I am running Windows XP SP3 (System language is german, so I may use some wrong pathnames!)
Right after starting my computer, C:\Documents opens.
It contains the following two files:
HRUPPROG.DIE.NOW
HRUPPROG.TXT
HRUPPROG.TXT is empty, except for the number "100"
As I didn't know what to do I deleted the .txt files content after "memorizing" it.
A System search resulted in an additional HRUPPROG.TXT in the "recent" folder (well okay. I opened it, so that's to be expected)
and another HRUPPROG.TXT, that is apparently located directly on "My Computer" ?! It has the Internetexplorer-symbol though (or maybe it's the symbol for IE html files? I think it is), which kind of strange.
Quick research didn't result in anything, except a couple of threads on different websites, each following a similar do x -> post log -> do y -> post log, without any further information (or maybe none I could understand?).
I then stumbled upon this thread
Avast didn't find anything either.
I'm still worried though.
So yeah.
Any help (and perhaps a short explanation) would be much appreciated
Here are my logs:
Malwarebytes:
Malwarebytes Anti-Malware (Trial) 1.70.0.1100
www.malwarebytes.org
Database version: v2013.04.01.04
Windows XP Service Pack 3 x86 NTFS
Internet Explorer 6.0.2900.5512
Daniel :: DANIELS-PC [administrator]
Protection: Enabled
01.04.2013 14:18:01
mbam-log-2013-04-01 (14-18-01).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 260343
Time elapsed: 6 minute(s), 8 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)
nothing to worry about, apparently.
dds.txt:
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 6.0.2900.5512 BrowserJavaVersion: 10.17.2
Run by Daniel at 14:27:15 on 2013-04-01
Microsoft Windows XP Professional 5.1.2600.3.1252.49.1031.18.2046.1124 [GMT 2:00]
.
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: avast! Antivirus *Disabled*
.
============== Running Processes ================
.
C:\Programme\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Programme\Bonjour\mDNSResponder.exe
C:\WINDOWS\Explorer.EXE
D:\Programme\LogMeIn Hamachi\hamachi-2.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Programme\Java\jre7\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
C:\Programme\AVAST Software\Avast\avastUI.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\WINDOWS\System32\alg.exe
C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Dokumente und Einstellungen\Daniel\Lokale Einstellungen\Anwendungsdaten\Akamai\netsession_win.exe
C:\Dokumente und Einstellungen\Daniel\Lokale Einstellungen\Anwendungsdaten\Akamai\netsession_win.exe
C:\Dokumente und Einstellungen\Daniel\Anwendungsdaten\Spotify\Data\SpotifyWebHelper.exe
C:\Programme\Logitech\SetPoint\SetPoint.exe
C:\Programme\Gemeinsame Dateien\Logishrd\KHAL2\KHALMNPR.EXE
D:\Programme\Mozilla Firefox\firefox.exe
D:\Programme\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k Akamai
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.de/
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\programme\gemeinsame dateien\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\programme\java\jre7\bin\ssv.dll
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\programme\avast software\avast\aswWebRepIE.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\programme\java\jre7\bin\jp2ssv.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\programme\avast software\avast\aswWebRepIE.dll
uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe
uRun: [Akamai NetSession Interface] "c:\dokumente und einstellungen\daniel\lokale einstellungen\anwendungsdaten\akamai\netsession_win.exe"
uRun: [DAEMON Tools Lite] "d:\programme\daemon tools lite\DTLite.exe" -autorun
uRun: [SansaDispatch] c:\dokumente und einstellungen\daniel\anwendungsdaten\sandisk\sansa updater\SansaDispatch.exe
uRun: [Spotify Web Helper] "c:\dokumente und einstellungen\daniel\anwendungsdaten\spotify\data\SpotifyWebHelper.exe"
uRun: [Spotify] "c:\dokumente und einstellungen\daniel\anwendungsdaten\spotify\Spotify.exe" /uri spotify:autostart
mRun: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [Alcmtr] ALCMTR.EXE
mRun: [JMB36X IDE Setup] c:\windows\raidtool\xInsIDE.exe
mRun: [36X Raid Configurer] c:\windows\system32\xRaidSetup.exe boot
mRun: [avast] "c:\programme\avast software\avast\avastUI.exe" /nogui
mRun: [Adobe ARM] "c:\programme\gemeinsame dateien\adobe\arm\1.0\AdobeARM.exe"
mRun: [IMJPMIG8.1] "c:\windows\ime\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
mRun: [IMEKRMIG6.1] c:\windows\ime\imkr6_1\IMEKRMIG.EXE
mRun: [MSPY2002] c:\windows\system32\ime\pintlgnt\ImScInst.exe /SYNC
mRun: [PHIME2002ASync] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /SYNC
mRun: [PHIME2002A] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /IMEName
mRun: [SwitchBoard] c:\programme\gemeinsame dateien\adobe\switchboard\SwitchBoard.exe
mRun: [BrStsWnd] c:\programme\brownie\BrstsWnd.exe Autorun
mRun: [QuickTime Task] "c:\programme\quicktime\QTTask.exe" -atboottime
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
mRun: [nwiz] c:\programme\nvidia corporation\nview\nwiz.exe /installquiet
mRun: [PDFPrint] d:\programme\pdf24\pdf24.exe
mRun: [SunJavaUpdateSched] "c:\programme\gemeinsame dateien\java\java update\jusched.exe"
mRunOnce: [Malwarebytes Anti-Malware] d:\programme\malwarebytes' anti-malware\mbamgui.exe /install /silent
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\logite~1.lnk - c:\programme\logitech\setpoint\SetPoint.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: Free YouTube to MP3 Converter - c:\dokumente und einstellungen\daniel\anwendungsdaten\dvdvideosoftiehelpers\freeyoutubetomp3converter.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\programme\messenger\msmsgs.exe
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\programme\gemeinsame dateien\skype\Skype4COM.dll
Notify: LBTWlgn - c:\programme\gemeinsame dateien\logishrd\bluetooth\LBTWlgn.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\dokumente und einstellungen\daniel\anwendungsdaten\mozilla\firefox\profiles\mme0rx6m.default\
FF - prefs.js: browser.startup.homepage - about:blank
FF - plugin: c:\dokumente und einstellungen\all users\anwendungsdaten\nexoneu\ngm\npNxGameeu.dll
FF - plugin: c:\dokumente und einstellungen\daniel\anwendungsdaten\mozilla\firefox\profiles\mme0rx6m.default\extensions\{000f1ea4-5e08-4564-a29b-29076f63a37a}\plugins\npsoe.dll
FF - plugin: c:\programme\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\programme\pando networks\media booster\npPandoWebPlugin.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_6_602_180.dll
FF - plugin: c:\windows\system32\npdeployJava1.dll
FF - plugin: c:\windows\system32\npptools.dll
FF - plugin: d:\programme\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: d:\programme\adobe\reader 10.0\reader\browser\nppdf32.dll
FF - plugin: d:\programme\itunes\mozilla plugins\npitunes.dll
FF - ExtSQL: 2013-03-19 15:39; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\dokumente und einstellungen\daniel\anwendungsdaten\mozilla\firefox\profiles\mme0rx6m.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
.
============= SERVICES / DRIVERS ===============
.
R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [2013-3-17 49248]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2011-2-26 765736]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2011-2-26 368176]
R2 Akamai;Akamai NetSession Interface;c:\windows\system32\svchost.exe -k Akamai [2004-8-4 14336]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2011-2-26 29816]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-3-17 66336]
R2 avast! Antivirus;avast! Antivirus;c:\programme\avast software\avast\AvastSvc.exe [2011-2-26 45248]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;d:\programme\logmein hamachi\hamachi-2.exe [2012-2-28 1373576]
R2 LBeepKE;LBeepKE;c:\windows\system32\drivers\LBeepKE.sys [2011-2-25 10384]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\drivers\tap0901t.sys [2011-4-15 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 HiPatchService;Hi-Rez Studios Authenticate and Update Service;d:\programme\hi-rez studios\HiPatchService.exe [2013-3-31 8704]
S2 MBAMScheduler;MBAMScheduler;d:\programme\malwarebytes' anti-malware\mbamscheduler.exe [2013-4-1 398184]
S2 MBAMService;MBAMService;d:\programme\malwarebytes' anti-malware\mbamservice.exe [2013-4-1 682344]
S2 SkypeUpdate;Skype Updater;c:\programme\skype\updater\Updater.exe [2012-6-5 160944]
S3 1394hub;1394 Enabled Hub;c:\windows\system32\svchost.exe -k netsvcs [2004-8-4 14336]
S3 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [2013-3-17 164736]
S3 EagleXNt;EagleXNt;\??\c:\windows\system32\drivers\eaglexnt.sys --> c:\windows\system32\drivers\EagleXNt.sys [?]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-4-1 21104]
S3 npggsvc;nProtect GameGuard Service;c:\windows\system32\gamemon.des -service --> c:\windows\system32\GameMon.des -service [?]
S3 SwitchBoard;SwitchBoard;c:\programme\gemeinsame dateien\adobe\switchboard\SwitchBoard.exe [2010-2-19 517096]
S3 TunngleService;TunngleService;c:\programme\tunngle\TnglCtrl.exe [2011-4-15 746392]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
S3 XDva388;XDva388;\??\c:\windows\system32\xdva388.sys --> c:\windows\system32\XDva388.sys [?]
.
=============== Created Last 30 ================
.
2013-04-01 12:16:39 -------- d-----w- c:\dokumente und einstellungen\daniel\anwendungsdaten\Malwarebytes
2013-04-01 12:16:30 -------- d-----w- c:\dokumente und einstellungen\all users\anwendungsdaten\Malwarebytes
2013-04-01 12:16:28 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-03-31 13:05:01 -------- d-----w- C:\Dokumente
2013-03-17 21:20:57 49248 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2013-03-17 21:20:57 164736 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-03-17 21:20:56 66336 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-03-12 11:57:49 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
.
==================== Find3M ====================
.
2013-03-20 13:46:57 73432 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-03-20 13:46:57 693976 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-03-12 11:57:37 861088 ----a-w- c:\windows\system32\npdeployJava1.dll
2013-03-12 11:57:37 143872 ----a-w- c:\windows\system32\javacpl.cpl
2013-03-12 11:57:36 782240 ----a-w- c:\windows\system32\deployJava1.dll
2013-03-06 23:33:24 765736 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-03-06 23:32:51 41664 ----a-w- c:\windows\avastSS.scr
2013-02-23 21:41:45 281760 ----a-w- c:\windows\system32\drivers\atksgt.sys
2013-02-23 21:41:44 25888 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2013-02-20 14:46:38 24736 ----a-w- c:\windows\system32\normaliz.dll
2013-02-04 12:27:49 1074560 ----a-w- c:\windows\system32\nvdrsdb0.bin
2013-02-04 12:27:49 1 ----a-w- c:\windows\system32\nvdrssel.bin
2013-02-04 12:27:46 1074560 ----a-w- c:\windows\system32\nvdrsdb1.bin
.
============= FINISH: 14:27:30,32 ===============
attach.txt
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 25.02.2011 21:24:14
System Uptime: 01.04.2013 13:24:50 (1 hours ago)
.
Motherboard: Gigabyte Technology Co., Ltd. | | P35-DS3
Processor: Intel(R) Core(TM)2 Duo CPU E6750 @ 2.66GHz | Socket 775 | 2666/333mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 39 GiB total, 16,54 GiB free.
D: is FIXED (NTFS) - 194 GiB total, 28,299 GiB free.
E: is CDROM ()
F: is CDROM (UDF)
.
==== Disabled Device Manager Items =============
.
Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC
Device ID: PCI\VEN_10EC&DEV_8168&SUBSYS_E0001458&REV_01\4&345CAFAF&0&00E4
Manufacturer: Realtek Semiconductor Corp.
Name: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC
PNP Device ID: PCI\VEN_10EC&DEV_8168&SUBSYS_E0001458&REV_01\4&345CAFAF&0&00E4
Service: RTLE8023xp
.
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: SM-Bus-Controller
Device ID: PCI\VEN_8086&DEV_2930&SUBSYS_50011458&REV_02\3&13C0B0C5&0&FB
Manufacturer:
Name: SM-Bus-Controller
PNP Device ID: PCI\VEN_8086&DEV_2930&SUBSYS_50011458&REV_02\3&13C0B0C5&0&FB
Service:
.
==== System Restore Points ===================
.
RP537: 17.03.2013 14:16:38 - Systemprüfpunkt
RP538: 18.03.2013 16:12:06 - Systemprüfpunkt
RP539: 19.03.2013 15:05:19 - Aeria Ignite wird entfernt
RP540: 21.03.2013 19:28:33 - Systemprüfpunkt
RP541: 23.03.2013 12:19:30 - Systemprüfpunkt
RP542: 24.03.2013 16:00:24 - Systemprüfpunkt
RP543: 25.03.2013 17:33:01 - Systemprüfpunkt
RP544: 26.03.2013 20:48:44 - Systemprüfpunkt
RP545: 27.03.2013 23:52:47 - Systemprüfpunkt
RP546: 29.03.2013 02:35:59 - DirectX wurde installiert
RP547: 30.03.2013 20:09:02 - Systemprüfpunkt
RP548: 31.03.2013 15:03:44 - Installiert Hi-Rez Studios Games
.
==== Installed Programs ======================
.
7-Zip 9.20
Adobe AIR
Adobe Community Help
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Media Player
Adobe Photoshop CS5
Adobe Reader X (10.1.0) - Deutsch
Akamai NetSession Interface
Akamai NetSession Interface Service
Apple Application Support
Apple Mobile Device Support
Apple Software Update
avast! Free Antivirus
Baldur's Gate
Baldur's Gate(TM) II - Throne of Bhaal (TM)
Bandisoft MPEG-1 Decoder
Bloodline Champions
Bonjour
BOSS
Brother HL-2140
CameraHelperMsi
CCleaner
CDBurnerXP
CDDRV_Installer
DAEMON Tools Lite
Dark Messiah
Diablo II
Die Rache des Dr. Düster
Dota 2
erLT
EVEREST Home Edition v2.20
Fable III
Fraps
Free Audio CD Burner version 2.0.22.128
Free YouTube to MP3 Converter version 3.11.22.508
Gigabyte Raid Configurer
GIMP 2.6.11
Hi-Rez Studios Authenticate and Update Service
High Definition Audio Driver Package - KB888111
Hotfix für Windows XP (KB932716-v2)
Hotfix für Windows XP (KB942288-v3)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB958655-v2)
iTunes
Java 7 Update 17
Java Auto Updater
Java SE Development Kit 7 Update 9
Java(TM) 6 Update 37
JDownloader 0.9
KhalInstallWrapper
LBZalphaversion
League of Legends
Legend of Grimrock
LIMBO
Logitech SetPoint
Logitech Webcam Software
LogMeIn Hamachi
LOLReplay
LWS Facebook
LWS Gallery
LWS Help_main
LWS Launcher
LWS Pictures And Video
LWS Video Mask Maker
LWS Webcam Software
LWS WLM Plugin
LWS YouTube Plugin
Magicka
Malwarebytes Anti-Malware version 1.70.0.1100
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - DEU
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - DEU
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Client Profile DEU Language Pack
Microsoft .NET Framework 4 Extended
Microsoft .NET Framework 4 Extended DEU Language Pack
Microsoft .NET Framework 4 Multi-Targeting Pack
Microsoft Application Error Reporting
Microsoft Games for Windows - LIVE
Microsoft Games for Windows - LIVE Redistributable
Microsoft Help Viewer 1.0
Microsoft Help Viewer 1.0 Language Pack - DEU
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft SQL Server Compact 3.5 SP2 DEU
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 Express - DEU
Microsoft XNA Framework Redistributable 3.1
Microsoft XNA Framework Redistributable 4.0
Microsoft_VC80_ATL_x86
Microsoft_VC80_CRT_x86
Microsoft_VC80_MFC_x86
Microsoft_VC80_MFCLOC_x86
Microsoft_VC90_ATL_x86
Microsoft_VC90_CRT_x86
Microsoft_VC90_MFC_x86
Midgen
Mozilla Firefox 19.0.2 (x86 de)
Mozilla Maintenance Service
NehrimUninstaller
Neverwinter
Nexon Game Manager
Nexus Mod Manager
NVIDIA Grafiktreiber 310.90
NVIDIA HD-Audiotreiber 1.3.18.0
NVIDIA Install Application
NVIDIA nView 136.53
NVIDIA nView Desktop Manager
NVIDIA PhysX
NVIDIA PhysX-Systemsoftware 9.12.1031
NVIDIA Systemsteuerung 310.90
NVIDIA Update 1.11.3
NVIDIA Update Components
Oblivion
OpenAL
OpenOffice.org 3.3
osu!
Pando Media Booster
Path of Exile
PCSX2 - Playstation 2 Emulator
PDF Settings CS5
PDF24 Creator 5.3.0
Pokemon Online 1.0.53
Project64 1.6
QuickTime
REALTEK GbE & FE Ethernet PCI-E NIC Driver
Realtek High Definition Audio Driver
Risen
RPG MAKER VX Ace RTP
Sansa Updater
SeaTools for Windows
Skype™ 5.9
Smite
Spotify
StarCraft II
Steam
TeamSpeak 2 RC2
TeamSpeak 3 Client
The Bard's Tale
The Elder Scrolls V Skyrim Update 9 (1.6.89.0.6) Deutsche Version 1.00
The Witcher: Enhanced Edition
Titan Quest
Titan Quest Immortal Throne
TQVault
Tunngle beta
USB Tablet Driver
Vindictus EU
VLC media player 1.1.11
Warcraft III: All Products
Warframe
WebFldrs XP
Windows XP Service Pack 3
WinRAR
XML Paper Specification Shared Components Language Pack 1.0
.
==== End Of File ===========================
Right after starting my computer, C:\Documents opens.
It contains the following two files:
HRUPPROG.DIE.NOW
HRUPPROG.TXT
HRUPPROG.TXT is empty, except for the number "100"
As I didn't know what to do I deleted the .txt files content after "memorizing" it.
A System search resulted in an additional HRUPPROG.TXT in the "recent" folder (well okay. I opened it, so that's to be expected)
and another HRUPPROG.TXT, that is apparently located directly on "My Computer" ?! It has the Internetexplorer-symbol though (or maybe it's the symbol for IE html files? I think it is), which kind of strange.
Quick research didn't result in anything, except a couple of threads on different websites, each following a similar do x -> post log -> do y -> post log, without any further information (or maybe none I could understand?).
I then stumbled upon this thread
Avast didn't find anything either.
I'm still worried though.
So yeah.
Any help (and perhaps a short explanation) would be much appreciated
Here are my logs:
Malwarebytes:
Malwarebytes Anti-Malware (Trial) 1.70.0.1100
www.malwarebytes.org
Database version: v2013.04.01.04
Windows XP Service Pack 3 x86 NTFS
Internet Explorer 6.0.2900.5512
Daniel :: DANIELS-PC [administrator]
Protection: Enabled
01.04.2013 14:18:01
mbam-log-2013-04-01 (14-18-01).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 260343
Time elapsed: 6 minute(s), 8 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)
nothing to worry about, apparently.
dds.txt:
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 6.0.2900.5512 BrowserJavaVersion: 10.17.2
Run by Daniel at 14:27:15 on 2013-04-01
Microsoft Windows XP Professional 5.1.2600.3.1252.49.1031.18.2046.1124 [GMT 2:00]
.
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: avast! Antivirus *Disabled*
.
============== Running Processes ================
.
C:\Programme\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\Gemeinsame Dateien\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Programme\Bonjour\mDNSResponder.exe
C:\WINDOWS\Explorer.EXE
D:\Programme\LogMeIn Hamachi\hamachi-2.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Programme\Java\jre7\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
C:\Programme\AVAST Software\Avast\avastUI.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\WINDOWS\System32\alg.exe
C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Dokumente und Einstellungen\Daniel\Lokale Einstellungen\Anwendungsdaten\Akamai\netsession_win.exe
C:\Dokumente und Einstellungen\Daniel\Lokale Einstellungen\Anwendungsdaten\Akamai\netsession_win.exe
C:\Dokumente und Einstellungen\Daniel\Anwendungsdaten\Spotify\Data\SpotifyWebHelper.exe
C:\Programme\Logitech\SetPoint\SetPoint.exe
C:\Programme\Gemeinsame Dateien\Logishrd\KHAL2\KHALMNPR.EXE
D:\Programme\Mozilla Firefox\firefox.exe
D:\Programme\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k Akamai
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.de/
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\programme\gemeinsame dateien\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\programme\java\jre7\bin\ssv.dll
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\programme\avast software\avast\aswWebRepIE.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\programme\java\jre7\bin\jp2ssv.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\programme\avast software\avast\aswWebRepIE.dll
uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe
uRun: [Akamai NetSession Interface] "c:\dokumente und einstellungen\daniel\lokale einstellungen\anwendungsdaten\akamai\netsession_win.exe"
uRun: [DAEMON Tools Lite] "d:\programme\daemon tools lite\DTLite.exe" -autorun
uRun: [SansaDispatch] c:\dokumente und einstellungen\daniel\anwendungsdaten\sandisk\sansa updater\SansaDispatch.exe
uRun: [Spotify Web Helper] "c:\dokumente und einstellungen\daniel\anwendungsdaten\spotify\data\SpotifyWebHelper.exe"
uRun: [Spotify] "c:\dokumente und einstellungen\daniel\anwendungsdaten\spotify\Spotify.exe" /uri spotify:autostart
mRun: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [Alcmtr] ALCMTR.EXE
mRun: [JMB36X IDE Setup] c:\windows\raidtool\xInsIDE.exe
mRun: [36X Raid Configurer] c:\windows\system32\xRaidSetup.exe boot
mRun: [avast] "c:\programme\avast software\avast\avastUI.exe" /nogui
mRun: [Adobe ARM] "c:\programme\gemeinsame dateien\adobe\arm\1.0\AdobeARM.exe"
mRun: [IMJPMIG8.1] "c:\windows\ime\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
mRun: [IMEKRMIG6.1] c:\windows\ime\imkr6_1\IMEKRMIG.EXE
mRun: [MSPY2002] c:\windows\system32\ime\pintlgnt\ImScInst.exe /SYNC
mRun: [PHIME2002ASync] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /SYNC
mRun: [PHIME2002A] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /IMEName
mRun: [SwitchBoard] c:\programme\gemeinsame dateien\adobe\switchboard\SwitchBoard.exe
mRun: [BrStsWnd] c:\programme\brownie\BrstsWnd.exe Autorun
mRun: [QuickTime Task] "c:\programme\quicktime\QTTask.exe" -atboottime
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
mRun: [nwiz] c:\programme\nvidia corporation\nview\nwiz.exe /installquiet
mRun: [PDFPrint] d:\programme\pdf24\pdf24.exe
mRun: [SunJavaUpdateSched] "c:\programme\gemeinsame dateien\java\java update\jusched.exe"
mRunOnce: [Malwarebytes Anti-Malware] d:\programme\malwarebytes' anti-malware\mbamgui.exe /install /silent
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\dokume~1\alluse~1\startm~1\progra~1\autost~1\logite~1.lnk - c:\programme\logitech\setpoint\SetPoint.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: Free YouTube to MP3 Converter - c:\dokumente und einstellungen\daniel\anwendungsdaten\dvdvideosoftiehelpers\freeyoutubetomp3converter.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\programme\messenger\msmsgs.exe
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\programme\gemeinsame dateien\skype\Skype4COM.dll
Notify: LBTWlgn - c:\programme\gemeinsame dateien\logishrd\bluetooth\LBTWlgn.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\dokumente und einstellungen\daniel\anwendungsdaten\mozilla\firefox\profiles\mme0rx6m.default\
FF - prefs.js: browser.startup.homepage - about:blank
FF - plugin: c:\dokumente und einstellungen\all users\anwendungsdaten\nexoneu\ngm\npNxGameeu.dll
FF - plugin: c:\dokumente und einstellungen\daniel\anwendungsdaten\mozilla\firefox\profiles\mme0rx6m.default\extensions\{000f1ea4-5e08-4564-a29b-29076f63a37a}\plugins\npsoe.dll
FF - plugin: c:\programme\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\programme\pando networks\media booster\npPandoWebPlugin.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_6_602_180.dll
FF - plugin: c:\windows\system32\npdeployJava1.dll
FF - plugin: c:\windows\system32\npptools.dll
FF - plugin: d:\programme\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: d:\programme\adobe\reader 10.0\reader\browser\nppdf32.dll
FF - plugin: d:\programme\itunes\mozilla plugins\npitunes.dll
FF - ExtSQL: 2013-03-19 15:39; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\dokumente und einstellungen\daniel\anwendungsdaten\mozilla\firefox\profiles\mme0rx6m.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
.
============= SERVICES / DRIVERS ===============
.
R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [2013-3-17 49248]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2011-2-26 765736]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2011-2-26 368176]
R2 Akamai;Akamai NetSession Interface;c:\windows\system32\svchost.exe -k Akamai [2004-8-4 14336]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2011-2-26 29816]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-3-17 66336]
R2 avast! Antivirus;avast! Antivirus;c:\programme\avast software\avast\AvastSvc.exe [2011-2-26 45248]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;d:\programme\logmein hamachi\hamachi-2.exe [2012-2-28 1373576]
R2 LBeepKE;LBeepKE;c:\windows\system32\drivers\LBeepKE.sys [2011-2-25 10384]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\drivers\tap0901t.sys [2011-4-15 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 HiPatchService;Hi-Rez Studios Authenticate and Update Service;d:\programme\hi-rez studios\HiPatchService.exe [2013-3-31 8704]
S2 MBAMScheduler;MBAMScheduler;d:\programme\malwarebytes' anti-malware\mbamscheduler.exe [2013-4-1 398184]
S2 MBAMService;MBAMService;d:\programme\malwarebytes' anti-malware\mbamservice.exe [2013-4-1 682344]
S2 SkypeUpdate;Skype Updater;c:\programme\skype\updater\Updater.exe [2012-6-5 160944]
S3 1394hub;1394 Enabled Hub;c:\windows\system32\svchost.exe -k netsvcs [2004-8-4 14336]
S3 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [2013-3-17 164736]
S3 EagleXNt;EagleXNt;\??\c:\windows\system32\drivers\eaglexnt.sys --> c:\windows\system32\drivers\EagleXNt.sys [?]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-4-1 21104]
S3 npggsvc;nProtect GameGuard Service;c:\windows\system32\gamemon.des -service --> c:\windows\system32\GameMon.des -service [?]
S3 SwitchBoard;SwitchBoard;c:\programme\gemeinsame dateien\adobe\switchboard\SwitchBoard.exe [2010-2-19 517096]
S3 TunngleService;TunngleService;c:\programme\tunngle\TnglCtrl.exe [2011-4-15 746392]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
S3 XDva388;XDva388;\??\c:\windows\system32\xdva388.sys --> c:\windows\system32\XDva388.sys [?]
.
=============== Created Last 30 ================
.
2013-04-01 12:16:39 -------- d-----w- c:\dokumente und einstellungen\daniel\anwendungsdaten\Malwarebytes
2013-04-01 12:16:30 -------- d-----w- c:\dokumente und einstellungen\all users\anwendungsdaten\Malwarebytes
2013-04-01 12:16:28 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-03-31 13:05:01 -------- d-----w- C:\Dokumente
2013-03-17 21:20:57 49248 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2013-03-17 21:20:57 164736 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-03-17 21:20:56 66336 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-03-12 11:57:49 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
.
==================== Find3M ====================
.
2013-03-20 13:46:57 73432 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-03-20 13:46:57 693976 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-03-12 11:57:37 861088 ----a-w- c:\windows\system32\npdeployJava1.dll
2013-03-12 11:57:37 143872 ----a-w- c:\windows\system32\javacpl.cpl
2013-03-12 11:57:36 782240 ----a-w- c:\windows\system32\deployJava1.dll
2013-03-06 23:33:24 765736 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-03-06 23:32:51 41664 ----a-w- c:\windows\avastSS.scr
2013-02-23 21:41:45 281760 ----a-w- c:\windows\system32\drivers\atksgt.sys
2013-02-23 21:41:44 25888 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2013-02-20 14:46:38 24736 ----a-w- c:\windows\system32\normaliz.dll
2013-02-04 12:27:49 1074560 ----a-w- c:\windows\system32\nvdrsdb0.bin
2013-02-04 12:27:49 1 ----a-w- c:\windows\system32\nvdrssel.bin
2013-02-04 12:27:46 1074560 ----a-w- c:\windows\system32\nvdrsdb1.bin
.
============= FINISH: 14:27:30,32 ===============
attach.txt
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 25.02.2011 21:24:14
System Uptime: 01.04.2013 13:24:50 (1 hours ago)
.
Motherboard: Gigabyte Technology Co., Ltd. | | P35-DS3
Processor: Intel(R) Core(TM)2 Duo CPU E6750 @ 2.66GHz | Socket 775 | 2666/333mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 39 GiB total, 16,54 GiB free.
D: is FIXED (NTFS) - 194 GiB total, 28,299 GiB free.
E: is CDROM ()
F: is CDROM (UDF)
.
==== Disabled Device Manager Items =============
.
Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC
Device ID: PCI\VEN_10EC&DEV_8168&SUBSYS_E0001458&REV_01\4&345CAFAF&0&00E4
Manufacturer: Realtek Semiconductor Corp.
Name: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC
PNP Device ID: PCI\VEN_10EC&DEV_8168&SUBSYS_E0001458&REV_01\4&345CAFAF&0&00E4
Service: RTLE8023xp
.
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: SM-Bus-Controller
Device ID: PCI\VEN_8086&DEV_2930&SUBSYS_50011458&REV_02\3&13C0B0C5&0&FB
Manufacturer:
Name: SM-Bus-Controller
PNP Device ID: PCI\VEN_8086&DEV_2930&SUBSYS_50011458&REV_02\3&13C0B0C5&0&FB
Service:
.
==== System Restore Points ===================
.
RP537: 17.03.2013 14:16:38 - Systemprüfpunkt
RP538: 18.03.2013 16:12:06 - Systemprüfpunkt
RP539: 19.03.2013 15:05:19 - Aeria Ignite wird entfernt
RP540: 21.03.2013 19:28:33 - Systemprüfpunkt
RP541: 23.03.2013 12:19:30 - Systemprüfpunkt
RP542: 24.03.2013 16:00:24 - Systemprüfpunkt
RP543: 25.03.2013 17:33:01 - Systemprüfpunkt
RP544: 26.03.2013 20:48:44 - Systemprüfpunkt
RP545: 27.03.2013 23:52:47 - Systemprüfpunkt
RP546: 29.03.2013 02:35:59 - DirectX wurde installiert
RP547: 30.03.2013 20:09:02 - Systemprüfpunkt
RP548: 31.03.2013 15:03:44 - Installiert Hi-Rez Studios Games
.
==== Installed Programs ======================
.
7-Zip 9.20
Adobe AIR
Adobe Community Help
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Media Player
Adobe Photoshop CS5
Adobe Reader X (10.1.0) - Deutsch
Akamai NetSession Interface
Akamai NetSession Interface Service
Apple Application Support
Apple Mobile Device Support
Apple Software Update
avast! Free Antivirus
Baldur's Gate
Baldur's Gate(TM) II - Throne of Bhaal (TM)
Bandisoft MPEG-1 Decoder
Bloodline Champions
Bonjour
BOSS
Brother HL-2140
CameraHelperMsi
CCleaner
CDBurnerXP
CDDRV_Installer
DAEMON Tools Lite
Dark Messiah
Diablo II
Die Rache des Dr. Düster
Dota 2
erLT
EVEREST Home Edition v2.20
Fable III
Fraps
Free Audio CD Burner version 2.0.22.128
Free YouTube to MP3 Converter version 3.11.22.508
Gigabyte Raid Configurer
GIMP 2.6.11
Hi-Rez Studios Authenticate and Update Service
High Definition Audio Driver Package - KB888111
Hotfix für Windows XP (KB932716-v2)
Hotfix für Windows XP (KB942288-v3)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB958655-v2)
iTunes
Java 7 Update 17
Java Auto Updater
Java SE Development Kit 7 Update 9
Java(TM) 6 Update 37
JDownloader 0.9
KhalInstallWrapper
LBZalphaversion
League of Legends
Legend of Grimrock
LIMBO
Logitech SetPoint
Logitech Webcam Software
LogMeIn Hamachi
LOLReplay
LWS Facebook
LWS Gallery
LWS Help_main
LWS Launcher
LWS Pictures And Video
LWS Video Mask Maker
LWS Webcam Software
LWS WLM Plugin
LWS YouTube Plugin
Magicka
Malwarebytes Anti-Malware version 1.70.0.1100
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - DEU
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - DEU
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Client Profile DEU Language Pack
Microsoft .NET Framework 4 Extended
Microsoft .NET Framework 4 Extended DEU Language Pack
Microsoft .NET Framework 4 Multi-Targeting Pack
Microsoft Application Error Reporting
Microsoft Games for Windows - LIVE
Microsoft Games for Windows - LIVE Redistributable
Microsoft Help Viewer 1.0
Microsoft Help Viewer 1.0 Language Pack - DEU
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft SQL Server Compact 3.5 SP2 DEU
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 Express - DEU
Microsoft XNA Framework Redistributable 3.1
Microsoft XNA Framework Redistributable 4.0
Microsoft_VC80_ATL_x86
Microsoft_VC80_CRT_x86
Microsoft_VC80_MFC_x86
Microsoft_VC80_MFCLOC_x86
Microsoft_VC90_ATL_x86
Microsoft_VC90_CRT_x86
Microsoft_VC90_MFC_x86
Midgen
Mozilla Firefox 19.0.2 (x86 de)
Mozilla Maintenance Service
NehrimUninstaller
Neverwinter
Nexon Game Manager
Nexus Mod Manager
NVIDIA Grafiktreiber 310.90
NVIDIA HD-Audiotreiber 1.3.18.0
NVIDIA Install Application
NVIDIA nView 136.53
NVIDIA nView Desktop Manager
NVIDIA PhysX
NVIDIA PhysX-Systemsoftware 9.12.1031
NVIDIA Systemsteuerung 310.90
NVIDIA Update 1.11.3
NVIDIA Update Components
Oblivion
OpenAL
OpenOffice.org 3.3
osu!
Pando Media Booster
Path of Exile
PCSX2 - Playstation 2 Emulator
PDF Settings CS5
PDF24 Creator 5.3.0
Pokemon Online 1.0.53
Project64 1.6
QuickTime
REALTEK GbE & FE Ethernet PCI-E NIC Driver
Realtek High Definition Audio Driver
Risen
RPG MAKER VX Ace RTP
Sansa Updater
SeaTools for Windows
Skype™ 5.9
Smite
Spotify
StarCraft II
Steam
TeamSpeak 2 RC2
TeamSpeak 3 Client
The Bard's Tale
The Elder Scrolls V Skyrim Update 9 (1.6.89.0.6) Deutsche Version 1.00
The Witcher: Enhanced Edition
Titan Quest
Titan Quest Immortal Throne
TQVault
Tunngle beta
USB Tablet Driver
Vindictus EU
VLC media player 1.1.11
Warcraft III: All Products
Warframe
WebFldrs XP
Windows XP Service Pack 3
WinRAR
XML Paper Specification Shared Components Language Pack 1.0
.
==== End Of File ===========================