (e585445d5021971fae10393f0f1c3961) C:\Windows\System32\qmgr.dll
21:50:41.0349 2584        BITS - ok
21:50:41.0412 2584        blbdrive        (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
21:50:41.0412 2584        blbdrive - ok
21:50:41.0443 2584        bowser          (8f2da3028d5fcbd1a060a3de64cd6506) C:\Windows\system32\DRIVERS\bowser.sys
21:50:41.0490 2584        bowser - ok
21:50:41.0505 2584        BrFiltLo        (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
21:50:41.0537 2584        BrFiltLo - ok
21:50:41.0552 2584        BrFiltUp        (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
21:50:41.0583 2584        BrFiltUp - ok
21:50:41.0615 2584        Browser        (6e11f33d14d020f58d5e02e4d67dfa19) C:\Windows\System32\browser.dll
21:50:41.0661 2584        Browser - ok
21:50:41.0677 2584        Brserid        (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
21:50:41.0724 2584        Brserid - ok
21:50:41.0739 2584        BrSerWdm        (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
21:50:41.0771 2584        BrSerWdm - ok
21:50:41.0802 2584        BrUsbMdm        (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
21:50:41.0833 2584        BrUsbMdm - ok
21:50:41.0849 2584        BrUsbSer        (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
21:50:41.0880 2584        BrUsbSer - ok
21:50:41.0895 2584        BTHMODEM        (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
21:50:41.0911 2584        BTHMODEM - ok
21:50:41.0942 2584        bthserv        (1df19c96eef6c29d1c3e1a8678e07190) C:\Windows\system32\bthserv.dll
21:50:41.0973 2584        bthserv - ok
21:50:42.0020 2584        cdfs            (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
21:50:42.0051 2584        cdfs - ok
21:50:42.0098 2584        cdrom          (be167ed0fdb9c1fa1133953c18d5a6c9) C:\Windows\system32\drivers\cdrom.sys
21:50:42.0129 2584        cdrom - ok
21:50:42.0161 2584        CertPropSvc    (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll
21:50:42.0192 2584        CertPropSvc - ok
21:50:42.0192 2584        circlass        (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
21:50:42.0239 2584        circlass - ok
21:50:42.0270 2584        CLFS            (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
21:50:42.0285 2584        CLFS - ok
21:50:42.0332 2584        clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:50:42.0348 2584        clr_optimization_v2.0.50727_32 - ok
21:50:42.0395 2584        clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
21:50:42.0410 2584        clr_optimization_v4.0.30319_32 - ok
21:50:42.0426 2584        CmBatt          (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
21:50:42.0441 2584        CmBatt - ok
21:50:42.0473 2584        cmdide          (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\drivers\cmdide.sys
21:50:42.0488 2584        cmdide - ok
21:50:42.0519 2584        CNG            (247b4ce2dab1160cd422d532d5241e1f) C:\Windows\system32\Drivers\cng.sys
21:50:42.0551 2584        CNG - ok
21:50:42.0566 2584        Compbatt        (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
21:50:42.0582 2584        Compbatt - ok
21:50:42.0629 2584        CompositeBus    (cbe8c58a8579cfe5fccf809e6f114e89) C:\Windows\system32\drivers\CompositeBus.sys
21:50:42.0644 2584        CompositeBus - ok
21:50:42.0660 2584        COMSysApp - ok
21:50:42.0691 2584        crcdisk        (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
21:50:42.0691 2584        crcdisk - ok
21:50:42.0738 2584        CryptSvc        (06e771aa596b8761107ab57e99f128d7) C:\Windows\system32\cryptsvc.dll
21:50:42.0769 2584        CryptSvc - ok
21:50:42.0816 2584        DcomLaunch      (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll
21:50:42.0847 2584        DcomLaunch - ok
21:50:42.0863 2584        defragsvc      (8d6e10a2d9a5eed59562d9b82cf804e1) C:\Windows\System32\defragsvc.dll
21:50:42.0909 2584        defragsvc - ok
21:50:42.0941 2584        DfsC            (f024449c97ec1e464aaffda18593db88) C:\Windows\system32\Drivers\dfsc.sys
21:50:42.0972 2584        DfsC - ok
21:50:43.0003 2584        dg_ssudbus      (73fc5bc52572084ec1241514cf6230a0) C:\Windows\system32\DRIVERS\ssudbus.sys
21:50:43.0019 2584        dg_ssudbus - ok
21:50:43.0097 2584        Dhcp            (e9e01eb683c132f7fa27cd607b8a2b63) C:\Windows\system32\dhcpcore.dll
21:50:43.0128 2584        Dhcp - ok
21:50:43.0143 2584        discache        (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
21:50:43.0175 2584        discache - ok
21:50:43.0190 2584        Disk            (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
21:50:43.0206 2584        Disk - ok
21:50:43.0237 2584        Dnscache        (33ef4861f19a0736b11314aad9ae28d0) C:\Windows\System32\dnsrslvr.dll
21:50:43.0331 2584        Dnscache - ok
21:50:43.0362 2584        dot3svc        (366ba8fb4b7bb7435e3b9eacb3843f67) C:\Windows\System32\dot3svc.dll
21:50:43.0393 2584        dot3svc - ok
21:50:43.0424 2584        DPS            (8ec04ca86f1d68da9e11952eb85973d6) C:\Windows\system32\dps.dll
21:50:43.0455 2584        DPS - ok
21:50:43.0502 2584        drmkaud        (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
21:50:43.0533 2584        drmkaud - ok
21:50:43.0580 2584        DXGKrnl        (23f5d28378a160352ba8f817bd8c71cb) C:\Windows\System32\drivers\dxgkrnl.sys
21:50:43.0611 2584        DXGKrnl - ok
21:50:43.0658 2584        EapHost        (8600142fa91c1b96367d3300ad0f3f3a) C:\Windows\System32\eapsvc.dll
21:50:43.0689 2584        EapHost - ok
21:50:43.0939 2584        ebdrv          (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
21:50:44.0048 2584        ebdrv - ok
21:50:44.0142 2584        EFS            (81951f51e318aecc2d68559e47485cc4) C:\Windows\System32\lsass.exe
21:50:44.0173 2584        EFS - ok
21:50:44.0251 2584        ehRecvr        (a8c362018efc87beb013ee28f29c0863) C:\Windows\ehome\ehRecvr.exe
21:50:44.0282 2584        ehRecvr - ok
21:50:44.0313 2584        ehSched        (d389bff34f80caede417bf9d1507996a) C:\Windows\ehome\ehsched.exe
21:50:44.0360 2584        ehSched - ok
21:50:44.0438 2584        elxstor        (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
21:50:44.0454 2584        elxstor - ok
21:50:44.0485 2584        ErrDev          (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\drivers\errdev.sys
21:50:44.0501 2584        ErrDev - ok
21:50:44.0563 2584        EventSystem    (f6916efc29d9953d5d0df06882ae8e16) C:\Windows\system32\es.dll
21:50:44.0594 2584        EventSystem - ok
21:50:44.0610 2584        exfat          (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
21:50:44.0641 2584        exfat - ok
21:50:44.0657 2584        fastfat        (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
21:50:44.0688 2584        fastfat - ok
21:50:44.0750 2584        Fax            (967ea5b213e9984cbe270205df37755b) C:\Windows\system32\fxssvc.exe
21:50:44.0781 2584        Fax - ok
21:50:44.0797 2584        fdc            (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
21:50:44.0813 2584        fdc - ok
21:50:44.0828 2584        fdPHost        (f3222c893bd2f5821a0179e5c71e88fb) C:\Windows\system32\fdPHost.dll
21:50:44.0859 2584        fdPHost - ok
21:50:44.0875 2584        FDResPub        (7dbe8cbfe79efbdeb98c9fb08d3a9a5b) C:\Windows\system32\fdrespub.dll
21:50:44.0922 2584        FDResPub - ok
21:50:44.0937 2584        FileInfo        (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
21:50:44.0953 2584        FileInfo - ok
21:50:44.0969 2584        Filetrace      (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
21:50:45.0015 2584        Filetrace - ok
21:50:45.0031 2584        flpydisk        (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
21:50:45.0062 2584        flpydisk - ok
21:50:45.0078 2584        FltMgr          (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
21:50:45.0109 2584        FltMgr - ok
21:50:45.0171 2584        FontCache      (b3a5ec6b6b6673db7e87c2bcdbddc074) C:\Windows\system32\FntCache.dll
21:50:45.0218 2584        FontCache - ok
21:50:45.0265 2584        FontCache3.0.0.0 (e56f39f6b7fda0ac77a79b0fd3de1a2f) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
21:50:45.0281 2584        FontCache3.0.0.0 - ok
21:50:45.0312 2584        FsDepends      (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
21:50:45.0327 2584        FsDepends - ok
21:50:45.0343 2584        Fs_Rec          (7dae5ebcc80e45d3253f4923dc424d05) C:\Windows\system32\drivers\Fs_Rec.sys
21:50:45.0359 2584        Fs_Rec - ok
21:50:45.0390 2584        fvevol          (8a73e79089b282100b9393b644cb853b) C:\Windows\system32\DRIVERS\fvevol.sys
21:50:45.0421 2584        fvevol - ok
21:50:45.0468 2584        fwlanusbn      (fc06a5be1ab381cd47af3d69006e88f0) C:\Windows\system32\DRIVERS\fwlanusbn.sys
21:50:45.0499 2584        fwlanusbn - ok
21:50:45.0530 2584        gagp30kx        (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
21:50:45.0546 2584        gagp30kx - ok
21:50:45.0608 2584        gpsvc          (e897eaf5ed6ba41e081060c9b447a673) C:\Windows\System32\gpsvc.dll
21:50:45.0671 2584        gpsvc - ok
21:50:45.0795 2584        gupdate        (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
21:50:45.0811 2584        gupdate - ok
21:50:45.0827 2584        gupdatem        (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
21:50:45.0842 2584        gupdatem - ok
21:50:45.0905 2584        gusvc          (c1b577b2169900f4cf7190c39f085794) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
21:50:45.0920 2584        gusvc - ok
21:50:45.0951 2584        hcw85cir        (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
21:50:45.0983 2584        hcw85cir - ok
21:50:46.0014 2584        HdAudAddService (3530cad25deba7dc7de8bb51632cbc5f) C:\Windows\system32\drivers\HdAudio.sys
21:50:46.0045 2584        HdAudAddService - ok
21:50:46.0092 2584        HDAudBus        (9036377b8a6c15dc2eec53e489d159b5) C:\Windows\system32\drivers\HDAudBus.sys
21:50:46.0107 2584        HDAudBus - ok
21:50:46.0123 2584        HidBatt        (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
21:50:46.0139 2584        HidBatt - ok
21:50:46.0170 2584        HidBth          (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
21:50:46.0201 2584        HidBth - ok
21:50:46.0217 2584        HidIr          (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
21:50:46.0248 2584        HidIr - ok
21:50:46.0263 2584        hidserv        (2bc6f6a1992b3a77f5f41432ca6b3b6b) C:\Windows\system32\hidserv.dll
21:50:46.0295 2584        hidserv - ok
21:50:46.0310 2584        HidUsb          (25072fb35ac90b25f9e4e3bacf774102) C:\Windows\system32\DRIVERS\hidusb.sys
21:50:46.0326 2584        HidUsb - ok
21:50:46.0373 2584        hkmsvc          (196b4e3f4cccc24af836ce58facbb699) C:\Windows\system32\kmsvc.dll
21:50:46.0404 2584        hkmsvc - ok
21:50:46.0435 2584        HomeGroupListener (6658f4404de03d75fe3ba09f7aba6a30) C:\Windows\system32\ListSvc.dll
21:50:46.0482 2584        HomeGroupListener - ok
21:50:46.0638 2584        HomeGroupProvider (dbc02d918fff1cad628acbe0c0eaa8e8) C:\Windows\system32\provsvc.dll
21:50:46.0669 2584        HomeGroupProvider - ok
21:50:46.0763 2584        hpqcxs08        (0a3c6aa4a9fc38c20ba4eac2c3351c05) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
21:50:46.0794 2584        hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning
21:50:46.0794 2584        hpqcxs08 - detected UnsignedFile.Multi.Generic (1)
21:50:46.0825 2584        HpSAMD          (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\drivers\HpSAMD.sys
21:50:46.0841 2584        HpSAMD - ok
21:50:46.0903 2584        HTTP            (871917b07a141bff43d76d8844d48106) C:\Windows\system32\drivers\HTTP.sys
21:50:46.0950 2584        HTTP - ok
21:50:46.0950 2584        hwpolicy        (0c4e035c7f105f1299258c90886c64c5) C:\Windows\system32\drivers\hwpolicy.sys
21:50:46.0965 2584        hwpolicy - ok
21:50:46.0997 2584        i8042prt        (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\drivers\i8042prt.sys
21:50:47.0028 2584        i8042prt - ok
21:50:47.0059 2584        iaStor          (26541a068572f650a2fa490726fe81be) C:\Windows\system32\DRIVERS\iaStor.sys
21:50:47.0075 2584        iaStor - ok
21:50:47.0168 2584        IAStorDataMgrSvc (31a0e93cdf29007d6c6fffb632f375ed) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
21:50:47.0168 2584        IAStorDataMgrSvc - ok
21:50:47.0215 2584        iaStorV        (5cd5f9a5444e6cdcb0ac89bd62d8b76e) C:\Windows\system32\drivers\iaStorV.sys
21:50:47.0246 2584        iaStorV - ok
21:50:47.0293 2584        IDriverT        (1cf03c69b49acb70c722df92755c0c8c) C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
21:50:47.0309 2584        IDriverT ( UnsignedFile.Multi.Generic ) - warning
21:50:47.0309 2584        IDriverT - detected UnsignedFile.Multi.Generic (1)
21:50:47.0418 2584        idsvc          (c521d7eb6497bb1af6afa89e322fb43c) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
21:50:47.0480 2584        idsvc - ok
21:50:47.0995 2584        igfx            (ad626f6964f4d364d226c39e06872dd3) C:\Windows\system32\DRIVERS\igdkmd32.sys
21:50:48.0120 2584        igfx - ok
21:50:48.0213 2584        iirsp          (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
21:50:48.0229 2584        iirsp - ok
21:50:48.0291 2584        IKEEXT          (f95622f161474511b8d80d6b093aa610) C:\Windows\System32\ikeext.dll
21:50:48.0338 2584        IKEEXT - ok
21:50:48.0557 2584        IntcAzAudAddService (f4427e5df32cde359b2e2e5512d18001) C:\Windows\system32\drivers\RTKVHDA.sys
21:50:48.0619 2584        IntcAzAudAddService - ok
21:50:48.0759 2584        intelide        (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\drivers\intelide.sys
21:50:48.0775 2584        intelide - ok
21:50:48.0822 2584        intelppm        (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
21:50:48.0822 2584        intelppm - ok
21:50:48.0853 2584        IPBusEnum      (acb364b9075a45c0736e5c47be5cae19) C:\Windows\system32\ipbusenum.dll
21:50:48.0900 2584        IPBusEnum - ok
21:50:48.0915 2584        IpFilterDriver  (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
21:50:48.0931 2584        IpFilterDriver - ok
21:50:48.0978 2584        iphlpsvc        (4d65a07b795d6674312f879d09aa7663) C:\Windows\System32\iphlpsvc.dll
21:50:49.0025 2584        iphlpsvc - ok
21:50:49.0040 2584        IPMIDRV        (4bd7134618c1d2a27466a099062547bf) C:\Windows\system32\drivers\IPMIDrv.sys
21:50:49.0071 2584        IPMIDRV - ok
21:50:49.0087 2584        IPNAT          (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
21:50:49.0134 2584        IPNAT - ok
21:50:49.0149 2584        IRENUM          (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
21:50:49.0181 2584        IRENUM - ok
21:50:49.0181 2584        isapnp          (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\drivers\isapnp.sys
21:50:49.0196 2584        isapnp - ok
21:50:49.0227 2584        iScsiPrt        (cb7a9abb12b8415bce5d74994c7ba3ae) C:\Windows\system32\drivers\msiscsi.sys
21:50:49.0243 2584        iScsiPrt - ok
21:50:49.0274 2584        kbdclass        (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\DRIVERS\kbdclass.sys
21:50:49.0290 2584        kbdclass - ok
21:50:49.0321 2584        kbdhid          (3d9f0ebf350edcfd6498057301455964) C:\Windows\system32\DRIVERS\kbdhid.sys
21:50:49.0337 2584        kbdhid - ok
21:50:49.0352 2584        KeyIso          (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:50:49.0368 2584        KeyIso - ok
21:50:49.0399 2584        KSecDD          (b7895b4182c0d16f6efadeb8081e8d36) C:\Windows\system32\Drivers\ksecdd.sys
21:50:49.0415 2584        KSecDD - ok
21:50:49.0430 2584        KSecPkg        (d30159ac9237519fbc62c6ec247d2d46) C:\Windows\system32\Drivers\ksecpkg.sys
21:50:49.0446 2584        KSecPkg - ok
21:50:49.0477 2584        KtmRm          (89a7b9cc98d0d80c6f31b91c0a310fcd) C:\Windows\system32\msdtckrm.dll
21:50:49.0524 2584        KtmRm - ok
21:50:49.0571 2584        LanmanServer    (d64af876d53eca3668bb97b51b4e70ab) C:\Windows\system32\srvsvc.dll
21:50:49.0586 2584        LanmanServer - ok
21:50:49.0617 2584        LanmanWorkstation (58405e4f68ba8e4057c6e914f326aba2) C:\Windows\System32\wkssvc.dll
21:50:49.0649 2584        LanmanWorkstation - ok
21:50:49.0680 2584        lltdio          (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
21:50:49.0727 2584        lltdio - ok
21:50:49.0758 2584        lltdsvc        (5700673e13a2117fa3b9020c852c01e2) C:\Windows\System32\lltdsvc.dll
21:50:49.0789 2584        lltdsvc - ok
21:50:49.0805 2584        lmhosts        (55ca01ba19d0006c8f2639b6c045e08b) C:\Windows\System32\lmhsvc.dll
21:50:49.0836 2584        lmhosts - ok
21:50:49.0867 2584        LSI_FC          (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
21:50:49.0883 2584        LSI_FC - ok
21:50:49.0914 2584        LSI_SAS        (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
21:50:49.0929 2584        LSI_SAS - ok
21:50:49.0961 2584        LSI_SAS2        (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
21:50:49.0976 2584        LSI_SAS2 - ok
21:50:49.0992 2584        LSI_SCSI        (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
21:50:50.0007 2584        LSI_SCSI - ok
21:50:50.0039 2584        luafv          (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
21:50:50.0070 2584        luafv - ok
21:50:50.0085 2584        Mcx2Svc        (bfb9ee8ee977efe85d1a3105abef6dd1) C:\Windows\system32\Mcx2Svc.dll
21:50:50.0117 2584        Mcx2Svc - ok
21:50:50.0117 2584        megasas        (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
21:50:50.0148 2584        megasas - ok
21:50:50.0179 2584        MegaSR          (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
21:50:50.0210 2584        MegaSR - ok
21:50:50.0226 2584        MMCSS          (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
21:50:50.0273 2584        MMCSS - ok
21:50:50.0288 2584        Modem          (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
21:50:50.0319 2584        Modem - ok
21:50:50.0351 2584        monitor        (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
21:50:50.0366 2584        monitor - ok
21:50:50.0397 2584        mouclass        (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\DRIVERS\mouclass.sys
21:50:50.0413 2584        mouclass - ok
21:50:50.0429 2584        mouhid          (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
21:50:50.0460 2584        mouhid - ok
21:50:50.0475 2584        mountmgr        (fc8771f45ecccfd89684e38842539b9b) C:\Windows\system32\drivers\mountmgr.sys
21:50:50.0491 2584        mountmgr - ok
21:50:50.0569 2584        MozillaMaintenance (15d5398eed42c2504bb3d4fc875c15d1) C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
21:50:50.0585 2584        MozillaMaintenance - ok
21:50:50.0616 2584        mpio            (2d699fb6e89ce0d8da14ecc03b3edfe0) C:\Windows\system32\drivers\mpio.sys
21:50:50.0631 2584        mpio - ok
21:50:50.0663 2584        mpsdrv          (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
21:50:50.0678 2584        mpsdrv - ok
21:50:50.0756 2584        MpsSvc          (9835584e999d25004e1ee8e5f3e3b881) C:\Windows\system32\mpssvc.dll
21:50:50.0803 2584        MpsSvc - ok
21:50:50.0819 2584        MRxDAV          (ceb46ab7c01c9f825f8cc6babc18166a) C:\Windows\system32\drivers\mrxdav.sys
21:50:50.0850 2584        MRxDAV - ok
21:50:50.0897 2584        mrxsmb          (5d16c921e3671636c0eba3bbaac5fd25) C:\Windows\system32\DRIVERS\mrxsmb.sys
21:50:50.0928 2584        mrxsmb - ok
21:50:50.0959 2584        mrxsmb10        (6d17a4791aca19328c685d256349fefc) C:\Windows\system32\DRIVERS\mrxsmb10.sys
21:50:50.0975 2584        mrxsmb10 - ok
21:50:50.0990 2584        mrxsmb20        (b81f204d146000be76651a50670a5e9e) C:\Windows\system32\DRIVERS\mrxsmb20.sys
21:50:51.0021 2584        mrxsmb20 - ok
21:50:51.0037 2584        msahci          (012c5f4e9349e711e11e0f19a8589f0a) C:\Windows\system32\drivers\msahci.sys
21:50:51.0053 2584        msahci - ok
21:50:51.0099 2584        msdsm          (55055f8ad8be27a64c831322a780a228) C:\Windows\system32\drivers\msdsm.sys
21:50:51.0115 2584        msdsm - ok
21:50:51.0131 2584        MSDTC          (e1bce74a3bd9902b72599c0192a07e27) C:\Windows\System32\msdtc.exe
21:50:51.0162 2584        MSDTC - ok
21:50:51.0193 2584        Msfs            (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
21:50:51.0224 2584        Msfs - ok
21:50:51.0240 2584        mshidkmdf      (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
21:50:51.0271 2584        mshidkmdf - ok
21:50:51.0287 2584        msisadrv        (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\drivers\msisadrv.sys
21:50:51.0287 2584        msisadrv - ok
21:50:51.0333 2584        MSiSCSI        (90f7d9e6b6f27e1a707d4a297f077828) C:\Windows\system32\iscsiexe.dll
21:50:51.0365 2584        MSiSCSI - ok
21:50:51.0365 2584        msiserver - ok
21:50:51.0380 2584        MSKSSRV        (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
21:50:51.0427 2584        MSKSSRV - ok
21:50:51.0427 2584        MSPCLOCK        (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
21:50:51.0458 2584        MSPCLOCK - ok
21:50:51.0474 2584        MSPQM          (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
21:50:51.0505 2584        MSPQM - ok
21:50:51.0521 2584        MsRPC          (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
21:50:51.0536 2584        MsRPC - ok
21:50:51.0614 2584        mssmbios        (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\drivers\mssmbios.sys
21:50:51.0630 2584        mssmbios - ok
21:50:51.0645 2584        MSTEE          (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
21:50:51.0677 2584        MSTEE - ok
21:50:51.0692 2584        MTConfig        (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
21:50:51.0723 2584        MTConfig - ok
21:50:51.0739 2584        Mup            (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
21:50:51.0739 2584        Mup - ok
21:50:51.0801 2584        napagent        (61d57a5d7c6d9afe10e77dae6e1b445e) C:\Windows\system32\qagentRT.dll
21:50:51.0848 2584        napagent - ok
21:50:51.0895 2584        NativeWifiP    (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
21:50:51.0911 2584        NativeWifiP - ok
21:50:51.0973 2584        NDIS            (e7c54812a2aaf43316eb6930c1ffa108) C:\Windows\system32\drivers\ndis.sys
21:50:52.0004 2584        NDIS - ok
21:50:52.0020 2584        NdisCap        (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
21:50:52.0051 2584        NdisCap - ok
21:50:52.0067 2584        NdisTapi        (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
21:50:52.0098 2584        NdisTapi - ok
21:50:52.0129 2584        Ndisuio        (d8a65dafb3eb41cbb622745676fcd072) C:\Windows\system32\DRIVERS\ndisuio.sys
21:50:52.0145 2584        Ndisuio - ok
21:50:52.0176 2584        NdisWan        (38fbe267e7e6983311179230facb1017) C:\Windows\system32\DRIVERS\ndiswan.sys
21:50:52.0207 2584        NdisWan - ok
21:50:52.0207 2584        NDProxy        (a4bdc541e69674fbff1a8ff00be913f2) C:\Windows\system32\drivers\NDProxy.sys
21:50:52.0238 2584        NDProxy - ok
21:50:52.0270 2584        NetBIOS        (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
21:50:52.0301 2584        NetBIOS - ok
21:50:52.0332 2584        NetBT          (280122ddcf04b378edd1ad54d71c1e54) C:\Windows\system32\DRIVERS\netbt.sys
21:50:52.0363 2584        NetBT - ok
21:50:52.0379 2584        Netlogon        (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:50:52.0394 2584        Netlogon - ok
21:50:52.0426 2584        Netman          (7cccfca7510684768da22092d1fa4db2) C:\Windows\System32\netman.dll
21:50:52.0457 2584        Netman - ok
21:50:52.0504 2584        netprofm        (8c338238c16777a802d6a9211eb2ba50) C:\Windows\System32\netprofm.dll
21:50:52.0550 2584        netprofm - ok
21:50:52.0613 2584        NetTcpPortSharing (f476ec40033cdb91efbe73eb99b8362d) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:50:52.0628 2584        NetTcpPortSharing - ok
21:50:52.0660 2584        nfrd960        (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
21:50:52.0675 2584        nfrd960 - ok
21:50:52.0706 2584        NlaSvc          (912084381d30d8b89ec4e293053f4710) C:\Windows\System32\nlasvc.dll
21:50:52.0753 2584        NlaSvc - ok
21:50:52.0769 2584        Npfs            (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
21:50:52.0800 2584        Npfs - ok
21:50:52.0831 2584        nsi            (ba387e955e890c8a88306d9b8d06bf17) C:\Windows\system32\nsisvc.dll
21:50:52.0847 2584        nsi - ok
21:50:52.0862 2584        nsiproxy        (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
21:50:52.0909 2584        nsiproxy - ok
21:50:53.0003 2584        Ntfs            (81189c3d7763838e55c397759d49007a) C:\Windows\system32\drivers\Ntfs.sys
21:50:53.0050 2584        Ntfs - ok
21:50:53.0143 2584        Null            (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
21:50:53.0190 2584        Null - ok
21:50:53.0221 2584        nvraid          (b3e25ee28883877076e0e1ff877d02e0) C:\Windows\system32\drivers\nvraid.sys
21:50:53.0237 2584        nvraid - ok
21:50:53.0252 2584        nvstor          (4380e59a170d88c4f1022eff6719a8a4) C:\Windows\system32\drivers\nvstor.sys
21:50:53.0268 2584        nvstor - ok
21:50:53.0299 2584        nv_agp          (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\drivers\nv_agp.sys
21:50:53.0315 2584        nv_agp - ok
21:50:53.0346 2584        ohci1394        (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\drivers\ohci1394.sys
21:50:53.0362 2584        ohci1394 - ok
21:50:53.0408 2584        p2pimsvc        (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
21:50:53.0440 2584        p2pimsvc - ok
21:50:53.0471 2584        p2psvc          (59c3ddd501e39e006dac31bf55150d91) C:\Windows\system32\p2psvc.dll
21:50:53.0486 2584        p2psvc - ok
21:50:53.0518 2584        Parport        (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
21:50:53.0533 2584        Parport - ok
21:50:53.0564 2584        partmgr        (3f34a1b4c5f6475f320c275e63afce9b) C:\Windows\system32\drivers\partmgr.sys
21:50:53.0580 2584        partmgr - ok
21:50:53.0596 2584        Parvdm          (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
21:50:53.0627 2584        Parvdm - ok
21:50:53.0658 2584        PcaSvc          (358ab7956d3160000726574083dfc8a6) C:\Windows\System32\pcasvc.dll
21:50:53.0674 2584        PcaSvc - ok
21:50:53.0689 2584        pci            (673e55c3498eb970088e812ea820aa8f) C:\Windows\system32\drivers\pci.sys
21:50:53.0705 2584        pci - ok
21:50:53.0705 2584        pciide          (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\drivers\pciide.sys
21:50:53.0736 2584        pciide - ok
21:50:53.0767 2584        pcmcia          (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
21:50:53.0783 2584        pcmcia - ok
21:50:53.0798 2584        pcw            (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
21:50:53.0798 2584        pcw - ok
21:50:53.0861 2584        PEAUTH          (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
21:50:53.0908 2584        PEAUTH - ok
21:50:54.0095 2584        pla            (414bba67a3ded1d28437eb66aeb8a720) C:\Windows\system32\pla.dll
21:50:54.0157 2584        pla - ok
21:50:54.0298 2584        PlugPlay        (ec7bc28d207da09e79b3e9faf8b232ca) C:\Windows\system32\umpnpmgr.dll
21:50:54.0329 2584        PlugPlay - ok
21:50:54.0360 2584        PNRPAutoReg    (63ff8572611249931eb16bb8eed6afc8) C:\Windows\system32\pnrpauto.dll
21:50:54.0391 2584        PNRPAutoReg - ok
21:50:54.0422 2584        PNRPsvc        (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
21:50:54.0422 2584        PNRPsvc - ok
21:50:54.0469 2584        PolicyAgent    (53946b69ba0836bd95b03759530c81ec) C:\Windows\System32\ipsecsvc.dll
21:50:54.0516 2584        PolicyAgent - ok
21:50:54.0563 2584        Power          (f87d30e72e03d579a5199ccb3831d6ea) C:\Windows\system32\umpo.dll
21:50:54.0594 2584        Power - ok
21:50:54.0656 2584        PptpMiniport    (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
21:50:54.0703 2584        PptpMiniport - ok
21:50:54.0703 2584        Processor      (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
21:50:54.0719 2584        Processor - ok
21:50:54.0750 2584        ProfSvc        (43ca4ccc22d52fb58e8988f0198851d0) C:\Windows\system32\profsvc.dll
21:50:54.0766 2584        ProfSvc - ok
21:50:54.0781 2584        ProtectedStorage (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:50:54.0797 2584        ProtectedStorage - ok
21:50:54.0812 2584        Psched          (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
21:50:54.0844 2584        Psched - ok
21:50:54.0890 2584        PSI_SVC_2      (a6a7ad767bf5141665f5c675f671b3e1) c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
21:50:54.0906 2584        PSI_SVC_2 - ok
21:50:55.0015 2584        ql2300          (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
21:50:55.0062 2584        ql2300 - ok
21:50:55.0218 2584        ql40xx          (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
21:50:55.0249 2584        ql40xx - ok
21:50:55.0265 2584        QWAVE          (31ac809e7707eb580b2bdb760390765a) C:\Windows\system32\qwave.dll
21:50:55.0296 2584        QWAVE - ok
21:50:55.0327 2584        QWAVEdrv        (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
21:50:55.0343 2584        QWAVEdrv - ok
21:50:55.0358 2584        RasAcd          (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
21:50:55.0390 2584        RasAcd - ok
21:50:55.0421 2584        RasAgileVpn    (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
21:50:55.0436 2584        RasAgileVpn - ok
21:50:55.0452 2584        RasAuto        (a60f1839849c0c00739787fd5ec03f13) C:\Windows\System32\rasauto.dll
21:50:55.0483 2584        RasAuto - ok
21:50:55.0499 2584        Rasl2tp        (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
21:50:55.0530 2584        Rasl2tp - ok
21:50:55.0561 2584        RasMan          (cb9e04dc05eacf5b9a36ca276d475006) C:\Windows\System32\rasmans.dll
21:50:55.0608 2584        RasMan - ok
21:50:55.0624 2584        RasPppoe        (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
21:50:55.0655 2584        RasPppoe - ok
21:50:55.0686 2584        RasSstp        (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
21:50:55.0717 2584        RasSstp - ok
21:50:55.0764 2584        rdbss          (d528bc58a489409ba40334ebf96a311b) C:\Windows\system32\DRIVERS\rdbss.sys
21:50:55.0795 2584        rdbss - ok
21:50:55.0826 2584        rdpbus          (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
21:50:55.0842 2584        rdpbus - ok
21:50:55.0858 2584        RDPCDD          (23dae03f29d253ae74c44f99e515f9a1) C:\Windows\system32\DRIVERS\RDPCDD.sys
21:50:55.0889 2584        RDPCDD - ok
21:50:55.0920 2584        RDPENCDD        (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
21:50:55.0951 2584        RDPENCDD - ok
21:50:55.0967 2584        RDPREFMP        (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
21:50:55.0998 2584        RDPREFMP - ok
21:50:56.0045 2584        RDPWD          (f031683e6d1fea157abb2ff260b51e61) C:\Windows\system32\drivers\RDPWD.sys
21:50:56.0076 2584        RDPWD - ok
21:50:56.0107 2584        rdyboost        (518395321dc96fe2c9f0e96ac743b656) C:\Windows\system32\drivers\rdyboost.sys
21:50:56.0123 2584        rdyboost - ok
21:50:56.0154 2584        RemoteAccess    (7b5e1419717fac363a31cc302895217a) C:\Windows\System32\mprdim.dll
21:50:56.0185 2584        RemoteAccess - ok
21:50:56.0216 2584        RemoteRegistry  (cb9a8683f4ef2bf99e123d79950d7935) C:\Windows\system32\regsvc.dll
21:50:56.0263 2584        RemoteRegistry - ok
21:50:56.0326 2584        RMCAST          (906dcfc5ebf4ec0433f8d4fffb0ba334) C:\Windows\system32\DRIVERS\RMCAST.sys
21:50:56.0357 2584        RMCAST - ok
21:50:56.0372 2584        RpcEptMapper    (78d072f35bc45d9e4e1b61895c152234) C:\Windows\System32\RpcEpMap.dll
21:50:56.0404 2584        RpcEptMapper - ok
21:50:56.0419 2584        RpcLocator      (94d36c0e44677dd26981d2bfeef2a29d) C:\Windows\system32\locator.exe
21:50:56.0450 2584        RpcLocator - ok
21:50:56.0497 2584        RpcSs          (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll
21:50:56.0528 2584        RpcSs - ok
21:50:56.0544 2584        rspndr          (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
21:50:56.0575 2584        rspndr - ok
21:50:56.0638 2584        RTL8167        (5283b9a27ff230f2ff70d92451ff409a) C:\Windows\system32\DRIVERS\Rt86win7.sys
21:50:56.0653 2584        RTL8167 - ok
21:50:56.0700 2584        RTL8192su      (9ce8deffaffccbf473015d76ae8ee514) C:\Windows\system32\DRIVERS\RTL8192su.sys
21:50:56.0731 2584        RTL8192su - ok
21:50:56.0794 2584        SamSs          (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:50:56.0809 2584        SamSs - ok
21:50:56.0934 2584        sbp2port        (05d860da1040f111503ac416ccef2bca) C:\Windows\system32\drivers\sbp2port.sys
21:50:56.0950 2584        sbp2port - ok
21:50:56.0981 2584        SCardSvr        (8fc518ffe9519c2631d37515a68009c4) C:\Windows\System32\SCardSvr.dll
21:50:57.0012 2584        SCardSvr - ok
21:50:57.0012 2584        scfilter        (0693b5ec673e34dc147e195779a4dcf6) C:\Windows\system32\DRIVERS\scfilter.sys
21:50:57.0043 2584        scfilter - ok
21:50:57.0106 2584        Schedule        (a04bb13f8a72f8b6e8b4071723e4e336) C:\Windows\system32\schedsvc.dll
21:50:57.0152 2584        Schedule - ok
21:50:57.0184 2584        SCPolicySvc    (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll
21:50:57.0199 2584        SCPolicySvc - ok
21:50:57.0215 2584        SDRSVC          (08236c4bce5edd0a0318a438af28e0f7) C:\Windows\System32\SDRSVC.dll
21:50:57.0246 2584        SDRSVC - ok
21:50:57.0277 2584        secdrv          (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
21:50:57.0308 2584        secdrv - ok
21:50:57.0340 2584        seclogon        (a59b3a4442c52060cc7a85293aa3546f) C:\Windows\system32\seclogon.dll
21:50:57.0355 2584        seclogon - ok
21:50:57.0371 2584        SENS            (dcb7fcdcc97f87360f75d77425b81737) C:\Windows\System32\sens.dll
21:50:57.0402 2584        SENS - ok
21:50:57.0418 2584        SensrSvc        (50087fe1ee447009c9cc2997b90de53f) C:\Windows\system32\sensrsvc.dll
21:50:57.0433 2584        SensrSvc - ok
21:50:57.0449 2584        Serenum        (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
21:50:57.0480 2584        Serenum - ok
21:50:57.0496 2584        Serial          (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
21:50:57.0527 2584        Serial - ok
21:50:57.0542 2584        sermouse        (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
21:50:57.0558 2584        sermouse - ok
21:50:57.0589 2584        SessionEnv      (4ae380f39a0032eab7dd953030b26d28) C:\Windows\system32\sessenv.dll
21:50:57.0636 2584        SessionEnv - ok
21:50:57.0652 2584        sffdisk        (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\drivers\sffdisk.sys
21:50:57.0683 2584        sffdisk - ok
21:50:57.0698 2584        sffp_mmc        (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\drivers\sffp_mmc.sys
21:50:57.0730 2584        sffp_mmc - ok
21:50:57.0730 2584        sffp_sd        (a0708bbd07d245c06ff9de549ca47185) C:\Windows\system32\drivers\sffp_sd.sys
21:50:57.0761 2584        sffp_sd - ok
21:50:57.0776 2584        sfloppy        (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
21:50:57.0792 2584        sfloppy - ok
21:50:57.0823 2584        SharedAccess    (d1a079a0de2ea524513b6930c24527a2) C:\Windows\System32\ipnathlp.dll
21:50:57.0854 2584        SharedAccess - ok
21:50:57.0901 2584        ShellHWDetection (414da952a35bf5d50192e28263b40577) C:\Windows\System32\shsvcs.dll
21:50:57.0932 2584        ShellHWDetection - ok
21:50:57.0964 2584        sisagp          (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\drivers\sisagp.sys
21:50:57.0979 2584        sisagp - ok
21:50:57.0995 2584        SiSRaid2        (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
21:50:58.0010 2584        SiSRaid2 - ok
21:50:58.0026 2584        SiSRaid4        (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
21:50:58.0042 2584        SiSRaid4 - ok
21:50:58.0073 2584        Smb            (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
21:50:58.0104 2584        Smb - ok
21:50:58.0151 2584        SNMPTRAP        (6a984831644eca1a33ffeae4126f4f37) C:\Windows\System32\snmptrap.exe
21:50:58.0166 2584        SNMPTRAP - ok
21:50:58.0182 2584        spldr          (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
21:50:58.0198 2584        spldr - ok
21:50:58.0244 2584        Spooler        (866a43013535dc8587c258e43579c764) C:\Windows\System32\spoolsv.exe
21:50:58.0291 2584        Spooler - ok
21:50:58.0525 2584        sppsvc          (cf87a1de791347e75b98885214ced2b8) C:\Windows\system32\sppsvc.exe
21:50:58.0603 2584        sppsvc - ok
21:50:58.0697 2584        sppuinotify    (b0180b20b065d89232a78a40fe56eaa6) C:\Windows\system32\sppuinotify.dll
21:50:58.0744 2584        sppuinotify - ok
21:50:58.0775 2584        srv            (e4c2764065d66ea1d2d3ebc28fe99c46) C:\Windows\system32\DRIVERS\srv.sys
21:50:58.0822 2584        srv - ok
21:50:58.0853 2584        srv2            (03f0545bd8d4c77fa0ae1ceedfcc71ab) C:\Windows\system32\DRIVERS\srv2.sys
21:50:58.0884 2584        srv2 - ok
21:50:58.0900 2584        srvnet          (be6bd660caa6f291ae06a718a4fa8abc) C:\Windows\system32\DRIVERS\srvnet.sys
21:50:58.0931 2584        srvnet - ok
21:50:58.0962 2584        SSDPSRV        (d887c9fd02ac9fa880f6e5027a43e118) C:\Windows\System32\ssdpsrv.dll
21:50:59.0009 2584        SSDPSRV - ok
21:50:59.0056 2584        ssmdrv          (a36ee93698802cd899f98bfd553d8185) C:\Windows\system32\DRIVERS\ssmdrv.sys
21:50:59.0071 2584        ssmdrv - ok
21:50:59.0087 2584        SstpSvc        (d318f23be45d5e3a107469eb64815b50) C:\Windows\system32\sstpsvc.dll
21:50:59.0134 2584        SstpSvc - ok
21:50:59.0165 2584        ssudmdm        (07318149e102fd9197ab444c27774372) C:\Windows\system32\DRIVERS\ssudmdm.sys
21:50:59.0180 2584        ssudmdm - ok
21:50:59.0196 2584        stexstor        (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
21:50:59.0212 2584        stexstor - ok
21:50:59.0258 2584        StiSvc          (e1fb3706030fb4578a0d72c2fc3689e4) C:\Windows\System32\wiaservc.dll
21:50:59.0305 2584        StiSvc - ok
21:50:59.0321 2584        swenum          (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\drivers\swenum.sys
21:50:59.0336 2584        swenum - ok
21:50:59.0368 2584        swprv          (a28bd92df340e57b024ba433165d34d7) C:\Windows\System32\swprv.dll
21:50:59.0414 2584        swprv - ok
21:50:59.0524 2584        SysMain        (36650d618ca34c9d357dfd3d89b2c56f) C:\Windows\system32\sysmain.dll
21:50:59.0570 2584        SysMain - ok
21:50:59.0602 2584        TabletInputService (763fecdc3d30c815fe72dd57936c6cd1) C:\Windows\System32\TabSvc.dll
21:50:59.0633 2584        TabletInputService - ok
21:50:59.0664 2584        TapiSrv        (613bf4820361543956909043a265c6ac) C:\Windows\System32\tapisrv.dll
21:50:59.0711 2584        TapiSrv - ok
21:50:59.0742 2584        TBS            (b799d9fdb26111737f58288d8dc172d9) C:\Windows\System32\tbssvc.dll
21:50:59.0789 2584        TBS - ok
21:50:59.0929 2584        Tcpip          (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\drivers\tcpip.sys
21:50:59.0976 2584        Tcpip - ok
21:51:00.0132 2584        TCPIP6          (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\DRIVERS\tcpip.sys
21:51:00.0148 2584        TCPIP6 - ok
21:51:00.0288 2584        tcpipreg        (cca24162e055c3714ce5a88b100c64ed) C:\Windows\system32\drivers\tcpipreg.sys
21:51:00.0319 2584        tcpipreg - ok
21:51:00.0335 2584        TDPIPE          (1cb91b2bd8f6dd367dfc2ef26fd751b2) C:\Windows\system32\drivers\tdpipe.sys
21:51:00.0382 2584        TDPIPE - ok
21:51:00.0413 2584        TDTCP          (2c2c5afe7ee4f620d69c23c0617651a8) C:\Windows\system32\drivers\tdtcp.sys
21:51:00.0428 2584        TDTCP - ok
21:51:00.0506 2584        tdx            (b459575348c20e8121d6039da063c704) C:\Windows\system32\DRIVERS\tdx.sys
21:51:00.0553 2584        tdx - ok
21:51:00.0569 2584        TermDD          (04dbf4b01ea4bf25a9a3e84affac9b20) C:\Windows\system32\drivers\termdd.sys
21:51:00.0584 2584        TermDD - ok
21:51:00.0678 2584        TermService    (382c804c92811be57829d8e550a900e2) C:\Windows\System32\termsrv.dll
21:51:00.0725 2584        TermService - ok
21:51:00.0756 2584        Themes          (42fb6afd6b79d9fe07381609172e7ca4) C:\Windows\system32\themeservice.dll
21:51:00.0772 2584        Themes - ok
21:51:00.0787 2584        THREADORDER    (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
21:51:00.0803 2584        THREADORDER - ok
21:51:00.0850 2584        TrkWks          (4792c0378db99a9bc2ae2de6cfff0c3a) C:\Windows\System32\trkwks.dll
21:51:00.0896 2584        TrkWks - ok
21:51:00.0928 2584        TrustedInstaller (2c49b175aee1d4364b91b531417fe583) C:\Windows\servicing\TrustedInstaller.exe
21:51:00.0959 2584        TrustedInstaller - ok
21:51:00.0974 2584        tssecsrv        (254bb140eee3c59d6114c1a86b636877) C:\Windows\system32\DRIVERS\tssecsrv.sys
21:51:01.0006 2584        tssecsrv - ok
21:51:01.0052 2584        TsUsbFlt        (fd1d6c73e6333be727cbcc6054247654) C:\Windows\system32\drivers\tsusbflt.sys
21:51:01.0084 2584        TsUsbFlt - ok
21:51:01.0130 2584        tunnel          (b2fa25d9b17a68bb93d58b0556e8c90d) C:\Windows\system32\DRIVERS\tunnel.sys
21:51:01.0162 2584        tunnel - ok
21:51:01.0193 2584        uagp35          (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
21:51:01.0208 2584        uagp35 - ok
21:51:01.0240 2584        udfs            (ee43346c7e4b5e63e54f927babbb32ff) C:\Windows\system32\DRIVERS\udfs.sys
21:51:01.0271 2584        udfs - ok
21:51:01.0318 2584        UI0Detect      (8344fd4fce927880aa1aa7681d4927e5) C:\Windows\system32\UI0Detect.exe
21:51:01.0349 2584        UI0Detect - ok
21:51:01.0380 2584        uliagpkx        (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\drivers\uliagpkx.sys
21:51:01.0396 2584        uliagpkx - ok
21:51:01.0411 2584        umbus          (d295bed4b898f0fd999fcfa9b32b071b) C:\Windows\system32\drivers\umbus.sys
21:51:01.0442 2584        umbus - ok
21:51:01.0458 2584        UmPass          (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
21:51:01.0489 2584        UmPass - ok
21:51:01.0520 2584        upnphost        (833fbb672460efce8011d262175fad33) C:\Windows\System32\upnphost.dll
21:51:01.0552 2584        upnphost - ok
21:51:01.0567 2584        usbccgp        (8455c4ed038efd09e99327f9d2d48ffa) C:\Windows\system32\DRIVERS\usbccgp.sys
21:51:01.0583 2584        usbccgp - ok
21:51:01.0614 2584        usbcir          (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\drivers\usbcir.sys
21:51:01.0645 2584        usbcir - ok
21:51:01.0661 2584        usbehci        (f92de757e4b7ce9c07c5e65423f3ae3b) C:\Windows\system32\DRIVERS\usbehci.sys
21:51:01.0692 2584        usbehci - ok
21:51:01.0739 2584        usbhub          (8dc94aec6a7e644a06135ae7506dc2e9) C:\Windows\system32\DRIVERS\usbhub.sys
21:51:01.0770 2584        usbhub - ok
21:51:01.0786 2584        usbohci        (a6fb7957ea7afb1165991e54ce934b74) C:\Windows\system32\DRIVERS\usbohci.sys
21:51:01.0801 2584        usbohci - ok
21:51:01.0832 2584        usbprint        (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
21:51:01.0910 2584        usbprint - ok
21:51:01.0942 2584        usbscan        (576096ccbc07e7c4ea4f5e6686d6888f) C:\Windows\system32\DRIVERS\usbscan.sys
21:51:01.0957 2584        usbscan - ok
21:51:01.0988 2584        USBSTOR        (d8889d56e0d27e57ed4591837fe71d27) C:\Windows\system32\DRIVERS\USBSTOR.SYS
21:51:02.0004 2584        USBSTOR - ok
21:51:02.0035 2584        usbuhci        (68df884cf41cdada664beb01daf67e3d) C:\Windows\system32\DRIVERS\usbuhci.sys
21:51:02.0051 2584        usbuhci - ok
21:51:02.0082 2584        UxSms          (081e6e1c91aec36758902a9f727cd23c) C:\Windows\System32\uxsms.dll
21:51:02.0113 2584        UxSms - ok
21:51:02.0129 2584        VaultSvc        (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:51:02.0144 2584        VaultSvc - ok
21:51:02.0176 2584        vdrvroot        (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\drivers\vdrvroot.sys
21:51:02.0191 2584        vdrvroot - ok
21:51:02.0238 2584        vds            (c3cd30495687c2a2f66a65ca6fd89be9) C:\Windows\System32\vds.exe
21:51:02.0285 2584        vds - ok
21:51:02.0300 2584        vga            (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
21:51:02.0332 2584        vga - ok
21:51:02.0347 2584        VgaSave        (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
21:51:02.0378 2584        VgaSave - ok
21:51:02.0410 2584        vhdmp          (5461686cca2fda57b024547733ab42e3) C:\Windows\system32\drivers\vhdmp.sys
21:51:02.0425 2584        vhdmp - ok
21:51:02.0441 2584        viaagp          (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\drivers\viaagp.sys
21:51:02.0456 2584        viaagp - ok
21:51:02.0472 2584        ViaC7          (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
21:51:02.0503 2584        ViaC7 - ok
21:51:02.0519 2584        viaide          (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\drivers\viaide.sys
21:51:02.0534 2584        viaide - ok
21:51:02.0550 2584        volmgr          (4c63e00f2f4b5f86ab48a58cd990f212) C:\Windows\system32\drivers\volmgr.sys
21:51:02.0566 2584        volmgr - ok
21:51:02.0597 2584        volmgrx        (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
21:51:02.0612 2584        volmgrx - ok
21:51:02.0644 2584        volsnap        (f497f67932c6fa693d7de2780631cfe7) C:\Windows\system32\drivers\volsnap.sys
21:51:02.0675 2584        volsnap - ok
21:51:02.0706 2584        vsmraid        (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
21:51:02.0722 2584        vsmraid - ok
21:51:02.0846 2584        VSS            (209a3b1901b83aeb8527ed211cce9e4c) C:\Windows\system32\vssvc.exe
21:51:02.0893 2584        VSS - ok
21:51:02.0909 2584        vwifibus        (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\system32\DRIVERS\vwifibus.sys
21:51:02.0924 2584        vwifibus - ok
21:51:02.0940 2584        vwififlt        (7090d3436eeb4e7da3373090a23448f7) C:\Windows\system32\DRIVERS\vwififlt.sys
21:51:02.0971 2584        vwififlt - ok
21:51:02.0987 2584        vwifimp        (a3f04cbea6c2a10e6cb01f8b47611882) C:\Windows\system32\DRIVERS\vwifimp.sys
21:51:03.0002 2584        vwifimp - ok
21:51:03.0034 2584        W32Time        (55187fd710e27d5095d10a472c8baf1c) C:\Windows\system32\w32time.dll
21:51:03.0080 2584        W32Time - ok
21:51:03.0096 2584        WacomPen        (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
21:51:03.0112 2584        WacomPen - ok
21:51:03.0143 2584        WANARP          (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
21:51:03.0174 2584        WANARP - ok
21:51:03.0174 2584        Wanarpv6        (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
21:51:03.0190 2584        Wanarpv6 - ok
21:51:03.0283 2584        wbengine        (691e3285e53dca558e1a84667f13e15a) C:\Windows\system32\wbengine.exe
21:51:03.0346 2584        wbengine - ok
21:51:03.0377 2584        WbioSrvc        (9614b5d29dc76ac3c29f6d2d3aa70e67) C:\Windows\System32\wbiosrvc.dll
21:51:03.0408 2584        WbioSrvc - ok
21:51:03.0455 2584        wcncsvc        (34eee0dfaadb4f691d6d5308a51315dc) C:\Windows\System32\wcncsvc.dll
21:51:03.0486 2584        wcncsvc - ok
21:51:03.0502 2584        WcsPlugInService (5d930b6357a6d2af4d7653bdabbf352f) C:\Windows\System32\WcsPlugInService.dll
21:51:03.0533 2584        WcsPlugInService - ok
21:51:03.0580 2584        Wd              (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
21:51:03.0595 2584        Wd - ok
21:51:03.0626 2584        Wdf01000        (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
21:51:03.0658 2584        Wdf01000 - ok
21:51:03.0689 2584        WdiServiceHost  (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
21:51:03.0720 2584        WdiServiceHost - ok
21:51:03.0720 2584        WdiSystemHost  (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
21:51:03.0736 2584        WdiSystemHost - ok
21:51:03.0798 2584        WebClient      (a9d880f97530d5b8fee278923349929d) C:\Windows\System32\webclnt.dll
21:51:03.0829 2584        WebClient - ok
21:51:03.0845 2584        Wecsvc          (760f0afe937a77cff27153206534f275) C:\Windows\system32\wecsvc.dll
21:51:03.0876 2584        Wecsvc - ok
21:51:03.0892 2584        wercplsupport  (ac804569bb2364fb6017370258a4091b) C:\Windows\System32\wercplsupport.dll
21:51:03.0938 2584        wercplsupport - ok
21:51:03.0970 2584        WerSvc          (08e420d873e4fd85241ee2421b02c4a4) C:\Windows\System32\WerSvc.dll
21:51:03.0985 2584        WerSvc - ok
21:51:04.0016 2584        WfpLwf          (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
21:51:04.0048 2584        WfpLwf - ok
21:51:04.0063 2584        WIMMount        (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
21:51:04.0079 2584        WIMMount - ok
21:51:04.0157 2584        WinDefend      (3fae8f94296001c32eab62cd7d82e0fd) C:\Program Files\Windows Defender\mpsvc.dll
21:51:04.0204 2584        WinDefend - ok
21:51:04.0204 2584        WinHttpAutoProxySvc - ok
21:51:04.0266 2584        Winmgmt        (f62e510b6ad4c21eb9fe8668ed251826) C:\Windows\system32\wbem\WMIsvc.dll
21:51:04.0297 2584        Winmgmt - ok
21:51:04.0406 2584        WinRM          (1b91cd34ea3a90ab6a4ef0550174f4cc) C:\Windows\system32\WsmSvc.dll
21:51:04.0469 2584        WinRM - ok
21:51:04.0531 2584        WinUsb          (a67e5f9a400f3bd1be3d80613b45f708) C:\Windows\system32\DRIVERS\WinUsb.sys
21:51:04.0547 2584        WinUsb - ok
21:51:04.0609 2584        Wlansvc        (16935c98ff639d185086a3529b1f2067) C:\Windows\System32\wlansvc.dll
21:51:04.0656 2584        Wlansvc - ok
21:51:04.0687 2584        WmiAcpi        (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\drivers\wmiacpi.sys
21:51:04.0703 2584        WmiAcpi - ok
21:51:04.0765 2584        wmiApSrv        (6eb6b66517b048d87dc1856ddf1f4c3f) C:\Windows\system32\wbem\WmiApSrv.exe
21:51:04.0781 2584        wmiApSrv - ok
21:51:04.0890 2584        WMPNetworkSvc  (3b40d3a61aa8c21b88ae57c58ab3122e) C:\Program Files\Windows Media Player\wmpnetwk.exe
21:51:04.0952 2584        WMPNetworkSvc - ok
21:51:05.0062 2584        WPCSvc          (a2f0ec770a92f2b3f9de6d518e11409c) C:\Windows\System32\wpcsvc.dll
21:51:05.0093 2584        WPCSvc - ok
21:51:05.0108 2584        WPDBusEnum      (aa53356d60af47eacc85bc617a4f3f66) C:\Windows\system32\wpdbusenum.dll
21:51:05.0140 2584        WPDBusEnum - ok
21:51:05.0171 2584        ws2ifsl        (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
21:51:05.0186 2584        ws2ifsl - ok
21:51:05.0202 2584        wscsvc          (6f5d49efe0e7164e03ae773a3fe25340) C:\Windows\System32\wscsvc.dll
21:51:05.0218 2584        wscsvc - ok
21:51:05.0218 2584        WSearch - ok
21:51:05.0374 2584        wuauserv        (fc3ec24fce372c89423e015a2ac1a31e) C:\Windows\system32\wuaueng.dll
21:51:05.0420 2584        wuauserv - ok
21:51:05.0545 2584        WudfPf          (e714a1c0354636837e20ccbf00888ee7) C:\Windows\system32\drivers\WudfPf.sys
21:51:05.0576 2584        WudfPf - ok
21:51:05.0592 2584        WUDFRd          (1023ee888c9b47178c5293ed5336ab69) C:\Windows\system32\DRIVERS\WUDFRd.sys
21:51:05.0623 2584        WUDFRd - ok
21:51:05.0670 2584        wudfsvc        (8d1e1e529a2c9e9b6a85b55a345f7629) C:\Windows\System32\WUDFSvc.dll
21:51:05.0701 2584        wudfsvc - ok
21:51:05.0732 2584        WwanSvc        (ff2d745b560f7c71b31f30f4d49f73d2) C:\Windows\System32\wwansvc.dll
21:51:05.0764 2584        WwanSvc - ok
21:51:05.0795 2584        MBR (0x1B8)    (c79b30cb8852157f6f908e4698cfe0d0) \Device\Harddisk0\DR0
21:51:08.0213 2584        \Device\Harddisk0\DR0 - ok
21:51:08.0244 2584        Boot (0x1200)  (a96290b5401c2da5a08bb9471d76d503) \Device\Harddisk0\DR0\Partition0
21:51:08.0260 2584        \Device\Harddisk0\DR0\Partition0 - ok
21:51:08.0275 2584        Boot (0x1200)  (046bbd7303f14eb983a3f0c302651470) \Device\Harddisk0\DR0\Partition1
21:51:08.0291 2584        \Device\Harddisk0\DR0\Partition1 - ok
21:51:08.0338 2584        Boot (0x1200)  (376b50b18dd730f4a63e4b8227f4638c) \Device\Harddisk0\DR0\Partition2
21:51:08.0369 2584        \Device\Harddisk0\DR0\Partition2 - ok
21:51:08.0384 2584        ============================================================
21:51:08.0384 2584        Scan finished
21:51:08.0384 2584        ============================================================
21:51:08.0384 3548        Detected object count: 3
21:51:08.0384 3548        Actual detected object count: 3
21:52:04.0124 3548        avmeject ( UnsignedFile.Multi.Generic ) - skipped by user
21:52:04.0124 3548        avmeject ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:52:04.0124 3548        hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user
21:52:04.0124 3548        hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:52:04.0140 3548        IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
21:52:04.0140 3548        IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:52:05.0357 1876        ============================================================
21:52:05.0357 1876        Scan started
21:52:05.0357 1876        Mode: Manual; SigCheck; TDLFS;
21:52:05.0357 1876        ============================================================
21:52:05.0731 1876        1394ohci        (1b133875b8aa8ac48969bd3458afe9f5) C:\Windows\system32\drivers\1394ohci.sys
21:52:05.0762 1876        1394ohci - ok
21:52:05.0793 1876        ACPI            (cea80c80bed809aa0da6febc04733349) C:\Windows\system32\drivers\ACPI.sys
21:52:05.0809 1876        ACPI - ok
21:52:05.0825 1876        AcpiPmi        (1efbc664abff416d1d07db115dcb264f) C:\Windows\system32\drivers\acpipmi.sys
21:52:05.0840 1876        AcpiPmi - ok
21:52:05.0918 1876        AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
21:52:05.0949 1876        AdobeARMservice - ok
21:52:06.0012 1876        AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
21:52:06.0027 1876        AdobeFlashPlayerUpdateSvc - ok
21:52:06.0105 1876        adp94xx        (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
21:52:06.0137 1876        adp94xx - ok
21:52:06.0168 1876        adpahci        (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
21:52:06.0183 1876        adpahci - ok
21:52:06.0215 1876        adpu320        (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
21:52:06.0230 1876        adpu320 - ok
21:52:06.0246 1876        AeLookupSvc    (8b5eefeec1e6d1a72a06c526628ad161) C:\Windows\System32\aelupsvc.dll
21:52:06.0261 1876        AeLookupSvc - ok
21:52:06.0293 1876        AFD            (9ebbba55060f786f0fcaa3893bfa2806) C:\Windows\system32\drivers\afd.sys
21:52:06.0293 1876        AFD - ok
21:52:06.0402 1876        Agile1Password  (adc2ce8edcdc709c2af01df3eb12dbfa) C:\Program Files\1Password\Agile1pService.exe
21:52:06.0433 1876        Agile1Password - ok
21:52:06.0449 1876        agp440          (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\drivers\agp440.sys
21:52:06.0449 1876        agp440 - ok
21:52:06.0464 1876        aic78xx        (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
21:52:06.0480 1876        aic78xx - ok
21:52:06.0495 1876        ALG            (18a54e132947cd98fea9accc57f98f13) C:\Windows\System32\alg.exe
21:52:06.0511 1876        ALG - ok
21:52:06.0527 1876        aliide          (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\drivers\aliide.sys
21:52:06.0527 1876        aliide - ok
21:52:06.0558 1876        AMD External Events Utility (60201ad353105d8c6796c1b69e6c49f0) C:\Windows\system32\atiesrxx.exe
21:52:06.0573 1876        AMD External Events Utility - ok
21:52:06.0589 1876        amdagp          (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\drivers\amdagp.sys
21:52:06.0605 1876        amdagp - ok
21:52:06.0605 1876        amdide          (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\drivers\amdide.sys
21:52:06.0620 1876        amdide - ok
21:52:06.0636 1876        AmdK8          (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
21:52:06.0651 1876        AmdK8 - ok
21:52:06.0948 1876        amdkmdag        (51610b74a9a1d84dc86fce1019beaff4) C:\Windows\system32\DRIVERS\atikmdag.sys
21:52:07.0010 1876        amdkmdag - ok
21:52:07.0119 1876        amdkmdap        (cd1d86ab81eece67d7bd6f7ef9786ccc) C:\Windows\system32\DRIVERS\atikmpag.sys
21:52:07.0135 1876        amdkmdap - ok
21:52:07.0151 1876        AmdPPM          (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
21:52:07.0166 1876        AmdPPM - ok
21:52:07.0182 1876        amdsata        (d320bf87125326f996d4904fe24300fc) C:\Windows\system32\drivers\amdsata.sys
21:52:07.0197 1876        amdsata - ok
21:52:07.0213 1876        amdsbs          (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
21:52:07.0229 1876        amdsbs - ok
21:52:07.0229 1876        amdxata        (46387fb17b086d16dea267d5be23a2f2) C:\Windows\system32\drivers\amdxata.sys
21:52:07.0229 1876        amdxata - ok
21:52:07.0291 1876        AntiVirSchedulerService (466a0d95960dad3222c896d2cea99993) C:\Program Files\Avira\AntiVir Desktop\sched.exe
21:52:07.0322 1876        AntiVirSchedulerService - ok
21:52:07.0338 1876        AntiVirService  (a489be6bb0aa1ff406b488b60542314b) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
21:52:07.0353 1876        AntiVirService - ok
21:52:07.0385 1876        AppID          (aea177f783e20150ace5383ee368da19) C:\Windows\system32\drivers\appid.sys
21:52:07.0400 1876        AppID - ok
21:52:07.0416 1876        AppIDSvc        (62a9c86cb6085e20db4823e4e97826f5) C:\Windows\System32\appidsvc.dll
21:52:07.0447 1876        AppIDSvc - ok
21:52:07.0463 1876        Appinfo        (fb1959012294d6ad43e5304df65e3c26) C:\Windows\System32\appinfo.dll
21:52:07.0478 1876        Appinfo - ok
21:52:07.0509 1876        arc            (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
21:52:07.0525 1876        arc - ok
21:52:07.0525 1876        arcsas          (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
21:52:07.0541 1876        arcsas - ok
21:52:07.0587 1876        aspnet_state    (39cdcb109bf200cc8a05b9c7e6272d11) C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
21:52:07.0587 1876        aspnet_state - ok
21:52:07.0603 1876        AsyncMac        (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
21:52:07.0619 1876        AsyncMac - ok
21:52:07.0650 1876        atapi          (338c86357871c167a96ab976519bf59e) C:\Windows\system32\drivers\atapi.sys
21:52:07.0650 1876        atapi - ok
21:52:07.0681 1876        AtiHdmiService  (8df873d0587596c1d35a9cececc61da1) C:\Windows\system32\drivers\AtiHdmi.sys
21:52:07.0681 1876        AtiHdmiService - ok
21:52:07.0728 1876        AudioEndpointBuilder (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll
21:52:07.0743 1876        AudioEndpointBuilder - ok
21:52:07.0759 1876        Audiosrv        (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll
21:52:07.0775 1876        Audiosrv - ok
21:52:07.0806 1876        avgntflt        (d5541f0afb767e85fc412fc609d96a74) C:\Windows\system32\DRIVERS\avgntflt.sys
21:52:07.0806 1876        avgntflt - ok
21:52:07.0837 1876        avipbb          (7d967a682d4694df7fa57d63a2db01fe) C:\Windows\system32\DRIVERS\avipbb.sys
21:52:07.0837 1876        avipbb - ok
21:52:07.0853 1876        avkmgr          (271cfd1a989209b1964e24d969552bf7) C:\Windows\system32\DRIVERS\avkmgr.sys
21:52:07.0868 1876        avkmgr - ok
21:52:07.0884 1876        avmeject        (263cf9d248fd5e020a1333ed4f7eaa88) C:\Windows\system32\drivers\avmeject.sys
21:52:07.0884 1876        avmeject ( UnsignedFile.Multi.Generic ) - warning
21:52:07.0884 1876        avmeject - detected UnsignedFile.Multi.Generic (1)
21:52:07.0915 1876        AxInstSV        (6e30d02aac9cac84f421622e3a2f6178) C:\Windows\System32\AxInstSV.dll
21:52:07.0915 1876        AxInstSV - ok
21:52:07.0962 1876        b06bdrv        (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
21:52:07.0993 1876        b06bdrv - ok
21:52:08.0009 1876        b57nd60x        (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
21:52:08.0024 1876        b57nd60x - ok
21:52:08.0040 1876        BDESVC          (ee1e9c3bb8228ae423dd38db69128e71) C:\Windows\System32\bdesvc.dll
21:52:08.0055 1876        BDESVC - ok
21:52:08.0071 1876        Beep            (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
21:52:08.0087 1876        Beep - ok
21:52:08.0133 1876        BFE            (1e2bac209d184bb851e1a187d8a29136) C:\Windows\System32\bfe.dll
21:52:08.0149 1876        BFE - ok
21:52:08.0180 1876        BITS            (e585445d5021971fae10393f0f1c3961) C:\Windows\System32\qmgr.dll
21:52:08.0211 1876        BITS - ok
21:52:08.0227 1876        blbdrive        (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
21:52:08.0243 1876        blbdrive - ok
21:52:08.0258 1876        bowser          (8f2da3028d5fcbd1a060a3de64cd6506) C:\Windows\system32\DRIVERS\bowser.sys
21:52:08.0274 1876        bowser - ok
21:52:08.0289 1876        BrFiltLo        (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
21:52:08.0305 1876        BrFiltLo - ok
21:52:08.0321 1876        BrFiltUp        (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
21:52:08.0321 1876        BrFiltUp - ok
21:52:08.0352 1876        Browser        (6e11f33d14d020f58d5e02e4d67dfa19) C:\Windows\System32\browser.dll
21:52:08.0367 1876        Browser - ok
21:52:08.0383 1876        Brserid        (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
21:52:08.0399 1876        Brserid - ok
21:52:08.0414 1876        BrSerWdm        (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
21:52:08.0430 1876        BrSerWdm - ok
21:52:08.0445 1876        BrUsbMdm        (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
21:52:08.0461 1876        BrUsbMdm - ok
21:52:08.0492 1876        BrUsbSer        (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
21:52:08.0492 1876        BrUsbSer - ok
21:52:08.0508 1876        BTHMODEM        (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
21:52:08.0523 1876        BTHMODEM - ok
21:52:08.0555 1876        bthserv        (1df19c96eef6c29d1c3e1a8678e07190) C:\Windows\system32\bthserv.dll
21:52:08.0570 1876        bthserv - ok
21:52:08.0586 1876        cdfs            (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
21:52:08.0601 1876        cdfs - ok
21:52:08.0633 1876        cdrom          (be167ed0fdb9c1fa1133953c18d5a6c9) C:\Windows\system32\drivers\cdrom.sys
21:52:08.0633 1876        cdrom - ok
21:52:08.0664 1876        CertPropSvc    (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll
21:52:08.0679 1876        CertPropSvc - ok
21:52:08.0711 1876        circlass        (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
21:52:08.0711 1876        circlass - ok
21:52:08.0742 1876        CLFS            (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
21:52:08.0757 1876        CLFS - ok
21:52:08.0804 1876        clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:52:08.0820 1876        clr_optimization_v2.0.50727_32 - ok
21:52:08.0867 1876        clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
21:52:08.0882 1876        clr_optimization_v4.0.30319_32 - ok
21:52:08.0898 1876        CmBatt          (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
21:52:08.0913 1876        CmBatt - ok
21:52:08.0945 1876        cmdide          (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\drivers\cmdide.sys
21:52:08.0945 1876        cmdide - ok
21:52:08.0976 1876        CNG            (247b4ce2dab1160cd422d532d5241e1f) C:\Windows\system32\Drivers\cng.sys
21:52:08.0991 1876        CNG - ok
21:52:09.0023 1876        Compbatt        (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
21:52:09.0038 1876        Compbatt - ok
21:52:09.0054 1876        CompositeBus    (cbe8c58a8579cfe5fccf809e6f114e89) C:\Windows\system32\drivers\CompositeBus.sys
21:52:09.0054 1876        CompositeBus - ok
21:52:09.0054 1876        COMSysApp - ok
21:52:09.0069 1876        crcdisk        (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
21:52:09.0085 1876        crcdisk - ok
21:52:09.0116 1876        CryptSvc        (06e771aa596b8761107ab57e99f128d7) C:\Windows\system32\cryptsvc.dll
21:52:09.0116 1876        CryptSvc - ok
21:52:09.0163 1876        DcomLaunch      (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll
21:52:09.0194 1876        DcomLaunch - ok
21:52:09.0225 1876        defragsvc      (8d6e10a2d9a5eed59562d9b82cf804e1) C:\Windows\System32\defragsvc.dll
21:52:09.0241 1876        defragsvc - ok
21:52:09.0272 1876        DfsC            (f024449c97ec1e464aaffda18593db88) C:\Windows\system32\Drivers\dfsc.sys
21:52:09.0288 1876        DfsC - ok
21:52:09.0303 1876        dg_ssudbus      (73fc5bc52572084ec1241514cf6230a0) C:\Windows\system32\DRIVERS\ssudbus.sys
21:52:09.0319 1876        dg_ssudbus - ok
21:52:09.0350 1876        Dhcp            (e9e01eb683c132f7fa27cd607b8a2b63) C:\Windows\system32\dhcpcore.dll
21:52:09.0366 1876        Dhcp - ok
21:52:09.0397 1876        discache        (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
21:52:09.0413 1876        discache - ok
21:52:09.0413 1876        Disk            (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
21:52:09.0428 1876        Disk - ok
21:52:09.0459 1876        Dnscache        (33ef4861f19a0736b11314aad9ae28d0) C:\Windows\System32\dnsrslvr.dll
21:52:09.0459 1876        Dnscache - ok
21:52:09.0491 1876        dot3svc        (366ba8fb4b7bb7435e3b9eacb3843f67) C:\Windows\System32\dot3svc.dll
21:52:09.0506 1876        dot3svc - ok
21:52:09.0537 1876        DPS            (8ec04ca86f1d68da9e11952eb85973d6) C:\Windows\system32\dps.dll
21:52:09.0553 1876        DPS - ok
21:52:09.0584 1876        drmkaud        (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
21:52:09.0584 1876        drmkaud - ok
21:52:09.0647 1876        DXGKrnl        (23f5d28378a160352ba8f817bd8c71cb) C:\Windows\System32\drivers\dxgkrnl.sys
21:52:09.0662 1876        DXGKrnl - ok
21:52:09.0693 1876        EapHost        (8600142fa91c1b96367d3300ad0f3f3a) C:\Windows\System32\eapsvc.dll
21:52:09.0709 1876        EapHost - ok
21:52:09.0881 1876        ebdrv          (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
21:52:09.0912 1876        ebdrv - ok
21:52:10.0021 1876        EFS            (81951f51e318aecc2d68559e47485cc4) C:\Windows\System32\lsass.exe
21:52:10.0037 1876        EFS - ok
21:52:10.0099 1876        ehRecvr        (a8c362018efc87beb013ee28f29c0863) C:\Windows\ehome\ehRecvr.exe
21:52:10.0130 1876        ehRecvr - ok
21:52:10.0161 1876        ehSched        (d389bff34f80caede417bf9d1507996a) C:\Windows\ehome\ehsched.exe
21:52:10.0161 1876        ehSched - ok
21:52:10.0224 1876        elxstor        (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
21:52:10.0239 1876        elxstor - ok
21:52:10.0255 1876        ErrDev          (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\drivers\errdev.sys
21:52:10.0271 1876        ErrDev - ok
21:52:10.0302 1876        EventSystem    (f6916efc29d9953d5d0df06882ae8e16) C:\Windows\system32\es.dll
21:52:10.0333 1876        EventSystem - ok
21:52:10.0349 1876        exfat          (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
21:52:10.0364 1876        exfat - ok
21:52:10.0380 1876        fastfat        (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
21:52:10.0411 1876        fastfat - ok
21:52:10.0458 1876        Fax            (967ea5b213e9984cbe270205df37755b) C:\Windows\system32\fxssvc.exe
21:52:10.0489 1876        Fax - ok
21:52:10.0505 1876        fdc            (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
21:52:10.0505 1876        fdc - ok
21:52:10.0536 1876        fdPHost        (f3222c893bd2f5821a0179e5c71e88fb) C:\Windows\system32\fdPHost.dll
21:52:10.0567 1876        fdPHost - ok
21:52:10.0583 1876        FDResPub        (7dbe8cbfe79efbdeb98c9fb08d3a9a5b) C:\Windows\system32\fdrespub.dll
21:52:10.0598 1876        FDResPub - ok
21:52:10.0614 1876        FileInfo        (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
21:52:10.0629 1876        FileInfo - ok
21:52:10.0645 1876        Filetrace      (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
21:52:10.0661 1876        Filetrace - ok
21:52:10.0692 1876        flpydisk        (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
21:52:10.0707 1876        flpydisk - ok
21:52:10.0723 1876        FltMgr          (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
21:52:10.0739 1876        FltMgr - ok
21:52:10.0801 1876        FontCache      (b3a5ec6b6b6673db7e87c2bcdbddc074) C:\Windows\system32\FntCache.dll
21:52:10.0832 1876        FontCache - ok
21:52:10.0879 1876        FontCache3.0.0.0 (e56f39f6b7fda0ac77a79b0fd3de1a2f) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
21:52:10.0895 1876        FontCache3.0.0.0 - ok
21:52:10.0926 1876        FsDepends      (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
21:52:10.0941 1876        FsDepends - ok
21:52:10.0957 1876        Fs_Rec          (7dae5ebcc80e45d3253f4923dc424d05) C:\Windows\system32\drivers\Fs_Rec.sys
21:52:10.0973 1876        Fs_Rec - ok
21:52:11.0004 1876        fvevol          (8a73e79089b282100b9393b644cb853b) C:\Windows\system32\DRIVERS\fvevol.sys
21:52:11.0019 1876        fvevol - ok
21:52:11.0051 1876        fwlanusbn      (fc06a5be1ab381cd47af3d69006e88f0) C:\Windows\system32\DRIVERS\fwlanusbn.sys
21:52:11.0066 1876        fwlanusbn - ok
21:52:11.0097 1876        gagp30kx        (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
21:52:11.0113 1876        gagp30kx - ok
21:52:11.0160 1876        gpsvc          (e897eaf5ed6ba41e081060c9b447a673) C:\Windows\System32\gpsvc.dll
21:52:11.0175 1876        gpsvc - ok
21:52:11.0269 1876        gupdate        (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
21:52:11.0285 1876        gupdate - ok
21:52:11.0285 1876        gupdatem        (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
21:52:11.0300 1876        gupdatem - ok
21:52:11.0331 1876        gusvc          (c1b577b2169900f4cf7190c39f085794) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
21:52:11.0331 1876        gusvc - ok
21:52:11.0363 1876        hcw85cir        (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
21:52:11.0363 1876        hcw85cir - ok
21:52:11.0394 1876        HdAudAddService (3530cad25deba7dc7de8bb51632cbc5f) C:\Windows\system32\drivers\HdAudio.sys
21:52:11.0409 1876        HdAudAddService - ok
21:52:11.0425 1876        HDAudBus        (9036377b8a6c15dc2eec53e489d159b5) C:\Windows\system32\drivers\HDAudBus.sys
21:52:11.0441 1876        HDAudBus - ok
21:52:11.0456 1876        HidBatt        (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
21:52:11.0472 1876        HidBatt - ok
21:52:11.0487 1876        HidBth          (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
21:52:11.0487 1876        HidBth - ok
21:52:11.0519 1876        HidIr          (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
21:52:11.0534 1876        HidIr - ok
21:52:11.0550 1876        hidserv        (2bc6f6a1992b3a77f5f41432ca6b3b6b) C:\Windows\system32\hidserv.dll
21:52:11.0565 1876        hidserv - ok
21:52:11.0581 1876        HidUsb          (25072fb35ac90b25f9e4e3bacf774102) C:\Windows\system32\DRIVERS\hidusb.sys
21:52:11.0597 1876        HidUsb - ok
21:52:11.0612 1876        hkmsvc          (196b4e3f4cccc24af836ce58facbb699) C:\Windows\system32\kmsvc.dll
21:52:11.0643 1876        hkmsvc - ok
21:52:11.0659 1876        HomeGroupListener (6658f4404de03d75fe3ba09f7aba6a30) C:\Windows\system32\ListSvc.dll
21:52:11.0675 1876        HomeGroupListener - ok
21:52:11.0690 1876        HomeGroupProvider (dbc02d918fff1cad628acbe0c0eaa8e8) C:\Windows\system32\provsvc.dll
21:52:11.0706 1876        HomeGroupProvider - ok
21:52:11.0799 1876        hpqcxs08        (0a3c6aa4a9fc38c20ba4eac2c3351c05) C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
21:52:11.0799 1876        hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning
21:52:11.0799 1876        hpqcxs08 - detected UnsignedFile.Multi.Generic (1)
21:52:11.0831 1876        HpSAMD          (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\drivers\HpSAMD.sys
21:52:11.0831 1876        HpSAMD - ok
21:52:11.0877 1876        HTTP            (871917b07a141bff43d76d8844d48106) C:\Windows\system32\drivers\HTTP.sys
21:52:11.0909 1876        HTTP - ok
21:52:11.0909 1876        hwpolicy        (0c4e035c7f105f1299258c90886c64c5) C:\Windows\system32\drivers\hwpolicy.sys
21:52:11.0924 1876        hwpolicy - ok
21:52:11.0940 1876        i8042prt        (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\drivers\i8042prt.sys
21:52:11.0955 1876        i8042prt - ok
21:52:12.0002 1876        iaStor          (26541a068572f650a2fa490726fe81be) C:\Windows\system32\DRIVERS\iaStor.sys
21:52:12.0002 1876        iaStor - ok
21:52:12.0065 1876        IAStorDataMgrSvc (31a0e93cdf29007d6c6fffb632f375ed) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
21:52:12.0080 1876        IAStorDataMgrSvc - ok
21:52:12.0127 1876        iaStorV        (5cd5f9a5444e6cdcb0ac89bd62d8b76e) C:\Windows\system32\drivers\iaStorV.sys
21:52:12.0143 1876        iaStorV - ok
21:52:12.0189 1876        IDriverT        (1cf03c69b49acb70c722df92755c0c8c) C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
21:52:12.0205 1876        IDriverT ( UnsignedFile.Multi.Generic ) - warning
21:52:12.0205 1876        IDriverT - detected UnsignedFile.Multi.Generic (1)
21:52:12.0314 1876        idsvc          (c521d7eb6497bb1af6afa89e322fb43c) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
21:52:12.0345 1876        idsvc - ok
21:52:12.0735 1876        igfx            (ad626f6964f4d364d226c39e06872dd3) C:\Windows\system32\DRIVERS\igdkmd32.sys
21:52:12.0782 1876        igfx - ok
21:52:12.0938 1876        iirsp          (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
21:52:12.0969 1876        iirsp - ok
21:52:13.0016 1876        IKEEXT          (f95622f161474511b8d80d6b093aa610) C:\Windows\System32\ikeext.dll
21:52:13.0047 1876        IKEEXT - ok
21:52:13.0219 1876        IntcAzAudAddService (f4427e5df32cde359b2e2e5512d18001) C:\Windows\system32\drivers\RTKVHDA.sys
21:52:13.0281 1876        IntcAzAudAddService - ok
21:52:13.0375 1876        intelide        (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\drivers\intelide.sys
21:52:13.0391 1876        intelide - ok
21:52:13.0406 1876        intelppm        (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
21:52:13.0422 1876        intelppm - ok
21:52:13.0437 1876        IPBusEnum      (acb364b9075a45c0736e5c47be5cae19) C:\Windows\system32\ipbusenum.dll
21:52:13.0469 1876        IPBusEnum - ok
21:52:13.0469 1876        IpFilterDriver  (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
21:52:13.0500 1876        IpFilterDriver - ok
21:52:13.0531 1876        iphlpsvc        (4d65a07b795d6674312f879d09aa7663) C:\Windows\System32\iphlpsvc.dll
21:52:13.0562 1876        iphlpsvc - ok
21:52:13.0578 1876        IPMIDRV        (4bd7134618c1d2a27466a099062547bf) C:\Windows\system32\drivers\IPMIDrv.sys
21:52:13.0593 1876        IPMIDRV - ok
21:52:13.0625 1876        IPNAT          (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
21:52:13.0640 1876        IPNAT - ok
21:52:13.0656 1876        IRENUM          (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
21:52:13.0656 1876        IRENUM - ok
21:52:13.0671 1876        isapnp          (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\drivers\isapnp.sys
21:52:13.0687 1876        isapnp - ok
21:52:13.0718 1876        iScsiPrt        (cb7a9abb12b8415bce5d74994c7ba3ae) C:\Windows\system32\drivers\msiscsi.sys
21:52:13.0718 1876        iScsiPrt - ok
21:52:13.0734 1876        kbdclass        (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\DRIVERS\kbdclass.sys
21:52:13.0749 1876        kbdclass - ok
21:52:13.0765 1876        kbdhid          (3d9f0ebf350edcfd6498057301455964) C:\Windows\system32\DRIVERS\kbdhid.sys
21:52:13.0765 1876        kbdhid - ok
21:52:13.0781 1876        KeyIso          (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:52:13.0796 1876        KeyIso - ok
21:52:13.0827 1876        KSecDD          (b7895b4182c0d16f6efadeb8081e8d36) C:\Windows\system32\Drivers\ksecdd.sys
21:52:13.0843 1876        KSecDD - ok
21:52:13.0874 1876        KSecPkg        (d30159ac9237519fbc62c6ec247d2d46) C:\Windows\system32\Drivers\ksecpkg.sys
21:52:13.0874 1876        KSecPkg - ok
21:52:13.0921 1876        KtmRm          (89a7b9cc98d0d80c6f31b91c0a310fcd) C:\Windows\system32\msdtckrm.dll
21:52:13.0952 1876        KtmRm - ok
21:52:13.0983 1876        LanmanServer    (d64af876d53eca3668bb97b51b4e70ab) C:\Windows\system32\srvsvc.dll
21:52:13.0999 1876        LanmanServer - ok
21:52:14.0015 1876        LanmanWorkstation (58405e4f68ba8e4057c6e914f326aba2) C:\Windows\System32\wkssvc.dll
21:52:14.0046 1876        LanmanWorkstation - ok
21:52:14.0061 1876        lltdio          (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
21:52:14.0077 1876        lltdio - ok
21:52:14.0108 1876        lltdsvc        (5700673e13a2117fa3b9020c852c01e2) C:\Windows\System32\lltdsvc.dll
21:52:14.0124 1876        lltdsvc - ok
21:52:14.0139 1876        lmhosts        (55ca01ba19d0006c8f2639b6c045e08b) C:\Windows\System32\lmhsvc.dll
21:52:14.0155 1876        lmhosts - ok
21:52:14.0171 1876        LSI_FC          (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
21:52:14.0186 1876        LSI_FC - ok
21:52:14.0202 1876        LSI_SAS        (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
21:52:14.0217 1876        LSI_SAS - ok
21:52:14.0233 1876        LSI_SAS2        (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
21:52:14.0249 1876        LSI_SAS2 - ok
21:52:14.0280 1876        LSI_SCSI        (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
21:52:14.0280 1876        LSI_SCSI - ok
21:52:14.0311 1876        luafv          (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
21:52:14.0327 1876        luafv - ok
21:52:14.0342 1876        Mcx2Svc        (bfb9ee8ee977efe85d1a3105abef6dd1) C:\Windows\system32\Mcx2Svc.dll
21:52:14.0358 1876        Mcx2Svc - ok
21:52:14.0373 1876        megasas        (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
21:52:14.0373 1876        megasas - ok
21:52:14.0405 1876        MegaSR          (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
21:52:14.0405 1876        MegaSR - ok
21:52:14.0436 1876        MMCSS          (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
21:52:14.0451 1876        MMCSS - ok
21:52:14.0467 1876        Modem          (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
21:52:14.0498 1876        Modem - ok
21:52:14.0514 1876        monitor        (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
21:52:14.0529 1876        monitor - ok
21:52:14.0545 1876        mouclass        (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\DRIVERS\mouclass.sys
21:52:14.0561 1876        mouclass - ok
21:52:14.0561 1876        mouhid          (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
21:52:14.0576 1876        mouhid - ok
21:52:14.0592 1876        mountmgr        (fc8771f45ecccfd89684e38842539b9b) C:\Windows\system32\drivers\mountmgr.sys
21:52:14.0607 1876        mountmgr - ok
21:52:14.0670 1876        MozillaMaintenance (15d5398eed42c2504bb3d4fc875c15d1) C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
21:52:14.0685 1876        MozillaMaintenance - ok
21:52:14.0717 1876        mpio            (2d699fb6e89ce0d8da14ecc03b3edfe0) C:\Windows\system32\drivers\mpio.sys
21:52:14.0732 1876        mpio - ok
21:52:14.0763 1876        mpsdrv          (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
21:52:14.0779 1876        mpsdrv - ok
21:52:14.0826 1876        MpsSvc          (9835584e999d25004e1ee8e5f3e3b881) C:\Windows\system32\mpssvc.dll
21:52:14.0873 1876        MpsSvc - ok
21:52:14.0888 1876        MRxDAV          (ceb46ab7c01c9f825f8cc6babc18166a) C:\Windows\system32\drivers\mrxdav.sys
21:52:14.0904 1876        MRxDAV - ok
21:52:14.0935 1876        mrxsmb          (5d16c921e3671636c0eba3bbaac5fd25) C:\Windows\system32\DRIVERS\mrxsmb.sys
21:52:14.0951 1876        mrxsmb - ok
21:52:14.0982 1876        mrxsmb10        (6d17a4791aca19328c685d256349fefc) C:\Windows\system32\DRIVERS\mrxsmb10.sys
21:52:14.0982 1876        mrxsmb10 - ok
21:52:14.0997 1876        mrxsmb20        (b81f204d146000be76651a50670a5e9e) C:\Windows\system32\DRIVERS\mrxsmb20.sys
21:52:15.0013 1876        mrxsmb20 - ok
21:52:15.0029 1876        msahci          (012c5f4e9349e711e11e0f19a8589f0a) C:\Windows\system32\drivers\msahci.sys
21:52:15.0044 1876        msahci - ok
21:52:15.0060 1876        msdsm          (55055f8ad8be27a64c831322a780a228) C:\Windows\system32\drivers\msdsm.sys
21:52:15.0075 1876        msdsm - ok
21:52:15.0107 1876        MSDTC          (e1bce74a3bd9902b72599c0192a07e27) C:\Windows\System32\msdtc.exe
21:52:15.0107 1876        MSDTC - ok
21:52:15.0138 1876        Msfs            (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
21:52:15.0153 1876        Msfs - ok
21:52:15.0169 1876        mshidkmdf      (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
21:52:15.0185 1876        mshidkmdf - ok
21:52:15.0200 1876        msisadrv        (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\drivers\msisadrv.sys
21:52:15.0200 1876        msisadrv - ok
21:52:15.0231 1876        MSiSCSI        (90f7d9e6b6f27e1a707d4a297f077828) C:\Windows\system32\iscsiexe.dll
21:52:15.0247 1876        MSiSCSI - ok
21:52:15.0263 1876        msiserver - ok
21:52:15.0263 1876        MSKSSRV        (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
21:52:15.0294 1876        MSKSSRV - ok
21:52:15.0294 1876        MSPCLOCK        (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
21:52:15.0309 1876        MSPCLOCK - ok
21:52:15.0325 1876        MSPQM          (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
21:52:15.0341 1876        MSPQM - ok
21:52:15.0356 1876        MsRPC          (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
21:52:15.0372 1876        MsRPC - ok
21:52:15.0387 1876        mssmbios        (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\drivers\mssmbios.sys
21:52:15.0403 1876        mssmbios - ok
21:52:15.0419 1876        MSTEE          (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
21:52:15.0434 1876        MSTEE - ok
21:52:15.0450 1876        MTConfig        (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
21:52:15.0450 1876        MTConfig - ok
21:52:15.0481 1876        Mup            (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
21:52:15.0481 1876        Mup - ok
21:52:15.0528 1876        napagent        (61d57a5d7c6d9afe10e77dae6e1b445e) C:\Windows\system32\qagentRT.dll
21:52:15.0559 1876        napagent - ok
21:52:15.0575 1876        NativeWifiP    (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
21:52:15.0590 1876        NativeWifiP - ok
21:52:15.0637 1876        NDIS            (e7c54812a2aaf43316eb6930c1ffa108) C:\Windows\system32\drivers\ndis.sys
21:52:15.0668 1876        NDIS - ok
21:52:15.0668 1876        NdisCap        (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
21:52:15.0684 1876        NdisCap - ok
21:52:15.0699 1876        NdisTapi        (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
21:52:15.0715 1876        NdisTapi - ok
21:52:15.0731 1876        Ndisuio        (d8a65dafb3eb41cbb622745676fcd072) C:\Windows\system32\DRIVERS\ndisuio.sys
21:52:15.0762 1876        Ndisuio - ok
21:52:15.0777 1876        NdisWan        (38fbe267e7e6983311179230facb1017) C:\Windows\system32\DRIVERS\ndiswan.sys
21:52:15.0793 1876        NdisWan - ok
21:52:15.0809 1876        NDProxy        (a4bdc541e69674fbff1a8ff00be913f2) C:\Windows\system32\drivers\NDProxy.sys
21:52:15.0824 1876        NDProxy - ok
21:52:15.0840 1876        NetBIOS        (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
21:52:15.0855 1876        NetBIOS - ok
21:52:15.0887 1876        NetBT          (280122ddcf04b378edd1ad54d71c1e54) C:\Windows\system32\DRIVERS\netbt.sys
21:52:15.0902 1876        NetBT - ok
21:52:15.0902 1876        Netlogon        (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:52:15.0918 1876        Netlogon - ok
21:52:15.0949 1876        Netman          (7cccfca7510684768da22092d1fa4db2) C:\Windows\System32\netman.dll
21:52:15.0980 1876        Netman - ok
21:52:15.0996 1876        netprofm        (8c338238c16777a802d6a9211eb2ba50) C:\Windows\System32\netprofm.dll
21:52:16.0027 1876        netprofm - ok
21:52:16.0074 1876        NetTcpPortSharing (f476ec40033cdb91efbe73eb99b8362d) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:52:16.0089 1876        NetTcpPortSharing - ok
21:52:16.0105 1876        nfrd960        (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
21:52:16.0105 1876        nfrd960 - ok
21:52:16.0152 1876        NlaSvc          (912084381d30d8b89ec4e293053f4710) C:\Windows\System32\nlasvc.dll
21:52:16.0167 1876        NlaSvc - ok
21:52:16.0183 1876        Npfs            (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
21:52:16.0199 1876        Npfs - ok
21:52:16.0214 1876        nsi            (ba387e955e890c8a88306d9b8d06bf17) C:\Windows\system32\nsisvc.dll
21:52:16.0245 1876        nsi - ok
21:52:16.0245 1876        nsiproxy        (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
21:52:16.0277 1876        nsiproxy - ok
21:52:16.0355 1876        Ntfs            (81189c3d7763838e55c397759d49007a) C:\Windows\system32\drivers\Ntfs.sys
21:52:16.0386 1876        Ntfs - ok
21:52:16.0479 1876        Null            (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
21:52:16.0511 1876        Null - ok
21:52:16.0542 1876        nvraid          (b3e25ee28883877076e0e1ff877d02e0) C:\Windows\system32\drivers\nvraid.sys
21:52:16.0557 1876        nvraid - ok
21:52:16.0573 1876        nvstor          (4380e59a170d88c4f1022eff6719a8a4) C:\Windows\system32\drivers\nvstor.sys
21:52:16.0589 1876        nvstor - ok
21:52:16.0620 1876        nv_agp          (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\drivers\nv_agp.sys
21:52:16.0635 1876        nv_agp - ok
21:52:16.0651 1876        ohci1394        (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\drivers\ohci1394.sys
21:52:16.0667 1876        ohci1394 - ok
21:52:16.0698 1876        p2pimsvc        (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
21:52:16.0713 1876        p2pimsvc - ok
21:52:16.0745 1876        p2psvc          (59c3ddd501e39e006dac31bf55150d91) C:\Windows\system32\p2psvc.dll
21:52:16.0760 1876        p2psvc - ok
21:52:16.0776 1876        Parport        (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
21:52:16.0791 1876        Parport - ok
21:52:16.0823 1876        partmgr        (3f34a1b4c5f6475f320c275e63afce9b) C:\Windows\system32\drivers\partmgr.sys
21:52:16.0838 1876        partmgr - ok
21:52:16.0854 1876        Parvdm          (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
21:52:16.0854 1876        Parvdm - ok
21:52:16.0885 1876        PcaSvc          (358ab7956d3160000726574083dfc8a6) C:\Windows\System32\pcasvc.dll
21:52:16.0885 1876        PcaSvc - ok
21:52:16.0916 1876        pci            (673e55c3498eb970088e812ea820aa8f) C:\Windows\system32\drivers\pci.sys
21:52:16.0932 1876        pci - ok
21:52:16.0947 1876        pciide          (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\drivers\pciide.sys
21:52:16.0947 1876        pciide - ok
21:52:16.0979 1876        pcmcia          (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
21:52:16.0994 1876        pcmcia - ok
21:52:16.0994 1876        pcw            (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
21:52:17.0010 1876        pcw - ok
21:52:17.0041 1876        PEAUTH          (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
21:52:17.0072 1876        PEAUTH - ok
21:52:17.0181 1876        pla            (414bba67a3ded1d28437eb66aeb8a720) C:\Windows\system32\pla.dll
21:52:17.0228 1876        pla - ok
21:52:17.0337 1876        PlugPlay        (ec7bc28d207da09e79b3e9faf8b232ca) C:\Windows\system32\umpnpmgr.dll
21:52:17.0369 1876        PlugPlay - ok
21:52:17.0384 1876        PNRPAutoReg    (63ff8572611249931eb16bb8eed6afc8) C:\Windows\system32\pnrpauto.dll
21:52:17.0400 1876        PNRPAutoReg - ok
21:52:17.0431 1876        PNRPsvc        (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
21:52:17.0431 1876        PNRPsvc - ok
21:52:17.0478 1876        PolicyAgent    (53946b69ba0836bd95b03759530c81ec) C:\Windows\System32\ipsecsvc.dll
21:52:17.0509 1876        PolicyAgent - ok
21:52:17.0556 1876        Power          (f87d30e72e03d579a5199ccb3831d6ea) C:\Windows\system32\umpo.dll
21:52:17.0571 1876        Power - ok
21:52:17.0603 1876        PptpMiniport    (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
21:52:17.0634 1876        PptpMiniport - ok
21:52:17.0649 1876        Processor      (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
21:52:17.0649 1876        Processor - ok
21:52:17.0681 1876        ProfSvc        (43ca4ccc22d52fb58e8988f0198851d0) C:\Windows\system32\profsvc.dll
21:52:17.0712 1876        ProfSvc - ok
21:52:17.0712 1876        ProtectedStorage (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:52:17.0727 1876        ProtectedStorage - ok
21:52:17.0743 1876        Psched          (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
21:52:17.0759 1876        Psched - ok
21:52:17.0805 1876        PSI_SVC_2      (a6a7ad767bf5141665f5c675f671b3e1) c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
21:52:17.0837 1876        PSI_SVC_2 - ok
21:52:17.0915 1876        ql2300          (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
21:52:17.0946 1876        ql2300 - ok
21:52:18.0055 1876        ql40xx          (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
21:52:18.0071 1876        ql40xx - ok
21:52:18.0102 1876        QWAVE          (31ac809e7707eb580b2bdb760390765a) C:\Windows\system32\qwave.dll
21:52:18.0117 1876        QWAVE - ok
21:52:18.0133 1876        QWAVEdrv        (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
21:52:18.0133 1876        QWAVEdrv - ok
21:52:18.0149 1876        RasAcd          (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
21:52:18.0164 1876        RasAcd - ok
21:52:18.0195 1876        RasAgileVpn    (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
21:52:18.0211 1876        RasAgileVpn - ok
21:52:18.0227 1876        RasAuto        (a60f1839849c0c00739787fd5ec03f13) C:\Windows\System32\rasauto.dll
21:52:18.0242 1876        RasAuto - ok
21:52:18.0258 1876        Rasl2tp        (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
21:52:18.0289 1876        Rasl2tp - ok
21:52:18.0320 1876        RasMan          (cb9e04dc05eacf5b9a36ca276d475006) C:\Windows\System32\rasmans.dll
21:52:18.0336 1876        RasMan - ok
21:52:18.0351 1876        RasPppoe        (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
21:52:18.0367 1876        RasPppoe - ok
21:52:18.0398 1876        RasSstp        (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
21:52:18.0414 1876        RasSstp - ok
21:52:18.0429 1876        rdbss          (d528bc58a489409ba40334ebf96a311b) C:\Windows\system32\DRIVERS\rdbss.sys
21:52:18.0445 1876        rdbss - ok
21:52:18.0461 1876        rdpbus          (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
21:52:18.0476 1876        rdpbus - ok
21:52:18.0507 1876        RDPCDD          (23dae03f29d253ae74c44f99e515f9a1) C:\Windows\system32\DRIVERS\RDPCDD.sys
21:52:18.0523 1876        RDPCDD - ok
21:52:18.0554 1876        RDPENCDD        (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
21:52:18.0570 1876        RDPENCDD - ok
21:52:18.0570 1876        RDPREFMP        (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
21:52:18.0585 1876        RDPREFMP - ok
21:52:18.0617 1876        RDPWD          (f031683e6d1fea157abb2ff260b51e61) C:\Windows\system32\drivers\RDPWD.sys
21:52:18.0632 1876        RDPWD - ok
21:52:18.0663 1876        rdyboost        (518395321dc96fe2c9f0e96ac743b656) C:\Windows\system32\drivers\rdyboost.sys
21:52:18.0679 1876        rdyboost - ok
21:52:18.0695 1876        RemoteAccess    (7b5e1419717fac363a31cc302895217a) C:\Windows\System32\mprdim.dll
21:52:18.0726 1876        RemoteAccess - ok
21:52:18.0741 1876        RemoteRegistry  (cb9a8683f4ef2bf99e123d79950d7935) C:\Windows\system32\regsvc.dll
21:52:18.0773 1876        RemoteRegistry - ok
21:52:18.0804 1876        RMCAST          (906dcfc5ebf4ec0433f8d4fffb0ba334) C:\Windows\system32\DRIVERS\RMCAST.sys
21:52:18.0819 1876        RMCAST - ok
21:52:18.0835 1876        RpcEptMapper    (78d072f35bc45d9e4e1b61895c152234) C:\Windows\System32\RpcEpMap.dll
21:52:18.0851 1876        RpcEptMapper - ok
21:52:18.0866 1876        RpcLocator      (94d36c0e44677dd26981d2bfeef2a29d) C:\Windows\system32\locator.exe
21:52:18.0882 1876        RpcLocator - ok
21:52:18.0913 1876        RpcSs          (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll
21:52:18.0944 1876        RpcSs - ok
21:52:18.0960 1876        rspndr          (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
21:52:18.0991 1876        rspndr - ok
21:52:19.0053 1876        RTL8167        (5283b9a27ff230f2ff70d92451ff409a) C:\Windows\system32\DRIVERS\Rt86win7.sys
21:52:19.0069 1876        RTL8167 - ok
21:52:19.0131 1876        RTL8192su      (9ce8deffaffccbf473015d76ae8ee514) C:\Windows\system32\DRIVERS\RTL8192su.sys
21:52:19.0147 1876        RTL8192su - ok
21:52:19.0163 1876        SamSs          (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:52:19.0178 1876        SamSs - ok
21:52:19.0209 1876        sbp2port        (05d860da1040f111503ac416ccef2bca) C:\Windows\system32\drivers\sbp2port.sys
21:52:19.0225 1876        sbp2port - ok
21:52:19.0241 1876        SCardSvr        (8fc518ffe9519c2631d37515a68009c4) C:\Windows\System32\SCardSvr.dll
21:52:19.0272 1876        SCardSvr - ok
21:52:19.0287 1876        scfilter        (0693b5ec673e34dc147e195779a4dcf6) C:\Windows\system32\DRIVERS\scfilter.sys
21:52:19.0303 1876        scfilter - ok
21:52:19.0350 1876        Schedule        (a04bb13f8a72f8b6e8b4071723e4e336) C:\Windows\system32\schedsvc.dll
21:52:19.0381 1876        Schedule - ok
21:52:19.0412 1876        SCPolicySvc    (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll
21:52:19.0428 1876        SCPolicySvc - ok
21:52:19.0459 1876        SDRSVC          (08236c4bce5edd0a0318a438af28e0f7) C:\Windows\System32\SDRSVC.dll
21:52:19.0459 1876        SDRSVC - ok
21:52:19.0490 1876        secdrv          (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
21:52:19.0506 1876        secdrv - ok
21:52:19.0521 1876        seclogon        (a59b3a4442c52060cc7a85293aa3546f) C:\Windows\system32\seclogon.dll
21:52:19.0537 1876        seclogon - ok
21:52:19.0568 1876        SENS            (dcb7fcdcc97f87360f75d77425b81737) C:\Windows\System32\sens.dll
21:52:19.0584 1876        SENS - ok
21:52:19.0599 1876        SensrSvc        (50087fe1ee447009c9cc2997b90de53f) C:\Windows\system32\sensrsvc.dll
21:52:19.0599 1876        SensrSvc - ok
21:52:19.0615 1876        Serenum        (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
21:52:19.0615 1876        Serenum - ok
21:52:19.0646 1876        Serial          (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
21:52:19.0646 1876        Serial - ok
21:52:19.0677 1876        sermouse        (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
21:52:19.0677 1876        sermouse - ok
21:52:19.0709 1876        SessionEnv      (4ae380f39a0032eab7dd953030b26d28) C:\Windows\system32\sessenv.dll
21:52:19.0740 1876        SessionEnv - ok
21:52:19.0755 1876        sffdisk        (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\drivers\sffdisk.sys
21:52:19.0755 1876        sffdisk - ok
21:52:19.0771 1876        sffp_mmc        (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\drivers\sffp_mmc.sys
21:52:19.0787 1876        sffp_mmc - ok
21:52:19.0787 1876        sffp_sd        (a0708bbd07d245c06ff9de549ca47185) C:\Windows\system32\drivers\sffp_sd.sys
21:52:19.0802 1876        sffp_sd - ok
21:52:19.0818 1876        sfloppy        (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
21:52:19.0833 1876        sfloppy - ok
21:52:19.0865 1876        SharedAccess    (d1a079a0de2ea524513b6930c24527a2) C:\Windows\System32\ipnathlp.dll
21:52:19.0880 1876        SharedAccess - ok
21:52:19.0927 1876        ShellHWDetection (414da952a35bf5d50192e28263b40577) C:\Windows\System32\shsvcs.dll
21:52:19.0943 1876        ShellHWDetection - ok
21:52:19.0974 1876        sisagp          (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\drivers\sisagp.sys
21:52:19.0974 1876        sisagp - ok
21:52:19.0989 1876        SiSRaid2        (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
21:52:20.0005 1876        SiSRaid2 - ok
21:52:20.0005 1876        SiSRaid4        (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
21:52:20.0021 1876        SiSRaid4 - ok
21:52:20.0052 1876        Smb            (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
21:52:20.0067 1876        Smb - ok
21:52:20.0099 1876        SNMPTRAP        (6a984831644eca1a33ffeae4126f4f37) C:\Windows\System32\snmptrap.exe
21:52:20.0114 1876        SNMPTRAP - ok
21:52:20.0114 1876        spldr          (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
21:52:20.0130 1876        spldr - ok
21:52:20.0161 1876        Spooler        (866a43013535dc8587c258e43579c764) C:\Windows\System32\spoolsv.exe
21:52:20.0177 1876        Spooler - ok
21:52:20.0411 1876        sppsvc          (cf87a1de791347e75b98885214ced2b8) C:\Windows\system32\sppsvc.exe
21:52:20.0457 1876        sppsvc - ok
21:52:20.0535 1876        sppuinotify    (b0180b20b065d89232a78a40fe56eaa6) C:\Windows\system32\sppuinotify.dll
21:52:20.0567 1876        sppuinotify - ok
21:52:20.0629 1876        srv            (e4c2764065d66ea1d2d3ebc28fe99c46) C:\Windows\system32\DRIVERS\srv.sys
21:52:20.0645 1876        srv - ok
21:52:20.0660 1876        srv2            (03f0545bd8d4c77fa0ae1ceedfcc71ab) C:\Windows\system32\DRIVERS\srv2.sys
21:52:20.0676 1876        srv2 - ok
21:52:20.0691 1876        srvnet          (be6bd660caa6f291ae06a718a4fa8abc) C:\Windows\system32\DRIVERS\srvnet.sys
21:52:20.0691 1876        srvnet - ok
21:52:20.0723 1876        SSDPSRV        (d887c9fd02ac9fa880f6e5027a43e118) C:\Windows\System32\ssdpsrv.dll
21:52:20.0738 1876        SSDPSRV - ok
21:52:20.0754 1876        ssmdrv          (a36ee93698802cd899f98bfd553d8185) C:\Windows\system32\DRIVERS\ssmdrv.sys
21:52:20.0769 1876        ssmdrv - ok
21:52:20.0785 1876        SstpSvc        (d318f23be45d5e3a107469eb64815b50) C:\Windows\system32\sstpsvc.dll
21:52:20.0801 1876        SstpSvc - ok
21:52:20.0816 1876        ssudmdm        (07318149e102fd9197ab444c27774372) C:\Windows\system32\DRIVERS\ssudmdm.sys
21:52:20.0832 1876        ssudmdm - ok
21:52:20.0863 1876        stexstor        (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
21:52:20.0863 1876        stexstor - ok
21:52:20.0910 1876        StiSvc          (e1fb3706030fb4578a0d72c2fc3689e4) C:\Windows\System32\wiaservc.dll
21:52:20.0925 1876        StiSvc - ok
21:52:20.0941 1876        swenum          (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\drivers\swenum.sys
21:52:20.0941 1876        swenum - ok
21:52:20.0988 1876        swprv          (a28bd92df340e57b024ba433165d34d7) C:\Windows\System32\swprv.dll
21:52:21.0019 1876        swprv - ok
21:52:21.0081 1876        SysMain        (36650d618ca34c9d357dfd3d89b2c56f) C:\Windows\system32\sysmain.dll
21:52:21.0113 1876        SysMain - ok
21:52:21.0128 1876        TabletInputService (763fecdc3d30c815fe72dd57936c6cd1) C:\Windows\System32\TabSvc.dll
21:52:21.0144 1876        TabletInputService - ok
21:52:21.0175 1876        TapiSrv        (613bf4820361543956909043a265c6ac) C:\Windows\System32\tapisrv.dll
21:52:21.0191 1876        TapiSrv - ok
21:52:21.0222 1876        TBS            (b799d9fdb26111737f58288d8dc172d9) C:\Windows\System32\tbssvc.dll
21:52:21.0237 1876        TBS - ok
21:52:21.0362 1876        Tcpip          (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\drivers\tcpip.sys
21:52:21.0393 1876        Tcpip - ok
21:52:21.0518 1876        TCPIP6          (7fa2e0f8b072bd04b77b421480b6cc22) C:\Windows\system32\DRIVERS\tcpip.sys
21:52:21.0549 1876        TCPIP6 - ok
21:52:21.0612 1876        tcpipreg        (cca24162e055c3714ce5a88b100c64ed) C:\Windows\system32\drivers\tcpipreg.sys
21:52:21.0643 1876        tcpipreg - ok
21:52:21.0674 1876        TDPIPE          (1cb91b2bd8f6dd367dfc2ef26fd751b2) C:\Windows\system32\drivers\tdpipe.sys
21:52:21.0674 1876        TDPIPE - ok
21:52:21.0705 1876        TDTCP          (2c2c5afe7ee4f620d69c23c0617651a8) C:\Windows\system32\drivers\tdtcp.sys
21:52:21.0721 1876        TDTCP - ok
21:52:21.0737 1876        tdx            (b459575348c20e8121d6039da063c704) C:\Windows\system32\DRIVERS\tdx.sys
21:52:21.0752 1876        tdx - ok
21:52:21.0768 1876        TermDD          (04dbf4b01ea4bf25a9a3e84affac9b20) C:\Windows\system32\drivers\termdd.sys
21:52:21.0768 1876        TermDD - ok
21:52:21.0815 1876        TermService    (382c804c92811be57829d8e550a900e2) C:\Windows\System32\termsrv.dll
21:52:21.0830 1876        TermService - ok
21:52:21.0861 1876        Themes          (42fb6afd6b79d9fe07381609172e7ca4) C:\Windows\system32\themeservice.dll
21:52:21.0861 1876        Themes - ok
21:52:21.0893 1876        THREADORDER    (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
21:52:21.0908 1876        THREADORDER - ok
21:52:21.0924 1876        TrkWks          (4792c0378db99a9bc2ae2de6cfff0c3a) C:\Windows\System32\trkwks.dll
21:52:21.0939 1876        TrkWks - ok
21:52:21.0986 1876        TrustedInstaller (2c49b175aee1d4364b91b531417fe583) C:\Windows\servicing\TrustedInstaller.exe
21:52:22.0002 1876        TrustedInstaller - ok
21:52:22.0017 1876        tssecsrv        (254bb140eee3c59d6114c1a86b636877) C:\Windows\system32\DRIVERS\tssecsrv.sys
21:52:22.0033 1876        tssecsrv - ok
21:52:22.0064 1876        TsUsbFlt        (fd1d6c73e6333be727cbcc6054247654) C:\Windows\system32\drivers\tsusbflt.sys
21:52:22.0064 1876        TsUsbFlt - ok
21:52:22.0111 1876        tunnel          (b2fa25d9b17a68bb93d58b0556e8c90d) C:\Windows\system32\DRIVERS\tunnel.sys
21:52:22.0127 1876        tunnel - ok
21:52:22.0142 1876        uagp35          (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
21:52:22.0158 1876        uagp35 - ok
21:52:22.0189 1876        udfs            (ee43346c7e4b5e63e54f927babbb32ff) C:\Windows\system32\DRIVERS\udfs.sys
21:52:22.0205 1876        udfs - ok
21:52:22.0220 1876        UI0Detect      (8344fd4fce927880aa1aa7681d4927e5) C:\Windows\system32\UI0Detect.exe
21:52:22.0236 1876        UI0Detect - ok
21:52:22.0251 1876        uliagpkx        (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\drivers\uliagpkx.sys
21:52:22.0267 1876        uliagpkx - ok
21:52:22.0283 1876        umbus          (d295bed4b898f0fd999fcfa9b32b071b) C:\Windows\system32\drivers\umbus.sys
21:52:22.0298 1876        umbus - ok
21:52:22.0298 1876        UmPass          (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
21:52:22.0314 1876        UmPass - ok
21:52:22.0345 1876        upnphost        (833fbb672460efce8011d262175fad33) C:\Windows\System32\upnphost.dll
21:52:22.0361 1876        upnphost - ok
21:52:22.0376 1876        usbccgp        (8455c4ed038efd09e99327f9d2d48ffa) C:\Windows\system32\DRIVERS\usbccgp.sys
21:52:22.0392 1876        usbccgp - ok
21:52:22.0423 1876        usbcir          (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\drivers\usbcir.sys
21:52:22.0423 1876        usbcir - ok
21:52:22.0454 1876        usbehci        (f92de757e4b7ce9c07c5e65423f3ae3b) C:\Windows\system32\DRIVERS\usbehci.sys
21:52:22.0454 1876        usbehci - ok
21:52:22.0501 1876        usbhub          (8dc94aec6a7e644a06135ae7506dc2e9) C:\Windows\system32\DRIVERS\usbhub.sys
21:52:22.0517 1876        usbhub - ok
21:52:22.0532 1876        usbohci        (a6fb7957ea7afb1165991e54ce934b74) C:\Windows\system32\DRIVERS\usbohci.sys
21:52:22.0548 1876        usbohci - ok
21:52:22.0563 1876        usbprint        (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
21:52:22.0579 1876        usbprint - ok
21:52:22.0610 1876        usbscan        (576096ccbc07e7c4ea4f5e6686d6888f) C:\Windows\system32\DRIVERS\usbscan.sys
21:52:22.0610 1876        usbscan - ok
21:52:22.0626 1876        USBSTOR        (d8889d56e0d27e57ed4591837fe71d27) C:\Windows\system32\DRIVERS\USBSTOR.SYS
21:52:22.0641 1876        USBSTOR - ok
21:52:22.0657 1876        usbuhci        (68df884cf41cdada664beb01daf67e3d) C:\Windows\system32\DRIVERS\usbuhci.sys
21:52:22.0673 1876        usbuhci - ok
21:52:22.0688 1876        UxSms          (081e6e1c91aec36758902a9f727cd23c) C:\Windows\System32\uxsms.dll
21:52:22.0704 1876        UxSms - ok
21:52:22.0719 1876        VaultSvc        (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
21:52:22.0735 1876        VaultSvc - ok
21:52:22.0751 1876        vdrvroot        (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\drivers\vdrvroot.sys
21:52:22.0766 1876        vdrvroot - ok
21:52:22.0797 1876        vds            (c3cd30495687c2a2f66a65ca6fd89be9) C:\Windows\System32\vds.exe
21:52:22.0829 1876        vds - ok
21:52:22.0844 1876        vga            (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
21:52:22.0860 1876        vga - ok
21:52:22.0875 1876        VgaSave        (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
21:52:22.0891 1876        VgaSave - ok
21:52:22.0922 1876        vhdmp          (5461686cca2fda57b024547733ab42e3) C:\Windows\system32\drivers\vhdmp.sys
21:52:22.0938 1876        vhdmp - ok
21:52:22.0953 1876        viaagp          (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\drivers\viaagp.sys
21:52:22.0969 1876        viaagp - ok
21:52:22.0969 1876        ViaC7          (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
21:52:22.0985 1876        ViaC7 - ok
21:52:23.0000 1876        viaide          (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\drivers\viaide.sys
21:52:23.0016 1876        viaide - ok
21:52:23.0031 1876        volmgr          (4c63e00f2f4b5f86ab48a58cd990f212) C:\Windows\system32\drivers\volmgr.sys
21:52:23.0031 1876        volmgr - ok
21:52:23.0063 1876        volmgrx        (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
21:52:23.0078 1876        volmgrx - ok
21:52:23.0094 1876        volsnap        (f497f67932c6fa693d7de2780631cfe7) C:\Windows\system32\drivers\volsnap.sys
21:52:23.0109 1876        volsnap - ok
21:52:23.0141 1876        vsmraid        (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
21:52:23.0156 1876        vsmraid - ok
21:52:23.0234 1876        VSS            (209a3b1901b83aeb8527ed211cce9e4c) C:\Windows\system32\vssvc.exe
21:52:23.0265 1876        VSS - ok
21:52:23.0281 1876        vwifibus        (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\system32\DRIVERS\vwifibus.sys
21:52:23.0297 1876        vwifibus - ok
21:52:23.0297 1876        vwififlt        (7090d3436eeb4e7da3373090a23448f7) C:\Windows\system32\DRIVERS\vwififlt.sys
21:52:23.0312 1876        vwififlt - ok
21:52:23.0328 1876        vwifimp        (a3f04cbea6c2a10e6cb01f8b47611882) C:\Windows\system32\DRIVERS\vwifimp.sys
21:52:23.0343 1876        vwifimp - ok
21:52:23.0359 1876        W32Time        (55187fd710e27d5095d10a472c8baf1c) C:\Windows\system32\w32time.dll
21:52:23.0390 1876        W32Time - ok
21:52:23.0406 1876        WacomPen        (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
21:52:23.0421 1876        WacomPen - ok
21:52:23.0437 1876        WANARP          (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
21:52:23.0468 1876        WANARP - ok
21:52:23.0468 1876        Wanarpv6        (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
21:52:23.0484 1876        Wanarpv6 - ok
21:52:23.0562 1876        wbengine        (691e3285e53dca558e1a84667f13e15a) C:\Windows\system32\wbengine.exe
21:52:23.0593 1876        wbengine - ok
21:52:23.0609 1876        WbioSrvc        (9614b5d29dc76ac3c29f6d2d3aa70e67) C:\Windows\System32\wbiosrvc.dll
21:52:23.0624 1876        WbioSrvc - ok
21:52:23.0655 1876        wcncsvc        (34eee0dfaadb4f691d6d5308a51315dc) C:\Windows\System32\wcncsvc.dll
21:52:23.0671 1876        wcncsvc - ok
21:52:23.0702 1876        WcsPlugInService (5d930b6357a6d2af4d7653bdabbf352f) C:\Windows\System32\WcsPlugInService.dll
21:52:23.0702 1876        WcsPlugInService - ok
21:52:23.0749 1876        Wd              (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
21:52:23.0765 1876        Wd - ok
21:52:23.0811 1876        Wdf01000        (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
21:52:23.0827 1876        Wdf01000 - ok
21:52:23.0843 1876        WdiServiceHost  (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
21:52:23.0858 1876        WdiServiceHost - ok
21:52:23.0858 1876        WdiSystemHost  (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
21:52:23.0874 1876        WdiSystemHost - ok
21:52:23.0905 1876        WebClient      (a9d880f97530d5b8fee278923349929d) C:\Windows\System32\webclnt.dll
21:52:23.0921 1876        WebClient - ok
21:52:23.0952 1876        Wecsvc          (760f0afe937a77cff27153206534f275) C:\Windows\system32\wecsvc.dll
21:52:23.0967 1876        Wecsvc - ok
21:52:23.0983 1876        wercplsupport  (ac804569bb2364fb6017370258a4091b) C:\Windows\System32\wercplsupport.dll
21:52:23.0999 1876        wercplsupport - ok
21:52:24.0030 1876        WerSvc          (08e420d873e4fd85241ee2421b02c4a4) C:\Windows\System32\WerSvc.dll
21:52:24.0045 1876        WerSvc - ok
21:52:24.0077 1876        WfpLwf          (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
21:52:24.0092 1876        WfpLwf - ok
21:52:24.0108 1876        WIMMount        (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
21:52:24.0123 1876        WIMMount - ok
21:52:24.0201 1876        WinDefend      (3fae8f94296001c32eab62cd7d82e0fd) C:\Program Files\Windows Defender\mpsvc.dll
21:52:24.0233 1876        WinDefend - ok
21:52:24.0233 1876        WinHttpAutoProxySvc - ok
21:52:24.0279 1876        Winmgmt        (f62e510b6ad4c21eb9fe8668ed251826) C:\Windows\system32\wbem\WMIsvc.dll
21:52:24.0311 1876        Winmgmt - ok
21:52:24.0404 1876        WinRM          (1b91cd34ea3a90ab6a4ef0550174f4cc) C:\Windows\system32\WsmSvc.dll
21:52:24.0451 1876        WinRM - ok
21:52:24.0498 1876        WinUsb          (a67e5f9a400f3bd1be3d80613b45f708) C:\Windows\system32\DRIVERS\WinUsb.sys
21:52:24.0529 1876        WinUsb - ok
21:52:24.0576 1876        Wlansvc        (16935c98ff639d185086a3529b1f2067) C:\Windows\System32\wlansvc.dll
21:52:24.0607 1876        Wlansvc - ok
21:52:24.0638 1876        WmiAcpi        (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\drivers\wmiacpi.sys
21:52:24.0654 1876        WmiAcpi - ok
21:52:24.0701 1876        wmiApSrv        (6eb6b66517b048d87dc1856ddf1f4c3f) C:\Windows\system32\wbem\WmiApSrv.exe
21:52:24.0716 1876        wmiApSrv - ok
21:52:24.0841 1876        WMPNetworkSvc  (3b40d3a61aa8c21b88ae57c58ab3122e) C:\Program Files\Windows Media Player\wmpnetwk.exe
21:52:24.0872 1876        WMPNetworkSvc - ok
21:52:24.0950 1876        WPCSvc          (a2f0ec770a92f2b3f9de6d518e11409c) C:\Windows\System32\wpcsvc.dll
21:52:24.0966 1876        WPCSvc - ok
21:52:24.0981 1876        WPDBusEnum      (aa53356d60af47eacc85bc617a4f3f66) C:\Windows\system32\wpdbusenum.dll
21:52:24.0997 1876        WPDBusEnum - ok
21:52:25.0028 1876        ws2ifsl        (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
21:52:25.0044 1876        ws2ifsl - ok
21:52:25.0059 1876        wscsvc          (6f5d49efe0e7164e03ae773a3fe25340) C:\Windows\System32\wscsvc.dll
21:52:25.0059 1876        wscsvc - ok
21:52:25.0075 1876        WSearch - ok
21:52:25.0200 1876        wuauserv        (fc3ec24fce372c89423e015a2ac1a31e) C:\Windows\system32\wuaueng.dll
21:52:25.0231 1876        wuauserv - ok
21:52:25.0325 1876        WudfPf          (e714a1c0354636837e20ccbf00888ee7) C:\Windows\system32\drivers\WudfPf.sys
21:52:25.0356 1876        WudfPf - ok
21:52:25.0371 1876        WUDFRd          (1023ee888c9b47178c5293ed5336ab69) C:\Windows\system32\DRIVERS\WUDFRd.sys
21:52:25.0387 1876        WUDFRd - ok
21:52:25.0418 1876        wudfsvc        (8d1e1e529a2c9e9b6a85b55a345f7629) C:\Windows\System32\WUDFSvc.dll
21:52:25.0434 1876        wudfsvc - ok
21:52:25.0449 1876        WwanSvc        (ff2d745b560f7c71b31f30f4d49f73d2) C:\Windows\System32\wwansvc.dll
21:52:25.0465 1876        WwanSvc - ok
21:52:25.0496 1876        MBR (0x1B8)    (c79b30cb8852157f6f908e4698cfe0d0) \Device\Harddisk0\DR0
21:52:27.0805 1876        \Device\Harddisk0\DR0 - ok
21:52:27.0805 1876        Boot (0x1200)  (a96290b5401c2da5a08bb9471d76d503) \Device\Harddisk0\DR0\Partition0
21:52:27.0805 1876        \Device\Harddisk0\DR0\Partition0 - ok
21:52:27.0836 1876        Boot (0x1200)  (046bbd7303f14eb983a3f0c302651470) \Device\Harddisk0\DR0\Partition1
21:52:27.0836 1876        \Device\Harddisk0\DR0\Partition1 - ok
21:52:27.0883 1876        Boot (0x1200)  (376b50b18dd730f4a63e4b8227f4638c) \Device\Harddisk0\DR0\Partition2
21:52:27.0883 1876        \Device\Harddisk0\DR0\Partition2 - ok
21:52:27.0883 1876        ============================================================
21:52:27.0883 1876        Scan finished
21:52:27.0883 1876        ============================================================
21:52:27.0899 0308        Detected object count: 3
21:52:27.0899 0308        Actual detected object count: 3
21:52:58.0303 0308        avmeject ( UnsignedFile.Multi.Generic ) - skipped by user
21:52:58.0303 0308        avmeject ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:52:58.0303 0308        hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user
21:52:58.0303 0308        hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip
21:52:58.0303 0308        IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
21:52:58.0303 0308        IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip


cosinus 16.07.2012 10:40

Dann bitte jetzt CF ausführen:

ComboFix

Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Schliesse alle Programme, vor allem dein Antivirenprogramm und andere Hintergrundwächter sowie deinen Internetbrowser.
  • Starte combofix.exe von deinem Desktop aus, bestätige die Warnmeldungen, führe die Updates durch (falls vorgeschlagen), installiere die Wiederherstellungskonsole (falls vorgeschlagen) und lass dein System durchsuchen.
    Vermeide es auch während Combofix läuft die Maus und Tastatur zu benutzen.
  • Im Anschluss öffnet sich automatisch eine combofix.txt, diesen Inhalt bitte kopieren ([Strg]a, [Strg]c) und in deinen Beitrag einfügen ([Strg]v). Die Datei findest du außerdem unter: C:\ComboFix.txt.
Wichtiger Hinweis:
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!

Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich ziehen und eine Bereinigung der Infektion noch erschweren.

Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie

Zitat:

Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
startest du Windows dann manuell neu und die Fehlermeldungen sollten nicht mehr auftauchen.

Darwin 16.07.2012 11:41

Combofix Logfile:
Code:

ComboFix 12-07-14.01 - Klaus 16.07.2012  12:24:41.1.2 - x86
Microsoft Windows 7 Home Premium  6.1.7601.1.1252.49.1031.18.3071.1648 [GMT 2:00]
ausgeführt von:: c:\users\Klaus\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((  Weitere Löschungen  ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Klaus\4.0
c:\users\Klaus\AppData\Local\Temp\26b4a1dd-e07b-48af-be4e-9642b273284b\CliSecureRT.dll
c:\users\Ulrike\4.0
c:\windows\system32\drivers\etc\hosts.ics
c:\windows\system32\muzapp.exe
c:\windows\system32\roboot.exe
.
.
(((((((((((((((((((((((  Dateien erstellt von 2012-06-16 bis 2012-07-16  ))))))))))))))))))))))))))))))
.
.
2012-07-16 10:29 . 2012-07-16 10:31        --------        d-----w-        c:\users\Klaus\AppData\Local\temp
2012-07-16 07:56 . 2012-07-16 07:56        --------        d-----w-        c:\windows\LastGood.Tmp
2012-07-15 16:38 . 2012-07-15 18:07        --------        d-----w-        C:\_OTL
2012-07-12 09:39 . 2012-06-12 02:40        2345984        ----a-w-        c:\windows\system32\win32k.sys
2012-07-11 17:43 . 2012-07-11 17:43        --------        d-----w-        c:\users\Klaus\AppData\Roaming\Malwarebytes
2012-07-11 17:43 . 2012-07-11 17:43        --------        d-----w-        c:\program files\Malwarebytes' Anti-Malware
2012-07-11 17:43 . 2012-07-11 17:43        --------        d-----w-        c:\programdata\Malwarebytes
2012-07-11 17:43 . 2012-04-04 13:56        22344        ----a-w-        c:\windows\system32\drivers\mbam.sys
2012-07-06 09:46 . 2012-07-06 09:46        --------        d-----w-        c:\program files\ESET
2012-07-06 08:06 . 2012-05-31 03:41        6762896        ----a-w-        c:\programdata\Microsoft\Windows Defender\Definition Updates\{20BF89B2-A1EA-41B0-A46D-E92D08E18F1C}\mpengine.dll
2012-07-05 15:21 . 2012-07-05 15:21        --------        d-----w-        c:\program files\Common Files\Java
2012-07-05 15:20 . 2012-07-05 15:20        --------        d-----w-        c:\program files\Oracle
2012-06-22 15:40 . 2012-05-04 17:29        772504        ----a-w-        c:\windows\system32\npdeployJava1.dll
2012-06-22 15:40 . 2012-07-05 15:19        --------        d-----w-        c:\program files\Java
2012-06-21 06:41 . 2012-06-02 22:19        53784        ----a-w-        c:\windows\system32\wuauclt.exe
2012-06-21 06:41 . 2012-06-02 22:19        45080        ----a-w-        c:\windows\system32\wups2.dll
2012-06-21 06:41 . 2012-06-02 22:12        2422272        ----a-w-        c:\windows\system32\wucltux.dll
2012-06-21 06:41 . 2012-06-02 22:19        1933848        ----a-w-        c:\windows\system32\wuaueng.dll
2012-06-21 06:41 . 2012-06-02 22:19        35864        ----a-w-        c:\windows\system32\wups.dll
2012-06-21 06:41 . 2012-06-02 22:19        577048        ----a-w-        c:\windows\system32\wuapi.dll
2012-06-21 06:41 . 2012-06-02 22:12        88576        ----a-w-        c:\windows\system32\wudriver.dll
2012-06-21 06:40 . 2012-06-02 13:19        171904        ----a-w-        c:\windows\system32\wuwebv.dll
2012-06-21 06:40 . 2012-06-02 13:12        33792        ----a-w-        c:\windows\system32\wuapp.exe
2012-06-20 15:19 . 2012-06-20 15:19        --------        d-----w-        c:\programdata\HPSSUPPLY
2012-06-20 15:18 . 2010-06-29 13:15        293888        ----a-w-        c:\windows\system32\Spool\prtprocs\w32x86\HP1006S.DLL
2012-06-20 15:18 . 2010-06-29 13:15        286720        ----a-w-        c:\windows\system32\HP1006LM.DLL
2012-06-20 15:18 . 2010-01-13 10:42        65536        ----a-w-        c:\windows\system32\HPPLVS.dll
2012-06-20 15:17 . 2012-06-20 15:17        --------        d-----w-        C:\hp_P1000_P1500_Full_Solution
2012-06-20 14:45 . 2012-06-20 14:45        --------        d-----w-        c:\windows\system32\URTTEMP
2012-06-20 14:41 . 2012-06-20 15:18        --------        d--h--w-        c:\program files\Avago-HP
.
.
.
((((((((((((((((((((((((((((((((((((  Find3M Bericht  ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-07-13 09:45 . 2012-04-15 17:49        426184        ----a-w-        c:\windows\system32\FlashPlayerApp.exe
2012-07-13 09:45 . 2011-05-15 11:57        70344        ----a-w-        c:\windows\system32\FlashPlayerCPLApp.cpl
2012-06-10 14:22 . 2010-12-14 20:12        2300696        ----a-w-        c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2012-06-10 14:21 . 2011-01-10 17:43        42776        ----a-w-        c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM-2\StartResources.dll
2012-06-10 14:21 . 2010-12-14 20:11        1236816        ----a-w-        c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2012-06-08 16:53 . 2011-01-10 17:43        2300696        ----a-w-        c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\markup.dll
2012-06-08 16:53 . 2010-12-14 20:12        42776        ----a-w-        c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
2012-06-08 15:52 . 2010-12-24 09:09        1236816        ----a-w-        c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2012-05-29 07:38 . 2011-12-23 19:58        330240        ----a-w-        c:\windows\MASetupCaller.dll
2012-05-11 05:34 . 2012-05-11 05:34        181432        ----a-w-        c:\windows\system32\drivers\ssudmdm.sys
2012-05-08 08:08 . 2012-02-09 19:39        83392        ----a-w-        c:\windows\system32\drivers\avgntflt.sys
2012-05-08 08:08 . 2012-02-09 19:39        137928        ----a-w-        c:\windows\system32\drivers\avipbb.sys
2012-05-04 17:29 . 2010-06-30 10:03        687504        ----a-w-        c:\windows\system32\deployJava1.dll
2012-04-28 03:17 . 2012-06-13 05:50        183808        ----a-w-        c:\windows\system32\drivers\rdpwd.sys
2012-04-26 04:45 . 2012-06-13 05:50        58880        ----a-w-        c:\windows\system32\rdpwsx.dll
2012-04-26 04:45 . 2012-06-13 05:50        129536        ----a-w-        c:\windows\system32\rdpcorekmts.dll
2012-04-26 04:41 . 2012-06-13 05:50        8192        ----a-w-        c:\windows\system32\rdrmemptylst.exe
2012-06-16 17:53 . 2011-05-06 16:47        85472        ----a-w-        c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((  Autostartpunkte der Registrierung  ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"KiesPDLR"="c:\program files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe" [2012-06-08 21432]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-03-04 284696]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2009-11-02 103720]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2010-04-07 8555040]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-05-27 98304]
"Nikon Transfer Monitor"="c:\program files\Common Files\Nikon\Monitor\NkMonitor.exe" [2009-05-29 479232]
"KiesTrayAgent"="c:\program files\Samsung\Kies\KiesTrayAgent.exe" [2012-06-08 3521464]
"Agile1pAgent"="c:\program files\1Password\Agile1pAgent.exe" [2012-03-31 2204424]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2012-05-08 348624]
"hpqSRMon"="c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe" [2008-08-20 150016]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2011-05-10 49208]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-04-04 843712]
.
c:\users\Ulrike\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OpenOffice.org 3.2.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2010-5-20 1195008]
.
c:\users\Klaus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Klaus\AppData\Roaming\Dropbox\bin\Dropbox.exe [2012-5-24 27112840]
OpenOffice.org 3.2.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2010-5-20 1195008]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
R2 gupdate;Google Update-Dienst (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [x]
R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
R3 avmeject;AVM Eject;c:\windows\system32\drivers\avmeject.sys [x]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys [x]
R3 fwlanusbn;FRITZ!WLAN N;c:\windows\system32\DRIVERS\fwlanusbn.sys [x]
R3 gupdatem;Google Update-Dienst (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [x]
R3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [x]
R3 ssudmdm;SAMSUNG  Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [x]
S2 Agile1Password;1Password;c:\program files\1Password\Agile1pService.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 AntiVirSchedulerService;Avira Planer;c:\program files\Avira\AntiVir Desktop\sched.exe [x]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8192su.sys [x]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
hpdevmgmt        REG_MULTI_SZ          hpqcxs08
.
Inhalt des "geplante Tasks" Ordners
.
2012-07-16 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-15 09:45]
.
2012-07-16 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-09-19 19:21]
.
2012-07-16 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-09-19 19:21]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://www.google.de/
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: {{0B65DCC9-1740-43dc-B19C-4F309FB6A6CA} - hxxp://rover.ebay.com/rover/1/707-37276-17534-31/4
TCP: DhcpNameServer = 192.168.178.1
FF - ProfilePath - c:\users\Klaus\AppData\Roaming\Mozilla\Firefox\Profiles\72m40r9y.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - www.google.de
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
HKCU-Run-KiesHelper - c:\program files\Samsung\Kies\KiesHelper.exe
SafeBoot-BsScanner
AddRemove-01_Simmental - c:\program files\Samsung\USB Drivers\01_Simmental\Uninstall.exe
AddRemove-02_Siberian - c:\program files\Samsung\USB Drivers\02_Siberian\Uninstall.exe
AddRemove-03_Swallowtail - c:\program files\Samsung\USB Drivers\03_Swallowtail\Uninstall.exe
AddRemove-04_semseyite - c:\program files\Samsung\USB Drivers\04_semseyite\Uninstall.exe
AddRemove-05_Sloan - c:\program files\Samsung\USB Drivers\05_Sloan\Uninstall.exe
AddRemove-06_Spencer - c:\program files\Samsung\USB Drivers\06_Spencer\Uninstall.exe
AddRemove-07_Schorl - c:\program files\Samsung\USB Drivers\07_Schorl\Uninstall.exe
AddRemove-08_EMPChipset - c:\program files\Samsung\USB Drivers\08_EMPChipset\Uninstall.exe
AddRemove-09_Hsp - c:\program files\Samsung\USB Drivers\09_Hsp\Uninstall.exe
AddRemove-11_HSP_Plus_Default - c:\program files\Samsung\USB Drivers\11_HSP_Plus_Default\Uninstall.exe
AddRemove-16_Shrewsbury - c:\program files\Samsung\USB Drivers\16_Shrewsbury\Uninstall.exe
AddRemove-17_EMP_Chipset2 - c:\program files\Samsung\USB Drivers\17_EMP_Chipset2\Uninstall.exe
AddRemove-18_Zinia_Serial_Driver - c:\program files\Samsung\USB Drivers\18_Zinia_Serial_Driver\Uninstall.exe
AddRemove-19_VIA_driver - c:\program files\Samsung\USB Drivers\19_VIA_driver\Uninstall.exe
AddRemove-20_NXP_Driver - c:\program files\Samsung\USB Drivers\20_NXP_Driver\Uninstall.exe
AddRemove-21_Searsburg - c:\program files\Samsung\USB Drivers\21_Searsburg\Uninstall.exe
AddRemove-22_WiBro_WiMAX - c:\program files\Samsung\USB Drivers\22_WiBro_WiMAX\Uninstall.exe
AddRemove-24_flashusbdriver - c:\program files\Samsung\USB Drivers\24_flashusbdriver\Uninstall.exe
AddRemove-25_escape - c:\program files\Samsung\USB Drivers\25_escape\Uninstall.exe
.
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Weitere laufende Prozesse ------------------------
.
c:\windows\system32\atieclxx.exe
c:\program files\Avira\AntiVir Desktop\avguard.exe
c:\program files\Common Files\Protexis\License Service\PsiService_2.exe
c:\program files\Avira\AntiVir Desktop\avshadow.exe
c:\windows\system32\conhost.exe
c:\windows\system32\WUDFHost.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\spool\DRIVERS\W32X86\3\HP1006MC.EXE
c:\windows\system32\conhost.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\OpenOffice.org 3\program\soffice.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
c:\program files\OpenOffice.org 3\program\soffice.bin
c:\windows\system32\sppsvc.exe
.
**************************************************************************
.
Zeit der Fertigstellung: 2012-07-16  12:34:23 - PC wurde neu gestartet
ComboFix-quarantined-files.txt  2012-07-16 10:34
.
Vor Suchlauf: 10 Verzeichnis(se), 844.196.601.856 Bytes frei
Nach Suchlauf: 14 Verzeichnis(se), 843.948.343.296 Bytes frei
.
- - End Of File - - A7915631D87C6371FBC2EB29159A3237

--- --- ---

cosinus 16.07.2012 16:22

Bitte nun Logs mit GMER und OSAM erstellen und posten.
GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen.
Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst.

Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM!

Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe - (aswMBR.exe Anleitung)
    Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten".
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen )
    Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS-Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort.

Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung

Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none).



Noch ein Hinweis: Sollte aswMBR abstürzen und es kommt eine Meldung wie "aswMBR.exe funktioniert nicht mehr, dann mach Folgendes:
Starte aswMBR neu, wähle unten links im Drop-Down-Menü (unten links im Fenster von aswMBR) bei "AV scan" (none) aus und klick nochmal auf den Scan-Button.

Darwin 16.07.2012 19:00

GMER Logfile:
Code:

GMER 1.0.15.15641 - hxxp://www.gmer.net
Rootkit scan 2012-07-16 20:00:39
Windows 6.1.7601 Service Pack 1 Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 Hitachi_ rev.JP4O
Running: yxfpomk0.exe; Driver: C:\Users\Klaus\AppData\Local\Temp\fwddapoc.sys


---- Kernel code sections - GMER 1.0.15 ----

.text          ntkrnlpa.exe!ZwRollbackEnlistment + 140D                                                              834433C9 1 Byte  [06]
.text          ntkrnlpa.exe!KiDispatchInterrupt + 5A2                                                                8347CD52 19 Bytes  [E0, 0F, BA, F0, 07, 73, 09, ...] {LOOPNZ 0x11; MOV EDX, 0x97307f0; MOV CR4, EAX; OR AL, 0x80; MOV CR4, EAX; RET ; MOV ECX, CR3}
.text          C:\Windows\system32\DRIVERS\atikmdag.sys                                                              section is writeable [0x92036000, 0x2FBAB4, 0xE8000020]
?              C:\Windows\system32\Drivers\PROCEXP113.SYS                                                            Das System kann die angegebene Datei nicht finden. !
.text          autochk.exe                                                                                            002C11D1 15 Bytes  [FF, FF, FF, 76, 01, 0A, 36, ...]
.text          autochk.exe                                                                                            002C1204 4 Bytes  [00, 00, 00, FF] {ADD [EAX], AL; ADD BH, BH}
.text          autochk.exe                                                                                            002C120C 1 Byte  [00]
.text          autochk.exe                                                                                            002C1210 1 Byte  [00]
.text          autochk.exe                                                                                            002C1214 2 Bytes  [00, 00] {ADD [EAX], AL}
.text          ...                                                                                                   

---- User code sections - GMER 1.0.15 ----

.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] kernel32.dll!CreateThread                        76EEDCC2 5 Bytes  JMP 6D6A75CB C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!EnableWindow                          75B28D02 5 Bytes  JMP 6D6E9EAC C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!CallNextHookEx                        75B2ABE1 5 Bytes  JMP 6D707FDF C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!UnhookWindowsHookEx                  75B2ADF9 5 Bytes  JMP 6D72ECE0 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!DefWindowProcA                        75B2BB1C 7 Bytes  JMP 6D6A97F5 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!CreateWindowExA                      75B2BF40 5 Bytes  JMP 6D6B362B C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!SetWindowsHookExW                    75B2E30C 5 Bytes  JMP 6D6E25AC C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!CreateWindowExW                      75B2EC7C 5 Bytes  JMP 6D7103B7 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!DefWindowProcW                        75B3507D 7 Bytes  JMP 6D708042 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!DialogBoxParamW                      75B43B9B 5 Bytes  JMP 6D64187B C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!DialogBoxIndirectParamW              75B53B7F 5 Bytes  JMP 6D838D86 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!DialogBoxParamA                      75B6CF42 5 Bytes  JMP 6D838D21 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!DialogBoxIndirectParamA              75B6D274 5 Bytes  JMP 6D838DEB C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!MessageBoxIndirectA                  75B7E869 5 Bytes  JMP 6D838CA8 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!MessageBoxIndirectW                  75B7E963 5 Bytes  JMP 6D838C2F C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!MessageBoxExA                        75B7E9C9 5 Bytes  JMP 6D838BCB C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] USER32.dll!MessageBoxExW                        75B7E9ED 5 Bytes  JMP 6D838B67 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[1284] ole32.dll!OleLoadFromStream                      76A76143 5 Bytes  JMP 6D83955F C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe[2108] ntdll.dll!DbgUiRemoteBreakin  7760F17D 1 Byte  [C3]
.text          C:\Program Files\Mozilla Firefox\firefox.exe[5444] ntdll.dll!LdrLoadDll                                775D223E 5 Bytes  JMP 59BAFA35 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text          C:\Program Files\Mozilla Firefox\firefox.exe[5444] kernel32.dll!MapViewOfFile                          76EE93DB 5 Bytes  JMP 59E5079E C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text          C:\Program Files\Mozilla Firefox\firefox.exe[5444] kernel32.dll!VirtualAlloc                          76EEC43A 5 Bytes  JMP 59E507C5 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text          C:\Program Files\Mozilla Firefox\firefox.exe[5444] GDI32.dll!CreateDIBSection                          77268850 5 Bytes  JMP 59E50728 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!EnableWindow                          75B28D02 5 Bytes  JMP 6D6E9EAC C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!DialogBoxParamW                      75B43B9B 5 Bytes  JMP 6D64187B C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!DialogBoxIndirectParamW              75B53B7F 5 Bytes  JMP 6D838D86 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!DialogBoxParamA                      75B6CF42 5 Bytes  JMP 6D838D21 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!DialogBoxIndirectParamA              75B6D274 5 Bytes  JMP 6D838DEB C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!MessageBoxIndirectA                  75B7E869 5 Bytes  JMP 6D838CA8 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!MessageBoxIndirectW                  75B7E963 5 Bytes  JMP 6D838C2F C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!MessageBoxExA                        75B7E9C9 5 Bytes  JMP 6D838BCB C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)
.text          C:\Program Files\Internet Explorer\iexplore.exe[5760] USER32.dll!MessageBoxExW                        75B7E9ED 5 Bytes  JMP 6D838B67 C:\Windows\system32\IEFRAME.dll (Internet Browser/Microsoft Corporation)

---- User IAT/EAT - GMER 1.0.15 ----

IAT            C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipAlloc]                        [743824CB] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT            C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdiplusStartup]                    [7436562E] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT            C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdiplusShutdown]                  [743656EC] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT            C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipFree]                          [74382546] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT            C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipDeleteGraphics]                [743785AA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT            C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipDisposeImage]                  [74374D5E] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT            C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipGetImageWidth]                [74375105] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT            C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipGetImageHeight]                [743751DA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT            C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipCreateBitmapFromHBITMAP]      [74376707] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT            C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipCreateFromHDC]                [74378301] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT            C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipSetCompositingMode]            [74378850] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT            C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipSetInterpolationMode]          [743790B1] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT            C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipDrawImageRectI]                [7437E254] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT            C:\Windows\Explorer.exe[308] @ C:\Windows\Explorer.exe [gdiplus.dll!GdipCloneImage]                    [74374C90] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17825_none_72d273598668a06b\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)

---- Devices - GMER 1.0.15 ----

Device          \Driver\ACPI_HAL \Device\00000047                                                                      halmacpi.dll (Hardware Abstraction Layer DLL/Microsoft Corporation)

AttachedDevice  \Driver\volmgr \Device\HarddiskVolume1                                                                fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume2                                                                fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume3                                                                fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume4                                                                fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume5                                                                fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume6                                                                fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)

---- EOF - GMER 1.0.15 ----

--- --- ---


OSAM Logfile:
Code:

Report of OSAM: Autorun Manager v5.0.11926.0
hxxp://www.online-solutions.ru/en/
Saved at 20:12:11 on 16.07.2012

OS: Windows 7 Home Premium Edition Service Pack 1 (Build 7601), 32-bit
Default Browser: Mozilla Corporation Firefox 13.0.1

Scanner Settings
[x] Rootkits detection (hidden registry)
[x] Rootkits detection (hidden files)
[x] Retrieve files information
[x] Check Microsoft signatures

Filters
[ ] Trusted entries
[ ] Empty entries
[x] Hidden registry entries (rootkit activity)
[x] Exclusively opened files
[x] Not found files
[x] Files without detailed information
[x] Existing files
[ ] Non-startable services
[ ] Non-startable drivers
[x] Active entries
[x] Disabled entries


[Common]
-----( %SystemRoot%\Tasks )-----
"GoogleUpdateTaskMachineCore.job" - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe
"GoogleUpdateTaskMachineUA.job" - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe
"Adobe Flash Player Updater.job" - "Adobe Systems Incorporated" - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

[Control Panel Objects]
-----( %SystemRoot%\system32 )-----
"FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\Windows\system32\FlashPlayerCPLApp.cpl

[Drivers]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"avgntflt" (avgntflt) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avgntflt.sys
"avipbb" (avipbb) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avipbb.sys
"avkmgr" (avkmgr) - "Avira GmbH" - C:\Windows\System32\DRIVERS\avkmgr.sys
"AVM Eject" (avmeject) - "AVM Berlin" - C:\Windows\System32\drivers\avmeject.sys
"catchme" (catchme) - ? - C:\Users\Klaus\AppData\Local\Temp\catchme.sys  (File not found)
"fwddapoc" (fwddapoc) - ? - C:\Users\Klaus\AppData\Local\Temp\fwddapoc.sys  (Hidden registry entry, rootkit activity | File not found)
"mbr" (mbr) - ? - C:\Users\Klaus\AppData\Local\Temp\mbr.sys  (Hidden registry entry, rootkit activity | File not found)
"ssmdrv" (ssmdrv) - "Avira GmbH" - C:\Windows\System32\DRIVERS\ssmdrv.sys

[Explorer]
-----( HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{FB314ED9-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" - ? -  (File not found | COM-object registry key not found)
{FB314EDA-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" - ? -  (File not found | COM-object registry key not found)
{FB314EDB-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" - ? -  (File not found | COM-object registry key not found)
{FB314EDC-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" - ? -  (File not found | COM-object registry key not found)
-----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )-----
{F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll
{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} "{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
-----( HKLM\Software\Classes\Protocols\Handler )-----
{828030A1-22C1-4009-854F-8E305202313F} "livecall" - "Microsoft Corporation" - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
{828030A1-22C1-4009-854F-8E305202313F} "msnim" - "Microsoft Corporation" - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL
{B658800C-F66E-4EF3-AB85-6C0C227862A9} "ViProtocolOLE Class" - ? - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll
{03C514A3-1EFB-4856-9F99-10D7BE1653C0} "Windows Live Mail HTML Asynchronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\Program Files\Windows Live\Mail\mailcomm.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{23170F69-40C1-278A-1000-000100020000} "7-Zip Shell Extension" - "Igor Pavlov" - C:\Program Files\7-Zip\7-zip.dll
{DE902992-61FC-4A01-8091-53E1895C9775} "CDR Icon Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{7AD101F2-0B93-4D66-A1CA-DF73F3C4377B} "CDR preview provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellVista.dll
{7FA63AC0-F5BC-4F3B-A9CF-94328D812B62} "CDR Property Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellVista.dll
{1462EBAA-96E7-4D93-9A66-0E4068DE4FCF} "CDR Thumbnail provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{0563DB41-F538-4B37-A92D-4659049B7766} "CLSID_WLMCMimeFilter" - "Microsoft Corporation" - C:\Program Files\Windows Live\Mail\mailcomm.dll
{DE902994-61FC-4A01-8091-53E1895C9775} "CMX Icon Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{1462EBAC-96E7-4D93-9A66-0E4068DE4FCF} "CMX Thumbnail provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{DE902993-61FC-4A01-8091-53E1895C9775} "CPT Icon Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{7FA63AC1-F5BC-4F3B-A9CF-94328D812B62} "CPT Property Handler" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellVista.dll
{1462EBAB-96E7-4D93-9A66-0E4068DE4FCF} "CPT Thumbnail provider" - "Corel Corporation" - c:\Program Files\Common Files\Corel\Shared\Shell Extension\ShellXP.dll
{872A9397-E0D6-4e28-B64D-52B8D0A7EA35} "DisplayCplExt Class" - "Advanced Micro Devices, Inc." - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiamaxx.dll
{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396} "OpenOffice.org Column Handler" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{087B3AE3-E237-4467-B8DB-5A38AB959AC9} "OpenOffice.org Infotip Handler" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{63542C48-9552-494A-84F7-73AA6A7C99C1} "OpenOffice.org Property Sheet Handler" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{3B092F0C-7696-40E3-A80F-68D74DA84210} "OpenOffice.org Thumbnail Viewer" - ? - C:\Program Files\OpenOffice.org 3\Basis\program\shlxthdl\shlxthdl.dll
{45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\shlext.dll
{5E2121EE-0300-11D4-8D3B-444553540000} "SimpleShlExt Class" - "Advanced Micro Devices, Inc." - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll
{2BE99FD4-A181-4996-BFA9-58C5FFD11F6C} "Windows Live Photo Gallery Autoplay Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F30F64-AC33-42F5-8FD1-5DC2D3FDE06C} "Windows Live Photo Gallery Editor Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F3712A-CA79-45B4-9E4D-D7891E7F8B9D} "Windows Live Photo Gallery Editor Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F30F90-3E96-453B-AFCD-D71989ECC2C7} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F33137-EE26-412F-8D71-F84E4C2C6625} "Windows Live Photo Gallery Viewer Autoplay Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{00F374B7-B390-4884-B372-2FC349F2172B} "Windows Live Photo Gallery Viewer Drop Target" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe
{00F346CB-35A4-465B-8B8F-65A29DBAB1F6} "Windows Live Photo Gallery Viewer Shim" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll
{06A2568A-CED6-4187-BB20-400B8C02BE5A} "{06A2568A-CED6-4187-BB20-400B8C02BE5A}" - "Microsoft Corporation" - C:\Program Files\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe

[Internet Explorer]
-----( HKCU\SOFTWARE\Microsoft\Internet Explorer\Extensions )-----
"eBay - Der weltweite Online-Marktplatz" - ? - hxxp://rover.ebay.com/rover/1/707-37276-17534-31/4  (HTTP value)
-----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )-----
ITBar7Height "ITBar7Height" - ? -  (File not found | COM-object registry key not found)
<binary data> "ITBar7Layout" - ? -  (File not found | COM-object registry key not found)
<binary data> "{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}" - ? -  (File not found | COM-object registry key not found)
-----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )-----
{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} "Java Plug-in 1.6.0_33" - "Oracle Corporation" - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
{8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 10.5.1" - "Oracle Corporation" - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 10.5.1" - "Oracle Corporation" - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2iexp.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )-----
{5D7B119E-062F-476B-A5E7-797FAF554BA2} "1Password" - "AgileBits" - C:\PROGRA~1\1PASSW~1\AGILE1~1.DLL
"eBay - Der weltweite Online-Marktplatz" - ? - hxxp://rover.ebay.com/rover/1/707-37276-17534-31/4  (HTTP value)
{5F7B1267-94A9-47F5-98DB-E99415F33AEC} "In Blog veröffentlichen" - "Microsoft Corporation" - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar )-----
<binary data> "AVG Security Toolbar" - ? - C:\Program Files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )-----
{CB1A24DA-7416-4921-A0CF-5AA1160AAE2A} "1Password" - "AgileBits" - C:\PROGRA~1\1PASSW~1\AGILE1~1.DLL
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper" - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
{95B7759C-8C7F-4BF1-B163-73684A933233} "AVG Security Toolbar" - ? - C:\Program Files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll
{DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Oracle Corporation" - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} "Java(tm) Plug-In SSV Helper" - "Oracle Corporation" - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
{9030D464-4C02-4ABF-8ECC-5164760863C6} "Windows Live Anmelde-Hilfsprogramm" - "Microsoft Corporation" - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

[Logon]
-----( %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
"Dropbox.lnk" - "Dropbox, Inc." - C:\Users\Klaus\AppData\Roaming\Dropbox\bin\Dropbox.exe  (Shortcut exists | File exists)
"OpenOffice.org 3.2.lnk" - ? - C:\Program Files\OpenOffice.org 3\program\quickstart.exe  (Shortcut exists | File found, but it contains no detailed information | File exists)
-----( %AllUsersProfile%\Microsoft\Windows\Start Menu\Programs\Startup )-----
"desktop.ini" - ? - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
-----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )-----
"KiesPDLR" - ? - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
-----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )-----
"StartupPrograms" - ? - rdpclip  (File not found)
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )-----
"Adobe ARM" - "Adobe Systems Incorporated" - "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"Agile1pAgent" - "AgileBits" - C:\Program Files\1Password\Agile1pAgent.exe
"avgnt" - "Avira Operations GmbH & Co. KG" - "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
"CLMLServer" - "CyberLink" - "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"
"HP Software Update" - "Hewlett-Packard" - C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
"hpqSRMon" - "Hewlett-Packard" - C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
"IAStorIcon" - "Intel Corporation" - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
"KiesTrayAgent" - "Samsung Electronics Co., Ltd." - C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
"Nikon Transfer Monitor" - "Nikon Corporation" - C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
"StartCCC" - "Advanced Micro Devices, Inc." - "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
"SunJavaUpdateSched" - "Sun Microsystems, Inc." - "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
"vProt" - ? - "C:\Program Files\AVG Secure Search\vprot.exe"
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce )-----
"InnoSetupRegFile.0000000001" - ? - "C:\Windows\is-MFJPS.exe" /REG /REGSVRMODE

[Print Monitors]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors )-----
"pdfcmon" - "pdfforge GbR" - C:\Windows\system32\pdfcmon.dll

[Services]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"1Password" (Agile1Password) - "AgileBits" - C:\Program Files\1Password\Agile1pService.exe
"Adobe Acrobat Update Service" (AdobeARMservice) - "Adobe Systems Incorporated" - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
"Adobe Flash Player Update Service" (AdobeFlashPlayerUpdateSvc) - "Adobe Systems Incorporated" - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
"Avira Echtzeit Scanner" (AntiVirService) - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
"Avira Planer" (AntiVirSchedulerService) - "Avira Operations GmbH & Co. KG" - C:\Program Files\Avira\AntiVir Desktop\sched.exe
"Google Update-Dienst (gupdate)" (gupdate) - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe
"Google Update-Dienst (gupdatem)" (gupdatem) - "Google Inc." - C:\Program Files\Google\Update\GoogleUpdate.exe
"Google Updater Service" (gusvc) - "Google" - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
"hpqcxs08" (hpqcxs08) - "Hewlett-Packard Co." - C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
"InstallDriver Table Manager" (IDriverT) - "Macrovision Corporation" - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
"Intel(R) Rapid Storage Technology" (IAStorDataMgrSvc) - "Intel Corporation" - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
"Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) - "Microsoft Corporation" - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
"Mozilla Maintenance Service" (MozillaMaintenance) - "Mozilla Foundation" - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
"Protexis Licensing V2" (PSI_SVC_2) - "Protexis Inc." - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
"vToolbarUpdater11.2.0" (vToolbarUpdater11.2.0) - ? - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe

===[ Logfile end ]=========================================[ Logfile end ]===

--- --- ---

If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru

aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-07-16 20:14:20
-----------------------------
20:14:20.396 OS Version: Windows 6.1.7601 Service Pack 1
20:14:20.396 Number of processors: 2 586 0x170A
20:14:20.397 ComputerName: DESKTOP UserName: Klaus
20:14:24.019 Initialize success
20:17:01.742 AVAST engine defs: 12071600
20:46:32.420 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
20:46:32.424 Disk 0 Vendor: Hitachi_ JP4O Size: 953869MB BusType: 3
20:46:32.434 Disk 0 MBR read successfully
20:46:32.438 Disk 0 MBR scan
20:46:32.445 Disk 0 unknown MBR code
20:46:32.482 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
20:46:32.524 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 911782 MB offset 206848
20:46:32.563 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 40960 MB offset 1867536384
20:46:32.614 Disk 0 Partition 4 00 12 Compaq diag NTFS 1025 MB offset 1951422464
20:46:32.660 Disk 0 scanning sectors +1953521664
20:46:32.779 Disk 0 scanning C:\Windows\system32\drivers
20:47:07.553 Service scanning
20:47:23.450 Modules scanning
20:48:01.374 Disk 0 trace - called modules:
20:48:01.390 ntkrnlpa.exe CLASSPNP.SYS disk.sys iaStor.sys halmacpi.dll
20:48:01.394 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x88583948]
20:48:01.399 3 CLASSPNP.SYS[8bf9159e] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0x866b1028]
20:48:05.222 AVAST engine scan C:\Windows
20:48:16.504 AVAST engine scan C:\Windows\system32
20:50:55.003 AVAST engine scan C:\Windows\system32\drivers
20:51:08.880 AVAST engine scan C:\Users\Klaus
20:55:58.048 AVAST engine scan C:\ProgramData
20:56:28.758 Scan finished successfully
20:58:16.879 Disk 0 MBR has been saved successfully to "C:\Users\Klaus\Desktop\MBR.dat"
20:58:16.885 The log file has been saved successfully to "C:\Users\Klaus\Desktop\aswMBR.txt"

cosinus 17.07.2012 10:19

Wir sollten den MBR fixen, sichere für den Fall der Fälle ALLE wichtigen Daten, auch wenn meistens alles glatt geht.

Hinweis: Mach bitte NICHT den MBR-Fix, wenn du noch andere Betriebssysteme wie zB Ubuntu installiert hast, ein MBR-Fix mit Windows-Tools macht ein parallel installiertes (Dualboot) Linux unbootbar.
Mach den Fix auch dann nicht, wenn du zB mit TrueCrypt oder anderen Verschlüsselungsprogrammen eine Vollverschlüsselung der Windowspartition bzw. gesamten Festplatte hast


Starte nach der Datensicherung aswmbr erneut und klick auf den Button FIXMBR.

Hinweis: Bitte den Virenscanner abstellen bevor du aswMBR ausführst, denn v.a. Avira meldet darin oft einen Fehalalrm!

Anschließend Windows neu starten und ein neues Log mit aswMBR machen.

Darwin 17.07.2012 13:28

aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-07-16 20:14:20
-----------------------------
20:14:20.396 OS Version: Windows 6.1.7601 Service Pack 1
20:14:20.396 Number of processors: 2 586 0x170A
20:14:20.397 ComputerName: DESKTOP UserName: Klaus
20:14:24.019 Initialize success
20:17:01.742 AVAST engine defs: 12071600
20:46:32.420 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
20:46:32.424 Disk 0 Vendor: Hitachi_ JP4O Size: 953869MB BusType: 3
20:46:32.434 Disk 0 MBR read successfully
20:46:32.438 Disk 0 MBR scan
20:46:32.445 Disk 0 unknown MBR code
20:46:32.482 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
20:46:32.524 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 911782 MB offset 206848
20:46:32.563 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 40960 MB offset 1867536384
20:46:32.614 Disk 0 Partition 4 00 12 Compaq diag NTFS 1025 MB offset 1951422464
20:46:32.660 Disk 0 scanning sectors +1953521664
20:46:32.779 Disk 0 scanning C:\Windows\system32\drivers
20:47:07.553 Service scanning
20:47:23.450 Modules scanning
20:48:01.374 Disk 0 trace - called modules:
20:48:01.390 ntkrnlpa.exe CLASSPNP.SYS disk.sys iaStor.sys halmacpi.dll
20:48:01.394 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x88583948]
20:48:01.399 3 CLASSPNP.SYS[8bf9159e] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0x866b1028]
20:48:05.222 AVAST engine scan C:\Windows
20:48:16.504 AVAST engine scan C:\Windows\system32
20:50:55.003 AVAST engine scan C:\Windows\system32\drivers
20:51:08.880 AVAST engine scan C:\Users\Klaus
20:55:58.048 AVAST engine scan C:\ProgramData
20:56:28.758 Scan finished successfully
20:58:16.879 Disk 0 MBR has been saved successfully to "C:\Users\Klaus\Desktop\MBR.dat"
20:58:16.885 The log file has been saved successfully to "C:\Users\Klaus\Desktop\aswMBR.txt"


aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-07-17 13:58:26
-----------------------------
13:58:26.759 OS Version: Windows 6.1.7601 Service Pack 1
13:58:26.759 Number of processors: 2 586 0x170A
13:58:26.759 ComputerName: DESKTOP UserName: Klaus
13:58:50.112 Initialize success
13:58:56.462 AVAST engine defs: 12071600
13:59:10.018 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
13:59:10.018 Disk 0 Vendor: Hitachi_ JP4O Size: 953869MB BusType: 3
13:59:10.034 Disk 0 MBR read successfully
13:59:10.034 Disk 0 MBR scan
13:59:10.034 Disk 0 Windows 7 default MBR code
13:59:10.049 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
13:59:10.065 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 911782 MB offset 206848
13:59:10.096 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 40960 MB offset 1867536384
13:59:10.112 Disk 0 Partition 4 00 12 Compaq diag NTFS 1025 MB offset 1951422464
13:59:10.127 Disk 0 scanning sectors +1953521664
13:59:10.190 Disk 0 scanning C:\Windows\system32\drivers
13:59:18.021 Service scanning
13:59:38.706 Modules scanning
13:59:44.042 Disk 0 trace - called modules:
13:59:44.057 ntkrnlpa.exe CLASSPNP.SYS disk.sys iaStor.sys halmacpi.dll
13:59:44.057 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x88584700]
13:59:44.073 3 CLASSPNP.SYS[8bdaa59e] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0x866b2028]
13:59:46.538 AVAST engine scan C:\Windows
13:59:51.077 AVAST engine scan C:\Windows\system32
14:02:05.300 AVAST engine scan C:\Windows\system32\drivers
14:02:15.830 AVAST engine scan C:\Users\Klaus
14:09:03.318 AVAST engine scan C:\ProgramData
14:10:20.289 Scan finished successfully
14:27:16.465 Disk 0 MBR has been saved successfully to "C:\Users\Klaus\Desktop\MBR.dat"
14:27:16.481 The log file has been saved successfully to "C:\Users\Klaus\Desktop\aswMBR.txt"

cosinus 18.07.2012 13:03

Sieht ok aus. Wir sollten fast durch sein. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SASW und poste die Logs.
Denk dran beide Tools zu updaten vor dem Scan!!

Darwin 18.07.2012 15:59

Code:

Malwarebytes Anti-Malware 1.62.0.1300
www.malwarebytes.org

Datenbank Version: v2012.07.18.06

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 9.0.8112.16421
Klaus :: DESKTOP [Administrator]

18.07.2012 16:22:11
mbam-log-2012-07-18 (16-22-11).txt

Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|J:\|)
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 356510
Laufzeit: 35 Minute(n), 58 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)

(Ende)

Code:

SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com

Generated 07/18/2012 at 05:10 PM

Application Version : 5.5.1006

Core Rules Database Version : 8918
Trace Rules Database Version: 6730

Scan type      : Quick Scan
Total Scan Time : 00:03:41

Operating System Information
Windows 7 Home Premium 32-bit, Service Pack 1 (Build 6.01.7601)
UAC On - Administrator

Memory items scanned      : 1002
Memory threats detected  : 0
Registry items scanned    : 27442
Registry threats detected : 0
File items scanned        : 7766
File threats detected    : 158

Adware.Tracking Cookie
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\klaus@adx.chip[1].txt [ /adx.chip ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\EMQGHCBO.txt [ /mediaplex.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\U060JT45.txt [ /track.adform.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\V882OH5L.txt [ /doubleclick.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\4TJZYUZ0.txt [ /zanox-affiliate.de ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\3D9PYS8G.txt [ /c.atdmt.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\7KYNVJJO.txt [ /atdmt.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\Y2V7VM2T.txt [ /zanox.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\HF26T5I3.txt [ /adfarm1.adition.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\4Q1FSU2O.txt [ /dyntracker.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\SM9UC2I5.txt [ /apmebf.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\UN1DNEGC.txt [ /openstat.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\H4K9NKNO.txt [ /ad.zanox.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\ZO0HS8O3.txt [ /smartadserver.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\UCMK9RC0.txt [ /ad1.adfarm1.adition.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\T5I3TJXZ.txt [ /specificclick.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\36WLW080.txt [ /ad2.adfarm1.adition.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\3NR6XBA9.txt [ /fastclick.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\KVYZ94P7.txt [ /ad.dyntracker.de ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\1VE1WN3D.txt [ /tracking.quisma.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\PEAAUF1J.txt [ /adform.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\F5W633T5.txt [ /imrworldwide.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\Q0TSAC6G.txt [ /www.zanox-affiliate.de ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@im.banner.t-online[1].txt [ Cookie:klaus@im.banner.t-online.de/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\PB3HE9AE.txt [ Cookie:klaus@doubleclick.net/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\IPVONUIX.txt [ Cookie:klaus@serving-sys.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\B3BXLTT8.txt [ Cookie:klaus@c.atdmt.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\D8OVI6CX.txt [ Cookie:klaus@atdmt.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\L4CQUS46.txt [ Cookie:klaus@bs.serving-sys.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@apmebf[1].txt [ Cookie:klaus@apmebf.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\D4873IMC.txt [ Cookie:klaus@ad.zanox.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@xiti[1].txt [ Cookie:klaus@xiti.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\8YFUBEV3.txt [ Cookie:klaus@microsoftinternetexplorer.112.2o7.net/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\TY3EWPOL.txt [ Cookie:klaus@specificclick.net/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@interclick[1].txt [ Cookie:klaus@interclick.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@fastclick[1].txt [ Cookie:klaus@fastclick.net/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@statse.webtrendslive[2].txt [ Cookie:klaus@statse.webtrendslive.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\1ALPUBXU.txt [ Cookie:klaus@ad.yieldmanager.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\B1VPWEEO.txt [ Cookie:klaus@imrworldwide.com/cgi-bin ]
        C:\USERS\KLAUS\Cookies\V882OH5L.txt [ Cookie:klaus@doubleclick.net/ ]
        C:\USERS\KLAUS\Cookies\4TJZYUZ0.txt [ Cookie:klaus@zanox-affiliate.de/ ]
        C:\USERS\KLAUS\Cookies\3D9PYS8G.txt [ Cookie:klaus@c.atdmt.com/ ]
        C:\USERS\KLAUS\Cookies\7KYNVJJO.txt [ Cookie:klaus@atdmt.com/ ]
        C:\USERS\KLAUS\Cookies\Y2V7VM2T.txt [ Cookie:klaus@zanox.com/ ]
        C:\USERS\KLAUS\Cookies\SM9UC2I5.txt [ Cookie:klaus@apmebf.com/ ]
        C:\USERS\KLAUS\Cookies\UN1DNEGC.txt [ Cookie:klaus@openstat.net/ ]
        C:\USERS\KLAUS\Cookies\H4K9NKNO.txt [ Cookie:klaus@ad.zanox.com/ ]
        C:\USERS\KLAUS\Cookies\UCMK9RC0.txt [ Cookie:klaus@ad1.adfarm1.adition.com/ ]
        C:\USERS\KLAUS\Cookies\T5I3TJXZ.txt [ Cookie:klaus@specificclick.net/ ]
        C:\USERS\KLAUS\Cookies\3NR6XBA9.txt [ Cookie:klaus@fastclick.net/ ]
        C:\USERS\KLAUS\Cookies\KVYZ94P7.txt [ Cookie:klaus@ad.dyntracker.de/ ]
        C:\USERS\KLAUS\Cookies\1VE1WN3D.txt [ Cookie:klaus@tracking.quisma.com/ ]
        C:\USERS\KLAUS\Cookies\PEAAUF1J.txt [ Cookie:klaus@adform.net/ ]
        C:\USERS\KLAUS\Cookies\F5W633T5.txt [ Cookie:klaus@imrworldwide.com/cgi-bin ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\5U1SON2J.txt [ Cookie:ulrike@adform.net/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\BWGR63SW.txt [ Cookie:ulrike@atdmt.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\T9UMDV1L.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\PV75LRWO.txt [ Cookie:ulrike@track.adform.net/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\B84YNK8V.txt [ Cookie:ulrike@zanox-affiliate.de/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\K0292JRJ.txt [ Cookie:ulrike@www.zanox-affiliate.de/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\ulrike@stat.aldi[2].txt [ Cookie:ulrike@stat.aldi.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\QVC0LPA8.txt [ Cookie:ulrike@tracking.quisma.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\W4FAOT2V.txt [ Cookie:ulrike@fastclick.net/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\MQ7N65SF.txt [ Cookie:ulrike@ad1.adfarm1.adition.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\TDZZNZMA.txt [ Cookie:ulrike@ad.zanox.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\IEM0HL99.txt [ Cookie:ulrike@imrworldwide.com/cgi-bin ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@serving-sys[1].txt [ Cookie:ulrike@serving-sys.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\1Q7O3I7B.txt [ Cookie:ulrike@atdmt.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@bs.serving-sys[1].txt [ Cookie:ulrike@bs.serving-sys.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\F3PTY4OR.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@tradedoubler[2].txt [ Cookie:ulrike@tradedoubler.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\185LJYC6.txt [ Cookie:ulrike@specificclick.net/ ]
        C:\USERS\ULRIKE\Cookies\5U1SON2J.txt [ Cookie:ulrike@adform.net/ ]
        C:\USERS\ULRIKE\Cookies\BWGR63SW.txt [ Cookie:ulrike@atdmt.com/ ]
        C:\USERS\ULRIKE\Cookies\T9UMDV1L.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
        C:\USERS\ULRIKE\Cookies\PV75LRWO.txt [ Cookie:ulrike@track.adform.net/ ]
        C:\USERS\ULRIKE\Cookies\B84YNK8V.txt [ Cookie:ulrike@zanox-affiliate.de/ ]
        C:\USERS\ULRIKE\Cookies\K0292JRJ.txt [ Cookie:ulrike@www.zanox-affiliate.de/ ]
        C:\USERS\ULRIKE\Cookies\ulrike@stat.aldi[2].txt [ Cookie:ulrike@stat.aldi.com/ ]
        C:\USERS\ULRIKE\Cookies\QVC0LPA8.txt [ Cookie:ulrike@tracking.quisma.com/ ]
        C:\USERS\ULRIKE\Cookies\W4FAOT2V.txt [ Cookie:ulrike@fastclick.net/ ]
        C:\USERS\ULRIKE\Cookies\MQ7N65SF.txt [ Cookie:ulrike@ad1.adfarm1.adition.com/ ]
        C:\USERS\ULRIKE\Cookies\TDZZNZMA.txt [ Cookie:ulrike@ad.zanox.com/ ]
        .microsoftwllivemkt.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        in.getclicky.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .deutschepostag.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .e-2dj6wdk4kpcpgfq.stats.esomniture.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        nl.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        nl.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .gemoneysdenac.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .histats.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .histats.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .xiti.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .e-2dj6aelyomcjiep.stats.esomniture.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .doubleclick.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .doubleclick.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .apmebf.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .mediaplex.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .mediaplex.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .tracker.vinsight.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .stepstone.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        traffic.brand-wall.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        stat.onestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        stat.onestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        statse.webtrendslive.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .roberthalf.122.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .oms.122.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]


cosinus 18.07.2012 20:34

Das war mit SASW nur ein Quickscan! Machen solltest du aber einen Vollscan!

Darwin 18.07.2012 20:57

Code:

SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com

Generated 07/18/2012 at 09:49 PM

Application Version : 5.5.1006

Core Rules Database Version : 8921
Trace Rules Database Version: 6733

Scan type      : Quick Scan
Total Scan Time : 00:04:10

Operating System Information
Windows 7 Home Premium 32-bit, Service Pack 1 (Build 6.01.7601)
UAC On - Administrator

Memory items scanned      : 1025
Memory threats detected  : 0
Registry items scanned    : 27442
Registry threats detected : 0
File items scanned        : 7772
File threats detected    : 158

Adware.Tracking Cookie
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\klaus@adx.chip[1].txt [ /adx.chip ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\EMQGHCBO.txt [ /mediaplex.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\U060JT45.txt [ /track.adform.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\V882OH5L.txt [ /doubleclick.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\4TJZYUZ0.txt [ /zanox-affiliate.de ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\3D9PYS8G.txt [ /c.atdmt.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\7KYNVJJO.txt [ /atdmt.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\Y2V7VM2T.txt [ /zanox.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\HF26T5I3.txt [ /adfarm1.adition.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\4Q1FSU2O.txt [ /dyntracker.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\SM9UC2I5.txt [ /apmebf.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\SOKGSMM0.txt [ /openstat.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\H4K9NKNO.txt [ /ad.zanox.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\ZO0HS8O3.txt [ /smartadserver.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\UCMK9RC0.txt [ /ad1.adfarm1.adition.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\T5I3TJXZ.txt [ /specificclick.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\36WLW080.txt [ /ad2.adfarm1.adition.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\3NR6XBA9.txt [ /fastclick.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\KVYZ94P7.txt [ /ad.dyntracker.de ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\1VE1WN3D.txt [ /tracking.quisma.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\PEAAUF1J.txt [ /adform.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\F5W633T5.txt [ /imrworldwide.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\Q0TSAC6G.txt [ /www.zanox-affiliate.de ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@im.banner.t-online[1].txt [ Cookie:klaus@im.banner.t-online.de/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\PB3HE9AE.txt [ Cookie:klaus@doubleclick.net/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\IPVONUIX.txt [ Cookie:klaus@serving-sys.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\B3BXLTT8.txt [ Cookie:klaus@c.atdmt.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\D8OVI6CX.txt [ Cookie:klaus@atdmt.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\L4CQUS46.txt [ Cookie:klaus@bs.serving-sys.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@apmebf[1].txt [ Cookie:klaus@apmebf.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\D4873IMC.txt [ Cookie:klaus@ad.zanox.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@xiti[1].txt [ Cookie:klaus@xiti.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\8YFUBEV3.txt [ Cookie:klaus@microsoftinternetexplorer.112.2o7.net/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\TY3EWPOL.txt [ Cookie:klaus@specificclick.net/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@interclick[1].txt [ Cookie:klaus@interclick.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@fastclick[1].txt [ Cookie:klaus@fastclick.net/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@statse.webtrendslive[2].txt [ Cookie:klaus@statse.webtrendslive.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\1ALPUBXU.txt [ Cookie:klaus@ad.yieldmanager.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\B1VPWEEO.txt [ Cookie:klaus@imrworldwide.com/cgi-bin ]
        C:\USERS\KLAUS\Cookies\V882OH5L.txt [ Cookie:klaus@doubleclick.net/ ]
        C:\USERS\KLAUS\Cookies\4TJZYUZ0.txt [ Cookie:klaus@zanox-affiliate.de/ ]
        C:\USERS\KLAUS\Cookies\3D9PYS8G.txt [ Cookie:klaus@c.atdmt.com/ ]
        C:\USERS\KLAUS\Cookies\7KYNVJJO.txt [ Cookie:klaus@atdmt.com/ ]
        C:\USERS\KLAUS\Cookies\Y2V7VM2T.txt [ Cookie:klaus@zanox.com/ ]
        C:\USERS\KLAUS\Cookies\SM9UC2I5.txt [ Cookie:klaus@apmebf.com/ ]
        C:\USERS\KLAUS\Cookies\SOKGSMM0.txt [ Cookie:klaus@openstat.net/ ]
        C:\USERS\KLAUS\Cookies\H4K9NKNO.txt [ Cookie:klaus@ad.zanox.com/ ]
        C:\USERS\KLAUS\Cookies\UCMK9RC0.txt [ Cookie:klaus@ad1.adfarm1.adition.com/ ]
        C:\USERS\KLAUS\Cookies\T5I3TJXZ.txt [ Cookie:klaus@specificclick.net/ ]
        C:\USERS\KLAUS\Cookies\3NR6XBA9.txt [ Cookie:klaus@fastclick.net/ ]
        C:\USERS\KLAUS\Cookies\KVYZ94P7.txt [ Cookie:klaus@ad.dyntracker.de/ ]
        C:\USERS\KLAUS\Cookies\1VE1WN3D.txt [ Cookie:klaus@tracking.quisma.com/ ]
        C:\USERS\KLAUS\Cookies\PEAAUF1J.txt [ Cookie:klaus@adform.net/ ]
        C:\USERS\KLAUS\Cookies\F5W633T5.txt [ Cookie:klaus@imrworldwide.com/cgi-bin ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\5U1SON2J.txt [ Cookie:ulrike@adform.net/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\BWGR63SW.txt [ Cookie:ulrike@atdmt.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\T9UMDV1L.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\PV75LRWO.txt [ Cookie:ulrike@track.adform.net/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\B84YNK8V.txt [ Cookie:ulrike@zanox-affiliate.de/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\K0292JRJ.txt [ Cookie:ulrike@www.zanox-affiliate.de/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\ulrike@stat.aldi[2].txt [ Cookie:ulrike@stat.aldi.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\QVC0LPA8.txt [ Cookie:ulrike@tracking.quisma.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\W4FAOT2V.txt [ Cookie:ulrike@fastclick.net/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\MQ7N65SF.txt [ Cookie:ulrike@ad1.adfarm1.adition.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\TDZZNZMA.txt [ Cookie:ulrike@ad.zanox.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\IEM0HL99.txt [ Cookie:ulrike@imrworldwide.com/cgi-bin ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@serving-sys[1].txt [ Cookie:ulrike@serving-sys.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\1Q7O3I7B.txt [ Cookie:ulrike@atdmt.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@bs.serving-sys[1].txt [ Cookie:ulrike@bs.serving-sys.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\F3PTY4OR.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@tradedoubler[2].txt [ Cookie:ulrike@tradedoubler.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\185LJYC6.txt [ Cookie:ulrike@specificclick.net/ ]
        C:\USERS\ULRIKE\Cookies\5U1SON2J.txt [ Cookie:ulrike@adform.net/ ]
        C:\USERS\ULRIKE\Cookies\BWGR63SW.txt [ Cookie:ulrike@atdmt.com/ ]
        C:\USERS\ULRIKE\Cookies\T9UMDV1L.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
        C:\USERS\ULRIKE\Cookies\PV75LRWO.txt [ Cookie:ulrike@track.adform.net/ ]
        C:\USERS\ULRIKE\Cookies\B84YNK8V.txt [ Cookie:ulrike@zanox-affiliate.de/ ]
        C:\USERS\ULRIKE\Cookies\K0292JRJ.txt [ Cookie:ulrike@www.zanox-affiliate.de/ ]
        C:\USERS\ULRIKE\Cookies\ulrike@stat.aldi[2].txt [ Cookie:ulrike@stat.aldi.com/ ]
        C:\USERS\ULRIKE\Cookies\QVC0LPA8.txt [ Cookie:ulrike@tracking.quisma.com/ ]
        C:\USERS\ULRIKE\Cookies\W4FAOT2V.txt [ Cookie:ulrike@fastclick.net/ ]
        C:\USERS\ULRIKE\Cookies\MQ7N65SF.txt [ Cookie:ulrike@ad1.adfarm1.adition.com/ ]
        C:\USERS\ULRIKE\Cookies\TDZZNZMA.txt [ Cookie:ulrike@ad.zanox.com/ ]
        .microsoftwllivemkt.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        in.getclicky.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .deutschepostag.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .e-2dj6wdk4kpcpgfq.stats.esomniture.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        nl.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        nl.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .gemoneysdenac.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .histats.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .histats.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .xiti.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .e-2dj6aelyomcjiep.stats.esomniture.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .doubleclick.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .doubleclick.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .apmebf.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .mediaplex.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .mediaplex.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .tracker.vinsight.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .stepstone.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        traffic.brand-wall.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        stat.onestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        stat.onestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        statse.webtrendslive.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .roberthalf.122.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .oms.122.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]

Quick scan sehe ich auch im Log, eingestellt hatte ich complete scan. Probiere es noch mal.

Code:

SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com

Generated 07/18/2012 at 11:20 PM

Application Version : 5.5.1006

Core Rules Database Version : 8921
Trace Rules Database Version: 6733

Scan type      : Complete Scan
Total Scan Time : 01:19:03

Operating System Information
Windows 7 Home Premium 32-bit, Service Pack 1 (Build 6.01.7601)
UAC On - Administrator

Memory items scanned      : 1028
Memory threats detected  : 0
Registry items scanned    : 35223
Registry threats detected : 0
File items scanned        : 125893
File threats detected    : 408

Adware.Tracking Cookie
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\klaus@adx.chip[1].txt [ /adx.chip ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\EMQGHCBO.txt [ /mediaplex.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\U060JT45.txt [ /track.adform.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\V882OH5L.txt [ /doubleclick.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\4TJZYUZ0.txt [ /zanox-affiliate.de ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\3D9PYS8G.txt [ /c.atdmt.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\7KYNVJJO.txt [ /atdmt.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\Y2V7VM2T.txt [ /zanox.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\HF26T5I3.txt [ /adfarm1.adition.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\4Q1FSU2O.txt [ /dyntracker.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\SM9UC2I5.txt [ /apmebf.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\SOKGSMM0.txt [ /openstat.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\H4K9NKNO.txt [ /ad.zanox.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\ZO0HS8O3.txt [ /smartadserver.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\UCMK9RC0.txt [ /ad1.adfarm1.adition.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\T5I3TJXZ.txt [ /specificclick.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\36WLW080.txt [ /ad2.adfarm1.adition.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\3NR6XBA9.txt [ /fastclick.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\KVYZ94P7.txt [ /ad.dyntracker.de ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\1VE1WN3D.txt [ /tracking.quisma.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\PEAAUF1J.txt [ /adform.net ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\F5W633T5.txt [ /imrworldwide.com ]
        C:\Users\Klaus\AppData\Roaming\Microsoft\Windows\Cookies\Q0TSAC6G.txt [ /www.zanox-affiliate.de ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@im.banner.t-online[1].txt [ Cookie:klaus@im.banner.t-online.de/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\PB3HE9AE.txt [ Cookie:klaus@doubleclick.net/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\IPVONUIX.txt [ Cookie:klaus@serving-sys.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\B3BXLTT8.txt [ Cookie:klaus@c.atdmt.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\D8OVI6CX.txt [ Cookie:klaus@atdmt.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\L4CQUS46.txt [ Cookie:klaus@bs.serving-sys.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@apmebf[1].txt [ Cookie:klaus@apmebf.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\D4873IMC.txt [ Cookie:klaus@ad.zanox.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@xiti[1].txt [ Cookie:klaus@xiti.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\8YFUBEV3.txt [ Cookie:klaus@microsoftinternetexplorer.112.2o7.net/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\TY3EWPOL.txt [ Cookie:klaus@specificclick.net/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@interclick[1].txt [ Cookie:klaus@interclick.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@fastclick[1].txt [ Cookie:klaus@fastclick.net/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\klaus@statse.webtrendslive[2].txt [ Cookie:klaus@statse.webtrendslive.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\1ALPUBXU.txt [ Cookie:klaus@ad.yieldmanager.com/ ]
        C:\USERS\KLAUS\AppData\Roaming\Microsoft\Windows\Cookies\Low\B1VPWEEO.txt [ Cookie:klaus@imrworldwide.com/cgi-bin ]
        C:\USERS\KLAUS\Cookies\V882OH5L.txt [ Cookie:klaus@doubleclick.net/ ]
        C:\USERS\KLAUS\Cookies\4TJZYUZ0.txt [ Cookie:klaus@zanox-affiliate.de/ ]
        C:\USERS\KLAUS\Cookies\3D9PYS8G.txt [ Cookie:klaus@c.atdmt.com/ ]
        C:\USERS\KLAUS\Cookies\7KYNVJJO.txt [ Cookie:klaus@atdmt.com/ ]
        C:\USERS\KLAUS\Cookies\Y2V7VM2T.txt [ Cookie:klaus@zanox.com/ ]
        C:\USERS\KLAUS\Cookies\SM9UC2I5.txt [ Cookie:klaus@apmebf.com/ ]
        C:\USERS\KLAUS\Cookies\SOKGSMM0.txt [ Cookie:klaus@openstat.net/ ]
        C:\USERS\KLAUS\Cookies\H4K9NKNO.txt [ Cookie:klaus@ad.zanox.com/ ]
        C:\USERS\KLAUS\Cookies\UCMK9RC0.txt [ Cookie:klaus@ad1.adfarm1.adition.com/ ]
        C:\USERS\KLAUS\Cookies\T5I3TJXZ.txt [ Cookie:klaus@specificclick.net/ ]
        C:\USERS\KLAUS\Cookies\3NR6XBA9.txt [ Cookie:klaus@fastclick.net/ ]
        C:\USERS\KLAUS\Cookies\KVYZ94P7.txt [ Cookie:klaus@ad.dyntracker.de/ ]
        C:\USERS\KLAUS\Cookies\1VE1WN3D.txt [ Cookie:klaus@tracking.quisma.com/ ]
        C:\USERS\KLAUS\Cookies\PEAAUF1J.txt [ Cookie:klaus@adform.net/ ]
        C:\USERS\KLAUS\Cookies\F5W633T5.txt [ Cookie:klaus@imrworldwide.com/cgi-bin ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\5U1SON2J.txt [ Cookie:ulrike@adform.net/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\BWGR63SW.txt [ Cookie:ulrike@atdmt.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\T9UMDV1L.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\PV75LRWO.txt [ Cookie:ulrike@track.adform.net/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\B84YNK8V.txt [ Cookie:ulrike@zanox-affiliate.de/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\K0292JRJ.txt [ Cookie:ulrike@www.zanox-affiliate.de/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\ulrike@stat.aldi[2].txt [ Cookie:ulrike@stat.aldi.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\QVC0LPA8.txt [ Cookie:ulrike@tracking.quisma.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\W4FAOT2V.txt [ Cookie:ulrike@fastclick.net/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\MQ7N65SF.txt [ Cookie:ulrike@ad1.adfarm1.adition.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\TDZZNZMA.txt [ Cookie:ulrike@ad.zanox.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\IEM0HL99.txt [ Cookie:ulrike@imrworldwide.com/cgi-bin ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@serving-sys[1].txt [ Cookie:ulrike@serving-sys.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\1Q7O3I7B.txt [ Cookie:ulrike@atdmt.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@bs.serving-sys[1].txt [ Cookie:ulrike@bs.serving-sys.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\F3PTY4OR.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\ulrike@tradedoubler[2].txt [ Cookie:ulrike@tradedoubler.com/ ]
        C:\USERS\ULRIKE\AppData\Roaming\Microsoft\Windows\Cookies\Low\185LJYC6.txt [ Cookie:ulrike@specificclick.net/ ]
        C:\USERS\ULRIKE\Cookies\5U1SON2J.txt [ Cookie:ulrike@adform.net/ ]
        C:\USERS\ULRIKE\Cookies\BWGR63SW.txt [ Cookie:ulrike@atdmt.com/ ]
        C:\USERS\ULRIKE\Cookies\T9UMDV1L.txt [ Cookie:ulrike@adfarm1.adition.com/ ]
        C:\USERS\ULRIKE\Cookies\PV75LRWO.txt [ Cookie:ulrike@track.adform.net/ ]
        C:\USERS\ULRIKE\Cookies\B84YNK8V.txt [ Cookie:ulrike@zanox-affiliate.de/ ]
        C:\USERS\ULRIKE\Cookies\K0292JRJ.txt [ Cookie:ulrike@www.zanox-affiliate.de/ ]
        C:\USERS\ULRIKE\Cookies\ulrike@stat.aldi[2].txt [ Cookie:ulrike@stat.aldi.com/ ]
        C:\USERS\ULRIKE\Cookies\QVC0LPA8.txt [ Cookie:ulrike@tracking.quisma.com/ ]
        C:\USERS\ULRIKE\Cookies\W4FAOT2V.txt [ Cookie:ulrike@fastclick.net/ ]
        C:\USERS\ULRIKE\Cookies\MQ7N65SF.txt [ Cookie:ulrike@ad1.adfarm1.adition.com/ ]
        C:\USERS\ULRIKE\Cookies\TDZZNZMA.txt [ Cookie:ulrike@ad.zanox.com/ ]
        .microsoftwllivemkt.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        in.getclicky.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .deutschepostag.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .e-2dj6wdk4kpcpgfq.stats.esomniture.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        nl.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        nl.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .gemoneysdenac.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .histats.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .histats.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .xiti.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .e-2dj6aelyomcjiep.stats.esomniture.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .doubleclick.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .doubleclick.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .apmebf.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .mediaplex.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .mediaplex.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .tracker.vinsight.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .stepstone.112.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        traffic.brand-wall.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        stat.onestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        stat.onestat.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        statse.webtrendslive.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        accounts.google.com [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .roberthalf.122.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        .oms.122.2o7.net [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\KLAUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\72M40R9Y.DEFAULT\COOKIES.SQLITE ]
        C:\USERS\ULRIKE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\ULRIKE@DOUBLECLICK[1].TXT [ /DOUBLECLICK ]
        .adtech.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .serving-sys.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .apmebf.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .mediaplex.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        eas.apm.emediate.eu [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .shopping.112.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .zedo.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .ad.adnet.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .atdmt.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .im.banner.t-online.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .sevenoneintermedia.112.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        track.webtrekk.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .imrworldwide.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .imrworldwide.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .smartadserver.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .adbrite.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .guj.122.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .ad.adnet.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .a.revenuemax.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .vodafonegroup.122.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .xiti.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ad.adition.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ad.adition.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .ad.adnet.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .kontera.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .ru4.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .ru4.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        track.webtrekk.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        track.webtrekk.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .apmebf.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .e-2dj6wjloajdzghp.stats.esomniture.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        in.getclicky.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        stat.dealtime.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .adviva.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .yieldmanager.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        track.webtrekk.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        secure.img-cdn.mediaplex.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .discount24.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        eas4.emediate.eu [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .questionmarket.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .mediacenter.betzold.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        piwik.mediamarketing.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ads7.wwe.biz [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .fastclick.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .ssl4stats.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .ssl4stats.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        stat.aldi.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .112.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .liveperson.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        fl01.ct2.comclick.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        fl01.ct2.comclick.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .interclick.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .interclick.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .interclick.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .nextag.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .nextag.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .e-2dj6wjkyuidjoep.stats.esomniture.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        clickerhunde.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        www.bannerreport.org [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .ikea.122.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ads20.wwe-media.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .getclicky.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .static.getclicky.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .bizrate.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .nextag.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        adserver.department-x.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .opodo.122.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .cheaptickets.122.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .ehg-cheaptickets.hitbox.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .hitbox.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .adinterax.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .4stats.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .4stats.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .doubleclick.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .bwr-media.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .adinterax.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        wstat.wibiya.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        fl01.ct2.comclick.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        fl01.ct2.comclick.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .amazon-adsystem.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .e-2dj6aemikmd5gkp.stats.esomniture.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .aim4media.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .aim4media.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .yadro.ru [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .webstats4u.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ad.yieldmanager.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .e-2dj6wbkyagajaao.stats.esomniture.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .overture.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .amazon-adsystem.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ads.adxvalue.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .questionmarket.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        advertising.tierpunkt.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .findix.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .at.atwola.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        adserver.mainz05.onvert.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .adbrite.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        adserver.tiervermittlung.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        adserver.tiervermittlung.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        adserver.tiervermittlung.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .ru4.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        adserver.advertisingbox.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .4stats.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .4stats.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .countomat.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        stat.novasol.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .casalemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        eas.apm.emediate.eu [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        eas.apm.emediate.eu [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        www.zanox-affiliate.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        count.asnetworks.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .clickundtrick.beepworld.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .clickundtrickhundewissen.blogspot.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        www.adservspot.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .clickerhunde.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ad.yieldmanager.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .eyewonder.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .eyewonder.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        track.effiliation.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        s03.flagcounter.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .overture.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        adserver1.mokono.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ad.yieldmanager.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .mediaplex.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        img-cdn.mediaplex.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .insightexpressai.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .insightexpressai.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .insightexpressai.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .insightexpressai.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .insightexpressai.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .insightexpressai.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .insightexpressai.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .ad.adnet.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .atdmt.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .atdmt.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        tracking.quisma.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .doubleclick.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .traffictrack.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .hightraffic.hugoboss.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .adviva.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .stepstone.112.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ad.yieldmanager.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .bs.serving-sys.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        eas.apm.emediate.eu [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .tradedoubler.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .media6degrees.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .media6degrees.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .media6degrees.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .media6degrees.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .urbia.wwe-media.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .fastclick.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .smartadserver.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .smartadserver.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .smartadserver.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .apmebf.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .ad.de.doubleclick.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .advertising.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .advertising.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        adfarm1.adition.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ads.familymedia.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .tradedoubler.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .tradedoubler.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ad3.adfarm1.adition.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        keyword-advertising.web.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ad1.adfarm1.adition.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ad2.adfarm1.adition.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .mediaplex.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .adfarm1.adition.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ad4.adfarm1.adition.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ad.yieldmanager.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ad.yieldmanager.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .atdmt.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .c.atdmt.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .c.atdmt.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .overture.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        adx.chip.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .revsci.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        tracking.klicktel.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        tracking.tchibo.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        track.webtrekk.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        ad.zanox.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .tradedoubler.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .tradedoubler.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .demandwarecrocs.112.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .invitemedia.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .dealtime.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .tracking.onmarketing.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        vb.mol.vs.bluedotmedia.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        vb.mol.vs.bluedotmedia.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        de.sitestat.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .philips.112.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .histats.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .histats.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        agrifinder.proplanta.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        agrifinder.proplanta.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .webmasterplan.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        accounts.youtube.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        accounts.google.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .accounts.google.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .accounts.google.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        www.googleadservices.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        clicks.pangora.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        clicks.pangora.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .tracking.quisma.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        www.etracker.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .bizrate.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .statcounter.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .clicker.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .clicker.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .clicker.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .clicker.de [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        .112.2o7.net [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]
        statse.webtrendslive.com [ C:\USERS\ULRIKE\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YD011DGU.DEFAULT\COOKIES.SQLITE ]

So jetzt funzt es


Alle Zeitangaben in WEZ +1. Es ist jetzt 20:35 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131