| LegendaryE |  18.05.2014 07:20 |         Code:  
 C:\WINDOWS\system32\SettingsHandlers.dll 
2014-04-24 20:30 - 2014-04-14 20:13 - 00096168 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 
2014-04-24 20:30 - 2014-04-14 20:05 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaws.exe 
2014-04-24 20:30 - 2014-04-14 20:05 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaw.exe 
2014-04-24 20:30 - 2014-04-14 20:04 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\java.exe 
2014-04-24 20:29 - 2014-04-24 20:30 - 00004253 _____ () C:\WINDOWS\SysWOW64\jupdate-1.7.0_55-b14.log   
==================== One Month Modified Files and Folders =======   
2014-05-18 08:13 - 2014-05-18 08:13 - 00019893 _____ () C:\Users\Eric\Downloads\FRST.txt 
2014-05-18 08:13 - 2014-05-18 08:12 - 00000000 ____D () C:\FRST 
2014-05-18 08:12 - 2014-05-18 08:12 - 02067456 _____ (Farbar) C:\Users\Eric\Downloads\FRST64.exe 
2014-05-18 08:11 - 2013-12-06 20:56 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 
2014-05-18 08:09 - 2013-12-02 12:01 - 00000000 __RDO () C:\Users\Eric\SkyDrive 
2014-05-18 08:09 - 2013-12-02 11:35 - 01961955 _____ () C:\WINDOWS\WindowsUpdate.log 
2014-05-18 08:09 - 2013-10-08 13:11 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 
2014-05-18 08:09 - 2013-10-08 12:56 - 00000062 _____ () C:\Users\Eric\AppData\Roaming\sp_data.sys 
2014-05-18 08:02 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru 
2014-05-17 22:06 - 2013-12-03 12:38 - 00003910 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{DC2613F6-1FF6-472D-B2AE-5163D4D355F8} 
2014-05-17 22:05 - 2013-10-08 13:05 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-15240065-1891577732-4114585445-1002 
2014-05-17 21:45 - 2013-09-29 21:04 - 00011940 _____ () C:\WINDOWS\PFRO.log 
2014-05-17 21:45 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 
2014-05-17 21:31 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 
2014-05-17 21:28 - 2013-08-22 16:46 - 00343955 _____ () C:\WINDOWS\setupact.log 
2014-05-17 21:25 - 2013-10-08 14:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung 
2014-05-17 21:25 - 2013-10-08 14:54 - 00000000 ____D () C:\Program Files (x86)\Samsung 
2014-05-17 21:24 - 2014-05-17 21:24 - 07080248 _____ () C:\Users\Eric\Downloads\MyPhoneExplorer_1.8.5.exe 
2014-05-17 21:12 - 2013-10-08 13:53 - 00000000 ____D () C:\Users\Eric\Documents\SelfMV 
2014-05-17 21:07 - 2013-10-08 13:52 - 00000000 ____D () C:\Users\Eric\Documents\samsung 
2014-05-17 21:04 - 2013-10-14 17:52 - 00000000 ____D () C:\Users\Eric\AppData\Roaming\Samsung 
2014-05-17 21:04 - 2013-08-15 15:46 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 
2014-05-17 20:50 - 2014-05-17 20:50 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp 
2014-05-17 20:50 - 2013-12-02 11:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM 
2014-05-17 15:26 - 2013-08-15 16:08 - 00003474 _____ () C:\WINDOWS\System32\Tasks\ASUS Live Update1 
2014-05-17 15:26 - 2013-08-15 16:08 - 00003464 _____ () C:\WINDOWS\System32\Tasks\ASUS Live Update2 
2014-05-16 21:15 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache 
2014-05-15 21:00 - 2013-10-08 12:57 - 00000000 ___RD () C:\Users\Eric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 
2014-05-15 21:00 - 2013-10-08 12:57 - 00000000 ___RD () C:\Users\Eric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 
2014-05-15 13:38 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ToastData 
2014-05-15 13:38 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 
2014-05-15 13:38 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 
2014-05-15 13:38 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore 
2014-05-15 13:38 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates 
2014-05-15 13:38 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows Defender 
2014-05-15 13:38 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 
2014-05-15 11:37 - 2013-10-13 19:21 - 00000000 ____D () C:\WINDOWS\system32\MRT 
2014-05-15 11:36 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 
2014-05-15 11:35 - 2013-10-13 19:21 - 93223848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 
2014-05-14 22:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 
2014-05-13 21:16 - 2013-12-06 20:56 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 
2014-05-13 21:14 - 2013-10-08 17:08 - 00002041 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk 
2014-05-13 21:14 - 2013-04-26 01:15 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk 
2014-05-12 10:15 - 2014-01-23 18:30 - 00000000 ____D () C:\Program Files (x86)\Opera 
2014-05-12 08:26 - 2013-09-30 06:14 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 
2014-05-12 08:26 - 2013-09-30 05:56 - 00765582 _____ () C:\WINDOWS\system32\perfh007.dat 
2014-05-12 08:26 - 2013-09-30 05:56 - 00159366 _____ () C:\WINDOWS\system32\perfc007.dat 
2014-05-12 08:19 - 2013-10-08 14:03 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 
2014-05-10 07:57 - 2014-05-10 07:57 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 
2014-05-06 06:40 - 2014-05-15 10:09 - 23544320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 
2014-05-06 05:25 - 2014-05-15 10:09 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 
2014-05-06 05:00 - 2014-05-15 10:09 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 
2014-05-06 04:10 - 2014-05-15 10:08 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 
2014-05-03 20:05 - 2014-05-03 20:03 - 00000000 ____D () C:\Users\Eric\Documents\Die Stämme DS 
2014-05-03 07:34 - 2014-05-03 07:34 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 
2014-05-03 07:34 - 2014-05-03 07:34 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 
2014-05-01 22:30 - 2013-08-22 17:38 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 
2014-05-01 22:30 - 2013-08-22 17:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 
2014-05-01 22:21 - 2014-05-01 08:15 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 
2014-05-01 14:03 - 2013-10-08 13:53 - 00000000 ____D () C:\Users\Eric\Documents\Tennisschule Seifert 
2014-04-29 10:37 - 2014-04-29 10:37 - 00000000 __SHD () C:\Users\Eric\AppData\Local\EmieUserList 
2014-04-29 10:37 - 2014-04-29 10:37 - 00000000 __SHD () C:\Users\Eric\AppData\Local\EmieSiteList 
2014-04-27 10:06 - 2013-08-22 16:44 - 00370440 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 
2014-04-27 10:02 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 
2014-04-27 10:02 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 
2014-04-27 10:02 - 2013-08-22 17:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools 
2014-04-27 10:02 - 2013-08-22 17:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools 
2014-04-27 10:02 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\setup 
2014-04-27 10:02 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\MediaViewer 
2014-04-27 10:02 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows Portable Devices 
2014-04-27 10:02 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows Multimedia Platform 
2014-04-27 10:02 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files (x86)\Windows Portable Devices 
2014-04-27 10:02 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files (x86)\Windows Multimedia Platform 
2014-04-27 10:02 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\oobe 
2014-04-27 10:02 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism 
2014-04-27 10:02 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\servicing 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\zh-HK 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\uk-UA 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\tr-TR 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\th-TH 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sr-Latn-RS 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sr-Latn-CS 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sl-SI 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sk-SK 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\ro-RO 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\migwiz 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\lv-LV 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\lt-LT 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\hr-HR 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\he-IL 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\et-EE 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\en-GB 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\bg-BG 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\ar-SA 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\FileManager 
2014-04-27 10:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\Camera 
2014-04-27 10:01 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep 
2014-04-27 10:01 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\system32\oobe 
2014-04-27 10:01 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\system32\Dism 
2014-04-27 09:21 - 2014-04-27 09:21 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 
2014-04-27 09:21 - 2014-04-27 09:21 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 
2014-04-27 09:17 - 2014-04-27 09:17 - 00233912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 
2014-04-27 09:17 - 2014-04-27 09:17 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe 
2014-04-27 09:17 - 2014-04-27 09:17 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe 
2014-04-27 09:17 - 2014-04-27 09:17 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe 
2014-04-27 09:17 - 2014-04-27 09:17 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 
2014-04-27 09:17 - 2014-04-27 09:17 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll 
2014-04-27 09:17 - 2014-04-27 09:17 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll 
2014-04-27 09:17 - 2014-04-27 09:17 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 
2014-04-27 09:17 - 2014-04-27 09:17 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 
2014-04-27 09:17 - 2014-04-27 09:17 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 
2014-04-27 09:17 - 2014-04-27 09:17 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll 
2014-04-24 20:30 - 2014-04-24 20:29 - 00004253 _____ () C:\WINDOWS\SysWOW64\jupdate-1.7.0_55-b14.log 
2014-04-24 20:30 - 2014-02-21 10:27 - 00000000 ____D () C:\Program Files (x86)\Java 
2014-04-24 20:30 - 2013-10-27 20:36 - 00000000 ____D () C:\ProgramData\Oracle   
Files to move or delete: 
==================== 
C:\ProgramData\SetStretch.exe     
Some content of TEMP: 
==================== 
C:\Users\Eric\AppData\Local\Temp\COMAP.EXE 
C:\Users\Eric\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe 
C:\Users\Eric\AppData\Local\Temp\nsbFE8D.exe 
C:\Users\Eric\AppData\Local\Temp\nsnCFF7.exe 
C:\Users\Eric\AppData\Local\Temp\nsw700.exe 
C:\Users\Eric\AppData\Local\Temp\nsy219.exe 
C:\Users\Eric\AppData\Local\Temp\nszD3E0.exe     
==================== Bamital & volsnap Check =================   
C:\Windows\System32\winlogon.exe => MD5 is legit 
C:\Windows\System32\wininit.exe => MD5 is legit 
C:\Windows\explorer.exe => MD5 is legit 
C:\Windows\SysWOW64\explorer.exe => MD5 is legit 
C:\Windows\System32\svchost.exe => MD5 is legit 
C:\Windows\SysWOW64\svchost.exe => MD5 is legit 
C:\Windows\System32\services.exe => MD5 is legit 
C:\Windows\System32\User32.dll => MD5 is legit 
C:\Windows\SysWOW64\User32.dll => MD5 is legit 
C:\Windows\System32\userinit.exe => MD5 is legit 
C:\Windows\SysWOW64\userinit.exe => MD5 is legit 
C:\Windows\System32\rpcss.dll => MD5 is legit 
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit     
LastRegBack: 2014-05-17 22:05   
==================== End Of Log ============================    Code:  
 Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-05-2014 
Ran by Eric at 2014-05-18 08:14:36 
Running from C:\Users\Eric\Downloads 
Boot Mode: Normal 
==========================================================     
==================== Security Center ========================   
AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886} 
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} 
AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B} 
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} 
FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD}   
==================== Installed Programs ======================   
Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated) 
Adobe Reader X (10.1.10) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.10 - Adobe Systems Incorporated) 
Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 3.4.117.01527 - Alcor Micro Corp.) 
Alcor Micro USB Card Reader (x32 Version: 3.4.117.01527 - Alcor Micro Corp.) Hidden 
ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.2.2 - ASUS) 
ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 3.0.4 - ASUS) 
ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 2.1.4 - ASUS) 
ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 2.01.0005 - ASUS) 
ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 2.1.5 - ASUS) 
ASUS WebStorage Sync Agent (HKLM-x32\...\ASUS WebStorage) (Version: 1.1.18.159 - ASUS Cloud Corporation) 
ASUSDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.5230.52 - CyberLink Corp.) 
ASUSDVD (x32 Version: 10.0.5230.52 - CyberLink Corp.) Hidden 
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.7 - Atheros Communications Inc.) 
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0030 - ASUS) 
Azteca (x32 Version: 2.2.0.97 - WildTangent) Hidden 
Bejeweled 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden 
Cut the Rope (x32 Version: 3.0.2.38 - WildTangent) Hidden 
CyberLink LabelPrint 2.5 (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.5415 - CyberLink Corp.) 
CyberLink LabelPrint 2.5 (x32 Version: 2.5.5415 - CyberLink Corp.) Hidden 
CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 7.0.0.3625 - CyberLink Corp.) 
CyberLink Power2Go (x32 Version: 7.0.0.3625 - CyberLink Corp.) Hidden 
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden 
EPSON-Drucker-Software (HKLM\...\EPSON Printer and Utilities) (Version:  - ) 
Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
Free Pdf Perfect Prereq (HKLM-x32\...\{1fc96138-d342-4c3a-979a-7aa9ae35bf87}) (Version: 1.0.0.0 - Covus Freemium GmbH) 
Free Pdf Perfect Prereq (x32 Version: 1.0.0.0 - Covus Freemium GmbH) Hidden 
Free YouTube to MP3 Converter version 3.12.14.1022 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.14.1022 - DVDVideoSoft Ltd.) 
Galerie de photos (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
HUAWEI DataCard Driver 4.20.12.00 (HKLM-x32\...\HUAWEI DataCard Driver) (Version: 4.20.12.00 - Huawei technologies Co., Ltd.) 
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) 
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3308 - Intel Corporation) 
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) 
Intel® Trusted Connect Service Client (Version: 1.24.388.1 - Intel Corporation) Hidden 
Java 7 Update 45 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417045FF}) (Version: 7.0.450 - Oracle) 
Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.550 - Oracle) 
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden 
Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090}) (Version: 14.0.0.4651 - Kaspersky Lab) 
Kaspersky Internet Security (x32 Version: 14.0.0.4651 - Kaspersky Lab) Hidden 
Malwarebytes Anti-Malware Version 1.75.0.1300 (HKLM-x32\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation) 
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden 
Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4605.1003 - Microsoft Corporation) 
Microsoft SkyDrive (HKCU\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation) 
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) 
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) 
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) 
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) 
Microsoft-Maus- und Tastatur-Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.2.173.0 - Microsoft Corporation) 
Microsoft-Maus- und Tastatur-Center (Version: 2.2.173.0 - Microsoft Corporation) Hidden 
Mobile Connection Manager (HKLM-x32\...\o2DE) (Version:  - Mobile Connection Manager) 
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) 
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) 
Mozilla Thunderbird 24.5.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.5.0 (x86 de)) (Version: 24.5.0 - Mozilla) 
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden 
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden 
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden 
MyBitCast 2.0 (HKLM-x32\...\MyBitCast) (Version: 2.0 - ASUS) 
MyFreeCodec (HKCU\...\MyFreeCodec) (Version:  - ) 
NVIDIA Grafiktreiber 327.02 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.02 - NVIDIA Corporation) 
NVIDIA Install Application (Version: 2.1002.133.889 - NVIDIA Corporation) Hidden 
NVIDIA Optimus 4.11.9 (Version: 4.11.9 - NVIDIA Corporation) Hidden 
NVIDIA PhysX (x32 Version: 9.13.0325 - NVIDIA Corporation) Hidden 
NVIDIA PhysX System Software 9.13.0325 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0325 - NVIDIA Corporation) 
NVIDIA Systemsteuerung 327.02 (Version: 327.02 - NVIDIA Corporation) Hidden 
NVIDIA Update 4.11.9 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 4.11.9 - NVIDIA Corporation) 
NVIDIA Update Components (Version: 4.11.9 - NVIDIA Corporation) Hidden 
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4605.1003 - Microsoft Corporation) Hidden 
Office 15 Click-to-Run Licensing Component (Version: 15.0.4605.1003 - Microsoft Corporation) Hidden 
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4605.1003 - Microsoft Corporation) Hidden 
Opera Stable 21.0.1432.57 (HKLM-x32\...\Opera 21.0.1432.57) (Version: 21.0.1432.57 - Opera Software ASA) 
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.2 - pdfforge) 
Peggle (x32 Version: 2.2.0.95 - WildTangent) Hidden 
Penguins! (x32 Version: 2.2.0.98 - WildTangent) Hidden 
Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros) 
Raccolta foto (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6804 - Realtek Semiconductor Corp.) 
RedMon - Redirection Port Monitor (HKLM\...\Redirection Port Monitor) (Version:  - ) 
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.0.13091_9 - Samsung Electronics Co., Ltd.) 
Samsung Kies (x32 Version: 2.6.0.13091_9 - Samsung Electronics Co., Ltd.) Hidden 
Samsung Story Album Viewer (HKLM-x32\...\InstallShield_{698BBAD8-B116-495D-B879-0F07A533E57F}) (Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.) 
Samsung Story Album Viewer (x32 Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.) Hidden 
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.34.0 - SAMSUNG Electronics Co., Ltd.) 
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) 
Tales of Lagoona (x32 Version: 2.2.0.110 - WildTangent) Hidden 
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH) 
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden 
VDT Tennistrainer (HKLM-x32\...\VDT Tennistrainer) (Version:  - ) 
WebEnhance (HKLM-x32\...\WebEnhance) (Version:  - ) 
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.0.0 - WildTangent) 
WildTangent Games App (x32 Version: 4.0.10.5 - WildTangent) Hidden 
Windows Driver Package - ASUS (ATP) Mouse  (01/10/2013 1.0.0.170) (HKLM\...\4A9DE1E9EBC800B7F01739D4DE7363EF6751BDF5) (Version: 01/10/2013 1.0.0.170 - ASUS) 
Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) 
Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden 
WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.42.0 - ASUS)   
==================== Restore Points  =========================   
28-04-2014 06:23:38 Windows Update 
03-05-2014 05:46:30 Windows Update 
06-05-2014 06:41:36 Windows Update 
15-05-2014 09:32:44 Windows Update 
17-05-2014 19:03:29 Installed Samsung Kies3   
==================== Hosts content: ==========================   
2012-07-26 07:26 - 2013-10-30 13:51 - 00000027 ____A C:\WINDOWS\system32\Drivers\etc\hosts 
127.0.0.1       localhost   
==================== Scheduled Tasks (whitelisted) =============   
Task: {02DC8C1A-6DD2-4B13-BA0A-80C455BA4129} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation) 
Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask 
Task: {06A90407-BAA4-47FD-BE44-DF3793329617} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management 
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList 
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask 
Task: {2158F40C-D238-47AB-A450-FF354CCD5285} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-03-30] (Microsoft Corporation) 
Task: {276F6EF0-0C75-4AA6-AB0D-D63CD69D6FB8} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation 
Task: {2BB2DDEB-B0AC-428B-AD57-E7077D71FDA3} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-05-15] (Microsoft Corporation) 
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate 
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) 
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) 
Task: {419B01AA-A8AB-470D-A355-CAAB44DBC3CC} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2013-03-20] (ASUSTeK Computer Inc.) 
Task: {43CB1A30-C60C-4CEF-8BA3-649961BD2BBB} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation) 
Task: {44EC0AF9-5D12-4D01-9FC8-8D2E3DBE2570} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-13] (Adobe Systems Incorporated) 
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance 
Task: {4B4F6C7F-07E2-4EE3-AD09-D179DE9F02AD} - System32\Tasks\ASUS InstantOn Config => C:\Program Files\ASUS\P4G\InsOnCfg.exe 
Task: {4FE176E5-F5C1-44EF-8ECC-B1F100AC7978} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics 
Task: {58A2CCFF-9147-480D-9CF4-F4DD069BFC2A} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2013-03-20] (ASUSTeK Computer Inc.) 
Task: {59AA90BD-1223-42AE-B4EE-D8D12959B732} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation) 
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup 
Task: {6D6DE991-FAA8-4B4D-88E1-7B6BD31B014F} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv 
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task 
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask 
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState 
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task 
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask 
Task: {8F8331BF-F744-460A-962A-F18C25D12D7C} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2013-05-13] (Microsoft) 
Task: {9AD6E89C-D097-4656-890F-17BAEC53B697} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation) 
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work 
Task: {A83B2938-3C46-4FFF-9B50-C65AA164E565} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2012-11-28] (ASUS) 
Task: {AEE22C68-7A33-45DA-8C05-11469F9DD54E} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2012-09-18] (ASUSTek Computer Inc.) 
Task: {B03E46B6-3C6F-4B53-8C33-E72CFAA59D02} - System32\Tasks\ASUS Touchpad Launcher (x64) => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [2013-04-29] (AsusTek) 
Task: {B831EA6E-E07B-4007-8D88-9C00AE4716F1} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2013-06-19] (ASUS) 
Task: {C5F1422B-ABA3-4D7F-9A49-F2C6DB3DC56C} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation) 
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask 
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing 
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization 
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE 
Task: {F98FE049-7FAE-4207-A9AD-EB4B54D38E01} - System32\Tasks\ASUS Splendid ColorU => C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe [2013-02-26] (ASUSTeK Computer Inc.) 
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe   
==================== Loaded Modules (whitelisted) =============   
2013-10-08 15:31 - 2010-06-17 20:56 - 00087040 _____ () C:\WINDOWS\System32\redmonnt.dll 
2012-12-19 08:10 - 2012-12-19 08:10 - 00072192 _____ () C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe 
2014-03-19 14:32 - 2013-10-31 18:13 - 00102568 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 
2013-10-08 14:36 - 2014-03-25 13:21 - 00629928 _____ () C:\Program Files\Microsoft Office 15\ClientX64\StreamServer.dll 
2013-09-05 03:36 - 2013-09-05 03:36 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll 
2013-06-19 21:49 - 2013-06-19 21:49 - 00031360 _____ () C:\Program Files\ASUS\P4G\DevMng.dll 
2014-04-12 14:47 - 2014-04-12 14:47 - 00183296 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20461_x64__8wekyb3d8bbwe\ErrorReporting.dll 
2013-10-01 14:02 - 2013-10-01 14:02 - 00094208 _____ () C:\Windows\system32\IccLibDll_x64.dll 
2013-06-17 13:35 - 2013-06-17 13:35 - 00478400 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\dblite.dll 
2013-05-08 15:52 - 2013-05-08 15:52 - 01270464 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\kpcengine.2.3.dll 
2013-08-15 15:58 - 2012-06-25 11:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 
2012-07-04 18:14 - 2012-07-04 18:14 - 01875056 _____ () C:\Program Files (x86)\CyberLink\Power2Go\Language\DEU\P2GRC.dll 
2011-03-09 14:21 - 2011-03-09 14:21 - 00144680 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLVistaAudioMixer.dll 
2012-05-24 21:19 - 2012-05-24 21:19 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll 
2011-03-09 14:21 - 2011-03-09 14:21 - 00013096 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll 
2014-05-10 07:57 - 2014-05-10 07:57 - 03839088 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll   
==================== Alternate Data Streams (whitelisted) =========   
AlternateDataStreams: C:\Users\Eric\SkyDrive:ms-properties   
==================== Safe Mode (whitelisted) ===================     
==================== EXE Association (whitelisted) =============     
==================== Disabled items from MSCONFIG ==============     
==================== Faulty Device Manager Devices =============     
==================== Event log errors: =========================   
Application errors: 
================== 
Error: (05/17/2014 09:04:01 PM) (Source: MsiInstaller) (EventID: 1002) (User: ERIC) 
Description: Nicht erwarteter oder fehlender Wert (Name: "PackageCode", Wert: "GUID") für Schlüssel "HKLM\Software\Classes\Installer\Products\B476F94747628E7478C965620AB6A219".   
Error: (05/17/2014 08:48:50 PM) (Source: Application Error) (EventID: 1000) (User: ) 
Description: Name der fehlerhaften Anwendung: Kies.exe, Version: 1.0.0.1668, Zeitstempel: 0x52fe1219 
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 
Ausnahmecode: 0xc0000005 
Fehleroffset: 0x141a3a7b 
ID des fehlerhaften Prozesses: 0x1840 
Startzeit der fehlerhaften Anwendung: 0xKies.exe0 
Pfad der fehlerhaften Anwendung: Kies.exe1 
Pfad des fehlerhaften Moduls: Kies.exe2 
Berichtskennung: Kies.exe3 
Vollständiger Name des fehlerhaften Pakets: Kies.exe4 
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Kies.exe5   
Error: (05/17/2014 08:48:49 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) 
Description: Anwendung: Kies.exe 
Frameworkversion: v4.0.30319 
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. 
Ausnahmeinformationen: System.NullReferenceException 
Stapel: 
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) 
   bei System.Windows.Threading.DispatcherOperation.InvokeImpl() 
   bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object) 
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) 
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) 
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) 
   bei System.Windows.Threading.DispatcherOperation.Invoke() 
   bei System.Windows.Threading.Dispatcher.ProcessQueue() 
   bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) 
   bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) 
   bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) 
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) 
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) 
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) 
   bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) 
   bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) 
   bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) 
   bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) 
   bei System.Windows.Threading.DispatcherOperation.Wait(System.TimeSpan) 
   bei System.Windows.Threading.Dispatcher.InvokeImpl(System.Windows.Threading.DispatcherOperation, System.Threading.CancellationToken, System.TimeSpan) 
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) 
   bei System.Windows.Threading.Dispatcher.Invoke(System.Windows.Threading.DispatcherPriority, System.Delegate) 
   bei Kies.MainFrame.MainWindowVM.LoadedCommand_Execute() 
   bei Kies.MainFrame.MainWindowVM.<get_LoadedCommand>b__0(System.Object) 
   bei Kies.MVVM.RelayCommand.Execute(System.Object) 
   bei Kies.MVVM.AttachedCommandBehavior.CommandExecutionStrategy.Execute(System.Object) 
   bei Kies.MVVM.AttachedCommandBehavior.CommandBehaviorBinding.OnEventRaised(System.Object, System.EventArgs) 
   bei System.Windows.RoutedEventHandlerInfo.InvokeHandler(System.Object, System.Windows.RoutedEventArgs) 
   bei System.Windows.EventRoute.InvokeHandlersImpl(System.Object, System.Windows.RoutedEventArgs, Boolean) 
   bei System.Windows.UIElement.RaiseEventImpl(System.Windows.DependencyObject, System.Windows.RoutedEventArgs) 
   bei System.Windows.UIElement.RaiseEvent(System.Windows.RoutedEventArgs) 
   bei System.Windows.BroadcastEventHelper.BroadcastEvent(System.Windows.DependencyObject, System.Windows.RoutedEvent) 
   bei System.Windows.BroadcastEventHelper.BroadcastLoadedEvent(System.Object) 
   bei MS.Internal.LoadedOrUnloadedOperation.DoWork() 
   bei System.Windows.Media.MediaContext.FireLoadedPendingCallbacks() 
   bei System.Windows.Media.MediaContext.FireInvokeOnRenderCallbacks() 
   bei System.Windows.Media.MediaContext.RenderMessageHandlerCore(System.Object) 
   bei System.Windows.Media.MediaContext.RenderMessageHandler(System.Object) 
   bei System.Windows.Media.MediaContext.Resize(System.Windows.Media.ICompositionTarget) 
   bei System.Windows.Interop.HwndTarget.OnResize() 
   bei System.Windows.Interop.HwndTarget.HandleMessage(MS.Internal.Interop.WindowMessage, IntPtr, IntPtr) 
   bei System.Windows.Interop.HwndSource.HwndTargetFilterMessage(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) 
   bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) 
   bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) 
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) 
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) 
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) 
   bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) 
   bei MS.Win32.UnsafeNativeMethods.ShowWindow(System.Runtime.InteropServices.HandleRef, Int32) 
   bei System.Windows.Window.ShowHelper(System.Object) 
   bei System.Windows.Window.Show() 
   bei Kies.App.StartKies() 
   bei Kies.App.App_Startup2(System.Object, System.Windows.StartupEventArgs) 
   bei System.Windows.Application.OnStartup(System.Windows.StartupEventArgs) 
   bei Kies.App.OnStartup(System.Windows.StartupEventArgs) 
   bei System.Windows.Application.<.ctor>b__1(System.Object) 
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) 
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) 
   bei System.Windows.Threading.DispatcherOperation.InvokeImpl() 
   bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object) 
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) 
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) 
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) 
   bei System.Windows.Threading.DispatcherOperation.Invoke() 
   bei System.Windows.Threading.Dispatcher.ProcessQueue() 
   bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) 
   bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) 
   bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) 
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) 
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) 
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) 
   bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) 
   bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) 
   bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) 
   bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) 
   bei System.Windows.Threading.Dispatcher.Run() 
   bei System.Windows.Application.RunDispatcher(System.Object) 
   bei System.Windows.Application.RunInternal(System.Windows.Window) 
   bei System.Windows.Application.Run(System.Windows.Window) 
   bei Kies.App.Main()   
Error: (05/17/2014 03:23:54 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) 
Description: 80070005   
Error: (05/16/2014 08:47:52 PM) (Source: SideBySide) (EventID: 33) (User: ) 
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"1". 
Die abhängige Assemblierung "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. 
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".   
Error: (05/16/2014 08:43:10 PM) (Source: SideBySide) (EventID: 33) (User: ) 
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"1". 
Die abhängige Assemblierung "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. 
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".   
Error: (05/15/2014 09:10:58 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) 
Description: 80070005   
Error: (05/15/2014 00:08:43 PM) (Source: SideBySide) (EventID: 33) (User: ) 
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"1". 
Die abhängige Assemblierung "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. 
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".   
Error: (05/15/2014 00:07:21 PM) (Source: SideBySide) (EventID: 33) (User: ) 
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"1". 
Die abhängige Assemblierung "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. 
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".   
Error: (05/15/2014 11:52:00 AM) (Source: SideBySide) (EventID: 33) (User: ) 
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"1". 
Die abhängige Assemblierung "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. 
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".     
System errors: 
============= 
Error: (05/17/2014 09:45:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) 
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:  
%%1069   
Error: (05/17/2014 09:45:47 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) 
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:  
%%1326   
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).   
Error: (05/17/2014 09:31:53 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) 
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:  
%%1069   
Error: (05/17/2014 09:31:53 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) 
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:  
%%1326   
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).   
Error: (05/17/2014 08:58:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) 
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:  
%%1069   
Error: (05/17/2014 08:58:47 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) 
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:  
%%1326   
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).   
Error: (05/15/2014 08:59:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) 
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:  
%%1069   
Error: (05/15/2014 08:59:00 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) 
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:  
%%1326   
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).   
Error: (05/13/2014 03:00:21 PM) (Source: DCOM) (EventID: 10010) (User: ERIC) 
Description: {078AEF33-C48A-49F7-AFF3-A0EE810BFE7C}   
Error: (05/12/2014 08:20:37 AM) (Source: DCOM) (EventID: 10016) (User: ERIC) 
Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}EricEricS-1-5-21-15240065-1891577732-4114585445-1002LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar     
Microsoft Office Sessions: 
========================= 
Error: (05/17/2014 09:04:01 PM) (Source: MsiInstaller) (EventID: 1002) (User: ERIC) 
Description: PackageCodeGUIDHKLM\Software\Classes\Installer\Products\B476F94747628E7478C965620AB6A219(NULL)(NULL)(NULL)   
Error: (05/17/2014 08:48:50 PM) (Source: Application Error) (EventID: 1000) (User: ) 
Description: Kies.exe1.0.0.166852fe1219unknown0.0.0.000000000c0000005141a3a7b184001cf72008ec58c5eC:\Program Files (x86)\Samsung\Kies\Kies.exeunknowne2415c19-ddf3-11e3-bea2-ac220b6fc5a1   
Error: (05/17/2014 08:48:49 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) 
Description: Anwendung: Kies.exe 
Frameworkversion: v4.0.30319 
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. 
Ausnahmeinformationen: System.NullReferenceException 
Stapel: 
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) 
   bei System.Windows.Threading.DispatcherOperation.InvokeImpl() 
   bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object) 
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) 
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) 
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) 
   bei System.Windows.Threading.DispatcherOperation.Invoke() 
   bei System.Windows.Threading.Dispatcher.ProcessQueue() 
   bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) 
   bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) 
   bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) 
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) 
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) 
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) 
   bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) 
   bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) 
   bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) 
   bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) 
   bei System.Windows.Threading.DispatcherOperation.Wait(System.TimeSpan) 
   bei System.Windows.Threading.Dispatcher.InvokeImpl(System.Windows.Threading.DispatcherOperation, System.Threading.CancellationToken, System.TimeSpan) 
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) 
   bei System.Windows.Threading.Dispatcher.Invoke(System.Windows.Threading.DispatcherPriority, System.Delegate) 
   bei Kies.MainFrame.MainWindowVM.LoadedCommand_Execute() 
   bei Kies.MainFrame.MainWindowVM.<get_LoadedCommand>b__0(System.Object) 
   bei Kies.MVVM.RelayCommand.Execute(System.Object) 
   bei Kies.MVVM.AttachedCommandBehavior.CommandExecutionStrategy.Execute(System.Object) 
   bei Kies.MVVM.AttachedCommandBehavior.CommandBehaviorBinding.OnEventRaised(System.Object, System.EventArgs) 
   bei System.Windows.RoutedEventHandlerInfo.InvokeHandler(System.Object, System.Windows.RoutedEventArgs) 
   bei System.Windows.EventRoute.InvokeHandlersImpl(System.Object, System.Windows.RoutedEventArgs, Boolean) 
   bei System.Windows.UIElement.RaiseEventImpl(System.Windows.DependencyObject, System.Windows.RoutedEventArgs) 
   bei System.Windows.UIElement.RaiseEvent(System.Windows.RoutedEventArgs) 
   bei System.Windows.BroadcastEventHelper.BroadcastEvent(System.Windows.DependencyObject, System.Windows.RoutedEvent) 
   bei System.Windows.BroadcastEventHelper.BroadcastLoadedEvent(System.Object) 
   bei MS.Internal.LoadedOrUnloadedOperation.DoWork() 
   bei System.Windows.Media.MediaContext.FireLoadedPendingCallbacks() 
   bei System.Windows.Media.MediaContext.FireInvokeOnRenderCallbacks() 
   bei System.Windows.Media.MediaContext.RenderMessageHandlerCore(System.Object) 
   bei System.Windows.Media.MediaContext.RenderMessageHandler(System.Object) 
   bei System.Windows.Media.MediaContext.Resize(System.Windows.Media.ICompositionTarget) 
   bei System.Windows.Interop.HwndTarget.OnResize() 
   bei System.Windows.Interop.HwndTarget.HandleMessage(MS.Internal.Interop.WindowMessage, IntPtr, IntPtr) 
   bei System.Windows.Interop.HwndSource.HwndTargetFilterMessage(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) 
   bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) 
   bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) 
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) 
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) 
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) 
   bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) 
   bei MS.Win32.UnsafeNativeMethods.ShowWindow(System.Runtime.InteropServices.HandleRef, Int32) 
   bei System.Windows.Window.ShowHelper(System.Object) 
   bei System.Windows.Window.Show() 
   bei Kies.App.StartKies() 
   bei Kies.App.App_Startup2(System.Object, System.Windows.StartupEventArgs) 
   bei System.Windows.Application.OnStartup(System.Windows.StartupEventArgs) 
   bei Kies.App.OnStartup(System.Windows.StartupEventArgs) 
   bei System.Windows.Application.<.ctor>b__1(System.Object) 
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) 
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) 
   bei System.Windows.Threading.DispatcherOperation.InvokeImpl() 
   bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object) 
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) 
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) 
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) 
   bei System.Windows.Threading.DispatcherOperation.Invoke() 
   bei System.Windows.Threading.Dispatcher.ProcessQueue() 
   bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) 
   bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) 
   bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) 
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) 
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) 
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) 
   bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) 
   bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) 
   bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) 
   bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) 
   bei System.Windows.Threading.Dispatcher.Run() 
   bei System.Windows.Application.RunDispatcher(System.Object) 
   bei System.Windows.Application.RunInternal(System.Windows.Window) 
   bei System.Windows.Application.Run(System.Windows.Window) 
   bei Kies.App.Main()   
Error: (05/17/2014 03:23:54 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) 
Description: 80070005   
Error: (05/16/2014 08:47:52 PM) (Source: SideBySide) (EventID: 33) (User: ) 
Description: Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"c:\program files (x86)\cyberlink\powerdvd10\Activate.exe   
Error: (05/16/2014 08:43:10 PM) (Source: SideBySide) (EventID: 33) (User: ) 
Description: Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"c:\program files (x86)\cyberlink\powerdvd10\Activate.exe   
Error: (05/15/2014 09:10:58 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) 
Description: 80070005   
Error: (05/15/2014 00:08:43 PM) (Source: SideBySide) (EventID: 33) (User: ) 
Description: Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"c:\program files (x86)\cyberlink\powerdvd10\Activate.exe   
Error: (05/15/2014 00:07:21 PM) (Source: SideBySide) (EventID: 33) (User: ) 
Description: Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"c:\program files (x86)\cyberlink\powerdvd10\Activate.exe   
Error: (05/15/2014 11:52:00 AM) (Source: SideBySide) (EventID: 33) (User: ) 
Description: Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"c:\program files (x86)\cyberlink\powerdvd10\Activate.exe     
CodeIntegrity Errors: 
=================================== 
  Date: 2013-10-30 12:51:36.484 
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.     
==================== Memory info ===========================    
Percentage of memory in use: 35% 
Total physical RAM: 3981.58 MB 
Available physical RAM: 2564.89 MB 
Total Pagefile: 4685.58 MB 
Available Pagefile: 3044.19 MB 
Total Virtual: 131072 MB 
Available Virtual: 131071.81 MB   
==================== Drives ================================   
Drive c: (OS) (Fixed) (Total:279.11 GB) (Free:219.09 GB) NTFS ==>[System with boot components (obtained from reading drive)] 
Drive d: (Data) (Fixed) (Total:397.87 GB) (Free:397.73 GB) NTFS   
==================== MBR & Partition Table ==================   
======================================================== 
Disk: 0 (Size: 699 GB) (Disk ID: 91A883DE)   
Partition: GPT Partition Type.   
==================== End Of Log ============================      |