[code] HitmanPro 3.6.1.164 www.hitmanpro.com Computer name . . . . : **** Windows . . . . . . . : 6.1.1.7601.X64/8 User name . . . . . . : **** UAC . . . . . . . . . : Disabled License . . . . . . . : Trial (30 days left) Scan date . . . . . . : 2012-10-08 18:34:55 Scan mode . . . . . . : Normal Scan duration . . . . : 1m 42s Disk access mode . . : Direct disk access (SRB) Cloud . . . . . . . . : Internet Reboot . . . . . . . : No Threats . . . . . . . : 0 Traces . . . . . . . : 7 Objects scanned . . . : 1 481 357 Files scanned . . . . : 32 222 Remnants scanned . . : 385 868 files / 1 063 267 keys Suspicious files ____________________________________________________________ C:\Users\****\AppData\Local\PunkBuster\APB\pb\pbcl.dll Size . . . . . . . : 952 264 bytes Age . . . . . . . : 240.9 days (2012-02-10 20:00:14) Entropy . . . . . : 7.6 SHA-256 . . . . . : D34C337836A42F88097F6B129E8B844D530B99A4A81264ED144AB6B5900A2AB8 Fuzzy . . . . . . : 29.0 The .reloc (relocation) section in this program contains code. This is an indication of malware infection. Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs. Authors name is missing in version info. This is not common to most programs. Version control is missing. This file is probably created by an individual. This is not typical for most programs. Program contains PE structure anomalies. This is not typical for most programs. C:\Users\****\AppData\Local\PunkBuster\APB\pb\PnkBstrK.sys Size . . . . . . . : 140 232 bytes Age . . . . . . . : 240.9 days (2012-02-10 20:00:44) Entropy . . . . . : 7.7 SHA-256 . . . . . : EA0BCD7655045EEB6D0BC52047ED25AD3F6F6CCD3CDE3A5F2609063AFCB0D7CD RSA Key Size . . . : 2048 Authenticode . . . : Valid Fuzzy . . . . . . : 22.0 The .reloc (relocation) section in this program contains code. This is an indication of malware infection. Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs. Authors name is missing in version info. This is not common to most programs. Version control is missing. This file is probably created by an individual. This is not typical for most programs. Program contains PE structure anomalies. This is not typical for most programs. The file is a device driver. Device drivers run as trusted (highly privileged) code. Program is code signed with a valid Authenticode certificate. C:\Users\****\AppData\Local\PunkBuster\BF3\pb\dll\wc002292.dll Size . . . . . . . : 956 681 bytes Age . . . . . . . : 182.2 days (2012-04-09 13:02:40) Entropy . . . . . : 7.6 SHA-256 . . . . . : 7218A15A9890CE82EB25F7AB5AC7AA60B4E3055C5574B70A6CABA4274D6DE493 Fuzzy . . . . . . : 29.0 The .reloc (relocation) section in this program contains code. This is an indication of malware infection. Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs. Authors name is missing in version info. This is not common to most programs. Version control is missing. This file is probably created by an individual. This is not typical for most programs. Program contains PE structure anomalies. This is not typical for most programs. C:\Users\****\AppData\Local\PunkBuster\BF3\pb\pbcl.dll Size . . . . . . . : 956 681 bytes Age . . . . . . . : 124.1 days (2012-06-06 15:21:02) Entropy . . . . . : 7.6 SHA-256 . . . . . : 7218A15A9890CE82EB25F7AB5AC7AA60B4E3055C5574B70A6CABA4274D6DE493 Fuzzy . . . . . . : 29.0 The .reloc (relocation) section in this program contains code. This is an indication of malware infection. Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs. Authors name is missing in version info. This is not common to most programs. Version control is missing. This file is probably created by an individual. This is not typical for most programs. Program contains PE structure anomalies. This is not typical for most programs. C:\Users\****\AppData\Local\PunkBuster\BF3\pb\pbclold.dll Size . . . . . . . : 956 681 bytes Age . . . . . . . : 220.0 days (2012-03-02 18:52:12) Entropy . . . . . : 7.6 SHA-256 . . . . . : 7218A15A9890CE82EB25F7AB5AC7AA60B4E3055C5574B70A6CABA4274D6DE493 Fuzzy . . . . . . : 29.0 The .reloc (relocation) section in this program contains code. This is an indication of malware infection. Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs. Authors name is missing in version info. This is not common to most programs. Version control is missing. This file is probably created by an individual. This is not typical for most programs. Program contains PE structure anomalies. This is not typical for most programs. Cookies _____________________________________________________________________ C:\Users\****\AppData\Roaming\Microsoft\Windows\Cookies\0F9FV8SI.txt C:\Users\****\AppData\Roaming\Microsoft\Windows\Cookies\14H288Y9.txt [/code]