I'm having some issues and was hoping someone may be able to assist. When booting up I receive a message that the disk needs to be checked however it then indicates that autocheck cannot check the disk due to a configuration error from a software upgrade. Windows then proceeds to load and upon loading a box pops up saying its a Windows Genuine Notification and I'm not running a licensed version of Windows (however I am - store bought laptop running Windows 7). I googled this and saw some mention of a virus which disguised itself as the windows genuine notification but can't seem to get rid of it. Would appreciate any help. Thanks.

GMER Logs

First Log - after launching appeared to run quick scan, but log was blank.

Second Log is so long that it takes me over allowed characters, so I omitted and included other logs below. Please advise if there is something specific I should be looking for in the GMER log and I can post.

DDS.txt log

DDS (Ver_2011-06-23.01) - NTFSAMD64
Internet Explorer: 8.0.7600.16385
Run by Glazer at 19:48:56 on 2011-08-21
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.3933.2538 [GMT -4:00]
.
AV: CA Anti-Virus Plus *Enabled/Updated* {57B5C44D-AAB5-DBC9-741B-542BE5A132EA}
SP: CA Anti-Virus Plus *Enabled/Updated* {ECD425A9-8C8F-D447-4EAB-6F599E267857}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\windows\system32\wininit.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus Plus\caamsvc.exe
C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus Plus\isafe.exe
C:\Program Files\CA\CA Internet Security Suite\ccschedulersvc.exe
C:\windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\TODDSrv.exe
C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
C:\Program Files\CA\SharedComponents\TMEngine\UmxEngine.exe
C:\windows\system32\SearchIndexer.exe
C:\windows\system32\taskhost.exe
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\Program Files\CA\CA Internet Security Suite\ccevtmgr.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\windows\system32\igfxsrvc.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe
C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe
C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
C:\Program Files\CA\CA Internet Security Suite\casc.exe
C:\Program Files\CA\CA Internet Security Suite\ccprovsp.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files (x86)\Toshiba\Utilities\KeNotify.exe
C:\Program Files (x86)\Toshiba\TOSHIBA Service Station\ToshibaServiceStation.exe
C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\windows\system32\igfxext.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\windows\SysWOW64\Macromed\Flash\FlashUtil10t_ActiveX.exe
C:\windows\system32\taskeng.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
C:\windows\system32\SearchProtocolHost.exe
C:\windows\system32\SearchFilterHost.exe
C:\windows\system32\SearchProtocolHost.exe
C:\windows\system32\DllHost.exe
C:\windows\system32\DllHost.exe
C:\windows\SysWOW64\cmd.exe
C:\windows\system32\conhost.exe
C:\windows\SysWOW64\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.yahoo.com/
uDefault_Page_URL = hxxp://www.google.com/ig?brand=TSNA&bmod=TSNA
mDefault_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=TSNA&bmod=TSNA
mStart Page = hxxp://www.google.com/ig/redirectdomain?brand=TSNA&bmod=TSNA
uInternet Settings,ProxyOverride = *.local
mWinlogon: Userinit=userinit.exe
BHO: vShare Plugin: {043c5167-00bb-4324-af7e-62013faedacf} - C:\Program Files (x86)\vShare\vshare_toolbar.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB: vShare Plugin: {043c5167-00bb-4324-af7e-62013faedacf} - C:\Program Files (x86)\vShare\vshare_toolbar.dll
mRun: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL
mRun: [HWSetup] "C:\Program Files\TOSHIBA\Utilities\HWSetup.exe" hwSetUP
mRun: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
mRun: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
mRun: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe"
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\PROGRA~2\MIF5BA~1\Office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MIF5BA~1\Office12\REFIEBAR.DLL
LSP: C:\windows\system32\VetRedir.dll
DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} - hxxp://office.microsoft.com/sites/production/ieawsdc32.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{4AAC1865-70C9-4D56-A74C-C1609AA0102E} : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{B62CC68C-C65E-4F42-9AE4-095F7ECBE317} : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{B62CC68C-C65E-4F42-9AE4-095F7ECBE317}\0776E602E6564777F627B6 : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{B62CC68C-C65E-4F42-9AE4-095F7ECBE317}\F4365616E6E4564702055726C696360294E6475627E65647026434 : DhcpNameServer = 192.168.190.1
Handler: vsharechrome - {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - C:\Program Files (x86)\vShare\vshare_toolbar.dll
Notify: PFW - UmxWnp.Dll
BHO-X64: vShare Plugin: {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files (x86)\vShare\vshare_toolbar.dll
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO-X64: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB-X64: vShare Plugin: {043C5167-00BB-4324-AF7E-62013FAEDACF} - C:\Program Files (x86)\vShare\vshare_toolbar.dll
mRun-x64: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL
mRun-x64: [HWSetup] "C:\Program Files\TOSHIBA\Utilities\HWSetup.exe" hwSetUP
mRun-x64: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
mRun-x64: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
mRun-x64: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe"
mRun-x64: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
.
============= SERVICES / DRIVERS ===============
.
R0 KmxAMRT;KmxAMRT;C:\windows\system32\DRIVERS\KmxAMRT.sys --> C:\windows\system32\DRIVERS\KmxAMRT.sys [?]
R0 PxHlpa64;PxHlpa64;C:\windows\system32\Drivers\PxHlpa64.sys --> C:\windows\system32\Drivers\PxHlpa64.sys [?]
R0 tos_sps64;TOSHIBA tos_sps64 Service;C:\windows\system32\DRIVERS\tos_sps64.sys --> C:\windows\system32\DRIVERS\tos_sps64.sys [?]
R1 KmxAgent;KmxAgent;C:\windows\system32\DRIVERS\kmxagent.sys --> C:\windows\system32\DRIVERS\kmxagent.sys [?]
R1 KmxCfg;KmxCfg;C:\windows\system32\DRIVERS\kmxcfg.sys --> C:\windows\system32\DRIVERS\kmxcfg.sys [?]
R1 vwififlt;Virtual WiFi Filter Driver;C:\windows\system32\DRIVERS\vwififlt.sys --> C:\windows\system32\DRIVERS\vwififlt.sys [?]
R2 CAAMSvc;CAAMSvc;C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus Plus\CAAMSvc.exe [2011-5-1 291656]
R2 CAISafe;CAISafe;C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus Plus\isafe.exe [2011-7-21 312656]
R2 ccSchedulerSVC;CA Common Scheduler Service;C:\Program Files\CA\CA Internet Security Suite\ccschedulersvc.exe [2011-7-21 286032]
R2 cfWiMAXService;ConfigFree WiMAX Service;C:\Program Files (x86)\Toshiba\ConfigFree\CFIWmxSvcs64.exe [2009-8-10 248688]
R2 ConfigFree Gadget Service;ConfigFree Gadget Service;C:\Program Files (x86)\Toshiba\ConfigFree\CFProcSRVC.exe [2009-7-14 42368]
R2 ConfigFree Service;ConfigFree Service;C:\Program Files (x86)\Toshiba\ConfigFree\CFSvcs.exe [2009-3-10 46448]
R2 UmxEngine;TM Engine;C:\Program Files\CA\SharedComponents\TMEngine\UmxEngine.exe [2011-4-4 920656]
R3 RTL8167;Realtek 8167 NT Driver;C:\windows\system32\DRIVERS\Rt64win7.sys --> C:\windows\system32\DRIVERS\Rt64win7.sys [?]
R3 RTL8187B;Realtek RTL8187B Wireless 802.11bg 54Mbps USB 2.0 Network Adapter;C:\windows\system32\DRIVERS\RTL8187B.sys --> C:\windows\system32\DRIVERS\RTL8187B.sys [?]
R3 TMachInfo;TMachInfo;C:\Program Files (x86)\Toshiba\TOSHIBA Service Station\TMachInfo.exe [2010-2-2 51512]
R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2009-8-3 137560]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\windows\system32\Drivers\RtsUStor.sys --> C:\windows\system32\Drivers\RtsUStor.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\windows\system32\Wat\WatAdminSvc.exe --> C:\windows\system32\Wat\WatAdminSvc.exe [?]
.
=============== Created Last 30 ================
.
2011-08-21 19:17:57 -------- d-----w- C:\Users\Glazer\AppData\Roaming\Malwarebytes
2011-08-21 19:17:51 41272 ----a-w- C:\windows\SysWow64\drivers\mbamswissarmy.sys
2011-08-21 19:17:51 -------- d-----w- C:\ProgramData\Malwarebytes
2011-08-21 19:17:48 25912 ----a-w- C:\windows\System32\drivers\mbam.sys
2011-08-21 19:17:48 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2011-08-19 22:31:48 8862544 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{75BBCE4C-BFC2-456D-9976-9C194A0618F6}\mpengine.dll
2011-08-18 21:42:36 8862544 ------w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Updates\mpengine.dll
2011-08-14 02:19:28 -------- d-----w- C:\windows\CheckSur
2011-07-31 02:39:30 -------- d-----w- C:\Users\Glazer\AppData\Local\Apple Computer
2011-07-31 02:38:55 34152 ----a-w- C:\windows\System32\drivers\GEARAspiWDM.sys
2011-07-31 02:38:55 126312 ----a-w- C:\windows\System32\GEARAspi64.dll
2011-07-31 02:38:55 107368 ----a-w- C:\windows\SysWow64\GEARAspi.dll
2011-07-31 02:37:56 -------- d-----w- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
2011-07-31 02:37:56 -------- d-----w- C:\Program Files\iPod
2011-07-31 02:37:56 -------- d-----w- C:\Program Files (x86)\iTunes
2011-07-31 02:37:55 -------- d-----w- C:\Program Files\iTunes
2011-07-31 02:37:05 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin7.dll
2011-07-31 02:37:05 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin6.dll
2011-07-31 02:37:05 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin5.dll
2011-07-31 02:37:05 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin4.dll
2011-07-31 02:37:05 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin3.dll
2011-07-31 02:37:05 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin2.dll
2011-07-31 02:37:05 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin.dll
2011-07-31 02:36:14 -------- d-----w- C:\Users\Glazer\AppData\Local\Apple
2011-07-31 02:35:41 -------- d-----w- C:\Program Files\Bonjour
2011-07-31 02:35:41 -------- d-----w- C:\Program Files (x86)\Bonjour
2011-07-31 01:49:31 737072 ----a-w- C:\ProgramData\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore-2\Microsoft.MediaCenter.Sports.UI.dll
.
==================== Find3M ====================
.
2011-07-21 20:51:30 95568 ----a-w- C:\windows\System32\vetredir.dll
2011-07-21 20:51:30 141136 ----a-w- C:\windows\System32\isafeif64.dll
2011-07-21 20:51:30 128336 ----a-w- C:\windows\System32\isafeif.dll
2011-07-21 20:51:30 103760 ----a-w- C:\windows\System32\vetredir64.dll
2011-07-12 15:34:00 96104 ----a-w- C:\windows\System32\dns-sd.exe
2011-07-12 15:34:00 85864 ----a-w- C:\windows\System32\dnssd.dll
2011-07-12 15:34:00 61288 ----a-w- C:\windows\System32\jdns_sd.dll
2011-07-12 15:34:00 212840 ----a-w- C:\windows\System32\dnssdX.dll
2011-07-12 15:20:54 83816 ----a-w- C:\windows\SysWow64\dns-sd.exe
2011-07-12 15:20:54 73064 ----a-w- C:\windows\SysWow64\dnssd.dll
2011-07-12 15:20:54 50536 ----a-w- C:\windows\SysWow64\jdns_sd.dll
2011-07-12 15:20:54 178536 ----a-w- C:\windows\SysWow64\dnssdX.dll
2011-06-24 21:37:48 404640 ----a-w- C:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-06-11 02:56:44 3134464 ----a-w- C:\windows\System32\win32k.sys
2011-06-02 06:45:22 362496 ----a-w- C:\windows\System32\wow64win.dll
2011-06-02 06:45:22 243200 ----a-w- C:\windows\System32\wow64.dll
2011-06-02 06:45:22 13312 ----a-w- C:\windows\System32\wow64cpu.dll
2011-06-02 06:44:54 214528 ----a-w- C:\windows\System32\winsrv.dll
2011-06-02 06:42:37 16384 ----a-w- C:\windows\System32\ntvdm64.dll
2011-06-02 06:39:54 422400 ----a-w- C:\windows\System32\KernelBase.dll
2011-06-02 06:35:56 338944 ----a-w- C:\windows\System32\conhost.exe
2011-06-02 05:59:44 14336 ----a-w- C:\windows\SysWow64\ntvdm64.dll
2011-06-02 05:56:28 44032 ----a-w- C:\windows\apppatch\acwow64.dll
2011-06-02 05:56:06 25600 ----a-w- C:\windows\SysWow64\setup16.exe
2011-06-02 05:54:51 5120 ----a-w- C:\windows\SysWow64\wow32.dll
2011-06-02 05:54:50 272384 ----a-w- C:\windows\SysWow64\KernelBase.dll
2011-06-02 03:51:00 7680 ----a-w- C:\windows\SysWow64\instnm.exe
2011-06-02 03:50:59 2048 ----a-w- C:\windows\SysWow64\user.exe
2011-06-02 03:45:49 6144 ---ha-w- C:\windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2011-06-02 03:45:49 4608 ---ha-w- C:\windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2011-06-02 03:45:49 3584 ---ha-w- C:\windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2011-06-02 03:45:49 3072 ---ha-w- C:\windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2011-05-28 03:25:16 1638912 ----a-w- C:\windows\System32\mshtml.tlb
2011-05-28 03:00:02 1638912 ----a-w- C:\windows\SysWow64\mshtml.tlb
2011-05-24 23:14:10 270720 ------w- C:\windows\System32\MpSigStub.exe
2011-05-24 11:21:59 404992 ----a-w- C:\windows\System32\umpnpmgr.dll
2011-05-24 10:34:20 64512 ----a-w- C:\windows\SysWow64\devobj.dll
2011-05-24 10:34:20 44544 ----a-w- C:\windows\SysWow64\devrtl.dll
2011-05-24 10:34:00 145920 ----a-w- C:\windows\SysWow64\cfgmgr32.dll
2011-05-24 10:32:46 252928 ----a-w- C:\windows\SysWow64\drvinst.exe
.
============= FINISH: 19:49:53.46 ===============

DDS Attach.txt log

DDS (Ver_2011-06-23.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 3/20/2010 9:43:53 PM
System Uptime: 8/21/2011 7:04:59 PM (0 hours ago)
.
Motherboard: TOSHIBA | | NBWAA
Processor: Pentium(R) Dual-Core CPU T4400 @ 2.20GHz | U2E1 | 2200/mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 288 GiB total, 244.768 GiB free.
D: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP102: 7/22/2011 2:33:07 PM - Windows Update
RP103: 7/30/2011 1:55:56 PM - Windows Update
RP104: 7/30/2011 10:37:11 PM - Installed iTunes
RP105: 8/2/2011 11:27:33 AM - Windows Update
RP106: 8/5/2011 9:00:18 AM - Windows Update
RP107: 8/10/2011 7:27:18 PM - Windows Update
RP108: 8/11/2011 8:06:07 AM - Windows Update
RP109: 8/12/2011 4:20:41 PM - Windows Update
RP110: 8/13/2011 10:18:51 PM - Windows Update
RP111: 8/16/2011 5:26:12 PM - Windows Update
RP112: 8/16/2011 10:28:52 PM - Windows Update
RP113: 8/17/2011 3:08:15 PM - Windows Update
RP114: 8/18/2011 5:41:31 PM - Windows Update
RP115: 8/18/2011 10:12:16 PM - Windows Update
RP116: 8/19/2011 6:30:37 PM - Windows Update
RP117: 8/19/2011 9:56:57 PM - Windows Update
RP118: 8/20/2011 10:03:42 PM - Windows Update
RP119: 8/21/2011 3:40:04 PM - Windows Update
.
==== Installed Programs ======================
.
Update for Microsoft Office 2007 (KB2508958)
Adobe Flash Player 10 ActiveX
Adobe Reader 9.4.5
Apple Application Support
Apple Software Update
AudibleManager
Best Buy Software Installer
Compatibility Pack for the 2007 Office system
Coupon Printer for Windows
eMusic Download Manager 4.1.4
Hotfix for Office (KB975927)
Java(TM) 6 Update 14
Junk Mail filter update
Korean Fonts Support For Adobe Reader 9
Malwarebytes' Anti-Malware version 1.51.1.1800
Microsoft Choice Guard
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Excel MUI (English) 2007
Microsoft Office Home and Student 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office PowerPoint Viewer 2007 (English)
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Suite Activation Assistant
Microsoft Office Word MUI (English) 2007
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Works
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
QuickTime
Realtek 8136 8168 8169 Ethernet Driver
Realtek High Definition Audio Driver
Realtek USB 2.0 Card Reader
Realtek WLAN Driver
Roxio Burn
Roxio Express Labeler 3
Roxio Roxio Burn
Roxio Update Manager
Security Update for 2007 Microsoft Office System (KB2288621)
Security Update for 2007 Microsoft Office System (KB2288931)
Security Update for 2007 Microsoft Office System (KB2345043)
Security Update for 2007 Microsoft Office System (KB2509488)
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB976321)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft Office 2007 System (KB2541012)
Security Update for Microsoft Office Excel 2007 (KB2541007)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office PowerPoint 2007 (KB2535818)
Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Security Update for Microsoft Office Word 2007 (KB2344993)
TOSHIBA Application Installer
TOSHIBA Assist
TOSHIBA Bulletin Board
TOSHIBA ConfigFree
TOSHIBA DVD PLAYER
TOSHIBA Extended Tiles for Windows Mobility Center
TOSHIBA Flash Cards Support Utility
TOSHIBA Hardware Setup
TOSHIBA HDD/SSD Alert
TOSHIBA Media Controller
TOSHIBA Quality Application
TOSHIBA ReelTime
TOSHIBA Service Station
TOSHIBA Speech System Applications
TOSHIBA Speech System SR Engine(U.S.) Version1.0
TOSHIBA Speech System TTS Engine(U.S.) Version1.0
TOSHIBA Supervisor Password
TOSHIBA Value Added Package
ToshibaRegistration
Update for 2007 Microsoft Office System (KB2284654)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 System (KB2539530)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office OneNote 2007 (KB980729)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Utility Common Driver
Veetle TV 0.9.18
vShare Plugin
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Mail
Windows Live Messenger
Windows Live Movie Maker
Windows Live Photo Gallery
Windows Live Sign-in Assistant
Windows Live Sync
Windows Live Upload Tool
Windows Live Writer
.
==== Event Viewer Messages From Past Week ========
.
8/21/2011 7:49:58 PM, Error: Ntfs [55] - The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume TI105756W0B.
8/21/2011 7:49:56 PM, Error: Ntfs [55] - The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume C:.
8/21/2011 7:07:50 PM, Error: Service Control Manager [7023] - The Windows Defender service terminated with the following error: %%-1906441712
8/21/2011 7:00:22 PM, Error: Service Control Manager [7001] - The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: The dependency service or group failed to start.
8/21/2011 7:00:22 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service fdPHost with arguments "" in order to run the server: {D3DCB472-7261-43CE-924B-0704BD730D5F}
8/21/2011 7:00:22 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service fdPHost with arguments "" in order to run the server: {145B4335-FE2A-4927-A040-7C35AD3180EF}
8/21/2011 7:00:10 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
8/21/2011 7:00:10 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
8/21/2011 7:00:10 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netprofm with arguments "" in order to run the server: {A47979D2-C419-11D9-A5B4-001185AD2B89}
8/21/2011 7:00:10 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netman with arguments "" in order to run the server: {BA126AD1-2166-11D1-B1D0-00805FC1270E}
8/21/2011 7:00:09 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
8/21/2011 7:00:03 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}
8/21/2011 6:59:53 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AFD DfsC discache KmxAgent KmxCfg NetBIOS NetBT nsiproxy Psched rdbss spldr tdx vwififlt Wanarpv6 WfpLwf
8/21/2011 6:59:52 PM, Error: Service Control Manager [7001] - The Workstation service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
8/21/2011 6:59:52 PM, Error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning.
8/21/2011 6:59:52 PM, Error: Service Control Manager [7001] - The SMB MiniRedirector Wrapper and Engine service depends on the Redirected Buffering Sub Sysytem service which failed to start because of the following error: A device attached to the system is not functioning.
8/21/2011 6:59:52 PM, Error: Service Control Manager [7001] - The SMB 2.0 MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start.
8/21/2011 6:59:52 PM, Error: Service Control Manager [7001] - The SMB 1.x MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start.
8/21/2011 6:59:52 PM, Error: Service Control Manager [7001] - The Network Store Interface Service service depends on the NSI proxy service driver. service which failed to start because of the following error: A device attached to the system is not functioning.
8/21/2011 6:59:52 PM, Error: Service Control Manager [7001] - The Network Location Awareness service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
8/21/2011 6:59:52 PM, Error: Service Control Manager [7001] - The IP Helper service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
8/21/2011 6:59:52 PM, Error: Service Control Manager [7001] - The DNS Client service depends on the NetIO Legacy TDI Support Driver service which failed to start because of the following error: A device attached to the system is not functioning.
8/21/2011 6:59:52 PM, Error: Service Control Manager [7001] - The DHCP Client service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning.
8/21/2011 3:41:11 PM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8000ffff: Update Rollup for ActiveX Killbits for Windows 7 for x64-based Systems (KB2562937).
.
==== End Of File ===========================

MBAM Log

Malwarebytes' Anti-Malware 1.51.1.1800
www.malwarebytes.org

Database version: 7529

Windows 6.1.7600
Internet Explorer 8.0.7600.16385

8/21/2011 9:15:58 PM
mbam-log-2011-08-21 (21-15-58).txt

Scan type: Full scan (C:\|)
Objects scanned: 373995
Time elapsed: 1 hour(s), 20 minute(s), 38 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

Recommended Answers

All 25 Replies

Try breaking the Gmer log over however many posts it needs.

try this .go to start in search box type this , slui.exe 4 , click the program to run it and follow the prompts to reactivate windows

Try breaking the Gmer log over however many posts it needs.

Here is the GMER Log (1 of 2) - I did not try caperjack's suggestion as I thought I'd post all logs first and then see what you guys think is the best course of action. Thanks!

GMER 1.0.15.15641 - http://www.gmer.net
Rootkit scan 2011-08-21 19:48:32
Windows 6.1.7600
Running: r66siy7h.exe


---- Files - GMER 1.0.15 ----

File C:\Windows\servicing\Packages\Server-Help-Package.ClientHomePremium~31bf3856ad364e35~amd64~~6.1.7601.17514.cat 21346 bytes
File C:\Windows\servicing\Packages\Server-Help-Package.ClientHomePremium~31bf3856ad364e35~amd64~~6.1.7601.17514.mum 1479 bytes
File C:\Windows\servicing\Packages\Server-Help-Package.ClientProfessional~31bf3856ad364e35~amd64~en-US~6.1.7600.16385.cat 34895 bytes
File C:\Windows\servicing\Packages\Server-Help-Package.ClientProfessional~31bf3856ad364e35~amd64~en-US~6.1.7600.16385.mum 1698 bytes
File C:\Windows\servicing\Packages\Server-Help-Package.ClientProfessional~31bf3856ad364e35~amd64~en-US~6.1.7601.17514.cat 36748 bytes
File C:\Windows\servicing\Packages\Server-Help-Package.ClientProfessional~31bf3856ad364e35~amd64~en-US~6.1.7601.17514.mum 1689 bytes
File C:\Windows\servicing\Packages\Server-Help-Package.ClientProfessional~31bf3856ad364e35~amd64~~6.1.7600.16385.cat 21523 bytes
File C:\Windows\servicing\Packages\Server-Help-Package.ClientProfessional~31bf3856ad364e35~amd64~~6.1.7600.16385.mum 1460 bytes
File C:\Windows\servicing\Packages\Server-Help-Package.ClientProfessional~31bf3856ad364e35~amd64~~6.1.7601.17514.cat 21926 bytes
File C:\Windows\servicing\Packages\Server-Help-Package.ClientProfessional~31bf3856ad364e35~amd64~~6.1.7601.17514.mum 1474 bytes
File C:\Windows\servicing\Packages\Server-Help-Package.ClientUltimate~31bf3856ad364e35~amd64~en-US~6.1.7600.16385.cat 35483 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB976264~31bf3856ad364e35~amd64~~6.1.2.0.mum 4789 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB976662~31bf3856ad364e35~amd64~~6.1.1.0.cat 10812 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB976662~31bf3856ad364e35~amd64~~6.1.1.0.mum 3106 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB977074~31bf3856ad364e35~amd64~~6.1.1.1.cat 11392 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB977074~31bf3856ad364e35~amd64~~6.1.1.1.mum 2868 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB977863~31bf3856ad364e35~amd64~~6.1.1.2.cat 21348 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB977863~31bf3856ad364e35~amd64~~6.1.1.2.mum 10502 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB978251~31bf3856ad364e35~amd64~~6.1.1.3.cat 11191 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB978251~31bf3856ad364e35~amd64~~6.1.1.3.mum 3955 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB978542~31bf3856ad364e35~amd64~~6.1.1.1.cat 11821 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB978542~31bf3856ad364e35~amd64~~6.1.1.1.mum 3077 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB978601~31bf3856ad364e35~amd64~~6.1.1.1.cat 11999 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB978601~31bf3856ad364e35~amd64~~6.1.1.1.mum 3966 bytes
File C:\Windows\servicing\Packages\Package_for_KB974571_RTM~31bf3856ad364e35~amd64~~6.1.1.1.mum 2854 bytes
File C:\Windows\servicing\Packages\Package_for_KB974571~31bf3856ad364e35~amd64~~6.1.1.1.cat 7895 bytes
File C:\Windows\servicing\Packages\Package_for_KB974571~31bf3856ad364e35~amd64~~6.1.1.1.mum 2329 bytes
File C:\Windows\servicing\Packages\Package_for_KB975467_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7605 bytes
File C:\Windows\servicing\Packages\Package_for_KB975467_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 2881 bytes
File C:\Windows\servicing\Packages\Package_for_KB975467~31bf3856ad364e35~amd64~~6.1.1.0.cat 7590 bytes
File C:\Windows\servicing\Packages\Package_for_KB975467~31bf3856ad364e35~amd64~~6.1.1.0.mum 2329 bytes
File C:\Windows\servicing\Packages\Package_for_KB975496_RTM~31bf3856ad364e35~amd64~~6.1.2.0.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB975496_RTM~31bf3856ad364e35~amd64~~6.1.2.0.mum 2546 bytes
File C:\Windows\servicing\Packages\Package_for_KB975496~31bf3856ad364e35~amd64~~6.1.2.0.cat 7697 bytes
File C:\Windows\servicing\Packages\Package_for_KB975496~31bf3856ad364e35~amd64~~6.1.2.0.mum 2283 bytes
File C:\Windows\servicing\Packages\Package_for_KB976662~31bf3856ad364e35~amd64~~6.1.1.0.mum 1839 bytes
File C:\Windows\servicing\Packages\Package_for_KB976902_RTM~31bf3856ad364e35~amd64~~6.1.1.17105.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB976902_RTM~31bf3856ad364e35~amd64~~6.1.1.17105.mum 2769 bytes
File C:\Windows\servicing\Packages\Package_for_KB976902_RTM~31bf3856ad364e35~amd64~~6.1.1.17514.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB976902_RTM~31bf3856ad364e35~amd64~~6.1.1.17514.mum 2769 bytes
File C:\Windows\servicing\Packages\Package_for_KB976902~31bf3856ad364e35~amd64~~6.1.1.17105.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB976902~31bf3856ad364e35~amd64~~6.1.1.17105.mum 2374 bytes
File C:\Windows\servicing\Packages\Package_for_KB976902~31bf3856ad364e35~amd64~~6.1.1.17514.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB976902~31bf3856ad364e35~amd64~~6.1.1.17514.mum 2238 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB976264~31bf3856ad364e35~amd64~~6.1.2.0.mum 3205 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB977074~31bf3856ad364e35~amd64~~6.1.1.1.cat 9651 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB977074~31bf3856ad364e35~amd64~~6.1.1.1.mum 2666 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB978207~31bf3856ad364e35~amd64~~6.1.1.1.cat 74959 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB978207~31bf3856ad364e35~amd64~~6.1.1.1.mum 4999 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB978542~31bf3856ad364e35~amd64~~6.1.1.1.cat 32797 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB978542~31bf3856ad364e35~amd64~~6.1.1.1.mum 2893 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB978601~31bf3856ad364e35~amd64~~6.1.1.1.cat 12608 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB978601~31bf3856ad364e35~amd64~~6.1.1.1.mum 3774 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB979482~31bf3856ad364e35~amd64~~6.1.1.1.cat 9453 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB979482~31bf3856ad364e35~amd64~~6.1.1.1.mum 3834 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB979538~31bf3856ad364e35~amd64~~6.1.1.0.cat 9368 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB979538~31bf3856ad364e35~amd64~~6.1.1.0.mum 2729 bytes
File C:\Windows\servicing\Packages\Package_for_KB978207~31bf3856ad364e35~amd64~~6.1.1.1.mum 2265 bytes
File C:\Windows\servicing\Packages\Package_for_KB978251_RTM~31bf3856ad364e35~amd64~~6.1.1.3.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB978251_RTM~31bf3856ad364e35~amd64~~6.1.1.3.mum 2178 bytes
File C:\Windows\servicing\Packages\Package_for_KB978251~31bf3856ad364e35~amd64~~6.1.1.3.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB978251~31bf3856ad364e35~amd64~~6.1.1.3.mum 1915 bytes
File C:\Windows\servicing\Packages\Package_for_KB978262_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7404 bytes
File C:\Windows\servicing\Packages\Package_for_KB978262_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 1451 bytes
File C:\Windows\servicing\Packages\Package_for_KB978262~31bf3856ad364e35~amd64~~6.1.1.0.cat 7404 bytes
File C:\Windows\servicing\Packages\Package_for_KB978262~31bf3856ad364e35~amd64~~6.1.1.0.mum 1452 bytes
File C:\Windows\servicing\Packages\Package_for_KB978542_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7697 bytes
File C:\Windows\servicing\Packages\Package_for_KB978542_RTM~31bf3856ad364e35~amd64~~6.1.1.1.mum 2566 bytes
File C:\Windows\servicing\Packages\Package_for_KB978542~31bf3856ad364e35~amd64~~6.1.1.1.cat 7697 bytes
File C:\Windows\servicing\Packages\Package_for_KB978542~31bf3856ad364e35~amd64~~6.1.1.1.mum 2043 bytes
File C:\Windows\servicing\Packages\Package_for_KB978601_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7679 bytes
File C:\Windows\servicing\Packages\Package_for_KB978601_RTM~31bf3856ad364e35~amd64~~6.1.1.1.mum 2854 bytes
File C:\Windows\servicing\Packages\Package_for_KB978601~31bf3856ad364e35~amd64~~6.1.1.1.cat 7679 bytes
File C:\Windows\servicing\Packages\Package_for_KB978601~31bf3856ad364e35~amd64~~6.1.1.1.mum 2329 bytes
File C:\Windows\servicing\Packages\Package_for_KB978637_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7679 bytes
File C:\Windows\servicing\Packages\Package_for_KB978637_RTM~31bf3856ad364e35~amd64~~6.1.1.1.mum 2369 bytes
File C:\Windows\servicing\Packages\Package_73_for_KB979306~31bf3856ad364e35~amd64~~6.1.1.1.mum 3818 bytes
File C:\Windows\servicing\Packages\Package_73_for_KB981793~31bf3856ad364e35~amd64~~6.1.1.1.cat 10068 bytes
File C:\Windows\servicing\Packages\Package_73_for_KB981793~31bf3856ad364e35~amd64~~6.1.1.1.mum 3818 bytes
File C:\Windows\servicing\Packages\Package_74_for_KB2158563~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\servicing\Packages\Package_74_for_KB2158563~31bf3856ad364e35~amd64~~6.1.1.0.mum 9036 bytes
File C:\Windows\servicing\Packages\Package_74_for_KB2443685~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\servicing\Packages\Package_74_for_KB2443685~31bf3856ad364e35~amd64~~6.1.1.0.mum 9036 bytes
File C:\Windows\servicing\Packages\Package_74_for_KB979306~31bf3856ad364e35~amd64~~6.1.1.1.cat 9450 bytes
File C:\Windows\servicing\Packages\Package_74_for_KB979306~31bf3856ad364e35~amd64~~6.1.1.1.mum 9028 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB976264~31bf3856ad364e35~amd64~~6.1.2.0.mum 2528 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB976902~31bf3856ad364e35~amd64~~6.1.1.17105.cat 34277 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB976902~31bf3856ad364e35~amd64~~6.1.1.17105.mum 2804 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB976902~31bf3856ad364e35~amd64~~6.1.1.17514.cat 34277 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB976902~31bf3856ad364e35~amd64~~6.1.1.17514.mum 2804 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB977863~31bf3856ad364e35~amd64~~6.1.1.2.cat 18527 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB977863~31bf3856ad364e35~amd64~~6.1.1.2.mum 4898 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB978262~31bf3856ad364e35~amd64~~6.1.1.0.cat 9144 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB978262~31bf3856ad364e35~amd64~~6.1.1.0.mum 2926 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB978637~31bf3856ad364e35~amd64~~6.1.1.1.cat 12415 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB978637~31bf3856ad364e35~amd64~~6.1.1.1.mum 3935 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB979099~31bf3856ad364e35~amd64~~6.1.1.0.cat 24175 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB979099~31bf3856ad364e35~amd64~~6.1.1.0.mum 8366 bytes
File C:\Windows\servicing\Packages\Package_for_KB978637~31bf3856ad364e35~amd64~~6.1.1.1.mum 2106 bytes
File C:\Windows\servicing\Packages\Package_for_KB978886_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB978886_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 2636 bytes
File C:\Windows\servicing\Packages\Package_for_KB978886~31bf3856ad364e35~amd64~~6.1.1.0.cat 7719 bytes
File C:\Windows\servicing\Packages\Package_for_KB978886~31bf3856ad364e35~amd64~~6.1.1.0.mum 2113 bytes
File C:\Windows\servicing\Packages\Package_for_KB979099_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7679 bytes
File C:\Windows\servicing\Packages\Package_for_KB979099_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 1476 bytes
File C:\Windows\servicing\Packages\Package_for_KB979099~31bf3856ad364e35~amd64~~6.1.1.0.cat 7679 bytes
File C:\Windows\servicing\Packages\Package_for_KB979099~31bf3856ad364e35~amd64~~6.1.1.0.mum 1475 bytes
File C:\Windows\servicing\Packages\Package_for_KB979306_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 10367 bytes
File C:\Windows\servicing\Packages\Package_for_KB979306_RTM~31bf3856ad364e35~amd64~~6.1.1.1.mum 68181 bytes
File C:\Windows\servicing\Packages\Package_for_KB979306~31bf3856ad364e35~amd64~~6.1.1.1.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB979306~31bf3856ad364e35~amd64~~6.1.1.1.mum 40032 bytes
File C:\Windows\servicing\Packages\Package_for_KB979309_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB979309_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 1485 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB978637~31bf3856ad364e35~amd64~~6.1.1.1.mum 3739 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB978886~31bf3856ad364e35~amd64~~6.1.1.0.cat 32768 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB978886~31bf3856ad364e35~amd64~~6.1.1.0.mum 2687 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB979482~31bf3856ad364e35~amd64~~6.1.1.1.cat 9453 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB979482~31bf3856ad364e35~amd64~~6.1.1.1.mum 4026 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB979538~31bf3856ad364e35~amd64~~6.1.1.0.cat 9160 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB979538~31bf3856ad364e35~amd64~~6.1.1.0.mum 2755 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB979559~31bf3856ad364e35~amd64~~6.1.1.3.cat 8876 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB979559~31bf3856ad364e35~amd64~~6.1.1.3.mum 3948 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB979683~31bf3856ad364e35~amd64~~6.1.1.1.cat 10513 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB979683~31bf3856ad364e35~amd64~~6.1.1.1.mum 3540 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB979687~31bf3856ad364e35~amd64~~6.1.1.2.cat 11843 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB979687~31bf3856ad364e35~amd64~~6.1.1.2.mum 3057 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB979688~31bf3856ad364e35~amd64~~6.1.1.3.cat 9472 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB979688~31bf3856ad364e35~amd64~~6.1.1.3.mum 3794 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB979916~31bf3856ad364e35~amd64~~6.1.1.0.cat 9450 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB979916~31bf3856ad364e35~amd64~~6.1.1.0.mum 2727 bytes
File C:\Windows\servicing\Packages\Package_4_for_KB974431~31bf3856ad364e35~amd64~~6.1.1.5.mum 6754 bytes
File C:\Windows\servicing\Packages\Package_4_for_KB978207~31bf3856ad364e35~amd64~~6.1.1.1.cat 488590 bytes
File C:\Windows\servicing\Packages\Package_4_for_KB978207~31bf3856ad364e35~amd64~~6.1.1.1.mum 9682 bytes
File C:\Windows\servicing\Packages\Package_4_for_KB979916~31bf3856ad364e35~amd64~~6.1.1.0.cat 8854 bytes
File C:\Windows\servicing\Packages\Package_4_for_KB979916~31bf3856ad364e35~amd64~~6.1.1.0.mum 9658 bytes
File C:\Windows\servicing\Packages\Package_4_for_KB980182~31bf3856ad364e35~amd64~~6.1.1.1.cat 491704 bytes
File C:\Windows\servicing\Packages\Package_4_for_KB980182~31bf3856ad364e35~amd64~~6.1.1.1.mum 11434 bytes
File C:\Windows\servicing\Packages\Package_4_for_KB982018~31bf3856ad364e35~amd64~~6.1.3.2.cat 9472 bytes
File C:\Windows\servicing\Packages\Package_4_for_KB982018~31bf3856ad364e35~amd64~~6.1.3.2.mum 29581 bytes
File C:\Windows\servicing\Packages\Package_4_for_KB982381~31bf3856ad364e35~amd64~~6.1.1.3.cat 494971 bytes
File C:\Windows\servicing\Packages\Package_4_for_KB982381~31bf3856ad364e35~amd64~~6.1.1.3.mum 13139 bytes
File C:\Windows\servicing\Packages\Package_for_KB979309~31bf3856ad364e35~amd64~~6.1.1.0.mum 1483 bytes
File C:\Windows\servicing\Packages\Package_for_KB979482_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB979482_RTM~31bf3856ad364e35~amd64~~6.1.1.1.mum 2854 bytes
File C:\Windows\servicing\Packages\Package_for_KB979482~31bf3856ad364e35~amd64~~6.1.1.1.cat 7697 bytes
File C:\Windows\servicing\Packages\Package_for_KB979482~31bf3856ad364e35~amd64~~6.1.1.1.mum 2329 bytes
File C:\Windows\servicing\Packages\Package_for_KB979538_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7404 bytes
File C:\Windows\servicing\Packages\Package_for_KB979538_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 2865 bytes
File C:\Windows\servicing\Packages\Package_for_KB979538~31bf3856ad364e35~amd64~~6.1.1.0.cat 7404 bytes
File C:\Windows\servicing\Packages\Package_for_KB979538~31bf3856ad364e35~amd64~~6.1.1.0.mum 2315 bytes
File C:\Windows\servicing\Packages\Package_for_KB979559_RTM~31bf3856ad364e35~amd64~~6.1.1.3.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB979559_RTM~31bf3856ad364e35~amd64~~6.1.1.3.mum 2854 bytes
File C:\Windows\servicing\Packages\Package_for_KB979559~31bf3856ad364e35~amd64~~6.1.1.3.cat 7719 bytes
File C:\Windows\servicing\Packages\Package_for_KB979559~31bf3856ad364e35~amd64~~6.1.1.3.mum 2329 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB979309~31bf3856ad364e35~amd64~~6.1.1.0.mum 2869 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB979688~31bf3856ad364e35~amd64~~6.1.1.3.cat 9472 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB979688~31bf3856ad364e35~amd64~~6.1.1.3.mum 3572 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB979900~31bf3856ad364e35~amd64~~6.1.1.0.cat 31150 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB979900~31bf3856ad364e35~amd64~~6.1.1.0.mum 12955 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB979916~31bf3856ad364e35~amd64~~6.1.1.0.cat 9450 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB979916~31bf3856ad364e35~amd64~~6.1.1.0.mum 2529 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB980195~31bf3856ad364e35~amd64~~6.1.1.3.cat 9134 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB980195~31bf3856ad364e35~amd64~~6.1.1.3.mum 2926 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB980302~31bf3856ad364e35~amd64~~6.1.1.0.cat 10629 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB980302~31bf3856ad364e35~amd64~~6.1.1.0.mum 2860 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB981078~31bf3856ad364e35~amd64~~6.1.1.3.cat 10651 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB981078~31bf3856ad364e35~amd64~~6.1.1.3.mum 3349 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB982132~31bf3856ad364e35~amd64~~6.1.1.3.cat 10648 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB982132~31bf3856ad364e35~amd64~~6.1.1.3.mum 2897 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB982214~31bf3856ad364e35~amd64~~6.1.1.3.cat 12987 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB982214~31bf3856ad364e35~amd64~~6.1.1.3.mum 5239 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB982519~31bf3856ad364e35~amd64~~6.1.1.1.cat 9437 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB982519~31bf3856ad364e35~amd64~~6.1.1.1.mum 2525 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB982632~31bf3856ad364e35~amd64~~6.1.1.0.cat 10629 bytes
File C:\Windows\servicing\Packages\Package_for_KB980232_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 2179 bytes
File C:\Windows\servicing\Packages\Package_for_KB980232~31bf3856ad364e35~amd64~~6.1.1.0.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB980232~31bf3856ad364e35~amd64~~6.1.1.0.mum 1915 bytes
File C:\Windows\servicing\Packages\Package_for_KB980302_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB980302_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 1460 bytes
File C:\Windows\servicing\Packages\Package_for_KB980302~31bf3856ad364e35~amd64~~6.1.1.0.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB980302~31bf3856ad364e35~amd64~~6.1.1.0.mum 1458 bytes
File C:\Windows\servicing\Packages\Package_for_KB980408_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB980408_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 2169 bytes
File C:\Windows\servicing\Packages\Package_for_KB975560_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 1485 bytes
File C:\Windows\servicing\Packages\Package_for_KB975560~31bf3856ad364e35~amd64~~6.1.1.0.cat 7679 bytes
File C:\Windows\servicing\Packages\Package_for_KB975560~31bf3856ad364e35~amd64~~6.1.1.0.mum 1483 bytes
File C:\Windows\servicing\Packages\Package_for_KB976264_RTM~31bf3856ad364e35~amd64~~6.1.2.0.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB976264_RTM~31bf3856ad364e35~amd64~~6.1.2.0.mum 2422 bytes
File C:\Windows\servicing\Packages\Package_for_KB976264~31bf3856ad364e35~amd64~~6.1.2.0.cat 7697 bytes
File C:\Windows\servicing\Packages\Package_for_KB976264~31bf3856ad364e35~amd64~~6.1.2.0.mum 1897 bytes
File C:\Windows\servicing\Packages\Package_for_KB976662_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7880 bytes
File C:\Windows\servicing\Packages\Package_for_KB976662_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 2102 bytes
File C:\Windows\servicing\Packages\Package_37_for_KB979306~31bf3856ad364e35~amd64~~6.1.1.1.mum 11517 bytes
File C:\Windows\servicing\Packages\Package_37_for_KB981793~31bf3856ad364e35~amd64~~6.1.1.1.cat 9472 bytes
File C:\Windows\servicing\Packages\Package_37_for_KB981793~31bf3856ad364e35~amd64~~6.1.1.1.mum 11517 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB2160329~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB2160329~31bf3856ad364e35~amd64~~6.1.1.0.mum 3760 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB2183461~31bf3856ad364e35~amd64~~6.1.1.2.cat 75047 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB2183461~31bf3856ad364e35~amd64~~6.1.1.2.mum 5017 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB2207566~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB2207566~31bf3856ad364e35~amd64~~6.1.1.0.mum 3804 bytes
File C:\Windows\servicing\Packages\Package_for_KB975560_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7679 bytes
File C:\Windows\servicing\Packages\Package_for_KB976662~31bf3856ad364e35~amd64~~6.1.1.0.cat 7880 bytes
File C:\Windows\servicing\Packages\Package_for_KB976932~31bf3856ad364e35~amd64~~6.1.1.17514.cat 7684 bytes
File C:\Windows\servicing\Packages\Package_for_KB976933~31bf3856ad364e35~amd64~es-ES~6.1.7601.17514.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB976933~31bf3856ad364e35~amd64~he-IL~6.1.7601.17514.mum 3866 bytes
File C:\Windows\servicing\Packages\Package_for_KB976933~31bf3856ad364e35~amd64~nb-NO~6.1.7601.17514.mum 3866 bytes
File C:\Windows\servicing\Packages\Package_for_KB976933~31bf3856ad364e35~amd64~sk-SK~6.1.7601.17514.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB976933~31bf3856ad364e35~amd64~tr-TR~6.1.7601.17514.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB977074_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7880 bytes
File C:\Windows\servicing\Packages\Package_for_KB978207~31bf3856ad364e35~amd64~~6.1.1.1.cat 7679 bytes
File C:\Windows\servicing\Packages\Package_for_KB978637~31bf3856ad364e35~amd64~~6.1.1.1.cat 7679 bytes
File C:\Windows\servicing\Packages\Package_for_KB979309~31bf3856ad364e35~amd64~~6.1.1.0.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB979683_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7697 bytes
File C:\Windows\servicing\Packages\Package_for_KB979916~31bf3856ad364e35~amd64~~6.1.1.0.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB980232_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB980408~31bf3856ad364e35~amd64~~6.1.1.0.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB980408~31bf3856ad364e35~amd64~~6.1.1.0.mum 1906 bytes
File C:\Windows\servicing\Packages\Package_for_KB980436_RTM~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB980436_RTM~31bf3856ad364e35~amd64~~6.1.1.2.mum 3315 bytes
File C:\Windows\servicing\Packages\Package_for_KB980436~31bf3856ad364e35~amd64~~6.1.1.2.cat 7719 bytes
File C:\Windows\servicing\Packages\Package_for_KB980436~31bf3856ad364e35~amd64~~6.1.1.2.mum 2527 bytes
File C:\Windows\servicing\Packages\Package_for_KB980846_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB980846_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 2845 bytes
File C:\Windows\servicing\Packages\Package_for_KB980846~31bf3856ad364e35~amd64~~6.1.1.0.cat 7697 bytes
File C:\Windows\servicing\Packages\Package_for_KB980846~31bf3856ad364e35~amd64~~6.1.1.0.mum 2320 bytes
File C:\Windows\servicing\Packages\Package_for_KB981078_RTM~31bf3856ad364e35~amd64~~6.1.1.3.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB981078_RTM~31bf3856ad364e35~amd64~~6.1.1.3.mum 2651 bytes
File C:\Windows\servicing\Packages\Package_for_KB981078~31bf3856ad364e35~amd64~~6.1.1.3.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB981078~31bf3856ad364e35~amd64~~6.1.1.3.mum 2125 bytes
File C:\Windows\servicing\Packages\Package_for_KB981332_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7694 bytes
File C:\Windows\servicing\Packages\Package_for_KB981332_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 2127 bytes
File C:\Windows\servicing\Packages\Package_for_KB981332~31bf3856ad364e35~amd64~~6.1.1.0.cat 7697 bytes
File C:\Windows\servicing\Packages\Package_for_KB981332~31bf3856ad364e35~amd64~~6.1.1.0.mum 1864 bytes
File C:\Windows\servicing\Packages\Package_for_KB981793_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB981793_RTM~31bf3856ad364e35~amd64~~6.1.1.1.mum 68181 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB979559~31bf3856ad364e35~amd64~~6.1.1.3.mum 3752 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB979683~31bf3856ad364e35~amd64~~6.1.1.1.cat 9685 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB979683~31bf3856ad364e35~amd64~~6.1.1.1.mum 3762 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB979687~31bf3856ad364e35~amd64~~6.1.1.2.cat 52729 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB979687~31bf3856ad364e35~amd64~~6.1.1.2.mum 3131 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB980182~31bf3856ad364e35~amd64~~6.1.1.1.cat 75021 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB980182~31bf3856ad364e35~amd64~~6.1.1.1.mum 4999 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB980218~31bf3856ad364e35~amd64~~6.1.1.2.cat 12897 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB980218~31bf3856ad364e35~amd64~~6.1.1.2.mum 3740 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB980436~31bf3856ad364e35~amd64~~6.1.1.2.cat 9472 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB980436~31bf3856ad364e35~amd64~~6.1.1.2.mum 3796 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB980846~31bf3856ad364e35~amd64~~6.1.1.0.cat 30230 bytes
File C:\Windows\servicing\Packages\Package_3_for_KB980846~31bf3856ad364e35~amd64~~6.1.1.0.mum 3739 bytes
File C:\Windows\servicing\Packages\Package_for_KB979916~31bf3856ad364e35~amd64~~6.1.1.0.mum 24627 bytes
File C:\Windows\servicing\Packages\Package_for_KB980182_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7693 bytes
File C:\Windows\servicing\Packages\Package_for_KB980182_RTM~31bf3856ad364e35~amd64~~6.1.1.1.mum 3053 bytes
File C:\Windows\servicing\Packages\Package_for_KB980182~31bf3856ad364e35~amd64~~6.1.1.1.cat 7693 bytes
File C:\Windows\servicing\Packages\Package_for_KB980182~31bf3856ad364e35~amd64~~6.1.1.1.mum 2265 bytes
File C:\Windows\servicing\Packages\Package_for_KB980195_RTM~31bf3856ad364e35~amd64~~6.1.1.3.cat 7394 bytes
File C:\Windows\servicing\Packages\Package_for_KB980195_RTM~31bf3856ad364e35~amd64~~6.1.1.3.mum 1451 bytes
File C:\Windows\servicing\Packages\Package_for_KB980195~31bf3856ad364e35~amd64~~6.1.1.3.cat 7394 bytes
File C:\Windows\servicing\Packages\Package_for_KB980195~31bf3856ad364e35~amd64~~6.1.1.3.mum 1452 bytes
File C:\Windows\servicing\Packages\Package_for_KB980218_RTM~31bf3856ad364e35~amd64~~6.1.1.2.cat 7719 bytes
File C:\Windows\servicing\Packages\Package_for_KB980218_RTM~31bf3856ad364e35~amd64~~6.1.1.2.mum 3315 bytes
File C:\Windows\servicing\Packages\Package_for_KB980218~31bf3856ad364e35~amd64~~6.1.1.2.cat 7719 bytes
File C:\Windows\servicing\Packages\Package_for_KB980218~31bf3856ad364e35~amd64~~6.1.1.2.mum 2527 bytes
File C:\Windows\servicing\Packages\Package_for_KB981793~31bf3856ad364e35~amd64~~6.1.1.1.mum 40032 bytes
File C:\Windows\servicing\Packages\Package_for_KB981852_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB981852_RTM~31bf3856ad364e35~amd64~~6.1.1.1.mum 2901 bytes
File C:\Windows\servicing\Packages\Package_for_KB981852~31bf3856ad364e35~amd64~~6.1.1.1.cat 7719 bytes
File C:\Windows\servicing\Packages\Package_for_KB981852~31bf3856ad364e35~amd64~~6.1.1.1.mum 2113 bytes
File C:\Windows\servicing\Packages\Package_for_KB981957_RTM~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB981957_RTM~31bf3856ad364e35~amd64~~6.1.1.2.mum 3315 bytes
File C:\Windows\servicing\Packages\Package_for_KB981957~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB981957~31bf3856ad364e35~amd64~~6.1.1.2.mum 2527 bytes
File C:\Windows\servicing\Packages\Package_for_KB982018_RTM~31bf3856ad364e35~amd64~~6.1.3.2.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB982018_RTM~31bf3856ad364e35~amd64~~6.1.3.2.mum 61189 bytes
File C:\Windows\servicing\Packages\Package_for_KB982018_SP1~31bf3856ad364e35~amd64~~6.1.3.2.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB982018_SP1~31bf3856ad364e35~amd64~~6.1.3.2.mum 59403 bytes
File C:\Windows\servicing\Packages\Package_for_KB982018~31bf3856ad364e35~amd64~~6.1.3.2.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB982018~31bf3856ad364e35~amd64~~6.1.3.2.mum 79318 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB982664~31bf3856ad364e35~amd64~~6.1.1.0.cat 10648 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB982664~31bf3856ad364e35~amd64~~6.1.1.0.mum 2860 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB982665~31bf3856ad364e35~amd64~~6.1.1.2.cat 10068 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB982665~31bf3856ad364e35~amd64~~6.1.1.2.mum 2450 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB983590~31bf3856ad364e35~amd64~~6.1.1.0.cat 22283 bytes
File C:\Windows\servicing\Packages\Package_1_for_KB983590~31bf3856ad364e35~amd64~~6.1.1.0.mum 9692 bytes
File C:\Windows\servicing\Packages\Package_27_for_KB982018~31bf3856ad364e35~amd64~~6.1.3.2.cat 66631 bytes
File C:\Windows\servicing\Packages\Package_27_for_KB982018~31bf3856ad364e35~amd64~~6.1.3.2.mum 8437 bytes
File C:\Windows\servicing\Packages\Package_28_for_KB2492386~31bf3856ad364e35~amd64~~6.1.1.0.cat 10052 bytes
File C:\Windows\servicing\Packages\Package_28_for_KB2492386~31bf3856ad364e35~amd64~~6.1.1.0.mum 3224 bytes
File C:\Windows\servicing\Packages\Package_28_for_KB982018~31bf3856ad364e35~amd64~~6.1.3.2.cat 9472 bytes
File C:\Windows\servicing\Packages\Package_28_for_KB982018~31bf3856ad364e35~amd64~~6.1.3.2.mum 21515 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB2079403~31bf3856ad364e35~amd64~~6.1.1.0.cat 11843 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB2079403~31bf3856ad364e35~amd64~~6.1.1.0.mum 3098 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB980218~31bf3856ad364e35~amd64~~6.1.1.2.mum 3936 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB980232~31bf3856ad364e35~amd64~~6.1.1.0.cat 12962 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB980232~31bf3856ad364e35~amd64~~6.1.1.0.mum 5234 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB980408~31bf3856ad364e35~amd64~~6.1.1.0.cat 343184 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB980408~31bf3856ad364e35~amd64~~6.1.1.0.mum 4748 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB980436~31bf3856ad364e35~amd64~~6.1.1.2.cat 9472 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB980436~31bf3856ad364e35~amd64~~6.1.1.2.mum 3992 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB980846~31bf3856ad364e35~amd64~~6.1.1.0.cat 24923 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB980846~31bf3856ad364e35~amd64~~6.1.1.0.mum 3935 bytes
File C:\Windows\servicing\Packages\Package_2_for_KB981078~31bf3856ad364e35~amd64~~6.1.1.3.cat 18351 bytes
File C:\Windows\servicing\Packages\Package_for_KB971468~31bf3856ad364e35~amd64~~6.1.1.0.mum 1701 bytes
File C:\Windows\servicing\Packages\Package_for_KB972270_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7880 bytes
File C:\Windows\servicing\Packages\Package_for_KB972270_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 3117 bytes
File C:\Windows\servicing\Packages\Package_for_KB972270~31bf3856ad364e35~amd64~~6.1.1.0.cat 7880 bytes
File C:\Windows\servicing\Packages\Package_for_KB972270~31bf3856ad364e35~amd64~~6.1.1.0.mum 2329 bytes
File C:\Windows\servicing\Packages\Package_for_KB974431_RTM~31bf3856ad364e35~amd64~~6.1.1.5.cat 7880 bytes
File C:\Windows\servicing\Packages\Package_for_KB974431_RTM~31bf3856ad364e35~amd64~~6.1.1.5.mum 4026 bytes
File C:\Windows\servicing\Packages\Package_for_KB974431~31bf3856ad364e35~amd64~~6.1.1.5.cat 7880 bytes
File C:\Windows\servicing\Packages\Package_for_KB974431~31bf3856ad364e35~amd64~~6.1.1.5.mum 2714 bytes
File C:\Windows\servicing\Packages\Package_for_KB2032276~31bf3856ad364e35~amd64~~6.1.1.0.mum 1885 bytes
File C:\Windows\servicing\Packages\Package_for_KB2079403_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB2079403_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 2647 bytes
File C:\Windows\servicing\Packages\Package_for_KB2079403~31bf3856ad364e35~amd64~~6.1.1.0.cat 7719 bytes
File C:\Windows\servicing\Packages\Package_for_KB2079403~31bf3856ad364e35~amd64~~6.1.1.0.mum 2120 bytes
File C:\Windows\servicing\Packages\Package_for_KB2120976_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7397 bytes
File C:\Windows\servicing\Packages\Package_for_KB2120976_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 2860 bytes
File C:\Windows\servicing\Packages\Package_for_KB2120976~31bf3856ad364e35~amd64~~6.1.1.0.cat 7397 bytes
File C:\Windows\servicing\Packages\Package_for_KB2120976~31bf3856ad364e35~amd64~~6.1.1.0.mum 2024 bytes
File C:\Windows\servicing\Packages\Package_for_KB2158563_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB2158563_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum 86137 bytes
File C:\Windows\servicing\Packages\Package_for_KB2158563~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB2158563~31bf3856ad364e35~amd64~~6.1.1.0.mum 48162 bytes
File C:\Windows\servicing\Packages\Package_for_KB2160329_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\servicing\Packages\Package_for_KB2160329_RTM~31bf3856ad364e35~amd64~~6.1.1.0.mum

Try breaking the Gmer log over however many posts it needs.

GMER 2 of 2

File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2482017_SP1~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2482017~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2483614_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2483614~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2484033_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2536276_RTM~31bf3856ad364e35~amd64~~6.1.2.1.cat 0 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2536276_SP1~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2536276_SP1~31bf3856ad364e35~amd64~~6.1.2.1.cat 0 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2536276~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2536276~31bf3856ad364e35~amd64~~6.1.2.1.cat 0 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2539634~31bf3856ad364e35~amd64~~6.1.1.0.cat 0 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2541014_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2541014_SP1~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2541014~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2544521_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2544521_SP1~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2544521~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2544893_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2544893_SP1~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2544893~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2545698_RTM~31bf3856ad364e35~amd64~~6.1.1.3.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2545698_SP1~31bf3856ad364e35~amd64~~6.1.1.3.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_78_for_KB982018~31bf3856ad364e35~amd64~~6.1.3.2.cat 15932 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2416471~31bf3856ad364e35~amd64~~6.1.1.0.cat 8876 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2425227~31bf3856ad364e35~amd64~~6.1.1.1.cat 10648 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2454826~31bf3856ad364e35~amd64~~6.1.1.1.cat 52945 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2454826~31bf3856ad364e35~amd64~~6.1.2.0.cat 52945 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2467023~31bf3856ad364e35~amd64~~6.1.1.1.cat 10648 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2475792~31bf3856ad364e35~amd64~~6.1.1.3.cat 10648 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2476490~31bf3856ad364e35~amd64~~6.1.1.0.cat 20181 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2479628~31bf3856ad364e35~amd64~~6.1.1.4.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2482017~31bf3856ad364e35~amd64~~6.1.1.1.cat 110084 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2485376~31bf3856ad364e35~amd64~~6.1.1.2.cat 12897 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2487426~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~ja-JP~6.1.7601.17514.cat 7974 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~ko-KR~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~lt-LT~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~lv-LV~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~nb-NO~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~nl-NL~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~pl-PL~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~pt-BR~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~pt-PT~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~ro-RO~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~ru-RU~6.1.7601.17514.cat 7974 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2398632~31bf3856ad364e35~amd64~~6.1.1.0.cat 7394 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2416400_RTM~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2416400~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2416471_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2416471~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2419640_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2419640~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2423089_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2423089~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2425227_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2425227_SP1~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2425227~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB978207_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7679 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB978207~31bf3856ad364e35~amd64~~6.1.1.1.cat 7679 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB978251_RTM~31bf3856ad364e35~amd64~~6.1.1.3.cat 7694 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB978251~31bf3856ad364e35~amd64~~6.1.1.3.cat 7694 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB978262_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7404 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB978262~31bf3856ad364e35~amd64~~6.1.1.0.cat 7404 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB978542_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7697 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB978542~31bf3856ad364e35~amd64~~6.1.1.1.cat 7697 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB978601_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7679 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB978601~31bf3856ad364e35~amd64~~6.1.1.1.cat 7679 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB980436_RTM~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB980436~31bf3856ad364e35~amd64~~6.1.1.2.cat 7719 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB980846_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7694 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB980846~31bf3856ad364e35~amd64~~6.1.1.0.cat 7697 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB981078_RTM~31bf3856ad364e35~amd64~~6.1.1.3.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB981078~31bf3856ad364e35~amd64~~6.1.1.3.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB981332_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7694 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB981332~31bf3856ad364e35~amd64~~6.1.1.0.cat 7697 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB981793_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB981793~31bf3856ad364e35~amd64~~6.1.1.1.cat 7719 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2509553~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2510531_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2510531_SP1~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2510531~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2511250_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2511250_SP1~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2511250~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2511455_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2511455_SP1~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2511455~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2515325_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2515325_SP1~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2515325~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2530548_SP1~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2536276_RTM~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2545698~31bf3856ad364e35~amd64~~6.1.1.3.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2556532_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2563894~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB974431~31bf3856ad364e35~amd64~~6.1.1.5.cat 7880 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976932~31bf3856ad364e35~amd64~~6.1.1.17514.cat 7684 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~it-IT~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~sk-SK~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB977863~31bf3856ad364e35~amd64~~6.1.1.2.cat 7895 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB978637_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7679 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB2533552~31bf3856ad364e35~amd64~~6.1.1.1.cat 34277 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB2533623~31bf3856ad364e35~amd64~~6.1.1.2.cat 42832 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB2534366~31bf3856ad364e35~amd64~~6.1.1.0.cat 10532 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2160329~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2183461~31bf3856ad364e35~amd64~~6.1.1.2.cat 75047 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2207566~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2272691~31bf3856ad364e35~amd64~~6.1.1.1.cat 12423 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2284742~31bf3856ad364e35~amd64~~6.1.1.0.cat 30544 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2296011~31bf3856ad364e35~amd64~~6.1.1.0.cat 53125 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2296199~31bf3856ad364e35~amd64~~6.1.1.1.cat 12897 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2305420~31bf3856ad364e35~amd64~~6.1.1.3.cat 20008 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2360131~31bf3856ad364e35~amd64~~6.1.1.3.cat 37429 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2385678~31bf3856ad364e35~amd64~~6.1.1.0.cat 14500 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2388210~31bf3856ad364e35~amd64~~6.1.1.1.cat 12420 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2393802~31bf3856ad364e35~amd64~~6.1.1.1.cat 10532 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2492386_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2492386_SP1~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2492386~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2497640_RTM~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2497640_SP1~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2497640~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2503658_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2503658_SP1~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2503658~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2503665_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2503665_SP1~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_6_for_KB2487426~31bf3856ad364e35~amd64~~6.1.1.0.cat 8876 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_6_for_KB2506212~31bf3856ad364e35~amd64~~6.1.1.2.cat 24076 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_6_for_KB2506223~31bf3856ad364e35~amd64~~6.1.1.1.cat 8876 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_6_for_KB2507618~31bf3856ad364e35~amd64~~6.1.1.0.cat 12705 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_6_for_KB2525694~31bf3856ad364e35~amd64~~6.1.1.5.cat 8876 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_6_for_KB2534366~31bf3856ad364e35~amd64~~6.1.1.0.cat 10532 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_6_for_KB2552343~31bf3856ad364e35~amd64~~6.1.1.0.cat 16881 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_6_for_KB2555917~31bf3856ad364e35~amd64~~6.1.1.1.cat 8876 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_6_for_KB2556532~31bf3856ad364e35~amd64~~6.1.1.1.cat 10532 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_6_for_KB974431~31bf3856ad364e35~amd64~~6.1.1.5.cat 30176 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_73_for_KB2158563~31bf3856ad364e35~amd64~~6.1.1.0.cat 10071 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_73_for_KB2443685~31bf3856ad364e35~amd64~~6.1.1.0.cat 10068 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_73_for_KB979306~31bf3856ad364e35~amd64~~6.1.1.1.cat 10046 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_73_for_KB981793~31bf3856ad364e35~amd64~~6.1.1.1.cat 10068 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_74_for_KB2158563~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_74_for_KB2443685~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_74_for_KB979306~31bf3856ad364e35~amd64~~6.1.1.1.cat 9450 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB974431~31bf3856ad364e35~amd64~~6.1.1.5.cat 14324 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB974571~31bf3856ad364e35~amd64~~6.1.1.1.cat 10752 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB975467~31bf3856ad364e35~amd64~~6.1.1.0.cat 9346 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB976264~31bf3856ad364e35~amd64~~6.1.2.0.cat 12401 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB977074~31bf3856ad364e35~amd64~~6.1.1.1.cat 9651 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB978207~31bf3856ad364e35~amd64~~6.1.1.1.cat 74959 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB978542~31bf3856ad364e35~amd64~~6.1.1.1.cat 32797 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB978601~31bf3856ad364e35~amd64~~6.1.1.1.cat 12608 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB979482~31bf3856ad364e35~amd64~~6.1.1.1.cat 9453 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB979538~31bf3856ad364e35~amd64~~6.1.1.0.cat 9368 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2454826~31bf3856ad364e35~amd64~~6.1.1.1.cat 11824 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2454826~31bf3856ad364e35~amd64~~6.1.2.0.cat 11824 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2467023~31bf3856ad364e35~amd64~~6.1.1.1.cat 11228 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2479943~31bf3856ad364e35~amd64~~6.1.1.0.cat 10648 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2484033~31bf3856ad364e35~amd64~~6.1.1.0.cat 11228 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2488113~31bf3856ad364e35~amd64~~6.1.1.0.cat 10068 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2492386~31bf3856ad364e35~amd64~~6.1.1.0.cat 10052 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2503658~31bf3856ad364e35~amd64~~6.1.1.1.cat 32816 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2503665~31bf3856ad364e35~amd64~~6.1.1.0.cat 34545 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2509553~31bf3856ad364e35~amd64~~6.1.1.2.cat 20781 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2511250~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2511455~31bf3856ad364e35~amd64~~6.1.1.0.cat 14740 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2518867~31bf3856ad364e35~amd64~~6.1.1.0.cat 10036 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2522422~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2272691~31bf3856ad364e35~amd64~~6.1.1.1.cat 7719 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2281679_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2281679~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2284742_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2284742~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2286198_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2286198~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2296011_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2296011~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2296199_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2296199~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2305420_RTM~31bf3856ad364e35~amd64~~6.1.1.3.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2305420~31bf3856ad364e35~amd64~~6.1.1.3.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2506212~31bf3856ad364e35~amd64~~6.1.1.2.cat 26380 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2506223~31bf3856ad364e35~amd64~~6.1.1.1.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2507618~31bf3856ad364e35~amd64~~6.1.1.0.cat 12897 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2510531~31bf3856ad364e35~amd64~~6.1.1.0.cat 10648 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2525694~31bf3856ad364e35~amd64~~6.1.1.5.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2534366~31bf3856ad364e35~amd64~~6.1.1.0.cat 9704 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2547666~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2552343~31bf3856ad364e35~amd64~~6.1.1.0.cat 18773 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2555917~31bf3856ad364e35~amd64~~6.1.1.1.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2556532~31bf3856ad364e35~amd64~~6.1.1.1.cat 9704 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2563227~31bf3856ad364e35~amd64~~6.1.1.0.cat 0 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_80_for_KB982018~31bf3856ad364e35~amd64~~6.1.3.2.cat 15932 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB974431~31bf3856ad364e35~amd64~~6.1.1.5.cat 12869 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB974571~31bf3856ad364e35~amd64~~6.1.1.1.cat 10593 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB975467~31bf3856ad364e35~amd64~~6.1.1.0.cat 9346 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB975496~31bf3856ad364e35~amd64~~6.1.2.0.cat 10046 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB976264~31bf3856ad364e35~amd64~~6.1.2.0.cat 13510 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB976662~31bf3856ad364e35~amd64~~6.1.1.0.cat 10812 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB977074~31bf3856ad364e35~amd64~~6.1.1.1.cat 11392 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB977863~31bf3856ad364e35~amd64~~6.1.1.2.cat 21348 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB978251~31bf3856ad364e35~amd64~~6.1.1.3.cat 11191 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB978542~31bf3856ad364e35~amd64~~6.1.1.1.cat 11821 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB978601~31bf3856ad364e35~amd64~~6.1.1.1.cat 11999 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB978637~31bf3856ad364e35~amd64~~6.1.1.1.cat 11238 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB978886~31bf3856ad364e35~amd64~~6.1.1.0.cat 32768 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB979482~31bf3856ad364e35~amd64~~6.1.1.1.cat 9453 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB979538~31bf3856ad364e35~amd64~~6.1.1.0.cat 9160 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2475792_RTM~31bf3856ad364e35~amd64~~6.1.1.3.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2475792_SP1~31bf3856ad364e35~amd64~~6.1.1.3.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2475792~31bf3856ad364e35~amd64~~6.1.1.3.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2476490_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2476490_SP1~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2476490~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2478661_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2478661~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2479628_RTM~31bf3856ad364e35~amd64~~6.1.1.4.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2479628_SP1~31bf3856ad364e35~amd64~~6.1.1.4.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2416400~31bf3856ad364e35~amd64~~6.1.1.2.cat 37501 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2416471~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2419640~31bf3856ad364e35~amd64~~6.1.1.1.cat 13580 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2425227~31bf3856ad364e35~amd64~~6.1.1.1.cat 10648 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2436673~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2454826~31bf3856ad364e35~amd64~~6.1.1.1.cat 28820 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2454826~31bf3856ad364e35~amd64~~6.1.2.0.cat 28820 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2467023~31bf3856ad364e35~amd64~~6.1.1.1.cat 14788 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2475792~31bf3856ad364e35~amd64~~6.1.1.3.cat 10648 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2476490~31bf3856ad364e35~amd64~~6.1.1.0.cat 20181 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2479628~31bf3856ad364e35~amd64~~6.1.1.4.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2485376~31bf3856ad364e35~amd64~~6.1.1.2.cat 12897 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2487426~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2491683~31bf3856ad364e35~amd64~~6.1.1.1.cat 14192 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2492386~31bf3856ad364e35~amd64~~6.1.1.0.cat 12420 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB2535512~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB972270~31bf3856ad364e35~amd64~~6.1.1.0.cat 12869 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB979559~31bf3856ad364e35~amd64~~6.1.1.3.cat 8876 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_37_for_KB981793~31bf3856ad364e35~amd64~~6.1.1.1.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2398632~31bf3856ad364e35~amd64~~6.1.1.0.cat 42243 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2497640~31bf3856ad364e35~amd64~~6.1.1.2.cat 75116 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2518867~31bf3856ad364e35~amd64~~6.1.1.0.cat 24036 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB972270~31bf3856ad364e35~amd64~~6.1.1.0.cat 10812 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB979559~31bf3856ad364e35~amd64~~6.1.1.3.cat 9475 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB978637~31bf3856ad364e35~amd64~~6.1.1.1.cat 7679 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB978886_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB978886~31bf3856ad364e35~amd64~~6.1.1.0.cat 7719 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB979099_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7679 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB979099~31bf3856ad364e35~amd64~~6.1.1.0.cat 7679 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB979306_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 10367 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB979306~31bf3856ad364e35~amd64~~6.1.1.1.cat 7694 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB979309_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7694 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB979309~31bf3856ad364e35~amd64~~6.1.1.0.cat 7694 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB979482_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7694 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB979482~31bf3856ad364e35~amd64~~6.1.1.1.cat 7697 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB979538_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7404 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB979538~31bf3856ad364e35~amd64~~6.1.1.0.cat 7404 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB979559_RTM~31bf3856ad364e35~amd64~~6.1.1.3.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB979559~31bf3856ad364e35~amd64~~6.1.1.3.cat 7719 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2530548~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2532531_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2532531_SP1~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2532531~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2533552_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2533552~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2533623_RTM~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2533623_SP1~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2533623~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2534366_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2534366_SP1~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2534366~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2535512_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2535512~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2536275_RTM~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2536275_SP1~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2536275~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~ar-SA~6.1.7601.17514.cat 7974 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~bg-BG~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~cs-CZ~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~da-DK~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~de-DE~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~el-GR~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~en-US~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~es-ES~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~et-EE~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~fi-FI~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~fr-FR~6.1.7601.17514.cat 7974 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~he-IL~6.1.7601.17514.cat 7974 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~hr-HR~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB976933~31bf3856ad364e35~amd64~hu-HU~6.1.7601.17514.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB982799~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB983590_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB983590~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB979683~31bf3856ad364e35~amd64~~6.1.1.1.cat 9685 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB979687~31bf3856ad364e35~amd64~~6.1.1.2.cat 52729 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB980182~31bf3856ad364e35~amd64~~6.1.1.1.cat 75021 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB980218~31bf3856ad364e35~amd64~~6.1.1.2.cat 12897 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB980436~31bf3856ad364e35~amd64~~6.1.1.2.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB980846~31bf3856ad364e35~amd64~~6.1.1.0.cat 30230 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB981078~31bf3856ad364e35~amd64~~6.1.1.3.cat 27035 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB981852~31bf3856ad364e35~amd64~~6.1.1.1.cat 9704 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB981957~31bf3856ad364e35~amd64~~6.1.1.2.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB982018~31bf3856ad364e35~amd64~~6.1.3.2.cat 15932 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB982110~31bf3856ad364e35~amd64~~6.1.1.0.cat 20162 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_56_for_KB2492386~31bf3856ad364e35~amd64~~6.1.1.0.cat 13532 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_57_for_KB2158563~31bf3856ad364e35~amd64~~6.1.1.0.cat 9475 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_57_for_KB2443685~31bf3856ad364e35~amd64~~6.1.1.0.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_57_for_KB2492386~31bf3856ad364e35~amd64~~6.1.1.0.cat 12420 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_57_for_KB979306~31bf3856ad364e35~amd64~~6.1.1.1.cat 12123 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_57_for_KB981793~31bf3856ad364e35~amd64~~6.1.1.1.cat 9472 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_59_for_KB2492386~31bf3856ad364e35~amd64~~6.1.1.0.cat 10052 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2360131~31bf3856ad364e35~amd64~~6.1.1.3.cat 10648 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2388210~31bf3856ad364e35~amd64~~6.1.1.1.cat 10052 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_5_for_KB2416400~31bf3856ad364e35~amd64~~6.1.1.2.cat 10648 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2484033~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2485376_RTM~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2485376_SP1~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2485376~31bf3856ad364e35~amd64~~6.1.1.2.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2487426_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2487426_SP1~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2487426~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2488113_RTM~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2488113_SP1~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2488113~31bf3856ad364e35~amd64~~6.1.1.0.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2491683_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2491683_SP1~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2505438_RTM~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2505438_SP1~31bf3856ad364e35~amd64~~6.1.1.1.cat 7716 bytes
File C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2505438~31bf3856ad364e35~amd64~~6.1.1.1.cat

Please download ComboFix by sUBs from HERE or HERE

  • You must download it to and run it from your Desktop
  • Physically disconnect from the internet.
  • Now STOP all your monitoring programs (Antivirus/Antispyware, Guards and Shields) as they could easily interfere with ComboFix.
  • Double click combofix.exe & follow the prompts.
  • When finished, it will produce a log. Please save that log to post in your next reply.
  • Re-enable all the programs that were disabled during the running of ComboFix..

Note:
Do not mouse-click combofix's window while it is running. That may cause it to stall.

CF disconnects your machine from the internet. The connection is automatically restored before CF completes its run. If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine.

Run Combofix ONCE only!!

Crunchie - I followed your instructions and ran combofix - it appeared to delete two files. However, unfortunately it stalled on the 'preparing log' step and ultimately I had to exit it. So I have no log to provide. Really appreciate your help with this and hopefully my having to exit out of combofix doesn't screw up the gameplan on how to attack this thing too badly.

Take a look on the 'C' drive for a folder called 'qoobox.' Inside that folder, you may find a copy of the combofix log. If it is not there, we will try something else.

I don't see a copy of the log in that folder. I was able to see the names of the two files combofix quarantined - they are EBLib.dll.vir and TPwSav.sys.vir - not sure if that means anything, but thought I'd share. Sorry it takes so long for me to respond, but only get on this computer at night when I get home from work.

Currently, besides the windows genuine advantage notifications, every night upon shut-down computer is doing automatic installs - seems strange on a nightly basis.

Download OTL to your Desktop.

* Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
* Under the Custom Scan box paste this in:


netsvcs
%SYSTEMDRIVE%\*.exe
/md5start
eventlog.dll
scecli.dll
netlogon.dll
cngaudit.dll
sceclt.dll
ntelogon.dll
logevent.dll
iaStor.sys
nvstor.sys
atapi.sys
IdeChnDr.sys
viasraid.sys
AGP440.sys
vaxscsi.sys
nvatabus.sys
viamraid.sys
nvata.sys
nvgts.sys
iastorv.sys
ViPrt.sys
eNetHook.dll
ahcix86.sys
KR10N.sys
nvstor32.sys
/md5stop
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\System32\config\*.sav
CREATERESTOREPOINT

* Click the Quick Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.

  • When the scan completes, it will open two notepad windows: OTL.txt and Extras.txt. These are saved in the same location as OTL.
  • Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post them back here.

OTL logfile created on: 8/25/2011 7:31:27 PM - Run 1
OTL by OldTimer - Version 3.2.26.5 Folder = C:\Users\------\Desktop
64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.84 Gb Total Physical Memory | 2.62 Gb Available Physical Memory | 68.21% Memory free
7.68 Gb Paging File | 6.34 Gb Available in Paging File | 82.59% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 287.64 Gb Total Space | 246.64 Gb Free Space | 85.75% Space Free | Partition Type: NTFS

Computer Name: -------PC | User Name: ------- | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/08/25 18:46:27 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Users\Glazer\Desktop\OTL.exe
PRC - [2009/07/29 00:26:42 | 000,062,848 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\Toshiba\ConfigFree\CFSwMgr.exe
PRC - [2009/07/14 23:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\Toshiba\ConfigFree\CFProcSRVC.exe
PRC - [2009/07/13 19:24:00 | 000,304,496 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\Toshiba\ConfigFree\NDSTray.exe
PRC - [2009/07/13 02:35:58 | 000,498,160 | ---- | M] () -- C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
PRC - [2009/03/10 22:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\Toshiba\ConfigFree\CFSvcs.exe
PRC - [2009/01/14 01:33:40 | 000,034,088 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\Toshiba\Utilities\KeNotify.exe


========== Modules (No Company Name) ==========

MOD - [2011/05/26 13:42:00 | 000,067,872 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2009/07/13 02:35:58 | 000,498,160 | ---- | M] () -- C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011/07/21 16:51:31 | 000,359,248 | ---- | M] (CA, Inc.) [On_Demand | Running] -- C:\Program Files\CA\CA Internet Security Suite\ccprovsp.exe -- (CaCCProvSP)
SRV:64bit: - [2011/07/21 16:51:31 | 000,286,032 | ---- | M] (Computer Associates International, Inc.) [Auto | Running] -- C:\Program Files\CA\CA Internet Security Suite\ccschedulersvc.exe -- (ccSchedulerSVC)
SRV:64bit: - [2011/07/21 16:51:30 | 000,312,656 | ---- | M] (Computer Associates International, Inc.) [Auto | Running] -- C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus Plus\isafe.exe -- (CAISafe)
SRV:64bit: - [2011/07/21 16:51:30 | 000,291,656 | ---- | M] (CA) [Auto | Running] -- C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus Plus\CAAMSvc.exe -- (CAAMSvc)
SRV:64bit: - [2011/04/04 12:42:30 | 000,920,656 | ---- | M] (CA) [Auto | Running] -- C:\Program Files\CA\SharedComponents\TMEngine\UmxEngine.exe -- (UmxEngine)
SRV:64bit: - [2009/08/21 13:31:06 | 000,488,800 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe -- (TosCoSrv)
SRV:64bit: - [2009/08/03 22:17:56 | 000,137,560 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe -- (TOSHIBA HDD SSD Alert Service)
SRV:64bit: - [2009/07/28 19:48:06 | 000,140,632 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Windows\SysNative\TODDSrv.exe -- (TODDSrv)
SRV:64bit: - [2009/07/13 21:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/08/17 14:48:42 | 000,051,512 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Toshiba\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
SRV - [2009/08/10 23:55:58 | 000,248,688 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe -- (cfWiMAXService)
SRV - [2009/07/14 23:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe -- (ConfigFree Gadget Service)
SRV - [2009/06/10 17:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009/03/10 22:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe -- (ConfigFree Service)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2011/05/12 17:22:18 | 000,364,624 | ---- | M] (CA) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\KmxCfg.sys -- (KmxCfg)
DRV:64bit: - [2011/05/10 17:46:06 | 000,178,768 | ---- | M] (CA) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\KmxAMRT.sys -- (KmxAMRT)
DRV:64bit: - [2011/03/23 16:29:08 | 000,113,744 | ---- | M] (CA) [File_System | System | Running] -- C:\Windows\SysNative\drivers\KmxAgent.sys -- (KmxAgent)
DRV:64bit: - [2011/03/11 02:22:41 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 02:22:40 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2009/08/27 12:07:06 | 007,369,600 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009/08/20 20:04:06 | 000,446,976 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RTL8187B.sys -- (RTL8187B)
DRV:64bit: - [2009/07/31 01:02:36 | 000,044,912 | ---- | M] (COMPAL ELECTRONIC INC.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\LPCFilter.sys -- (LPCFilter)
DRV:64bit: - [2009/07/31 00:22:04 | 000,027,784 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tdcmdpst.sys -- (tdcmdpst)
DRV:64bit: - [2009/07/30 21:46:22 | 000,222,208 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:64bit: - [2009/07/24 19:57:08 | 000,482,384 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tos_sps64.sys -- (tos_sps64)
DRV:64bit: - [2009/07/20 21:48:32 | 000,274,480 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2009/07/14 19:31:18 | 000,026,840 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\TVALZ_O.SYS -- (TVALZ)
DRV:64bit: - [2009/07/13 21:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 21:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 21:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009/07/13 21:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/09 07:00:00 | 000,055,280 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2009/06/10 17:01:06 | 001,146,880 | ---- | M] (LSI Corp) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\agrsm64.sys -- (AgereSoftModem)
DRV:64bit: - [2009/06/10 16:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 16:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 16:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 16:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/06/04 22:54:36 | 000,408,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2009/05/23 02:52:30 | 000,215,040 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2009/05/18 13:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV - [2009/07/13 21:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ig/redirectdomain?brand=TSNA&bmod=TSNA

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========


FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@emusic.com/dlm-plugin: C:\Program Files (x86)\eMusic Download Manager\plugin\npemusic.dll (eMusic.com)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.18: C:\Program Files (x86)\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.18: C:\Program Files (x86)\Veetle\Player\npvlc.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@emusic.com/dlm-plugin: C:\Program Files (x86)\eMusic Download Manager\plugin\npemusic.dll (eMusic.com)

FF - HKEY_LOCAL_MACHINE\software\mozilla\eMusic Download Manager\Extensions\\Components: C:\Program Files (x86)\eMusic Download Manager\xulrunner\components [2011/07/30 22:37:05 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\eMusic Download Manager\Extensions\\Plugins: C:\Program Files (x86)\eMusic Download Manager\xulrunner\plugins [2011/07/30 22:37:05 | 000,000,000 | ---D | M]

[2010/03/22 20:23:05 | 000,000,000 | ---D | M] (eMusic - Apple iTunes Support) -- C:\PROGRAM FILES (X86)\EMUSIC DOWNLOAD MANAGER\XULRUNNER\EXTENSIONS\DLM_ITUNES@EMUSIC.COM
[2010/03/22 20:23:05 | 000,000,000 | ---D | M] (eMusic - Nullsoft Winamp Support) -- C:\PROGRAM FILES (X86)\EMUSIC DOWNLOAD MANAGER\XULRUNNER\EXTENSIONS\DLM_WINAMP@EMUSIC.COM
[2010/03/22 20:23:05 | 000,000,000 | ---D | M] (eMusic - Microsoft Media Player Support) -- C:\PROGRAM FILES (X86)\EMUSIC DOWNLOAD MANAGER\XULRUNNER\EXTENSIONS\DLM_WMP@EMUSIC.COM

O1 HOSTS File: ([2011/08/23 21:04:49 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [] File not found
O4:64bit: - HKLM..\Run: [00TCrdMain] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [cctray] C:\Program Files\CA\CA Internet Security Suite\casc.exe (CA, Inc.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [SmoothView] C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosNC] C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosReelTimeMonitor] C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosSENotify] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosVolRegulator] C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TPwrMain] C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [Desktop Disc Tool] C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe ()
O4 - HKLM..\Run: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe (TOSHIBA Electronics, Inc.)
O4 - HKLM..\Run: [KeNotify] C:\Program Files (x86)\Toshiba\Utilities\KeNotify.exe (TOSHIBA CORPORATION)
O4 - HKLM..\Run: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe (TOSHIBA CORPORATION)
O4 - HKLM..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O10:64bit: - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\windows\SysNative\VetRedir.dll (Computer Associates International, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\windows\SysNative\VetRedir.dll (Computer Associates International, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\windows\SysNative\VetRedir.dll (Computer Associates International, Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\windows\SysWow64\VetRedir.dll (Computer Associates International, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\windows\SysWow64\VetRedir.dll (Computer Associates International, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\windows\SysWow64\VetRedir.dll (Computer Associates International, Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.microsoft.com/sites/production/ieawsdc32.cab (Microsoft Office Template and Media Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14)
O16 - DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\vsharechrome {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found
O18 - Protocol\Handler\vsharechrome {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - Reg Error: Key error. File not found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\igfxcui: DllName - Reg Error: Key error. - C:\windows\SysNative\igfxdev.dll (Intel Corporation)
O20 - Winlogon\Notify\PFW: DllName - UmxWnp.Dll - C:\windows\SysWow64\UmxWNP.dll (CA)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*


CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 30 Days ==========

[2011/08/25 18:46:26 | 000,580,096 | ---- | C] (OldTimer Tools) -- C:\Users\Glazer\Desktop\OTL.exe
[2011/08/24 16:43:10 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011/08/23 22:11:28 | 000,000,000 | ---D | C] -- C:\93cecce2422f9b995ef84099
[2011/08/23 21:03:51 | 000,000,000 | ---D | C] -- C:\windows\temp
[2011/08/23 20:46:34 | 000,518,144 | ---- | C] (SteelWerX) -- C:\windows\SWREG.exe
[2011/08/23 20:46:34 | 000,406,528 | ---- | C] (SteelWerX) -- C:\windows\SWSC.exe
[2011/08/23 20:46:34 | 000,060,416 | ---- | C] (NirSoft) -- C:\windows\NIRCMD.exe
[2011/08/23 20:46:30 | 000,000,000 | ---D | C] -- C:\windows\ERDNT
[2011/08/23 20:46:29 | 000,000,000 | ---D | C] -- C:\ComboFix
[2011/08/23 20:43:40 | 000,016,712 | ---- | C] (Sysinternals - www.sysinternals.com) -- C:\windows\SysNative\drivers\PROCEXP113.SYS
[2011/08/23 20:43:38 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/08/23 20:37:35 | 004,182,515 | R--- | C] (Swearware) -- C:\Users\Glazer\Desktop\ComboFix.exe
[2011/08/21 19:08:03 | 000,607,017 | R--- | C] (Swearware) -- C:\Users\Glazer\Desktop\dds.scr
[2011/08/21 15:17:57 | 000,000,000 | ---D | C] -- C:\Users\Glazer\AppData\Roaming\Malwarebytes
[2011/08/21 15:17:51 | 000,041,272 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysWow64\drivers\mbamswissarmy.sys
[2011/08/21 15:17:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/08/21 15:17:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011/08/21 15:17:48 | 000,025,912 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbam.sys
[2011/08/21 15:17:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2011/08/13 22:19:28 | 000,000,000 | ---D | C] -- C:\windows\CheckSur
[2011/07/30 22:39:30 | 000,000,000 | ---D | C] -- C:\Users\Glazer\AppData\Local\Apple Computer
[2011/07/30 22:39:29 | 000,000,000 | ---D | C] -- C:\Users\Glazer\AppData\Roaming\Apple Computer
[2011/07/30 22:39:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2011/07/30 22:38:55 | 000,000,000 | ---D | C] -- C:\windows\SysNative\DRVSTORE
[2011/07/30 22:37:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2011/07/30 22:37:56 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2011/07/30 22:37:56 | 000,000,000 | ---D | C] -- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
[2011/07/30 22:37:55 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2011/07/30 22:36:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2011/07/30 22:36:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\QuickTime
[2011/07/30 22:36:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
[2011/07/30 22:36:14 | 000,000,000 | ---D | C] -- C:\Users\Glazer\AppData\Local\Apple
[2011/07/30 22:36:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Apple Software Update
[2011/07/30 22:35:54 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2011/07/30 22:35:41 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2011/07/30 22:35:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bonjour
[2011/07/30 22:35:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2011/07/30 22:35:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Apple
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/08/25 18:49:03 | 000,016,304 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/08/25 18:49:03 | 000,016,304 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/08/25 18:46:27 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Users\Glazer\Desktop\OTL.exe
[2011/08/25 18:41:49 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2011/08/25 18:41:47 | 3092,942,848 | -HS- | M] () -- C:\hiberfil.sys
[2011/08/25 17:54:15 | 000,072,025 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k0
[2011/08/25 17:54:15 | 000,060,436 | ---- | M] () -- C:\windows\SysNative\drivers\KmxAgent.asc
[2011/08/25 17:54:15 | 000,000,085 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k7
[2011/08/25 17:54:15 | 000,000,085 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k6
[2011/08/25 17:54:15 | 000,000,085 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k5
[2011/08/25 17:54:15 | 000,000,085 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k4
[2011/08/25 17:54:15 | 000,000,085 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k3
[2011/08/25 17:54:15 | 000,000,085 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k2
[2011/08/25 17:54:15 | 000,000,085 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k1
[2011/08/25 17:54:15 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k7
[2011/08/25 17:54:15 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k6
[2011/08/25 17:54:15 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k5
[2011/08/25 17:54:15 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k4
[2011/08/25 17:54:15 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k3
[2011/08/25 17:54:15 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k2
[2011/08/25 17:54:15 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k1
[2011/08/25 17:54:15 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k0
[2011/08/23 21:04:49 | 000,000,027 | ---- | M] () -- C:\windows\SysNative\drivers\etc\hosts
[2011/08/23 20:43:40 | 000,016,712 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\windows\SysNative\drivers\PROCEXP113.SYS
[2011/08/23 20:37:41 | 004,182,515 | R--- | M] (Swearware) -- C:\Users\Glazer\Desktop\ComboFix.exe
[2011/08/21 19:08:04 | 000,607,017 | R--- | M] (Swearware) -- C:\Users\Glazer\Desktop\dds.scr
[2011/08/21 15:33:42 | 000,302,592 | ---- | M] () -- C:\Users\Glazer\Desktop\r66siy7h.exe
[2011/08/21 15:17:52 | 000,001,124 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/08/11 08:16:28 | 000,740,374 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2011/08/11 08:16:28 | 000,624,178 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2011/08/11 08:16:28 | 000,106,522 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/08/23 20:46:34 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe
[2011/08/23 20:46:34 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe
[2011/08/23 20:46:34 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe
[2011/08/23 20:46:34 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe
[2011/08/23 20:46:34 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe
[2011/08/21 15:33:40 | 000,302,592 | ---- | C] () -- C:\Users\Glazer\Desktop\r66siy7h.exe
[2011/08/21 15:17:52 | 000,001,124 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/07/30 22:36:13 | 000,002,519 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2010/10/14 23:03:07 | 000,001,940 | ---- | C] () -- C:\Users\Glazer\AppData\Local\{96C87F53-AC72-4604-A9CC-186A49F17F3C}.ini
[2010/02/02 02:08:17 | 000,000,000 | ---- | C] () -- C:\windows\NDSTray.INI
[2009/08/27 12:05:12 | 000,982,220 | ---- | C] () -- C:\windows\SysWow64\igkrng500.bin
[2009/08/27 12:05:12 | 000,439,300 | ---- | C] () -- C:\windows\SysWow64\igcompkrng500.bin
[2009/08/27 12:05:12 | 000,134,592 | ---- | C] () -- C:\windows\SysWow64\igfcg500.bin
[2009/08/27 12:05:12 | 000,092,216 | ---- | C] () -- C:\windows\SysWow64\igfcg500m.bin
[2009/07/14 01:38:36 | 000,067,584 | --S- | C] () -- C:\windows\bootstat.dat
[2009/07/13 22:35:51 | 000,000,741 | ---- | C] () -- C:\windows\SysWow64\NOISE.DAT
[2009/07/13 22:34:42 | 000,215,943 | ---- | C] () -- C:\windows\SysWow64\dssec.dat
[2009/07/13 20:10:29 | 000,043,131 | ---- | C] () -- C:\windows\mib.bin
[2009/07/13 19:42:10 | 000,064,000 | ---- | C] () -- C:\windows\SysWow64\BWContextHandler.dll
[2009/07/13 17:03:59 | 000,364,544 | ---- | C] () -- C:\windows\SysWow64\msjetoledb40.dll
[2009/06/10 17:26:10 | 000,673,088 | ---- | C] () -- C:\windows\SysWow64\mlang.dat
[2009/04/28 08:37:00 | 000,028,672 | ---- | C] () -- C:\windows\SysWow64\SPCtl.dll

========== LOP Check ==========

[2011/02/24 10:30:57 | 000,000,000 | ---D | M] -- C:\Users\Glazer\AppData\Roaming\Catalina Marketing Corp
[2010/03/22 20:24:23 | 000,000,000 | ---D | M] -- C:\Users\Glazer\AppData\Roaming\eMusic
[2010/03/21 12:52:21 | 000,000,000 | ---D | M] -- C:\Users\Glazer\AppData\Roaming\GetRightToGo
[2010/03/20 21:52:50 | 000,000,000 | ---D | M] -- C:\Users\Glazer\AppData\Roaming\Toshiba
[2010/03/20 21:44:27 | 000,000,000 | ---D | M] -- C:\Users\Glazer\AppData\Roaming\WinBatch
[2011/05/12 19:23:01 | 000,032,568 | ---- | M] () -- C:\windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========

========== Custom Scans ==========


< %SYSTEMDRIVE%\*.exe >


< MD5 for: AGP440.SYS >
[2009/07/13 21:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\windows\SysNative\drivers\AGP440.sys
[2009/07/13 21:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_9e6bb86c3b39a3e9\AGP440.sys
[2009/07/13 21:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys
[2009/07/13 21:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys

< MD5 for: ATAPI.SYS >
[2009/07/13 21:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\ERDNT\cache64\atapi.sys
[2009/07/13 21:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\windows\SysNative\drivers\atapi.sys
[2009/07/13 21:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_a69a58a4286f0b22\atapi.sys
[2009/07/13 21:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009/07/13 21:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

< MD5 for: CNGAUDIT.DLL >
[2009/07/13 21:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll
[2009/07/13 21:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
[2009/07/13 21:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\windows\SysNative\cngaudit.dll
[2009/07/13 21:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_4458dccc49458461\cngaudit.dll

< MD5 for: IASTOR.SYS >
[2009/06/04 22:54:36 | 000,408,600 | ---- | M] (Intel Corporation) MD5=1D004CB1DA6323B1F55CAEF7F94B61D9 -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\driver64\IaStor.sys
[2009/06/04 22:54:36 | 000,408,600 | ---- | M] (Intel Corporation) MD5=1D004CB1DA6323B1F55CAEF7F94B61D9 -- C:\windows\SysNative\drivers\iaStor.sys
[2009/06/04 22:54:36 | 000,408,600 | ---- | M] (Intel Corporation) MD5=1D004CB1DA6323B1F55CAEF7F94B61D9 -- C:\windows\SysNative\DriverStore\FileRepository\iaahci.inf_amd64_neutral_7fb62b08f6b7117a\iaStor.sys
[2009/06/04 22:43:16 | 000,330,264 | ---- | M] (Intel Corporation) MD5=D483687EACE0C065EE772481A96E05F5 -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\driver\IaStor.sys

< MD5 for: IASTORV.SYS >
[2010/11/20 09:33:38 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\SoftwareDistribution\Download\488053cdbca3231eeb2c2af7236d09ed\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17514_none_0d3757e79e6784d0\iaStorV.sys
[2011/03/11 02:19:16 | 000,410,496 | ---- | M] (Intel Corporation) MD5=5B3DE7208E5000D5B451B9D290D2579C -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.21680_none_0d714416b7c182d5\iaStorV.sys
[2011/03/11 02:41:26 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17577_none_0cf9793d9e95787b\iaStorV.sys
[2011/03/11 02:23:00 | 000,410,496 | ---- | M] (Intel Corporation) MD5=B75E45C564E944A2657167D197AB29DA -- C:\windows\SysNative\drivers\iaStorV.sys
[2011/03/11 02:23:00 | 000,410,496 | ---- | M] (Intel Corporation) MD5=B75E45C564E944A2657167D197AB29DA -- C:\windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_0033117673c16921\iaStorV.sys
[2011/03/11 02:23:00 | 000,410,496 | ---- | M] (Intel Corporation) MD5=B75E45C564E944A2657167D197AB29DA -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.16778_none_0b141c81a16e25e6\iaStorV.sys
[2011/03/11 02:25:49 | 000,410,496 | ---- | M] (Intel Corporation) MD5=BFDC9D75698800CFE4D1698BF2750EA2 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.20921_none_0bccc8c8ba6985c1\iaStorV.sys
[2009/07/13 21:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_18cccb83b34e1453\iaStorV.sys
[2009/07/13 21:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.16385_none_0b06441fa1790136\iaStorV.sys

< MD5 for: NETLOGON.DLL >
[2009/07/13 21:41:52 | 000,692,736 | ---- | M] (Microsoft Corporation) MD5=956D030D375F207B22FB111E06EF9C35 -- C:\windows\SysNative\netlogon.dll
[2009/07/13 21:41:52 | 000,692,736 | ---- | M] (Microsoft Corporation) MD5=956D030D375F207B22FB111E06EF9C35 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_59aca8ea51aaeefe\netlogon.dll
[2010/11/20 09:27:22 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\SoftwareDistribution\Download\488053cdbca3231eeb2c2af7236d09ed\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_5bddbcb24e997298\netlogon.dll
[2010/11/20 08:20:28 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\SoftwareDistribution\Download\488053cdbca3231eeb2c2af7236d09ed\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_6632670482fa3493\netlogon.dll
[2009/07/13 21:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\SysWOW64\netlogon.dll
[2009/07/13 21:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_6401533c860bb0f9\netlogon.dll

< MD5 for: NVSTOR.SYS >
[2009/07/13 21:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_5bde3fe2945bce9e\nvstor.sys
[2009/07/13 21:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_95cfb4ced8afab0e\nvstor.sys
[2011/03/11 02:23:06 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=6C1D5F70E7A6A3FD1C90D840EDC048B9 -- C:\windows\SysNative\drivers\nvstor.sys
[2011/03/11 02:23:06 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=6C1D5F70E7A6A3FD1C90D840EDC048B9 -- C:\windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_38e464dbe521cc7f\nvstor.sys
[2011/03/11 02:23:06 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=6C1D5F70E7A6A3FD1C90D840EDC048B9 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16778_none_95dd8d30d8a4cfbe\nvstor.sys
[2011/03/11 02:25:53 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=AE274836BA56518E279087363A781214 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.20921_none_96963977f1a02f99\nvstor.sys
[2011/03/11 02:19:21 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=D23C7E8566DA2B8A7C0DBBB761D54888 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_983ab4c5eef82cad\nvstor.sys
[2011/03/11 02:41:34 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_97c2e9ecd5cc2253\nvstor.sys
[2010/11/20 09:33:48 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\SoftwareDistribution\Download\488053cdbca3231eeb2c2af7236d09ed\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_9800c896d59e2ea8\nvstor.sys

< MD5 for: SCECLI.DLL >
[2009/07/13 21:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\SysWOW64\scecli.dll
[2009/07/13 21:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009/07/13 21:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\windows\SysNative\scecli.dll
[2009/07/13 21:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010/11/20 08:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SoftwareDistribution\Download\488053cdbca3231eeb2c2af7236d09ed\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010/11/20 09:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SoftwareDistribution\Download\488053cdbca3231eeb2c2af7236d09ed\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\System32\config\*.sav >

< >

< End of report >

OTL Extras logfile created on: 8/25/2011 7:31:27 PM - Run 1
OTL by OldTimer - Version 3.2.26.5 Folder = C:\Users\------\Desktop
64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.84 Gb Total Physical Memory | 2.62 Gb Available Physical Memory | 68.21% Memory free
7.68 Gb Paging File | 6.34 Gb Available in Paging File | 82.59% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 287.64 Gb Total Space | 246.64 Gb Free Space | 85.75% Space Free | Partition Type: NTFS

Computer Name: -PC | User Name: | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl[@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %* File not found
cmdfile [open] -- "%1" %* File not found
comfile [open] -- "%1" %* File not found
cplfile [cplopen] -- %SystemRoot%\SysWow64\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %* File not found
helpfile [open] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %* File not found
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1" File not found
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l File not found
scrfile [open] -- "%1" /S File not found
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\SysWow64\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\SysWow64\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\SysWow64\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

========== Firewall Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP470_series" = Canon MP470 series
"{38151262-FAF8-4778-9AAB-33E90B60D8E9}" = CA Anti-Virus Plus
"{439760BC-7737-4386-9B1D-A90A3E8A22EA}" = Apple Mobile Device Support
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{5BCC94A1-DEF1-4AB4-8046-BC13048E929A}" = TOSHIBA ReelTime
"{5DA0E02F-970B-424B-BF41-513A5018E4C0}" = TOSHIBA Disc Creator
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2007
"{90120000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B613A9BB-2B34-4824-A4BE-2427653D59D6}" = iTunes
"{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}" = TOSHIBA Recovery Media Creator
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64
"{CA0D2F09-F811-48D4-843E-C87696C6A9D9}" = Bonjour
"{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = TOSHIBA HDD/SSD Alert
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{F64684A0-754B-4637-B7F9-6E8DAA8CD5CD}" = TOSHIBA Bulletin Board
"{FBBC4667-2521-4E78-B1BD-8706F774549B}" = Best Buy Software Installer
"eTrust Suite Personal" = CA Internet Security Suite
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"SynTPDeinstKey" = Synaptics Pointing Device Driver

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{008D69EB-70FF-46AB-9C75-924620DF191A}" = TOSHIBA Speech System SR Engine(U.S.) Version1.0
"{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"{0FB630AB-7BD8-40AE-B223-60397D57C3C9}" = Realtek WLAN Driver
"{12688FD7-CB92-4A5B-BEE4-5C8E0574434F}" = Utility Common Driver
"{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}" = Microsoft Works
"{178832DE-9DE0-4C87-9F82-9315A9B03985}" = Windows Live Writer
"{1B87C40B-A60B-4EF3-9A68-706CF4B69978}" = TOSHIBA Assist
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216014FF}" = Java(TM) 6 Update 14
"{30465B6C-B53F-49A1-9EBA-A3F187AD502E}" = Roxio Update Manager
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform
"{3D5044A5-97B8-45C0-B956-BB2376569188}" = Windows Live Movie Maker
"{3FBF6F99-8EC6-41B4-8527-0A32241B5496}" = TOSHIBA Speech System TTS Engine(U.S.) Version1.0
"{45338B07-A236-4270-9A77-EBB4115517B5}" = Windows Live Sign-in Assistant
"{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE}" = TOSHIBA Supervisor Password
"{5279374D-87FE-4879-9385-F17278EBB9D3}" = TOSHIBA Hardware Setup
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{5AF550B4-BB67-4E7E-82F1-2C4300279050}" = ToshibaRegistration
"{620BBA5E-F848-4D56-8BDA-584E44584C5E}" = TOSHIBA Flash Cards Support Utility
"{6412CECE-8172-4BE5-935B-6CECACD2CA87}" = Windows Live Mail
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3
"{6C5F3BDC-0A1B-4436-A696-5939629D5C31}" = TOSHIBA DVD PLAYER
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}" = Windows Live Essentials
"{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}" = Windows Live Sync
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8136 8168 8169 Ethernet Driver
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{E64BA721-2310-4B55-BE5A-2925F9706192}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002A-0409-1000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0116-0409-1000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English)
"{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader
"{970472D0-F5F9-4158-A6E3-1AE49EFEF2D3}" = TOSHIBA Application Installer
"{983CD6FE-8320-4B80-A8F6-0D0366E0AA22}" = TOSHIBA Media Controller
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A33E7B0C-B99C-4EC9-B702-8A328B161AF9}" = Roxio Roxio Burn
"{A85FD55B-891B-4314-97A5-EA96C0BD80B5}" = Windows Live Messenger
"{AC6569FA-6919-442A-8552-073BE69E247A}" = TOSHIBA Service Station
"{AC76BA86-7AD7-1033-7B44-A94000000001}" = Adobe Reader 9.4.5
"{AC76BA86-7AD7-5670-0000-900000000003}" = Korean Fonts Support For Adobe Reader 9
"{B2E47DE7-800B-40BB-BD1F-9F221C3AEE87}" = Roxio Burn
"{B3575D00-27EF-49C2-B9E0-14B3D954E992}" = Apple Application Support
"{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = TOSHIBA HDD/SSD Alert
"{D6C75F0B-3BC1-4FC9-B8C5-3F7E8ED059CA}" = Windows Live Photo Gallery
"{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update
"{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant
"{E69992ED-A7F6-406C-9280-1C156417BC49}" = TOSHIBA Quality Application
"{EE033C1F-443E-41EC-A0E2-559B539A4E4D}" = TOSHIBA Speech System Applications
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F3529665-D75E-4D6D-98F0-745C78C68E9B}" = TOSHIBA ConfigFree
"{F6BD194C-4190-4D73-B1B1-C48C99921BFE}" = Windows Live Call
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"AudibleManager" = AudibleManager
"Best Buy Software Installer" = Best Buy Software Installer
"Coupon Printer for Windows5.0.0.1" = Coupon Printer for Windows
"eMusic Download Manager" = eMusic Download Manager 4.1.4
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"InstallShield_{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE}" = TOSHIBA Supervisor Password
"InstallShield_{5279374D-87FE-4879-9385-F17278EBB9D3}" = TOSHIBA Hardware Setup
"InstallShield_{5BCC94A1-DEF1-4AB4-8046-BC13048E929A}" = TOSHIBA ReelTime
"InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center
"InstallShield_{620BBA5E-F848-4D56-8BDA-584E44584C5E}" = TOSHIBA Flash Cards Support Utility
"InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = TOSHIBA HDD/SSD Alert
"InstallShield_{F64684A0-754B-4637-B7F9-6E8DAA8CD5CD}" = TOSHIBA Bulletin Board
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware version 1.51.1.1800
"Veetle TV" = Veetle TV 0.9.18
"vShare" = vShare Plugin
"WinLiveSuite_Wave3" = Windows Live Essentials

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 8/25/2011 7:59:54 PM | Computer Name = Glazer-PC | Source = Microsoft-Windows-CAPI2 | ID = 257
Description = The Cryptographic Services service failed to initialize the Catalog
Database. The ESENT error was: -528.

Error - 8/25/2011 7:59:54 PM | Computer Name = Glazer-PC | Source = Microsoft-Windows-CAPI2 | ID = 257
Description = The Cryptographic Services service failed to initialize the Catalog
Database. The ESENT error was: -528.

Error - 8/25/2011 8:00:06 PM | Computer Name = Glazer-PC | Source = ESENT | ID = 455
Description = Catalog Database (576) Catalog Database: Error -1811 (0xfffff8ed)
occurred while opening logfile C:\windows\system32\CatRoot2\edb.log.

Error - 8/25/2011 8:00:06 PM | Computer Name = Glazer-PC | Source = ESENT | ID = 455
Description = Catalog Database (576) Catalog Database: Error -1811 (0xfffff8ed)
occurred while opening logfile C:\windows\system32\CatRoot2\edb.log.

Error - 8/25/2011 8:00:06 PM | Computer Name = Glazer-PC | Source = ESENT | ID = 455
Description = Catalog Database (576) Catalog Database: Error -1811 (0xfffff8ed)
occurred while opening logfile C:\windows\system32\CatRoot2\edb.log.

Error - 8/25/2011 8:00:06 PM | Computer Name = Glazer-PC | Source = ESENT | ID = 455
Description = Catalog Database (576) Catalog Database: Error -1811 (0xfffff8ed)
occurred while opening logfile C:\windows\system32\CatRoot2\edb.log.

Error - 8/25/2011 8:00:06 PM | Computer Name = Glazer-PC | Source = Microsoft-Windows-CAPI2 | ID = 257
Description = The Cryptographic Services service failed to initialize the Catalog
Database. The ESENT error was: -528.

Error - 8/25/2011 8:00:06 PM | Computer Name = Glazer-PC | Source = Microsoft-Windows-CAPI2 | ID = 257
Description = The Cryptographic Services service failed to initialize the Catalog
Database. The ESENT error was: -528.

Error - 8/25/2011 8:00:06 PM | Computer Name = Glazer-PC | Source = Microsoft-Windows-CAPI2 | ID = 257
Description = The Cryptographic Services service failed to initialize the Catalog
Database. The ESENT error was: -528.

Error - 8/25/2011 8:00:06 PM | Computer Name = Glazer-PC | Source = Microsoft-Windows-CAPI2 | ID = 257
Description = The Cryptographic Services service failed to initialize the Catalog
Database. The ESENT error was: -528.

[ Media Center Events ]
Error - 7/22/2011 4:51:48 PM | Computer Name = Glazer-PC | Source = MCUpdate | ID = 0
Description = 4:51:48 PM - Error connecting to the internet. 4:51:48 PM - Unable
to contact server..

Error - 7/22/2011 4:51:56 PM | Computer Name = Glazer-PC | Source = MCUpdate | ID = 0
Description = 4:51:54 PM - Error connecting to the internet. 4:51:54 PM - Unable
to contact server..

Error - 7/22/2011 8:20:26 PM | Computer Name = Glazer-PC | Source = MCUpdate | ID = 0
Description = 8:20:26 PM - Error connecting to the internet. 8:20:26 PM - Unable
to contact server..

Error - 7/22/2011 8:20:32 PM | Computer Name = Glazer-PC | Source = MCUpdate | ID = 0
Description = 8:20:31 PM - Error connecting to the internet. 8:20:31 PM - Unable
to contact server..

[ System Events ]
Error - 8/25/2011 7:59:53 PM | Computer Name = Glazer-PC | Source = Ntfs | ID = 262199
Description = The file system structure on the disk is corrupt and unusable. Please
run the chkdsk utility on the volume C:.

Error - 8/25/2011 7:59:53 PM | Computer Name = Glazer-PC | Source = Ntfs | ID = 262199
Description = The file system structure on the disk is corrupt and unusable. Please
run the chkdsk utility on the volume C:.

Error - 8/25/2011 7:59:53 PM | Computer Name = Glazer-PC | Source = Ntfs | ID = 262199
Description = The file system structure on the disk is corrupt and unusable. Please
run the chkdsk utility on the volume TI105756W0B.

Error - 8/25/2011 7:59:53 PM | Computer Name = Glazer-PC | Source = Ntfs | ID = 262199
Description = The file system structure on the disk is corrupt and unusable. Please
run the chkdsk utility on the volume C:.

Error - 8/25/2011 7:59:54 PM | Computer Name = Glazer-PC | Source = Ntfs | ID = 262199
Description = The file system structure on the disk is corrupt and unusable. Please
run the chkdsk utility on the volume C:.

Error - 8/25/2011 7:59:54 PM | Computer Name = Glazer-PC | Source = Ntfs | ID = 262199
Description = The file system structure on the disk is corrupt and unusable. Please
run the chkdsk utility on the volume TI105756W0B.

Error - 8/25/2011 8:00:06 PM | Computer Name = Glazer-PC | Source = Ntfs | ID = 262199
Description = The file system structure on the disk is corrupt and unusable. Please
run the chkdsk utility on the volume C:.

Error - 8/25/2011 8:00:06 PM | Computer Name = Glazer-PC | Source = Ntfs | ID = 262199
Description = The file system structure on the disk is corrupt and unusable. Please
run the chkdsk utility on the volume TI105756W0B.

Error - 8/25/2011 8:01:49 PM | Computer Name = Glazer-PC | Source = Ntfs | ID = 262199
Description = The file system structure on the disk is corrupt and unusable. Please
run the chkdsk utility on the volume C:.

Error - 8/25/2011 8:01:49 PM | Computer Name = Glazer-PC | Source = Ntfs | ID = 262199
Description = The file system structure on the disk is corrupt and unusable. Please
run the chkdsk utility on the volume C:.


< End of report >

Run OTL

  • Under the Custom Scans/Fixes box at the bottom, paste in the following
    :OTL
    FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
    FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
    O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O4:64bit: - HKLM..\Run: [] File not found
    O13 - gopher Prefix: missing
    O18:64bit: - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
    O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
    O18:64bit: - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
    O18:64bit: - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
    O18:64bit: - Protocol\Handler\vsharechrome {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - Reg Error: Key error. File not found
    O18:64bit: - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found
    O18 - Protocol\Handler\vsharechrome {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - Reg Error: Key error. File not found
    O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
    O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
    :Commands
    [purity]
    [emptyflash]
    [emptytemp]
    [resethosts]
    [Reboot]
  • Then click the Run Fix button at the top.
  • Let the program run unhindered, reboot the PC when it is done.
  • Post log from this run.
  • Open OTL again and click the Quick Scan button. Post the log it produces in your next reply.

Fix Log:

All processes killed
========== OTL ==========
64bit-Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@Apple.com/iTunes,version=\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes\\gopher|:gopher:// /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\livecall\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{828030A1-22C1-4009-854F-8E305202313F}\ not found.
File {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ms-help\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{314111c7-a502-11d2-bbca-00c04f8ec294}\ not found.
File {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ms-itss\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A9007C0-4076-11D3-8789-0000F8105754}\ not found.
File {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\msnim\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{828030A1-22C1-4009-854F-8E305202313F}\ not found.
File {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\vsharechrome\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484}\ not found.
File {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - Reg Error: Key error. File not found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\wlmailhtml\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03C514A3-1EFB-4856-9F99-10D7BE1653C0}\ not found.
File {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\vsharechrome\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484}\ not found.
File {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - Reg Error: Key error. File not found not found.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet:/pagefile deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet:/pagefile deleted successfully.
========== COMMANDS ==========

[EMPTYFLASH]

User: All Users

User: Beth
->Flash cache emptied: 176916 bytes

User: Default

User: Default User

User: Glazer
->Flash cache emptied: 283150 bytes

User: Public

Total Flash Files Cleaned = 0.00 mb


[EMPTYTEMP]

User: All Users

User: Beth
->Temp folder emptied: 965784 bytes
->Temporary Internet Files folder emptied: 319117318 bytes
->Java cache emptied: 28507685 bytes
->Flash cache emptied: 0 bytes

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Glazer
->Temp folder emptied: 499476 bytes
->Temporary Internet Files folder emptied: 216979141 bytes
->Java cache emptied: 10179227 bytes
->Flash cache emptied: 0 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 14458 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50333 bytes
RecycleBin emptied: 291 bytes

Total Files Cleaned = 550.00 mb

C:\windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

OTL by OldTimer - Version 3.2.26.5 log created on 08272011_093304

Files\Folders moved on Reboot...
C:\Users\Beth\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\Beth\AppData\Local\Temp\~DF8E09CCC0535917B9.TMP moved successfully.
C:\Users\Glazer\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\Glazer\AppData\Local\Temp\~DF3F1B6526A932C0BA.TMP moved successfully.

Registry entries deleted on Reboot...

Quick Scan Log:

OTL logfile created on: 8/27/2011 10:09:34 AM - Run 2
OTL by OldTimer - Version 3.2.26.5 Folder = C:\Users\Glazer\Desktop
64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.84 Gb Total Physical Memory | 2.65 Gb Available Physical Memory | 69.04% Memory free
7.68 Gb Paging File | 6.38 Gb Available in Paging File | 83.03% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 287.64 Gb Total Space | 246.47 Gb Free Space | 85.69% Space Free | Partition Type: NTFS

Computer Name: GLAZER-PC | User Name: Glazer | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/08/25 18:46:27 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Users\Glazer\Desktop\OTL.exe
PRC - [2009/07/29 00:26:42 | 000,062,848 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\Toshiba\ConfigFree\CFSwMgr.exe
PRC - [2009/07/14 23:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\Toshiba\ConfigFree\CFProcSRVC.exe
PRC - [2009/07/13 19:24:00 | 000,304,496 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\Toshiba\ConfigFree\NDSTray.exe
PRC - [2009/07/13 02:35:58 | 000,498,160 | ---- | M] () -- C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
PRC - [2009/03/10 22:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\Toshiba\ConfigFree\CFSvcs.exe
PRC - [2009/01/14 01:33:40 | 000,034,088 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\Toshiba\Utilities\KeNotify.exe


========== Modules (No Company Name) ==========

MOD - [2011/05/26 13:42:00 | 000,067,872 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2009/07/13 02:35:58 | 000,498,160 | ---- | M] () -- C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011/07/21 16:51:31 | 000,359,248 | ---- | M] (CA, Inc.) [On_Demand | Running] -- C:\Program Files\CA\CA Internet Security Suite\ccprovsp.exe -- (CaCCProvSP)
SRV:64bit: - [2011/07/21 16:51:31 | 000,286,032 | ---- | M] (Computer Associates International, Inc.) [Auto | Running] -- C:\Program Files\CA\CA Internet Security Suite\ccschedulersvc.exe -- (ccSchedulerSVC)
SRV:64bit: - [2011/07/21 16:51:30 | 000,312,656 | ---- | M] (Computer Associates International, Inc.) [Auto | Running] -- C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus Plus\isafe.exe -- (CAISafe)
SRV:64bit: - [2011/07/21 16:51:30 | 000,291,656 | ---- | M] (CA) [Auto | Running] -- C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus Plus\CAAMSvc.exe -- (CAAMSvc)
SRV:64bit: - [2011/04/04 12:42:30 | 000,920,656 | ---- | M] (CA) [Auto | Running] -- C:\Program Files\CA\SharedComponents\TMEngine\UmxEngine.exe -- (UmxEngine)
SRV:64bit: - [2009/08/21 13:31:06 | 000,488,800 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe -- (TosCoSrv)
SRV:64bit: - [2009/08/03 22:17:56 | 000,137,560 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe -- (TOSHIBA HDD SSD Alert Service)
SRV:64bit: - [2009/07/28 19:48:06 | 000,140,632 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Windows\SysNative\TODDSrv.exe -- (TODDSrv)
SRV:64bit: - [2009/07/13 21:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/08/17 14:48:42 | 000,051,512 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Toshiba\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
SRV - [2009/08/10 23:55:58 | 000,248,688 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe -- (cfWiMAXService)
SRV - [2009/07/14 23:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe -- (ConfigFree Gadget Service)
SRV - [2009/06/10 17:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009/03/10 22:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe -- (ConfigFree Service)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2011/05/12 17:22:18 | 000,364,624 | ---- | M] (CA) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\KmxCfg.sys -- (KmxCfg)
DRV:64bit: - [2011/05/10 17:46:06 | 000,178,768 | ---- | M] (CA) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\KmxAMRT.sys -- (KmxAMRT)
DRV:64bit: - [2011/03/23 16:29:08 | 000,113,744 | ---- | M] (CA) [File_System | System | Running] -- C:\Windows\SysNative\drivers\KmxAgent.sys -- (KmxAgent)
DRV:64bit: - [2011/03/11 02:22:41 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 02:22:40 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2009/08/27 12:07:06 | 007,369,600 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009/08/20 20:04:06 | 000,446,976 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RTL8187B.sys -- (RTL8187B)
DRV:64bit: - [2009/07/31 01:02:36 | 000,044,912 | ---- | M] (COMPAL ELECTRONIC INC.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\LPCFilter.sys -- (LPCFilter)
DRV:64bit: - [2009/07/31 00:22:04 | 000,027,784 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tdcmdpst.sys -- (tdcmdpst)
DRV:64bit: - [2009/07/30 21:46:22 | 000,222,208 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:64bit: - [2009/07/24 19:57:08 | 000,482,384 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tos_sps64.sys -- (tos_sps64)
DRV:64bit: - [2009/07/20 21:48:32 | 000,274,480 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2009/07/14 19:31:18 | 000,026,840 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\TVALZ_O.SYS -- (TVALZ)
DRV:64bit: - [2009/07/13 21:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 21:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 21:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009/07/13 21:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/09 07:00:00 | 000,055,280 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2009/06/10 17:01:06 | 001,146,880 | ---- | M] (LSI Corp) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\agrsm64.sys -- (AgereSoftModem)
DRV:64bit: - [2009/06/10 16:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 16:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 16:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 16:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/06/04 22:54:36 | 000,408,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2009/05/23 02:52:30 | 000,215,040 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2009/05/18 13:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV - [2009/07/13 21:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ig/redirectdomain?brand=TSNA&bmod=TSNA

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========


FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@emusic.com/dlm-plugin: C:\Program Files (x86)\eMusic Download Manager\plugin\npemusic.dll (eMusic.com)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.18: C:\Program Files (x86)\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.18: C:\Program Files (x86)\Veetle\Player\npvlc.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@emusic.com/dlm-plugin: C:\Program Files (x86)\eMusic Download Manager\plugin\npemusic.dll (eMusic.com)

FF - HKEY_LOCAL_MACHINE\software\mozilla\eMusic Download Manager\Extensions\\Components: C:\Program Files (x86)\eMusic Download Manager\xulrunner\components [2011/07/30 22:37:05 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\eMusic Download Manager\Extensions\\Plugins: C:\Program Files (x86)\eMusic Download Manager\xulrunner\plugins [2011/07/30 22:37:05 | 000,000,000 | ---D | M]

[2010/03/22 20:23:05 | 000,000,000 | ---D | M] (eMusic - Apple iTunes Support) -- C:\PROGRAM FILES (X86)\EMUSIC DOWNLOAD MANAGER\XULRUNNER\EXTENSIONS\DLM_ITUNES@EMUSIC.COM
[2010/03/22 20:23:05 | 000,000,000 | ---D | M] (eMusic - Nullsoft Winamp Support) -- C:\PROGRAM FILES (X86)\EMUSIC DOWNLOAD MANAGER\XULRUNNER\EXTENSIONS\DLM_WINAMP@EMUSIC.COM
[2010/03/22 20:23:05 | 000,000,000 | ---D | M] (eMusic - Microsoft Media Player Support) -- C:\PROGRAM FILES (X86)\EMUSIC DOWNLOAD MANAGER\XULRUNNER\EXTENSIONS\DLM_WMP@EMUSIC.COM

O1 HOSTS File: ([2011/08/27 09:49:22 | 000,000,098 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O4:64bit: - HKLM..\Run: [00TCrdMain] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [cctray] C:\Program Files\CA\CA Internet Security Suite\casc.exe (CA, Inc.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [SmoothView] C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosNC] C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosReelTimeMonitor] C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosSENotify] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TosVolRegulator] C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [TPwrMain] C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [Desktop Disc Tool] C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe ()
O4 - HKLM..\Run: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe (TOSHIBA Electronics, Inc.)
O4 - HKLM..\Run: [KeNotify] C:\Program Files (x86)\Toshiba\Utilities\KeNotify.exe (TOSHIBA CORPORATION)
O4 - HKLM..\Run: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe (TOSHIBA CORPORATION)
O4 - HKLM..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O10:64bit: - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\windows\SysNative\VetRedir.dll (Computer Associates International, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\windows\SysNative\VetRedir.dll (Computer Associates International, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\windows\SysNative\VetRedir.dll (Computer Associates International, Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\windows\SysWow64\VetRedir.dll (Computer Associates International, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\windows\SysWow64\VetRedir.dll (Computer Associates International, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\windows\SysWow64\VetRedir.dll (Computer Associates International, Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.microsoft.com/sites/production/ieawsdc32.cab (Microsoft Office Template and Media Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14)
O16 - DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (systempropertiesperformance.exe) - C:\windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - Reg Error: Key error. - C:\windows\SysNative\igfxdev.dll (Intel Corporation)
O20 - Winlogon\Notify\PFW: DllName - UmxWnp.Dll - C:\windows\SysWow64\UmxWNP.dll (CA)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/08/27 09:33:04 | 000,000,000 | ---D | C] -- C:\_OTL
[2011/08/25 18:46:26 | 000,580,096 | ---- | C] (OldTimer Tools) -- C:\Users\Glazer\Desktop\OTL.exe
[2011/08/24 16:43:10 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011/08/23 22:11:28 | 000,000,000 | ---D | C] -- C:\93cecce2422f9b995ef84099
[2011/08/23 21:03:51 | 000,000,000 | ---D | C] -- C:\windows\temp
[2011/08/23 20:46:34 | 000,518,144 | ---- | C] (SteelWerX) -- C:\windows\SWREG.exe
[2011/08/23 20:46:34 | 000,406,528 | ---- | C] (SteelWerX) -- C:\windows\SWSC.exe
[2011/08/23 20:46:34 | 000,060,416 | ---- | C] (NirSoft) -- C:\windows\NIRCMD.exe
[2011/08/23 20:46:30 | 000,000,000 | ---D | C] -- C:\windows\ERDNT
[2011/08/23 20:46:29 | 000,000,000 | ---D | C] -- C:\ComboFix
[2011/08/23 20:43:40 | 000,016,712 | ---- | C] (Sysinternals - www.sysinternals.com) -- C:\windows\SysNative\drivers\PROCEXP113.SYS
[2011/08/23 20:43:38 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/08/23 20:37:35 | 004,182,515 | R--- | C] (Swearware) -- C:\Users\Glazer\Desktop\ComboFix.exe
[2011/08/21 19:08:03 | 000,607,017 | R--- | C] (Swearware) -- C:\Users\Glazer\Desktop\dds.scr
[2011/08/21 15:17:57 | 000,000,000 | ---D | C] -- C:\Users\Glazer\AppData\Roaming\Malwarebytes
[2011/08/21 15:17:51 | 000,041,272 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysWow64\drivers\mbamswissarmy.sys
[2011/08/21 15:17:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/08/21 15:17:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011/08/21 15:17:48 | 000,025,912 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbam.sys
[2011/08/21 15:17:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2011/08/13 22:19:28 | 000,000,000 | ---D | C] -- C:\windows\CheckSur
[2011/07/30 22:39:30 | 000,000,000 | ---D | C] -- C:\Users\Glazer\AppData\Local\Apple Computer
[2011/07/30 22:39:29 | 000,000,000 | ---D | C] -- C:\Users\Glazer\AppData\Roaming\Apple Computer
[2011/07/30 22:39:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2011/07/30 22:38:55 | 000,000,000 | ---D | C] -- C:\windows\SysNative\DRVSTORE
[2011/07/30 22:37:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2011/07/30 22:37:56 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2011/07/30 22:37:56 | 000,000,000 | ---D | C] -- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
[2011/07/30 22:37:55 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2011/07/30 22:36:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2011/07/30 22:36:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\QuickTime
[2011/07/30 22:36:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
[2011/07/30 22:36:14 | 000,000,000 | ---D | C] -- C:\Users\Glazer\AppData\Local\Apple
[2011/07/30 22:36:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Apple Software Update
[2011/07/30 22:35:54 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2011/07/30 22:35:41 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2011/07/30 22:35:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bonjour
[2011/07/30 22:35:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2011/07/30 22:35:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Apple

========== Files - Modified Within 30 Days ==========

[2011/08/27 10:10:12 | 000,016,304 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/08/27 10:10:12 | 000,016,304 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/08/27 10:02:53 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2011/08/27 10:02:51 | 3092,942,848 | -HS- | M] () -- C:\hiberfil.sys
[2011/08/27 10:01:39 | 000,072,025 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k0
[2011/08/27 10:01:39 | 000,060,492 | ---- | M] () -- C:\windows\SysNative\drivers\KmxAgent.asc
[2011/08/27 10:01:39 | 000,000,085 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k7
[2011/08/27 10:01:39 | 000,000,085 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k6
[2011/08/27 10:01:39 | 000,000,085 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k5
[2011/08/27 10:01:39 | 000,000,085 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k4
[2011/08/27 10:01:39 | 000,000,085 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k3
[2011/08/27 10:01:39 | 000,000,085 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k2
[2011/08/27 10:01:39 | 000,000,085 | ---- | M] () -- C:\windows\SysNative\drivers\kmxcfg.u2k1
[2011/08/27 10:01:39 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k7
[2011/08/27 10:01:39 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k6
[2011/08/27 10:01:39 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k5
[2011/08/27 10:01:39 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k4
[2011/08/27 10:01:39 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k3
[2011/08/27 10:01:39 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k2
[2011/08/27 10:01:39 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k1
[2011/08/27 10:01:39 | 000,000,049 | ---- | M] () -- C:\windows\SysNative\drivers\kmxzone.u2k0
[2011/08/27 09:49:22 | 000,000,098 | ---- | M] () -- C:\windows\SysNative\drivers\etc\Hosts
[2011/08/25 18:46:27 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Users\Glazer\Desktop\OTL.exe
[2011/08/23 20:43:40 | 000,016,712 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\windows\SysNative\drivers\PROCEXP113.SYS
[2011/08/23 20:37:41 | 004,182,515 | R--- | M] (Swearware) -- C:\Users\Glazer\Desktop\ComboFix.exe
[2011/08/21 19:08:04 | 000,607,017 | R--- | M] (Swearware) -- C:\Users\Glazer\Desktop\dds.scr
[2011/08/21 15:33:42 | 000,302,592 | ---- | M] () -- C:\Users\Glazer\Desktop\r66siy7h.exe
[2011/08/21 15:17:52 | 000,001,124 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/08/11 08:16:28 | 000,740,374 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2011/08/11 08:16:28 | 000,624,178 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2011/08/11 08:16:28 | 000,106,522 | ---- | M] () -- C:\windows\SysNative\perfc009.dat

========== Files Created - No Company Name ==========

[2011/08/23 20:46:34 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe
[2011/08/23 20:46:34 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe
[2011/08/23 20:46:34 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe
[2011/08/23 20:46:34 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe
[2011/08/23 20:46:34 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe
[2011/08/21 15:33:40 | 000,302,592 | ---- | C] () -- C:\Users\Glazer\Desktop\r66siy7h.exe
[2011/08/21 15:17:52 | 000,001,124 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/07/30 22:36:13 | 000,002,519 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2010/10/14 23:03:07 | 000,001,940 | ---- | C] () -- C:\Users\Glazer\AppData\Local\{96C87F53-AC72-4604-A9CC-186A49F17F3C}.ini
[2010/02/02 02:08:17 | 000,000,000 | ---- | C] () -- C:\windows\NDSTray.INI
[2009/08/27 12:05:12 | 000,982,220 | ---- | C] () -- C:\windows\SysWow64\igkrng500.bin
[2009/08/27 12:05:12 | 000,439,300 | ---- | C] () -- C:\windows\SysWow64\igcompkrng500.bin
[2009/08/27 12:05:12 | 000,134,592 | ---- | C] () -- C:\windows\SysWow64\igfcg500.bin
[2009/08/27 12:05:12 | 000,092,216 | ---- | C] () -- C:\windows\SysWow64\igfcg500m.bin
[2009/07/14 01:38:36 | 000,067,584 | --S- | C] () -- C:\windows\bootstat.dat
[2009/07/13 22:35:51 | 000,000,741 | ---- | C] () -- C:\windows\SysWow64\NOISE.DAT
[2009/07/13 22:34:42 | 000,215,943 | ---- | C] () -- C:\windows\SysWow64\dssec.dat
[2009/07/13 20:10:29 | 000,043,131 | ---- | C] () -- C:\windows\mib.bin
[2009/07/13 19:42:10 | 000,064,000 | ---- | C] () -- C:\windows\SysWow64\BWContextHandler.dll
[2009/07/13 17:03:59 | 000,364,544 | ---- | C] () -- C:\windows\SysWow64\msjetoledb40.dll
[2009/06/10 17:26:10 | 000,673,088 | ---- | C] () -- C:\windows\SysWow64\mlang.dat
[2009/04/28 08:37:00 | 000,028,672 | ---- | C] () -- C:\windows\SysWow64\SPCtl.dll

========== LOP Check ==========

[2011/02/24 10:30:57 | 000,000,000 | ---D | M] -- C:\Users\Glazer\AppData\Roaming\Catalina Marketing Corp
[2010/03/22 20:24:23 | 000,000,000 | ---D | M] -- C:\Users\Glazer\AppData\Roaming\eMusic
[2010/03/21 12:52:21 | 000,000,000 | ---D | M] -- C:\Users\Glazer\AppData\Roaming\GetRightToGo
[2010/03/20 21:52:50 | 000,000,000 | ---D | M] -- C:\Users\Glazer\AppData\Roaming\Toshiba
[2010/03/20 21:44:27 | 000,000,000 | ---D | M] -- C:\Users\Glazer\AppData\Roaming\WinBatch
[2011/05/12 19:23:01 | 000,032,568 | ---- | M] () -- C:\windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========

< End of report >

Please download JavaRa to your desktop and unzip it to its own folder

  • Run JavaRa.exe (Vista users! Right click on JavaRa.exe, click Run As Administrator), pick the language of your choice and click Select. Then click Remove Older Versions.
  • Accept any prompts.
  • Open JavaRa.exe again and select Search For Updates.
  • Select Update Using Sun Java's Website then click Search and click on the Open Webpage button. Download and install the latest Java Runtime Environment (JRE) version for your computer.

Note 1: UNCHECK any pre-checked toolbar and/or software offered with the Java update. The pre-checked toolbars/software are not part of the Java update.

Note 2: The Java Quick Starter (JQS.exe) adds a service to improve the initial startup time of Java applets and applications. If you don't want to run another extra service, go to Start > Control Panel > Java > Advanced > Miscellaneous and uncheck the box for Java Quick Starter. Click OK and restart your computer.

====

How are things now?

Downloaded Java.

System running smoother - however I'm still getting the disk check/consistency error when booting up and still getting the windows genuine advantage notification - generally right after booting up and opening up my browser.

Try this:

Open the "Computer" window
Right-click on the drive in question
Select the "Tools" tab
In the Error-checking area, click <Check Now>.

That should see if there is an hard drive problem.

Have you tried going to the M$ site and checking the Windows 7 validity?

Issue I'm having is the system won't let me run the disk check. When I do as you instructed, it tells me can't check while in use and will run upon startup. Then when I reboot, it says can't perform disk check due to error resulting from a system update (or something to that extent).

Haven't gotten the validation messages last couple of start-ups...

Are you running chkdsk as Administrator? If not, try that.

Try disconnecting from the net and disable any Anti-Virus program, then run chkdsk.

It still won't let me run disk check - confirmed I was running as administrator and attempted again disconnected from net and with antivirus disabled.

Still getting Windows Genuine pop-up - what concerns me is I know I'm running a registered/real version of Windows so not sure if the pop-up is legit. So I won't click on the 'resolve' button as I'm not sure what I'm opening. Or if it is legit - perhaps something nasty in my system is indicating its not?

All in all, computer is running smooth. But clearly something is still not right. If you have any other suggestions that would be great. If not, totally understood and greatly appreciate the help to this point. Thanks.

if its caused by a virus and if you do what i said in my first post to activate it ,it will just tell you its already activated or it will reactivate it .,Bill G. shouldn't come running to your door

caperjack - follwed your instructions and reactivated windows...no problems doing that.


Will still not let me run disk check - on start-up when it trys to run the check disk, I get the following message:

"Cannot open volume for direct access.
Autochk cannot run due to an error caused by a recent software package.
Use the system restore feature from the control panel to a point prior to the recent software package installation.
An unspecified error occurred(766f6c756d652e63 3f1)"

System restore options are after error occurred. Also, the system is doing an automatic windows update everynight upon shut-down which seems odd.

Any other thoughts would be great...thanks.

It would seem I'm out of the virus, nasties, and spyware realm and dealing with some sort of memory problem at this point. So if you want to close this thread out, that is fine. I've been googling the error code I entered above and trying to figure out how to deal with it.

I am not able to assist further at the moment as I am in the middle of moving house and my internet connection will shortly be severed.
If you have your Windows CD, you may be able to do a system repair, which should allow the chkdsk to go ahead (fingers crossed).

Thanks for your help

Be a part of the DaniWeb community

We're a friendly, industry-focused community of developers, IT pros, digital marketers, and technology enthusiasts meeting, networking, learning, and sharing knowledge.