| 
 zu Schritt 1:  Code: 
 # AdwCleaner v3.208 - Bericht erstellt am 18/05/2014 um 13:47:15# Aktualisiert 11/05/2014 von Xplode
 # Betriebssystem : Windows 7 Home Premium  (64 bits)
 # Benutzername : Quynh Trang - QUYNHTRANG-VAIO
 # Gestartet von : C:\Users\Quynh Trang\Desktop\adwcleaner_3.208.exe
 # Option : Löschen
 
 ***** [ Dienste ] *****
 
 
 ***** [ Dateien / Ordner ] *****
 
 Ordner Gelöscht : C:\Users\QUYNHT~1\AppData\Local\Temp\OCS
 Datei Gelöscht : C:\Users\Quynh Trang\daemonprocess.txt
 
 ***** [ Verknüpfungen ] *****
 
 
 ***** [ Registrierungsdatenbank ] *****
 
 Schlüssel Gelöscht : HKCU\Software\OCS
 Daten Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
 Daten Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll
 
 ***** [ Browser ] *****
 
 -\\ Internet Explorer v8.0.7600.17267
 
 
 -\\ Mozilla Firefox v29.0.1 (de)
 
 [ Datei : C:\Users\Quynh Trang\AppData\Roaming\Mozilla\Firefox\Profiles\yyc57bok.default\prefs.js ]
 
 
 -\\ Google Chrome v34.0.1847.137
 
 [ Datei : C:\Users\Quynh Trang\AppData\Local\Google\Chrome\User Data\Default\preferences ]
 
 Gelöscht [Search Provider] : hxxp://www.dihk.de/isuche?SearchableText={searchTerms}&x=0&y=0&facet=true&facet.field=kategorie&facet.field=dokumentart
 Gelöscht [Extension] : booedmolknjekdopkepjjeckmjkdpfgl
 Gelöscht [Extension] : flpcjncodpafbgdpnkljologafpionhb
 
 *************************
 
 AdwCleaner[R0].txt - [7614 octets] - [01/04/2014 22:09:07]
 AdwCleaner[R1].txt - [1856 octets] - [18/05/2014 13:46:02]
 AdwCleaner[S0].txt - [7116 octets] - [01/04/2014 22:10:19]
 AdwCleaner[S1].txt - [1727 octets] - [18/05/2014 13:47:15]
 
 ########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1787 octets] ##########
 zu Schritt 2: 
Bei mir erfolgt kein Scan, ich habe einebeliebige Taste gedrückt, aber es passierte nichts. Es hat sich kein Logfile geöffnet...  
zu Schritt 3:    Code: 
 Malwarebytes Anti-Malwarewww.malwarebytes.org
 
 
 Protection, 18.05.2014 14:01:09, SYSTEM, QUYNHTRANG-VAIO, Protection, Malware Protection, Starting,
 Protection, 18.05.2014 14:01:09, SYSTEM, QUYNHTRANG-VAIO, Protection, Malware Protection, Started,
 Protection, 18.05.2014 14:01:09, SYSTEM, QUYNHTRANG-VAIO, Protection, Malicious Website Protection, Starting,
 Update, 18.05.2014 14:01:14, SYSTEM, QUYNHTRANG-VAIO, Manual, Rootkit Database, 2014.2.20.1, 2014.3.27.1,
 Update, 18.05.2014 14:01:18, SYSTEM, QUYNHTRANG-VAIO, Manual, Malware Database, 2014.3.4.9, 2014.5.18.3,
 Protection, 18.05.2014 14:01:20, SYSTEM, QUYNHTRANG-VAIO, Protection, Refresh, Starting,
 Protection, 18.05.2014 14:01:39, SYSTEM, QUYNHTRANG-VAIO, Protection, Malicious Website Protection, Started,
 Protection, 18.05.2014 14:01:39, SYSTEM, QUYNHTRANG-VAIO, Protection, Malicious Website Protection, Stopping,
 Protection, 18.05.2014 14:01:39, SYSTEM, QUYNHTRANG-VAIO, Protection, Malicious Website Protection, Stopped,
 Protection, 18.05.2014 14:01:48, SYSTEM, QUYNHTRANG-VAIO, Protection, Refresh, Success,
 Protection, 18.05.2014 14:01:48, SYSTEM, QUYNHTRANG-VAIO, Protection, Malicious Website Protection, Starting,
 Protection, 18.05.2014 14:01:49, SYSTEM, QUYNHTRANG-VAIO, Protection, Malicious Website Protection, Started,
 Protection, 18.05.2014 14:35:12, SYSTEM, QUYNHTRANG-VAIO, Protection, Malware Protection, Starting,
 Protection, 18.05.2014 14:35:12, SYSTEM, QUYNHTRANG-VAIO, Protection, Malware Protection, Started,
 Protection, 18.05.2014 14:35:12, SYSTEM, QUYNHTRANG-VAIO, Protection, Malicious Website Protection, Starting,
 Protection, 18.05.2014 14:38:25, SYSTEM, QUYNHTRANG-VAIO, Protection, Malicious Website Protection, Started,
 
 (end)
 zu Schritt 4:  
zoek.exe lässt sich bei mir nicht starten, auch nicht im abgesicherten Modus, es passiert einfach gar nichts, wenn ich 2x drauf klicken...  
Schritt 5:   
FRST Logfile:   Code: 
 Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 15-05-2014Ran by Quynh Trang (administrator) on QUYNHTRANG-VAIO on 18-05-2014 14:48:57
 Running from C:\Users\Quynh Trang\Desktop
 Platform: Windows 7 Home Premium (X64) OS Language: German Standard
 Internet Explorer Version 8
 Boot Mode: Normal
 
 
 ==================== Processes (Whitelisted) =================
 
 (AMD) C:\Windows\System32\atiesrxx.exe
 (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
 (AMD) C:\Windows\System32\atieclxx.exe
 (Microsoft Corporation) C:\Windows\System32\wlanext.exe
 (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
 (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe
 (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
 (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
 (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
 (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
 (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
 (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
 (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
 (Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
 (Sony Corporation) C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe
 (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
 () C:\Program Files\CyberLink\Shared files\RichVideo64.exe
 (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
 (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
 (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
 (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
 (Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apoint.exe
 (Microsoft Corporation) C:\Windows\System32\StikyNot.exe
 (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
 (Dropbox, Inc.) C:\Users\Quynh Trang\AppData\Roaming\Dropbox\bin\Dropbox.exe
 (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
 (ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
 (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
 (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
 (Yahoo! Inc.) C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
 (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe
 (Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
 (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
 (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
 (Sony Corporation) C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe
 (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
 (Sony Corporation) C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe
 (Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe
 (Nokia) C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer.exe
 (Brother Industries, Ltd.) C:\Program Files (x86)\Brother\Brmfcmon\BrMfcMon.exe
 (Brother Industries, Ltd.) C:\Program Files (x86)\Brother\ControlCenter3\BrccMCtl.exe
 (Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
 (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe
 (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe
 (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
 (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
 (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
 (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
 (Yahoo! Inc.) C:\Program Files (x86)\Yahoo!\Messenger\Ymsgr_tray.exe
 (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
 (Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
 (Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
 (Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApMsgFwd.exe
 (ALPS) C:\Program Files\Apoint\Apvfb.exe
 (Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApntEx.exe
 (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
 (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe
 (Sony of America Corporation) C:\Program Files\Sony\VAIO Care\listener.exe
 (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCsystray.exe
 (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe
 (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe
 (Microsoft Corporation) C:\Windows\System32\vds.exe
 (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
 (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe
 (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
 
 ==================== Registry (Whitelisted) ==================
 
 HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10775584 2010-05-31] (Realtek Semiconductor)
 HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2040352 2010-05-31] (Realtek Semiconductor)
 HKLM\...\Run: [Apoint] => C:\Program Files\Apoint\Apoint.exe [212480 2010-05-31] (Alps Electric Co., Ltd.)
 HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2010-03-04] (Intel Corporation)
 HKLM-x32\...\Run: [ISBMgr.exe] => C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [673136 2010-05-31] (Sony Corporation)
 HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-02-09] (Advanced Micro Devices, Inc.)
 HKLM-x32\...\Run: [Norton Online Backup] => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-01] (Symantec Corporation)
 HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe [600928 2010-06-01] (Sony Corporation)
 HKLM-x32\...\Run: [NokiaMusic FastStart] => C:\Program Files (x86)\Nokia\Nokia Music Player\NokiaMusicPlayer.exe [2193000 2011-10-21] (Nokia)
 HKLM-x32\...\Run: [BrMfcWnd] => C:\Program Files (x86)\Brother\Brmfcmon\BrMfcWnd.exe [663552 2007-03-12] (Brother Industries, Ltd.)
 HKLM-x32\...\Run: [ControlCenter3] => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe [65536 2007-01-26] (Brother Industries, Ltd.)
 HKLM-x32\...\Run: [NokiaMServer] => C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
 HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [38872 2012-07-31] (Adobe Systems Incorporated)
 HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [919008 2012-07-11] (Adobe Systems Incorporated)
 HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.)
 HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
 HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [707984 2013-10-10] (Cisco Systems, Inc.)
 HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [737872 2014-05-15] (Avira Operations GmbH & Co. KG)
 HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101584 2014-04-25] (Safer-Networking Ltd.)
 Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
 Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
 HKU\S-1-5-21-695791689-3950581027-3840609033-1001\...\Run: [Messenger (Yahoo!)] => C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe [5252408 2010-06-01] (Yahoo! Inc.)
 HKU\S-1-5-21-695791689-3950581027-3840609033-1001\...\Run: [Facebook Update] => C:\Users\Quynh Trang\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-05-12] (Facebook Inc.)
 HKU\S-1-5-21-695791689-3950581027-3840609033-1001\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation)
 HKU\S-1-5-21-695791689-3950581027-3840609033-1001\...\Run: [nuemhsnl] => C:\Users\Quynh Trang\AppData\Roaming\Dyxf\yxvwhsnl.exe [98312 2014-05-16] ()
 HKU\S-1-5-21-695791689-3950581027-3840609033-1001\...\MountPoints2: {e88459b3-7b98-11e3-8223-18f46ae7912c} - E:\HTC_Sync_Manager_PC.exe
 Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
 ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
 Startup: C:\Users\Quynh Trang\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
 ShortcutTarget: Dropbox.lnk -> C:\Users\Quynh Trang\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
 
 ==================== Internet (Whitelisted) ====================
 
 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=SVEE&bmod=SVEE
 StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
 SearchScopes: HKCU - {01449242-4514-4F69-81B5-35BA7D14F515} URL = hxxp://services.zinio.com/search?s={searchTerms}&rf=sonyslices
 SearchScopes: HKCU - {B7AFA886-9906-4F3F-989B-9C10A5EF35BB} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-9/4?satitle={searchTerms}
 SearchScopes: HKCU - {D14160CA-9795-482A-B484-B37035F988B9} URL = hxxp://de.shopping.com/?linkin_id=8056363
 BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
 BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
 BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
 BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg64.dll (Google Inc.)
 BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
 BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
 BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
 BHO-x32: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} -  No File
 BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
 BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
 BHO-x32: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
 BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
 BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
 BHO-x32: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.)
 BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
 BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
 Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
 Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
 Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
 Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
 Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
 Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
 Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
 Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
 Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
 
 FireFox:
 ========
 FF ProfilePath: C:\Users\Quynh Trang\AppData\Roaming\Mozilla\Firefox\Profiles\yyc57bok.default
 FF Homepage: hxxp://google.de/
 FF NetworkProxy: "autoconfig_url", "hxxp://pac.lrz-muenchen.de/"
 FF NetworkProxy: "type", 2
 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()
 FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
 FF Plugin: @microsoft.com/GENUINE - disabled No File
 FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
 FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
 FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
 FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
 FF Plugin-x32: @java.com/DTPlugin,version=10.9.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
 FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
 FF Plugin-x32: @messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 - C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
 FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
 FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
 FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
 FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8117.0416 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
 FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
 FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
 FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
 FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
 FF Plugin HKCU: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
 FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Quynh Trang\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
 FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
 FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
 FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
 FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
 FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
 FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
 FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-05-16]
 
 Chrome:
 =======
 CHR HomePage:
 CHR StartupUrls: "hxxp://www.google.de/"
 CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
 CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\ppGoogleNaClPluginChrome.dll ()
 CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\pdf.dll ()
 CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\gcswf32.dll No File
 CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll No File
 CHR Plugin: (McAfee SiteAdvisor) - C:\Users\Quynh Trang\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\McChPlg.dll No File
 CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll No File
 CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
 CHR Plugin: (Java Deployment Toolkit 6.0.240.7) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.)
 CHR Plugin: (Java(TM) Platform SE 6 U24) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
 CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
 CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
 CHR Plugin: (Windows Live® Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
 CHR Extension: (Grooveshark Germany unlocker) - C:\Users\Quynh Trang\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejcnhmeicafddjdaeecddemnhnomiaai [2013-11-26]
 CHR Extension: (AdBlock) - C:\Users\Quynh Trang\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-03-14]
 CHR Extension: (Skype Click to Call) - C:\Users\Quynh Trang\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-02-19]
 CHR Extension: (Grooveshark Unlock for Germany) - C:\Users\Quynh Trang\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkdjagkphafkafpalkhpnlmeihajppkb [2013-11-26]
 CHR Extension: (Google Wallet) - C:\Users\Quynh Trang\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-01]
 CHR Extension: (Citavi Picker) - C:\Users\Quynh Trang\AppData\Local\Google\Chrome\User Data\Default\Extensions\piehhloihgjjiomhieeddiidpekaajio [2013-05-27]
 CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-03-03]
 CHR HKLM-x32\...\Chrome\Extension: [piehhloihgjjiomhieeddiidpekaajio] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Chrome\ChromePicker.crx [2013-05-26]
 
 ==================== Services (Whitelisted) =================
 
 S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
 R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-05-15] (Avira Operations GmbH & Co. KG)
 R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-05-15] (Avira Operations GmbH & Co. KG)
 R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1363584 2014-03-03] (Microsoft Corporation)
 R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1748608 2014-03-03] (Microsoft Corporation)
 R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-04-03] (Malwarebytes Corporation)
 R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [857912 2014-04-03] (Malwarebytes Corporation)
 R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation)
 R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [386344 2012-06-22] ()
 R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [259192 2011-01-29] (Sony Corporation)
 R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738200 2014-04-25] (Safer-Networking Ltd.)
 R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2081752 2014-04-25] (Safer-Networking Ltd.)
 R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
 S3 ServiceLayer; C:\Program Files (x86)\Nokia\PC Connectivity Solution\ServiceLayer.exe [632832 2011-03-21] (Nokia)
 R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.)
 S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [851824 2010-06-17] (Sony Corporation)
 R3 VUAgent; C:\Program Files\Sony\VAIO Update\VUAgent.exe [1286784 2012-10-26] (Sony Corporation)
 
 ==================== Drivers (Whitelisted) ====================
 
 U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
 R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.)
 R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [112080 2014-05-15] (Avira Operations GmbH & Co. KG)
 R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-05-15] (Avira Operations GmbH & Co. KG)
 R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-02-25] (Avira Operations GmbH & Co. KG)
 S3 DxVGrb; C:\Windows\System32\drivers\DxVGrb.sys [222464 2012-06-22] (Dexetek )
 R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-04-03] (Malwarebytes Corporation)
 R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2014-05-18] (Malwarebytes Corporation)
 R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63192 2014-04-03] (Malwarebytes Corporation)
 S3 vpnva; C:\Windows\System32\DRIVERS\vpnva64-6.sys [52080 2013-10-10] (Cisco Systems, Inc.)
 
 ==================== NetSvcs (Whitelisted) ===================
 
 
 ==================== One Month Created Files and Folders ========
 
 2014-05-18 14:47 - 2014-05-18 14:47 - 04095370 _____ () C:\Users\Quynh Trang\Downloads\Nicht bestätigt 730516.crdownload
 2014-05-18 14:47 - 2014-05-18 14:47 - 01285120 _____ () C:\Users\Quynh Trang\Downloads\zoek.exe
 2014-05-18 14:45 - 2014-05-18 14:45 - 01285120 _____ () C:\Users\Quynh Trang\Desktop\zoek.exe
 2014-05-18 14:43 - 2014-05-18 14:43 - 00001754 _____ () C:\Users\Quynh Trang\Desktop\mbam.txt
 2014-05-18 14:01 - 2014-05-18 14:38 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
 2014-05-18 14:00 - 2014-05-18 14:00 - 00001102 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
 2014-05-18 14:00 - 2014-05-18 14:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
 2014-05-18 14:00 - 2014-05-18 14:00 - 00000000 ____D () C:\ProgramData\Malwarebytes
 2014-05-18 14:00 - 2014-05-18 14:00 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
 2014-05-18 14:00 - 2014-04-03 09:51 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
 2014-05-18 14:00 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
 2014-05-18 14:00 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
 2014-05-18 13:58 - 2014-05-18 13:59 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Quynh Trang\Desktop\mbam-setup-2.0.1.1004.exe
 2014-05-18 13:52 - 2014-05-18 13:52 - 01016261 _____ (Thisisu) C:\Users\Quynh Trang\Desktop\JRT.exe
 2014-05-18 13:52 - 2014-05-18 13:52 - 00000000 ____D () C:\Windows\ERUNT
 2014-05-18 13:46 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
 2014-05-18 13:44 - 2014-05-18 13:44 - 01325827 _____ () C:\Users\Quynh Trang\Desktop\adwcleaner_3.208.exe
 2014-05-17 23:31 - 2014-05-17 23:31 - 00047586 _____ () C:\Users\Quynh Trang\Desktop\Addition.txt
 2014-05-17 23:30 - 2014-05-18 14:49 - 00025219 _____ () C:\Users\Quynh Trang\Desktop\FRST.txt
 2014-05-17 23:29 - 2014-05-16 21:23 - 02067456 _____ (Farbar) C:\Users\Quynh Trang\Desktop\FRST64.exe
 2014-05-17 16:14 - 2014-05-17 16:15 - 00000000 ___SD () C:\ComboFix
 2014-05-17 15:51 - 2014-05-17 16:14 - 00000000 ____D () C:\Qoobox
 2014-05-17 15:45 - 2014-05-17 16:14 - 00000000 ___SD () C:\32788R22FWJFW
 2014-05-17 15:45 - 2014-05-17 15:45 - 00000000 ____D () C:\Windows\erdnt
 2014-05-17 13:31 - 2014-05-17 13:31 - 05200990 _____ (Swearware) C:\Users\Quynh Trang\Downloads\ComboFix (2).exe
 2014-05-17 13:31 - 2014-05-17 13:31 - 05200990 _____ (Swearware) C:\Users\Quynh Trang\Downloads\ComboFix (1).exe
 2014-05-17 13:29 - 2014-05-17 13:30 - 05200990 ____R (Swearware) C:\Users\Quynh Trang\Desktop\ComboFix.exe
 2014-05-16 21:27 - 2014-05-16 21:30 - 00051546 _____ () C:\Users\Quynh Trang\Downloads\Addition.txt
 2014-05-16 21:25 - 2014-05-18 14:48 - 00000000 ____D () C:\FRST
 2014-05-16 21:25 - 2014-05-16 21:30 - 00035691 _____ () C:\Users\Quynh Trang\Downloads\FRST.txt
 2014-05-16 21:23 - 2014-05-16 21:23 - 02067456 _____ (Farbar) C:\Users\Quynh Trang\Downloads\FRST64.exe
 2014-05-16 15:48 - 2014-05-16 15:48 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
 2014-05-16 15:35 - 2014-05-16 15:35 - 00629584 _____ (Chip Digital GmbH) C:\Users\Quynh Trang\Downloads\Malwarebytes Anti Malware - CHIP-Downloader.exe
 2014-05-16 15:18 - 2014-05-16 15:24 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
 2014-05-16 15:18 - 2014-05-16 15:23 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
 2014-05-16 15:18 - 2014-05-16 15:18 - 00001391 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
 2014-05-16 15:18 - 2014-05-16 15:18 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
 2014-05-16 15:18 - 2014-05-16 15:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
 2014-05-16 15:18 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
 2014-05-16 15:15 - 2014-05-16 15:15 - 00629584 _____ (Chip Digital GmbH) C:\Users\Quynh Trang\Downloads\SpyBot Search Destroy - CHIP-Downloader.exe
 2014-05-16 14:37 - 2014-05-16 14:37 - 00000000 ____D () C:\Users\Quynh Trang\AppData\Roaming\DropboxMaster
 2014-05-16 08:42 - 2014-05-16 08:45 - 00000000 ____D () C:\ProgramData\eti
 2014-05-16 08:41 - 2014-05-18 14:33 - 00000000 ___HD () C:\Users\Quynh Trang\AppData\Roaming\Rqyknyh
 2014-05-16 08:41 - 2014-05-16 08:41 - 00000000 ___HD () C:\Users\Quynh Trang\AppData\Roaming\Dyxf
 
 ==================== One Month Modified Files and Folders =======
 
 2014-05-18 14:49 - 2014-05-17 23:30 - 00025219 _____ () C:\Users\Quynh Trang\Desktop\FRST.txt
 2014-05-18 14:48 - 2014-05-16 21:25 - 00000000 ____D () C:\FRST
 2014-05-18 14:47 - 2014-05-18 14:47 - 04095370 _____ () C:\Users\Quynh Trang\Downloads\Nicht bestätigt 730516.crdownload
 2014-05-18 14:47 - 2014-05-18 14:47 - 01285120 _____ () C:\Users\Quynh Trang\Downloads\zoek.exe
 2014-05-18 14:45 - 2014-05-18 14:45 - 01285120 _____ () C:\Users\Quynh Trang\Desktop\zoek.exe
 2014-05-18 14:45 - 2009-07-14 06:45 - 00013872 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
 2014-05-18 14:45 - 2009-07-14 06:45 - 00013872 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
 2014-05-18 14:43 - 2014-05-18 14:43 - 00001754 _____ () C:\Users\Quynh Trang\Desktop\mbam.txt
 2014-05-18 14:41 - 2011-06-04 11:22 - 01103551 _____ () C:\Windows\WindowsUpdate.log
 2014-05-18 14:38 - 2014-05-18 14:01 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
 2014-05-18 14:38 - 2013-02-22 21:40 - 00000000 ____D () C:\Users\Quynh Trang\AppData\Roaming\Dropbox
 2014-05-18 14:37 - 2013-02-22 21:42 - 00000000 ___RD () C:\Users\Quynh Trang\Dropbox
 2014-05-18 14:35 - 2010-11-15 11:02 - 00001120 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
 2014-05-18 14:34 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
 2014-05-18 14:34 - 2009-07-14 06:51 - 00048840 _____ () C:\Windows\setupact.log
 2014-05-18 14:33 - 2014-05-16 08:41 - 00000000 ___HD () C:\Users\Quynh Trang\AppData\Roaming\Rqyknyh
 2014-05-18 14:26 - 2013-05-12 11:21 - 00000952 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-695791689-3950581027-3840609033-1001UA.job
 2014-05-18 14:04 - 2013-02-27 19:06 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
 2014-05-18 14:02 - 2010-11-15 11:02 - 00001124 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
 2014-05-18 14:00 - 2014-05-18 14:00 - 00001102 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
 2014-05-18 14:00 - 2014-05-18 14:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
 2014-05-18 14:00 - 2014-05-18 14:00 - 00000000 ____D () C:\ProgramData\Malwarebytes
 2014-05-18 14:00 - 2014-05-18 14:00 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
 2014-05-18 13:59 - 2014-05-18 13:58 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Quynh Trang\Desktop\mbam-setup-2.0.1.1004.exe
 2014-05-18 13:52 - 2014-05-18 13:52 - 01016261 _____ (Thisisu) C:\Users\Quynh Trang\Desktop\JRT.exe
 2014-05-18 13:52 - 2014-05-18 13:52 - 00000000 ____D () C:\Windows\ERUNT
 2014-05-18 13:48 - 2010-11-15 10:36 - 00354950 _____ () C:\Windows\PFRO.log
 2014-05-18 13:47 - 2014-04-01 22:09 - 00000000 ____D () C:\AdwCleaner
 2014-05-18 13:47 - 2011-06-04 11:24 - 00000000 ____D () C:\Users\Quynh Trang
 2014-05-18 13:44 - 2014-05-18 13:44 - 01325827 _____ () C:\Users\Quynh Trang\Desktop\adwcleaner_3.208.exe
 2014-05-18 13:42 - 2013-05-12 11:21 - 00000930 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-695791689-3950581027-3840609033-1001Core.job
 2014-05-17 23:31 - 2014-05-17 23:31 - 00047586 _____ () C:\Users\Quynh Trang\Desktop\Addition.txt
 2014-05-17 23:29 - 2013-01-02 22:57 - 00029184 ___SH () C:\Users\Quynh Trang\Thumbs.db
 2014-05-17 23:25 - 2010-11-15 19:32 - 00731234 _____ () C:\Windows\system32\perfh007.dat
 2014-05-17 23:25 - 2010-11-15 19:32 - 00161430 _____ () C:\Windows\system32\perfc007.dat
 2014-05-17 23:25 - 2009-07-14 07:13 - 00888776 _____ () C:\Windows\system32\PerfStringBackup.INI
 2014-05-17 23:24 - 2011-06-04 11:33 - 00003982 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{4CF8F08B-68D5-4FB4-A7E3-3B5CDB98CCCD}
 2014-05-17 23:19 - 2012-04-24 21:30 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
 2014-05-17 16:15 - 2014-05-17 16:14 - 00000000 ___SD () C:\ComboFix
 2014-05-17 16:14 - 2014-05-17 15:51 - 00000000 ____D () C:\Qoobox
 2014-05-17 16:14 - 2014-05-17 15:45 - 00000000 ___SD () C:\32788R22FWJFW
 2014-05-17 15:45 - 2014-05-17 15:45 - 00000000 ____D () C:\Windows\erdnt
 2014-05-17 13:31 - 2014-05-17 13:31 - 05200990 _____ (Swearware) C:\Users\Quynh Trang\Downloads\ComboFix (2).exe
 2014-05-17 13:31 - 2014-05-17 13:31 - 05200990 _____ (Swearware) C:\Users\Quynh Trang\Downloads\ComboFix (1).exe
 2014-05-17 13:30 - 2014-05-17 13:29 - 05200990 ____R (Swearware) C:\Users\Quynh Trang\Desktop\ComboFix.exe
 2014-05-16 21:30 - 2014-05-16 21:27 - 00051546 _____ () C:\Users\Quynh Trang\Downloads\Addition.txt
 2014-05-16 21:30 - 2014-05-16 21:25 - 00035691 _____ () C:\Users\Quynh Trang\Downloads\FRST.txt
 2014-05-16 21:23 - 2014-05-17 23:29 - 02067456 _____ (Farbar) C:\Users\Quynh Trang\Desktop\FRST64.exe
 2014-05-16 21:23 - 2014-05-16 21:23 - 02067456 _____ (Farbar) C:\Users\Quynh Trang\Downloads\FRST64.exe
 2014-05-16 15:48 - 2014-05-16 15:48 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
 2014-05-16 15:35 - 2014-05-16 15:35 - 00629584 _____ (Chip Digital GmbH) C:\Users\Quynh Trang\Downloads\Malwarebytes Anti Malware - CHIP-Downloader.exe
 2014-05-16 15:24 - 2014-05-16 15:18 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
 2014-05-16 15:23 - 2014-05-16 15:18 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
 2014-05-16 15:18 - 2014-05-16 15:18 - 00001391 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
 2014-05-16 15:18 - 2014-05-16 15:18 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
 2014-05-16 15:18 - 2014-05-16 15:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
 2014-05-16 15:15 - 2014-05-16 15:15 - 00629584 _____ (Chip Digital GmbH) C:\Users\Quynh Trang\Downloads\SpyBot Search Destroy - CHIP-Downloader.exe
 2014-05-16 14:38 - 2011-06-04 11:28 - 00000000 ___RD () C:\Users\Quynh Trang\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
 2014-05-16 14:37 - 2014-05-16 14:37 - 00000000 ____D () C:\Users\Quynh Trang\AppData\Roaming\DropboxMaster
 2014-05-16 14:37 - 2013-02-22 21:42 - 00001042 _____ () C:\Users\Quynh Trang\Desktop\Dropbox.lnk
 2014-05-16 14:37 - 2013-02-22 21:40 - 00000000 ____D () C:\Users\Quynh Trang\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
 2014-05-16 09:08 - 2013-10-30 14:41 - 00000000 ____D () C:\ProgramData\Microsoft Help
 2014-05-16 09:05 - 2013-08-16 03:02 - 00000000 ____D () C:\Windows\system32\MRT
 2014-05-16 09:02 - 2011-06-14 19:30 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
 2014-05-16 08:57 - 2014-04-01 22:36 - 00000000 ____D () C:\Users\Quynh Trang\Documents\Motivationsschreiben
 2014-05-16 08:56 - 2014-03-23 12:51 - 00000000 ____D () C:\Users\Quynh Trang\Desktop\Bachelor Arbeit
 2014-05-16 08:45 - 2014-05-16 08:42 - 00000000 ____D () C:\ProgramData\eti
 2014-05-16 08:41 - 2014-05-16 08:41 - 00000000 ___HD () C:\Users\Quynh Trang\AppData\Roaming\Dyxf
 2014-05-15 13:34 - 2014-04-01 22:02 - 00130584 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
 2014-05-15 13:34 - 2014-04-01 22:02 - 00112080 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
 2014-05-14 23:24 - 2011-06-06 13:33 - 00000000 ____D () C:\Users\Quynh Trang\Documents\Bewerbungen
 2014-05-14 19:05 - 2013-02-27 19:06 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
 2014-05-14 19:05 - 2013-02-27 19:06 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
 2014-05-14 19:05 - 2011-06-28 22:30 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
 2014-05-14 11:19 - 2013-10-30 17:02 - 00000000 ____D () C:\ProgramData\AutoKMS
 2014-05-09 11:57 - 2010-11-15 11:02 - 00004120 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
 2014-05-09 11:57 - 2010-11-15 11:02 - 00003868 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
 2014-04-29 23:51 - 2012-12-25 16:18 - 00000000 ____D () C:\Users\Quynh Trang\AppData\Roaming\Skype
 2014-04-26 15:58 - 2013-12-19 14:29 - 00035840 ___SH () C:\Users\Quynh Trang\Documents\Thumbs.db
 
 Some content of TEMP:
 ====================
 C:\Users\Quynh Trang\AppData\Local\Temp\avgnt.exe
 C:\Users\Quynh Trang\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpbohhjd.dll
 C:\Users\Quynh Trang\AppData\Local\Temp\Quarantine.exe
 C:\Users\Quynh Trang\AppData\Local\Temp\_is21D2.exe
 C:\Users\Quynh Trang\AppData\Local\Temp\_is792.exe
 
 
 ==================== Bamital & volsnap Check =================
 
 C:\Windows\System32\winlogon.exe => MD5 is legit
 C:\Windows\System32\wininit.exe => MD5 is legit
 C:\Windows\SysWOW64\wininit.exe => MD5 is legit
 C:\Windows\explorer.exe => MD5 is legit
 C:\Windows\SysWOW64\explorer.exe => MD5 is legit
 C:\Windows\System32\svchost.exe => MD5 is legit
 C:\Windows\SysWOW64\svchost.exe => MD5 is legit
 C:\Windows\System32\services.exe => MD5 is legit
 C:\Windows\System32\User32.dll => MD5 is legit
 C:\Windows\SysWOW64\User32.dll => MD5 is legit
 C:\Windows\System32\userinit.exe => MD5 is legit
 C:\Windows\SysWOW64\userinit.exe => MD5 is legit
 C:\Windows\System32\rpcss.dll => MD5 is legit
 C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
 
 
 LastRegBack: 2014-04-29 21:13
 
 ==================== End Of Log ============================
 --- --- ---      Code: 
 Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-05-2014Ran by Quynh Trang at 2014-05-18 14:50:10
 Running from C:\Users\Quynh Trang\Desktop
 Boot Mode: Normal
 ==========================================================
 
 
 ==================== Security Center ========================
 
 AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
 AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
 AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
 
 ==================== Installed Programs ======================
 
 Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9130 - Adobe Systems Inc.)
 Adobe AIR (x32 Version: 1.5.3.9130 - Adobe Systems Inc.) Hidden
 Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated)
 Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated)
 Adobe Photoshop Elements 8.0 (HKLM-x32\...\Adobe Photoshop Elements 8.0) (Version: 8.0 - Adobe Systems Incorporated)
 Adobe Photoshop Elements 8.0 (x32 Version: 8.0 - Adobe Systems Incorporated) Hidden
 Adobe Premiere Elements 8.0 (HKLM-x32\...\PremElem80) (Version: 8.0 - Adobe Systems Incorporated)
 Adobe Premiere Elements 8.0 (x32 Version: 8.0 - Adobe Systems Incorporated) Hidden
 Adobe Reader 9.5.2 - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-A95000000001}) (Version: 9.5.2 - Adobe Systems Incorporated)
 ALDI Bestellsoftware 4.12.2 (HKLM-x32\...\ALDI Bestellsoftware) (Version: 4.12.2 - ORWO Net)
 Alps Pointing-device for VAIO (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version:  - ALPS ELECTRIC CO., LTD.)
 ArcSoft Magic-i Visual Effects 2 (HKLM-x32\...\{7BB90344-0647-468E-925A-7F69F7983421}) (Version: 2.0.1.115 - ArcSoft)
 ArcSoft WebCam Companion 3 (HKLM-x32\...\{DE8AAC73-6D8D-483E-96EA-CAEDDADB9079}) (Version: 3.0.21.368 - ArcSoft)
 ATI Catalyst Install Manager (HKLM\...\{687C26DE-9A70-B256-170A-717DFA8B360E}) (Version: 3.0.750.0 - ATI Technologies, Inc.)
 Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.4.642 - Avira)
 Brother MFL-Pro Suite (HKLM-x32\...\{A3FEC306-FBFF-4B0D-95B9-F9C67C65079E}) (Version: 1.00 - Brother Industries, Ltd.)
 Catalyst Control Center Core Implementation (x32 Version: 2010.0209.16.306 - ATI) Hidden
 Catalyst Control Center Graphics Full Existing (x32 Version: 2010.0209.16.306 - ATI) Hidden
 Catalyst Control Center Graphics Full New (x32 Version: 2010.0209.16.306 - ATI) Hidden
 Catalyst Control Center Graphics Light (x32 Version: 2010.0209.16.306 - ATI) Hidden
 Catalyst Control Center Graphics Previews Common (x32 Version: 2010.0209.16.306 - ATI) Hidden
 Catalyst Control Center Graphics Previews Vista (x32 Version: 2010.0209.16.306 - ATI) Hidden
 Catalyst Control Center InstallProxy (x32 Version: 2010.0209.16.306 - ATI Technologies, Inc.) Hidden
 Catalyst Control Center Localization All (x32 Version: 2010.0209.16.306 - ATI) Hidden
 CCC Help Chinese Standard (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Chinese Traditional (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Czech (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Danish (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Dutch (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help English (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Finnish (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help French (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help German (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Greek (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Hungarian (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Italian (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Japanese (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Korean (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Norwegian (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Polish (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Portuguese (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Russian (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Spanish (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Swedish (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Thai (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 CCC Help Turkish (x32 Version: 2010.0209.0015.306 - ATI) Hidden
 ccc-core-static (x32 Version: 2010.0209.16.306 - Ihr Firmenname) Hidden
 ccc-utility64 (Version: 2010.0209.16.306 - ATI) Hidden
 Cisco AnyConnect Secure Mobility Client  (HKLM-x32\...\Cisco AnyConnect Secure Mobility Client) (Version: 3.1.04072 - Cisco Systems, Inc.)
 Cisco AnyConnect Secure Mobility Client (x32 Version: 3.1.04072 - Cisco Systems, Inc.) Hidden
 Citavi 4 (HKLM-x32\...\{CC0A85B2-734A-45B3-B678-05F6A6499AC7}) (Version: 4.0.0.12 - Swiss Academic Software)
 Conexant Polaris Unused CIR Function (HKLM\...\Uninstaller5135022212b) (Version: 1.0.0.0 - Conexant Systems)
 CyberLink PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 9.0.0.3815a - CyberLink Corp.)
 CyberLink PowerDirector (Version: 9.0.0.3815a - CyberLink Corp.) Hidden
 Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{349F73CA-653A-43A6-AE77-970B07D6EDA0}) (Version:  - Microsoft)
 Dropbox (HKCU\...\Dropbox) (Version: 2.6.33 - Dropbox, Inc.)
 Evernote (HKLM-x32\...\{F761359C-9CED-45AE-9A51-9D6605CD55C4}) (Version: 3.5.4.2224 - Evernote Corp.)
 Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited)
 FaceFilter Studio Brother Edition (HKLM-x32\...\{F59205C8-E5FB-43F5-AAB2-16C1760D4F59}) (Version: 1.0 - )
 Google Chrome (HKLM-x32\...\Google Chrome) (Version: 34.0.1847.137 - Google Inc.)
 Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.)
 Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
 Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) Hidden
 ifolor Designer (HKLM-x32\...\ifolor-Designer) (Version: 3.2.10.0 - Ifolor AG)
 Intel PROSet Wireless (Version:  - ) Hidden
 Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
 Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
 Intel(R) PROSet/Wireless WiFi-Software (HKLM\...\{D16A2127-B927-4379-B153-3DEC091E4EEB}) (Version: 13.02.1000 - Intel Corporation)
 Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.0.1014 - Intel Corporation)
 Intel(R) Turbo Boost Technology Driver (HKLM-x32\...\{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}) (Version: 01.02.00.1002 - Intel Corporation)
 Java 7 Update 9 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217009FF}) (Version: 7.0.90 - Oracle)
 Java Auto Updater (x32 Version: 2.1.9.0 - Sun Microsystems, Inc.) Hidden
 Java SE Development Kit 7 Update 9 (HKLM-x32\...\{32A3A4F4-B792-11D6-A78A-00B0D0170090}) (Version: 1.7.0.90 - Oracle)
 Java(TM) 6 Update 20 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86416020FF}) (Version: 6.0.200 - Sun Microsystems, Inc.)
 Java(TM) 6 Update 24 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216020FF}) (Version: 6.0.240 - Sun Microsystems, Inc.)
 Junk Mail filter update (x32 Version: 14.0.8117.416 - Microsoft Corporation) Hidden
 Malwarebytes Anti-Malware Version 2.0.1.1004 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.1.1004 - Malwarebytes Corporation)
 Media Gallery (Version: 1.3.0 - Sony Corporation) Hidden
 Media Gallery (x32 Version: 1.3.0.06230 - Sony Corporation) Hidden
 Microsoft .NET Framework 4 Client Profile DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
 Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
 Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation)
 Microsoft .NET Framework 4.5 (Version: 4.5.50709 - Microsoft Corporation) Hidden
 Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
 Microsoft Choice Guard (x32 Version: 2.0.48.0 - Microsoft Corporation) Hidden
 Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
 Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office Groove MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office InfoPath MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
 Microsoft Office Professional Plus 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
 Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
 Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
 Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
 Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
 Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
 Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
 Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
 Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla)
 Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
 MSVCRT (x32 Version: 14.0.1468.721 - Microsoft) Hidden
 MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
 MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation)
 MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
 MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation)
 NetBeans IDE 7.2.1 (HKLM-x32\...\nbi-nb-base-7.2.1.0.201210100934) (Version: 7.2.1 - NetBeans.org)
 Nokia Connectivity Cable Driver (HKLM-x32\...\{25CFEF55-A945-41FC-86ED-76469F31DF37}) (Version: 7.1.41.0 - Nokia)
 Nokia Music Player (HKLM-x32\...\{4FCB1267-7380-4EBA-9A6C-69809C6E8227}) (Version: 2.5.11021 - Nokia Music Player)
 Nokia_Multimedia_Common_Components_2_5 (HKLM-x32\...\{25F61E72-AAA4-4607-95D2-1E5139C98FFB}) (Version: 2.7.69 - Nokia)
 Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.1.17869 - Symantec Corporation)
 PC Connectivity Solution (HKLM-x32\...\{4B28C077-9958-45F1-8BB4-CBF90A69AD4E}) (Version: 11.4.15.0 - Nokia)
 PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.203.0 - Tracker Software Products Ltd)
 PMB (HKLM-x32\...\{B6A98E5F-D6A7-46FB-9E9D-1F7BF443491C}) (Version: 5.3.00.06040 - Sony Corporation)
 PMB VAIO Edition Guide (x32 Version: 1.3.00.06040 - Sony Corporation) Hidden
 PMB VAIO Edition plug-in (Click to Disc) (Version: 3.3.00 - Sony Corporation) Hidden
 PMB VAIO Edition plug-in (Click to Disc) (x32 Version: 3.3.00 - Sony Corporation) Hidden
 PMB VAIO Edition plug-in (Click to Disc) (x32 Version: 3.3.00.06180 - Sony Corporation) Hidden
 PMB VAIO Edition plug-in (VAIO Image Optimizer) (x32 Version: 1.3.00.06110 - Sony Corporation) Hidden
 PMB VAIO Edition plug-in (VAIO Movie Story) (Version: 2.3.00 - Sony Corporation) Hidden
 PMB VAIO Edition plug-in (VAIO Movie Story) (x32 Version: 2.3.00 - Sony Corporation) Hidden
 PMB VAIO Edition plug-in (VAIO Movie Story) (x32 Version: 2.3.00.06180 - Sony Corporation) Hidden
 R for Windows 2.13.2 (HKLM\...\R for Windows 2.13.2_is1) (Version: 2.13.2 - R Development Core Team)
 Realtek HDMI Audio Driver for ATI (HKLM-x32\...\{5449FB4F-1802-4D5B-A6D8-087DB1142147}) (Version: 6.0.1.6034 - Realtek Semiconductor Corp.)
 Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6098 - Realtek Semiconductor Corp.)
 Remote Play mit PlayStation®3 (HKLM-x32\...\{07441A52-E208-478A-92B7-5C337CA8C131}) (Version: 1.0.2.06210 - Sony Corporation)
 Remote Play with PlayStation 3 (x32 Version: 1.0.2.06210 - Sony Corporation) Hidden
 Remote-Tastatur mit PlayStation 3 (HKLM-x32\...\{65B138AE-F636-4D4C-BA5D-A06E21E47C53}) (Version: 1.0.2.06170 - Sony Corporation)
 Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
 Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version:  - Microsoft) Hidden
 Skype Click to Call (HKLM-x32\...\{BB285C9F-C821-4770-8970-56C4AB52C87E}) (Version: 7.1.15383.6004 - Microsoft Corporation)
 Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)
 SmartSound Quicktracks for Premiere Elements 8.0 (HKLM-x32\...\InstallShield_{4685A344-6718-4923-AA9D-158A0A2E1CFB}) (Version: 3.11.3090 - SmartSound Software Inc)
 SmartSound Quicktracks for Premiere Elements 8.0 (x32 Version: 3.11.3090 - SmartSound Software Inc) Hidden
 Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.3.39 - Safer-Networking Ltd.)
 Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{B4A38370-2ADB-46B0-A1B0-0C4A2F7DCA31}) (Version:  - Microsoft)
 Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version:  - Microsoft)
 Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version:  - Microsoft)
 Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version:  - Microsoft)
 Update for Microsoft InfoPath 2010 (KB2817396) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{39767ECA-1731-45DB-AB5B-6BF40E151D66}) (Version:  - Microsoft)
 Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version:  - Microsoft)
 Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version:  - Microsoft)
 Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version:  - Microsoft)
 Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version:  - Microsoft)
 Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version:  - Microsoft)
 Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version:  - Microsoft)
 Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version:  - Microsoft)
 Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{35698CB7-AAA2-4577-B505-DBFF504AEF23}) (Version:  - Microsoft)
 Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version:  - Microsoft)
 Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}) (Version:  - Microsoft)
 Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{BA610006-2C39-4419-9834-CF61AB24810A}) (Version:  - Microsoft)
 Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.PROPLUS_{C70D2038-A2C4-4A99-87DE-5272BB44F0CE}) (Version:  - Microsoft)
 Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.PROPLUS_{82F87E28-B18E-46D6-A399-E2F19CF5949B}) (Version:  - Microsoft)
 Update for Microsoft Office 2010 (KB2878225) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{EFF5EBA3-40AD-4859-85E7-3C1CF4F297EB}) (Version:  - Microsoft)
 Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version:  - Microsoft)
 Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version:  - Microsoft)
 Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version:  - Microsoft)
 Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.PROPLUS_{A0657506-69DC-44AE-8DC1-58E7C6F5B1C9}) (Version:  - Microsoft)
 Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{2BA40F82-F3A4-441C-BF1A-ED4C42FF4872}) (Version:  - Microsoft)
 Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.PROPLUS_{40EC8FB1-5202-469D-9232-C28FB1C6FC64}) (Version:  - Microsoft)
 Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version:  - Microsoft)
 Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version:  - Microsoft)
 Update for Microsoft Visio 2010 (KB2880526) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{7B29D8B8-6A87-496C-A65E-B935E740448A}) (Version:  - Microsoft)
 Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{38CF30E4-3348-4BD1-A859-B630C355A56F}) (Version:  - Microsoft)
 VAIO - Media Gallery (HKLM-x32\...\{DD88F979-FA58-41AC-980C-A6E1A82B61D9}) (Version: 1.3.0.06230 - Sony Corporation)
 VAIO - PMB VAIO Edition Guide (HKLM-x32\...\InstallShield_{88C252C8-A7EE-4B60-BF74-8E5919A8048F}) (Version: 1.3.00.06040 - Sony Corporation)
 VAIO - PMB VAIO Edition plug-in (Click to Disc) (HKLM-x32\...\InstallShield_{4DCEA9C1-4D6E-41BF-A854-28CFA8B56DBF}) (Version: 3.3.00.06180 - Sony Corporation)
 VAIO - PMB VAIO Edition plug-in (VAIO Image Optimizer) (HKLM-x32\...\InstallShield_{1873FFC1-FDCB-47E1-B7C7-F418211E3530}) (Version: 1.3.00.06110 - Sony Corporation)
 VAIO - PMB VAIO Edition plug-in (VAIO Movie Story) (HKLM-x32\...\InstallShield_{B25563A0-41F4-4A81-A6C1-6DBC0911B1F3}) (Version: 2.3.00.06180 - Sony Corporation)
 VAIO Care (HKLM-x32\...\{36C5BBF0-E5BF-4DE1-B684-7E90B0C93FB5}) (Version: 6.4.1.05290 - Sony Corporation)
 VAIO Care (x32 Version: 6.4.1.05290 - Sony Corporation) Hidden
 VAIO Control Center (HKLM-x32\...\{72042FA6-5609-489F-A8EA-3C2DD650F667}) (Version: 4.3.0.05310 - Sony Corporation)
 VAIO Data Restore Tool (HKLM-x32\...\{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}) (Version: 1.4.0.05240 - Sony Corporation)
 VAIO Data Restore Tool (x32 Version: 1.4.0.05240 - Sony Corporation) Hidden
 VAIO DVD Menu Data (HKLM-x32\...\{596BED91-A1D8-4DF1-8CD1-1C777F7588AC}) (Version: 2.2.00.05120 - Sony Corporation)
 VAIO Gate (HKLM-x32\...\{A7C30414-2382-4086-B0D6-01A88ABA21C3}) (Version: 2.2.0.06080 - Sony Corporation)
 VAIO Gate Default (HKLM-x32\...\{B7546697-2A80-4256-A24B-1C33163F535B}) (Version: 2.2.0.07020 - Sony Corporation)
 VAIO Hardware Diagnostics (x32 Version: 4.0.0.06230 - Sony Corporation) Hidden
 VAIO Media plus (HKLM-x32\...\{8DE50158-80AA-4FF2-9E9F-0A7C46F71FCD}) (Version: 2.1.0.18210 - Sony Corporation)
 VAIO Media plus (Version: 2.1.0 - Sony Corporation) Hidden
 VAIO Media plus (x32 Version: 2.1.0.18210 - Sony Corporation) Hidden
 VAIO Media plus Opening Movie (HKLM-x32\...\{9238E8A4-BEBA-43A3-B926-769BDBF194C5}) (Version: 2.1.0.13220 - Sony Corporation)
 VAIO Movie Story Template Data (HKLM-x32\...\InstallShield_{6FA8BA2C-052B-4072-B8E2-2302C268BE9E}) (Version: 2.3.00.06040 - Sony Corporation)
 VAIO Movie Story Template Data (x32 Version: 2.3.00.06040 - Sony Corporation) Hidden
 VAIO Quick Web Access (HKLM-x32\...\splashtop) (Version: 1.3.4.2 - Sony Corporation)
 VAIO Quick Web Access (x32 Version: 1.3.4.2 - Sony Corporation) Hidden
 VAIO Sample Contents (HKLM-x32\...\{547C9EB4-4CA6-402F-9D1B-8BD30DC71E44}) (Version: 1.3.0.06041 - Sony Corporation)
 VAIO screensaver (HKLM-x32\...\VAIO screensaver) (Version: 1.0.0.0 - Sony Europe)
 VAIO Smart Network (HKLM-x32\...\{0899D75A-C2FC-42EA-A702-5B9A5F24EAD5}) (Version: 3.3.0.06080 - Sony Corporation)
 VAIO Update (HKLM-x32\...\{9FF95DA2-7DA1-4228-93B7-DED7EC02B6B2}) (Version: 6.1.1.10250 - Sony Corporation)
 VAIO-Handbuch (HKLM-x32\...\{C6E893E7-E5EA-4CD5-917C-5443E753FCBD}) (Version: 1.1.0.05280 - Sony Corporation)
 VAIO-Support für Übertragungen (HKLM-x32\...\{5DDAFB4B-C52E-468A-9E23-3B0CEEB671BF}) (Version: 1.2.0.06230 - Sony Corporation)
 Video Grabber (HKLM\...\Uninstaller5135022420c) (Version: 1.0.0.0 - Conexant Systems)
 VU5x64 (Version: 1.1.0 - Sony Corporation ) Hidden
 VU5x86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden
 VU5x86 (x32 Version: 1.1.0 - Sony Corporation ) Hidden
 WIDCOMM Bluetooth Software (HKLM\...\{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}) (Version: 6.3.0.5600 - Broadcom Corporation)
 Windows Live Anmelde-Assistent (HKLM-x32\...\{52B97218-98CB-4B8B-9283-D213C85E1AA4}) (Version: 5.000.818.5 - Microsoft Corporation)
 Windows Live Call (x32 Version: 14.0.8117.0416 - Microsoft Corporation) Hidden
 Windows Live Communications Platform (x32 Version: 14.0.8117.416 - Microsoft Corporation) Hidden
 Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
 Windows Live Essentials (x32 Version: 14.0.8117.416 - Microsoft Corporation) Hidden
 Windows Live Fotogalerie (x32 Version: 14.0.8117.416 - Microsoft Corporation) Hidden
 Windows Live Mail (x32 Version: 14.0.8117.0416 - Microsoft Corporation) Hidden
 Windows Live Messenger (x32 Version: 14.0.8117.0416 - Microsoft Corporation) Hidden
 Windows Live Sync (HKLM-x32\...\{586509F0-350D-48B5-B763-9CC2F8D96C4C}) (Version: 14.0.8117.416 - Microsoft Corporation)
 Windows Live Writer (x32 Version: 14.0.8117.0416 - Microsoft Corporation) Hidden
 Windows Live-Uploadtool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
 Windows-Treiberpaket - Nokia pccsmcfd  (08/22/2008 7.0.0.0) (HKLM\...\FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D) (Version: 08/22/2008 7.0.0.0 - Nokia)
 WinRAR 4.20 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
 Yahoo! Detect (HKLM-x32\...\YTdetect) (Version:  - )
 Yahoo! Messenger (HKLM-x32\...\Yahoo! Messenger) (Version:  - Yahoo! Inc.)
 Yahoo! Software Update (HKLM-x32\...\Yahoo! Software Update) (Version:  - )
 
 ==================== Restore Points  =========================
 
 13-04-2014 01:02:07 Windows Update
 29-04-2014 19:20:50 Geplanter Prüfpunkt
 16-05-2014 06:59:10 Windows Update
 
 ==================== Hosts content: ==========================
 
 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
 
 ==================== Scheduled Tasks (whitelisted) =============
 
 Task: {073C2E77-8A48-4B75-9E01-7836816E8944} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-695791689-3950581027-3840609033-1001UA => C:\Users\Quynh Trang\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-05-12] (Facebook Inc.)
 Task: {0824B37A-163E-42C3-A7FF-F1F573C04335} - System32\Tasks\Sony Corporation\VAIO Care\VCOneClick => C:\Program Files\Sony\VAIO Care\VCOneClick.exe [2011-02-16] (Sony Corporation)
 Task: {12C83175-6094-4425-979C-3CD5EAB9BD3D} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe
 Task: {165956E9-0032-4FCF-BEBE-6DDDD9D7BC6C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-11-15] (Google Inc.)
 Task: {19A5900D-404C-4FCA-B581-BB5DA1713A66} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-695791689-3950581027-3840609033-1001Core => C:\Users\Quynh Trang\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-05-12] (Facebook Inc.)
 Task: {1C709ECA-A2F9-461B-BDDB-E5E3A89BFC9D} - System32\Tasks\SONY\Remote Keyboard with PlayStation 3\Remote Keyboard with PlayStation 3 => C:\Program Files\Sony\Remote Keyboard with PlayStation 3\VBTKBUtil.exe [2010-06-17] (Sony Corporation)
 Task: {28D6AE06-A318-48A5-AC53-A708ED4ECA97} - System32\Tasks\SONY\VAIO Power Management\VPM Session Change => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2010-06-21] (Sony Corporation)
 Task: {2C40839D-0CD6-4291-BD9E-2BAF533CC615} - System32\Tasks\SONY\VAIO Gate\StartExecuteProxy => C:\Program Files\Sony\VAIO Gate\ExecutionProxy.exe [2010-06-08] (Sony Corporation)
 Task: {2CB0142F-7E7F-4363-A4EA-E1428014F245} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14] (Adobe Systems Incorporated)
 Task: {37EEDFF0-BC46-403C-8D0D-3A6B59942511} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
 Task: {4445E5AD-4E06-4094-8BA9-D38A47B6FC8F} - System32\Tasks\SONY\VAIO Wallpaper Setting Tool\VAIO Wallpaper Setting Tool => C:\Program Files (x86)\Sony\VAIO Wallpaper Setting Tool\VWSet.exe
 Task: {5E88C512-00CD-450F-A34D-781D922F8A05} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-11-15] (Google Inc.)
 Task: {702A3674-6E0C-4672-B749-C9213B819047} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update Self Repair => C:\Program Files\Sony\VAIO Update\VUSR.exe [2012-10-26] (Sony Corporation)
 Task: {799E8B00-7462-4785-B249-387A1A92B068} - System32\Tasks\SONY\VAIO Power Management\VPM Unlock => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2010-06-21] (Sony Corporation)
 Task: {8CFA0C7F-86B7-4E2C-8ED2-D05DED6B3E07} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [2012-10-26] (Sony Corporation)
 Task: {9A7379AA-B533-4162-A759-91EC8010A32E} - System32\Tasks\SONY\SUS-BCF\Level4Daily => C:\Program Files (x86)\Sony\Setting Utility Series\WBCBatteryCare.exe [2010-05-31] (Sony Corporation)
 Task: {BBAA4F34-A7B9-4A0A-82B1-9C2C98CE2C8C} - System32\Tasks\Sony Corporation\VAIO Care\VAIO Care => C:\Program Files\Sony\VAIO Care\VCsystray.exe [2011-02-16] (Sony Corporation)
 Task: {D78FD9A4-6E68-470D-9F5C-0CD7B088882A} - System32\Tasks\SONY\VAIO Gate\VAIO Gate => C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe [2010-06-08] (Sony Corporation)
 Task: {DDA91E43-F45B-405D-A924-5362290F34F5} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS.exe
 Task: {EC5A103B-94A1-4666-9199-E27749317879} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
 Task: {F09A43DF-1B49-467E-9F2F-CE26566CA232} - System32\Tasks\SONY\VAIO Power Management\VPM Logon Start => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2010-06-21] (Sony Corporation)
 Task: {FE5FD1B1-4390-4BFF-AE2E-A3728BEF5933} - System32\Tasks\SONY\SUS-BCF\Level4Month => C:\Program Files (x86)\Sony\Setting Utility Series\WBCBatteryCare.exe [2010-05-31] (Sony Corporation)
 Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
 Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-695791689-3950581027-3840609033-1001Core.job => C:\Users\Quynh Trang\AppData\Local\Facebook\Update\FacebookUpdate.exe
 Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-695791689-3950581027-3840609033-1001UA.job => C:\Users\Quynh Trang\AppData\Local\Facebook\Update\FacebookUpdate.exe
 Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
 Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
 
 ==================== Loaded Modules (whitelisted) =============
 
 2010-03-05 10:21 - 2010-03-05 10:21 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\Libeay32.dll
 2013-03-04 22:19 - 2012-06-22 10:31 - 00386344 ____R () C:\Program Files\CyberLink\Shared files\RichVideo64.exe
 2013-09-05 01:17 - 2013-09-05 01:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
 2010-11-15 11:01 - 2010-11-15 11:01 - 00270336 _____ () C:\Windows\assembly\GAC_MSIL\CLI.Aspect.CrossDisplay.Graphics.Dashboard\1.0.0.0__90ba9c70f846762e\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
 2011-07-27 19:52 - 2011-02-25 17:14 - 00297472 _____ () C:\Program Files\Sony\VAIO Care\CRM\ManagedVAIORecoveryMedia.dll
 2011-07-27 19:52 - 2011-02-25 17:14 - 00192000 _____ () C:\Program Files\Sony\VAIO Care\CRM\VAIORecovery.dll
 2011-07-27 19:52 - 2011-02-25 17:14 - 00070656 _____ () C:\Program Files\Sony\VAIO Care\CRM\Logging.dll
 2011-07-27 19:52 - 2011-02-25 17:14 - 00063488 _____ () C:\Program Files\Sony\VAIO Care\CRM\VAIOCommon.dll
 2011-07-27 19:52 - 2011-02-25 17:14 - 00215040 _____ () C:\Program Files\Sony\VAIO Care\CRM\OsServices.dll
 2011-07-27 19:52 - 2011-02-25 17:14 - 00043008 _____ () C:\Program Files\Sony\VAIO Care\CRM\PluginFactory.dll
 2011-07-27 19:52 - 2011-02-25 17:14 - 00260608 _____ () C:\Program Files\Sony\VAIO Care\CRM\RecoveryPartitionManager.dll
 2011-07-27 19:52 - 2011-02-25 17:14 - 00043520 _____ () C:\Program Files\Sony\VAIO Care\CRM\XMLTools.dll
 2011-07-27 19:52 - 2011-02-25 17:14 - 00059904 _____ () C:\Program Files\Sony\VAIO Care\CRM\VAIOInstallAppsDrivers.dll
 2011-07-27 19:52 - 2011-02-25 17:14 - 00157696 _____ () C:\Program Files\Sony\VAIO Care\CRM\InstallDB.dll
 2011-07-27 19:52 - 2011-02-25 17:14 - 00138752 _____ () C:\Program Files\Sony\VAIO Care\CRM\InstallationTools.dll
 2011-07-27 19:52 - 2011-02-25 17:14 - 00025600 _____ () C:\Program Files\Sony\VAIO Care\CRM\VAIOUtility.dll
 2014-05-16 15:18 - 2014-04-25 14:11 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
 2014-05-16 15:18 - 2014-04-25 14:11 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
 2014-05-16 15:18 - 2014-04-25 14:11 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
 2014-05-16 15:18 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
 2014-05-16 15:18 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
 2013-09-05 01:14 - 2013-09-05 01:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
 2014-05-18 14:36 - 2014-05-18 14:36 - 00041984 _____ () C:\Users\Quynh Trang\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpbohhjd.dll
 2013-10-19 01:55 - 2013-10-19 01:55 - 25100288 _____ () C:\Users\Quynh Trang\AppData\Roaming\Dropbox\bin\libcef.dll
 2010-11-15 10:48 - 2010-05-31 20:18 - 00013824 _____ () C:\Program Files (x86)\Sony\VAIO Event Service\VESBasePS.dll
 2010-11-15 10:48 - 2010-05-31 20:18 - 00013312 _____ () C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSubPS.dll
 2011-06-21 16:46 - 2010-06-01 10:17 - 00929792 _____ () C:\Program Files (x86)\Yahoo!\Messenger\yui.dll
 2013-01-13 17:25 - 2013-01-13 17:25 - 00170496 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\d89f0252d910d617de1de783a812f840\IsdiInterop.ni.dll
 2010-10-12 19:14 - 2010-03-04 05:08 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
 2014-05-16 03:04 - 2014-05-08 01:29 - 00065352 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\chrome_elf.dll
 2014-05-16 03:04 - 2014-05-08 01:29 - 00674632 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\libglesv2.dll
 2014-05-16 03:04 - 2014-05-08 01:29 - 00093000 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\libegl.dll
 2014-05-16 03:04 - 2014-05-08 01:29 - 04081480 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\pdf.dll
 2014-05-16 03:04 - 2014-05-08 01:29 - 00390472 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\ppGoogleNaClPluginChrome.dll
 2014-05-16 03:04 - 2014-05-08 01:29 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\ffmpegsumo.dll
 2014-05-16 03:04 - 2014-05-08 01:29 - 13695816 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\PepperFlash\pepflashplayer.dll
 
 ==================== Alternate Data Streams (whitelisted) =========
 
 
 ==================== Safe Mode (whitelisted) ===================
 
 HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service"
 HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver"
 HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service"
 HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver"
 
 ==================== EXE Association (whitelisted) =============
 
 
 ==================== Disabled items from MSCONFIG ==============
 
 
 ==================== Faulty Device Manager Devices =============
 
 Name: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64
 Description: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64
 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
 Manufacturer: Cisco Systems
 Service: vpnva
 Problem: : This device is disabled. (Code 22)
 Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
 
 ==================== Event log errors: =========================
 
 Application errors:
 ==================
 Error: (05/18/2014 01:42:06 PM) (Source: SampleCollector) (EventID: 259) (User: )
 Description: init_sstates_file:CreateFile:SState: Failed with error 0x5: Zugriff verweigert
 
 Error: (05/18/2014 10:39:05 AM) (Source: SampleCollector) (EventID: 259) (User: )
 Description: CreateFile:SState: Failed with error 0x3: Das System kann den angegebenen Pfad nicht finden.
 
 Error: (05/17/2014 11:56:30 AM) (Source: Application Error) (EventID: 1000) (User: )
 Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.1.7600.16768, Zeitstempel: 0x4d688122
 Name des fehlerhaften Moduls: Explorer.EXE, Version: 6.1.7600.16768, Zeitstempel: 0x4d688122
 Ausnahmecode: 0xc000041d
 Fehleroffset: 0x0000000000001290
 ID des fehlerhaften Prozesses: 0xc2c
 Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0
 Pfad der fehlerhaften Anwendung: Explorer.EXE1
 Pfad des fehlerhaften Moduls: Explorer.EXE2
 Berichtskennung: Explorer.EXE3
 
 Error: (05/16/2014 08:43:06 AM) (Source: Application Error) (EventID: 1000) (User: )
 Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.1.7600.16768, Zeitstempel: 0x4d688122
 Name des fehlerhaften Moduls: Explorer.EXE, Version: 6.1.7600.16768, Zeitstempel: 0x4d688122
 Ausnahmecode: 0xc000041d
 Fehleroffset: 0x0000000000001290
 ID des fehlerhaften Prozesses: 0xc7c
 Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0
 Pfad der fehlerhaften Anwendung: Explorer.EXE1
 Pfad des fehlerhaften Moduls: Explorer.EXE2
 Berichtskennung: Explorer.EXE3
 
 Error: (05/14/2014 11:19:05 AM) (Source: Office Software Protection Platform Service) (EventID: 1012) (User: )
 Description: Acquisition of Product Certificate failed. hr=0xC004C003
 Sku Id=2745e581-565a-4670-ae90-6bf7c57ffe43
 
 Error: (05/14/2014 11:19:05 AM) (Source: Office Software Protection Platform Service) (EventID: 8200) (User: )
 Description: License acquisition failure details.
 hr=0xC004C003
 
 Error: (05/14/2014 11:18:57 AM) (Source: Office Software Protection Platform Service) (EventID: 1012) (User: )
 Description: Acquisition of Product Certificate failed. hr=0xC004C003
 Sku Id=2745e581-565a-4670-ae90-6bf7c57ffe43
 
 Error: (05/14/2014 11:18:57 AM) (Source: Office Software Protection Platform Service) (EventID: 8200) (User: )
 Description: License acquisition failure details.
 hr=0xC004C003
 
 Error: (05/14/2014 11:18:43 AM) (Source: Office Software Protection Platform Service) (EventID: 1012) (User: )
 Description: Acquisition of Product Certificate failed. hr=0xC004C003
 Sku Id=2745e581-565a-4670-ae90-6bf7c57ffe43
 
 Error: (05/14/2014 11:18:43 AM) (Source: Office Software Protection Platform Service) (EventID: 8200) (User: )
 Description: License acquisition failure details.
 hr=0xC004C003
 
 
 System errors:
 =============
 Error: (05/18/2014 02:34:18 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
 Description: Der Dienst "Windows-Zeitgeber" wurde mit folgendem Fehler beendet:
 %%1115
 
 Error: (05/17/2014 11:28:50 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
 Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
 %%1068
 
 Error: (05/17/2014 11:28:50 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
 Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
 %%1068
 
 Error: (05/17/2014 11:28:50 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
 Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
 %%1068
 
 Error: (05/17/2014 11:28:50 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
 Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
 %%1068
 
 Error: (05/17/2014 11:28:50 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
 Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
 %%1068
 
 Error: (05/17/2014 11:28:50 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
 Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
 %%1068
 
 Error: (05/17/2014 11:28:50 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
 Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
 %%1068
 
 Error: (05/17/2014 11:28:50 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
 Description: Der Dienst "Netzwerklistendienst" ist vom Dienst "NLA (Network Location Awareness)" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
 %%1068
 
 Error: (05/17/2014 11:28:50 PM) (Source: DCOM) (EventID: 10005) (User: )
 Description: 1068netprofm{A47979D2-C419-11D9-A5B4-001185AD2B89}
 
 
 Microsoft Office Sessions:
 =========================
 Error: (05/18/2014 01:42:06 PM) (Source: SampleCollector) (EventID: 259) (User: )
 Description: init_sstates_file:CreateFile:SState: Failed with error 0x5: Zugriff verweigert
 
 Error: (05/18/2014 10:39:05 AM) (Source: SampleCollector) (EventID: 259) (User: )
 Description: CreateFile:SState: Failed with error 0x3: Das System kann den angegebenen Pfad nicht finden.
 
 Error: (05/17/2014 11:56:30 AM) (Source: Application Error) (EventID: 1000) (User: )
 Description: Explorer.EXE6.1.7600.167684d688122Explorer.EXE6.1.7600.167684d688122c000041d0000000000001290c2c01cf71031722f09dC:\Windows\Explorer.EXEC:\Windows\Explorer.EXE84b9045e-dda9-11e3-b19a-5442496e10f6
 
 Error: (05/16/2014 08:43:06 AM) (Source: Application Error) (EventID: 1000) (User: )
 Description: Explorer.EXE6.1.7600.167684d688122Explorer.EXE6.1.7600.167684d688122c000041d0000000000001290c7c01cf7030811fa8f8C:\Windows\Explorer.EXEC:\Windows\Explorer.EXE557f6859-dcc5-11e3-b0bf-5442496e10f6
 
 Error: (05/14/2014 11:19:05 AM) (Source: Office Software Protection Platform Service) (EventID: 1012) (User: )
 Description: hr=0xC004C0032745e581-565a-4670-ae90-6bf7c57ffe43
 
 Error: (05/14/2014 11:19:05 AM) (Source: Office Software Protection Platform Service) (EventID: 8200) (User: )
 Description: hr=0xC004C00300010001(0x00000000, 11:19:05:485 - hxxp://go.microsoft.com/fwlink/?LinkID=120751)
 00020001(0x00000000, 11:19:05:485)
 00030001(0x00000000, 11:19:05:485 - hxxp://go.microsoft.com)
 00030002(0x00000000, 11:19:05:485 - 1)
 00020005(0x00000000, 11:19:05:485 - 0)
 0002000C(0x00000000, 11:19:05:678 - 302)
 0002000E(0x00000000, 11:19:05:678 - https://activation.sls.microsoft.com/slpkc/SLCertifyProduct.asmx?configextension=o14)
 00020001(0x00000000, 11:19:05:678)
 00030001(0x00000000, 11:19:05:678 - https://activation.sls.microsoft.com)
 00030002(0x00000000, 11:19:05:678 - 1)
 00020005(0x00000000, 11:19:05:678 - 0)
 0002000C(0x00000000, 11:19:05:887 - 500)
 00010002(0x8004FC01, 11:19:05:887 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="hxxp://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="hxxp://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="hxxp://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C003</HRESULT><Messages><Message>103 (Activation) - [PA Product key blocked.  ---> Product key blocked]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>)
 00010003(0x8004FC01, 11:19:05:887)
 
 Error: (05/14/2014 11:18:57 AM) (Source: Office Software Protection Platform Service) (EventID: 1012) (User: )
 Description: hr=0xC004C0032745e581-565a-4670-ae90-6bf7c57ffe43
 
 Error: (05/14/2014 11:18:57 AM) (Source: Office Software Protection Platform Service) (EventID: 8200) (User: )
 Description: hr=0xC004C00300010001(0x00000000, 11:18:56:710 - hxxp://go.microsoft.com/fwlink/?LinkID=120751)
 00020001(0x00000000, 11:18:56:710)
 00030001(0x00000000, 11:18:56:710 - hxxp://go.microsoft.com)
 00030002(0x00000000, 11:18:56:710 - 1)
 00020005(0x00000000, 11:18:56:710 - 0)
 0002000C(0x00000000, 11:18:56:901 - 302)
 0002000E(0x00000000, 11:18:56:901 - https://activation.sls.microsoft.com/slpkc/SLCertifyProduct.asmx?configextension=o14)
 00020001(0x00000000, 11:18:56:901)
 00030001(0x00000000, 11:18:56:901 - https://activation.sls.microsoft.com)
 00030002(0x00000000, 11:18:56:901 - 1)
 00020005(0x00000000, 11:18:56:901 - 0)
 0002000C(0x00000000, 11:18:57:107 - 500)
 00010002(0x8004FC01, 11:18:57:107 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="hxxp://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="hxxp://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="hxxp://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C003</HRESULT><Messages><Message>103 (Activation) - [PA Product key blocked.  ---> Product key blocked]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>)
 00010003(0x8004FC01, 11:18:57:107)
 
 Error: (05/14/2014 11:18:43 AM) (Source: Office Software Protection Platform Service) (EventID: 1012) (User: )
 Description: hr=0xC004C0032745e581-565a-4670-ae90-6bf7c57ffe43
 
 Error: (05/14/2014 11:18:43 AM) (Source: Office Software Protection Platform Service) (EventID: 8200) (User: )
 Description: hr=0xC004C00300010001(0x00000000, 11:18:43:509 - hxxp://go.microsoft.com/fwlink/?LinkID=120751)
 00020001(0x00000000, 11:18:43:509)
 00030001(0x00000000, 11:18:43:509 - hxxp://go.microsoft.com)
 00030002(0x00000000, 11:18:43:509 - 1)
 00020005(0x00000000, 11:18:43:509 - 0)
 0002000C(0x00000000, 11:18:43:703 - 302)
 0002000E(0x00000000, 11:18:43:703 - https://activation.sls.microsoft.com/slpkc/SLCertifyProduct.asmx?configextension=o14)
 00020001(0x00000000, 11:18:43:704)
 00030001(0x00000000, 11:18:43:704 - https://activation.sls.microsoft.com)
 00030002(0x00000000, 11:18:43:704 - 1)
 00020005(0x00000000, 11:18:43:704 - 0)
 0002000C(0x00000000, 11:18:43:916 - 500)
 00010002(0x8004FC01, 11:18:43:916 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="hxxp://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="hxxp://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="hxxp://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C003</HRESULT><Messages><Message>103 (Activation) - [PA Product key blocked.  ---> Product key blocked]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>)
 00010003(0x8004FC01, 11:18:43:916)
 
 
 ==================== Memory info ===========================
 
 Percentage of memory in use: 52%
 Total physical RAM: 3950.11 MB
 Available physical RAM: 1873.44 MB
 Total Pagefile: 7898.35 MB
 Available Pagefile: 5114.3 MB
 Total Virtual: 8192 MB
 Available Virtual: 8191.84 MB
 
 ==================== Drives ================================
 
 Drive c: () (Fixed) (Total:284.55 GB) (Free:197.84 GB) NTFS
 
 ==================== MBR & Partition Table ==================
 
 ========================================================
 Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 53FA1C7C)
 Partition 1: (Not Active) - (Size=13 GB) - (Type=27)
 Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
 Partition 3: (Not Active) - (Size=285 GB) - (Type=07 NTFS)
 
 ==================== End Of Log ============================
 |