Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Can't update MS Essentials or use Firewall


  • Please log in to reply
11 replies to this topic

#1 rgjneal

rgjneal

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:07:10 PM

Posted 11 December 2012 - 10:38 AM

Hi there

I'm running a HP G62 laptop with Windows 7. I let it update itself till now, not sure if I missed anything.

Recently, one email recipient notified me that she had received some spam (about zeronareviews.com)on 4 occasions over a couple of weeks from a hotmail address with a random code prefix (not my normal gmail address, though that might be where it acquired the contact, I guess) but which came under my name.

I tried to immediately run Microsoft Security Essentials full scan, and it would not update, and gave me an error code (the same as the Firewall code, I think, but it's changed now). When I checked my Windows Firewall, I get error code 80070424.

I downloaded the latest updates manually from the MS website and ran a full scan with MSE. It found:

Trojan:Win32/Sirefef!cfg
Exploit:Java/CVE-2012-1723.OC
Exploit:Java/CVE-2012-1723.OB

They were quarantined then removed.

But I still have the same issues, still can't switch the Firewall on, and Security Essentials now gives me the following error code when I attempt to update: 0x80240022. Google is now asking me to go through a captcha entry when I search. The entries on here that I find seem to involve specific case by case approaches rather than a general fix, and though there is a page of instructions on what to do before posting re a virus, one step is to turn on the Firewall, which is part of my problem. Please excuse me if there is something obvious I have missed.

Any help very gratefully appreciated.

BC AdBot (Login to Remove)

 


#2 Gunto

Gunto

    Bleepin' Reject Phoenix


  • Malware Response Team
  • 1,284 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:North Las Vegas, Nevada, USA
  • Local time:11:10 AM

Posted 11 December 2012 - 10:41 AM

Hi, rgjneal! I'm going to try to help you out. :)

TDSSKiller

I need you to run a scan using TDSSKiller.

  • Download TDSSKiller from here, and save it to your desktop.
  • Double click the file to launch the program. Once the program starts, click Start Scan. Don't change any default scan settings.
  • Once the scan is finished, you'll find a log in your root drive (usually C: ) that will start with TDSS in the file name, please copy and paste it into your reply.

Malwarebytes

I need you to run a scan with Malwarebytes Anti-Malware.

  • Download MBAM from here, and save it to your desktop.
  • Double-click the installer to run it. During the installation, simply follow the prompts and let the program install. However, if you do not want to start a trial of the full version, please decline, and if offered any external toolbars/programs, feel free to uncheck to install them, unless you want them.
  • Once the program is done installing and updating, select the Perform full scan option on the main interface. The click the Scan button, hit Scan, and let the scan run.
  • Once the scan is finished, a log will pop up. If any malware was found, click the Show Results button, and make sure everything present is checked and click Remove Selected. If MBAM asks you to reboot, do so immediately. Either way, please copy and paste the log into your reply. If your PC is rebooted, you can find the log by opening up MBAM and going to the Logs tab.

AdwCleaner

I need you to run AdwCleaner to see if it removes anything.

  • Download AdwCleaner from here, and save it to your desktop.
  • Close all open programs.
  • Open the file on your desktop, and click the Delete button. Confirm operations at every prompt. Your PC will be rebooted after the final prompt.
  • Once rebooted, a text file will open up. Please copy and paste it into your reply.

RogueKiller

I need you to run RogueKiller to see if it removes anything.

  • Download RogueKiller from here, and save it to your desktop.
  • Close all open programs.
  • Double click the file on your desktop. Once the automatic check completes, hit the Scan button.
  • Once the full scan has finished, click on the Delete button. Once it's done removing things, open the newest log on your desktop (should be called RKreport[2].txt) and copy and paste it into your reply.

Gunto

Beautiful avatar by Plumbeck!

 

Bury me in honor; when I'm dead and hit the ground, a love back home, it unfolds...


#3 rgjneal

rgjneal
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:07:10 PM

Posted 11 December 2012 - 11:00 AM

TDSS log:

16:58:58.0562 4332 TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
16:58:58.0810 4332 ============================================================
16:58:58.0810 4332 Current date / time: 2012/12/11 16:58:58.0810
16:58:58.0810 4332 SystemInfo:
16:58:58.0810 4332
16:58:58.0810 4332 OS Version: 6.1.7600 ServicePack: 0.0
16:58:58.0810 4332 Product type: Workstation
16:58:58.0810 4332 ComputerName: USER-HP
16:58:58.0810 4332 UserName: User
16:58:58.0810 4332 Windows directory: C:\Windows
16:58:58.0811 4332 System windows directory: C:\Windows
16:58:58.0811 4332 Running under WOW64
16:58:58.0811 4332 Processor architecture: Intel x64
16:58:58.0811 4332 Number of processors: 4
16:58:58.0811 4332 Page size: 0x1000
16:58:58.0811 4332 Boot type: Normal boot
16:58:58.0811 4332 ============================================================
16:59:00.0638 4332 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
16:59:00.0683 4332 Drive \Device\Harddisk1\DR1 - Size: 0x1DFC00000 (7.50 Gb), SectorSize: 0x200, Cylinders: 0x3D2, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
16:59:00.0687 4332 ============================================================
16:59:00.0687 4332 \Device\Harddisk0\DR0:
16:59:00.0688 4332 MBR partitions:
16:59:00.0688 4332 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x63800
16:59:00.0688 4332 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x64000, BlocksNum 0x3834A800
16:59:00.0688 4332 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x383AE800, BlocksNum 0x1FA3800
16:59:00.0688 4332 \Device\Harddisk0\DR0\Partition4: MBR, Type 0xC, StartLBA 0x3A352000, BlocksNum 0x33830
16:59:00.0688 4332 \Device\Harddisk1\DR1:
16:59:00.0689 4332 MBR partitions:
16:59:00.0689 4332 \Device\Harddisk1\DR1\Partition1: MBR, Type 0xB, StartLBA 0x2000, BlocksNum 0xEFC000
16:59:00.0689 4332 ============================================================
16:59:00.0723 4332 C: <-> \Device\Harddisk0\DR0\Partition2
16:59:00.0760 4332 D: <-> \Device\Harddisk0\DR0\Partition3
16:59:00.0760 4332 ============================================================
16:59:00.0760 4332 Initialize success
16:59:00.0760 4332 ============================================================
16:59:03.0092 3816 ============================================================
16:59:03.0092 3816 Scan started
16:59:03.0092 3816 Mode: Manual;
16:59:03.0092 3816 ============================================================
16:59:03.0407 3816 ================ Scan system memory ========================
16:59:03.0407 3816 System memory - ok
16:59:03.0408 3816 ================ Scan services =============================
16:59:03.0580 3816 [ 1B00662092F9F9568B995902F0CC40D5 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys
16:59:03.0584 3816 1394ohci - ok
16:59:03.0631 3816 [ 6F11E88748CDEFD2F76AA215F97DDFE5 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys
16:59:03.0636 3816 ACPI - ok
16:59:03.0671 3816 [ 63B05A0420CE4BF0E4AF6DCC7CADA254 ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys
16:59:03.0672 3816 AcpiPmi - ok
16:59:03.0856 3816 [ 14C23516C990DCD6052152CF034DDE40 ] Adobe Version Cue CS3 C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS3\Server\bin\VersionCueCS3.exe
16:59:03.0860 3816 Adobe Version Cue CS3 - ok
16:59:03.0944 3816 [ 62B7936F9036DD6ED36E6A7EFA805DC0 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
16:59:03.0945 3816 AdobeARMservice - ok
16:59:04.0054 3816 [ 0CB0AA071C7B86A64F361DCFDF357329 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
16:59:04.0058 3816 AdobeFlashPlayerUpdateSvc - ok
16:59:04.0112 3816 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys
16:59:04.0120 3816 adp94xx - ok
16:59:04.0193 3816 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys
16:59:04.0199 3816 adpahci - ok
16:59:04.0228 3816 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys
16:59:04.0231 3816 adpu320 - ok
16:59:04.0264 3816 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
16:59:04.0266 3816 AeLookupSvc - ok
16:59:04.0349 3816 [ D1E343BC00136CE03C4D403194D06A80 ] AERTFilters C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
16:59:04.0351 3816 AERTFilters - ok
16:59:04.0415 3816 [ DB9D6C6B2CD95A9CA414D045B627422E ] AFD C:\Windows\system32\drivers\afd.sys
16:59:04.0424 3816 AFD - ok
16:59:04.0521 3816 [ 98022774D9930ECBB292E70DB7601DF6 ] AgereSoftModem C:\Windows\system32\DRIVERS\agrsm64.sys
16:59:04.0541 3816 AgereSoftModem - ok
16:59:04.0585 3816 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\DRIVERS\agp440.sys
16:59:04.0587 3816 agp440 - ok
16:59:04.0623 3816 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
16:59:04.0625 3816 ALG - ok
16:59:04.0671 3816 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\DRIVERS\aliide.sys
16:59:04.0673 3816 aliide - ok
16:59:04.0699 3816 [ CC180E1E0700995340C838BC1A729577 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
16:59:04.0703 3816 AMD External Events Utility - ok
16:59:04.0723 3816 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\DRIVERS\amdide.sys
16:59:04.0724 3816 amdide - ok
16:59:04.0762 3816 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys
16:59:04.0764 3816 AmdK8 - ok
16:59:05.0114 3816 [ 8155EA1864D1FA8B168C46C41ED97A76 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
16:59:05.0302 3816 amdkmdag - ok
16:59:05.0442 3816 [ 4841C7AF2BAC05AE23955D65B4336446 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
16:59:05.0447 3816 amdkmdap - ok
16:59:05.0483 3816 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
16:59:05.0486 3816 AmdPPM - ok
16:59:05.0538 3816 [ EC7EBAB00A4D8448BAB68D1E49B4BEB9 ] amdsata C:\Windows\system32\drivers\amdsata.sys
16:59:05.0541 3816 amdsata - ok
16:59:05.0584 3816 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys
16:59:05.0589 3816 amdsbs - ok
16:59:05.0608 3816 [ DB27766102C7BF7E95140A2AA81D042E ] amdxata C:\Windows\system32\drivers\amdxata.sys
16:59:05.0609 3816 amdxata - ok
16:59:05.0662 3816 [ A4837260AB5E274D508A52A6DA7C9ED1 ] AnyDVD C:\Windows\system32\Drivers\AnyDVD.sys
16:59:05.0666 3816 AnyDVD - ok
16:59:05.0697 3816 [ 42FD751B27FA0E9C69BB39F39E409594 ] AppID C:\Windows\system32\drivers\appid.sys
16:59:05.0699 3816 AppID - ok
16:59:05.0728 3816 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
16:59:05.0730 3816 AppIDSvc - ok
16:59:05.0759 3816 [ D065BE66822847B7F127D1F90158376E ] Appinfo C:\Windows\System32\appinfo.dll
16:59:05.0761 3816 Appinfo - ok
16:59:05.0809 3816 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys
16:59:05.0812 3816 arc - ok
16:59:05.0827 3816 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys
16:59:05.0830 3816 arcsas - ok
16:59:05.0868 3816 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
16:59:05.0870 3816 AsyncMac - ok
16:59:05.0920 3816 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\DRIVERS\atapi.sys
16:59:05.0921 3816 atapi - ok
16:59:05.0970 3816 [ 2D648572BA9A610952FCAFBA1E119C2D ] AtiHdmiService C:\Windows\system32\drivers\AtiHdmi.sys
16:59:05.0974 3816 AtiHdmiService - ok
16:59:06.0030 3816 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
16:59:06.0042 3816 AudioEndpointBuilder - ok
16:59:06.0058 3816 [ 07721A77180EDD4D39CCB865BF63C7FD ] AudioSrv C:\Windows\System32\Audiosrv.dll
16:59:06.0067 3816 AudioSrv - ok
16:59:06.0108 3816 [ B20B5FA5CA050E9926E4D1DB81501B32 ] AxInstSV C:\Windows\System32\AxInstSV.dll
16:59:06.0111 3816 AxInstSV - ok
16:59:06.0170 3816 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys
16:59:06.0179 3816 b06bdrv - ok
16:59:06.0225 3816 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
16:59:06.0231 3816 b57nd60a - ok
16:59:06.0324 3816 [ 825F81A6F7DD073509DB101F0BA6DC59 ] BBSvc C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE
16:59:06.0328 3816 BBSvc - ok
16:59:06.0576 3816 [ 810BE94A9E42309B3F74217AC28BC6AC ] BCM43XX C:\Windows\system32\DRIVERS\bcmwl664.sys
16:59:06.0791 3816 BCM43XX - ok
16:59:06.0824 3816 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
16:59:06.0827 3816 BDESVC - ok
16:59:06.0854 3816 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
16:59:06.0856 3816 Beep - ok
16:59:06.0886 3816 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
16:59:06.0889 3816 blbdrive - ok
16:59:06.0940 3816 [ 73686FE0B2E0469F89FD2075BE724704 ] Bonjour Service C:\Program Files (x86)\Bonjour\mDNSResponder.exe
16:59:06.0946 3816 Bonjour Service - ok
16:59:06.0990 3816 [ 19D20159708E152267E53B66677A4995 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
16:59:06.0993 3816 bowser - ok
16:59:07.0032 3816 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys
16:59:07.0034 3816 BrFiltLo - ok
16:59:07.0045 3816 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys
16:59:07.0046 3816 BrFiltUp - ok
16:59:07.0076 3816 [ 94FBC06F294D58D02361918418F996E3 ] Browser C:\Windows\System32\browser.dll
16:59:07.0080 3816 Browser - ok
16:59:07.0111 3816 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
16:59:07.0117 3816 Brserid - ok
16:59:07.0131 3816 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
16:59:07.0133 3816 BrSerWdm - ok
16:59:07.0175 3816 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
16:59:07.0176 3816 BrUsbMdm - ok
16:59:07.0216 3816 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
16:59:07.0218 3816 BrUsbSer - ok
16:59:07.0247 3816 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys
16:59:07.0250 3816 BTHMODEM - ok
16:59:07.0292 3816 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
16:59:07.0294 3816 bthserv - ok
16:59:07.0326 3816 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
16:59:07.0329 3816 cdfs - ok
16:59:07.0363 3816 [ 83D2D75E1EFB81B3450C18131443F7DB ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
16:59:07.0367 3816 cdrom - ok
16:59:07.0398 3816 [ 312E2F82AF11E79906898AC3E3D58A1F ] CertPropSvc C:\Windows\System32\certprop.dll
16:59:07.0400 3816 CertPropSvc - ok
16:59:07.0443 3816 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys
16:59:07.0445 3816 circlass - ok
16:59:07.0471 3816 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
16:59:07.0478 3816 CLFS - ok
16:59:07.0551 3816 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:59:07.0553 3816 clr_optimization_v2.0.50727_32 - ok
16:59:07.0687 3816 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
16:59:07.0690 3816 clr_optimization_v2.0.50727_64 - ok
16:59:07.0775 3816 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:59:07.0779 3816 clr_optimization_v4.0.30319_32 - ok
16:59:07.0805 3816 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
16:59:07.0809 3816 clr_optimization_v4.0.30319_64 - ok
16:59:07.0853 3816 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys
16:59:07.0854 3816 CmBatt - ok
16:59:07.0881 3816 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys
16:59:07.0883 3816 cmdide - ok
16:59:07.0942 3816 [ CA7720B73446FDDEC5C69519C1174C98 ] CNG C:\Windows\system32\Drivers\cng.sys
16:59:07.0950 3816 CNG - ok
16:59:07.0994 3816 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys
16:59:07.0995 3816 Compbatt - ok
16:59:08.0040 3816 [ F26B3A86F6FA87CA360B879581AB4123 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
16:59:08.0042 3816 CompositeBus - ok
16:59:08.0059 3816 COMSysApp - ok
16:59:08.0086 3816 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys
16:59:08.0087 3816 crcdisk - ok
16:59:08.0143 3816 [ F02786B66375292E58C8777082D4396D ] CryptSvc C:\Windows\system32\cryptsvc.dll
16:59:08.0147 3816 CryptSvc - ok
16:59:08.0257 3816 [ 72794D112CBAFF3BC0C29BF7350D4741 ] cvhsvc C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
16:59:08.0272 3816 cvhsvc - ok
16:59:08.0318 3816 [ 7266972E86890E2B30C0C322E906B027 ] DcomLaunch C:\Windows\system32\rpcss.dll
16:59:08.0330 3816 DcomLaunch - ok
16:59:08.0518 3816 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
16:59:08.0524 3816 defragsvc - ok
16:59:08.0582 3816 [ 9C253CE7311CA60FC11C774692A13208 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
16:59:08.0584 3816 DfsC - ok
16:59:08.0651 3816 [ CE3B9562D997F69B330D181A8875960F ] Dhcp C:\Windows\system32\dhcpcore.dll
16:59:08.0659 3816 Dhcp - ok
16:59:08.0768 3816 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
16:59:08.0768 3816 discache - ok
16:59:08.0821 3816 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys
16:59:08.0823 3816 Disk - ok
16:59:08.0876 3816 [ 85CF424C74A1D5EC33533E1DBFF9920A ] Dnscache C:\Windows\System32\dnsrslvr.dll
16:59:08.0881 3816 Dnscache - ok
16:59:08.0913 3816 [ 14452ACDB09B70964C8C21BF80A13ACB ] dot3svc C:\Windows\System32\dot3svc.dll
16:59:08.0919 3816 dot3svc - ok
16:59:08.0935 3816 [ 8C2BA6BEA949EE6E68385F5692BAFB94 ] DPS C:\Windows\system32\dps.dll
16:59:08.0940 3816 DPS - ok
16:59:08.0970 3816 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
16:59:08.0972 3816 drmkaud - ok
16:59:09.0084 3816 [ EBCE0B0924835F635F620D19F0529DCE ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
16:59:09.0101 3816 DXGKrnl - ok
16:59:09.0139 3816 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
16:59:09.0142 3816 EapHost - ok
16:59:09.0270 3816 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys
16:59:09.0346 3816 ebdrv - ok
16:59:09.0382 3816 [ 156F6159457D0AA7E59B62681B56EB90 ] EFS C:\Windows\System32\lsass.exe
16:59:09.0385 3816 EFS - ok
16:59:09.0483 3816 [ 47C071994C3F649F23D9CD075AC9304A ] ehRecvr C:\Windows\ehome\ehRecvr.exe
16:59:09.0497 3816 ehRecvr - ok
16:59:09.0528 3816 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
16:59:09.0531 3816 ehSched - ok
16:59:09.0577 3816 [ A05FC7ECA0966EBB70E4D17B855A853B ] ElbyCDIO C:\Windows\system32\Drivers\ElbyCDIO.sys
16:59:09.0579 3816 ElbyCDIO - ok
16:59:09.0624 3816 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys
16:59:09.0634 3816 elxstor - ok
16:59:09.0663 3816 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys
16:59:09.0665 3816 ErrDev - ok
16:59:09.0707 3816 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
16:59:09.0715 3816 EventSystem - ok
16:59:09.0755 3816 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
16:59:09.0759 3816 exfat - ok
16:59:09.0777 3816 ezSharedSvc - ok
16:59:09.0795 3816 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
16:59:09.0799 3816 fastfat - ok
16:59:09.0868 3816 [ D607B2F1BEE3992AA6C2C92C0A2F0855 ] Fax C:\Windows\system32\fxssvc.exe
16:59:09.0881 3816 Fax - ok
16:59:09.0928 3816 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys
16:59:09.0930 3816 fdc - ok
16:59:09.0963 3816 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
16:59:09.0965 3816 fdPHost - ok
16:59:09.0975 3816 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
16:59:09.0978 3816 FDResPub - ok
16:59:10.0011 3816 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
16:59:10.0013 3816 FileInfo - ok
16:59:10.0029 3816 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
16:59:10.0031 3816 Filetrace - ok
16:59:10.0095 3816 [ 227846995AFEEFA70D328BF5334A86A5 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
16:59:10.0106 3816 FLEXnet Licensing Service - ok
16:59:10.0145 3816 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys
16:59:10.0147 3816 flpydisk - ok
16:59:10.0190 3816 [ F7866AF72ABBAF84B1FA5AA195378C59 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
16:59:10.0195 3816 FltMgr - ok
16:59:10.0257 3816 [ CB5E4B9C319E3C6BB363EB7E58A4A051 ] FontCache C:\Windows\system32\FntCache.dll
16:59:10.0277 3816 FontCache - ok
16:59:10.0335 3816 [ 8D89E3131C27FDD6932189CB785E1B7A ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
16:59:10.0336 3816 FontCache3.0.0.0 - ok
16:59:10.0368 3816 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
16:59:10.0370 3816 FsDepends - ok
16:59:10.0410 3816 [ D3E3F93D67821A2DB2B3D9FAC2DC2064 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
16:59:10.0411 3816 Fs_Rec - ok
16:59:10.0462 3816 [ AE87BA80D0EC3B57126ED2CDC15B24ED ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
16:59:10.0465 3816 fvevol - ok
16:59:10.0513 3816 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys
16:59:10.0515 3816 gagp30kx - ok
16:59:10.0575 3816 [ 551D463E4CCEB5240234DA6718C93A44 ] GameConsoleService C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
16:59:10.0581 3816 GameConsoleService - ok
16:59:10.0631 3816 [ FE5AB4525BC2EC68B9119A6E5D40128B ] gpsvc C:\Windows\System32\gpsvc.dll
16:59:10.0645 3816 gpsvc - ok
16:59:10.0736 3816 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:59:10.0739 3816 gupdate - ok
16:59:10.0758 3816 [ 8F0DE4FEF8201E306F9938B0905AC96A ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
16:59:10.0760 3816 gupdatem - ok
16:59:10.0817 3816 [ C1B577B2169900F4CF7190C39F085794 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
16:59:10.0820 3816 gusvc - ok
16:59:10.0855 3816 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
16:59:10.0857 3816 hcw85cir - ok
16:59:10.0924 3816 [ 6410F6F415B2A5A9037224C41DA8BF12 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
16:59:10.0931 3816 HdAudAddService - ok
16:59:10.0976 3816 [ 0A49913402747A0B67DE940FB42CBDBB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
16:59:10.0980 3816 HDAudBus - ok
16:59:11.0169 3816 [ B6AC71AAA2B10848F57FC49D55A651AF ] HECIx64 C:\Windows\system32\DRIVERS\HECIx64.sys
16:59:11.0171 3816 HECIx64 - ok
16:59:11.0201 3816 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys
16:59:11.0203 3816 HidBatt - ok
16:59:11.0235 3816 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys
16:59:11.0238 3816 HidBth - ok
16:59:11.0256 3816 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
16:59:11.0258 3816 HidIr - ok
16:59:11.0278 3816 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll
16:59:11.0281 3816 hidserv - ok
16:59:11.0310 3816 [ B3BF6B5B50006DEF50B66306D99FCF6F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
16:59:11.0312 3816 HidUsb - ok
16:59:11.0340 3816 [ EFA58EDE58DD74388FFD04CB32681518 ] hkmsvc C:\Windows\system32\kmsvc.dll
16:59:11.0344 3816 hkmsvc - ok
16:59:11.0374 3816 [ 046B2673767CA626E2CFB7FDF735E9E8 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
16:59:11.0381 3816 HomeGroupListener - ok
16:59:11.0412 3816 [ 06A7422224D9865A5613710A089987DF ] HomeGroupProvider C:\Windows\system32\provsvc.dll
16:59:11.0418 3816 HomeGroupProvider - ok
16:59:11.0494 3816 [ 3F4ADD4196E2B860019539837BE305F9 ] HP Health Check Service C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
16:59:11.0544 3816 HP Health Check Service - ok
16:59:11.0596 3816 [ 3A09322A8AA8B0C79036686A0EBE7B4C ] HP Wireless Assistant Service C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
16:59:11.0600 3816 HP Wireless Assistant Service - ok
16:59:11.0650 3816 [ EF3EA06057132138B4E5895A61601DBE ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
16:59:11.0654 3816 hpqwmiex - ok
16:59:11.0703 3816 [ 0886D440058F203EBA0E1825E4355914 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys
16:59:11.0706 3816 HpSAMD - ok
16:59:11.0769 3816 [ 9DF9CF7840A3A99F2FFD614F0A13F2F9 ] HPWMISVC C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
16:59:11.0771 3816 HPWMISVC - ok
16:59:11.0817 3816 [ CEE049CAC4EFA7F4E1E4AD014414A5D4 ] HTTP C:\Windows\system32\drivers\HTTP.sys
16:59:11.0830 3816 HTTP - ok
16:59:11.0863 3816 [ F17766A19145F111856378DF337A5D79 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
16:59:11.0864 3816 hwpolicy - ok
16:59:11.0911 3816 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
16:59:11.0914 3816 i8042prt - ok
16:59:11.0962 3816 [ 1384872112E8E7FD5786ECEB8BDDF4C9 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys
16:59:11.0968 3816 iaStor - ok
16:59:12.0022 3816 [ 6B24D1C3096DE796D15571079EA5E98C ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
16:59:12.0024 3816 IAStorDataMgrSvc - ok
16:59:12.0080 3816 [ B75E45C564E944A2657167D197AB29DA ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
16:59:12.0088 3816 iaStorV - ok
16:59:12.0341 3816 [ 2F2BE70D3E02B6FA877921AB9516D43C ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
16:59:12.0357 3816 idsvc - ok
16:59:12.0676 3816 [ FBACBED7A37B3223822470FF1D8EA00F ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys
16:59:12.0973 3816 igfx - ok
16:59:13.0024 3816 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys
16:59:13.0026 3816 iirsp - ok
16:59:13.0086 3816 [ C5B4683680DF085B57BC53E5EF34861F ] IKEEXT C:\Windows\System32\ikeext.dll
16:59:13.0102 3816 IKEEXT - ok
16:59:13.0203 3816 [ E76FDFFF07F8A2FA81FF250DDA0F6BBA ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
16:59:13.0240 3816 IntcAzAudAddService - ok
16:59:13.0278 3816 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\DRIVERS\intelide.sys
16:59:13.0279 3816 intelide - ok
16:59:13.0605 3816 [ FBACBED7A37B3223822470FF1D8EA00F ] intelkmd C:\Windows\system32\DRIVERS\igdpmd64.sys
16:59:13.0895 3816 intelkmd - ok
16:59:13.0947 3816 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
16:59:13.0949 3816 intelppm - ok
16:59:13.0987 3816 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
16:59:13.0991 3816 IPBusEnum - ok
16:59:14.0029 3816 [ 722DD294DF62483CECAAE6E094B4D695 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
16:59:14.0031 3816 IpFilterDriver - ok
16:59:14.0061 3816 [ E2B4A4494DB7CB9B89B55CA268C337C5 ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys
16:59:14.0064 3816 IPMIDRV - ok
16:59:14.0107 3816 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
16:59:14.0110 3816 IPNAT - ok
16:59:14.0137 3816 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
16:59:14.0139 3816 IRENUM - ok
16:59:14.0169 3816 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys
16:59:14.0171 3816 isapnp - ok
16:59:14.0255 3816 [ FA4D2557DE56D45B0A346F93564BE6E1 ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys
16:59:14.0260 3816 iScsiPrt - ok
16:59:14.0291 3816 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
16:59:14.0292 3816 kbdclass - ok
16:59:14.0327 3816 [ 6DEF98F8541E1B5DCEB2C822A11F7323 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
16:59:14.0328 3816 kbdhid - ok
16:59:14.0350 3816 [ 156F6159457D0AA7E59B62681B56EB90 ] KeyIso C:\Windows\system32\lsass.exe
16:59:14.0352 3816 KeyIso - ok
16:59:14.0395 3816 [ 4F4B5FDE429416877DE7143044582EB5 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
16:59:14.0397 3816 KSecDD - ok
16:59:14.0421 3816 [ 6F40465A44ECDC1731BEFAFEC5BDD03C ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
16:59:14.0424 3816 KSecPkg - ok
16:59:14.0452 3816 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
16:59:14.0454 3816 ksthunk - ok
16:59:14.0499 3816 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
16:59:14.0509 3816 KtmRm - ok
16:59:14.0568 3816 [ 81F1D04D4D0E433099365127375FD501 ] LanmanServer C:\Windows\system32\srvsvc.dll
16:59:14.0576 3816 LanmanServer - ok
16:59:14.0601 3816 [ 27026EAC8818E8A6C00A1CAD2F11D29A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
16:59:14.0607 3816 LanmanWorkstation - ok
16:59:14.0676 3816 [ 7550D101BF49FDB1F92666A233EE36C4 ] LightScribeService C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
16:59:14.0859 3816 LightScribeService - ok
16:59:14.0888 3816 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
16:59:14.0890 3816 lltdio - ok
16:59:14.0930 3816 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
16:59:14.0937 3816 lltdsvc - ok
16:59:14.0960 3816 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
16:59:14.0962 3816 lmhosts - ok
16:59:15.0038 3816 [ DBC1136A62BD4DECC3632DF650284C2E ] LMS C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
16:59:15.0044 3816 LMS - ok
16:59:15.0084 3816 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys
16:59:15.0087 3816 LSI_FC - ok
16:59:15.0113 3816 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys
16:59:15.0116 3816 LSI_SAS - ok
16:59:15.0136 3816 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys
16:59:15.0138 3816 LSI_SAS2 - ok
16:59:15.0179 3816 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys
16:59:15.0182 3816 LSI_SCSI - ok
16:59:15.0230 3816 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
16:59:15.0232 3816 luafv - ok
16:59:15.0273 3816 [ 23488767CB18FC3FF39E3AF1DB3FB02C ] massfilter C:\Windows\system32\drivers\massfilter.sys
16:59:15.0274 3816 massfilter - ok
16:59:15.0321 3816 [ F84C8F1000BC11E3B7B23CBD3BAFF111 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
16:59:15.0325 3816 Mcx2Svc - ok
16:59:15.0355 3816 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys
16:59:15.0356 3816 megasas - ok
16:59:15.0400 3816 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys
16:59:15.0405 3816 MegaSR - ok
16:59:15.0519 3816 [ 7C4C76B39D5525C4A465E0BE32528E19 ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
16:59:15.0522 3816 Microsoft Office Groove Audit Service - ok
16:59:15.0554 3816 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
16:59:15.0557 3816 MMCSS - ok
16:59:15.0595 3816 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
16:59:15.0597 3816 Modem - ok
16:59:15.0618 3816 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
16:59:15.0620 3816 monitor - ok
16:59:15.0641 3816 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
16:59:15.0643 3816 mouclass - ok
16:59:15.0675 3816 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
16:59:15.0676 3816 mouhid - ok
16:59:15.0702 3816 [ 791AF66C4D0E7C90A3646066386FB571 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
16:59:15.0704 3816 mountmgr - ok
16:59:15.0787 3816 [ CB8AF049AC9BE419A77ADAE288673359 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
16:59:15.0791 3816 MozillaMaintenance - ok
16:59:15.0828 3816 [ 94C66EDEDCDB6A126880472F9A704D8E ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys
16:59:15.0832 3816 MpFilter - ok
16:59:15.0857 3816 [ 609D1D87649ECC19796F4D76D4C15CEA ] mpio C:\Windows\system32\DRIVERS\mpio.sys
16:59:15.0862 3816 mpio - ok
16:59:15.0889 3816 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
16:59:15.0892 3816 mpsdrv - ok
16:59:15.0920 3816 [ 30524261BB51D96D6FCBAC20C810183C ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
16:59:15.0924 3816 MRxDAV - ok
16:59:15.0960 3816 [ 040D62A9D8AD28922632137ACDD984F2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
16:59:15.0963 3816 mrxsmb - ok
16:59:16.0007 3816 [ F0067552F8F9B33D7C59403AB808A3CB ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
16:59:16.0012 3816 mrxsmb10 - ok
16:59:16.0034 3816 [ 3C142D31DE9F2F193218A53FE2632051 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
16:59:16.0037 3816 mrxsmb20 - ok
16:59:16.0063 3816 [ 5E939CF91EA4A841DBAFE4627E0292BB ] msahci C:\Windows\system32\DRIVERS\msahci.sys
16:59:16.0064 3816 msahci - ok
16:59:16.0149 3816 [ 8D27B597229AED79430FB9DB3BCBFBD0 ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys
16:59:16.0153 3816 msdsm - ok
16:59:16.0169 3816 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
16:59:16.0174 3816 MSDTC - ok
16:59:16.0213 3816 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
16:59:16.0214 3816 Msfs - ok
16:59:16.0231 3816 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
16:59:16.0233 3816 mshidkmdf - ok
16:59:16.0263 3816 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\DRIVERS\msisadrv.sys
16:59:16.0263 3816 msisadrv - ok
16:59:16.0300 3816 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
16:59:16.0305 3816 MSiSCSI - ok
16:59:16.0311 3816 msiserver - ok
16:59:16.0349 3816 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
16:59:16.0351 3816 MSKSSRV - ok
16:59:16.0414 3816 [ 59FAAF2C83C8169EA20F9E335E418907 ] MsMpSvc c:\Program Files\Microsoft Security Client\MsMpEng.exe
16:59:16.0415 3816 MsMpSvc - ok
16:59:16.0432 3816 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
16:59:16.0433 3816 MSPCLOCK - ok
16:59:16.0440 3816 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
16:59:16.0441 3816 MSPQM - ok
16:59:16.0475 3816 [ 89CB141AA8616D8C6A4610FA26C60964 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
16:59:16.0482 3816 MsRPC - ok
16:59:16.0500 3816 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
16:59:16.0502 3816 mssmbios - ok
16:59:16.0539 3816 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
16:59:16.0540 3816 MSTEE - ok
16:59:16.0562 3816 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys
16:59:16.0563 3816 MTConfig - ok
16:59:16.0584 3816 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
16:59:16.0585 3816 Mup - ok
16:59:16.0621 3816 [ 4987E079A4530FA737A128BE54B63B12 ] napagent C:\Windows\system32\qagentRT.dll
16:59:16.0632 3816 napagent - ok
16:59:16.0681 3816 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
16:59:16.0687 3816 NativeWifiP - ok
16:59:16.0737 3816 [ CAD515DBD07D082BB317D9928CE8962C ] NDIS C:\Windows\system32\drivers\ndis.sys
16:59:16.0753 3816 NDIS - ok
16:59:16.0792 3816 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
16:59:16.0794 3816 NdisCap - ok
16:59:16.0824 3816 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
16:59:16.0825 3816 NdisTapi - ok
16:59:16.0847 3816 [ F105BA1E22BF1F2EE8F005D4305E4BEC ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
16:59:16.0848 3816 Ndisuio - ok
16:59:16.0878 3816 [ 557DFAB9CA1FCB036AC77564C010DAD3 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
16:59:16.0882 3816 NdisWan - ok
16:59:16.0899 3816 [ 659B74FB74B86228D6338D643CD3E3CF ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
16:59:16.0901 3816 NDProxy - ok
16:59:16.0927 3816 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
16:59:16.0928 3816 NetBIOS - ok
16:59:16.0950 3816 [ 9162B273A44AB9DCE5B44362731D062A ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
16:59:16.0955 3816 NetBT - ok
16:59:16.0972 3816 [ 156F6159457D0AA7E59B62681B56EB90 ] Netlogon C:\Windows\system32\lsass.exe
16:59:16.0974 3816 Netlogon - ok
16:59:17.0027 3816 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
16:59:17.0035 3816 Netman - ok
16:59:17.0081 3816 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
16:59:17.0091 3816 netprofm - ok
16:59:17.0128 3816 [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
16:59:17.0131 3816 NetTcpPortSharing - ok
16:59:17.0315 3816 [ 64428DFDAF6E88366CB51F45A79C5F69 ] netw5v64 C:\Windows\system32\DRIVERS\netw5v64.sys
16:59:17.0490 3816 netw5v64 - ok
16:59:17.0530 3816 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys
16:59:17.0532 3816 nfrd960 - ok
16:59:17.0578 3816 [ 91B4E0273D2F6C24EF845F2B41311289 ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys
16:59:17.0581 3816 NisDrv - ok
16:59:17.0625 3816 [ 10A43829A9E606AF3EEF25A1C1665923 ] NisSrv c:\Program Files\Microsoft Security Client\NisSrv.exe
16:59:17.0631 3816 NisSrv - ok
16:59:17.0664 3816 [ D9A0CE66046D6EFA0C61BAA885CBA0A8 ] NlaSvc C:\Windows\System32\nlasvc.dll
16:59:17.0672 3816 NlaSvc - ok
16:59:17.0775 3816 [ 5839A8027D6D324A7CD494051A96628C ] NOBU C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
16:59:17.0855 3816 NOBU - ok
16:59:17.0875 3816 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
16:59:17.0876 3816 Npfs - ok
16:59:17.0903 3816 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
16:59:17.0906 3816 nsi - ok
16:59:17.0926 3816 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
16:59:17.0926 3816 nsiproxy - ok
16:59:18.0016 3816 [ 378E0E0DFEA67D98AE6EA53ADBBD76BC ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
16:59:18.0043 3816 Ntfs - ok
16:59:18.0073 3816 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
16:59:18.0075 3816 Null - ok
16:59:18.0108 3816 [ A4D9C9A608A97F59307C2F2600EDC6A4 ] nvraid C:\Windows\system32\drivers\nvraid.sys
16:59:18.0111 3816 nvraid - ok
16:59:18.0163 3816 [ 6C1D5F70E7A6A3FD1C90D840EDC048B9 ] nvstor C:\Windows\system32\drivers\nvstor.sys
16:59:18.0167 3816 nvstor - ok
16:59:18.0215 3816 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\DRIVERS\nv_agp.sys
16:59:18.0218 3816 nv_agp - ok
16:59:18.0296 3816 [ 1F0E05DFF4F5A833168E49BE1256F002 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
16:59:18.0304 3816 odserv - ok
16:59:18.0396 3816 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys
16:59:18.0399 3816 ohci1394 - ok
16:59:18.0446 3816 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
16:59:18.0450 3816 ose - ok
16:59:18.0676 3816 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
16:59:18.0838 3816 osppsvc - ok
16:59:18.0908 3816 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
16:59:18.0917 3816 p2pimsvc - ok
16:59:18.0942 3816 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
16:59:18.0953 3816 p2psvc - ok
16:59:18.0983 3816 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
16:59:18.0986 3816 Parport - ok
16:59:19.0027 3816 [ 90061B1ACFE8CCAA5345750FFE08D8B8 ] partmgr C:\Windows\system32\drivers\partmgr.sys
16:59:19.0029 3816 partmgr - ok
16:59:19.0067 3816 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
16:59:19.0074 3816 PcaSvc - ok
16:59:19.0105 3816 [ F36F6504009F2FB0DFD1B17A116AD74B ] pci C:\Windows\system32\DRIVERS\pci.sys
16:59:19.0108 3816 pci - ok
16:59:19.0148 3816 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\DRIVERS\pciide.sys
16:59:19.0150 3816 pciide - ok
16:59:19.0180 3816 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys
16:59:19.0185 3816 pcmcia - ok
16:59:19.0213 3816 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
16:59:19.0214 3816 pcw - ok
16:59:19.0237 3816 PDNMp50 - ok
16:59:19.0265 3816 PDNSp50 - ok
16:59:19.0298 3816 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
16:59:19.0310 3816 PEAUTH - ok
16:59:19.0393 3816 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
16:59:19.0396 3816 PerfHost - ok
16:59:19.0479 3816 [ 557E9A86F65F0DE18C9B6751DFE9D3F1 ] pla C:\Windows\system32\pla.dll
16:59:19.0505 3816 pla - ok
16:59:19.0565 3816 [ 98B1721B8718164293B9701B98C52D77 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
16:59:19.0575 3816 PlugPlay - ok
16:59:19.0610 3816 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
16:59:19.0613 3816 PNRPAutoReg - ok
16:59:19.0642 3816 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
16:59:19.0648 3816 PNRPsvc - ok
16:59:19.0692 3816 [ 166EB40D1F5B47E615DE3D0FFFE5F243 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
16:59:19.0703 3816 PolicyAgent - ok
16:59:19.0745 3816 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
16:59:19.0752 3816 Power - ok
16:59:19.0796 3816 [ 27CC19E81BA5E3403C48302127BDA717 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
16:59:19.0800 3816 PptpMiniport - ok
16:59:19.0826 3816 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys
16:59:19.0828 3816 Processor - ok
16:59:19.0881 3816 [ 97293447431311C06703368AD0F6C4BE ] ProfSvc C:\Windows\system32\profsvc.dll
16:59:19.0888 3816 ProfSvc - ok
16:59:19.0905 3816 [ 156F6159457D0AA7E59B62681B56EB90 ] ProtectedStorage C:\Windows\system32\lsass.exe
16:59:19.0907 3816 ProtectedStorage - ok
16:59:19.0955 3816 [ EE992183BD8EAEFD9973F352E587A299 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
16:59:19.0957 3816 Psched - ok
16:59:20.0034 3816 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys
16:59:20.0061 3816 ql2300 - ok
16:59:20.0098 3816 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys
16:59:20.0101 3816 ql40xx - ok
16:59:20.0132 3816 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
16:59:20.0140 3816 QWAVE - ok
16:59:20.0170 3816 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
16:59:20.0172 3816 QWAVEdrv - ok
16:59:20.0187 3816 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
16:59:20.0188 3816 RasAcd - ok
16:59:20.0224 3816 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
16:59:20.0226 3816 RasAgileVpn - ok
16:59:20.0257 3816 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
16:59:20.0262 3816 RasAuto - ok
16:59:20.0305 3816 [ 87A6E852A22991580D6D39ADC4790463 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
16:59:20.0309 3816 Rasl2tp - ok
16:59:20.0346 3816 [ 47394ED3D16D053F5906EFE5AB51CC83 ] RasMan C:\Windows\System32\rasmans.dll
16:59:20.0354 3816 RasMan - ok
16:59:20.0382 3816 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
16:59:20.0385 3816 RasPppoe - ok
16:59:20.0408 3816 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
16:59:20.0411 3816 RasSstp - ok
16:59:20.0438 3816 [ 3BAC8142102C15D59A87757C1D41DCE5 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
16:59:20.0444 3816 rdbss - ok
16:59:20.0465 3816 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys
16:59:20.0467 3816 rdpbus - ok
16:59:20.0496 3816 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
16:59:20.0496 3816 RDPCDD - ok
16:59:20.0523 3816 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
16:59:20.0523 3816 RDPENCDD - ok
16:59:20.0547 3816 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
16:59:20.0547 3816 RDPREFMP - ok
16:59:20.0587 3816 [ 447DE7E3DEA39D422C1504F245B668B1 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
16:59:20.0592 3816 RDPWD - ok
16:59:20.0624 3816 [ 634B9A2181D98F15941236886164EC8B ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
16:59:20.0628 3816 rdyboost - ok
16:59:20.0666 3816 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
16:59:20.0671 3816 RemoteAccess - ok
16:59:20.0704 3816 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
16:59:20.0711 3816 RemoteRegistry - ok
16:59:20.0725 3816 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
16:59:20.0729 3816 RpcEptMapper - ok
16:59:20.0753 3816 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
16:59:20.0756 3816 RpcLocator - ok
16:59:20.0796 3816 [ 7266972E86890E2B30C0C322E906B027 ] RpcSs C:\Windows\system32\rpcss.dll
16:59:20.0805 3816 RpcSs - ok
16:59:20.0852 3816 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
16:59:20.0854 3816 rspndr - ok
16:59:20.0897 3816 [ 483DF0B58CA532E5240E59DC41F30AA2 ] RSUSBSTOR C:\Windows\system32\Drivers\RtsUStor.sys
16:59:20.0902 3816 RSUSBSTOR - ok
16:59:20.0941 3816 [ 20A466B9EA2BD828C0EC723F99B8CFE7 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
16:59:20.0946 3816 RTL8167 - ok
16:59:21.0008 3816 [ FEBFB5730E12F62CA38F86A066E7348D ] RtVOsdService C:\Program Files\Realtek\RtVOsd\RtVOsdService.exe
16:59:21.0042 3816 RtVOsdService - ok
16:59:21.0061 3816 [ 156F6159457D0AA7E59B62681B56EB90 ] SamSs C:\Windows\system32\lsass.exe
16:59:21.0063 3816 SamSs - ok
16:59:21.0098 3816 [ E3BBB89983DAF5622C1D50CF49F28227 ] sbp2port C:\Windows\system32\DRIVERS\sbp2port.sys
16:59:21.0101 3816 sbp2port - ok
16:59:21.0137 3816 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
16:59:21.0144 3816 SCardSvr - ok
16:59:21.0171 3816 [ C94DA20C7E3BA1DCA269BC8460D98387 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
16:59:21.0173 3816 scfilter - ok
16:59:21.0236 3816 [ 624D0F5FF99428BB90A5B8A4123E918E ] Schedule C:\Windows\system32\schedsvc.dll
16:59:21.0257 3816 Schedule - ok
16:59:21.0287 3816 [ 312E2F82AF11E79906898AC3E3D58A1F ] SCPolicySvc C:\Windows\System32\certprop.dll
16:59:21.0289 3816 SCPolicySvc - ok
16:59:21.0330 3816 [ 54E47AD086782D3AE9417C155CDCEB9B ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
16:59:21.0334 3816 sdbus - ok
16:59:21.0371 3816 [ 765A27C3279CE11D14CB9E4F5869FCA5 ] SDRSVC C:\Windows\System32\SDRSVC.dll
16:59:21.0378 3816 SDRSVC - ok
16:59:21.0431 3816 [ 4A5809A1D796E2675AC0332BF7B0CB11 ] SeaPort C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
16:59:21.0436 3816 SeaPort - ok
16:59:21.0463 3816 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
16:59:21.0465 3816 secdrv - ok
16:59:21.0486 3816 [ 463B386EBC70F98DA5DFF85F7E654346 ] seclogon C:\Windows\system32\seclogon.dll
16:59:21.0489 3816 seclogon - ok
16:59:21.0509 3816 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll
16:59:21.0513 3816 SENS - ok
16:59:21.0527 3816 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
16:59:21.0532 3816 SensrSvc - ok
16:59:21.0576 3816 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
16:59:21.0577 3816 Serenum - ok
16:59:21.0604 3816 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
16:59:21.0608 3816 Serial - ok
16:59:21.0650 3816 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys
16:59:21.0651 3816 sermouse - ok
16:59:21.0692 3816 [ C3BC61CE47FF6F4E88AB8A3B429A36AF ] SessionEnv C:\Windows\system32\sessenv.dll
16:59:21.0697 3816 SessionEnv - ok
16:59:21.0719 3816 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys
16:59:21.0721 3816 sffdisk - ok
16:59:21.0744 3816 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\DRIVERS\sffp_mmc.sys
16:59:21.0746 3816 sffp_mmc - ok
16:59:21.0761 3816 [ 178298F767FE638C9FEDCBDEF58BB5E4 ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys
16:59:21.0763 3816 sffp_sd - ok
16:59:21.0805 3816 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys
16:59:21.0807 3816 sfloppy - ok
16:59:21.0862 3816 [ C6CC9297BD53E5229653303E556AA539 ] Sftfs C:\Windows\system32\DRIVERS\Sftfslh.sys
16:59:21.0875 3816 Sftfs - ok
16:59:21.0963 3816 [ 13693B6354DD6E72DC5131DA7D764B90 ] sftlist C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
16:59:21.0972 3816 sftlist - ok
16:59:22.0010 3816 [ 390AA7BC52CEE43F6790CDEA1E776703 ] Sftplay C:\Windows\system32\DRIVERS\Sftplaylh.sys
16:59:22.0016 3816 Sftplay - ok
16:59:22.0052 3816 [ 617E29A0B0A2807466560D4C4E338D3E ] Sftredir C:\Windows\system32\DRIVERS\Sftredirlh.sys
16:59:22.0053 3816 Sftredir - ok
16:59:22.0098 3816 [ 8F571F016FA1976F445147E9E6C8AE9B ] Sftvol C:\Windows\system32\DRIVERS\Sftvollh.sys
16:59:22.0099 3816 Sftvol - ok
16:59:22.0114 3816 [ C3CDDD18F43D44AB713CF8C4916F7696 ] sftvsa C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
16:59:22.0118 3816 sftvsa - ok
16:59:22.0158 3816 [ 0298AC45D0EFFFB2DB4BAA7DD186E7BF ] ShellHWDetection C:\Windows\System32\shsvcs.dll
16:59:22.0167 3816 ShellHWDetection - ok
16:59:22.0208 3816 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys
16:59:22.0210 3816 SiSRaid2 - ok
16:59:22.0253 3816 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys
16:59:22.0256 3816 SiSRaid4 - ok
16:59:22.0422 3816 [ 388AE59FE75F1B959DFA0900923C61BB ] Skype C2C Service C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
16:59:22.0513 3816 Skype C2C Service - ok
16:59:22.0568 3816 [ A4FAB5F7818A69DA6E740943CB8F7CA9 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
16:59:22.0573 3816 SkypeUpdate - ok
16:59:22.0619 3816 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
16:59:22.0622 3816 Smb - ok
16:59:22.0667 3816 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
16:59:22.0671 3816 SNMPTRAP - ok
16:59:22.0703 3816 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
16:59:22.0704 3816 spldr - ok
16:59:22.0753 3816 [ F8E1FA03CB70D54A9892AC88B91D1E7B ] Spooler C:\Windows\System32\spoolsv.exe
16:59:22.0766 3816 Spooler - ok
16:59:22.0884 3816 [ 913D843498553A1BC8F8DBAD6358E49F ] sppsvc C:\Windows\system32\sppsvc.exe
16:59:22.0966 3816 sppsvc - ok
16:59:22.0982 3816 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
16:59:22.0987 3816 sppuinotify - ok
16:59:23.0033 3816 [ 2408C0366D96BCDF63E8F1C78E4A29C5 ] srv C:\Windows\system32\DRIVERS\srv.sys
16:59:23.0041 3816 srv - ok
16:59:23.0054 3816 [ 76548F7B818881B47D8D1AE1BE9C11F8 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
16:59:23.0062 3816 srv2 - ok
16:59:23.0103 3816 [ 0C4540311E11664B245A263E1154CEF8 ] SrvHsfHDA C:\Windows\system32\DRIVERS\VSTAZL6.SYS
16:59:23.0110 3816 SrvHsfHDA - ok
16:59:23.0165 3816 [ 02071D207A9858FBE3A48CBFD59C4A04 ] SrvHsfV92 C:\Windows\system32\DRIVERS\VSTDPV6.SYS
16:59:23.0190 3816 SrvHsfV92 - ok
16:59:23.0231 3816 [ 18E40C245DBFAF36FD0134A7EF2DF396 ] SrvHsfWinac C:\Windows\system32\DRIVERS\VSTCNXT6.SYS
16:59:23.0245 3816 SrvHsfWinac - ok
16:59:23.0299 3816 [ 0AF6E19D39C70844C5CAA8FB0183C36E ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
16:59:23.0303 3816 srvnet - ok
16:59:23.0346 3816 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
16:59:23.0353 3816 SSDPSRV - ok
16:59:23.0423 3816 [ 0211AB46B73A2623B86C1CFCB30579AB ] SSPORT C:\Windows\system32\Drivers\SSPORT.sys
16:59:23.0446 3816 SSPORT - ok
16:59:23.0471 3816 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
16:59:23.0476 3816 SstpSvc - ok
16:59:23.0501 3816 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys
16:59:23.0503 3816 stexstor - ok
16:59:23.0552 3816 [ 52D0E33B681BD0F33FDC08812FEE4F7D ] stisvc C:\Windows\System32\wiaservc.dll
16:59:23.0566 3816 stisvc - ok
16:59:23.0590 3816 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
16:59:23.0591 3816 swenum - ok
16:59:23.0642 3816 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
16:59:23.0655 3816 swprv - ok
16:59:23.0719 3816 [ 3A706A967295E16511E40842B1A2761D ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
16:59:23.0726 3816 SynTP - ok
16:59:23.0799 3816 [ 3C1284516A62078FB68F768DE4F1A7BE ] SysMain C:\Windows\system32\sysmain.dll
16:59:23.0831 3816 SysMain - ok
16:59:23.0850 3816 [ 238935C3CF2854886DC7CBB2A0E2CC66 ] TabletInputService C:\Windows\System32\TabSvc.dll
16:59:23.0855 3816 TabletInputService - ok
16:59:23.0891 3816 [ 884264AC597B690C5707C89723BB8E7B ] TapiSrv C:\Windows\System32\tapisrv.dll
16:59:23.0900 3816 TapiSrv - ok
16:59:23.0913 3816 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
16:59:23.0918 3816 TBS - ok
16:59:24.0018 3816 [ 624C5B3AA4C99B3184BB922D9ECE3FF0 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
16:59:24.0048 3816 Tcpip - ok
16:59:24.0087 3816 [ 624C5B3AA4C99B3184BB922D9ECE3FF0 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
16:59:24.0110 3816 TCPIP6 - ok
16:59:24.0138 3816 [ 76D078AF6F587B162D50210F761EB9ED ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
16:59:24.0140 3816 tcpipreg - ok
16:59:24.0172 3816 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
16:59:24.0174 3816 TDPIPE - ok
16:59:24.0217 3816 [ 7518F7BCFD4B308ABC9192BACAF6C970 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
16:59:24.0219 3816 TDTCP - ok
16:59:24.0242 3816 [ 079125C4B17B01FCAEEBCE0BCB290C0F ] tdx C:\Windows\system32\DRIVERS\tdx.sys
16:59:24.0245 3816 tdx - ok
16:59:24.0278 3816 [ C448651339196C0E869A355171875522 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
16:59:24.0281 3816 TermDD - ok
16:59:24.0319 3816 [ 0F05EC2887BFE197AD82A13287D2F404 ] TermService C:\Windows\System32\termsrv.dll
16:59:24.0334 3816 TermService - ok
16:59:24.0346 3816 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
16:59:24.0350 3816 Themes - ok
16:59:24.0376 3816 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
16:59:24.0378 3816 THREADORDER - ok
16:59:24.0405 3816 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
16:59:24.0411 3816 TrkWks - ok
16:59:24.0467 3816 [ 840F7FB849F5887A49BA18C13B2DA920 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
16:59:24.0471 3816 TrustedInstaller - ok
16:59:24.0499 3816 [ 61B96C26131E37B24E93327A0BD1FB95 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
16:59:24.0501 3816 tssecsrv - ok
16:59:24.0539 3816 [ 3836171A2CDF3AF8EF10856DB9835A70 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
16:59:24.0542 3816 tunnel - ok
16:59:24.0576 3816 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys
16:59:24.0579 3816 uagp35 - ok
16:59:24.0613 3816 [ C06E6F4679CEB8F430B90A51D76D8D3C ] udfs C:\Windows\system32\DRIVERS\udfs.sys
16:59:24.0620 3816 udfs - ok
16:59:24.0678 3816 [ AD67771EBC9C249A78BEDB406D4EEA64 ] UI Assistant Service C:\Program Files (x86)\Mobile Partner Manager\AssistantServices.exe
16:59:24.0684 3816 UI Assistant Service - ok
16:59:24.0710 3816 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
16:59:24.0715 3816 UI0Detect - ok
16:59:24.0759 3816 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\DRIVERS\uliagpkx.sys
16:59:24.0762 3816 uliagpkx - ok
16:59:24.0795 3816 [ EAB6C35E62B1B0DB0D1B48B671D3A117 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
16:59:24.0797 3816 umbus - ok
16:59:24.0846 3816 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys
16:59:24.0848 3816 UmPass - ok
16:59:25.0023 3816 [ 7466809E6DA561D60C2F1CE8EDE3C73F ] UNS C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
16:59:25.0061 3816 UNS - ok
16:59:25.0100 3816 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
16:59:25.0110 3816 upnphost - ok
16:59:25.0160 3816 [ 537A4E03D7103C12D42DFD8FFDB5BDC9 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
16:59:25.0163 3816 usbccgp - ok
16:59:25.0224 3816 [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys
16:59:25.0228 3816 usbcir - ok
16:59:25.0247 3816 [ FBB21EBE49F6D560DB37AC25FBC68E66 ] usbehci C:\Windows\system32\drivers\usbehci.sys
16:59:25.0249 3816 usbehci - ok
16:59:25.0304 3816 [ 6B7A8A99C4A459E73C286A6763EA24CC ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
16:59:25.0311 3816 usbhub - ok
16:59:25.0329 3816 [ 8C88AA7617B4CBC2E4BED61D26B33A27 ] usbohci C:\Windows\system32\drivers\usbohci.sys
16:59:25.0331 3816 usbohci - ok
16:59:25.0371 3816 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
16:59:25.0373 3816 usbprint - ok
16:59:25.0413 3816 [ F39983647BC1F3E6100778DDFE9DCE29 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
16:59:25.0445 3816 USBSTOR - ok
16:59:25.0504 3816 [ 0B5B3B2DF3FD1709618ACFA50B8392B0 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
16:59:25.0506 3816 usbuhci - ok
16:59:25.0554 3816 [ 7CB8C573C6E4A2714402CC0A36EAB4FE ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys
16:59:25.0558 3816 usbvideo - ok
16:59:25.0580 3816 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
16:59:25.0584 3816 UxSms - ok
16:59:25.0594 3816 [ 156F6159457D0AA7E59B62681B56EB90 ] VaultSvc C:\Windows\system32\lsass.exe
16:59:25.0597 3816 VaultSvc - ok
16:59:25.0626 3816 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\DRIVERS\vdrvroot.sys
16:59:25.0627 3816 vdrvroot - ok
16:59:25.0670 3816 [ 44D73E0BBC1D3C8981304BA15135C2F2 ] vds C:\Windows\System32\vds.exe
16:59:25.0683 3816 vds - ok
16:59:25.0714 3816 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
16:59:25.0715 3816 vga - ok
16:59:25.0729 3816 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
16:59:25.0730 3816 VgaSave - ok
16:59:25.0763 3816 [ C82E748660F62A242B2DFAC1442F22A4 ] vhdmp C:\Windows\system32\DRIVERS\vhdmp.sys
16:59:25.0768 3816 vhdmp - ok
16:59:25.0784 3816 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\DRIVERS\viaide.sys
16:59:25.0785 3816 viaide - ok
16:59:25.0817 3816 [ 2B1A3DAE2B4E70DBBA822B7A03FBD4A3 ] volmgr C:\Windows\system32\DRIVERS\volmgr.sys
16:59:25.0819 3816 volmgr - ok
16:59:25.0854 3816 [ 99B0CBB569CA79ACAED8C91461D765FB ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
16:59:25.0861 3816 volmgrx - ok
16:59:25.0900 3816 [ 58F82EED8CA24B461441F9C3E4F0BF5C ] volsnap C:\Windows\system32\DRIVERS\volsnap.sys
16:59:25.0906 3816 volsnap - ok
16:59:25.0942 3816 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys
16:59:25.0946 3816 vsmraid - ok
16:59:26.0020 3816 [ 787898BF9FB6D7BD87A36E2D95C899BA ] VSS C:\Windows\system32\vssvc.exe
16:59:26.0050 3816 VSS - ok
16:59:26.0080 3816 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
16:59:26.0082 3816 vwifibus - ok
16:59:26.0279 3816 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
16:59:26.0281 3816 vwififlt - ok
16:59:26.0325 3816 [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
16:59:26.0326 3816 vwifimp - ok
16:59:26.0372 3816 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
16:59:26.0383 3816 W32Time - ok
16:59:26.0419 3816 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys
16:59:26.0421 3816 WacomPen - ok
16:59:26.0490 3816 [ 47CA49400643EFFD3F1C9A27E1D69324 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
16:59:26.0492 3816 WANARP - ok
16:59:26.0498 3816 [ 47CA49400643EFFD3F1C9A27E1D69324 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
16:59:26.0500 3816 Wanarpv6 - ok
16:59:26.0566 3816 [ 5AB1BB85BD8B5089CC5D64200DEDAE68 ] wbengine C:\Windows\system32\wbengine.exe
16:59:26.0594 3816 wbengine - ok
16:59:26.0619 3816 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
16:59:26.0626 3816 WbioSrvc - ok
16:59:26.0664 3816 [ DD1BAE8EBFC653824D29CCF8C9054D68 ] wcncsvc C:\Windows\System32\wcncsvc.dll
16:59:26.0674 3816 wcncsvc - ok
16:59:26.0850 3816 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
16:59:26.0854 3816 WcsPlugInService - ok
16:59:26.0881 3816 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys
16:59:26.0882 3816 Wd - ok
16:59:26.0917 3816 [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
16:59:26.0929 3816 Wdf01000 - ok
16:59:26.0951 3816 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
16:59:26.0957 3816 WdiServiceHost - ok
16:59:26.0963 3816 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
16:59:26.0968 3816 WdiSystemHost - ok
16:59:27.0011 3816 [ 733006127F235BE7C35354EBEE7B9A7B ] WebClient C:\Windows\System32\webclnt.dll
16:59:27.0020 3816 WebClient - ok
16:59:27.0047 3816 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
16:59:27.0055 3816 Wecsvc - ok
16:59:27.0085 3816 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
16:59:27.0091 3816 wercplsupport - ok
16:59:27.0114 3816 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
16:59:27.0119 3816 WerSvc - ok
16:59:27.0144 3816 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
16:59:27.0145 3816 WfpLwf - ok
16:59:27.0170 3816 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
16:59:27.0171 3816 WIMMount - ok
16:59:27.0180 3816 WinHttpAutoProxySvc - ok
16:59:27.0226 3816 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
16:59:27.0231 3816 Winmgmt - ok
16:59:27.0320 3816 [ 41FBB751936B387F9179E7F03A74FE29 ] WinRM C:\Windows\system32\WsmSvc.dll
16:59:27.0356 3816 WinRM - ok
16:59:27.0413 3816 [ 817EAFF5D38674EDD7713B9DFB8E9791 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
16:59:27.0415 3816 WinUsb - ok
16:59:27.0464 3816 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
16:59:27.0482 3816 Wlansvc - ok
16:59:27.0616 3816 [ 98F138897EF4246381D197CB81846D62 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
16:59:27.0654 3816 wlidsvc - ok
16:59:27.0692 3816 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
16:59:27.0694 3816 WmiAcpi - ok
16:59:27.0727 3816 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
16:59:27.0733 3816 wmiApSrv - ok
16:59:27.0760 3816 WMPNetworkSvc - ok
16:59:27.0788 3816 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
16:59:27.0793 3816 WPCSvc - ok
16:59:27.0807 3816 [ 2E57DDF2880A7E52E76F41C7E96D327B ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
16:59:27.0813 3816 WPDBusEnum - ok
16:59:27.0875 3816 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
16:59:27.0877 3816 ws2ifsl - ok
16:59:27.0883 3816 WSearch - ok
16:59:28.0024 3816 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
16:59:28.0071 3816 wuauserv - ok
16:59:28.0096 3816 [ 7CADC74271DD6461C452C271B30BD378 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
16:59:28.0099 3816 WudfPf - ok
16:59:28.0160 3816 [ 3B197AF0FFF08AA66B6B2241CA538D64 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
16:59:28.0164 3816 WUDFRd - ok
16:59:28.0200 3816 [ B551D6637AA0E132C18AC6E504F7B79B ] wudfsvc C:\Windows\System32\WUDFSvc.dll
16:59:28.0205 3816 wudfsvc - ok
16:59:28.0228 3816 [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc C:\Windows\System32\wwansvc.dll
16:59:28.0237 3816 WwanSvc - ok
16:59:28.0277 3816 [ B3EEACF62445E24FBB2CD4B0FB4DB026 ] yukonw7 C:\Windows\system32\DRIVERS\yk62x64.sys
16:59:28.0285 3816 yukonw7 - ok
16:59:28.0330 3816 [ FF5A03A65B68DB7E02A12880399D40D4 ] ZTEusbmdm6k C:\Windows\system32\DRIVERS\ZTEusbmdm6k.sys
16:59:28.0333 3816 ZTEusbmdm6k - ok
16:59:28.0356 3816 [ FF5A03A65B68DB7E02A12880399D40D4 ] ZTEusbnmea C:\Windows\system32\DRIVERS\ZTEusbnmea.sys
16:59:28.0360 3816 ZTEusbnmea - ok
16:59:28.0377 3816 [ FF5A03A65B68DB7E02A12880399D40D4 ] ZTEusbser6k C:\Windows\system32\DRIVERS\ZTEusbser6k.sys
16:59:28.0381 3816 ZTEusbser6k - ok
16:59:28.0414 3816 ================ Scan global ===============================
16:59:28.0447 3816 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
16:59:28.0484 3816 [ 0CB6EBF4B461A6043353C570BD72A1E1 ] C:\Windows\system32\winsrv.dll
16:59:28.0499 3816 [ 0CB6EBF4B461A6043353C570BD72A1E1 ] C:\Windows\system32\winsrv.dll
16:59:28.0528 3816 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
16:59:28.0582 3816 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
16:59:28.0591 3816 [Global] - ok
16:59:28.0592 3816 ================ Scan MBR ==================================
16:59:28.0606 3816 [ 3A50455F156A857E600FDD383C7EC1BD ] \Device\Harddisk0\DR0
16:59:28.0872 3816 \Device\Harddisk0\DR0 - ok
16:59:28.0879 3816 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1
16:59:28.0889 3816 \Device\Harddisk1\DR1 - ok
16:59:28.0890 3816 ================ Scan VBR ==================================
16:59:28.0894 3816 [ 83B01316D557BD03E41DCC3CB50E3E2F ] \Device\Harddisk0\DR0\Partition1
16:59:28.0897 3816 \Device\Harddisk0\DR0\Partition1 - ok
16:59:28.0910 3816 [ 7F1A1AAE4A70C010F275422ED00DF47C ] \Device\Harddisk0\DR0\Partition2
16:59:28.0912 3816 \Device\Harddisk0\DR0\Partition2 - ok
16:59:28.0947 3816 [ 1A79357ADFDC31E35FD3AFC1B5FC3AB9 ] \Device\Harddisk0\DR0\Partition3
16:59:28.0950 3816 \Device\Harddisk0\DR0\Partition3 - ok
16:59:28.0970 3816 [ 728481E088755EE35B5AA4C1383E14CC ] \Device\Harddisk0\DR0\Partition4
16:59:28.0971 3816 \Device\Harddisk0\DR0\Partition4 - ok
16:59:28.0978 3816 [ F0D588E22B730AB507608502FADD14DB ] \Device\Harddisk1\DR1\Partition1
16:59:28.0982 3816 \Device\Harddisk1\DR1\Partition1 - ok
16:59:28.0983 3816 ============================================================
16:59:28.0983 3816 Scan finished
16:59:28.0983 3816 ============================================================
16:59:29.0000 1076 Detected object count: 0
16:59:29.0000 1076 Actual detected object count: 0

#4 rgjneal

rgjneal
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:07:10 PM

Posted 12 December 2012 - 05:53 AM

By the way, I forgot to say thanks for the prompt reply.

Here are the rest of the logs. There are two Malwarebytes logs, I'm not sure which you need, so I'll paste both:


Malwarebytes log #1:


Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org

Database version: v2012.12.11.08

Windows 7 x64 NTFS
Internet Explorer 8.0.7600.16385
User :: USER-HP [administrator]

11.12.2012 17:06:33
mbam-log-2012-12-11 (17-06-33).txt

Scan type: Full scan (C:\|D:\|Q:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 641408
Time elapsed: 3 hour(s), 4 minute(s), 35 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 68
HKCR\AppID\{0D82ACD6-A652-4496-A298-2BDE705F4227} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKCR\AppID\{7025E484-D4B0-441a-9F0B-69063BD679CE} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKCR\AppID\{8258B35C-05B8-4c0e-9525-9BCCC70F8F2D} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKCR\AppID\{A89256AD-EC17-4a83-BEF5-4B8BC4F39306} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKCR\CLSID\{396CFC12-932D-496b-A0A8-5D7201E105E1} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\TypeLib\{573F4ABB-A1A2-44ED-9BA9-A8DAD40AAC46} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\Interface\{71E02280-5212-45C3-B174-4D5A35DA254F} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.MozillaNvgtnTrpr.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.MozillaNvgtnTrpr (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\CLSID\{74C22317-5B90-471f-9AD2-FEC049870A16} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.Scopes.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.Scopes (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\Typelib\{ACC62306-9A63-4864-BD2F-C8825D2D7EA6} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKCR\Interface\{21BA420E-161C-413A-B21E-4E42AE1F4226} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKCR\Typelib\{CDCA70D8-C6A6-49EE-9BED-7429D6C477A2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\Interface\{8AD9AD05-36BE-4E40-BA62-5422EB0D02FB} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\Typelib\{D136987F-E1C4-4CCC-A220-893DF03EC5DF} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{4B8C28A7-A9BC-45F8-990D-21499EED643C} (Adware.QuestScan) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A078F691-9C07-4AF2-BF43-35E79EECF8B7} (Adware.Softomate) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{89F88394-3828-4d03-A0CF-8203604C3DA6} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D4233F04-1789-483c-A137-731E8F113DD5} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKCR\HBLiteAx.Info (Adware.HotBar) -> Quarantined and deleted successfully.
HKCR\HBLiteAx.Info.1 (Adware.HotBar) -> Quarantined and deleted successfully.
HKCR\HBLiteAX.UserProfiles (Adware.HotBar) -> Quarantined and deleted successfully.
HKCR\HBLiteAX.UserProfiles.1 (Adware.HotBar) -> Quarantined and deleted successfully.
HKCR\ShopperReports.AsyncReporter (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.AsyncReporter.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.Dwnldr (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.Dwnldr.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.HbAx (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.HbAx.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.HbGuru (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.HbGuru.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.HbInfoBand (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.HbInfoBand.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.IEButton (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.IEButton.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.IEButtonA (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.IEButtonA.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.MozillaPSExecuter (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.MozillaPSExecuter.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.ReportData (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.ReportData.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.Reporter (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.Reporter.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.RprtCtrl (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.RprtCtrl.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.Stock (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.Stock.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.TriggerImmidiate (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.TriggerImmidiate.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.TriggerImmidiateOrRandomTS (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.TriggerImmidiateOrRandomTS.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.TriggerOnceInDay (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\ShopperReports.TriggerOnceInDay.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCR\AppID\BRNstIE.DLL (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKCR\AppID\CmndFF.DLL (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKCR\AppID\mozillaps.dll (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKCR\AppID\Pltfrm.DLL (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKCU\Software\hblitesa (Adware.HotBar) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\HBLite (Adware.HotBar) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\QUESTSCAN (Adware.QuestScan) -> Quarantined and deleted successfully.

Registry Values Detected: 5
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform|ShopperReports 3.1.70.0 (Adware.HotBar) -> Data: -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform|SRS_IT_E8790675B676545331AB90 (Malware.Trace) -> Data: -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Mozilla\Firefox\extensions|ShopperReports@ShopperReports.com (ShopperReports) -> Data: C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Mozilla\Firefox\extensions|HBLite@HBLite.com (Adware.HotBar) -> Data: C:\Program Files (x86)\HBLite\bin\11.0.384.0\firefox\extensions -> Quarantined and deleted successfully.
HKLM\SOFTWARE\QuestScan|DllPath (Adware.QuestScan) -> Data: C:\Program Files (x86)\QuestScan\questscan.dll -> Quarantined and deleted successfully.

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 25
C:\ProgramData\2ACA5CC3-0F83-453D-A079-1076FE1A8B65 (Adware.Seekmo) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Roaming\HBLite (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\ProgramData\HBLiteSA (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\User\AppData\Roaming\ShopperReports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HBLite (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HBLite\bin (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HBLite\bin\11.0.384.0 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HBLite\bin\11.0.384.0\firefox (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HBLite\bin\11.0.384.0\firefox\extensions (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HBLite\bin\11.0.384.0\firefox\extensions\plugins (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3\bin (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0 (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\chrome (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\chrome\content (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\components (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotbar (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ShopperReports (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096} (Adware.QuestScan) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096}\chrome (Adware.QuestScan) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096}\defaults (Adware.QuestScan) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096}\defaults\preferences (Adware.QuestScan) -> Quarantined and deleted successfully.

Files Detected: 27
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\CmndFF.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\$Recycle.Bin\S-1-5-21-645434065-6745951-1797684387-1000\$RYZ8JJO\XF-AdobeMasterCS3-KG.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Users\User\Downloads\Codec-C.exe (Affiliate.Downloader) -> Quarantined and deleted successfully.
C:\Users\User\Downloads\Codec-V.exe (Affiliate.Downloader) -> Quarantined and deleted successfully.
C:\ProgramData\HBLiteSA\HBLiteSA.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\ProgramData\HBLiteSA\HBLiteSAAbout.mht (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\ProgramData\HBLiteSA\HBLiteSAau.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\ProgramData\HBLiteSA\HBLiteSAEULA.mht (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\ProgramData\HBLiteSA\HBLiteSA_kyf.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Program Files (x86)\HBLite\bin\11.0.384.0\firefox\extensions\install.rdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\link.ico (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\chrome.manifest (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\install.rdf (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\chrome\content\infopane.js (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\chrome\content\InfoPane.xul (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\components\BrowserExtensionFF.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\components\BrowserExtensionFF.xpt (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotbar\About Hotbar.lnk (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotbar\Hotbar Customer Support Center.lnk (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotbar\Hotbar Uninstall Instructions.lnk (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ShopperReports\About Us.lnk (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ShopperReports\Customer Support.lnk (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ShopperReports\ShopperReports Uninstall Instructions.lnk (Adware.ShopperReports) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096}\chrome.manifest (Adware.QuestScan) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096}\install.rdf (Adware.QuestScan) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096}\chrome\questscan.jar (Adware.QuestScan) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096}\defaults\preferences\prefs.js (Adware.QuestScan) -> Quarantined and deleted successfully.

(end)


Malwarebytes log #2:


Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org

Database version: v2012.12.11.08

Windows 7 x64 NTFS
Internet Explorer 8.0.7600.16385
User :: USER-HP [administrator]

11.12.2012 17:06:33
mbam-log-2012-12-12 (03-58-32).txt

Scan type: Full scan (C:\|D:\|Q:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 641408
Time elapsed: 3 hour(s), 4 minute(s), 35 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 68
HKCR\AppID\{0D82ACD6-A652-4496-A298-2BDE705F4227} (Adware.ClickPotato) -> No action taken.
HKCR\AppID\{7025E484-D4B0-441a-9F0B-69063BD679CE} (Adware.ClickPotato) -> No action taken.
HKCR\AppID\{8258B35C-05B8-4c0e-9525-9BCCC70F8F2D} (Adware.ClickPotato) -> No action taken.
HKCR\AppID\{A89256AD-EC17-4a83-BEF5-4B8BC4F39306} (Adware.ClickPotato) -> No action taken.
HKCR\CLSID\{396CFC12-932D-496b-A0A8-5D7201E105E1} (Adware.ShopperReports) -> No action taken.
HKCR\TypeLib\{573F4ABB-A1A2-44ED-9BA9-A8DAD40AAC46} (Adware.ShopperReports) -> No action taken.
HKCR\Interface\{71E02280-5212-45C3-B174-4D5A35DA254F} (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.MozillaNvgtnTrpr.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.MozillaNvgtnTrpr (Adware.ShopperReports) -> No action taken.
HKCR\CLSID\{74C22317-5B90-471f-9AD2-FEC049870A16} (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.Scopes.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.Scopes (Adware.ShopperReports) -> No action taken.
HKCR\Typelib\{ACC62306-9A63-4864-BD2F-C8825D2D7EA6} (Adware.ClickPotato) -> No action taken.
HKCR\Interface\{21BA420E-161C-413A-B21E-4E42AE1F4226} (Adware.ClickPotato) -> No action taken.
HKCR\Typelib\{CDCA70D8-C6A6-49EE-9BED-7429D6C477A2} (Adware.ShopperReports) -> No action taken.
HKCR\Interface\{8AD9AD05-36BE-4E40-BA62-5422EB0D02FB} (Adware.ShopperReports) -> No action taken.
HKCR\Typelib\{D136987F-E1C4-4CCC-A220-893DF03EC5DF} (Adware.ShopperReports) -> No action taken.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{4B8C28A7-A9BC-45F8-990D-21499EED643C} (Adware.QuestScan) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> No action taken.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A078F691-9C07-4AF2-BF43-35E79EECF8B7} (Adware.Softomate) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{89F88394-3828-4d03-A0CF-8203604C3DA6} (Adware.Hotbar) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D4233F04-1789-483c-A137-731E8F113DD5} (Adware.Hotbar) -> No action taken.
HKCR\HBLiteAx.Info (Adware.HotBar) -> No action taken.
HKCR\HBLiteAx.Info.1 (Adware.HotBar) -> No action taken.
HKCR\HBLiteAX.UserProfiles (Adware.HotBar) -> No action taken.
HKCR\HBLiteAX.UserProfiles.1 (Adware.HotBar) -> No action taken.
HKCR\ShopperReports.AsyncReporter (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.AsyncReporter.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.Dwnldr (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.Dwnldr.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.HbAx (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.HbAx.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.HbGuru (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.HbGuru.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.HbInfoBand (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.HbInfoBand.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.IEButton (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.IEButton.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.IEButtonA (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.IEButtonA.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.MozillaPSExecuter (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.MozillaPSExecuter.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.ReportData (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.ReportData.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.Reporter (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.Reporter.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.RprtCtrl (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.RprtCtrl.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.Stock (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.Stock.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.TriggerImmidiate (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.TriggerImmidiate.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.TriggerImmidiateOrRandomTS (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.TriggerImmidiateOrRandomTS.1 (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.TriggerOnceInDay (Adware.ShopperReports) -> No action taken.
HKCR\ShopperReports.TriggerOnceInDay.1 (Adware.ShopperReports) -> No action taken.
HKCR\AppID\BRNstIE.DLL (Adware.ClickPotato) -> No action taken.
HKCR\AppID\CmndFF.DLL (Adware.ClickPotato) -> No action taken.
HKCR\AppID\mozillaps.dll (Adware.ClickPotato) -> No action taken.
HKCR\AppID\Pltfrm.DLL (Adware.ClickPotato) -> No action taken.
HKCU\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> No action taken.
HKCU\Software\hblitesa (Adware.HotBar) -> No action taken.
HKLM\SOFTWARE\HBLite (Adware.HotBar) -> No action taken.
HKLM\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> No action taken.
HKLM\SOFTWARE\QUESTSCAN (Adware.QuestScan) -> No action taken.

Registry Values Detected: 5
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform|ShopperReports 3.1.70.0 (Adware.HotBar) -> Data: -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform|SRS_IT_E8790675B676545331AB90 (Malware.Trace) -> Data: -> No action taken.
HKLM\SOFTWARE\Mozilla\Firefox\extensions|ShopperReports@ShopperReports.com (ShopperReports) -> Data: C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions -> No action taken.
HKLM\SOFTWARE\Mozilla\Firefox\extensions|HBLite@HBLite.com (Adware.HotBar) -> Data: C:\Program Files (x86)\HBLite\bin\11.0.384.0\firefox\extensions -> No action taken.
HKLM\SOFTWARE\QuestScan|DllPath (Adware.QuestScan) -> Data: C:\Program Files (x86)\QuestScan\questscan.dll -> No action taken.

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 25
C:\ProgramData\2ACA5CC3-0F83-453D-A079-1076FE1A8B65 (Adware.Seekmo) -> No action taken.
C:\Users\User\AppData\Roaming\HBLite (Adware.Hotbar) -> No action taken.
C:\ProgramData\HBLiteSA (Adware.Hotbar) -> No action taken.
C:\Users\User\AppData\Roaming\ShopperReports3 (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\HBLite (Adware.Hotbar) -> No action taken.
C:\Program Files (x86)\HBLite\bin (Adware.Hotbar) -> No action taken.
C:\Program Files (x86)\HBLite\bin\11.0.384.0 (Adware.Hotbar) -> No action taken.
C:\Program Files (x86)\HBLite\bin\11.0.384.0\firefox (Adware.Hotbar) -> No action taken.
C:\Program Files (x86)\HBLite\bin\11.0.384.0\firefox\extensions (Adware.Hotbar) -> No action taken.
C:\Program Files (x86)\HBLite\bin\11.0.384.0\firefox\extensions\plugins (Adware.Hotbar) -> No action taken.
C:\Program Files (x86)\ShopperReports3 (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\ShopperReports3\bin (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0 (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\chrome (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\chrome\content (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\components (Adware.ShopperReports) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotbar (Adware.Hotbar) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ShopperReports (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096} (Adware.QuestScan) -> No action taken.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096}\chrome (Adware.QuestScan) -> No action taken.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096}\defaults (Adware.QuestScan) -> No action taken.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096}\defaults\preferences (Adware.QuestScan) -> No action taken.

Files Detected: 27
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\CmndFF.dll (Adware.ShopperReports) -> No action taken.
C:\$Recycle.Bin\S-1-5-21-645434065-6745951-1797684387-1000\$RYZ8JJO\XF-AdobeMasterCS3-KG.exe (Trojan.Downloader) -> No action taken.
C:\Users\User\Downloads\Codec-C.exe (Affiliate.Downloader) -> No action taken.
C:\Users\User\Downloads\Codec-V.exe (Affiliate.Downloader) -> No action taken.
C:\ProgramData\HBLiteSA\HBLiteSA.dat (Adware.Hotbar) -> No action taken.
C:\ProgramData\HBLiteSA\HBLiteSAAbout.mht (Adware.Hotbar) -> No action taken.
C:\ProgramData\HBLiteSA\HBLiteSAau.dat (Adware.Hotbar) -> No action taken.
C:\ProgramData\HBLiteSA\HBLiteSAEULA.mht (Adware.Hotbar) -> No action taken.
C:\ProgramData\HBLiteSA\HBLiteSA_kyf.dat (Adware.Hotbar) -> No action taken.
C:\Program Files (x86)\HBLite\bin\11.0.384.0\firefox\extensions\install.rdf (Adware.Hotbar) -> No action taken.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\link.ico (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\chrome.manifest (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\install.rdf (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\chrome\content\infopane.js (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\chrome\content\InfoPane.xul (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\components\BrowserExtensionFF.dll (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\ShopperReports3\bin\3.1.70.0\firefox\firefoxtoolbar\extensions\components\BrowserExtensionFF.xpt (Adware.ShopperReports) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotbar\About Hotbar.lnk (Adware.Hotbar) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotbar\Hotbar Customer Support Center.lnk (Adware.Hotbar) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotbar\Hotbar Uninstall Instructions.lnk (Adware.Hotbar) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ShopperReports\About Us.lnk (Adware.ShopperReports) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ShopperReports\Customer Support.lnk (Adware.ShopperReports) -> No action taken.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ShopperReports\ShopperReports Uninstall Instructions.lnk (Adware.ShopperReports) -> No action taken.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096}\chrome.manifest (Adware.QuestScan) -> No action taken.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096}\install.rdf (Adware.QuestScan) -> No action taken.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096}\chrome\questscan.jar (Adware.QuestScan) -> No action taken.
C:\Program Files (x86)\Mozilla Firefox\extensions\{F0E1168A-B4B5-484C-B77E-0D28E6B64096}\defaults\preferences\prefs.js (Adware.QuestScan) -> No action taken.

(end)


AdwCleaner log:


# AdwCleaner v2.100 - Datei am 12/12/2012 um 11:29:52 erstellt
# Aktualisiert am 09/12/2012 von Xplode
# Betriebssystem : Windows 7 Home Premium (64 bits)
# Benutzer : User - USER-HP
# Bootmodus : Normal
# Ausgeführt unter : C:\Users\User\Desktop\adwcleaner.exe
# Option [Löschen]


**** [Dienste] ****


***** [Dateien / Ordner] *****

Datei Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnk
Ordner Gelöscht : C:\Program Files (x86)\Ask.com
Ordner Gelöscht : C:\ProgramData\InstallMate
Ordner Gelöscht : C:\ProgramData\Premium
Ordner Gelöscht : C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpnbdefcbnoefmmcpelplabbkfmfhlho
Ordner Gelöscht : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}

***** [Registrierungsdatenbank] *****

Schlüssel Gelöscht : HKCU\Software\APN
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\AskToolbar
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\ShopperReports3
Schlüssel Gelöscht : HKCU\Software\Ask.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{00000000-6E41-4FD3-8538-502F5495E5FC}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKLM\Software\APN
Schlüssel Gelöscht : HKLM\Software\AskToolbar
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{453DB0C5-F41C-4D97-8DD6-CC72ECD5F699}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{4AFC07D0-59BB-46B8-B097-1A46E88EEF71}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{6427058B-217C-4C7F-A6CE-C7934C0BDCEB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{6511CE4C-4722-40D0-AD3D-4AFA2F50978A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BEC9B38-BF39-4899-806E-A1C5DFEB60A2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{AEBF09E2-0C15-43C8-99BF-928C645D98A0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B86D82BF-D39F-439A-A07C-43EDDC6F6EA6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DA6305B9-0869-4235-8C1D-533A65E639E5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E6961C59-CFCE-4CCD-B794-BC78DB98413A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jpnbdefcbnoefmmcpelplabbkfmfhlho
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Crossrider
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{21BA420E-161C-413A-B21E-4E42AE1F4226}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{453DB0C5-F41C-4D97-8DD6-CC72ECD5F699}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4AFC07D0-59BB-46B8-B097-1A46E88EEF71}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{6427058B-217C-4C7F-A6CE-C7934C0BDCEB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{6511CE4C-4722-40D0-AD3D-4AFA2F50978A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{71E02280-5212-45C3-B174-4D5A35DA254F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8AD9AD05-36BE-4E40-BA62-5422EB0D02FB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BEC9B38-BF39-4899-806E-A1C5DFEB60A2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{AEBF09E2-0C15-43C8-99BF-928C645D98A0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B86D82BF-D39F-439A-A07C-43EDDC6F6EA6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DA6305B9-0869-4235-8C1D-533A65E639E5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E6961C59-CFCE-4CCD-B794-BC78DB98413A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Schlüssel Gelöscht : HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes\{4B8C28A7-A9BC-45F8-990D-21499EED643C}
Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\New Windows\Allow [*.crossrider.com]
Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnUpdater]
Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]

***** [Internet Browser] *****

-\\ Internet Explorer v8.0.7600.17006

Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://go.microsoft.com/fwlink/?LinkId=56626&homepage=hxxp://de.ask.com/?l=dis&o=15003 --> hxxp://www.google.com

-\\ Mozilla Firefox v15.0.1 (en-US)

-\\ Google Chrome v23.0.1271.95

*************************

AdwCleaner[S1].txt - [7225 octets] - [12/12/2012 11:29:52]

########## EOF - C:\AdwCleaner[S1].txt - [7285 octets] ##########



RKreport[2]:


RogueKiller V8.4.0 [Dec 12 2012] durch Tigzy
mail: tigzyRK<at>gmail<dot>com

mail : tigzyRK<at>gmail<dot>com
Kommentare : http://www.geekstogo.com/forum/files/file/413-roguekiller/
Webseite : http://tigzy.geekstogo.com/roguekiller.php
Blog : http://tigzyrk.blogspot.com/

Betriebssystem : Windows 7 (6.1.7600 ) 64 bits version
Gestartet in : Normaler Modus
Benutzer : User [Admin Rechte]
Funktion : Entfernen -- Datum : 12/12/2012 11:41:40

¤¤¤ Böswillige Prozesse : 0 ¤¤¤

¤¤¤ Registry-Einträge : 8 ¤¤¤
[RUN][ROGUE ST] HKLM\[...]\Run : HPWirelessAssistant (C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe /hidden) -> GELÖSCHT
[DNS] HKLM\[...]\ControlSet001\Services\Interfaces\{1CF57E13-5C97-49B7-BB7D-2D892FE0DCE4} : NameServer (62.109.123.7 213.191.92.86) -> NICHT ENTFERNT, DNS REPARIEREN BENUTZEN
[HJPOL] HKCU\[...]\System : DisableTaskMgr (0) -> GELÖSCHT
[HJ] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> ERSETZT (2)
[HJ] HKLM\[...]\System : EnableLUA (0) -> ERSETZT (1)
[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> ERSETZT (0)
[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> ERSETZT (0)
[HJ INPROC][ZeroAccess] HKCR\[...]\InprocServer32 : (C:\Users\User\AppData\Local\{867a8038-20c6-5611-0b37-1dd75994ce9e}\n.) -> ERSETZT (C:\Windows\system32\shell32.dll)

¤¤¤ Bestimmte Dateien / Ordner: ¤¤¤
[ZeroAccess][FOLDER] ROOT : C:\Windows\Installer\{867a8038-20c6-5611-0b37-1dd75994ce9e}\U --> ENTFERNT
[Del.Parent][FILE] 00000004.@ : C:\Windows\Installer\{867a8038-20c6-5611-0b37-1dd75994ce9e}\L\00000004.@ --> ENTFERNT
[Del.Parent][FILE] 201d3dde : C:\Windows\Installer\{867a8038-20c6-5611-0b37-1dd75994ce9e}\L\201d3dde --> ENTFERNT
[ZeroAccess][FOLDER] ROOT : C:\Windows\Installer\{867a8038-20c6-5611-0b37-1dd75994ce9e}\L --> ENTFERNT

¤¤¤ Treiber : [NICHT GELADEN] ¤¤¤

¤¤¤ Infektion : ZeroAccess ¤¤¤

¤¤¤ Hosts-Datei: ¤¤¤
--> C:\Windows\system32\drivers\etc\hosts



¤¤¤ MBR überprüfen: ¤¤¤

+++++ PhysicalDrive0: TOSHIBA MK5065GSX +++++
--- User ---
[MBR] 661ebea9be7f98372c1483d79211a54c
[BSP] 0f785031e87dff7d1a2980229dd085ff : Windows Vista/7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 199 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 409600 | Size: 460437 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 943384576 | Size: 16199 Mo
3 - [XXXXXX] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 976560128 | Size: 103 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: SD Card +++++
--- User ---
[MBR] 0f12b13c26381ecbb407ef9b41215ed0
[BSP] 469ccb6bf97613fcde50be4f1fa880fc : MBR Code unknown
Partition table:
0 - [XXXXXX] FAT32 (0x0b) [VISIBLE] Offset (sectors): 8192 | Size: 7672 Mo
User = LL1 ... OK!
Error reading LL2 MBR!

Abgeschlossen : << RKreport[2]_D_12122012_02d1141.txt >>
RKreport[1]_S_12122012_02d1139.txt ; RKreport[2]_D_12122012_02d1141.txt

#5 rgjneal

rgjneal
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:07:10 PM

Posted 12 December 2012 - 05:55 AM

RogueKiller took me to the following webpage concerning ZeroAccess when it was finished:

http://tigzyrk.blogspot.de/2011/09/rootkit-zeroaccess-max.html

#6 rgjneal

rgjneal
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:07:10 PM

Posted 12 December 2012 - 06:42 AM

But I should add: I didn't take any other action than that which you outlined.

#7 Gunto

Gunto

    Bleepin' Reject Phoenix


  • Malware Response Team
  • 1,284 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:North Las Vegas, Nevada, USA
  • Local time:11:10 AM

Posted 12 December 2012 - 07:02 AM

Hi,

Logs are looking pretty good. Are you still having the same problems or any more symptoms?

In the future, please choose English for the language in the programs I instruct you to use. I can only speak/read English. :) (I had to put a few words from your logs into a translator :wacko:)

ZA can be a bit difficult to remove, but I'll try my absolute best to remove as much as I can before I deem it necessary to use the malware log forum.

SUPERAntiSpyware

I need you to run a scan with SUPERAntiSpyware.

  • Download SAS from here, and save it to your desktop.
  • Double click the installer to start the installation. If you do not want to start the trial of the full version, please decline, and feel free to uncheck options to install external toolbars/software, unless you want them. Otherwise, follow the prompts and let the program install.
  • Once the program is done installing and updating, tick the Complete Scan option on the interface, and press the big Scan your Computer... button. Ensure that the options Activate Scan Boost™ > Low boost and Scan inside .ZIP archives are selected and Start Complete Scan.
  • After scanning, be sure to remove all detected threats if any were detected. If asked to reboot to remove threats, do so immediately.
  • Once finished, return to the main interface, go to View Scan Logs and view the newest log. Copy and paste it into your reply.

ESET Online Scanner

I need you to run a scan with ESET Online Scanner.

  • Download the scanner from here, and save it to your desktop.
  • Double click the file to install the program. Once it's done, accept the terms of use and click Start. Be sure the following settings are checked before beginning:
    Scan archives
    Remove found threats
    Scan potentially unwanted applications
    Scan for potentially unsafe applications
    Enable Anti-Stealth technology
  • Once the scan is done, if anything was found, click List of found threats, and then Export to text file..., and save the log to your desktop.
  • Click << Back, and then Finish. If you have to reboot, do so immediately.
  • After ESET finishes scanning and removing threats, copy and paste the log into your reply.

Junkware Removal Tool

I need you to run a scan with Junkware Removal Tool.

  • Download JRT from here, and save it to your desktop.
  • Double click the file to open it, and hit any key as per the instructions of the popped up window.
  • Once the scan is done, copy and paste the contents of the resulting log into your reply.

Please tell me how the PC is running after these steps.

Gunto

Beautiful avatar by Plumbeck!

 

Bury me in honor; when I'm dead and hit the ground, a love back home, it unfolds...


#8 rgjneal

rgjneal
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:07:10 PM

Posted 13 December 2012 - 01:35 PM

Thanks for that, and sorry about the German. I didn't choose any language for those apps, maybe it just takes it from my Windows, which is a German one. Don't think there's any German in the rest.

Talking of which, the next logs:


SuperAntiSpyware:


SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 12/12/2012 at 03:59 PM

Application Version : 5.6.1014

Core Rules Database Version : 9726
Trace Rules Database Version: 7538

Scan type : Complete Scan
Total Scan Time : 02:49:38

Operating System Information
Windows 7 Home Premium 64-bit (Build 6.01.7600)
UAC Off - Administrator

Memory items scanned : 807
Memory threats detected : 0
Registry items scanned : 74324
Registry threats detected : 0
File items scanned : 175583
File threats detected : 905

Adware.Tracking Cookie
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@112.2o7[1].txt [ /112.2o7 ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@ad.ad-srv[2].txt [ /ad.ad-srv ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@ads.ad4game[2].txt [ /ads.ad4game ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@content.yieldmanager[1].txt [ /content.yieldmanager ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@doubleclick[2].txt [ /doubleclick ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@fastclick[1].txt [ /fastclick ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@imrworldwide[2].txt [ /imrworldwide ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@kantarmedia[2].txt [ /kantarmedia ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@media6degrees[1].txt [ /media6degrees ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@mediabrandsww[1].txt [ /mediabrandsww ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@tracking.quisma[2].txt [ /tracking.quisma ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@user.lucidmedia[1].txt [ /user.lucidmedia ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@www.zanox-affiliate[1].txt [ /www.zanox-affiliate ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@zanox-affiliate[1].txt [ /zanox-affiliate ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@zanox[2].txt [ /zanox ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\84OB1DF5.txt [ /serving-sys.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\0DUITJEW.txt [ /rotator.hadj7.adjuggler.net ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\URJYTSVB.txt [ /invitemedia.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\91XBIELV.txt [ /adbrite.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\WIQDA4LC.txt [ /adnetwork.net ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\A72YRK8V.txt [ /histats.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\2FWWNQI3.txt [ /traffictrack.de ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\0M5TX6K3.txt [ /2o7.net ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\AD02CH4C.txt [ /adtech.de ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\7FQJ6G1F.txt [ /webmasterplan.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\OVHQ1PNC.txt [ /ru4.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\ENU4WO94.txt [ /apmebf.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\I920DEIG.txt [ /tracking.mlsat02.de ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\5DUTGEO1.txt [ /ad.yieldmanager.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\1ZPPBYUT.txt [ /www.zanox-affiliate.de ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\O9TERQIH.txt [ /revsci.net ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\1N3RXA1A.txt [ /www.usenext.de ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\VIVRYS0J.txt [ /media6degrees.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\8VMNHT6D.txt [ /ad.dyntracker.de ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\YPAVYO6P.txt [ /ad2.adfarm1.adition.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\D5X9EYXJ.txt [ /casalemedia.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\UEEAS6P4.txt [ /ads.adk2.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\RVEIK5S1.txt [ /atdmt.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\HJ9CPVG0.txt [ /zanox-affiliate.de ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\FC0C5379.txt [ /adform.net ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\0OGS6G0E.txt [ /ads.us.e-planning.net ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\7OPADIV2.txt [ /adprudence.rotator.hadj7.adjuggler.net ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\NJHJSOY7.txt [ /lucidmedia.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\OSNN2L3S.txt [ /ad3.adfarm1.adition.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\TVTWNXGZ.txt [ /ad.ad-srv.net ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\WRK0528T.txt [ /tradedoubler.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\BE841O9O.txt [ /at.atwola.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\FGDM4TGF.txt [ /bs.serving-sys.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\41EAGNK5.txt [ /ad.360yield.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\3H568VE7.txt [ /zedo.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\6LVTGN56.txt [ /doubleclick.net ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\1YCCWKZ6.txt [ /track.adform.net ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\5UGYZGWS.txt [ /mediaplex.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\YZ7WFGBM.txt [ /adfarm1.adition.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\QLLCCOU5.txt [ /ad4.adfarm1.adition.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\REUWBZPI.txt [ /microsoftwlsearchcrm.112.2o7.net ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\RR0304E1.txt [ /c.atdmt.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\C2M5BXXH.txt [ /zanox.com ]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\DVAWW6TI.txt [ /adserver.zenoviaexchange.com ]
C:\USERS\USER\AppData\Roaming\Microsoft\Windows\Cookies\Low\O529KGZD.txt [ Cookie:user@atdmt.com/ ]
C:\USERS\USER\Cookies\84OB1DF5.txt [ Cookie:user@serving-sys.com/ ]
C:\USERS\USER\Cookies\0DUITJEW.txt [ Cookie:user@rotator.hadj7.adjuggler.net/ ]
C:\USERS\USER\Cookies\91XBIELV.txt [ Cookie:user@adbrite.com/ ]
C:\USERS\USER\Cookies\WIQDA4LC.txt [ Cookie:user@adnetwork.net/ ]
C:\USERS\USER\Cookies\A72YRK8V.txt [ Cookie:user@histats.com/ ]
C:\USERS\USER\Cookies\2FWWNQI3.txt [ Cookie:user@traffictrack.de/ ]
C:\USERS\USER\Cookies\0M5TX6K3.txt [ Cookie:user@2o7.net/ ]
C:\USERS\USER\Cookies\AD02CH4C.txt [ Cookie:user@adtech.de/ ]
C:\USERS\USER\Cookies\7FQJ6G1F.txt [ Cookie:user@webmasterplan.com/ ]
C:\USERS\USER\Cookies\OVHQ1PNC.txt [ Cookie:user@ru4.com/ ]
C:\USERS\USER\Cookies\ENU4WO94.txt [ Cookie:user@apmebf.com/ ]
C:\USERS\USER\Cookies\I920DEIG.txt [ Cookie:user@tracking.mlsat02.de/tmobile/ ]
C:\USERS\USER\Cookies\1ZPPBYUT.txt [ Cookie:user@www.zanox-affiliate.de/ ]
C:\USERS\USER\Cookies\O9TERQIH.txt [ Cookie:user@revsci.net/ ]
C:\USERS\USER\Cookies\1N3RXA1A.txt [ Cookie:user@www.usenext.de/ ]
C:\USERS\USER\Cookies\VIVRYS0J.txt [ Cookie:user@media6degrees.com/ ]
C:\USERS\USER\Cookies\8VMNHT6D.txt [ Cookie:user@ad.dyntracker.de/ ]
C:\USERS\USER\Cookies\YPAVYO6P.txt [ Cookie:user@ad2.adfarm1.adition.com/ ]
C:\USERS\USER\Cookies\D5X9EYXJ.txt [ Cookie:user@casalemedia.com/ ]
C:\USERS\USER\Cookies\RVEIK5S1.txt [ Cookie:user@atdmt.com/ ]
C:\USERS\USER\Cookies\FC0C5379.txt [ Cookie:user@adform.net/ ]
C:\USERS\USER\Cookies\7OPADIV2.txt [ Cookie:user@adprudence.rotator.hadj7.adjuggler.net/ ]
C:\USERS\USER\Cookies\NJHJSOY7.txt [ Cookie:user@lucidmedia.com/ ]
C:\USERS\USER\Cookies\OSNN2L3S.txt [ Cookie:user@ad3.adfarm1.adition.com/ ]
C:\USERS\USER\Cookies\WRK0528T.txt [ Cookie:user@tradedoubler.com/ ]
C:\USERS\USER\Cookies\BE841O9O.txt [ Cookie:user@at.atwola.com/ ]
C:\USERS\USER\Cookies\FGDM4TGF.txt [ Cookie:user@bs.serving-sys.com/ ]
C:\USERS\USER\Cookies\3H568VE7.txt [ Cookie:user@zedo.com/ ]
C:\USERS\USER\Cookies\1YCCWKZ6.txt [ Cookie:user@track.adform.net/ ]
C:\USERS\USER\Cookies\YZ7WFGBM.txt [ Cookie:user@adfarm1.adition.com/ ]
C:\USERS\USER\Cookies\QLLCCOU5.txt [ Cookie:user@ad4.adfarm1.adition.com/ ]
C:\USERS\USER\Cookies\REUWBZPI.txt [ Cookie:user@microsoftwlsearchcrm.112.2o7.net/ ]
C:\USERS\USER\Cookies\DVAWW6TI.txt [ Cookie:user@adserver.zenoviaexchange.com/ ]
.revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.imrworldwide.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.imrworldwide.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.apmebf.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediaplex.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adbrite.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.histats.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.histats.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adnetwork.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
accounts.google.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adxpose.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.apmebf.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.247realmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.amazon-adsystem.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.amazon-adsystem.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.xiti.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ads.247activemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
eas.apm.emediate.eu [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
7.rotator.trafficbee.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
7.rotator.wigetmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.smartadserver.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.liveperson.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.legolas-media.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediaplex.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.technoratimedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.technoratimedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zanox-affiliate.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.112.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.media6degrees.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.kontera.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
7.rotator.trafficbee.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tradedoubler.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.partypoker.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adserver.adtechus.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad2.adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
wmedia.rotator.hadj7.adjuggler.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.partypoker.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.partypoker.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.partypoker.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.partypoker.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.game-advertising-online.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
eas.apm.emediate.eu [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
track.webtrekk.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.lfstmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
aka-cdn-ns.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adbrite.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adbrite.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
uk.sitestat.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.apmebf.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.smartadserver.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.smartadserver.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.smartadserver.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.etracker.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mm.chitika.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.247realmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.liveperson.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.lfstmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.lfstmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.112.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
server.adformdsp.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.googleads.g.doubleclick.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.statcounter.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.burstnet.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
mshakers.rotator.hadj7.adjuggler.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.server.cpmstar.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
mshakers.rotator.hadj7.adjuggler.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mmotraffic.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ru4.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
aimfar.solution.weborama.fr [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.weborama.fr [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.weborama.fr [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
stat.vattenfall.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.nuon.112.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
uk.sitestat.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tns-counter.ru [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad1.emediate.dk [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.insightexpressai.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.partypoker.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.partypoker.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.rtst.122.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pro-market.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
clicktoview.org [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
clicktoview.org [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
admediakit.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.meinsextagebuch.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.meinsextagebuch.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ipcmedia.122.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.geoadserving.coffeetree.info [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mmotraffic.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.clicksor.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.myroitracking.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.clicksor.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.clicksor.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.clicksor.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
track.clickdealer.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zanox-affiliate.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.zanox-affiliate.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
fr-himedia.videoplaza.tv [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.dailymotionpoc.112.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
wmedia.rotator.hadj7.adjuggler.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
server.adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
tracking.metricscience.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
tracking.metricscience.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.clickfuse.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.apnonline.112.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.technoratimedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.dmtracker.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad1.emediate.dk [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.etracker.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.dyntracker.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.cheaptickets.122.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
onlineadtracker.co.uk [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adnet-media.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.burstnet.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.im.banner.t-online.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tradedoubler.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tradedoubler.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.aimfar.solution.weborama.fr [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
fl01.ct2.comclick.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
fl01.ct2.comclick.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.fastclick.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.etracker.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.specificclick.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mtvn.112.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.estat.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pro-market.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pro-market.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pro-market.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.pro-market.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.makelovenotporn.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.makelovenotporn.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.im.banner.t-online.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.accounts.google.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.accounts.google.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adbrite.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
a.intentmedia.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.webstatsdomain.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.webstatsdomain.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.webstatsdomain.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.martiniadnetwork.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.martiniadnetwork.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.martiniadnetwork.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.saymedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.saymedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.saymedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tradedoubler.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
stats.espncricinfo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tradedoubler.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
nl.sitestat.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.burstnet.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adviva.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.traveladvertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
stats.mytraveline.info [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.uk.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.uk.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www4.smartadserver.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.traveladvertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.traveladvertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.opodo.122.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.unister-adservices.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.unister-adservices.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.doubleclick.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bookfinder.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.bookfinder.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bookfinder.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bookfinder.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bookfinder.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bookfinder.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.smartadserver.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.etracker.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.burstnet.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
uk.sitestat.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
uk.sitestat.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.vinsight.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adx.chip.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adx.chip.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adx.chip.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adx.chip.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adx.chip.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adx.chip.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adx.chip.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adx.chip.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adx.chip.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adx.chip.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adx.chip.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adx2.chip.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
track.adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtechus.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.zanox.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
tracking1.aleadpay.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad3.adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
aa.adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.doubleclick.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
statse.webtrendslive.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ads2.solocpm.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ads2.solocpm.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.smartadserver.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
partners.webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.adserver01.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.adserver01.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adformdsp.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.content.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
www.burstnet.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad2.adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.track.right-ads.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.srv.resultsmedia.biz [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.srv.resultsmedia.biz [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.srv.resultsmedia.biz [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.srv.resultsmedia.biz [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.srv.resultsmedia.biz [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.srv.resultsmedia.biz [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.srv.resultsmedia.biz [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.srv.resultsmedia.biz [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.srv.resultsmedia.biz [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.srv.resultsmedia.biz [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.srv.resultsmedia.biz [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.srv.resultsmedia.biz [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.srv.resultsmedia.biz [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.srv.resultsmedia.biz [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.srv.resultsmedia.biz [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
server.adformdsp.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adformdsp.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
eas.apm.emediate.eu [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
eas.apm.emediate.eu [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
eas.apm.emediate.eu [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.traffictrack.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
tracking.affiliaxe.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.statcounter.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.statoil.solution.weborama.fr [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.statoil.solution.weborama.fr [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.statoil.solution.weborama.fr [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.statoil.solution.weborama.fr [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.hotlog.ru [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.yieldmanager.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tradedoubler.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tradedoubler.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ww251.smartadserver.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.gostats.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
tracking.affiliates.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
server.adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.zanox.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bwincom.122.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
7.rotator.wigetmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.mediaplex.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
insight.torbit.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.burstnet.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.liveperson.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
server.iad.liveperson.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.legolas-media.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.legolas-media.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.uk.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad1.adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zedo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
track.adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
track.adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.lfstmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.zanox.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.overture.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.overture.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
accounts.google.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.lucidmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
eas.apm.emediate.eu [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
eas.apm.emediate.eu [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.casalemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad4.adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tacoda.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.ar.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.c1.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
accounts.google.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
accounts.google.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.kaspersky.122.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
track.adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adform.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adbrite.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
adfarm1.adition.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.doubleclick.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.collective-media.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.tribalfusion.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.im.banner.t-online.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.invitemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bs.serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
oasc-eu1.247realmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.questionmarket.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.questionmarket.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.questionmarket.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.questionmarket.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.questionmarket.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
cms.ad.yieldmanager.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.media6degrees.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.media6degrees.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.media6degrees.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.media6degrees.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
.bs.serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
ad.adverticum.net [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
adserv.quality-channel.de [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
affiliate.mediatemple.net [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
art.aim4media.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
banner.prestigecasino.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
banners.securedataimages.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
card.cricket.timesofindia.indiatimes.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
cdn1.static.pornhub.phncdn.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
cdn1.static.youporn.phncdn.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
cdn2.baronsmedia.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
click.kink.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
cloud.video.unrulymedia.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
content.yieldmanager.edgesuite.net [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
data-ero-advertising.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
delivery.ibanner.de [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
ds.serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
files.youporn.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
ia.media-imdb.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
imagesrv.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
imgs.adverticum.net [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
media.adxpansion.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
media.journalism.berkeley.edu [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
media.kyte.tv [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
media.libri.de [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
media.mtvnservices.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
media.scanscout.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
media.socialvibe.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
media.theonion.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
media1.shufuni.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
msnbcmedia.msn.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
objects.tremormedia.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
s0.2mdn.net [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
secure-uk.imrworldwide.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
secure-us.imrworldwide.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
sickbleeptube.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
stat.easydate.biz [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
stat.ed.cupidplc.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
static.discoverymedia.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
static.sunporno.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
tracking.publicidees.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
video.unrulymedia.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
videos.mediaite.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
vidii.hardsextube.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
watch2porn.net [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
www.99counters.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
www.adservercentral.info [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
www.alphaporno.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
www.ledsex.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
www.naiadsystems.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
www.partypoker.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
www.pornhouse.info [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
www.pornhub.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
www.sexpeeper.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
youporn.videobox.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\39H4X2YU ]
.collective-media.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.mediaplex.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.uk.at.atwola.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.ru4.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.atdmt.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.imrworldwide.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.imrworldwide.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tracking.quisma.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
tracking.quisma.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
tracking.quisma.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tracking.quisma.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.getclicky.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.static.getclicky.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
in.getclicky.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.kontera.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.xiti.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.histats.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.histats.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.harrenmedianetwork.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.lucidmedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.solocpm.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
www.usenext.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.at.atwola.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.atwola.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.amazon-adsystem.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
adsensefooty.blogspot.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
adsensefooty.blogspot.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.legolas-media.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
adsensefooty.blogspot.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
adsensefooty.blogspot.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
adsensefooty.blogspot.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
adsensefooty.blogspot.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
adsensefooty.blogspot.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
adsensefooty.blogspot.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
adsensefooty.blogspot.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adxvalue.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
www.traffective-tracking.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
www.traffective-tracking.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
www.traffective-tracking.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
www.traffective-tracking.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
www.traffective-tracking.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.liveperson.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
sales.liveperson.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.liveperson.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.server.cpmstar.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.ipcmedia.122.2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.server.cpmstar.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.server.cpmstar.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.server.cpmstar.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.server.cpmstar.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tracking.quisma.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.webtrekk.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.webtrekk.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adxpose.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.questionmarket.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.mtvn.112.2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.bs.serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.amazon-adsystem.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
tomtailor.dyntracker.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ads.247activemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tradedoubler.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.technoratimedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.technoratimedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.adition.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.adition.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.micklemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.micklemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.micklemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.micklemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.micklemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.micklemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.micklemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.ru4.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.lucidmedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.google.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.dyntracker.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
www.zanox-affiliate.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tracking.quisma.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.unitymedia.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.unitymedia.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tracking.quisma.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.122.2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.collective-media.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.bs.serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.atdmt.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.c1.atdmt.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adnetwork.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.at.atwola.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
adprudence.rotator.hadj7.adjuggler.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
adprudence.rotator.hadj7.adjuggler.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
adprudence.rotator.hadj7.adjuggler.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tradedoubler.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
eas.apm.emediate.eu [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.adform.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adform.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.apmebf.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.fastclick.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tribalfusion.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
rotator.hadj7.adjuggler.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.advertising.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.zedo.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.media6degrees.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad1.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.zanox.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.zanox.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
tracking.mlsat02.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.specificclick.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.im.banner.t-online.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adviva.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.zanox-affiliate.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.zanox-affiliate.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.traffictrack.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adinterax.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adinterax.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tradedoubler.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tradedoubler.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.dyntracker.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad3.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad4.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.tracking.quisma.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.mediaplex.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.zanox.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.zanox.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adbrite.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.casalemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.webmasterplan.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
eas.apm.emediate.eu [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
eas.apm.emediate.eu [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
eas.apm.emediate.eu [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad2.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
statse.webtrendslive.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.accounts.google.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.accounts.google.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.accounts.google.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
track.adform.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.yieldmanager.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.invitemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.adfarm1.adition.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.msnportal.112.2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.google.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
7.rotator.trafficbee.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
7.rotator.trafficbee.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
7.rotator.trafficbee.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
7.rotator.wigetmedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
7.rotator.wigetmedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
7.rotator.wigetmedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
.hotlog.ru [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MV0XI812.DEFAULT\COOKIES.SQLITE ]
delivery.ibanner.de [ C:\WINDOWS\SYSWOW64\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\QMU2L3MJ ]

PUP.CNETInstaller
C:\USERS\USER\APPDATA\LOCAL\TEMP\ICREINSTALL\CNET2_PFIRE_EXE.EXE
C:\USERS\USER\DOWNLOADS\CNET2_PFIRE_EXE.EXE

Trojan.Agent/Gen-FakeAlert[Local]
C:\USERS\USER\DOCUMENTS\OLD LAPTOP DATA\PROGRAM FILES\ARENA\ENGINES\DRAGON\DRAGON_46.EXE
C:\USERS\USER\DOCUMENTS\OLD LAPTOP DATA\PROGRAM FILES\ARENA\ENGINES\NEJMET\NEJMET_307.EXE
C:\USERS\USER\DOCUMENTS\OLD LAPTOP DATA\PROGRAM FILES\ARENA\ENGINES\RUFFIAN\RUFFIAN_105.EXE
C:\USERS\USER\DOCUMENTS\OLD LAPTOP DATA\PROGRAM FILES\HP\DIGITAL IMAGING\{A1062847-0846-427A-92A1-BB8251A91E91}\SETUP\HPOAPD01.EXE

Trojan.Agent/Gen-Koobface
C:\USERS\USER\DOWNLOADS\REALPLAYER.EXE

Trojan.Agent/Gen-Frauder
C:\PROGRAM FILES (X86)\MOBILE PARTNER MANAGER\COMPONENT\BIUSBSOUND.DLL




-----------end-------------


Eset:


C:\$Recycle.Bin\S-1-5-21-645434065-6745951-1797684387-1000\$RH6CFP1.exe Win32/Graboid application cleaned by deleting - quarantined
C:\Users\User\AppData\Local\Temp\ICReinstall_DownloadManagerSetup.exe a variant of Win32/InstallCore.X application deleted - quarantined
C:\Users\User\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\61\64bcabfd-58fa6fdc multiple threats deleted - quarantined
C:\Users\User\Documents\old laptop data\Program Files\Tiscali\Tiscali Internet\dlls\InstallDialer.exe a variant of Win32/Injector.AHE trojan deleted - quarantined
C:\Users\User\Downloads\DownloadManagerSetup.exe a variant of Win32/InstallCore.X application deleted - quarantined


-------------end------------------


JRT:


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 4.1.0 (12.12.2012:3)
OS: Windows 7 Home Premium x64
Ran by User on 13.12.2012 at 18:57:48,08
Blog: http://thisisudax.blogspot.com
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully deleted: [Registry Value] hkey_current_user\software\microsoft\windows\currentversion\run\\crossriderplugin



~~~ Registry Keys

Successfully deleted: [Registry Key] "hkey_current_user\software\appdatalow\software\crossrider"
Successfully deleted: [Registry Key] hkey_classes_root\clsid\{a876e312-7d08-401a-b7a6-fafc5dc2f292}
Successfully deleted: [Registry Key] hkey_local_machine\software\microsoft\windows\currentversion\explorer\browser helper objects\{a876e312-7d08-401a-b7a6-fafc5dc2f292}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\codeccheck"
Successfully deleted: [Folder] "C:\Users\User\appdata\locallow\boost_interprocess"
Failed to delete: [Folder] "C:\Users\User\appdata\locallow\shopperreports3"
Successfully deleted: [Folder] "C:\Program Files (x86)\crossriderwebapps"
Successfully deleted: [Folder] "C:\Users\User\appdata\locallow\asktoolbar"



~~~ FireFox

Successfully deleted: [File] "C:\Users\User\AppData\Roaming\mozilla\firefox\profiles\mv0xi812.default\extensions\DivXWebPlayer@divx.com.xpi"
Successfully deleted: [File] C:\Users\User\AppData\Roaming\mozilla\firefox\profiles\mv0xi812.default\searchplugins\askcom.xml
Successfully deleted: [Folder] C:\Users\User\AppData\Roaming\mozilla\firefox\profiles\mv0xi812.default\extensions\toolbar@ask.com
Successfully deleted the following from C:\Users\User\AppData\Roaming\mozilla\firefox\profiles\mv0xi812.default\prefs.js

user_pref("browser.search.defaultengine", "Ask.com");
user_pref("browser.search.defaultenginename", "Ask.com");
user_pref("browser.search.order.1", "Ask.com");
user_pref("extensions.asktb.InstallDir", "C:\\Program Files (x86)\\Ask.com\\");
user_pref("extensions.asktb.abar-war-timeout", "4000");
user_pref("extensions.asktb.cbid", "PV");
user_pref("extensions.asktb.config-updated", false);
user_pref("extensions.asktb.crumb", "2011.06.25+06.01.47-toolbar010iad-DE-QmVybGluLEdlcm1hbnk%3D");
user_pref("extensions.asktb.default-channel-url-mask", "http://de.ask.com/web?q={query}&qsrc={qsrc}&o={o}&l={l}");
user_pref("extensions.asktb.dtid", "YYYYYYYYDE");
user_pref("extensions.asktb.dyn-weather-do-locid-lookup-weatherWidget", false);
user_pref("extensions.asktb.dyn-weather-locid-weatherWidget", "GMXX0007");
user_pref("extensions.asktb.dyn-weather-tempunit-weatherWidget", "C");
user_pref("extensions.asktb.ff-original-keyword-url", "http://www.google.com/search?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&q=");
user_pref("extensions.asktb.guid", "C7A0C09F-2018-4D6D-AC7C-96A6DF82AEFF");
user_pref("extensions.asktb.http-header-whitelist-hosts", "[\"static-dev.en.dev.ask.com\", \"ask.com\", \"www.facebook.com\", \"www.playsushi.com\", \"WWW.google.com\", \"http
user_pref("extensions.asktb.if", "first");
user_pref("extensions.asktb.l", "dis");
user_pref("extensions.asktb.last-config-req", "1309030699377");
user_pref("extensions.asktb.locale", "de_DE");
user_pref("extensions.asktb.location", "Berlin,Germany");
user_pref("extensions.asktb.o", "15000");
user_pref("extensions.asktb.qsrc", "2871");
user_pref("extensions.asktb.sa", "YES");
user_pref("extensions.asktb.saguid", "FA2E62A7-BCB0-4F4E-9D13-35A58CD6A43B");
user_pref("extensions.asktb.search-suggestions-enabled", true);
user_pref("extensions.asktb.silent-upgrade-from-pre-newtabs-build", false);
user_pref("extensions.asktb.socialmini-first", true);
user_pref("extensions.asktb.socialmini-interval", "1200000");
user_pref("extensions.asktb.socialmini-max-char-ticker", "33");
user_pref("extensions.asktb.socialmini-max-items", "30");
user_pref("extensions.asktb.socialmini-native-on", true);
user_pref("extensions.asktb.socialmini-speed", "5000");
user_pref("extensions.asktb.socialmini-transition-first-open", false);
user_pref("extensions.asktb.themeid", "");
user_pref("extensions.asktb.to", "");
user_pref("extensions.crossrider.bic", "13134ef4d81966d816b5c8ae907fbbf2");
user_pref("extensions.crossriderapp435.435.active", true);
user_pref("extensions.crossriderapp435.435.affid", "0");
user_pref("extensions.crossriderapp435.435.backgroundjs", "function buttonClick() { \n \n if (appAPI.platform == \"FF\") window.open(\"file:///C:/codec-info/codec_inf
user_pref("extensions.crossriderapp435.435.backgroundver", 6);
user_pref("extensions.crossriderapp435.435.certdomaininstaller", "");
user_pref("extensions.crossriderapp435.435.description", "Premiumplay Codec check");
user_pref("extensions.crossriderapp435.435.domain", "");
user_pref("extensions.crossriderapp435.435.emailsig", "");
user_pref("extensions.crossriderapp435.435.exposesites", "");
user_pref("extensions.crossriderapp435.435.fbremoteurl", "");
user_pref("extensions.crossriderapp435.435.group", 0);
user_pref("extensions.crossriderapp435.435.homepage", "");
user_pref("extensions.crossriderapp435.435.iframe", false);
user_pref("extensions.crossriderapp435.435.js", "$jquery(document).ready(function() {\n //if(location.href.match(/veehd\\.com/)){\n $jquery('#cblocker').remove();\n //}\n});
user_pref("extensions.crossriderapp435.435.name", "Premiumplay Codec-C");
user_pref("extensions.crossriderapp435.435.premium", true);
user_pref("extensions.crossriderapp435.435.publisher", "WebPicks");
user_pref("extensions.crossriderapp435.435.settingsurl", "");
user_pref("extensions.crossriderapp435.435.thankyou", "");
user_pref("extensions.crossriderapp435.435.ver", 21);
user_pref("extensions.crossriderapp435.apps", "435");
user_pref("extensions.crossriderapp435.bic", "13134ef4d81966d816b5c8ae907fbbf2");
user_pref("extensions.crossriderapp435.cid", 435);
user_pref("extensions.crossriderapp435.firstrun", false);
user_pref("extensions.crossriderapp435.hadappinstalled", true);
user_pref("extensions.crossriderapp435.installationdate", 1310853123);
user_pref("extensions.crossriderapp435.jsver", 3);
user_pref("extensions.crossriderapp435.lastcheck", 21897562);
user_pref("extensions.crossriderapp435.lastcheckitem", 21897845);
user_pref("extensions.crossriderapp435.misc.lastBgWorkerTimer", "1313870661737");
user_pref("extensions.crossriderapp435.misc.lastDomWorkerTimer", "1313870661731");
user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"{27182e60-b5f3-411c-b545-b44205977502}\":{\"descriptor\":\"C:\\\\Program Files (x86)\\\\Mi
user_pref("extensions.questscan.init", true);
user_pref("keyword.URL", "http://www.questscan.com/?tmp=nemo_results_removelink&prt=QstscanPB&keywords=");



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 13.12.2012 at 19:07:01,47
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

#9 rgjneal

rgjneal
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:07:10 PM

Posted 13 December 2012 - 01:44 PM

As for how the computer is now running, no changes. It's not slow (although the SuperAntiSpyware scan and removal both took quite a number of hours, as also did the Eset. But maybe that's normal). Software runs fine.

But the same issues are still unresolved: I get the same error codes when I try to set up the firewall, and when I try to update Microsoft Security Essentials. And at least once a day, Google ask me to fill in a captcha page as some traffic from me seems suspicious. I have no idea how major these issues are. Is there anything here so unsafe as to worry about security of passwords etc.?

#10 Gunto

Gunto

    Bleepin' Reject Phoenix


  • Malware Response Team
  • 1,284 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:North Las Vegas, Nevada, USA
  • Local time:11:10 AM

Posted 14 December 2012 - 12:40 AM

Hi,

The only thing I see in here that would be cause for worry about security is Zero Access, though it's being a bit too stubborn for my level of assistance.

Please follow the instructions in ==>This Guide<== starting at Step 6. If you cannot complete a step, skip it and continue.

Once the proper logs are created, then make a NEW TOPIC and post it ==>HERE<== Please include a description of your computer issues, what you have done to resolve them, and a link to this topic.

If you can produce at least some of the logs, then please create the new topic and explain what happens when you try to create the log(s) that you couldn't get. If you cannot produce any of the logs, then still post the topic and explain that you followed the Prep. Guide, were unable to create the logs, and describe what happens when you try to create the logs.

It would be helpful if you post a note here once you have completed the steps in the guide and have started your topic in malware removal. Good luck and be patient.

If HelpBot replies to your topic, PLEASE follow Step One so it will report your topic to the team members.

Gunto

Beautiful avatar by Plumbeck!

 

Bury me in honor; when I'm dead and hit the ground, a love back home, it unfolds...


#11 rgjneal

rgjneal
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:07:10 PM

Posted 14 December 2012 - 05:21 AM

Ok, will do. Thanks for everything so far.

#12 rgjneal

rgjneal
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:07:10 PM

Posted 14 December 2012 - 06:51 AM

New topic started here.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users