~ Report of ZHPDiag v2014.5.9.58 - Nicolas Coolman (09/05/2014) ~ Launched by DELL (11/05/2014 18:44:22) ~ Web site address : http://nicolascoolman.webs.com ~ Free support forums for disinfection : http://nicolascoolman.webs.com/apps/links/ ~ Translated by ~ Version State : ~ White List : Deactivate by user ~ Elevation of privilege : OK ~ User Account Control : Activate by user ---\\ Internet browsers MSIE: Internet Explorer v11.0.9600.17105 (Defaut) GCIE: Google Chrome v34.0.1847.131 ---\\ Windows product information ~ Langage: Anglais Windows 8.1 Pro, 64-bit (Build 9600) Windows Server License Manager Script : OK ~ Windows(R) Operating System, VOLUME_KMSCLIENT channel Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ System protection software Windows Defender W8 ---\\ System optimization software ---\\ Sharing software PeerToPeer ---\\ Surveillance software ---\\ Information on the system ~ Processor: Intel64 Family 6 Model 26 Stepping 5, GenuineIntel ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 4093 MB (70% free) System Restore: Activé (Enable) System drive C: has 240 GB (80%) free of 298 GB ---\\ Connection to the system mode ~ Computer Name: HP ~ User Name: DELL ~ All Users Names: HomeGroupUser$, Guest, DELL, Administrator, ~ Unselected Option: None Logged in as Administrator ---\\ Environment variables ~ System Unit : C:\ ~ %AppZHP% : C:\Users\DELL\AppData\Roaming\ZHP\ ~ %AppData% : C:\Users\DELL\AppData\Roaming\ ~ %Desktop% : C:\Users\DELL\Desktop\ ~ %Favorites% : C:\Users\DELL\Favorites\ ~ %LocalAppData% : C:\Users\DELL\AppData\Local\ ~ %StartMenu% : C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumeration of the disk units C: Hard drive, Flash drive, Thumb drive (Free 240 Go of 298 Go) D: Hard drive, Flash drive, Thumb drive (Free 247 Go of 466 Go) ---\\ State of the Windows Security Center [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ~ Security Center: 41 Scanned in 00mn 00s ---\\ Search Generic System Files [MD5.81394C91B7B5A7C799E249AE82491F13] - (.Microsoft Corporation - Windows Explorer.) (.04/03/2014 - 12:25:49.) -- C:\Windows\Explorer.exe [2373784] [MD5.48CFA7BE561A7BE144C29BB912055016] - (.Microsoft Corporation - Windows Start-Up Application.) (.22/08/2013 - 09:58:29.) -- C:\Windows\System32\Wininit.exe [144384] [MD5.65C36A29A131A3A5D64B29FAC4EF6DD6] - (.Microsoft Corporation - Internet Extensions for Win32.) (.18/03/2014 - 10:05:27.) -- C:\Windows\System32\wininet.dll [2262016] [MD5.306EB21E5B480AE9065EA55AC8C35936] - (.Microsoft Corporation - Windows Logon Application.) (.18/03/2014 - 10:05:24.) -- C:\Windows\System32\Winlogon.exe [562176] [MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Software Licensing Library.) (.18/03/2014 - 10:05:26.) -- C:\Windows\System32\sppcomapi.dll [447488] [MD5.239268BAB58EAE9A3FF4E08334C00451] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.22/08/2013 - 13:25:35.) -- C:\Windows\system32\Drivers\AFD.sys [567296] [MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.22/08/2013 - 12:43:41.) -- C:\Windows\system32\Drivers\atapi.sys [26464] [MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) (.22/08/2013 - 11:40:15.) -- C:\Windows\system32\Drivers\Cdfs.sys [88576] [MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.22/08/2013 - 08:46:35.) -- C:\Windows\system32\Drivers\Cdrom.sys [164352] [MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.06/03/2014 - 09:22:50.) -- C:\Windows\system32\Drivers\DfsC.sys [134144] [MD5.03909BDBFF0DCACCABF2B2D4ADEE44DC] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.22/08/2013 - 11:38:38.) -- C:\Windows\system32\Drivers\HDAudBus.sys [78336] [MD5.84CFC5EFA97D0C965EDE1D56F116A541] - (.Microsoft Corporation - i8042 Port Driver.) (.22/08/2013 - 11:39:15.) -- C:\Windows\system32\Drivers\i8042prt.sys [107520] [MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) (.18/03/2014 - 10:05:28.) -- C:\Windows\system32\Drivers\IpNat.sys [142848] [MD5.C997E6A37BA8915224B3FB5024A34F69] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.06/03/2014 - 09:20:23.) -- C:\Windows\system32\Drivers\MRxSmb.sys [402944] [MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) (.22/08/2013 - 11:37:02.) -- C:\Windows\system32\Drivers\netBT.sys [282624] [MD5.1C80517BE6836A812F6A9B99B8321351] - (.Microsoft Corporation - NT File System Driver.) (.20/03/2014 - 03:41:24.) -- C:\Windows\system32\Drivers\ntfs.sys [2013016] [MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Parallel Port Driver.) (.22/08/2013 - 11:40:02.) -- C:\Windows\system32\Drivers\Parport.sys [94208] [MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.22/08/2013 - 11:35:51.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [120832] [MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.18/03/2014 - 09:43:16.) -- C:\Windows\system32\Drivers\rdpdr.sys [195584] [MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) (.22/08/2013 - 13:25:35.) -- C:\Windows\system32\Drivers\tdx.sys [107520] [MD5.3595FBDF25F8BA6256072D103937D7D6] - (.Microsoft Corporation - Volume Shadow Copy Driver.) (.18/03/2014 - 10:05:05.) -- C:\Windows\system32\Drivers\volsnap.sys [311640] ~ Generic Processes: Scanned in 00mn 00s ---\\ Hidden files state (Hidden/Total) ~ Mes Videos (My Videos) : 1/2 ~ Mes Favoris (My Favorites) : 1/3 ~ Mes Documents (My Documents) : 2/19 ~ Mon Bureau (My Desktop) : 2/18 ~ Menu demarrer (Programs) : 1/52 ~ Hidden Files: Scanned in 00mn 00s ---\\ Process running [MD5.08DFD1A032D6A8B33EA77F090998EDE6] - (.No owner - MSIAfterburner.) -- C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [465064] [PID.2232] [MD5.1C277F500547B4991A4DFED19F377C81] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3829328] [PID.3516] [MD5.C3F1D3FCEF168F7630DE940028866D6C] - (.Electronic Arts - Origin.) -- D:\Origin\Origin.exe [3588952] [PID.3148] [MD5.BD95E822E7A958BBCA842D078426A151] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [269848] [PID.7496] [MD5.5C8A3E7E9E0A1C6B95E650F9CCDB8A08] - (.No owner - RTSS.) -- C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe [188928] [PID.4736] [MD5.0753C8C4D72113C38BA00B5F9EA08235] - (.No owner - EncoderServer.) -- C:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe [26112] [PID.5020] [MD5.542459D16B416D054161007FC9B1246E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [841032] [PID.4984] [MD5.05BE9A378036323EC42CCD3F9BB03266] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7872000] [PID.4908] ~ Processes Running: Scanned in 00mn 00s ---\\ Google Chrome, Start,Search,Extensions (G0,G1,G2) C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Preferences G1 - GCS: Preference [User Data\Default] None G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Google Store v.0.2 (Activé) G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Documents Google v.0.5 (Activé) G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Drive v.6.3 (Activé) G2 - GCE: Preference [User Data\Default] [bbljgmognlmekcmkmlbgnmmkpklflojd] nGenx nFinity Browserâ„¢ v.0.0.1.0 (Désactivé) G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube v.4.2.6 (Activé) G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Recherche Google v.0.0.0.20 (Activé) G2 - GCE: Preference [User Data\Default] [eemcgdkfndhakfknompkggombfjjjeno] Bookmark Manager v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [ennkphjdgehloodpbhlhldgbnhmacadg] Settings v.0.2 (Activé) G2 - GCE: Preference [User Data\Default] [gfdkimpbcpahaombhbimeihdjnejgicl] Feedback v.1.0 (Activé) G2 - GCE: Preference [User Data\Default] [jeaohhlajejodfjadcponpnjgkiikocn] IDM Integration Module v.6.19.8, (Activé) G2 - GCE: Preference [User Data\Default] [mfehgcgbbipciphmccgaenjidiccnmng] Cloud Print v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [mfffpogegjflfpflabcdkioaeobkgjik] GaiaAuthExtension v.0.0.1, (Activé) G2 - GCE: Preference [User Data\Default] [mgndgikekgjfcpckkfioiadnlibdjbkf] Chrome v.0.1 (Activé) G2 - GCE: Preference [User Data\Default] [neajdppkdcdipfabeoofebfddakdcjhd] Google Network Speech v.1.0 (Activé) G2 - GCE: Preference [User Data\Default] [nkeimhogjdpnpccoofpliimaahmaaome] Hangout Services v.1.0 (Activé) G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Wallet v.0.0.6.1 (Activé) G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Gmail v.7 (Activé) ---\\ Google Chrome Extension Folder G2 - EXT: C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [Documents Google] G2 - EXT: C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [Google Drive] G2 - EXT: C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbljgmognlmekcmkmlbgnmmkpklflojd [nGenx nFinity Browserâ„¢] G2 - EXT: C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [YouTube] G2 - EXT: C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [Recherche Google] G2 - EXT: C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeaohhlajejodfjadcponpnjgkiikocn [IDM Integration Module] G2 - EXT: C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [Google Wallet] G2 - EXT: C:\Users\DELL\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [Gmail] ~ Google Lines Browser: 26 Scanned in 00mn 04s ---\\ Internet Explorer Extensions, Start, Search (R4,R3,R0,R1) R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Browser.) (11.00.9600.17031 (winblue_gdr.140221-1952)) -- C:\Windows\SysWOW64\ieframe.dll ~ IE Browser: 15 Scanned in 00mn 00s ---\\ Internet Explorer, Proxy Management (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Line Analysis F0, F1, F2, F3 - IniFiles, Auto loading programs F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Hosts file redirection (O1) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 19 ---\\ Browser Helper Objects (O2) O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll ~ BHO: 2 Scanned in 00mn 00s ---\\ Other User Links (O4) O4 - GS\Desktop [DELL]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) -- C:\Users\DELL\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent ~ Global Startup: 1 Scanned in 00mn 00s ---\\ Auto loading programs from Registry and folders (O4) O4 - HKLM\..\Run: [egui] . (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe O4 - HKCU\..\Run: [EADM] . (.Electronic Arts - Origin.) -- D:\Origin\Origin.exe O4 - HKUS\S-1-5-21-1792643505-1849582693-2802386851-1001\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe O4 - HKUS\S-1-5-21-1792643505-1849582693-2802386851-1001\..\Run: [EADM] . (.Electronic Arts - Origin.) -- D:\Origin\Origin.exe ~ Application: Scanned in 00mn 00s ---\\ IE Options icon not visible in Control Panel (O5) O5 - control.ini: [HKLM\..\Control Panel] inetcpl.cpl=no ~ IE Control Panel: 1 Scanned in 00mn 00s ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - E-mail Naming Shim Provider.) -- C:\Windows\system32\napinsp.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - PNRP Name Space Provider.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - PNRP Name Space Provider.) -- C:\Windows\system32\pnrpnsp.dll O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll O10 - WLSP:\000000000005\Winsock LSP File . (.Microsoft Corporation - Microsoft Windows Sockets 2.0 Service Provider.) -- C:\Windows\system32\mswsock.dll O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll ~ Winsock: 6 Scanned in 00mn 00s ---\\ Lop.com/Domain Hijackers (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{91F29F7D-7B22-4050-A18B-776ADDAB996D}: DhcpNameServer = 62.251.229.223 62.251.229.237 O17 - HKLM\System\CS1\Services\Tcpip\..\{91F29F7D-7B22-4050-A18B-776ADDAB996D}: DhcpNameServer = 62.251.229.223 62.251.229.237 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.251.229.223 62.251.229.237 ~ Domain: Scanned in 00mn 00s ---\\ Extra protocols (O18) O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ ShellServiceObjectDelayLoad (O21) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. ~ SSODL: 1 Scanned in 00mn 00s ---\\ Non Microsoft non disabled Windows XP/NT/2000 Services (O23) O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 337.5.) - C:\Windows\system32\nvvsvc.exe O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\SysWOW64\PnkBstrA.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe ~ Services: 5 Scanned in 00mn 05s ---\\ Windows Active Desktop & MHTML Editor (O24) O24 - Default MHTML Editor: Last - .(...) - (.not file.) ~ Desktop Component: 4 Scanned in 00mn 00s ---\\ BootExecute (BEX) (O34) O34 - HKLM BootExecute: (autocheck autochk *) - File not found ~ BEX: 1 Scanned in 00mn 00s ---\\ Task Planned Automatically (039) [MD5.00000000000000000000000000000000] [APT] [BOTREVOLT_STARTUP_TASK_918CB0F9_1EF8_4c60_8205_7AAB364CD162] (...) -- C:\Program Files\BotRevoltFree\botrevoltfree.exe (.not file.) [0] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [MD5.08DFD1A032D6A8B33EA77F090998EDE6] [APT] [MSIAfterburner] (...) -- C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [465064] O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [896] O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [896] O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [900] O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [900] ~ Scheduled Task: 7 Scanned in 00mn 02s ---\\ ActiveSetup Installed Components (O40) O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Resources.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\SysWOW64\wmpdxm.dll =>.Microsoft Corporation O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - Windows Theme API.) -- C:\Windows\System32\themeui.dll O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files (x86)\Windows Mail\WinMail.exe =>.Microsoft Corporation O40 - ASIC: Browsing Enhancements [64Bits] - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Microsoft Internet Explorer FTP Folder Shell Extension.) -- C:\Windows\System32\msieftp.dll O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Windows Media Player Resources.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation O40 - ASIC: Windows Desktop Update [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll ~ Active Setup: 9 Scanned in 00mn 00s ---\\ Drivers launched at startup (O41) O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys O41 - Driver: C:\Windows\System32\drivers\ahcache.sys (ahcache) . (.Microsoft Corporation - Application Compatibility Cache.) - C:\Windows\System32\DRIVERS\ahcache.sys O41 - Driver: (BasicDisplay) . (.Microsoft Corporation - Microsoft Basic Display Driver.) - C:\Windows\system32\drivers\BasicDisplay.sys O41 - Driver: (BasicRender) . (.Microsoft Corporation - Microsoft Basic Render Driver.) - C:\Windows\system32\drivers\BasicRender.sys O41 - Driver: cdrom.inf (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\system32\drivers\cdrom.sys O41 - Driver: C:\Windows\System32\cscsvc.dll (CSC) . (.Microsoft Corporation - Windows Client Side Caching Driver.) - C:\Windows\System32\drivers\csc.sys O41 - Driver: C:\Windows\System32\drivers\dam.sys (dam) . (.Microsoft Corporation - DAM Kernel Driver.) - C:\Windows\System32\drivers\dam.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (Dfsc) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys O41 - Driver: (eamonm) . (.ESET - Amon monitor.) - C:\Windows\System32\DRIVERS\eamonm.sys O41 - Driver: (ehdrv) . (.ESET - ESET Helper driver.) - C:\Windows\system32\DRIVERS\ehdrv.sys O41 - Driver: oem4.inf (EpfwLWF) . (.ESET - Epfw NDIS LightWeight Filter.) - C:\Windows\system32\DRIVERS\EpfwLWF.sys O41 - Driver: mssmbios.inf (mssmbios) . (.Microsoft Corporation - System Management BIOS Driver.) - C:\Windows\system32\drivers\mssmbios.sys O41 - Driver: netnb.inf (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys O41 - Driver: C:\Windows\System32\drivers\netbt.sys (NetBT) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys O41 - Driver: npsvctrig.inf (npsvctrig) . (.Microsoft Corporation - Named pipe service triggers.) - C:\Windows\system32\drivers\npsvctrig.sys O41 - Driver: C:\Windows\System32\drivers\nsiproxy.sys (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys O41 - Driver: C:\Windows\System32\drivers\pacer.sys (Psched) . (.Microsoft Corporation - QoS Packet Scheduler.) - C:\Windows\system32\DRIVERS\pacer.sys O41 - Driver: C:\Windows\System32\wkssvc.dll (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\system32\DRIVERS\tdx.sys O41 - Driver: C:\Windows\System32\drivers\vwififlt.sys (vwififlt) . (.Microsoft Corporation - Virtual WiFi Filter Driver.) - C:\Windows\system32\DRIVERS\vwififlt.sys ~ Drivers: 40 Scanned in 00mn 00s ---\\ Software installed (O42) O42 - Logiciel: Any Video Converter Professional 5.5.9 - (.Any-Video-Converter.com.) [HKLM][64Bits] -- Any Video Converter Professional_is1 O42 - Logiciel: Battlefield 4™ - (.Electronic Arts.) [HKLM][64Bits] -- {ABADE36E-EC37-413B-8179-B432AD3FACE7} O42 - Logiciel: Battlelog Web Plugins - (.EA Digital Illusions CE AB.) [HKLM][64Bits] -- Battlelog Web Plugins O42 - Logiciel: Bioshock Infinite - (...) [HKLM][64Bits] -- {AD42BE13-F726-482C-B40C-D2ABB904B85B}_is1 O42 - Logiciel: CPUID HWMonitor 1.24 - (...) [HKLM][64Bits] -- CPUID HWMonitor_is1 O42 - Logiciel: Crysis® 2 - (.Electronic Arts.) [HKLM][64Bits] -- {6033673D-2530-4587-8AD0-EB059FC263F9} O42 - Logiciel: ESET Smart Security - (.ESET, spol s r. o..) [HKLM][64Bits] -- {F7C525E7-659A-47F6-A25A-7A63FA10E767} O42 - Logiciel: ESN Sonar - (.ESN Social Software AB.) [HKLM][64Bits] -- ESN Sonar-0.70.4 O42 - Logiciel: Fraps (remove only) - (...) [HKLM][64Bits] -- Fraps O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager O42 - Logiciel: MSI Afterburner 3.0.0 Beta 19 - (.MSI Co., LTD.) [HKLM][64Bits] -- Afterburner O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {C2B8CBDE-5232-11E3-B494-F04DA23A5C58} O42 - Logiciel: NVIDIA 3D Vision Controller Driver 337.50 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB O42 - Logiciel: NVIDIA 3D Vision Driver 337.50 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision O42 - Logiciel: NVIDIA Graphics Driver 337.50 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {80407BA7-7763-4395-AB98-5233F1B34E65} O42 - Logiciel: NVIDIA PhysX System Software 9.13.1220 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo O42 - Logiciel: Need For Speed The Run - (.R.G. Mechanics, spider91.) [HKLM][64Bits] -- Need For Speed The Run_R.G. Mechanics_is1 O42 - Logiciel: NirSoft Wireless Network Watcher - (...) [HKLM][64Bits] -- NirSoft Wireless Network Watcher O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM][64Bits] -- PunkBusterSvc O42 - Logiciel: RivaTuner Statistics Server 6.1.0 - (.Unwinder.) [HKLM][64Bits] -- RTSS O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM][64Bits] -- TeamSpeak 3 Client O42 - Logiciel: TechPowerUp GPU-Z - (.TechPowerUp.) [HKLM][64Bits] -- TechPowerUp GPU-Z O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay O42 - Logiciel: VLC media player 2.1.3 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: Vegas Pro 12.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {BD422D00-5232-11E3-A6F3-F04DA23A5C58} O42 - Logiciel: WinRAR 5.01 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent =>P2P.BitTorrent ~ Logic: 48 Scanned in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\AnvSoft] [HKCU\Software\AppDataLow] [HKCU\Software\BitTorrent] =>P2P.BitTorrent [HKCU\Software\Classes] [HKCU\Software\Crytek] [HKCU\Software\DirectShow] [HKCU\Software\DownloadManager] [HKCU\Software\ESET] [HKCU\Software\Electronic Arts] [HKCU\Software\FLT] [HKCU\Software\Fraps3] [HKCU\Software\GameSpy] [HKCU\Software\Gameforge4d] [HKCU\Software\Google] [HKCU\Software\L2j Community Network] [HKCU\Software\MSI] [HKCU\Software\Macromedia] [HKCU\Software\Mine] [HKCU\Software\MozillaPlugins] [HKCU\Software\Mozilla] [HKCU\Software\NVIDIA Corporation] [HKCU\Software\Policies] [HKCU\Software\RegisteredApplications] [HKCU\Software\Sony Creative Software] [HKCU\Software\Sysinternals] [HKCU\Software\Trolltech] [HKCU\Software\Unwinder] [HKCU\Software\Valve] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\Wow6432Node] [HKCU\Software\ZebHelpProcess Helper] [HKCU\Software\techPowerUp] [HKLM\Software\AGEIA Technologies] [HKLM\Software\BotRevolt] [HKLM\Software\CPUID] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\EA Games] [HKLM\Software\ESET] [HKLM\Software\Intel] [HKLM\Software\Khronos] [HKLM\Software\Macromedia] [HKLM\Software\Mozilla] [HKLM\Software\NVIDIA Corporation] [HKLM\Software\ODBC] [HKLM\Software\Policies] [HKLM\Software\RegisteredApplications] [HKLM\Software\Sony Creative Software] [HKLM\Software\Unwinder] [HKLM\Software\Wow6432Node\AGEIA Technologies] [HKLM\Software\Wow6432Node\CDDB] [HKLM\Software\Wow6432Node\Classes] [HKLM\Software\Wow6432Node\Clients] [HKLM\Software\Wow6432Node\Crytek] [HKLM\Software\Wow6432Node\EA Games] [HKLM\Software\Wow6432Node\ESET] [HKLM\Software\Wow6432Node\Electronic Arts] [HKLM\Software\Wow6432Node\Even Balance] [HKLM\Software\Wow6432Node\Gameforge] [HKLM\Software\Wow6432Node\Google] [HKLM\Software\Wow6432Node\Intel] [HKLM\Software\Wow6432Node\Khronos] [HKLM\Software\Wow6432Node\MSI] [HKLM\Software\Wow6432Node\Macromedia] [HKLM\Software\Wow6432Node\Metin2_EN] [HKLM\Software\Wow6432Node\MozillaPlugins] [HKLM\Software\Wow6432Node\Mozilla] [HKLM\Software\Wow6432Node\NVIDIA Corporation] [HKLM\Software\Wow6432Node\Nostale_UK] [HKLM\Software\Wow6432Node\ODBC] [HKLM\Software\Wow6432Node\OpenAutomate] [HKLM\Software\Wow6432Node\Origin Games] [HKLM\Software\Wow6432Node\Overwolf] [HKLM\Software\Wow6432Node\Policies] [HKLM\Software\Wow6432Node\RegisteredApplications] [HKLM\Software\Wow6432Node\Runes of Magic] [HKLM\Software\Wow6432Node\Sony Creative Software] [HKLM\Software\Wow6432Node\Ubisoft] [HKLM\Software\Wow6432Node\Unwinder] [HKLM\Software\Wow6432Node\Valve] [HKLM\Software\Wow6432Node\VideoLAN] [HKLM\Software\Wow6432Node\WinRAR] [HKLM\Software\Wow6432Node\Zemi Interactive] [HKLM\Software\Wow6432Node] ~ Key Software: 174 Scanned in 00mn 00s ---\\ Contents of the Common Files folders (O43) O43 - CFD: 06/05/2014 - 12:37:01 - [0] ----D C:\Program Files (x86)\AGEIA Technologies O43 - CFD: 08/05/2014 - 18:30:12 - [] ----D C:\Program Files (x86)\AnvSoft O43 - CFD: 07/05/2014 - 21:22:56 - [] ----D C:\Program Files (x86)\Battlelog Web Plugins O43 - CFD: 07/05/2014 - 13:04:09 - [] ----D C:\Program Files (x86)\Bioshock Infinite O43 - CFD: 10/05/2014 - 18:38:51 - [] ----D C:\Program Files (x86)\Common Files O43 - CFD: 06/05/2014 - 12:08:02 - [] ----D C:\Program Files (x86)\Google O43 - CFD: 07/05/2014 - 20:01:19 - [] ----D C:\Program Files (x86)\GPU-Z O43 - CFD: 06/05/2014 - 12:38:46 - [] ----D C:\Program Files (x86)\Internet Download Manager O43 - CFD: 18/03/2014 - 10:18:12 - [] ----D C:\Program Files (x86)\Internet Explorer O43 - CFD: 22/08/2013 - 15:36:30 - [] ----D C:\Program Files (x86)\Microsoft.NET O43 - CFD: 06/05/2014 - 23:23:22 - [] ----D C:\Program Files (x86)\MSBuild O43 - CFD: 10/05/2014 - 22:44:16 - [] ----D C:\Program Files (x86)\MSI Afterburner O43 - CFD: 08/05/2014 - 01:03:49 - [] ----D C:\Program Files (x86)\NirSoft O43 - CFD: 07/05/2014 - 18:28:20 - [] ----D C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 08/05/2014 - 11:46:17 - [] ----D C:\Program Files (x86)\R.G. Mechanics O43 - CFD: 06/05/2014 - 23:23:22 - [] ----D C:\Program Files (x86)\Reference Assemblies O43 - CFD: 10/05/2014 - 12:15:20 - [] ----D C:\Program Files (x86)\RivaTuner Statistics Server O43 - CFD: 08/05/2014 - 17:41:36 - [] ----D C:\Program Files (x86)\Sony O43 - CFD: 10/05/2014 - 19:00:20 - [] ----D C:\Program Files (x86)\Steam O43 - CFD: 06/05/2014 - 23:17:21 - [] ----D C:\Program Files (x86)\TeamSpeak 3 Client O43 - CFD: 10/05/2014 - 18:36:03 - [] ----D C:\Program Files (x86)\Ubisoft O43 - CFD: 06/05/2014 - 12:00:50 - [] ----D C:\Program Files (x86)\VideoLAN O43 - CFD: 09/05/2014 - 02:53:28 - [] ----D C:\Program Files (x86)\Windows Defender O43 - CFD: 18/03/2014 - 09:30:53 - [] ----D C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 18/03/2014 - 10:18:06 - [] ----D C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 18/03/2014 - 10:18:06 - [] ----D C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 22/08/2013 - 15:36:30 - [] ----D C:\Program Files (x86)\Windows NT O43 - CFD: 18/03/2014 - 09:30:52 - [] ----D C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 18/03/2014 - 10:18:06 - [] ----D C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 22/08/2013 - 15:36:30 - [] -S--D C:\Program Files (x86)\Windows Sidebar O43 - CFD: 22/08/2013 - 15:36:30 - [] ----D C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 06/05/2014 - 12:00:29 - [] ----D C:\Program Files (x86)\WinRAR O43 - CFD: 11/05/2014 - 01:09:56 - [] ----D C:\Program Files (x86)\ZHPDiag =>.Nicolas Coolman O43 - CFD: 06/05/2014 - 13:55:14 - [] --H-D C:\Program Files (x86)\Common Files\EAInstaller O43 - CFD: 08/05/2014 - 11:40:29 - [] ----D C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 22/08/2013 - 15:36:33 - [] ----D C:\Program Files (x86)\Common Files\Services O43 - CFD: 10/05/2014 - 18:42:20 - [] ----D C:\Program Files (x86)\Common Files\Steam O43 - CFD: 22/08/2013 - 15:43:30 - [] ----D C:\Program Files (x86)\Common Files\System O43 - CFD: 22/08/2013 - 14:45:52 - [] -SH-D C:\ProgramData\Application Data O43 - CFD: 22/08/2013 - 14:45:52 - [] -SH-D C:\ProgramData\Desktop O43 - CFD: 22/08/2013 - 14:45:52 - [] -SH-D C:\ProgramData\Documents O43 - CFD: 10/05/2014 - 10:45:41 - [] ----D C:\ProgramData\EA Core O43 - CFD: 10/05/2014 - 11:04:04 - [] ----D C:\ProgramData\EA Logs O43 - CFD: 06/05/2014 - 14:09:55 - [] ----D C:\ProgramData\Electronic Arts O43 - CFD: 06/05/2014 - 12:02:58 - [] ----D C:\ProgramData\ESET O43 - CFD: 06/05/2014 - 12:01:22 - [0] ----D C:\ProgramData\IDM O43 - CFD: 06/05/2014 - 20:00:20 - [] -S--D C:\ProgramData\Microsoft O43 - CFD: 06/05/2014 - 12:41:32 - [] ----D C:\ProgramData\Microsoft Toolkit O43 - CFD: 10/05/2014 - 12:13:55 - [] ----D C:\ProgramData\NVIDIA O43 - CFD: 07/05/2014 - 18:28:20 - [] ----D C:\ProgramData\NVIDIA Corporation O43 - CFD: 11/05/2014 - 12:49:48 - [] ----D C:\ProgramData\Origin O43 - CFD: 06/05/2014 - 13:54:53 - [] ----D C:\ProgramData\Package Cache O43 - CFD: 18/03/2014 - 09:43:28 - [] ----D C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 08/05/2014 - 17:41:36 - [] ----D C:\ProgramData\Sony O43 - CFD: 22/08/2013 - 14:45:52 - [] -SH-D C:\ProgramData\Start Menu O43 - CFD: 22/08/2013 - 14:45:52 - [] -SH-D C:\ProgramData\Templates O43 - CFD: 06/05/2014 - 11:56:16 - [] ----D C:\Users\DELL\AppData\Roaming\Adobe O43 - CFD: 08/05/2014 - 18:30:52 - [] ----D C:\Users\DELL\AppData\Roaming\AnvSoft O43 - CFD: 10/05/2014 - 19:17:50 - [] ----D C:\Users\DELL\AppData\Roaming\DMCache O43 - CFD: 06/05/2014 - 12:03:48 - [] ----D C:\Users\DELL\AppData\Roaming\ESET O43 - CFD: 10/05/2014 - 11:31:11 - [] ----D C:\Users\DELL\AppData\Roaming\IDM O43 - CFD: 06/05/2014 - 11:59:25 - [] ----D C:\Users\DELL\AppData\Roaming\Macromedia O43 - CFD: 08/05/2014 - 11:45:15 - [] -S--D C:\Users\DELL\AppData\Roaming\Microsoft O43 - CFD: 08/05/2014 - 12:42:04 - [] ----D C:\Users\DELL\AppData\Roaming\Need For Speed The Run O43 - CFD: 08/05/2014 - 17:42:33 - [] ----D C:\Users\DELL\AppData\Roaming\NVIDIA O43 - CFD: 10/05/2014 - 02:43:58 - [] ----D C:\Users\DELL\AppData\Roaming\Origin O43 - CFD: 08/05/2014 - 17:42:28 - [0] ----D C:\Users\DELL\AppData\Roaming\Publish Providers O43 - CFD: 08/05/2014 - 18:05:21 - [] ----D C:\Users\DELL\AppData\Roaming\Sony O43 - CFD: 06/05/2014 - 23:28:45 - [] ----D C:\Users\DELL\AppData\Roaming\TS3Client O43 - CFD: 08/05/2014 - 17:30:15 - [] ----D C:\Users\DELL\AppData\Roaming\uTorrent =>P2P.µTorrent O43 - CFD: 08/05/2014 - 18:47:41 - [] ----D C:\Users\DELL\AppData\Roaming\vlc O43 - CFD: 06/05/2014 - 12:25:40 - [] ----D C:\Users\DELL\AppData\Roaming\WinRAR O43 - CFD: 11/05/2014 - 18:44:36 - [] ----D C:\Users\DELL\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 06/05/2014 - 11:56:03 - [] -SH-D C:\Users\DELL\AppData\Local\Application Data O43 - CFD: 10/05/2014 - 11:03:26 - [] ----D C:\Users\DELL\AppData\Local\CrashDumps O43 - CFD: 06/05/2014 - 11:58:43 - [] -SH-D C:\Users\DELL\AppData\Local\EmieSiteList O43 - CFD: 06/05/2014 - 11:58:43 - [] -SH-D C:\Users\DELL\AppData\Local\EmieUserList O43 - CFD: 06/05/2014 - 12:03:48 - [] ----D C:\Users\DELL\AppData\Local\ESET O43 - CFD: 07/05/2014 - 22:50:10 - [] ----D C:\Users\DELL\AppData\Local\ESN O43 - CFD: 07/05/2014 - 13:06:54 - [] ----D C:\Users\DELL\AppData\Local\FLT O43 - CFD: 06/05/2014 - 12:08:16 - [] ----D C:\Users\DELL\AppData\Local\Google O43 - CFD: 06/05/2014 - 11:56:03 - [] -SH-D C:\Users\DELL\AppData\Local\History O43 - CFD: 10/05/2014 - 11:04:01 - [] ----D C:\Users\DELL\AppData\Local\Microsoft O43 - CFD: 07/05/2014 - 18:28:14 - [] ----D C:\Users\DELL\AppData\Local\NVIDIA Corporation O43 - CFD: 06/05/2014 - 13:52:35 - [] ----D C:\Users\DELL\AppData\Local\Origin O43 - CFD: 06/05/2014 - 11:56:44 - [] ----D C:\Users\DELL\AppData\Local\Packages O43 - CFD: 06/05/2014 - 17:05:57 - [] ----D C:\Users\DELL\AppData\Local\Programs O43 - CFD: 06/05/2014 - 14:11:54 - [] ----D C:\Users\DELL\AppData\Local\PunkBuster O43 - CFD: 07/05/2014 - 20:04:41 - [0] ----D C:\Users\DELL\AppData\Local\RealVNC O43 - CFD: 08/05/2014 - 17:41:36 - [] ----D C:\Users\DELL\AppData\Local\Sony O43 - CFD: 11/05/2014 - 18:43:56 - [] ----D C:\Users\DELL\AppData\Local\Temp O43 - CFD: 06/05/2014 - 11:56:03 - [] -SH-D C:\Users\DELL\AppData\Local\Temporary Internet Files O43 - CFD: 10/05/2014 - 18:38:03 - [] ----D C:\Users\DELL\AppData\Local\Ubisoft Game Launcher O43 - CFD: 08/05/2014 - 01:34:08 - [] ----D C:\Users\DELL\AppData\Local\VirtualStore O43 - CFD: 18/03/2014 - 10:18:09 - [] R---D C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 22/08/2013 - 15:36:32 - [] R---D C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 09/05/2014 - 11:13:43 - [] R---D C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 06/05/2014 - 12:01:20 - [] ----D C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 22/08/2013 - 15:36:32 - [] ----D C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 07/05/2014 - 14:57:32 - [] ----D C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner O43 - CFD: 08/05/2014 - 01:03:49 - [] ----D C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft Wireless Network Watcher O43 - CFD: 07/05/2014 - 14:58:05 - [] ----D C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server O43 - CFD: 09/05/2014 - 11:13:43 - [] R---D C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 18/03/2014 - 10:18:09 - [] R---D C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 07/05/2014 - 20:01:19 - [] ----D C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z O43 - CFD: 10/05/2014 - 18:36:13 - [] ----D C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft O43 - CFD: 06/05/2014 - 12:00:29 - [] ----D C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ~ Program Folder: 107 Scanned in 00mn 00s ---\\ Last modified or created files under Windows and System32 (O44) O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 06/05/2014 - 11:52:22 --HA- . (...) -- C:\Windows\System32\Drivers\Msft_User_WpdFs_01_11_00.Wdf [0] O44 - LFC:[MD5.3A1F533E4E8D86C30F4FD3DD62B265AB] - 06/05/2014 - 11:53:13 ---A- . (...) -- C:\Windows\DtcInstall.log [2664] O44 - LFC:[MD5.76E7E3A49322A305FA8762D6A9AFF1B5] - 06/05/2014 - 11:53:20 ---A- . (...) -- C:\Windows\System32\license.rtf [620] O44 - LFC:[MD5.5442B9DA65B612813C6B6BC6D6641700] - 06/05/2014 - 12:19:10 ---A- . (.Khronos Group - OpenCL Client DLL.) -- C:\Windows\System32\OpenCL.dll [60248] O44 - LFC:[MD5.7564182A5B0A84EF8B1A8C2545771056] - 06/05/2014 - 12:19:32 ---A- . (...) -- C:\Windows\System32\nvcoproc.bin [3683457] O44 - LFC:[MD5.8DE34B17D06299330FCC3DC181A8478D] - 06/05/2014 - 12:19:32 ---A- . (.NVIDIA Corporation - NVIDIA Display Properties Extension.) -- C:\Windows\System32\nvcpl.dll [6768584] O44 - LFC:[MD5.FF9D9A5922EC06E5B0987C8D3885EFBB] - 06/05/2014 - 12:19:32 ---A- . (.NVIDIA Corporation - NVIDIA Display Shell Extension.) -- C:\Windows\System32\nvshext.dll [63776] O44 - LFC:[MD5.26323CF529FDDDD6259C58EC9874EEFC] - 06/05/2014 - 12:19:32 ---A- . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 335.2.) -- C:\Windows\System32\nvsvcr.dll [2558808] O44 - LFC:[MD5.221B4FCF09D4CD2394DBC579E5039BE9] - 06/05/2014 - 12:19:32 ---A- . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 337.5.) -- C:\Windows\System32\nvsvc64.dll [3512664] O44 - LFC:[MD5.A7BA944312591F5B5A3060F3013F8980] - 06/05/2014 - 12:19:32 ---A- . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 337.5.) -- C:\Windows\System32\nvvsvc.exe [927520] O44 - LFC:[MD5.5AFC7AFB3B2147E3767F5F321545636E] - 06/05/2014 - 12:19:32 ---A- . (.NVIDIA Corporation - NVIDIA Media Center Library.) -- C:\Windows\System32\nvmctray.dll [386336] O44 - LFC:[MD5.DDDCC24DE1A31BC3E5E9EB5FFDA2750F] - 06/05/2014 - 12:34:18 ---A- . (.NVIDIA Corporation - Display Driver Coinstaller.) -- C:\Windows\System32\nvdispco6433750.dll [1890080] O44 - LFC:[MD5.CB877532E18C3A10D3033D26A6F58BF1] - 06/05/2014 - 12:34:18 ---A- . (.NVIDIA Corporation - Generic Coinstaller.) -- C:\Windows\System32\nvdispgenco6433750.dll [1539416] O44 - LFC:[MD5.FF725F00586D7F6510C3FE378FA7F578] - 06/05/2014 - 12:34:18 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Driver, Version 337.50.) -- C:\Windows\System32\nvcuda.dll [11644392] O44 - LFC:[MD5.D4BA580750B1199B00CC9DE7F7315407] - 06/05/2014 - 12:34:18 ---A- . (.NVIDIA Corporation - NVIDIA In-band Frame Rendering Library, Ver.) -- C:\Windows\System32\NvIFR64.dll [894752] O44 - LFC:[MD5.7B068BE8E790F66F23FE0A465C719307] - 06/05/2014 - 12:34:18 ---A- . (.NVIDIA Corporation - NVIDIA NVAPI Library, Version 337.50.) -- C:\Windows\System32\nvapi64.dll [3106688] O44 - LFC:[MD5.F73960F6A20BD5C202F3B69DEB90FF0D] - 06/05/2014 - 12:34:18 ---A- . (.NVIDIA Corporation - NVIDIA WDDM D3D Driver, Version 337.50.) -- C:\Windows\System32\nvd3dumx.dll [17467048] O44 - LFC:[MD5.FA5AC616BD34A1EC48E8B409FA006803] - 06/05/2014 - 12:34:18 ---A- . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\Drivers\nvlddmkm.sys [13158232] O44 - LFC:[MD5.C92AF7A3200ABB7858ED19635877135D] - 06/05/2014 - 12:34:19 ---A- . (.NVIDIA Corporation - NVIDIA CUDA 6.0.1 OpenCL 1.1 Driver, Versio.) -- C:\Windows\System32\nvopencl.dll [11598560] O44 - LFC:[MD5.0CA7BAB5A72C5D720157FE241FEE07AD] - 06/05/2014 - 12:34:19 ---A- . (.NVIDIA Corporation - NVIDIA Compiler, Version 337.50.) -- C:\Windows\System32\nvcompiler.dll [25257416] O44 - LFC:[MD5.DAC80CBFDDC500E84875A3569B418BE7] - 06/05/2014 - 12:34:19 ---A- . (.NVIDIA Corporation - NVIDIA D3D Shim Driver, Version 337.50.) -- C:\Windows\System32\nvumdshimx.dll [952440] O44 - LFC:[MD5.E9905B74468F9B936CBEEE535597CAE6] - 06/05/2014 - 12:34:19 ---A- . (.NVIDIA Corporation - NVIDIA OpenGL Shim Driver, Version 337.50.) -- C:\Windows\System32\nvoglshim64.dll [354016] O44 - LFC:[MD5.E88D6FBB45969B874E5D960E7ABE53A0] - 06/05/2014 - 12:34:19 ---A- . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 337.) -- C:\Windows\System32\nvinitx.dll [166568] O44 - LFC:[MD5.1AA9B6736BF2BD9624258DAF9CEAF65E] - 06/05/2014 - 12:34:20 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Decode API, Version 337.5.) -- C:\Windows\System32\nvcuvid.dll [3139928] O44 - LFC:[MD5.1B05D852C135B9B9ED12E5846DCBD049] - 06/05/2014 - 12:34:20 ---A- . (.NVIDIA Corporation - NVIDIA CUDA Video Encoder, Version 337.50.) -- C:\Windows\System32\nvcuvenc.dll [2785056] O44 - LFC:[MD5.92B96D6C65BA1595C4C029AF5153D38E] - 06/05/2014 - 12:34:20 ---A- . (.NVIDIA Corporation - NVIDIA Compatible OpenGL ICD.) -- C:\Windows\System32\nvoglv64.dll [31270856] O44 - LFC:[MD5.67B3F3A532FCB2AD24532FD67D23202C] - 06/05/2014 - 12:34:20 ---A- . (.NVIDIA Corporation - NVIDIA D3D10 Driver, Version 337.50.) -- C:\Windows\System32\nvwgf2umx.dll [18493952] O44 - LFC:[MD5.C70DBAE204FE1B4BE3FDE8DC6A2DDD0C] - 06/05/2014 - 12:34:20 ---A- . (.NVIDIA Corporation - NVIDIA Front Buffer Capture Library, Versio.) -- C:\Windows\System32\NvFBC64.dll [891168] O44 - LFC:[MD5.7160FC226391C0B50C85571FA1A546E5] - 06/05/2014 - 12:37:40 ---A- . (.Microsoft Corporation - Direct3D 9 Extensions.) -- C:\Windows\System32\D3DX9_43.dll [2401112] O44 - LFC:[MD5.AD7FA9485059F4DC53C98B49CAB13F0B] - 06/05/2014 - 12:37:41 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dx10_43.dll [511328] O44 - LFC:[MD5.9D6429F410597750B2DC2579B2347303] - 06/05/2014 - 12:37:41 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dx11_43.dll [276832] O44 - LFC:[MD5.B165DF72E13E6AF74D47013504319921] - 06/05/2014 - 13:54:27 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\d3dx9_24.dll [3544272] O44 - LFC:[MD5.4C56E7C5B2A61353E534C7D15D05856D] - 06/05/2014 - 13:54:27 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\d3dx9_25.dll [3823312] O44 - LFC:[MD5.44F5C5E27D6825E4E62420BC29B8B533] - 06/05/2014 - 13:54:27 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\d3dx9_26.dll [3767504] O44 - LFC:[MD5.914C3237E4D145A18DCD1D0D4C8659E1] - 06/05/2014 - 13:54:28 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\d3dx9_27.dll [3807440] O44 - LFC:[MD5.88BAC8306D4EC79A82B1FFA17DC8CF4A] - 06/05/2014 - 13:54:28 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\d3dx9_28.dll [3815120] O44 - LFC:[MD5.68B35CBDB4A8CC424718BBCC894FEEEA] - 06/05/2014 - 13:54:28 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\d3dx9_29.dll [3830992] O44 - LFC:[MD5.E09A9CF383ACF4A28038561E62277377] - 06/05/2014 - 13:54:29 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\d3dx9_30.dll [3927248] O44 - LFC:[MD5.F77D5AB654881E683CFF6650916C424E] - 06/05/2014 - 13:54:29 ---A- . (.Microsoft Corporation - X3DAudio.) -- C:\Windows\System32\x3daudio1_0.dll [16592] O44 - LFC:[MD5.CE5753F9A27837259EB52F3F47F39593] - 06/05/2014 - 13:54:29 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_0.dll [355536] O44 - LFC:[MD5.6F9D3289D8B166E478AFFF9EFA92C42C] - 06/05/2014 - 13:54:30 ---A- . (.Microsoft Corporation - Microsoft Common Controller API.) -- C:\Windows\System32\xinput1_1.dll [83664] O44 - LFC:[MD5.0CC809422AB40974DFF8078392E4D507] - 06/05/2014 - 13:54:30 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_1.dll [352464] O44 - LFC:[MD5.DC5A914C34EB12056531777D4DD0F44E] - 06/05/2014 - 13:54:30 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_2.dll [354072] O44 - LFC:[MD5.06F15D3CB1AE0EAFA50F595B3FF8D9F5] - 06/05/2014 - 13:54:31 ---A- . (.Microsoft Corporation - Microsoft Common Controller API.) -- C:\Windows\System32\xinput1_2.dll [83736] O44 - LFC:[MD5.FAAA0BB9CD2905B25334132E5BA093EB] - 06/05/2014 - 13:54:31 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\d3dx9_31.dll [3977496] O44 - LFC:[MD5.A4DDFE5DC4E73D1FED9B1B3A3D885612] - 06/05/2014 - 13:54:31 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\d3dx9_32.dll [4398360] O44 - LFC:[MD5.489E5B8BB1BD1028FF1C798EAAEC65E4] - 06/05/2014 - 13:54:31 ---A- . (.Microsoft Corporation - X3DAudio.) -- C:\Windows\System32\x3daudio1_1.dll [17688] O44 - LFC:[MD5.0396D2A98B0CCD4419B572EBF618E81E] - 06/05/2014 - 13:54:31 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_3.dll [363288] O44 - LFC:[MD5.58BB51253427A834A8807B9245CC5965] - 06/05/2014 - 13:54:31 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_4.dll [364824] O44 - LFC:[MD5.8251826F04BA0822D08AD9B92C65A3D5] - 06/05/2014 - 13:54:32 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10.dll [469264] O44 - LFC:[MD5.398FF46FF7354FED2F0F1AECDB546866] - 06/05/2014 - 13:54:32 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_5.dll [390424] O44 - LFC:[MD5.4837A54574A6105D404A8560984B93DD] - 06/05/2014 - 13:54:32 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_6.dll [393576] O44 - LFC:[MD5.3EBF620536A13CA343E52ECA4F0DE7F8] - 06/05/2014 - 13:54:33 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\D3DCompiler_33.dll [1400176] O44 - LFC:[MD5.839C3921005BB41D441E3752C74F2292] - 06/05/2014 - 13:54:33 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10_33.dll [506728] O44 - LFC:[MD5.3172C3CAC8EA7CA1B5D5AF6699C037D6] - 06/05/2014 - 13:54:33 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\d3dx9_33.dll [4494184] O44 - LFC:[MD5.BFB3091B167550EC6E6454813D3DB244] - 06/05/2014 - 13:54:34 ---A- . (.Microsoft Corporation - Microsoft Common Controller API.) -- C:\Windows\System32\xinput1_3.dll [107368] O44 - LFC:[MD5.AE5D5439525B4A4CBF206058D493685D] - 06/05/2014 - 13:54:34 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\d3dx9_34.dll [4496232] O44 - LFC:[MD5.8C970509E0AE10061E3ED6D51E34FEB9] - 06/05/2014 - 13:54:34 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_7.dll [403304] O44 - LFC:[MD5.9D9407F52B8E24E99358D9944B0D5FA3] - 06/05/2014 - 13:54:35 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\D3DCompiler_34.dll [1401200] O44 - LFC:[MD5.B21427EDF0449E92000FF497DAAF89C9] - 06/05/2014 - 13:54:35 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\D3DCompiler_35.dll [1985904] O44 - LFC:[MD5.1ED4E7A82BD5C7DEED082F00E63BB7A0] - 06/05/2014 - 13:54:35 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10_34.dll [506728] O44 - LFC:[MD5.84116AA94672D623B95217648AE5B5B9] - 06/05/2014 - 13:54:35 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10_35.dll [508264] O44 - LFC:[MD5.1B3AF16A27D390096925576202A64037] - 06/05/2014 - 13:54:35 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\d3dx9_35.dll [5073256] O44 - LFC:[MD5.BC78D5328541410510DDE06B9FA92024] - 06/05/2014 - 13:54:35 ---A- . (.Microsoft Corporation - X3DAudio.) -- C:\Windows\System32\X3DAudio1_2.dll [21000] O44 - LFC:[MD5.FA485E76F94B7457767E372F47757733] - 06/05/2014 - 13:54:35 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_8.dll [409960] O44 - LFC:[MD5.A69C32C2BD01522A088D254342826866] - 06/05/2014 - 13:54:36 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_9.dll [411496] O44 - LFC:[MD5.7299DF5CF81135934740211D9A946737] - 06/05/2014 - 13:54:37 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\D3DCompiler_36.dll [2006552] O44 - LFC:[MD5.570FDAE7041775DE0C67747BB7081939] - 06/05/2014 - 13:54:37 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10_36.dll [508264] O44 - LFC:[MD5.BBB6C6833C30E323B41860D6DF61972D] - 06/05/2014 - 13:54:37 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\d3dx9_36.dll [5081608] O44 - LFC:[MD5.E8932AF24786765859558CB79E385AC2] - 06/05/2014 - 13:54:37 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine2_10.dll [411656] O44 - LFC:[MD5.31026CEA5AFA2798292179102C06FE40] - 06/05/2014 - 13:54:38 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\D3DCompiler_37.dll [1860120] O44 - LFC:[MD5.A8C5688BBA00C1630550F26260AB5CAE] - 06/05/2014 - 13:54:38 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10_37.dll [529424] O44 - LFC:[MD5.8A10974DC6E1E42BDC635C2C2AFBD2CC] - 06/05/2014 - 13:54:38 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\D3DX9_37.dll [4910088] O44 - LFC:[MD5.C4C2ED69B18EE1C60026877FCC470FA7] - 06/05/2014 - 13:54:38 ---A- . (.Microsoft Corporation - X3DAudio.) -- C:\Windows\System32\X3DAudio1_3.dll [28168] O44 - LFC:[MD5.E5EC2AB7156A752F9614CDA4BE66EFE8] - 06/05/2014 - 13:54:39 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\D3DX9_38.dll [4991496] O44 - LFC:[MD5.A8B5370B7B61D3777D840DA1C64A1C2D] - 06/05/2014 - 13:54:39 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_0.dll [177672] O44 - LFC:[MD5.29AF48F6C894328A58DEFDC560A70CF3] - 06/05/2014 - 13:54:39 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_0.dll [489480] O44 - LFC:[MD5.A7E59BB6FAC119FABB83F18BD72AA1D7] - 06/05/2014 - 13:54:40 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\D3DCompiler_38.dll [1941528] O44 - LFC:[MD5.72CB653CECF4EA670E7F5A8D74358423] - 06/05/2014 - 13:54:40 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10_38.dll [540688] O44 - LFC:[MD5.DE6004D16DBACD781ED4596C4FEA7D14] - 06/05/2014 - 13:54:40 ---A- . (.Microsoft Corporation - X3DAudio.) -- C:\Windows\System32\X3DAudio1_4.dll [28168] O44 - LFC:[MD5.A2A098BF5A8C255A0090818AD8E87B0F] - 06/05/2014 - 13:54:40 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_1.dll [177672] O44 - LFC:[MD5.0E92D8C0ECA74B6D0A55ABAD53226113] - 06/05/2014 - 13:54:40 ---A- . (.Microsoft Corporation - XAPOFX.) -- C:\Windows\System32\XAPOFX1_0.dll [68104] O44 - LFC:[MD5.E9C0F926D7C9082A805F4FEF81DEEB30] - 06/05/2014 - 13:54:40 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_1.dll [511496] O44 - LFC:[MD5.7741A0A6CED6C441B97D625B730D6075] - 06/05/2014 - 13:54:41 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\D3DCompiler_39.dll [1942552] O44 - LFC:[MD5.EAA692FDC990ED0407DF957316DA33C2] - 06/05/2014 - 13:54:41 ---A- . (.Microsoft Corporation - Microsoft Direct3D.) -- C:\Windows\System32\d3dx10_39.dll [540688] O44 - LFC:[MD5.7505C133FC704B40CFDDFD38777BAAC3] - 06/05/2014 - 13:54:41 ---A- . (.Microsoft Corporation - No Comment.) -- C:\Windows\System32\D3DX9_39.dll [4992520] O44 - LFC:[MD5.CC8399A9E51B2AF1C2C20A26D85EB60E] - 06/05/2014 - 13:54:41 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_2.dll [177672] O44 - LFC:[MD5.0F2DB378FBE2D124E4D3631B329688AE] - 06/05/2014 - 13:54:41 ---A- . (.Microsoft Corporation - XAPOFX.) -- C:\Windows\System32\XAPOFX1_1.dll [72200] O44 - LFC:[MD5.E335DF094836EE7030F1B9CE7429E884] - 06/05/2014 - 13:54:41 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_2.dll [513544] O44 - LFC:[MD5.CFF1C1F7B9F855DDEE431D7B5DCACDF8] - 06/05/2014 - 13:54:42 ---A- . (.Microsoft Corporation - X3DAudio.) -- C:\Windows\System32\X3DAudio1_5.dll [25936] O44 - LFC:[MD5.84B41FD03CAFC5048346B3B2AB92D199] - 06/05/2014 - 13:54:42 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_3.dll [175440] O44 - LFC:[MD5.2F8F9B707FED2405A787380230CC6FA9] - 06/05/2014 - 13:54:42 ---A- . (.Microsoft Corporation - XAPOFX.) -- C:\Windows\System32\XAPOFX1_2.dll [74576] O44 - LFC:[MD5.758139A39AECC1B512576275A27C1177] - 06/05/2014 - 13:54:42 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_3.dll [518480] O44 - LFC:[MD5.EEE871CC4F5563FF8B3C8385B32B0C5F] - 06/05/2014 - 13:54:43 ---A- . (.Microsoft Corporation - 3D Audio Library.) -- C:\Windows\System32\X3DAudio1_6.dll [24920] O44 - LFC:[MD5.862586AD4B1355F7DCDE111EE0AAF350] - 06/05/2014 - 13:54:43 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dx10_40.dll [519000] O44 - LFC:[MD5.29A79F0B607FAF5722D7BAF2485F632A] - 06/05/2014 - 13:54:43 ---A- . (.Microsoft Corporation - Direct3D 9 Extensions.) -- C:\Windows\System32\D3DX9_40.dll [5631312] O44 - LFC:[MD5.37309B833480DC69FDE7DB68F9B8BC20] - 06/05/2014 - 13:54:43 ---A- . (.Microsoft Corporation - Direct3D HLSL Compiler.) -- C:\Windows\System32\D3DCompiler_40.dll [2605920] O44 - LFC:[MD5.37B348A79C4C9B8AB925B18FFD241E96] - 06/05/2014 - 13:54:44 ---A- . (.Microsoft Corporation - Audio Effect Library.) -- C:\Windows\System32\XAPOFX1_3.dll [73544] O44 - LFC:[MD5.ECDDB13BC805B9F3EF3A855E6FD85C69] - 06/05/2014 - 13:54:44 ---A- . (.Microsoft Corporation - Direct3D 9 Extensions.) -- C:\Windows\System32\D3DX9_41.dll [5425496] O44 - LFC:[MD5.1BA01062450BD1F052C54C01C12248F6] - 06/05/2014 - 13:54:44 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_4.dll [174936] O44 - LFC:[MD5.B94F08069EFE2F8151DEF350E526E063] - 06/05/2014 - 13:54:44 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_4.dll [521560] O44 - LFC:[MD5.E730967811E3702499446FFC8A432607] - 06/05/2014 - 13:54:45 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dx10_41.dll [520544] O44 - LFC:[MD5.B739C423276AE62D7AC91773226EC13B] - 06/05/2014 - 13:54:45 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dx10_42.dll [523088] O44 - LFC:[MD5.1AF7AE1FDE027A30B9097280819A0A86] - 06/05/2014 - 13:54:45 ---A- . (.Microsoft Corporation - Direct3D 9 Extensions.) -- C:\Windows\System32\D3DX9_42.dll [2475352] O44 - LFC:[MD5.A59A5BADE4AF200C720D99EAE6E04E0E] - 06/05/2014 - 13:54:45 ---A- . (.Microsoft Corporation - Direct3D HLSL Compiler.) -- C:\Windows\System32\D3DCompiler_41.dll [2430312] O44 - LFC:[MD5.F13B90F5090EBA9041558BC6AAED79B8] - 06/05/2014 - 13:54:46 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dcsx_42.dll [5554512] O44 - LFC:[MD5.522749761B6CC69F8630F4B472DCA623] - 06/05/2014 - 13:54:46 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dx11_42.dll [285024] O44 - LFC:[MD5.B4FF2A39685C1A6D43F0E56EB350AF3A] - 06/05/2014 - 13:54:47 ---A- . (.Microsoft Corporation - 3D Audio Library.) -- C:\Windows\System32\X3DAudio1_7.dll [24920] O44 - LFC:[MD5.E92D2E4AFA43CD39A8C1C2C2DB59667E] - 06/05/2014 - 13:54:47 ---A- . (.Microsoft Corporation - Direct3D HLSL Compiler.) -- C:\Windows\System32\D3DCompiler_42.dll [2582888] O44 - LFC:[MD5.51D65BE2F794B944CADAF287B34EF603] - 06/05/2014 - 13:54:47 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_5.dll [176968] O44 - LFC:[MD5.936DCC640B2991905D909395E03B64F9] - 06/05/2014 - 13:54:47 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_6.dll [176984] O44 - LFC:[MD5.C291AEFD47A587FF5F509E2F96613F7D] - 06/05/2014 - 13:54:47 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_5.dll [517960] O44 - LFC:[MD5.A9724EB3D6CC032D0C4ECAFF4AD8C17F] - 06/05/2014 - 13:54:48 ---A- . (.Microsoft Corporation - Audio Effect Library.) -- C:\Windows\System32\XAPOFX1_4.dll [78680] O44 - LFC:[MD5.05E88C8D8E652DFF03B469331F474CCE] - 06/05/2014 - 13:54:48 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_6.dll [530776] O44 - LFC:[MD5.5F1DA86286A2DFB01C4FED55C2DD1D61] - 06/05/2014 - 13:54:49 ---A- . (.Microsoft Corporation - Direct3D 10.1 Extensions.) -- C:\Windows\System32\d3dcsx_43.dll [1907552] O44 - LFC:[MD5.ADA0C39D4EACDC81FD84163A95D62079] - 06/05/2014 - 13:54:49 ---A- . (.Microsoft Corporation - Direct3D HLSL Compiler.) -- C:\Windows\System32\D3DCompiler_43.dll [2526056] O44 - LFC:[MD5.BDEC09A032DB44D9CDB3A0D97224D64E] - 06/05/2014 - 13:54:49 ---A- . (.Microsoft Corporation - XACT Engine API.) -- C:\Windows\System32\xactengine3_7.dll [176984] O44 - LFC:[MD5.E9739AE8B2FA28DCD6F2EF5525DA8827] - 06/05/2014 - 13:54:50 ---A- . (.Microsoft Corporation - Audio Effect Library.) -- C:\Windows\System32\XAPOFX1_5.dll [77656] O44 - LFC:[MD5.4F7513FF4DE6303088DB28DCBCEF372C] - 06/05/2014 - 13:54:50 ---A- . (.Microsoft Corporation - XAudio2 Game Audio API.) -- C:\Windows\System32\XAudio2_7.dll [518488] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 06/05/2014 - 19:11:39 --HA- . (...) -- C:\Windows\System32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf [0] O44 - LFC:[MD5.E35AD6DAECED1213658E0976A16D6266] - 06/05/2014 - 23:21:19 ---A- . (.Microsoft Corporation - PresentationNative_v0300.dll.) -- C:\Windows\System32\PresentationNative_v0300.dll [1166520] O44 - LFC:[MD5.DF290FC4E1116D92F34D8B6410AE544E] - 06/05/2014 - 23:21:19 ---A- . (.Microsoft Corporation - WinFX OpenType/CFF Rasterizer.) -- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll [124112] O44 - LFC:[MD5.A0E7332DC41BB85FBE8E266B8CDF5AC4] - 06/05/2014 - 23:21:19 ---A- . (.Microsoft Corporation - Windows Presentation Foundation Terminal Se.) -- C:\Windows\System32\TsWpfWrp.exe [35480] O44 - LFC:[MD5.07008F9444906D536FF5CD81628076B4] - 07/05/2014 - 21:22:56 ---A- . (...) -- C:\Windows\PFRO.log [7718] O44 - LFC:[MD5.3F092BF2290604F31EF1079572E0D726] - 07/05/2014 - 21:27:05 ---A- . (...) -- C:\Windows\setupact.log [15317] O44 - LFC:[MD5.1B7F53CBD0429CC3EE15A545F5E2BF62] - 08/05/2014 - 03:46:28 ---A- . (.Microsoft Corporation - Microsoft Windows MRM.) -- C:\Windows\System32\MrmCoreR.dll [918528] O44 - LFC:[MD5.57F22324FAAF92ADF957B281E88F1743] - 08/05/2014 - 11:31:42 ---A- . (.Microsoft Corporation - Microsoft Network Realtime Inspection Drive.) -- C:\Windows\System32\Drivers\WdNisDrv.sys [124760] O44 - LFC:[MD5.241895E8A9C158DF86E12FDD21033A32] - 08/05/2014 - 11:31:42 ---A- . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\Windows\System32\Drivers\WdBoot.sys [35856] O44 - LFC:[MD5.C52148456E0F6EAD9E903020A79207FC] - 08/05/2014 - 11:31:44 ---A- . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\Windows\System32\Drivers\WdFilter.sys [236888] O44 - LFC:[MD5.94C59DD02BC7EA0E421055B9946CA861] - 08/05/2014 - 11:32:24 ---A- . (.Microsoft Corporation - Microsoft® MSHTML Typelib.) -- C:\Windows\System32\mshtml.tlb [2724864] O44 - LFC:[MD5.43A08EE6CC7F29FB1923A1D9C92B380E] - 08/05/2014 - 11:40:52 ---A- . (.Microsoft Corporation - Microsoft Windows Malicious Software Remova.) -- C:\Windows\System32\MRT.exe [90655440] O44 - LFC:[MD5.12B0701B1CEC1A7BB0E4C71D97661E23] - 08/05/2014 - 23:28:15 ---A- . (...) -- C:\Windows\System32\ApnDatabase.xml [387210] O44 - LFC:[MD5.8DAE6957A4F0EC461575F68239E0A13E] - 08/05/2014 - 23:28:16 ---A- . (.Microsoft Corporation - Policy Storage dll.) -- C:\Windows\System32\l2gpstore.dll [69120] O44 - LFC:[MD5.04D6FAB6BE09C83DF591D58E1FBADA59] - 08/05/2014 - 23:28:16 ---A- . (.Microsoft Corporation - WSMAN WMI Provider.) -- C:\Windows\System32\WsmWmiPl.dll [274944] O44 - LFC:[MD5.3E28B99198B514DFEB152EACF913025E] - 08/05/2014 - 23:28:17 ---A- . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\Drivers\mrxsmb10.sys [283648] O44 - LFC:[MD5.C1D7A9932D7F468534F1913FB1F65572] - 08/05/2014 - 23:28:17 ---A- . (.Microsoft Corporation - Set Network Location Utility.) -- C:\Windows\System32\SetNetworkLocation.dll [40448] O44 - LFC:[MD5.FD9C9E9E3F0ED51502C7E8C066BE26B9] - 08/05/2014 - 23:28:17 ---A- . (.Microsoft Corporation - WMI IPMI DRIVER.) -- C:\Windows\System32\Drivers\IPMIDrv.sys [79360] O44 - LFC:[MD5.1DCD97010190EF9377E77AB0A846C720] - 08/05/2014 - 23:28:18 ---A- . (.Microsoft Corporation - Microsoft Windows Device Property Manager.) -- C:\Windows\System32\DevPropMgr.dll [115200] O44 - LFC:[MD5.CC6F6A993FE36A55AF8207B9393407D6] - 08/05/2014 - 23:28:18 ---A- . (.Microsoft Corporation - Microsoft Windows Location API.) -- C:\Windows\System32\LocationApi.dll [325632] O44 - LFC:[MD5.6DEA7E51085C4CEC311DBD5A1AF8C759] - 08/05/2014 - 23:28:18 ---A- . (.Microsoft Corporation - Windows Filtering Platform Netsh Helper.) -- C:\Windows\System32\nshwfp.dll [717312] O44 - LFC:[MD5.1D55DADC22D21883A2F80297F5A5AE48] - 08/05/2014 - 23:28:18 ---A- . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\Drivers\mrxdav.sys [140288] O44 - LFC:[MD5.9F0759C6D691E7030BF33105EDA2C690] - 08/05/2014 - 23:28:19 ---A- . (.Microsoft Corporation - Credential Migration Handler.) -- C:\Windows\System32\CredentialMigrationHandler.dll [30208] O44 - LFC:[MD5.DF621C527179BB0A60CDA371AEFD098E] - 08/05/2014 - 23:28:19 ---A- . (.Microsoft Corporation - Driver Installation Module.) -- C:\Windows\System32\drvcfg.exe [57856] O44 - LFC:[MD5.ABB7341766902F5AAB45E15F34D19E15] - 08/05/2014 - 23:28:19 ---A- . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\Drivers\hidclass.sys [111616] O44 - LFC:[MD5.9F83D40B242C7CD2868DBF7550F3FF4C] - 08/05/2014 - 23:28:19 ---A- . (.Microsoft Corporation - Radio Manager API.) -- C:\Windows\System32\RMapi.dll [86016] O44 - LFC:[MD5.5F58A221937B5D58E33F4B21AEF92210] - 08/05/2014 - 23:28:19 ---A- . (.Microsoft Corporation - Windows Runtime Devices Scanners DLL.) -- C:\Windows\System32\Windows.Devices.Scanners.dll [192000] O44 - LFC:[MD5.81AF2BB862A3C6DDB9F2E3A7956B0417] - 08/05/2014 - 23:28:20 ---A- . (.Microsoft Corporation - Cluster API Library.) -- C:\Windows\System32\clusapi.dll [425984] O44 - LFC:[MD5.3B57B197D907425CB92B979132945B7C] - 08/05/2014 - 23:28:20 ---A- . (.Microsoft Corporation - Security Audit Schema DLL.) -- C:\Windows\System32\adtschema.dll [731648] O44 - LFC:[MD5.41CF802064F72E55F50CA0A221FD36D4] - 08/05/2014 - 23:28:20 ---A- . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\Drivers\tcpipreg.sys [49152] O44 - LFC:[MD5.8DB8EAB9D0C6A5DF0BDCADEA239220B4] - 08/05/2014 - 23:28:20 ---A- . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\Drivers\hidusb.sys [33280] O44 - LFC:[MD5.0633C74EFAAEF72FCC33B86CB86B2ED5] - 08/05/2014 - 23:28:20 ---A- . (.Microsoft Corporation - Windows Time Service Diagnostic Tool.) -- C:\Windows\System32\w32tm.exe [79360] O44 - LFC:[MD5.279DC249C295E8B7CD5FFB966007E1D9] - 08/05/2014 - 23:28:21 ---A- . (.Microsoft Corporation - Driver Installation Module.) -- C:\Windows\System32\drvinst.exe [110592] O44 - LFC:[MD5.C48CDFD48A43E4AEC8170E1E50A3FACD] - 08/05/2014 - 23:28:21 ---A- . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\Drivers\FWPKCLNT.SYS [428888] O44 - LFC:[MD5.94CD5DE7D2989AA64594F1925339C97E] - 08/05/2014 - 23:28:21 ---A- . (.Microsoft Corporation - Microsoft Windows Printing Support.) -- C:\Windows\System32\Windows.Graphics.Printing.dll [542208] O44 - LFC:[MD5.BFBE1C5F57FE7A885673A1962D5532B7] - 08/05/2014 - 23:28:21 ---A- . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\Windows\System32\Drivers\wfplwfs.sys [136024] O44 - LFC:[MD5.B29B13914A2692EA6A6E9E1D6FFB9760] - 08/05/2014 - 23:28:21 ---A- . (.Microsoft Corporation - WSD Printer Port Monitor.) -- C:\Windows\System32\WSDMon.dll [298496] O44 - LFC:[MD5.2AB2BFD79A560894F6B91F0D79E98A0B] - 08/05/2014 - 23:28:22 ---A- . (.Microsoft Corporation - Administrative Templates Extension.) -- C:\Windows\System32\AdmTmpl.dll [563200] O44 - LFC:[MD5.5ABA673EF6433BE68AAE77AE5C5FAFAA] - 08/05/2014 - 23:28:22 ---A- . (.Microsoft Corporation - FWP/IPsec User-Mode API.) -- C:\Windows\System32\FWPUCLNT.DLL [412672] O44 - LFC:[MD5.19F84D6153C06FE71203517BDAC9EA9F] - 08/05/2014 - 23:28:22 ---A- . (.Microsoft Corporation - Web DAV Client DLL.) -- C:\Windows\System32\davclnt.dll [102912] O44 - LFC:[MD5.8183820F2D9648A619AA3200EFC62D0B] - 08/05/2014 - 23:28:22 ---A- . (.Microsoft Corporation - Windows Performance Data Helper DLL.) -- C:\Windows\System32\pdh.dll [299008] O44 - LFC:[MD5.18297BC1CE8A0C0BF9A703A3C45DACC1] - 08/05/2014 - 23:28:22 ---A- . (.Microsoft Corporation - Wireless Network Policy Management Snap-in.) -- C:\Windows\System32\wlangpui.dll [462336] O44 - LFC:[MD5.71133C77DD8089DA3F74813F90361F81] - 08/05/2014 - 23:28:23 ---A- . (.Microsoft Corporation - Microsoft® Windows System Protection Proxy.) -- C:\Windows\System32\sxproxy.dll [83968] O44 - LFC:[MD5.50874EAD26534D475096765A48B90518] - 08/05/2014 - 23:28:23 ---A- . (.Microsoft Corporation - Play To Server.) -- C:\Windows\System32\MDEServer.exe [334848] O44 - LFC:[MD5.BC6849C62DB407573C6AD8CB1A4D2628] - 08/05/2014 - 23:28:23 ---A- . (.Microsoft Corporation - User-mode Plug-and-Play Service.) -- C:\Windows\System32\umpnpmgr.dll [115200] O44 - LFC:[MD5.16E9AD0F7A34C4F071E40CDD76E7C86D] - 08/05/2014 - 23:28:23 ---A- . (.Microsoft Corporation - Userenv.) -- C:\Windows\System32\userenv.dll [113648] O44 - LFC:[MD5.C8D6344BDE2691A196E61C0D3372EAB7] - 08/05/2014 - 23:28:23 ---A- . (.Microsoft Corporation - WSMan Service.) -- C:\Windows\System32\WsmSvc.dll [2479616] O44 - LFC:[MD5.A4D6061D8B902959534C1E83CC7276A1] - 08/05/2014 - 23:28:24 ---A- . (.Microsoft Corporation - Group Policy Preference Client.) -- C:\Windows\System32\gpprefcl.dll [667136] O44 - LFC:[MD5.AC408FA243471C25CDE435C3B83536A9] - 08/05/2014 - 23:28:24 ---A- . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\Drivers\Classpnp.sys [337752] O44 - LFC:[MD5.65A3992EC59D8D33D7622E3AF4C50DBF] - 08/05/2014 - 23:28:24 ---A- . (.Microsoft Corporation - Sensor API.) -- C:\Windows\System32\SensorsApi.dll [247296] O44 - LFC:[MD5.466BDC0006103F2547D308DD3CD64398] - 08/05/2014 - 23:28:24 ---A- . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\Drivers\srvnet.sys [245760] O44 - LFC:[MD5.BBE15881FE11BE37112F8320C41DAFB9] - 08/05/2014 - 23:28:25 ---A- . (.Microsoft Corporation - Base Filtering Engine.) -- C:\Windows\System32\BFE.DLL [827392] O44 - LFC:[MD5.179A41249055D5F039F1B6703F3B6D2B] - 08/05/2014 - 23:28:25 ---A- . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\Drivers\clfs.sys [376152] O44 - LFC:[MD5.FE7656474448BE6A6C68E5C9BEB7CA94] - 08/05/2014 - 23:28:25 ---A- . (.Microsoft Corporation - DNS Caching Resolver Service.) -- C:\Windows\System32\dnsrslvr.dll [254464] O44 - LFC:[MD5.D5C3776CBD8BC307DCCA3FD4CE667A37] - 08/05/2014 - 23:28:25 ---A- . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [324096] O44 - LFC:[MD5.5BCABCE516486337E39DDD005BCBB1CA] - 08/05/2014 - 23:28:26 ---A- . (.Microsoft Corporation - Microsoft GDI+.) -- C:\Windows\System32\GdiPlus.dll [1656832] O44 - LFC:[MD5.2468C21E34C49E4735B4BA430D448E91] - 08/05/2014 - 23:28:28 ---A- . (.Microsoft Corporation - Net Logon Services DLL.) -- C:\Windows\System32\netlogon.dll [834560] O44 - LFC:[MD5.7C75BF2879AEAD311DAE25CB5F1A2C83] - 08/05/2014 - 23:28:28 ---A- . (.Microsoft Corporation - Remote Access API.) -- C:\Windows\System32\rasapi32.dll [669696] O44 - LFC:[MD5.A1C6BA515120C44E8D5A1EA3E927C7C2] - 08/05/2014 - 23:28:29 ---A- . (.Microsoft Corporation - Windows Runtime Sensors DLL.) -- C:\Windows\System32\Windows.Devices.Sensors.dll [291840] O44 - LFC:[MD5.938DC1C1D13682C01886F365E6682CA7] - 08/05/2014 - 23:28:32 ---A- . (.Microsoft Corporation - Windows Wireless LAN 802.11 Client Side Hel.) -- C:\Windows\System32\wlanhlp.dll [11264] O44 - LFC:[MD5.B7E51F949ED8C3A75C1D3121AF9A4B6C] - 08/05/2014 - 23:28:35 ---A- . (.Microsoft Corporation - DNS Client API DLL.) -- C:\Windows\System32\dnsapi.dll [655360] O44 - LFC:[MD5.7CDB6060224CFAD4D5AC49FFC5414F41] - 08/05/2014 - 23:28:35 ---A- . (.Microsoft Corporation - Kerberos Security Package.) -- C:\Windows\System32\kerberos.dll [939520] O44 - LFC:[MD5.CFE7F0267B0C3077042FF291949B5546] - 08/05/2014 - 23:28:37 ---A- . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\IKEEXT.DLL [1063424] O44 - LFC:[MD5.1B2CAD40A6FD2E9DC336F3A338293B29] - 08/05/2014 - 23:28:41 ---A- . (.Microsoft Corporation - MSXML 6.0.) -- C:\Windows\System32\msxml6.dll [2331000] O44 - LFC:[MD5.E62EAEF0BAC9DD61BF22D4A7F2F18571] - 08/05/2014 - 23:28:47 ---A- . (.Microsoft Corporation - Smb 2.0 Server driver.) -- C:\Windows\System32\Drivers\srv2.sys [679424] O44 - LFC:[MD5.FEEFE783D87C9063CDAC6DBDCF95F533] - 08/05/2014 - 23:28:47 ---A- . (.Microsoft Corporation - TCP/IP Driver.) -- C:\Windows\System32\Drivers\tcpip.sys [2519384] O44 - LFC:[MD5.C997E6A37BA8915224B3FB5024A34F69] - 08/05/2014 - 23:28:47 ---A- . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\Drivers\mrxsmb.sys [402944] O44 - LFC:[MD5.42F4D353A2AC24F7112FB4D6BD2D4F7C] - 08/05/2014 - 23:28:48 ---A- . (.Microsoft Corporation - GDI Client DLL.) -- C:\Windows\System32\gdi32.dll [1339240] O44 - LFC:[MD5.411550CE9952B9B30C5A82CDDAD623C0] - 08/05/2014 - 23:28:57 ---A- . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll [21232792] O44 - LFC:[MD5.CFC52C49BEFE4D70D87FFA900EAB9777] - 08/05/2014 - 23:28:59 ---A- . (.Microsoft Corporation - USB3 HUB Driver.) -- C:\Windows\System32\Drivers\USBHUB3.SYS [467800] O44 - LFC:[MD5.B0630FEE31D7A9B73E49A2F31CF61C1C] - 08/05/2014 - 23:28:59 ---A- . (.Microsoft Corporation - Windows NT BASE API Client DLL.) -- C:\Windows\System32\KernelBase.dll [1112536] O44 - LFC:[MD5.1C80517BE6836A812F6A9B99B8321351] - 08/05/2014 - 23:29:00 ---A- . (.Microsoft Corporation - NT File System Driver.) -- C:\Windows\System32\Drivers\ntfs.sys [2013016] O44 - LFC:[MD5.540B29C770E4864C8FB5B6278526776E] - 08/05/2014 - 23:29:01 ---A- . (.Microsoft Corporation - LSA Server DLL.) -- C:\Windows\System32\lsasrv.dll [1411584] O44 - LFC:[MD5.6374C4EE20389CBB6AEF2BE468856177] - 08/05/2014 - 23:29:01 ---A- . (.Microsoft Corporation - NT Kernel & System.) -- C:\Windows\System32\ntoskrnl.exe [7425368] O44 - LFC:[MD5.B2A890D96C05E33FDD2BF3F3D4D0DF92] - 08/05/2014 - 23:29:01 ---A- . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [220160] O44 - LFC:[MD5.6031CF57D972421469B15770AF8FF942] - 08/05/2014 - 23:29:02 ---A- . (.Microsoft Corporation - Audio Session.) -- C:\Windows\System32\AudioSes.dll [467504] O44 - LFC:[MD5.332E5E35DE9E8175A9550501E57E0612] - 08/05/2014 - 23:29:02 ---A- . (.Microsoft Corporation - Microsoft OLE for Windows.) -- C:\Windows\System32\ole32.dll [1542768] O44 - LFC:[MD5.9A71BD2E4B8EB550D0022AFDF8616014] - 08/05/2014 - 23:29:02 ---A- . (.Microsoft Corporation - Windows Audio Service.) -- C:\Windows\System32\audiosrv.dll [834048] O44 - LFC:[MD5.C58594E368B935CD001FC3F503D23A6B] - 08/05/2014 - 23:29:03 ---A- . (.Microsoft Corporation - Local Spooler DLL.) -- C:\Windows\System32\localspl.dll [1023488] O44 - LFC:[MD5.E797B1571003E524526F384CE5EE3555] - 08/05/2014 - 23:29:03 ---A- . (.Microsoft Corporation - Microsoft Property System.) -- C:\Windows\System32\propsys.dll [1466864] O44 - LFC:[MD5.4F6908A61CBC7FD263BB424671431623] - 08/05/2014 - 23:29:04 ---A- . (.Microsoft Corporation - SearchFolder.) -- C:\Windows\System32\SearchFolder.dll [1129472] O44 - LFC:[MD5.A40262C252A65BAD0186D9DDBB3083DA] - 08/05/2014 - 23:29:04 ---A- . (.Microsoft Corporation - Security Descriptor Editor.) -- C:\Windows\System32\aclui.dll [1015808] O44 - LFC:[MD5.EE95B732BB098C5E874D53AD1E00EF51] - 08/05/2014 - 23:29:04 ---A- . (.Microsoft Corporation - TWINUI.) -- C:\Windows\System32\twinui.dll [13286400] O44 - LFC:[MD5.62E1AE59F9F40BB70C4D7EDCC0CE34F1] - 08/05/2014 - 23:29:05 ---A- . (.Microsoft Corporation - TWINUI.APPCORE.) -- C:\Windows\System32\twinui.appcore.dll [1054208] O44 - LFC:[MD5.80F4C728FC12B324156486806AB3357E] - 08/05/2014 - 23:29:05 ---A- . (.Microsoft Corporation - Windows.UI.Search.) -- C:\Windows\System32\Windows.UI.Search.dll [8653824] O44 - LFC:[MD5.81394C91B7B5A7C799E249AE82491F13] - 08/05/2014 - 23:29:06 ---A- . (.Microsoft Corporation - Windows Explorer.) -- C:\Windows\explorer.exe [2373784] O44 - LFC:[MD5.8E5C2B32EE4166A3084B133183A00F2A] - 08/05/2014 - 23:29:07 ---A- . (.Microsoft Corporation - Direct3D 11 Runtime.) -- C:\Windows\System32\d3d11.dll [2141912] O44 - LFC:[MD5.2B12310DF8299D5ED5978FFBE3DA80B1] - 08/05/2014 - 23:29:07 ---A- . (.Microsoft Corporation - Remote Desktop Services ActiveX Client.) -- C:\Windows\System32\mstscax.dll [6641152] O44 - LFC:[MD5.398990EFC34218C3B6C4E6384502083B] - 08/05/2014 - 23:29:11 ---A- . (.Microsoft Corporation - Rich Text Edit Control, v7.5.) -- C:\Windows\System32\msftedit.dll [2900992] O44 - LFC:[MD5.5886CF4473849179FC8D2831CD629340] - 08/05/2014 - 23:29:12 ---A- . (.Microsoft Corporation - Microsoft DWM Core Library.) -- C:\Windows\System32\dwmcore.dll [2133504] O44 - LFC:[MD5.C253B8484DCABB3EBE6D60E67CADB373] - 08/05/2014 - 23:29:13 ---A- . (.Microsoft Corporation - Microsoft DirectComposition Library.) -- C:\Windows\System32\dcomp.dll [356848] O44 - LFC:[MD5.8279E6B065626951DA5F3BD0B4E28001] - 08/05/2014 - 23:29:59 ---A- . (.Microsoft Corporation - Windows Media Runtime DLL.) -- C:\Windows\System32\Windows.Media.dll [1230336] O44 - LFC:[MD5.F3523E611AB0B0977B048263A12DCF2A] - 08/05/2014 - 23:30:02 ---A- . (.Microsoft Corporation - Windows NT BASE API Client DLL.) -- C:\Windows\System32\kernel32.dll [1291200] O44 - LFC:[MD5.A03F362C5557E238CBFA914689C77248] - 08/05/2014 - 23:30:03 ---A- . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\Drivers\dfsc.sys [134144] O44 - LFC:[MD5.14BEA911F78B44E47CBD18210E541A43] - 08/05/2014 - 23:30:11 ---A- . (.Microsoft Corporation - Canonical Display Driver.) -- C:\Windows\System32\cdd.dll [212992] O44 - LFC:[MD5.C7D252742946DD395670649742FBD73D] - 08/05/2014 - 23:30:12 ---A- . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys [1557848] O44 - LFC:[MD5.E64AD4877B41F1DB4CC3C99BA8372857] - 08/05/2014 - 23:30:13 ---A- . (.Microsoft Corporation - Audio Engine.) -- C:\Windows\System32\AudioEng.dll [463264] O44 - LFC:[MD5.4030CB06B8D963A45CED9E60C9F2A11E] - 08/05/2014 - 23:30:13 ---A- . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\Drivers\dxgmms1.sys [379224] O44 - LFC:[MD5.97A8DD53D83D5DAC15EDAB1320D305B4] - 08/05/2014 - 23:30:13 ---A- . (.Microsoft Corporation - Windows Audio Device Graph Isolation.) -- C:\Windows\System32\audiodg.exe [244888] O44 - LFC:[MD5.F83D49F4B10E813A1F9AC8B92F16592D] - 08/05/2014 - 23:30:13 ---A- . (.Microsoft Corporation - Windows Audio Endpoint Builder.) -- C:\Windows\System32\AudioEndpointBuilder.dll [201216] O44 - LFC:[MD5.A2BF5D466853422C143571064C7DD94F] - 08/05/2014 - 23:30:15 ---A- . (.Microsoft Corporation - AppX Deployment Client DLL.) -- C:\Windows\System32\AppXDeploymentClient.dll [252928] O44 - LFC:[MD5.F7529BD3FFAC9C33D15F6DE3B7353B03] - 08/05/2014 - 23:30:15 ---A- . (.Microsoft Corporation - AppX Deployment Server DLL.) -- C:\Windows\System32\AppXDeploymentServer.dll [1306624] O44 - LFC:[MD5.2DE56913AE88DF760F279264023908BC] - 08/05/2014 - 23:30:16 ---A- . (.Microsoft Corporation - Display Control Panel.) -- C:\Windows\System32\Display.dll [1843712] O44 - LFC:[MD5.6EF180C3695A4C1745F4A32E1D9EE8A9] - 08/05/2014 - 23:30:16 ---A- . (.Microsoft Corporation - Windows Authentication UI.) -- C:\Windows\System32\authui.dll [2641920] O44 - LFC:[MD5.8596E6030C8DE66439DDF21C7F7B5006] - 08/05/2014 - 23:30:18 ---A- . (.Microsoft Corporation - Windows Search URI Handler.) -- C:\Windows\System32\Windows.Shell.Search.UriHandler.dll [40960] O44 - LFC:[MD5.06E5962471CFC5890F6B7AB2BF527250] - 08/05/2014 - 23:30:36 ---A- . (.Microsoft Corporation - Microsoft Windows Recovery Agent DLL.) -- C:\Windows\System32\ReAgent.dll [950784] O44 - LFC:[MD5.06304D50B5228BF1EB6E829A72A629DB] - 08/05/2014 - 23:30:36 ---A- . (.Microsoft Corporation - Microsoft® Windows Shared Protection Point.) -- C:\Windows\System32\spp.dll [271872] O44 - LFC:[MD5.5A917027826D759CC3238C7D3CEC3438] - 08/05/2014 - 23:30:36 ---A- . (.Microsoft Corporation - Windows WLAN AutoConfig Service DLL.) -- C:\Windows\System32\wlansvc.dll [1527296] O44 - LFC:[MD5.05ED31A8FD97247D5B786F62988F2535] - 08/05/2014 - 23:30:37 ---A- . (.Microsoft Corporation - Media Foundation Media Engine DLL.) -- C:\Windows\System32\MFMediaEngine.dll [958464] O44 - LFC:[MD5.9A1ECF6480039B6E2062B739BBD0C4F7] - 08/05/2014 - 23:30:37 ---A- . (.Microsoft Corporation - RD Gateway QEC.) -- C:\Windows\System32\tsgqec.dll [64512] O44 - LFC:[MD5.88225B3D5685777AFAA1297FD612DF9A] - 08/05/2014 - 23:30:38 ---A- . (.Microsoft Corporation - DirectX Graphics Infrastructure.) -- C:\Windows\System32\dxgi.dll [518552] O44 - LFC:[MD5.E5DA9DD3E5972CE969EA445492954280] - 08/05/2014 - 23:30:39 ---A- . (.Microsoft Corporation - Windows.UI.Xaml dll.) -- C:\Windows\System32\Windows.UI.Xaml.dll [16875520] O44 - LFC:[MD5.7A61F17976F7C5077D9862E4EC25BB3E] - 08/05/2014 - 23:30:48 ---A- . (.Microsoft Corporation - Media Foundation ReadWrite DLL.) -- C:\Windows\System32\mfreadwrite.dll [360512] O44 - LFC:[MD5.4627C1FBF2802425A408A2D2AF28CF85] - 08/05/2014 - 23:30:51 ---A- . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\Drivers\cng.sys [565536] O44 - LFC:[MD5.7FC5667DF73D4B04AA457CC3A4180E09] - 08/05/2014 - 23:30:52 ---A- . (.Microsoft Corporation - Windows Overlay Filter.) -- C:\Windows\System32\Drivers\wof.sys [157016] O44 - LFC:[MD5.48F25CC79C6CCFD4B776C8FDA9ED7271] - 08/05/2014 - 23:30:53 ---A- . (.Microsoft Corporation - AppX All User Store DLL.) -- C:\Windows\System32\AppxAllUserStore.dll [160768] O44 - LFC:[MD5.5AEFB4F09549545FA3BBD58A6FFF4962] - 08/05/2014 - 23:30:53 ---A- . (.Microsoft Corporation - AppX Deployment Extensions DLL.) -- C:\Windows\System32\AppXDeploymentExtensions.dll [924160] O44 - LFC:[MD5.3ED1FD93AA4C381A374C3835CF7A5C92] - 08/05/2014 - 23:30:55 ---A- . (.Microsoft Corporation - Microsoft Windows Recovery Info DLL.) -- C:\Windows\System32\ReInfo.dll [201216] O44 - LFC:[MD5.647C7652FA19F98CADF2BFDA2164BFEC] - 08/05/2014 - 23:30:55 ---A- . (.Microsoft Corporation - NativeWiFi Miniport Driver.) -- C:\Windows\System32\Drivers\nwifi.sys [443392] O44 - LFC:[MD5.4DD9C026AAB3C12A5BF7FF9A0C038422] - 08/05/2014 - 23:30:55 ---A- . (.Microsoft Corporation - Windows Wi-Fi Direct DAF Plugin.) -- C:\Windows\System32\dafWfdProvider.dll [186368] O44 - LFC:[MD5.6DD2D6B8CA1250A7C12D0042396D1892] - 08/05/2014 - 23:30:56 ---A- . (.Microsoft Corporation - Media Foundation Simple Video Renderer DLL.) -- C:\Windows\System32\mfsvr.dll [492256] O44 - LFC:[MD5.A9B68F20F1E6E62B189C7C4815EB42B9] - 08/05/2014 - 23:30:56 ---A- . (.Microsoft Corporation - Windows WLAN AutoConfig Client Side API DLL.) -- C:\Windows\System32\wlanapi.dll [296960] O44 - LFC:[MD5.F14178562B63C54D3183839F77FB9542] - 08/05/2014 - 23:30:56 ---A- . (.Microsoft Corporation - Windows Wireless LAN 802.11 MSM DLL.) -- C:\Windows\System32\wlanmsm.dll [370176] O44 - LFC:[MD5.C54F6C4594F54BC8F189A6FD4BFB7B2E] - 08/05/2014 - 23:31:02 ---A- . (.Microsoft Corporation - MDMAgent.) -- C:\Windows\System32\MDMAgent.exe [621568] O44 - LFC:[MD5.DD5DF99540AB97806DF63B1494C809A8] - 08/05/2014 - 23:31:02 ---A- . (.Microsoft Corporation - Network Configuration Objects.) -- C:\Windows\System32\netcfgx.dll [488280] O44 - LFC:[MD5.C5746CE22A4338896338A48687CB9345] - 08/05/2014 - 23:31:03 ---A- . (.Microsoft Corporation - Microsoft OneDrive Sync Engine.) -- C:\Windows\System32\SyncEngine.dll [4268544] O44 - LFC:[MD5.FAF28A6151A26D94555E0EE518762479] - 08/05/2014 - 23:31:04 ---A- . (.Microsoft Corporation - Audio Ks Endpoint.) -- C:\Windows\System32\AUDIOKSE.dll [364640] O44 - LFC:[MD5.F88CC88F4A6D8476F1664E805CA18CC2] - 08/05/2014 - 23:31:04 ---A- . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\Drivers\ksecpkg.sys [180056] O44 - LFC:[MD5.FD786AFD9B85D65E5FD6B86944BB1D9A] - 08/05/2014 - 23:31:05 ---A- . (.Microsoft Corporation - Windows Wireless LAN 802.11 MSM Security Mo.) -- C:\Windows\System32\wlansec.dll [443904] O44 - LFC:[MD5.2C727D11CDF4F8B2477FC2B1B305ECB9] - 08/05/2014 - 23:31:07 ---A- . (.Microsoft Corporation - Microsoft® Account Provider.) -- C:\Windows\System32\wlidprov.dll [512000] O44 - LFC:[MD5.50126883FF1D1F690FE477B0B6593DAA] - 08/05/2014 - 23:31:07 ---A- . (.Microsoft Corporation - OneDrive Sync Engine Host.) -- C:\Windows\System32\SkyDrive.exe [872448] O44 - LFC:[MD5.B8EB489B9CB8E4E29D3B5FA33F59F7EB] - 08/05/2014 - 23:31:07 ---A- . (.Microsoft Corporation - Telemetry Library for the OneDrive client.) -- C:\Windows\System32\SkyDriveTelemetry.dll [721408] O44 - LFC:[MD5.0D092AAF47629E6FD77597FCA58625EE] - 08/05/2014 - 23:31:08 ---A- . (.Microsoft Corporation - Remote Desktop Services Client for Microsof.) -- C:\Windows\System32\rdvidcrl.dll [1057280] O44 - LFC:[MD5.04FFE8E9A0B4621A56773065AA41D575] - 08/05/2014 - 23:32:31 ---A- . (.Microsoft Corporation - Authentication Provider.) -- C:\Windows\System32\storewuauth.dll [190976] O44 - LFC:[MD5.779FB2F26E4339A4DD3EEF57E4E593FA] - 08/05/2014 - 23:32:31 ---A- . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [3408896] O44 - LFC:[MD5.C89F2486735F7360D6D7B7B14E4B07C9] - 08/05/2014 - 23:32:31 ---A- . (.Microsoft Corporation - Windows Update Client User Experience.) -- C:\Windows\System32\wucltux.dll [1705984] O44 - LFC:[MD5.48C4FAB482665748D3598D96AD3461D9] - 08/05/2014 - 23:32:31 ---A- . (.Microsoft Corporation - Windows Update Modern WuApp.) -- C:\Windows\System32\WUSettingsProvider.dll [381952] O44 - LFC:[MD5.ED6A11F4562F89F559243AC87B01DBF4] - 08/05/2014 - 23:32:31 ---A- . (.Microsoft Corporation - Windows Update.) -- C:\Windows\System32\wuauclt.exe [54776] O44 - LFC:[MD5.4510437062693666E09A9436D1DBEE23] - 10/05/2014 - 00:20:47 ---A- . (...) -- C:\Windows\MEMORY.DMP [303652982] O44 - LFC:[MD5.33BE7678E521B37E37CE1F4B4EED9195] - 10/05/2014 - 10:19:36 ---A- . (...) -- C:\Windows\DirectX.log [27808] O44 - LFC:[MD5.11887DD97E59DFE5E66144A688200C88] - 10/05/2014 - 12:18:18 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [863592] O44 - LFC:[MD5.A44A0098EBAF76B209575C14C25DF4A8] - 10/05/2014 - 12:18:18 ---A- . (...) -- C:\Windows\System32\perfc009.dat [135520] O44 - LFC:[MD5.AC77DEB4D84E43FB5A624BD2F941709C] - 10/05/2014 - 12:18:18 ---A- . (...) -- C:\Windows\System32\perfh009.dat [730408] O44 - LFC:[MD5.858126DA9537A92AC901EFDDCFF01DA7] - 11/05/2014 - 01:11:31 ---A- . (...) -- C:\PhysicalDisk0_MBR.bin [512] O44 - LFC:[MD5.AAD81F4C05E0147CAC1EB2702A38ABAB] - 11/05/2014 - 12:49:03 -S-A- . (...) -- C:\Windows\bootstat.dat [67584] O44 - LFC:[MD5.ED48B8FE7C73DA8E45847F5E82D11A21] - 11/05/2014 - 16:43:54 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1985624] O44 - LFC:[MD5.929DF302F15BFE24AC66EF45D858C413] - 29/04/2014 - 12:30:39 ---A- . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\Drivers\idmwfp.sys [175480] O44 - LFC:[MD5.A98DA2EC1E56CF52C682D072F77D9874] - 29/04/2014 - 14:01:39 ---A- . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll [23547904] ~ Files: 267 Scanned in 00mn 18s ---\\ Local Security Authority-LSA Deny (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Windows Security Configuration Editor Client Engine.) -- C:\Windows\System32\scecli.dll ~ LSA: 3 Scanned in 00mn 00s ---\\ Safe Boot Control (O49) O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Serial Mouse Filter Driver.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicDisplay.sys . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\Drivers\BasicDisplay.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\BasicRender.sys . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\Drivers\BasicRender.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\dxgkrnl.sys . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\Drivers\dxgkrnl.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\FsDepends.sys . (.Microsoft Corporation - File System Dependency Manager Mini Filter Driver.) -- C:\Windows\System32\Drivers\FsDepends.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (...) -- C:\Windows\System32\Drivers\rdpencdd.sys (.not file.) O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Serial Mouse Filter Driver.) -- C:\Windows\System32\Drivers\sermouse.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys ~ CSB: 17 Scanned in 00mn 00s ---\\ Trojan Driver Search Data (HKLM)(TDSD) (O52) O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \Drivers32\"VIDC.FPS1"="frapsv64.dll" . (.Beepa P/L - Fraps.) -- C:\Windows\System32\frapsv64.dll O52 - TDSD: \Drivers32\"VIDC.RTV1"="rtvcvfw64.dll" . (...) -- C:\Windows\System32\rtvcvfw64.dll O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm O52 - TDSD: \drivers.desc\"frapsv64.dll"="Fraps Video Decompressor" . (.Beepa P/L - Fraps.) -- C:\Windows\System32\frapsv64.dll O52 - TDSD: \drivers.desc\"rtvcvfw64.dll"="RivaTuner Video Codec" . (...) -- C:\Windows\System32\rtvcvfw64.dll ~ TDSD: 6 Scanned in 00mn 00s ---\\ Microsoft Control Security Providers (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Credential Delegation Security Package.) -- C:\Windows\System32\credssp.dll ~ MSCP: 2 Scanned in 00mn 00s ---\\ Microsoft Windows Policies System (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=1 O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=5 O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableCursorSuppression"=1 O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=3 O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0 O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0 O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ~ MWPS: 17 Scanned in 00mn 00s ---\\ Microsoft Windows Policies Explorer (MWPE) (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "ForceActiveDesktopOn"=0 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktop"=1 ~ MWPE Keys: 3 Scanned in 00mn 00s ---\\ System Drivers List (SDL) (O58) O58 - SDL:22/08/2013 - 12:43:41 ---A- . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\Drivers\3ware.sys [108896] O58 - SDL:22/08/2013 - 12:43:41 ---A- . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS/SATA controller.) -- C:\Windows\System32\Drivers\adp80xx.sys [782176] O58 - SDL:22/08/2013 - 12:43:41 ---A- . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\Drivers\amdsata.sys [79200] O58 - SDL:22/08/2013 - 12:43:41 ---A- . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller Driver for Windows -.) -- C:\Windows\System32\Drivers\amdsbs.sys [259424] O58 - SDL:22/08/2013 - 12:43:40 ---A- . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\Drivers\amdxata.sys [25952] O58 - SDL:22/08/2013 - 12:43:41 ---A- . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [114016] O58 - SDL:18/06/2013 - 14:45:08 ---A- . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x Unified Driver..) -- C:\Windows\System32\Drivers\b57nd60a.sys [425984] O58 - SDL:12/08/2013 - 23:25:46 ---A- . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\Drivers\bcmfn2.sys [17624] O58 - SDL:22/08/2013 - 12:43:41 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\Drivers\bxvbda.sys [531296] O58 - SDL:17/09/2013 - 15:17:38 ---A- . (.ESET - Amon monitor.) -- C:\Windows\System32\Drivers\eamonm.sys [239320] O58 - SDL:17/09/2013 - 15:17:38 ---A- . (.ESET - Devmon monitor.) -- C:\Windows\System32\Drivers\edevmon.sys [239296] O58 - SDL:17/09/2013 - 15:17:38 ---A- . (.ESET - ESET Helper driver.) -- C:\Windows\System32\Drivers\ehdrv.sys [168256] O58 - SDL:17/09/2013 - 15:17:38 ---A- . (.ESET - ESET Personal Firewall driver.) -- C:\Windows\System32\Drivers\epfw.sys [220232] O58 - SDL:17/09/2013 - 15:17:38 ---A- . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\Windows\System32\Drivers\EpfwLWF.sys [44120] O58 - SDL:17/09/2013 - 15:17:38 ---A- . (.ESET - ESET Personal Firewall driver.) -- C:\Windows\System32\Drivers\epfwwfp.sys [62136] O58 - SDL:22/08/2013 - 12:43:45 ---A- . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\Drivers\evbda.sys [3357024] O58 - SDL:22/08/2013 - 12:43:45 ---A- . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Driver.) -- C:\Windows\System32\Drivers\HpSAMD.sys [64352] O58 - SDL:30/07/2013 - 18:47:35 ---A- . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\Drivers\iaLPSSi_GPIO.sys [24568] O58 - SDL:25/07/2013 - 19:05:39 ---A- . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\Drivers\iaLPSSi_I2C.sys [99320] O58 - SDL:10/08/2013 - 00:39:30 ---A- . (.Intel Corporation - Intel Rapid Storage Technology driver (inbox) - x64.) -- C:\Windows\System32\Drivers\iaStorAV.sys [651248] O58 - SDL:22/08/2013 - 12:43:45 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\Drivers\iaStorV.sys [412000] O58 - SDL:28/11/2013 - 00:24:18 ---A- . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\Drivers\idmwfp.sys [175480] O58 - SDL:22/08/2013 - 12:43:44 ---A- . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [109408] O58 - SDL:22/08/2013 - 12:43:45 ---A- . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas2.sys [93536] O58 - SDL:22/08/2013 - 12:43:44 ---A- . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas3.sys [81760] O58 - SDL:22/08/2013 - 12:43:45 ---A- . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sss.sys [82784] O58 - SDL:22/08/2013 - 12:43:45 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\Drivers\megasas.sys [56672] O58 - SDL:22/08/2013 - 12:43:45 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\megasr.sys [575840] O58 - SDL:22/08/2013 - 12:43:49 ---A- . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\Drivers\mvumis.sys [63840] O58 - SDL:18/06/2013 - 18:30:32 ---A- . (.Ralink Technology Corp. - Ralink 802.11n Wireless Adapter Driver.) -- C:\Windows\System32\Drivers\netr28ux.sys [2408208] O58 - SDL:27/03/2014 - 12:45:52 ---A- . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version 337.50.) -- C:\Windows\System32\Drivers\nvlddmkm.sys [13158232] O58 - SDL:22/08/2013 - 12:43:31 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [150368] O58 - SDL:22/08/2013 - 12:43:32 ---A- . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [168288] O58 - SDL:22/08/2013 - 15:35:09 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [23040] O58 - SDL:22/08/2013 - 12:43:31 ---A- . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid2.sys [44896] O58 - SDL:22/08/2013 - 12:43:32 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [81760] O58 - SDL:22/08/2013 - 12:43:32 ---A- . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Windows x64.) -- C:\Windows\System32\Drivers\stexstor.sys [31072] O58 - SDL:22/08/2013 - 12:43:34 ---A- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [19808] O58 - SDL:22/08/2013 - 12:43:34 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [168800] O58 - SDL:22/08/2013 - 12:43:34 ---A- . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\Drivers\VSTXRAID.SYS [305504] ~ Drivers: 40 Scanned in 00mn 02s ---\\ Last modified or created user files (O61) O61 - LFC: 06/05/2014 - 18:45:03 ---A- . (...) -- C:\Users\DELL\AppData\Local\Microsoft\Windows\1033\StructuredQuerySchema.bin [374281] O61 - LFC: 06/05/2014 - 18:45:03 ---A- . (.ESET.) -- C:\Users\DELL\AppData\Local\Microsoft\Windows\INetCache\IE\1GWZ80WJ\eset_smart_security_live_installer_.exe [1581384] O61 - LFC: 06/05/2014 - 18:45:04 ---A- . (...) -- C:\Users\DELL\AppData\Local\Microsoft\Windows\INetCache\Virtualized\C\ProgramData\NVIDIA Corporation\Drs\nvdrssel.bin [1] O61 - LFC: 06/05/2014 - 18:45:04 ---A- . (...) -- C:\Users\DELL\AppData\Local\Microsoft\Windows\Sqm\Manifest\Sqm10237.bin [217776] O61 - LFC: 06/05/2014 - 18:45:05 ---A- . (...) -- C:\Users\DELL\AppData\Local\Packages\windows_ie_ac_001\AC\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_f3279b66e87c6f22_0_0.bin [16384] =>.Microsoft Corporation O61 - LFC: 06/05/2014 - 18:45:05 ---A- . (...) -- C:\Users\DELL\AppData\Local\Packages\windows_ie_ac_001\AC\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_f3279b66e87c6f22_1_0.bin [16384] =>.Microsoft Corporation O61 - LFC: 06/05/2014 - 18:45:05 ---A- . (...) -- C:\Users\DELL\AppData\Local\Packages\windows_ie_ac_001\AC\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_f3279b66e87c6f22_2_0.bin [16384] =>.Microsoft Corporation O61 - LFC: 06/05/2014 - 18:45:06 ---A- . (.Tonec Inc..) -- C:\Users\DELL\AppData\Roaming\IDM\idmmzcc5\components10\idmmzcc.dll [26136] O61 - LFC: 06/05/2014 - 18:45:06 ---A- . (.Tonec Inc..) -- C:\Users\DELL\AppData\Roaming\IDM\idmmzcc5\components10\idmmzcc64.dll [30232] O61 - LFC: 06/05/2014 - 18:45:06 ---A- . (.Tonec Inc..) -- C:\Users\DELL\AppData\Roaming\IDM\idmmzcc5\components2\idmcchandler2.dll [305176] O61 - LFC: 06/05/2014 - 18:45:06 ---A- . (.Tonec Inc..) -- C:\Users\DELL\AppData\Roaming\IDM\idmmzcc5\components2\idmcchandler2_64.dll [432152] O61 - LFC: 06/05/2014 - 18:45:06 ---A- . (.Tonec Inc..) -- C:\Users\DELL\AppData\Roaming\IDM\idmmzcc5\components2\idmmzcc.dll [34216] O61 - LFC: 06/05/2014 - 18:45:06 ---A- . (.Tonec Inc..) -- C:\Users\DELL\AppData\Roaming\IDM\idmmzcc5\components2\idmmzcc64.dll [28512] O61 - LFC: 06/05/2014 - 18:45:06 ---A- . (.Tonec Inc..) -- C:\Users\DELL\AppData\Roaming\IDM\idmmzcc5\components9\idmmzcc.dll [24384] O61 - LFC: 06/05/2014 - 18:45:06 ---A- . (.Tonec Inc..) -- C:\Users\DELL\AppData\Roaming\IDM\idmmzcc5\components9\idmmzcc64.dll [28480] O61 - LFC: 06/05/2014 - 18:45:06 ---A- . (.Tonec Inc..) -- C:\Users\DELL\AppData\Roaming\IDM\idmmzcc5\components\idmmzcc.dll [34216] O61 - LFC: 06/05/2014 - 18:45:06 ---A- . (.Tonec Inc..) -- C:\Users\DELL\AppData\Roaming\IDM\idmupdt.exe [5906160] O61 - LFC: 07/05/2014 - 18:45:06 ---A- . (.BitTorrent Inc..) -- C:\Users\DELL\AppData\Roaming\uTorrent\updates\3.4.1_31105.exe [1276200] =>P2P.BitTorrent O61 - LFC: 07/05/2014 - 18:45:06 ---A- . (.Gameforge4D.) -- C:\Users\DELL\Downloads\Gameforge Live\SKILL_GBR_eng\SF2_Setup_GFLive_20130906.exe [5828608] O61 - LFC: 08/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Sony\Vegas Pro\12.0\Media Pool Thumbnails\media_thumbnail_cache.bin [328] O61 - LFC: 08/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Sony\Vegas Pro\12.0\OCL 4f3770ae-26e6adcf.bin [243361] O61 - LFC: 08/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Sony\Vegas Pro\12.0\OCL 4f3770ae-40300984.bin [102216] O61 - LFC: 08/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Sony\Vegas Pro\12.0\OCL 4f3770ae-7bc2069c.bin [152831] O61 - LFC: 08/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Sony\Vegas Pro\12.0\OCL 4f3770ae-920379d4.bin [52126] O61 - LFC: 08/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Sony\Vegas Pro\12.0\OCL 4f3770ae-aa490cb6.bin [134955] O61 - LFC: 08/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Sony\Vegas Pro\12.0\OCL 4f3770ae-dc7ab1ce.bin [96878] O61 - LFC: 08/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Sony\Vegas Pro\12.0\OCL 4f3770ae-fbf764ad.bin [994461] O61 - LFC: 08/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Sony\Vegas Pro\12.0\svfx_plugin_cache.bin [22970] O61 - LFC: 08/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Roaming\NVIDIA\GLCache\396fa8b3dbd7e399245a232cb1ac94dd\eb97cceb61bfa84b\e27433998109933b.bin [3184] O61 - LFC: 08/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Roaming\Need For Speed The Run\Uninstall\unins000.exe [1147233] O61 - LFC: 08/05/2014 - 18:45:06 ---A- . (.BitTorrent Inc..) -- C:\Users\DELL\AppData\Roaming\uTorrent\uTorrent.exe [1268560] =>P2P.BitTorrent O61 - LFC: 08/05/2014 - 18:45:06 ---A- . (.BitTorrent Inc..) -- C:\Users\DELL\AppData\Roaming\uTorrent\updates\3.4.1_31139.exe [1268560] =>P2P.BitTorrent O61 - LFC: 09/05/2014 - 18:45:03 ---A- . (...) -- C:\Users\DELL\AppData\Local\FLT\Steam\8870\remote\profile.bin [2039] O61 - LFC: 09/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_0.bin [16384] O61 - LFC: 09/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_1.bin [1048576] O61 - LFC: 09/05/2014 - 18:45:06 ---A- . (.Microsoft Corporation.) -- C:\Users\DELL\Downloads\Programs\dxwebsetup.exe [292184] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\Low\NVIDIA Corporation\NV_Cache\ceb0d3f9641e36c995aa79c71f8b46c0_fce8395c8fd8a861_f3279b66e87c6f22_0_0.bin [16384] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\Low\NVIDIA Corporation\NV_Cache\ceb0d3f9641e36c995aa79c71f8b46c0_fce8395c8fd8a861_f3279b66e87c6f22_0_1.bin [1048576] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\Low\NVIDIA Corporation\NV_Cache\ceb0d3f9641e36c995aa79c71f8b46c0_fce8395c8fd8a861_f3279b66e87c6f22_1_0.bin [16384] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_10.bin [8388608] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_11.bin [8388608] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_12.bin [8388608] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_13.bin [8388608] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_14.bin [8388608] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_15.bin [8388608] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_16.bin [8388608] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_2.bin [8388608] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_3.bin [8388608] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_4.bin [8388608] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_5.bin [8388608] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_6.bin [8388608] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_7.bin [8388608] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_8.bin [8388608] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_ac78aed3e633319a_0_9.bin [8388608] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\Desktop\3mbn3.exe [15361] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\Desktop\MD5 Changer -BETA_[www.unknowncheats.me]_.exe [223232] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\Downloads\Programs\SteamSetup.exe [1141680] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\Saved Games\Crysis2\Shaders\Cache\D3D11\lookupdata.bin [284] O61 - LFC: 10/05/2014 - 18:45:06 ---A- . (.Ubisoft.) -- C:\Users\DELL\Downloads\Programs\UplayInstaller.exe [61883256] O61 - LFC: 11/05/2014 - 18:45:03 ---A- . (...) -- C:\Users\DELL\AppData\Local\Google\Chrome\User Data\nacl_validation_cache.bin [128] O61 - LFC: 11/05/2014 - 18:45:05 ---A- . (...) -- C:\Users\DELL\AppData\Local\PunkBuster\BF4\pb\PnkBstrB.exe [214392] O61 - LFC: 11/05/2014 - 18:45:05 ---A- . (...) -- C:\Users\DELL\AppData\Local\PunkBuster\BF4\pb\PnkBstrK.sys [140120] O61 - LFC: 11/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\5faeb007c05800a9a20681556372a44b_fce8395c8fd8a861_e330f25ac01818f1_2_0.bin [16384] O61 - LFC: 11/05/2014 - 18:45:06 ---A- . (...) -- C:\Users\DELL\Downloads\Programs\RogueKiller.exe [3972608] O61 - LFC: 11/05/2014 - 18:45:06 ---A- . (.Nicolas Coolman.) -- C:\Users\DELL\Downloads\Programs\ZHPDiag2.exe [6779208] =>.Nicolas Coolman ~ 52 Fichiers temporaires (Temporary files) ~ Files: 65 Scanned in 00mn 03s ---\\ List all tools cleaner (LATC) (O63) O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman ~ ADS: Scanned in 00mn 00s ---\\ File Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ~ FASS Keys: 10 Scanned in 00mn 00s ---\\ Start Menu Internet (SMI) (O68) O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ~ Keys: Scanned in 00mn 00s ---\\ Search Browser Infection (SBI) (O69) O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com ~ Keys: Scanned in 00mn 00s ---\\ Search Svchost Services (SSS) (O83) O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) -- C:\Windows\System32\aelupsvc.dll [208896] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation Service.) -- C:\Windows\System32\certprop.dll [155136] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation Service.) -- C:\Windows\System32\certprop.dll [155136] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\Windows\System32\srvsvc.dll [324608] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\Windows\System32\gpsvc.dll [1311744] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\ikeext.dll [1063424] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over an IPv4 network..) -- C:\Windows\System32\iphlpsvc.dll [903168] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\Windows\System32\appinfo.dll [109568] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\Windows\System32\iscsiexe.dll [150528] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\Windows\System32\eapsvc.dll [107008] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\Windows\System32\schedsvc.dll [1214976] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [220672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Multimedia Class Scheduler Service.) -- C:\Windows\System32\mmcss.dll [70656] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\Windows\System32\browser.dll [134144] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [220160] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\sessenv.dll [324096] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\Windows\System32\wercplsupport.dll [81408] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Key Management Service.) -- C:\Windows\System32\kmsvc.dll [97792] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\Windows\System32\bdesvc.dll [339456] O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Windows Location Framework Service.) -- C:\Windows\System32\GeofenceMonitorService.dll [491520] O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Microsoft® Account Service.) -- C:\Windows\System32\wlidsvc.dll [1576960] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\Windows\System32\themeservice.dll [50688] O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Device Setup Manager.) -- C:\Windows\System32\DeviceSetupManager.dll [201728] O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Microsoft Network Connectivity Assistant Service.) -- C:\Windows\System32\ncasvc.dll [164352] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\Windows\System32\rasauto.dll [101376] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\Windows\System32\rasmans.dll [534528] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [223744] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\Windows\System32\sens.dll [71680] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\Windows\System32\ipnathlp.dll [433664] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [306688] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [3408896] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\Windows\System32\qmgr.dll [1017856] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [629760] O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [183296] O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - SvcHost Service for Microsoft Keyboard Filter.) -- C:\Windows\System32\KeyboardFilterSvc.dll [90464] ~ Services: 36 Scanned in 00mn 00s ---\\ Search Particular Root Folder (SPRF) (O84) [MD5.EE0ACE19A44AF3A317CB704C79278EE3] [SPRF][10/05/2014] (...) -- C:\Users\DELL\Desktop\3mbn3.exe [15361] [MD5.663CD829493CCAEC20A8F252BC6BF77E] [SPRF][10/05/2014] (...) -- C:\Users\DELL\Desktop\MD5 Changer -BETA_[www.unknowncheats.me]_.exe [223232] ~ Files: 2 Scanned in 00mn 00s ---\\ MyComputer Name Space (MNS) (O92) O92 - MNS: - {1CF1260C-4DD0-4ebb-811F-33C572699FDE} O92 - MNS: - {374DE290-123F-4565-9164-39C4925E467B} O92 - MNS: - {3ADD1653-EB32-4cb0-BBD7-DFA0ABB5ACCA} O92 - MNS: - {A0953C92-50DC-43bf-BE83-3742FED03C9C} O92 - MNS: - {A8CDFF1C-4878-43be-B5FD-F8091C1C60D0} O92 - MNS: - {B4BFCC3A-DB2C-424C-B029-7FE99A87C641} ~ MNS: 6 Scanned in 00mn 00s ---\\ General States of Services not Microsoft (EGS) (SR=Running, SS=Stopped) SS - | Auto 06/05/2014 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 06/05/2014 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 23/04/2014 572096 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe SS - | Demand 22/08/2013 37768 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SR - | Auto 12/09/2013 1337752 | (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe SR - | Auto 27/03/2014 927520 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe SR - | Auto 10/07/1658 0 | (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe SR - | Auto 26/03/2014 413128 | (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe SR - | Demand 10/07/1658 0 | (WdNisSvc) . (...) - C:\Program Files (x86)\Windows Defender\NisSrv.exe SR - | Demand 10/07/1658 0 | (WinDefend) . (...) - C:\Program Files (x86)\Windows Defender\MsMpEng.exe SR - | Auto 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation ~ Services: Scanned in 00mn 06s ---\\ Search Master Boot Record Infection (MBR)(O80) Run by DELL at 11/05/2014 18:45:37 ~ OS 64 not supported by MBR tool ~ MBR: 0 Scanned in 00mn 00s ---\\ Search Master Boot Record Infection (MBRCheck)(O80) Written by ad13, http://ad13.geekstog Run by DELL at 11/05/2014 18:45:39 ********* Dump file Name ********* C:\PhysicalDisk0_MBR.bin ~ MBR: Scanned in 00mn 02s ---\\ Scan Additionnel (O88) Database Version : 13045 - (09/05/2014) Clés trouvées (Keys found) : 1 Valeurs trouvées (Values found) : 1 Dossiers trouvés (Folders found) : 1 Fichiers trouvés (Files found) : 1 [HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\uTorrent] =>P2P.BitTorrent^ C:\Users\DELL\AppData\Roaming\uTorrent =>P2P.µTorrent^ [HKCU\Software\BitTorrent] =>P2P.BitTorrent^ ~ Additionnel Scan: 163899 Items scanned in 00mn 13s ---\\ Summary of the detections found on your workstation ~ MSI: 0 link(s) detected in 00mn 00s End of the scan (1192 lines in 01mn 31s)(0)