Jump to content

my computer is infected with some plauge


Recommended Posts

well ill start at the begining. this whole thing started out yesterday i was running avg antivirus and it picked up trojen horse PSW.onlinegames4.ALGT but could not remove.

so i went on the net to find a solution and i found your site and in one of the forums some other person had the same virus so i used his thread to try to fix everything.

ok to get to the point i have removed the onlinegames4.algt virus (i think i did) and another virus or malware with one of the tools i used. my computer is still acting up slow performance and random bsod seems to me the malware has locked alot of my files and wont let me scan them i have been working on this all night last night till i woke up at 6 am with my head on my key board lol. well here is the first 2 text files the forum asked for. ps i will be leaving a donation to who helps me as your site rocks im glad to have found it

DDS (Ver_2012-11-20.01) - NTFS_AMD64

Internet Explorer: 9.0.8112.16483

Run by mike at 18:18:23 on 2013-05-27

Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.3327.2302 [GMT -7:00]

.

AV: Microsoft Security Essentials *Enabled/Updated* {B140BF4E-23BB-4198-90AB-A51A4C60A69C}

SP: Microsoft Security Essentials *Enabled/Updated* {0A215EAA-0581-4E16-AA1B-9E6837E7EC21}

SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

.

============== Running Processes ===============

.

C:\Windows\system32\lsm.exe

C:\Windows\system32\svchost.exe -k DcomLaunch

C:\Windows\system32\nvvsvc.exe

C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

C:\Windows\system32\svchost.exe -k RPCSS

c:\Program Files\Microsoft Security Client\MsMpEng.exe

C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k GPSvcGroup

C:\Windows\system32\svchost.exe -k LocalService

C:\Windows\system32\svchost.exe -k NetworkService

C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe

C:\Windows\system32\nvvsvc.exe

C:\Windows\System32\spoolsv.exe

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE

C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Windows\system32\taskhost.exe

C:\Windows\system32\Dwm.exe

C:\Windows\system32\taskeng.exe

C:\Windows\Explorer.EXE

C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted

C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe

C:\Program Files\Microsoft Security Client\msseces.exe

c:\Program Files\Microsoft Security Client\NisSrv.exe

C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\Program Files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler.exe

C:\Program Files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler64.exe

C:\Users\mike\AppData\Roaming\com.zoosk.Desktop.096E6A67431258A508A2446A847B240591D2C99B.1\WIN6A73.exe

C:\Windows\System32\WUDFHost.exe

C:\Windows\system32\SearchIndexer.exe

C:\Program Files\NVIDIA Corporation\Display\nvtray.exe

C:\Program Files\Windows Media Player\wmpnetwk.exe

C:\Windows\System32\svchost.exe -k LocalServicePeerNet

C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe

C:\Windows\notepad.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Program Files (x86)\Internet Explorer\iexplore.exe

C:\Windows\system32\SearchProtocolHost.exe

C:\Windows\system32\SearchFilterHost.exe

c:\Program Files\Microsoft Security Client\MpCmdRun.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Windows\System32\cscript.exe

.

============== Pseudo HJT Report ===============

.

uStart Page = hxxps://www.google.com/

BHO: Fast Free Converter 4.1: {B422F1BC-9ADB-48A7-8B13-00C176039DC5} -

mRun: [TimeServer] "C:\Users\mike\AppData\Roaming\com.zoosk.Desktop.096E6A67431258A508A2446A847B240591D2C99B.1\WIN6A73.exe"

mRunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent

uPolicies-Explorer: NoDriveTypeAutoRun = dword:145

uPolicies-Explorer: NoDrives = dword:0

mPolicies-Explorer: NoDrives = dword:0

mPolicies-System: ConsentPromptBehaviorAdmin = dword:5

mPolicies-System: ConsentPromptBehaviorUser = dword:3

mPolicies-System: EnableUIADesktopToggle = dword:0

Trusted Zone: clonewarsadventures.com

Trusted Zone: freerealms.com

Trusted Zone: soe.com

Trusted Zone: sony.com

DPF: {FFB3A759-98B1-446F-BDA9-909C6EB18CC7} - hxxp://utilities.pcpitstop.com/da2/PCPitStop2.cab

TCP: NameServer = 192.168.1.1

TCP: Interfaces\{3654EF1F-C1B1-406B-851F-5BA5B5D29062} : DHCPNameServer = 192.168.1.1

TCP: Interfaces\{CD335614-F2CB-4E72-BDB5-BD18C951B1BC} : DHCPNameServer = 192.168.1.1

SSODL: WebCheck - <orphaned>

x64-Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey

x64-SSODL: WebCheck - <orphaned>

.

============= SERVICES / DRIVERS ===============

.

R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2012-8-30 228768]

R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2011-7-22 14928]

R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2011-7-12 12368]

R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore64.exe [2013-5-23 143120]

R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-5-26 418376]

R2 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2012-8-30 128456]

R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-3-14 383264]

R3 FETND62;D-Link PCI Fast Ethernet Adapter Driver;C:\Windows\System32\drivers\DLF62X64.SYS [2009-11-23 49792]

R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2013-5-26 25928]

R3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2012-9-12 368896]

R3 RTCore64;RTCore64;C:\Program Files (x86)\EVGA Precision X\RTCore64.sys [2013-4-5 15176]

R3 rzdaendpt;Razer DeathAdder end point;C:\Windows\System32\drivers\rzdaendpt.sys [2013-4-18 25600]

R3 rzudd;Razer Keyboard Driver;C:\Windows\System32\drivers\rzudd.sys [2013-4-18 119808]

R3 rzvkeyboard;Razer Virtual Keyboard Driver;C:\Windows\System32\drivers\rzvkeyboard.sys [2013-4-18 23040]

R3 VKbms;Razer Gaming Device;C:\Windows\System32\drivers\VKbms.sys [2013-5-6 13312]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]

S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]

S2 FastFreeConverterUpdt;FastFreeConverterUpdt;C:\Program Files (x86)\Fast Free Converter\FastFreeConverterUpdt.exe --> C:\Program Files (x86)\Fast Free Converter\FastFreeConverterUpdt.exe [?]

S2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-5-26 701512]

S3 danewFltr;NewDeathAdder Mouse;C:\Windows\System32\drivers\danew.sys [2013-5-6 12032]

S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2013-2-11 19456]

S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2013-2-11 57856]

S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2013-2-11 30208]

S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2013-1-17 1255736]

.

=============== Created Last 30 ================

.

2013-05-28 01:09:16 76232 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B9FC3960-C1AF-4EE2-9427-340493C83198}\offreg.dll

2013-05-27 17:37:15 964552 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{36E86899-6BF9-4A2E-A6E6-F1A009B5C05D}\gapaengine.dll

2013-05-27 17:37:04 9460464 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{B9FC3960-C1AF-4EE2-9427-340493C83198}\mpengine.dll

2013-05-27 17:29:25 -------- d-----w- C:\Program Files (x86)\Microsoft Security Client

2013-05-27 17:29:20 -------- d-----w- C:\Program Files\Microsoft Security Client

2013-05-27 14:22:11 -------- d-sh--w- C:\$RECYCLE.BIN

2013-05-27 14:01:25 -------- d-----w- C:\Program Files (x86)\VS Revo Group

2013-05-27 07:50:06 98816 ----a-w- C:\Windows\sed.exe

2013-05-27 07:50:06 256000 ----a-w- C:\Windows\PEV.exe

2013-05-27 07:50:06 208896 ----a-w- C:\Windows\MBR.exe

2013-05-27 07:31:00 -------- d-----w- C:\Windows\ERUNT

2013-05-27 07:30:45 -------- d-----w- C:\JRT

2013-05-27 07:12:07 171 ----a-w- C:\Windows\DeleteOnReboot.bat

2013-05-27 03:22:22 -------- d-----w- C:\Users\mike\AppData\Roaming\SUPERAntiSpyware.com

2013-05-27 03:22:16 -------- d-----w- C:\ProgramData\SUPERAntiSpyware.com

2013-05-27 03:22:16 -------- d-----w- C:\Program Files\SUPERAntiSpyware

2013-05-27 03:12:41 -------- d-----w- C:\Users\mike\AppData\Roaming\Malwarebytes

2013-05-27 03:11:19 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys

2013-05-27 03:11:19 -------- d-----w- C:\ProgramData\Malwarebytes

2013-05-27 03:11:19 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware

2013-05-27 03:10:25 -------- d-----w- C:\Users\mike\AppData\Local\Programs

2013-05-26 15:52:30 -------- d-----w- C:\ProgramData\MFAData

2013-05-24 11:17:18 9460464 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7F25ABAD-78AB-4AE4-B004-90ADF260BE94}\mpengine.dll

2013-05-23 05:52:04 -------- d-----w- C:\Users\mike\AppData\Local\SWTORPerf

2013-05-23 05:48:49 -------- d-----w- C:\Program Files (x86)\Common Files\BioWare

2013-05-15 07:02:32 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb

2013-05-15 07:02:32 2382848 ----a-w- C:\Windows\System32\mshtml.tlb

2013-05-15 01:52:18 983400 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys

2013-05-07 06:47:23 -------- d-----w- C:\Users\mike\AppData\Roaming\Razer

2013-05-07 06:45:04 85504 ----a-w- C:\Windows\SysWow64\DeathAdder64.cpl

2013-05-07 06:44:58 6656 ----a-w- C:\Windows\System32\drivers\hidkmdf.sys

2013-05-07 06:44:58 13312 ----a-w- C:\Windows\System32\drivers\VKbms.sys

2013-05-07 06:44:58 12032 ----a-w- C:\Windows\System32\drivers\danew.sys

2013-05-07 06:24:44 -------- d-----w- C:\Windows\SysWow64\searchplugins

2013-05-07 06:24:44 -------- d-----w- C:\Windows\SysWow64\Extensions

2013-05-07 05:54:11 -------- d-----w- C:\components

2013-05-07 05:48:45 -------- d-----w- C:\Users\mike\AppData\Local\CRE

.

==================== Find3M ====================

.

2013-05-02 09:06:08 278800 ------w- C:\Windows\System32\MpSigStub.exe

2013-04-19 02:00:16 25600 ----a-w- C:\Windows\System32\drivers\rzdaendpt.sys

2013-04-19 02:00:14 23040 ----a-w- C:\Windows\System32\drivers\rzvkeyboard.sys

2013-04-19 02:00:06 119808 ----a-w- C:\Windows\System32\drivers\rzudd.sys

2013-04-19 01:56:36 56832 ----a-w- C:\Windows\SysWow64\rzdevinfo.dll

2013-04-19 01:56:36 148480 ----a-w- C:\Windows\SysWow64\rztouchdll.dll

2013-04-19 01:56:30 724480 ----a-w- C:\Windows\SysWow64\rzdevicedll.dll

2013-04-19 01:56:30 288256 ----a-w- C:\Windows\SysWow64\rzaudiodll.dll

2013-04-13 05:49:23 135168 ----a-w- C:\Windows\apppatch\AppPatch64\AcXtrnal.dll

2013-04-13 05:49:19 350208 ----a-w- C:\Windows\apppatch\AppPatch64\AcLayers.dll

2013-04-13 05:49:19 308736 ----a-w- C:\Windows\apppatch\AppPatch64\AcGenral.dll

2013-04-13 05:49:19 111104 ----a-w- C:\Windows\apppatch\AppPatch64\acspecfc.dll

2013-04-13 04:45:16 474624 ----a-w- C:\Windows\apppatch\AcSpecfc.dll

2013-04-13 04:45:15 2176512 ----a-w- C:\Windows\apppatch\AcGenral.dll

2013-04-12 14:45:08 1656680 ----a-w- C:\Windows\System32\drivers\ntfs.sys

2013-04-10 06:01:54 265064 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys

2013-04-10 03:30:50 3153920 ----a-w- C:\Windows\System32\win32k.sys

2013-04-05 01:08:44 2312704 ----a-w- C:\Windows\System32\jscript9.dll

2013-04-05 01:00:30 1392128 ----a-w- C:\Windows\System32\wininet.dll

2013-04-05 00:59:24 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl

2013-04-05 00:56:16 173056 ----a-w- C:\Windows\System32\ieUnatt.exe

2013-04-05 00:55:47 599040 ----a-w- C:\Windows\System32\vbscript.dll

2013-04-04 22:11:34 1800704 ----a-w- C:\Windows\SysWow64\jscript9.dll

2013-04-04 22:02:59 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl

2013-04-04 22:02:17 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll

2013-04-04 21:58:51 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe

2013-04-04 21:57:45 420864 ----a-w- C:\Windows\SysWow64\vbscript.dll

2013-03-21 02:14:22 27663 ----a-w- C:\CC33.tmp

2013-03-19 06:04:06 5550424 ----a-w- C:\Windows\System32\ntoskrnl.exe

2013-03-19 05:53:58 48640 ----a-w- C:\Windows\System32\wwanprotdim.dll

2013-03-19 05:53:58 230400 ----a-w- C:\Windows\System32\wwansvc.dll

2013-03-19 05:46:56 43520 ----a-w- C:\Windows\System32\csrsrv.dll

2013-03-19 05:04:13 3968856 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe

2013-03-19 05:04:10 3913560 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe

2013-03-19 04:47:50 6656 ----a-w- C:\Windows\SysWow64\apisetschema.dll

2013-03-19 03:06:33 112640 ----a-w- C:\Windows\System32\smss.exe

2013-03-15 05:07:52 559904 ----a-w- C:\Windows\SysWow64\nvStreaming.exe

2013-03-15 04:16:18 3477280 ----a-w- C:\Windows\System32\nvsvc64.dll

2013-03-15 04:16:17 6398240 ----a-w- C:\Windows\System32\nvcpl.dll

2013-03-15 04:16:10 877856 ----a-w- C:\Windows\System32\nvvsvc.exe

2013-03-15 04:16:10 63776 ----a-w- C:\Windows\System32\nvshext.dll

2013-03-15 04:16:10 237856 ----a-w- C:\Windows\System32\nvmctray.dll

2013-02-27 06:02:44 111448 ----a-w- C:\Windows\System32\consent.exe

2013-02-27 05:48:00 1930752 ----a-w- C:\Windows\System32\authui.dll

2013-02-27 05:47:10 70144 ----a-w- C:\Windows\System32\appinfo.dll

2013-02-27 04:49:24 1796096 ----a-w- C:\Windows\SysWow64\authui.dll

2013-02-14 16:06:46 3055616 ----a-w- C:\Program Files\RaidHubClient-1.1.25.msi

.

============= FINISH: 18:18:54.38 ===============

Link to post
Share on other sites

  • Staff

Hello yokoop

I would like to welcome you to the Malware Removal section of the forum.

Around here they call me Gringo and I will be glad to help you with your malware problems.

Very Important --> Please read this post completely, I have spent my time to put together somethings for you to keep in mind while I am helping you to make things go easier, faster and smoother for both of us!


  • Please do not run any tools unless instructed to do so.
    • We ask you to run different tools in a specific order to ensure the malware is completely removed from your machine, and running any additional tools may detect false positives, interfere with our tools, or cause unforeseen damage or system instability.

    [*]Please do not attach logs or use code boxes, just copy and paste the text.

    • Due to the high volume of logs we receive it helps to receive everything in the same format, and code boxes make the logs very difficult to read. Also, attachments require us to download and open the reports when it is easier to just read the reports in your post.

    [*]Please read every post completely before doing anything.

    • Pay special attention to the NOTE: lines, these entries identify an individual issue or important step in the cleanup process.

    [*]Please provide feedback about your experience as we go.

    • A short statement describing how the computer is working helps us understand where to go next, for example: I am still getting redirected, the computer is running normally, etc. Please do not describe the computer as "the same", this requires the extra step of looking back at your previous post.

NOTE: At the top of your post, click on the "Follow This Topic" Button, make sure that the "Receive notification" box is checked and that it is set to "Instantly" - This will send you an e-mail as soon as I reply to your topic, allowing us to resolve the issue faster.

NOTE: Backup any files that cannot be replaced. Removing malware can be unpredictable and this step can save a lot of heartaches if things don't go as planed. You can put them on a CD/DVD, external drive or a pen drive, anywhere except on the computer.

NOTE: It is good practice to copy and paste the instructions into notepad and print them in case it is necessary for you to go offline during the cleanup process. To open notepad, navigate to Start Menu > All Programs > Accessories > Notepad. Please remember to copy the entire post so you do not miss any instructions.

These are the programs I would like you to run next, if you have any problems with one of these just skip it and move on to the next one.

-AdwCleaner-

Please download AdwCleaner by Xplode onto your desktop.

  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Delete.
  • Confirm each time with Ok.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the content of that logfile with your next answer.
  • You can find the logfile at C:\AdwCleaner[s1].txt as well.

-Junkware-Removal-Tool-

Please download Junkware Removal Tool to your desktop.

  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.

When they are complete let me have the two reports and let me know how things are running.

Gringo

Link to post
Share on other sites

ok ill do as per instrution but here is the second txt file that u need i guess wouldnt fit in the first post

AVG 2013 AntiVirus command line scanner

Copyright © 1992 - 2012 AVG Technologies

Program version 2013.0.3343, engine 2013.0.3184

Virus Database: Version 3184/6361 2013-05-27

c:\Boot\BCD Locked file. Not tested.

c:\Boot\BCD.LOG Locked file. Not tested.

c:\Documents and Settings\ Locked file. Not tested.

c:\hiberfil.sys Locked file. Not tested.

c:\pagefile.sys Locked file. Not tested.

c:\ProgramData\Desktop\ Locked file. Not tested.

c:\ProgramData\Documents\ Locked file. Not tested.

c:\ProgramData\Favorites\ Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\004464a5f519545ab71b09ea488817f2_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\009944e83123f836dc7bcd90387df36c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\00a10d1f561756ae7ed050383a4f9500_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\00c4961143cac60bd72f14d11aa57139_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0155704d888ce68750820ab1483faf68_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\017674384a22ef13a97bdc76081e8e25_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\018b7ba234bce63d1af5061dfe7fa934_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0200b010bf2ffe24e753fc9b623e9a88_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0230d9ef644dcf0dc3db2a14b3e1e12a_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\025ba745b1fc873a98e335fa5928f5d1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\02a91349382cc703d31ac5304a1fae52_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\03a4a774cf27f84d07655eebb6d29f14_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\03a5d94ead708bf6563a031758ed1b7a_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\041bd88cb9940c7e99df6973f0755f87_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\04b7fc10a70a50d694c40effab45d9e6_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\04bed2a1c96f38a830d0c418a424108f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0594aec51d262c1de6ee98dc0274e525_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\064cdfd45a91b716e6a89ce6eb3f8b48_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0660fb5a2673a9b2db87020fea1e21c2_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\066c583f896dcdae71cb52f3bd1c55e0_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\07790c48bd03f492e71e8007e2c7078e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\079eb841f6d89ea448fe71272ae9809b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0869932507652f4eab19e73a495f592b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0959cf6b95fb92f8cdf05dddc58f7502_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\09b7eb4e17a87b739abb4bb3dcfc03bc_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0a18f9fb0e21869c4da47c30ec68f5db_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0a70da2ff0e394797b91976b79b314ef_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0ad86df4f30d1f4c46f7b0e0d0849cf4_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0b72551b184e9722132e042427dc05e1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0b7ee87ffda6c7f792848cb71fdf629d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0df8bbcc8d286e02860bc09857d37fd7_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0e0587f380c08443dc2d3747eac186f3_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0e324ca466db947a9c0af5e77c1b9391_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0e784c9ec5bd2123688aa8b9966e8eb8_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0e7f1b61814300f9c29591648a37d924_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1056b9738c3e858d06c8d418e4657f5b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\108bba8510336e3249c4f8320e5ea016_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\10df510df8f47039e04f31f3c6e33cc3_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\111d64ef9149136d5cd1e7fe7699ff75_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\123a33b6355359be24919c51b3d0beef_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\12414fee247d1cc341266c591638b68b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1254851500ecf1e5fcfeb93c8cb71ef5_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1298bc9b541a6cc404a7871beb293743_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\140db939c2e2c88bbb8c9e4293b484df_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\144bff9b5dfb90eb0546897747dec951_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\144d38741888a34d00e7404b67d2aa82_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\14fee5dc09a39ee047f86328b19f14fc_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\14ffe861c4a3d2a973ab2d86557f30cb_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\15dd3307dc007cd0d58b71f31be4545f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\175cbfbcf759bb11b6636d2659321d3c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\17b3ed06bc4a47d28598dc245147c344_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\17be76f4e200d1d360e345a45f8d3a06_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\18044a0707ac94188c66958bd7c5c0a6_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\185cdbf932566cc70cc7684fa7339900_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\18b2f93623bf87e563ffdefefb0ef324_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1992d59bca61b6e02faa3b406c284638_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\19f5a45b3b68f928bdcd6fd86f759318_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1a29a2f8561b58f959f8de4e7e95cf9e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1a2fae54c4858f4260849cc4a5abe8fd_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1ae4e5f21a15c14aab5fcd901ecaf883_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1b69ba9bf670a1d22f9c14fab5581bf9_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1bd32569cf0e48bfd8f9e482d858615c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1c2e42bc7ae83a712bd6f1710ada4315_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1d428c98e93c1895459b213757a3c953_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1dfe225180ff7ea06ba0b7fdee9ff1f2_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1e0d1d95630207a9dca8b69fe6706ec7_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1eb9d92e35b649e7251dad6b104a79c5_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1f2e5ba856b263f551e316e1fd217f6c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1f628d31cd34539de1e0dff2e0273bde_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1f7c497f6ffe296aaec86339cb5c45d7_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1ff2bafdf18dfe93d2bba32402c45dfd_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\20ae5a9585a5a9dd02bf723db25389a4_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2103cb81dee15cd811d12a39f6709b24_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\230671dc0034d596a2bc3af9d9fa5cc7_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\23bb96727e08b68be1308cfd5a4458d6_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2434dc7d19ab0f45bf93ddc2e95972af_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\24bec9293ede9e251c76417784c4ab2b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\24fcc263064b722147d97da07d50c824_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\25834af102994001694774185c964f47_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\25c19ec9c14349b9519a2415fffce1d3_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\25ce3f65e5793437fc419aa55a80dfe1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2639474baf5f362585352638de3d9d31_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\278a644eb1c6383b349fea7da8a74e7d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2943c2f22d1131fff92e79d7ace9652a_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2a0b85aff62688f13050fe2694604b5b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2a0b9ce5545871619804e41c9f1cb0ff_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2b25700b6d68d9f61c3a517a25ac4916_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2b530260ca0da32aadea19bca249d469_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2b78c592bc56cfc750ec2f8698761428_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2b8821692611b14f65e6e9b656114bfe_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2bc9a22a081969eb0334d7d59619b24b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2bebb17c0c4a1aef3e07fdec266ff66e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2c158a17e552f5076cc250b9d172ff75_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2cbffeecce5701596577d8d897d285ac_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2cce54f3f90eb13cf61aeec4c24cc2ec_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2d489f0a1ae4f0727e2174ba8b7df0a0_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2d759c16cb273477182e872297ef2ae2_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2e1118ef235503d83de708da324c40e1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2eb8939a20432860000d55cf96545cfb_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2eccb23f49a2c64f54389829c55397c7_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2ef804f4c58a859017c825e1de4a24d3_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2f2a39b90ba3b9b77c60c85c78d89b92_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2f3fd9819e56fbe22cc4d6ad614fdbf0_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2f90031cc5be2a1355ca53d832a2fa1f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2fb8c3a07a90ba1840cec8334f8365f2_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\30ecc61273918b8d24ded314f36a9a67_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\312622e36855a2c53f672381b1a1569f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\31376008d224572804b6c61559b4a8cb_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\31e09fe13b48a8ce52a2a80000974f3b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3261c01e86c65e2e3a9d50b655e21b50_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\32c233bc8ba37e53c07224d77ac43fe5_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\338d0e55581dbc6d95314993b3bb5635_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\33af5b53f39fce5eb627f5f909aab4d6_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\344a9f2d4510aad382f6d96f63de6615_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\348aed82620bbe489e6c620fca8b6681_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\34cc554ea3e5474d9130dbbfd3ef60c8_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\34f218d5dee1b9a3794206567430f37f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\34fb77776f11cdbf355104ffacd340f4_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\35700303e753f7cb5c83679490f8f65f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\35c707a6cb13f523e48a51b40491b3d8_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\35d3a9e6cd6ea72baea5d53bb7b36886_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\362865fb0e4a80f90c55f861d7c50186_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3681f2ecdfcff3032e72f18ef91143e5_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\370cde37d6243a1d60392c7f31ecad5c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\37ea3d1e8e8b3909e88d2b2e781c34c5_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\38192c9d80754b4e5dc25b0d168e6cc3_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3841c85441e15a47ad064b4d18b2dd03_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\393b1dc254c64e538946133e3af6c88f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\395da70e951aa951f0c4976ce10ae901_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\39aede740e30cbfb74d1e68cf693bd65_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\39c8df31202c71eb25c4091c5de77e8a_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\39e287bf2096ab02fe5a680b730fe80d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3a9e9ba6432338bcbf78890e646d6c63_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3ac81cf99c766da9c757ab673d7fbc1b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3b80fda61170e0e29fef70bd8a0f022c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3b83fa5c7faf2f8ff10d858313f198ca_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3d8937dd84ab483c6a8eee2bfaed288b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3dd82df2b90bae3a3f9b1e3fd43fcb23_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3fc5fd10bf8b13e24ed566b909fd37a7_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\401c2981bd1632c3b5a4c4713ba72c4f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\40a49b87cc6c177f4d845609c2c78536_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\41a42177f028b82c9ef1e193602ffd0f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\41b0f9eceb6753a2e49bcdf36db07427_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\41f1f92752565384091dfdc831b19584_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\422db11b9867e2c3a0d641283dce69ea_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4243a5ad766d30a1a843b8d88bc96947_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\42a80d6ee1e2f509b2bb25f91534fa5d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4329f6f457e1b0533cc55079482184a9_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\43c46ad6dc98eefb14d88a29279b612f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\43fcc62f4ea812bfd27957d7d1a64f6e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\44375e6957291ffaf1af84f1e997505b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\44f76b1d888887c2f06371ba03989886_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\45bac91f5e6a0c44032ab1fbe985519f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4613be0e3c48a3dc5c0a425ca59290bc_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\46f73d193062380d4743765d5155dbee_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\489b4dc36e7f224e24fb61ade40c6fb1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\495afc5a7775b4c9e0fd03c465a06cf2_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\495d3d5a4e41eb2bd96c753f9d7406ed_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4a1524dcafbff8c510a8a13192fb504a_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4ac3fdf9fe32868547cda70175003ad0_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4aca7698ef6c41a6bb367e583de4c32d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4be7e2340c64f4937718a8c48c7e55e4_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4cd43986208650e1b45e078d8a21272d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4cf72cdcca8da1a9402a7a5412c4a2d1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4f12f3cfc771e7168225c3d98a587f0f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4fa3379f28d2f5722f1887be4ec8d5ea_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4fb050c4b7fc5a07eda1aabe8cabe41f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4fd8a65fdca7e1f5d501ffa4710bba00_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5031457045c4cf77e5cdb09753af3240_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\51388377c456303e9d99fdc07555083e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5253648955c724183c557bda0f3e32ea_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\52c7e9ada2a661047c6d96a84b43191d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5357e2b00cb93183ae1997b600481ed3_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\54b4d5ab33cb37500d00a548d078a169_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\55e4e3c3bd3262bb6c5c3d03f82df673_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\56d8a7fb1f875c353cea9fca750bc098_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\56f0fc28026709447fa8dd40c54f0899_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\575c4dc2bbeff5d70ce8f177d6cc172c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\57915b45a741fbce35d6857aba9b6084_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\57b3cf204e924631cadfa216f73d6985_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\595939d3d9fcdde76ba2dc6fb7175494_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\597be4f22801c56a5f530af176860c6b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5b066a38b0b39d18f6e2a0336205d502_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5c87f8079f231ed379fefef006951690_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5cd66b157fbd174cdcfa86ea93aab0c3_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5cdda2f5f2c00894359515d33dc865bb_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5d004b5db5b5d26a7c3e75b1d77616da_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5d3c4312ac2de4f1472e36c457ed8b0b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5d7f601e726c1f98b8e52fc618922a7b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5d96a297851d9254dc16d2011f078f3b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5d9ffda4474d0c296382222ce7dbe8dd_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5dcb3fe89132bfb8ae5b198c3ec1b742_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5eb541b28cb390c61f50dd537a6a9bcd_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5eec93b13393ba6c2084c31e7a4e18a4_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5ff9ac8d8846b046305fb56bf08906e7_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\600a8789cd803128c7b0513112107736_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\600d3680baf0b8d3c10f5a7714bee973_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\602fde1d47347d6d41ad48d72b21c655_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6049358d4e423d717c0e07fb7e458a8d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\606875d9b3e9cce7b24f459356c24f6e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6125653e7510d331838f845c413ded3c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\617cf5dd302d7b54487961fc0b3f9c06_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\62049b7c992df63e1d46cc48a6429e4d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\62be2db6f7d470c886580548f64af3e8_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\637af670eaa62b7bc643facdad4bd8bf_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6387982804a38191ab83da760595d77e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\63db069e9fff768ff11c43af1a611418_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\640a607fb2ff16a07338dad86a6379ae_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6415f01e18916def760582b1bfe9f979_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\646c18b2171410fa61bb3db1241e250c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6481ab7a3f7c37f3d19d7fe78d37f586_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\659283bac42016b485caae36cf0e74e7_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\661cf1ae7210837748b2cc5081b34394_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\66337978311a683077f95d00a040ac38_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\663726a303ea9eb00ea775db88eeb6aa_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\669e2197b5d7a9133e3bbbac6bb0b196_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\674243649f83d710f7e8030473880070_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\67574c2b94da4615bdcc03db5cf67d1f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\679b7e8e98126aefd671fa174cbbd203_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\67f1b329be9ae00b7be6919a5a50291f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\69eaf6ac726ce414aac454cf8b12de91_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6a077d10490d3fe2b1469b551a66a313_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6b26bcc36fc57fc1373a6ba664886ec5_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6b27e97bf1abe6fe1a9c280ea4b26685_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6be1a48fcfddafca74c9d9c0ca96b535_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6c0b4efd99951f90565dd044024a96f4_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6ce526293b7b8d32f4a2c54300eddbb1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6d510b9304a95e1749e54809053c5f91_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6d632bbf28729225af9983b4f7db0e64_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6d8d9f3d41cc90799149a3cc99dddfca_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6e52d920e7dd521911e7fb64fed7d5a9_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6e6deb2ba09734327d8b1657b7183fbc_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6e93396b872c8ed2686f1b6ece9dd5ce_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7090052ef88ffa246377ce894a3e4b95_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\71e0556c22dfe10145398142fa08fdd3_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\736604f40ad9d39954405e736a463a8c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\738952952c598d4d702a8d2d72d6af8e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\73f0369b649e4517aa894656d558d26e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7428a4e8308edc09a97943311d057232_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\744f9357b3db5b98b95ddfcf1a3a5d92_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\756d514c656ded6dad93c7877f908e26_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\75b3d2705d97ee57df7b2dc1dc5e7c49_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\76177a22d9245bc0dcd8c4a0f59c32bf_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\764569e5a3eee15017c9811681fee975_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\767ed05004ea68ac66926d8f20b175e9_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\768c9f8069c0f83b66df2aa21682cc0b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\76d49a7e38ce1d86bb58c83b8d6329ab_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\76f0880b234e9e0a23cbb78e143a7755_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\775ab1518804c70c6693e0c36923f432_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7780ea029fec3bdcbb8ee6b6fdbe45cc_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7a24f83a8fd536fe9ef847b6851001a5_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7bac81298cac496c617d6986e1d15523_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7c3bbfb81b432317d9facd931c69471d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7d460fc05eb4064e91b920ef828a5415_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7db4747cf0106f01a4021adbf07520cc_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7ddc344c9dd5c1ef24f03ececd05bbcd_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7e1d37e71c7b3ca5b76d6c8cc42ddbdb_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7f12bf0625b072a62f6838c1f3df877f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7f8addee62d6687b653a6c2864dc3126_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7fe718ceea755d0ab12b16e48323ccfd_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\810a6a6a5126d91fc692a0fa62731d19_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\815ab629a28d6f32904493ef33819ceb_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\81c5d1bc73c0b3ba41403af7abf91150_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\82152eb412816c51d4a26ab77b4b901b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\839ecebea7a72404df1f6027dacbbd06_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\83dd4a7c110fb8d4705f0d00530f3cb6_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\83f1a7ea129eab9bf9a4334ad273a35b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\84190880399af2f4184bd9adb7c441f8_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\846cd6c7dec616c23795aabf6aa02c0f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\852b1a8af5033a23cfb22aa4739fda59_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\854e5415d6eb8cfe0d66f3cb96a4cfbe_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\856c6223c4a20f28b0964c5e84c9cf40_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\85a350b30bcc063099e717ba7b59d884_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\86002bc00a24b0e2b1cede7a5f865033_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\863e0bb94d8603cafc089fa4a75dcf21_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\87dfe698c94462c414fc9bbb567dc891_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\88671822cab7aa9a03747e9a655a6112_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\88717c41177292c161617ef700808df9_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\88c35d323750b74ecdf2a4f7096326b1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\89b58e04204f181c2906161f58e4e801_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\89f78eefe4e396b6715932f4b8f30dc2_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8a087823e7989b134d1108a77dd5a7f1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8a101119852f98cdc747131ad23b6ad2_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8a574f5467bb6d7e80b7e2745419bb08_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8aa0b1f57126e23519981f65cdc1c0b1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8ad0692560363fb37a6ca4095ea2c74a_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8b59c0b49e92cd2871311ba638482d92_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8bc8c7a0a5667603b12510f9105713b6_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8bda651efacf636fd54fdcee6871dd99_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8be37f9fd091d95671be001ecbe15d99_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8bf1ff860e78fc03b7ed4c5a8ae9ae10_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8c013add7d61b3d2ca3ffb9d87d17c3f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8d523fa5ea543109747f6077cb2febcf_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8d8e56f9e30a1234d586aabaa4633668_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8d96e968f6d567e0c2aa5a33af990d83_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8e094646ecf296fff13f98afff49174b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8e58e9403022e6813377ae0c89c6fbf7_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\91699c9a1aade844494a05e05be11014_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9300966fffe61ef602c7bccef3100dca_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9382b339a9d91716e4d2175939227759_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\93c34438158f71370268176136a5a003_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\94a982204d2309b071c5bed4e7ec1076_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\94ec0718a90b84ff23809fe7fcabc3d0_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\95dbe7e114c5cd5f81fb6f1df6ac0636_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\97140b1559899a3ffb425b6d1fd6c28e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\97b3dfd3caef12108df0d4a449d7e7ee_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\97efef61732b9937bdd1da30583a8756_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\981850863598f2943f01cd84b284ff68_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\984cc5b9d57429d23369e26639c6a323_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9984580aba39cd1d5fb108812349a3c8_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9ae62786a3ddcf61ff856d0501e847d2_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9c2460b219fd6e9b7ab3f955939399df_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9ccfabc79092537bc1a98d4bbaa105f9_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9cda0d567771dd2949083088d4a19757_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9d22d4bd8d70e219d670a52d47f416ae_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9def080ad8a2ecf5fcaf4eba828505f8_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9fc6b96104e8013339a52121f0a8af6e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9fc90c30dcb182cb0541ed196dacfd49_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9fd77b025e5326e9de1b5d0455cfe912_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9ff82766956d1b780ffb4dc004eec67a_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a0a60845b30ae59a1577b767ca0ff5c3_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a0a87081c1196d6ad9790c7da4b18271_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a19cb5a6d2227c898629931f7c27706b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a1f00f15f7b2a579d6348c5e753ed6aa_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a2236ff1266d95445ef722bc5c0bf43f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a32a83bf1503bb17064cd8e83bd13bbc_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a33c64aa4b2e981bec4a8ee55e2164b1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a35a4435ea0fc1986b37cd331b68a0cf_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a3b991aeb6791b82667d98dbc017196b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a47b66b3054f5afed4e72098c17c067d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a4a64ac9c84e0132e444e4878ccce4f0_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a508935dc508b19b241013a386db8c8d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a515a0b579c5dbd231c08defb295913c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a54c0aadd284885cac3afa34d17bcd3f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a550310ff73254cbc60a6135327f885d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a56a560c7b6b2c095e22856c81c217cc_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a59b557ac03ce68bd8936034e15deb00_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a604d06fab800bd5e90f7836769f436e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a745e773e0f7bf2a3723a12f3c71f5f7_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a767d5bcca725c6aa553e5b1590dead9_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a818bd2b435e500d262e3e1e1ba211fc_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a86e9f4749a0cac20746aae370c463f2_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a96c76bd8fc94703c4fe2d38afb25fd4_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a9c49a25e0987cfb932377a300279a7a_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ab440f70e0a8e004b893827249c6fe73_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ac25de9df0d3a5bf90e93b6acf2a83d8_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ac5a1ed495527e56d35c3f23df779f05_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ac97c473d3999e5aadca7ebde2a5b8fb_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ae623b72fb6fcbefe20d39096e1fa082_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\af3a55d5e38fa40bc0922aaa6d2d1aa6_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b00db3066ca03a19f82320354ce76758_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b050f61fffef0774b602e183f6c5e814_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b1530fc69388ee758c4d350e099c454f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b1a97b9b43422cf9168e17b75222e4ec_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b3a71d6fbed77502d3f47e2a9075efd8_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b4202c4ea916c27144497fc3bc48e807_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b5153cbd5c204fe35ce2222a84aab6cb_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b51599b589a590c9b889b9935415a81f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b516c02cce2853c1b19bc7e4ca5470f0_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b55514fd8ed6388aaa7939ba5a3c2915_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b5bab02dba3c76e215fedca373c4a4e6_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b5d74fa768ddc7a05ae77a473657d245_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b636ab8f32cb5b603aa3f9ff878e435f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b659f78c94dfc45c029af858d75a2559_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b6850e555dd623fdb585e59abc643f4c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b6e6fcb5580f1c932d5bec2fc3356925_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b7339b9f618e5fe95666f6ede01caa51_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b744f5266ec35bd0b6df6c6ba87a4c07_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b7a194d8af943bdcd61bdf0d5032cc08_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b7b704ea8edfd72de259ccd26fa658f3_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b90cb73b67e4b762d2a846dd9e939a90_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b92fccd672c6f6d3a8c6ddc6f8d85f81_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b99f0b0c958535621034a0eebb09edd6_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b9c6c523c42c429931b161f669880b66_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ba64b450e3ec23f5f9c43a050c332103_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\bad87757c36a134fc95cfb8a5d629ffd_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\bb158aa1f136854d2b22b1ac8a207f7d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\bb9f8ac1bbadabe8b75db308dd570071_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\bbd1e5a0c9e5aab11b8660321367becd_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\bc10488f537eb3e0acd7fbcc5bcfbd79_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\bd390e78d8e15ec397ea78aea15ea27f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\be4b2e58c5cb1f43aba3c64aa56715f7_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\be4c11fe51c4800a565507a39f502e65_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\be7763b73b56ca5e43be2b81b85cc90c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\bf5384a864419a3e90c619f97038b995_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\bf74a32018e97de2ef2b834bb0508d28_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\bf9ba9370be01e1e5450935ec875c5b4_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c0be5467f408083db8da6b5076fb6ba8_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c0e7403edd22e413fc49efff777cb21b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c141adab8a9cefce389c55d2de5c01a1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c15f9e6daa4ee6526083f7e27e7907f9_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c16eabcbfb8d851a9311ac28b92e29cd_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c2de237b36499fdbbe2ae4a37ed2d79e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c36315f7b987f9861726f7f5f5e38767_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c3c16a03b54e273234c4cb82bc418b7e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c3c5c3d10421d401bfbfa20dfc577af6_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c430a0486bcc90b580cc29d2ab85ee69_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c50c68d0de6a04cd63359fddfa38bd87_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c51908b0be296ac9c9e06f1209df4fe1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c5d3bad701c9cc060202ed3205e8cbd5_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c62d71e2d2d4c832d910c556143be549_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c6d59b6b0ff64b00ea6ce0b1268c59ba_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c6f880ed7584ea099474323af8b87adc_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c92beea3a42f8e1268e65d571ccca17d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c96fb69d593fe209b57c15cc9399d2d4_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\caec2eaa0b8146c187dbf0d8f0c05401_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\cc46bbb7a7ac6af0bda7503059c980d1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ce666d0d103f03f8f396f886c296e7d6_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\cecc97f87fe63569dcaa9def99a76667_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\cef16d19243115fb25f0376f60ab08e4_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\cfdeb8016f1a079c07ba484f0c66cf0e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d0ead9e84f7fd1aefa10070ebb63f134_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d124084b5083d3a8db43502856134c4b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d1301a5f7d3ae9dcf29a269ee7867d84_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d26f9557acfe4514f84e7ead44cdfaeb_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d31fbee08df13eaf75d2a2769cdc9e80_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d3b3e47cdedddb28dbcc096b09b947d2_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d43c97a6b642ad40803106f1a2d6596e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d59c513c6027265f47217ed528d09c11_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d5a769737818d14565af90e5393e8d0b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d5fac34dce55512ae74be49f300a5673_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d6285fd44b4ede72dabf30558f1901cd_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d6321a10b620fd27c128bebe0b28693c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d6fd24599dea28abfbbeb70d4c3c122a_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d75396733f277c89c6eec1608eb8a76f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d7a4681ab0c591261c258214188e1f69_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d7b117a1383ec963142a348894f97a72_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d7eee6d58b17d8745fc192d5dd00822d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d88b089e27d77790018c34a97f57a123_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d8b6abdd882072bc66165b7fae5b4f58_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d943e2d6857ddc7e7131f6c35f2b1a8a_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d97d848c768562a08e89d9dd4646ada3_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d9b8fdf94abaed8a505b70d511e75004_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\da13620edeed16da1568c22cff140065_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\db26f9263929a276513e6764d1e6bb00_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\db9dec3a071cefc96f2bdf9447fd346b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\dbdafba5ddbe9a925243ec03486ce10c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\dca396ba3142fb341bef4273f6c87418_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\dd7b9fd577c831e3c14ec0c02f1f7317_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\dd82823d914b6bd30910d90e15cdadd6_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\dd9d7e68714f869603b14f1e5abc54bb_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\dddfc2e4b80c2948ee3dbe9540776f28_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\deb08f839589680c073be61f34bac9c6_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\df32543b92a4afdb1ad78384bf20bd2e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\df4b6b8d6ae8e931c79f82fae79cec20_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e023f630a94cbc4e79f21e8b7ce8e121_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e16396e06e557981699b2bf902dc85a1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e1967bfdfbc8a55c16a1ddd465654eee_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e3d6359ad77cd85ddc408b08e0f0577c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e41ca5dbe7a50178fcc29bca32450ca7_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e42f8071d7548b72634ded6b832086fc_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e54c06710b45c441f1459efd4489ad1f_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e5d14df9de5138f4ae954d344742bb5d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e60bb1657317c592984ebc6f879d6b3b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e6e03f3758c1de5c3ed88d8c63a6b572_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e737656a4d8450e27a2a3a6940563bc3_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e86b8da7b0ba8004fd5cd0a58420918a_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e93bb4005ff7125d8b0aa2c08e5f5729_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e94be191bab7623ec7471c179a0c724c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e9749f3acafad318f982c85592b8fe08_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e9bb23ae89a5d7de332912bf945c2c17_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e9c4f3bba6b24b269a9d69c2c62d4097_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ea8829f233a3a340f0ce0417bd045aec_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\eae6460c9fae518cdd86c2bc859128f5_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\eae75639600e3d307083a2d230b6e6c9_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\eb2a55b929da095beaa94b6aff914bcb_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ec55cf3fb761d1e7d8e0393a5738d9be_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ed64e629de9c092bfb91ac01935a35ab_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ef7f6869dee23a6d1137fb8e9671db01_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ef9724a8e8c08d110d3208b7d2776765_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f14cd1d729ada112753890fda08ce458_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f27036c9312867048eafeb68697e58e5_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f296b6dae44dbfff8cc44fd4c94dfe96_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f33eab742312964864c66341857c56eb_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f3df1d13b72a9fa7125cc16fe94ff792_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f4640edb00a6f9d85ade55042072188a_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f46837ed22986047d8de1186201b416d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f4ba32d6c9d85d9e4257b91dbd408d09_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f4cb8c223d8b8444c9421fe94937f2e0_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f4d28c8892430d0c046c74c22554dac1_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f5a61b3ea614a08f904e78c2c526a6bf_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f613273250635eb77b5e8562c3b1368d_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f6a13afb08922c79c1ba70e5d7257279_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f71b316b909a09e29d2e7f0559d612a3_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f8800df0d87597954b9eaeb624b0e916_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f8b6a568ff88d12bc28975f8bba40a7e_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f8cc2437cea2965254e9d564ab3c6b9c_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f97474af5e00169ece3da98f25140faa_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f97586427a0fa1aea9b42c949fee436b_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fa04e6ddc97a9dcd4de582ac7edfd938_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fa819246085c19bfd1f3054efd396356_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\faa882c1810fa8d5921321a371eb15bc_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fad9c9e023a94a2370ea0bb7990ba0fa_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fb1dcad7ddf4873adae7e83d6cba86b0_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fb824e9bdcde27809129768a55f66910_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fcfef564977736e29012f4f17fc45d39_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fd6200299d0d702164f4ea12968373e6_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fdca85a59e2dea58999df957b1ccfbb8_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fec077b9b3761f82e73d16557b5f42e5_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fedfc26a03d7b0e2cc9c01f8fd42c6ef_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ff8c448fd1e4c7837053892c5dbc92d4_8837e5c1-9702-45cc-9dc6-e1142939330c Locked file. Not tested.

c:\ProgramData\Templates\ Locked file. Not tested.

c:\Qoobox\BackEnv\ Locked file. Not tested.

c:\System Volume Information\WindowsImageBackup\ Locked file. Not tested.

c:\System Volume Information\{02554b21-bce1-11e2-bf70-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{4c0aa3fe-c442-11e2-a0f5-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{61550ef0-c5b7-11e2-b6b2-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{61550ef4-c5b7-11e2-b6b2-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{61550f02-c5b7-11e2-b6b2-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{9c07b1ad-c5ba-11e2-9959-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{9c07b1b2-c5ba-11e2-9959-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{b5afc81d-bfca-11e2-90bc-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{bceacfbe-c67f-11e2-b169-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{dbb1efbd-c6a4-11e2-8146-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{dbb1efc1-c6a4-11e2-8146-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{dbb1efc5-c6a4-11e2-8146-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{dbb1efc9-c6a4-11e2-8146-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{dbb1efcd-c6a4-11e2-8146-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{dbb1efd1-c6a4-11e2-8146-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{dbb1efd5-c6a4-11e2-8146-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{dbb1efd9-c6a4-11e2-8146-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{dbb1efdd-c6a4-11e2-8146-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\System Volume Information\{ee09486d-c676-11e2-bd14-001966c6abe0}{3808876b-c176-4e48-b7ae-04046e6cc752} Locked file. Not tested.

c:\Users\Default\AppData\Local\History\ Locked file. Not tested.

c:\Users\Default\AppData\Local\Temporary Internet Files\ Locked file. Not tested.

c:\Users\Default\Documents\My Music\ Locked file. Not tested.

c:\Users\Default\Documents\My Pictures\ Locked file. Not tested.

c:\Users\Default\Documents\My Videos\ Locked file. Not tested.

c:\Users\Default\NetHood\ Locked file. Not tested.

c:\Users\Default\PrintHood\ Locked file. Not tested.

c:\Users\Default\Templates\ Locked file. Not tested.

c:\Users\mike\AppData\Local\History\ Locked file. Not tested.

c:\Users\mike\AppData\Local\Microsoft\Windows\UsrClass.dat Locked file. Not tested.

c:\Users\mike\AppData\Local\Microsoft\Windows\UsrClass.dat.LOG1 Locked file. Not tested.

c:\Users\mike\AppData\Local\Microsoft\Windows\UsrClass.dat.LOG2 Locked file. Not tested.

c:\Users\mike\AppData\Local\Temp\sinqdpq\ Locked file. Not tested.

Link to post
Share on other sites

# AdwCleaner v2.301 - Logfile created 05/27/2013 at 20:13:24

# Updated 16/05/2013 by Xplode

# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)

# User : mike - MIKE-PC

# Boot Mode : Normal

# Running from : C:\Users\mike\Desktop\AdwCleaner.exe

# Option [search]

***** [services] *****

***** [Files / Folders] *****

***** [Registry] *****

***** [internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16483

[OK] Registry is clean.

*************************

AdwCleaner[R1].txt - [6782 octets] - [27/05/2013 00:10:13]

AdwCleaner[R2].txt - [572 octets] - [27/05/2013 20:13:24]

AdwCleaner[s1].txt - [6350 octets] - [27/05/2013 00:11:58]

AdwCleaner[s2].txt - [1016 octets] - [27/05/2013 00:17:55]

########## EOF - C:\AdwCleaner[R2].txt - [751 octets] ##########

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Junkware Removal Tool (JRT) by Thisisu

Version: 4.9.4 (05.06.2013:1)

OS: Windows 7 Home Premium x64

Ran by mike on Mon 05/27/2013 at 20:24:25.32

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

~~~ Services

~~~ Registry Values

~~~ Registry Keys

~~~ Files

~~~ Folders

~~~ Event Viewer Logs were cleared

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Scan was completed on Mon 05/27/2013 at 20:26:52.86

End of JRT log

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Link to post
Share on other sites

  • Staff

Hello yokoop

not a good idea that you ran them but I am going to run them myself just to see what they show me

I Would like you to do the following.

Please print out or make a copy in notepad of any instructions given, as sometimes it is necessary to go offline and you will lose access to them.

Run Combofix:

You may be asked to install or update the Recovery Console (Win XP Only) if this happens please allow it to do so (you will need to be connected to the internet for this)

Before you run Combofix I will need you to turn off any security software you have running, If you do not know how to do this you can find out >here< or >here<

Combofix may need to reboot your computer more than once to do its job this is normal.

You can download Combofix from one of these links. I want you to save it to the desktop and run it from there.

Link 1
Link 2
Link 3

1. Close any open browsers or any other programs that are open.

2. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

Double click on combofix.exe & follow the prompts.

When finished, it will produce a report for you.

Note 1: Do not mouseclick combofix's window while it's running. That may cause it to stall

Note 2: If you receive an error "Illegal operation attempted on a registry key that has been marked for deletion." Please restart the computer

"information and logs"

  • In your next post I need the following
  • Log from Combofix
  • let me know of any problems you may have had
  • How is the computer doing now?

Gringo

Link to post
Share on other sites

ComboFix 13-05-27.02 - mike 05/27/2013 21:24:06.2.2 - x64

Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.3327.2202 [GMT -7:00]

Running from: c:\users\mike\Desktop\ComboFix.exe

SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

.

.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))

.

.

c:\users\mike\EVGA_PrecisionX_Setup_304.exe

c:\users\mike\EVGA_PrecisionX_Setup_410.exe

c:\users\mike\RegClean.exe

c:\users\mike\RTSSSetup501.exe

.

.

((((((((((((((((((((((((( Files Created from 2013-04-28 to 2013-05-28 )))))))))))))))))))))))))))))))

.

.

2013-05-28 04:27 . 2013-05-28 04:27 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp

2013-05-28 04:27 . 2013-05-28 04:27 -------- d-----w- c:\users\Default\AppData\Local\temp

2013-05-28 04:19 . 2013-05-28 04:19 76232 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{A32D79D4-1EC3-4DED-829C-E49E3815D18A}\offreg.dll

2013-05-27 07:31 . 2013-05-27 07:31 -------- d-----w- c:\windows\ERUNT

2013-05-27 07:30 . 2013-05-28 04:12 -------- d-----w- C:\JRT

2013-05-27 03:22 . 2013-05-27 03:22 -------- d-----w- c:\users\mike\AppData\Roaming\SUPERAntiSpyware.com

2013-05-27 03:22 . 2013-05-28 04:03 -------- d-----w- c:\program files\SUPERAntiSpyware

2013-05-27 03:22 . 2013-05-27 03:22 -------- d-----w- c:\programdata\SUPERAntiSpyware.com

2013-05-27 03:12 . 2013-05-27 03:12 -------- d-----w- c:\users\mike\AppData\Roaming\Malwarebytes

2013-05-27 03:11 . 2013-05-28 04:05 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware

2013-05-27 03:11 . 2013-05-27 03:11 -------- d-----w- c:\programdata\Malwarebytes

2013-05-27 03:10 . 2013-05-27 03:10 -------- d-----w- c:\users\mike\AppData\Local\Programs

2013-05-24 09:55 . 2013-05-24 09:55 -------- d-----w- c:\program files (x86)\Electronic Arts

2013-05-23 05:48 . 2013-05-28 04:03 -------- d-----w- c:\program files (x86)\Common Files\BioWare

2013-05-23 05:46 . 2013-05-23 05:46 -------- d-----w- c:\users\hedev

2013-05-15 07:02 . 2013-05-05 21:36 17818624 ----a-w- c:\windows\system32\mshtml.dll

2013-05-15 07:02 . 2013-05-05 21:16 2382848 ----a-w- c:\windows\system32\mshtml.tlb

2013-05-15 07:02 . 2013-05-05 19:12 2382848 ----a-w- c:\windows\SysWow64\mshtml.tlb

2013-05-15 01:52 . 2013-04-10 06:01 265064 ----a-w- c:\windows\system32\drivers\dxgmms1.sys

2013-05-09 07:40 . 2013-05-28 04:03 -------- d-----w- c:\program files (x86)\VideoDownloadConverter_4z

2013-05-07 06:47 . 2013-05-28 04:03 -------- d-----w- c:\users\mike\AppData\Roaming\Razer

2013-05-07 06:45 . 2007-05-08 01:19 85504 ----a-w- c:\windows\SysWow64\DeathAdder64.cpl

2013-05-07 06:44 . 2010-10-01 07:16 13312 ----a-w- c:\windows\system32\drivers\VKbms.sys

2013-05-07 06:44 . 2010-09-30 03:45 6656 ----a-w- c:\windows\system32\drivers\hidkmdf.sys

2013-05-07 06:44 . 2010-03-23 23:37 12032 ----a-w- c:\windows\system32\drivers\danew.sys

2013-05-07 06:44 . 2013-05-07 06:44 -------- d-----w- c:\users\mike\AppData\Roaming\InstallShield

2013-05-07 06:24 . 2013-05-07 06:24 -------- d-----w- c:\windows\SysWow64\searchplugins

2013-05-07 06:24 . 2013-05-07 06:24 -------- d-----w- c:\windows\SysWow64\Extensions

2013-05-07 05:54 . 2013-05-07 05:54 -------- d-----w- C:\components

2013-05-07 05:48 . 2013-05-07 05:48 -------- d-----w- c:\users\mike\AppData\Local\CRE

.

.

.

(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2013-05-15 07:06 . 2013-01-18 11:02 75016696 ----a-w- c:\windows\system32\MRT.exe

2013-05-02 09:06 . 2010-11-21 03:27 278800 ----a-w- c:\windows\system32\MpSigStub.exe

2013-04-19 02:00 . 2013-04-19 02:00 25600 ----a-w- c:\windows\system32\drivers\rzdaendpt.sys

2013-04-19 02:00 . 2013-04-19 02:00 23040 ----a-w- c:\windows\system32\drivers\rzvkeyboard.sys

2013-04-19 02:00 . 2013-04-19 02:00 119808 ----a-w- c:\windows\system32\drivers\rzudd.sys

2013-04-19 01:56 . 2013-04-19 01:56 56832 ----a-w- c:\windows\SysWow64\rzdevinfo.dll

2013-04-19 01:56 . 2013-04-19 01:56 148480 ----a-w- c:\windows\SysWow64\rztouchdll.dll

2013-04-19 01:56 . 2013-04-19 01:56 724480 ----a-w- c:\windows\SysWow64\rzdevicedll.dll

2013-04-19 01:56 . 2013-04-19 01:56 288256 ----a-w- c:\windows\SysWow64\rzaudiodll.dll

2013-04-13 05:49 . 2013-05-15 01:52 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll

2013-04-13 05:49 . 2013-05-15 01:52 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll

2013-04-13 05:49 . 2013-05-15 01:52 308736 ----a-w- c:\windows\apppatch\AppPatch64\AcGenral.dll

2013-04-13 05:49 . 2013-05-15 01:52 111104 ----a-w- c:\windows\apppatch\AppPatch64\acspecfc.dll

2013-04-13 04:45 . 2013-05-15 01:52 474624 ----a-w- c:\windows\apppatch\AcSpecfc.dll

2013-04-13 04:45 . 2013-05-15 01:52 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll

2013-04-12 14:45 . 2013-04-26 18:29 1656680 ----a-w- c:\windows\system32\drivers\ntfs.sys

2013-03-21 02:14 . 2013-03-21 02:14 27663 ----a-w- C:\CC33.tmp

2013-03-19 06:04 . 2013-04-09 23:05 5550424 ----a-w- c:\windows\system32\ntoskrnl.exe

2013-03-19 05:46 . 2013-04-09 23:05 43520 ----a-w- c:\windows\system32\csrsrv.dll

2013-03-19 05:04 . 2013-04-09 23:05 3968856 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe

2013-03-19 05:04 . 2013-04-09 23:05 3913560 ----a-w- c:\windows\SysWow64\ntoskrnl.exe

2013-03-19 04:47 . 2013-04-09 23:05 6656 ----a-w- c:\windows\SysWow64\apisetschema.dll

2013-03-19 03:06 . 2013-04-09 23:05 112640 ----a-w- c:\windows\system32\smss.exe

2013-03-15 05:53 . 2013-04-17 04:22 15508512 ----a-w- c:\windows\system32\nvwgf2umx.dll

2013-03-15 05:53 . 2013-04-17 04:22 13088000 ----a-w- c:\windows\SysWow64\nvwgf2um.dll

2013-03-15 05:53 . 2013-04-17 04:22 9414456 ----a-w- c:\windows\system32\nvcuda.dll

2013-03-15 05:53 . 2013-04-17 04:22 7959000 ----a-w- c:\windows\SysWow64\nvcuda.dll

2013-03-15 05:53 . 2013-04-17 04:22 7573816 ----a-w- c:\windows\system32\nvopencl.dll

2013-03-15 05:53 . 2013-04-17 04:22 6271872 ----a-w- c:\windows\SysWow64\nvopencl.dll

2013-03-15 05:53 . 2013-04-17 04:22 2913056 ----a-w- c:\windows\system32\nvcuvid.dll

2013-03-15 05:53 . 2013-04-17 04:22 2864144 ----a-w- c:\windows\system32\nvapi64.dll

2013-03-15 05:53 . 2013-04-17 04:22 2728736 ----a-w- c:\windows\SysWow64\nvcuvid.dll

2013-03-15 05:53 . 2013-04-17 04:22 26956576 ----a-w- c:\windows\system32\nvoglv64.dll

2013-03-15 05:53 . 2013-04-17 04:22 2539128 ----a-w- c:\windows\SysWow64\nvapi.dll

2013-03-15 05:53 . 2013-04-17 04:22 25256736 ----a-w- c:\windows\system32\nvcompiler.dll

2013-03-15 05:53 . 2013-04-17 04:22 2355488 ----a-w- c:\windows\system32\nvcuvenc.dll

2013-03-15 05:53 . 2013-04-17 04:22 20542752 ----a-w- c:\windows\SysWow64\nvoglv32.dll

2013-03-15 05:53 . 2013-04-17 04:22 1995552 ----a-w- c:\windows\SysWow64\nvcuvenc.dll

2013-03-15 05:53 . 2013-04-17 04:22 1807136 ----a-w- c:\windows\system32\nvdispco6431422.dll

2013-03-15 05:53 . 2013-04-17 04:22 17990800 ----a-w- c:\windows\system32\nvd3dumx.dll

2013-03-15 05:53 . 2013-04-17 04:22 17560352 ----a-w- c:\windows\SysWow64\nvcompiler.dll

2013-03-15 05:53 . 2013-04-17 04:22 1510176 ----a-w- c:\windows\system32\nvdispgenco6431422.dll

2013-03-15 05:53 . 2013-04-17 04:22 15042928 ----a-w- c:\windows\SysWow64\nvd3dum.dll

2013-03-15 05:53 . 2013-04-17 04:22 11048736 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys

2013-03-15 05:07 . 2013-03-15 05:07 559904 ----a-w- c:\windows\SysWow64\nvStreaming.exe

2013-03-15 04:16 . 2013-04-17 04:27 3477280 ----a-w- c:\windows\system32\nvsvc64.dll

2013-03-15 04:16 . 2013-04-17 04:27 6398240 ----a-w- c:\windows\system32\nvcpl.dll

2013-03-15 04:16 . 2013-04-17 04:27 877856 ----a-w- c:\windows\system32\nvvsvc.exe

2013-03-15 04:16 . 2013-04-17 04:27 63776 ----a-w- c:\windows\system32\nvshext.dll

2013-03-15 04:16 . 2013-04-17 04:27 237856 ----a-w- c:\windows\system32\nvmctray.dll

2013-03-13 01:27 . 2013-01-18 02:22 693976 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe

2013-03-13 01:27 . 2013-01-18 02:22 73432 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl

2013-02-14 16:06 . 2013-02-14 16:06 3055616 ----a-w- c:\program files\RaidHubClient-1.1.25.msi

.

.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Note* empty entries & legit default entries are not shown

REGEDIT4

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{B422F1BC-9ADB-48A7-8B13-00C176039DC5}]

c:\progra~2\FASTFR~1\FASTFR~1\FASTFR~1.DLL [bU]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]

"Razer Synapse"="c:\program files (x86)\Razer\Synapse\RzSynapse.exe" [2013-04-23 608104]

"DeathAdder"="c:\program files (x86)\Razer\DeathAdder\razerhid.exe" [2012-01-14 248832]

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"ConsentPromptBehaviorAdmin"= 0 (0x0)

"ConsentPromptBehaviorUser"= 3 (0x3)

"EnableLUA"= 0 (0x0)

"EnableUIADesktopToggle"= 0 (0x0)

"PromptOnSecureDesktop"= 0 (0x0)

.

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]

"LoadAppInit_DLLs"=1 (0x1)

.

R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]

R2 FastFreeConverterUpdt;FastFreeConverterUpdt;c:\program files (x86)\Fast Free Converter\FastFreeConverterUpdt.exe [x]

R2 nxsIO32;NextSensor Kernel I/O Driver;c:\windows\System32\DRIVERS\nxsIO32.sys [x]

R3 cpuz135;cpuz135;c:\users\mike\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x]

R3 cpuz136;cpuz136;c:\users\mike\AppData\Local\Temp\cpuz136\cpuz136_x64.sys [x]

R3 danewFltr;NewDeathAdder Mouse;c:\windows\system32\drivers\danew.sys [2010-03-23 12032]

R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 19456]

R3 RTCore64;RTCore64;c:\program files (x86)\EVGA Precision X\RTCore64.sys [2013-04-05 15176]

R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]

R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]

R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2013-01-18 1255736]

S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-03-15 383264]

S3 FETND62;D-Link PCI Fast Ethernet Adapter Driver;c:\windows\system32\DRIVERS\DLF62X64.SYS [2009-11-24 49792]

S3 rzdaendpt;Razer DeathAdder end point;c:\windows\system32\DRIVERS\rzdaendpt.sys [2013-04-19 25600]

S3 rzudd;Razer Keyboard Driver;c:\windows\system32\DRIVERS\rzudd.sys [2013-04-19 119808]

S3 rzvkeyboard;Razer Virtual Keyboard Driver;c:\windows\system32\DRIVERS\rzvkeyboard.sys [2013-04-19 23040]

S3 VKbms;Razer Gaming Device;c:\windows\system32\DRIVERS\VKbms.sys [2010-10-01 13312]

.

.

--- Other Services/Drivers In Memory ---

.

*NewlyCreated* - FASTFAT

.

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]

2013-05-16 12:22 1642448 ----a-w- c:\program files (x86)\Google\Chrome\Application\26.0.1410.64\Installer\chrmstp.exe

.

Contents of the 'Scheduled Tasks' folder

.

2013-05-28 c:\windows\Tasks\Adobe Flash Player Updater.job

- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-18 01:27]

.

2013-05-28 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-04-17 12:37]

.

2013-05-19 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-04-17 12:37]

.

.

--------- X64 Entries -----------

.

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2009-08-19 8067616]

"VideoDownloadConverter Home Page Guard 64 bit"="c:\progra~2\VIDEOD~2\bar\1.bin\AppIntegrator64.exe" [2013-05-09 548936]

.

------- Supplementary Scan -------

.

uLocal Page = c:\windows\system32\blank.htm

uStart Page = https://www.google.com/

mLocal Page = c:\windows\SysWOW64\blank.htm

Trusted Zone: clonewarsadventures.com

Trusted Zone: freerealms.com

Trusted Zone: soe.com

Trusted Zone: sony.com

TCP: DhcpNameServer = 192.168.1.1

.

- - - - ORPHANS REMOVED - - - -

.

BHO-{312f84fb-8970-4fd3-bddb-7012eac4afc9} - c:\progra~2\VIDEOD~2\bar\1.bin\4zbar.dll

BHO-{c547c6c2-561b-4169-a2a5-20ba771ca93b} - c:\program files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll

Toolbar-{48586425-6bb7-4f51-8dc6-38c88e3ebb58} - c:\program files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll

Wow6432Node-HKCU-Run-zASRockInstantBoot - (no file)

Wow6432Node-HKLM-Run-<NO NAME> - (no file)

AddRemove-VDC_is1 - c:\program files (x86)\Video Download Converter\unins000.exe

.

.

.

--------------------- LOCKED REGISTRY KEYS ---------------------

.

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]

@Denied: (A 2) (Everyone)

@="FlashBroker"

"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_6_602_180_ActiveX.exe,-101"

.

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]

"Enabled"=dword:00000001

.

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]

@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_6_602_180_ActiveX.exe"

.

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

.

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]

@Denied: (A 2) (Everyone)

@="IFlashBroker5"

.

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]

@="{00020424-0000-0000-C000-000000000046}"

.

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

"Version"="1.0"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]

@Denied: (A 2) (Everyone)

@="FlashBroker"

"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_6_602_180_ActiveX.exe,-101"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]

"Enabled"=dword:00000001

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_6_602_180_ActiveX.exe"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]

@Denied: (A 2) (Everyone)

@="Shockwave Flash Object"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx"

"ThreadingModel"="Apartment"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]

@="0"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]

@="ShockwaveFlash.ShockwaveFlash.11"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx, 1"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]

@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]

@="1.0"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

@="ShockwaveFlash.ShockwaveFlash"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]

@Denied: (A 2) (Everyone)

@="Macromedia Flash Factory Object"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx"

"ThreadingModel"="Apartment"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]

@="FlashFactory.FlashFactory.1"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]

@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx, 1"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]

@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]

@="1.0"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]

@="FlashFactory.FlashFactory"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]

@Denied: (A 2) (Everyone)

@="IFlashBroker5"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]

@="{00020424-0000-0000-C000-000000000046}"

.

[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

"Version"="1.0"

.

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]

@Denied: (Full) (Everyone)

.

Completion time: 2013-05-27 21:28:55

ComboFix-quarantined-files.txt 2013-05-28 04:28

ComboFix2.txt 2013-05-27 13:35

ComboFix3.txt 2013-05-27 13:00

ComboFix4.txt 2013-05-27 07:58

.

Pre-Run: 171,787,935,744 bytes free

Post-Run: 172,245,016,576 bytes free

.

- - End Of File - - 8F9AB33975F353C7568621FF3DA68972

Link to post
Share on other sites

  • Staff

Hello yokoop

I would like you to try and run these next.

TDSSKiller

Please download the latest version of TDSSKiller from here and save it to your Desktop.

  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.
  • Put a checkmark beside loaded modules.
  • A reboot will be needed to apply the changes. Do it.
  • TDSSKiller will launch automatically after the reboot. Also your computer may seem very slow and unusable. This is normal. Give it enough time to load your background programs.
  • Then click on Change parameters in TDSSKiller.
  • Check all boxes then click OK.
  • Click the Start Scan button.
  • The scan should take no longer than 2 minutes.
  • If a suspicious object is detected, the default action will be Skip, click on Continue.
  • If malicious objects are found, they will show in the Scan results
  • Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.
    Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.
  • more than one report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". The one that I need is the larger one. Please copy and paste the contents of that file here.
    Note** this report can be very long - so if the website gives you an error saying it is to long you may attache it
    If the forum still complains about it being to long send me everything that is at the end of the report after where it says
    ==================
    Scan finished
    ==================

and I will see if I want to see the whole report

--RogueKiller--

Download & SAVE to your Desktop RogueKiller for 32bit or Roguekiller for 64bit

  • Quit all programs that you may have started.
  • Please disconnect any external drives from the computer before you run this scan!
  • For Vista or Windows 7, right-click and select "Run as Administrator to start"
  • For Windows XP, double-click to start.
  • Wait until Prescan has finished ...
  • Then Click on "Scan" button
  • Wait until the Status box shows "Scan Finished"
  • click on "delete"
  • Wait until the Status box shows "Deleting Finished"
  • Click on "Report" and copy/paste the content of the Notepad into your next reply.
  • the scan will make two reports the one I would like to see is called RKreport[2].txt on your Desktop
  • Exit/Close RogueKiller+

send me the reports made from TDSSKiller and Roguekiller and also let me know how the computer is doing at this time.

Gringo

Link to post
Share on other sites

RogueKiller V8.5.4 _x64_ [Mar 18 2013] by Tigzy

mail : tigzyRK<at>gmail<dot>com

Feedback : http://www.geekstogo.com/forum/files/file/413-roguekiller/

Website : http://tigzy.geekstogo.com/roguekiller.php

Blog : http://tigzyrk.blogspot.com/

Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version

Started in : Normal mode

User : mike [Admin rights]

Mode : Remove -- Date : 05/27/2013 22:15:55

| ARK || FAK || MBR |

¤¤¤ Bad processes : 0 ¤¤¤

¤¤¤ Registry Entries : 5 ¤¤¤

[HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> DELETED

[HJ] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> REPLACED (2)

[HJ] HKLM\[...]\System : EnableLUA (0) -> REPLACED (1)

[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REPLACED (0)

[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REPLACED (0)

¤¤¤ Particular Files / Folders: ¤¤¤

¤¤¤ Driver : [NOT LOADED] ¤¤¤

¤¤¤ HOSTS File: ¤¤¤

--> C:\Windows\system32\drivers\etc\hosts

127.0.0.1 localhost

¤¤¤ MBR Check: ¤¤¤

+++++ PhysicalDrive0: ST3250318AS ATA Device +++++

--- User ---

[MBR] 973df6d51f70a01d54739941624d1e66

[bSP] 683d8b88b72df857040301d1de35b3c8 : Windows 7/8 MBR Code

Partition table:

0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 238373 Mo

User = LL1 ... OK!

User = LL2 ... OK!

+++++ PhysicalDrive1: PNY USB 2.0 FD USB Device +++++

--- User ---

[MBR] a6a2b8906ce4327a51ace57fc4786796

[bSP] 9e3b3c473b1db0daa516427cdae6e1cc : Windows 7/8 MBR Code

Partition table:

0 - [ACTIVE] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 2048 | Size: 31200 Mo

User = LL1 ... OK!

Error reading LL2 MBR!

Finished : << RKreport[2]_D_05272013_02d2215.txt >>

RKreport[1]_S_05272013_02d2214.txt ; RKreport[2]_D_05272013_02d2215.txt

Link to post
Share on other sites

  • Staff

Hello yokoop

Please download Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatibale with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

  • Double-click to run it. When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
  • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.

Gringo

Link to post
Share on other sites

  • Staff

Hello yokoop

first I would like you to go here and click on the fixit button - http://support.microsoft.com/kb/923737

Then I want you to do the following

  • Start Internet Explorer.
  • click on "safety"
  • click on "Delete Browsing History"
  • make sure all boxes are checked
  • click on "Delete"
  • click on "Tools",
  • click "Internet Options".
  • On the "Advanced" tab, click "Reset"
  • put a check mark next to "Delete Personal Settings"
  • click "Reset" to confirm
  • when complete click the "Close" button
  • restart IE

Gringo

Link to post
Share on other sites

well your ie fix worked good enough to get fast bar dl here is your txt files and good morning :ph34r:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-05-2013

Ran by mike (administrator) on 28-05-2013 05:54:02

Running from C:\Users\mike\Desktop

Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)

Internet Explorer Version 9

Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe

(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe

(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe

() C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\AppIntegrator64.exe

(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler.exe

(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.145\GoogleCrashHandler64.exe

(Razer USA Ltd) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe

() C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe

(Razer Inc.) C:\Program Files (x86)\Razer\DeathAdder\razerofa.exe

() C:\Program Files (x86)\Razer\DeathAdder\vdDaemon.exe

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe

() C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe

(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Farbar) C:\Users\mike\Desktop\FRST64.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [8067616 2009-08-18] (Realtek Semiconductor)

HKLM\...\Run: [VideoDownloadConverter Home Page Guard 64 bit] "C:\PROGRA~2\VIDEOD~2\bar\1.bin\AppIntegrator64.exe" [548936 2013-05-09] ()

HKLM\...\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [1281512 2013-01-27] (Microsoft Corporation)

HKLM-x32\...\Run: [] [x]

HKLM-x32\...\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe" [608104 2013-04-22] (Razer USA Ltd)

HKLM-x32\...\Run: [DeathAdder] C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe [248832 2012-01-14] ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

HKLM-x32 SearchScopes: DefaultScope {2AFE736E-04A4-4DB6-BD48-6632D142A72F} URL =

HKCU SearchScopes: DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =

Toolbar: HKLM-x32 - VideoDownloadConverter - {48586425-6bb7-4f51-8dc6-38c88e3ebb58} - C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll No File

PDF: HKLM-x32 {FFB3A759-98B1-446F-BDA9-909C6EB18CC7} http://utilities.pcpitstop.com/da2/PCPitStop2.cab

Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - No File

Handler-x32: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\Advisor\System\BAVoilaX.dll (Belarc, Inc.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

Chrome:

=======

CHR HomePage: hxxp://www.google.com

CHR RestoreOnStartup: "hxxp://www.google.com/", "hxxp://search.conduit.com/?ctid=CT3298566&SearchSource=48&CUI=UN17529578882898514&UM=2", "hxxp://search.yahoo.com/?type=800236&fr=spigot-yhp-ch"

CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}

CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}

CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.94\PepperFlash\pepflashplayer.dll ()

CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer

CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.94\ppGoogleNaClPluginChrome.dll ()

CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.94\pdf.dll ()

CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)

CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)

CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)

CHR Plugin: (Java Platform SE 7 U13) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)

CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)

CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)

CHR Plugin: (Roblox Launcher Plugin) - C:\Program Files (x86)\Roblox\Versions\version-9ae7cc04e47a4b12\\NPRobloxProxy.dll ( ROBLOX Corporation)

CHR Plugin: (Java Deployment Toolkit 7.0.130.20) - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)

CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)

CHR Extension: (Google Docs) - C:\Users\mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0

CHR Extension: (Google Drive) - C:\Users\mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0

CHR Extension: (YouTube) - C:\Users\mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0

CHR Extension: (Google Search) - C:\Users\mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0

CHR Extension: (Gmail) - C:\Users\mike\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0

==================== Services (Whitelisted) =================

R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22056 2013-01-27] (Microsoft Corporation)

S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [379360 2013-01-27] (Microsoft Corporation)

S2 FastFreeConverterUpdt; C:\Program Files (x86)\Fast Free Converter\FastFreeConverterUpdt.exe [x]

==================== Drivers (Whitelisted) ====================

R3 FETND62; C:\Windows\System32\DRIVERS\DLF62X64.SYS [49792 2009-11-23] (D-Link )

S3 FETNDIS; C:\Windows\System32\DRIVERS\fet6x64.sys [47872 2009-06-10] (VIA Technologies, Inc. )

R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [230320 2013-01-20] (Microsoft Corporation)

S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [130008 2013-01-20] (Microsoft Corporation)

S2 nxsIO32; C:\Windows\SysWow64\DRIVERS\nxsIO32.sys [2208 2013-01-19] ()

R3 RTCore64; C:\Program Files (x86)\EVGA Precision X\RTCore64.sys [15176 2013-04-05] ()

R3 rzdaendpt; C:\Windows\System32\DRIVERS\rzdaendpt.sys [25600 2013-04-18] (Razer USA Ltd)

R3 rzvkeyboard; C:\Windows\System32\DRIVERS\rzvkeyboard.sys [23040 2013-04-18] (Razer USA Ltd)

S3 catchme; \??\C:\ComboFix\catchme.sys [x]

S3 cpuz135; \??\C:\Users\mike\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x]

S3 cpuz136; \??\C:\Users\mike\AppData\Local\Temp\cpuz136\cpuz136_x64.sys [x]

==================== NetSvcs (Whitelisted) ===================

==================== One Month Created Files and Folders ========

2013-05-28 05:53 - 2013-05-28 05:53 - 01915616 ____A (Farbar) C:\Users\mike\Desktop\FRST64.exe

2013-05-28 05:53 - 2013-05-28 05:53 - 00000000 ____D C:\FRST

2013-05-28 05:30 - 2013-05-28 05:30 - 00347424 ____A (Microsoft Corporation) C:\Users\mike\Downloads\MicrosoftFixit.ProgramInstallUninstall.RNP.1072931749853602.3.1.Run.exe

2013-05-28 05:04 - 2013-05-28 05:04 - 00659968 ____A C:\Users\mike\Downloads\MicrosoftFixit50195.msi

2013-05-28 04:14 - 2013-05-28 04:14 - 13475464 ____A (Microsoft Corporation) C:\Users\mike\Downloads\mseinstall (1).exe

2013-05-27 23:19 - 2013-05-27 23:19 - 00001785 ____A C:\Users\mike\Desktop\RKreport[10]_S_05272013_02d2319.txt

2013-05-27 23:17 - 2013-05-27 23:17 - 00001746 ____A C:\Users\mike\Desktop\RKreport[9]_S_05272013_02d2317.txt

2013-05-27 22:20 - 2013-05-27 22:20 - 00001711 ____A C:\Users\mike\Desktop\RKreport[8]_D_05272013_02d2220.txt

2013-05-27 22:20 - 2013-05-27 22:20 - 00001672 ____A C:\Users\mike\Desktop\RKreport[7]_S_05272013_02d2220.txt

2013-05-27 22:16 - 2013-05-27 22:16 - 00001385 ____A C:\Users\mike\Desktop\RKreport[6]_SC_05272013_02d2216.txt

2013-05-27 22:16 - 2013-05-27 22:16 - 00000882 ____A C:\Users\mike\Desktop\RKreport[3]_H_05272013_02d2216.txt

2013-05-27 22:16 - 2013-05-27 22:16 - 00000803 ____A C:\Users\mike\Desktop\RKreport[5]_DN_05272013_02d2216.txt

2013-05-27 22:16 - 2013-05-27 22:16 - 00000767 ____A C:\Users\mike\Desktop\RKreport[4]_PR_05272013_02d2216.txt

2013-05-27 22:15 - 2013-05-27 22:15 - 00001878 ____A C:\Users\mike\Desktop\RKreport[2]_D_05272013_02d2215.txt

2013-05-27 22:14 - 2013-05-27 22:14 - 00002023 ____A C:\Users\mike\Desktop\RKreport[1]_S_05272013_02d2214.txt

2013-05-27 22:13 - 2013-05-27 23:17 - 00000000 ____D C:\Users\mike\Desktop\RK_Quarantine

2013-05-27 22:12 - 2013-05-27 22:12 - 02237968 ____A (Kaspersky Lab ZAO) C:\Users\mike\Desktop\tdsskiller.exe

2013-05-27 22:12 - 2013-05-27 22:12 - 00791040 ____A C:\Users\mike\Desktop\RogueKillerX64.exe

2013-05-27 21:28 - 2013-05-27 21:28 - 00018180 ____A C:\ComboFix.txt

2013-05-27 21:19 - 2011-06-25 23:45 - 00256000 ____A C:\Windows\PEV.exe

2013-05-27 21:19 - 2010-11-07 10:20 - 00208896 ____A C:\Windows\MBR.exe

2013-05-27 21:19 - 2000-08-30 17:00 - 00406528 ____A (SteelWerX) C:\Windows\SWSC.exe

2013-05-27 21:19 - 2000-08-30 17:00 - 00098816 ____A C:\Windows\sed.exe

2013-05-27 21:19 - 2000-08-30 17:00 - 00080412 ____A C:\Windows\grep.exe

2013-05-27 21:19 - 2000-08-30 17:00 - 00068096 ____A C:\Windows\zip.exe

2013-05-27 21:18 - 2013-05-27 21:27 - 00000000 ____D C:\Windows\erdnt

2013-05-27 21:15 - 2013-05-27 21:15 - 00007613 ____A C:\Users\mike\Desktop\JRT.txt

2013-05-27 21:12 - 2013-05-27 21:12 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\mike\Desktop\JRT.exe

2013-05-27 21:11 - 2013-05-27 21:11 - 05073915 ____R (Swearware) C:\Users\mike\Desktop\ComboFix.exe

2013-05-27 20:15 - 2013-05-27 20:15 - 00000873 ____A C:\AdwCleaner[s3].txt

2013-05-27 20:13 - 2013-05-27 20:13 - 00000819 ____A C:\AdwCleaner[R2].txt

2013-05-27 10:29 - 2013-05-28 04:16 - 00000000 ____D C:\Program Files\Microsoft Security Client

2013-05-27 10:29 - 2013-05-28 04:16 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client

2013-05-27 07:38 - 2013-05-27 07:38 - 00006709 ____A C:\Users\mike\Desktop\hijackthis.log

2013-05-27 07:01 - 2013-05-27 07:01 - 00000000 ____D C:\Program Files (x86)\VS Revo Group

2013-05-27 00:50 - 2009-04-19 21:56 - 00060416 ____A (NirSoft) C:\Windows\NIRCMD.exe

2013-05-27 00:50 - 2000-08-30 17:00 - 00518144 ____A (SteelWerX) C:\Windows\SWREG.exe

2013-05-27 00:47 - 2013-05-27 21:28 - 00000000 ____D C:\Qoobox

2013-05-27 00:31 - 2013-05-27 00:31 - 00000000 ____D C:\Windows\ERUNT

2013-05-27 00:30 - 2013-05-27 21:12 - 00000000 ____D C:\JRT

2013-05-27 00:17 - 2013-05-27 00:18 - 00001016 ____A C:\AdwCleaner[s2].txt

2013-05-27 00:11 - 2013-05-27 00:12 - 00006350 ____A C:\AdwCleaner[s1].txt

2013-05-27 00:10 - 2013-05-27 00:10 - 00006782 ____A C:\AdwCleaner[R1].txt

2013-05-26 23:26 - 2013-05-26 23:26 - 00000000 ____D C:\Users\mike\Desktop\mbar-1.06.0.1003

2013-05-26 23:26 - 2013-05-26 23:22 - 13169742 ____A C:\Users\mike\Desktop\mbar-1.06.0.1003.zip

2013-05-26 20:22 - 2013-05-27 21:03 - 00000000 ____D C:\Program Files\SUPERAntiSpyware

2013-05-26 20:22 - 2013-05-26 20:22 - 00000000 ____D C:\Users\mike\AppData\Roaming\SUPERAntiSpyware.com

2013-05-26 20:22 - 2013-05-26 20:22 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com

2013-05-26 20:12 - 2013-05-26 20:12 - 00000000 ____D C:\Users\mike\AppData\Roaming\Malwarebytes

2013-05-26 20:11 - 2013-05-27 21:05 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware

2013-05-26 20:11 - 2013-05-26 20:11 - 00000000 ____D C:\ProgramData\Malwarebytes

2013-05-26 19:48 - 2013-05-26 19:48 - 00000000 ____D C:\ProgramData\Sun

2013-05-26 16:06 - 2013-05-26 16:14 - 27389932 ____A C:\Users\mike\Downloads\Unconfirmed 275273.crdownload

2013-05-25 20:55 - 2013-05-27 08:48 - 00003014 ____A C:\Users\mike\Desktop\Rkill.txt

2013-05-25 20:55 - 2013-05-25 20:55 - 01761408 ____A (Bleeping Computer, LLC) C:\Users\mike\Downloads\rkill.exe

2013-05-24 02:55 - 2013-05-24 02:55 - 00000000 ____D C:\Program Files (x86)\Electronic Arts

2013-05-24 02:52 - 2013-05-27 07:12 - 00010074 ____A C:\Users\mike\Documents\Uninstall STAR WARS The Old Republic.log

2013-05-23 17:58 - 2013-05-23 18:00 - 16213275 ____A C:\Users\mike\Downloads\EVGAPrecisionX (3).zip

2013-05-22 22:46 - 2013-05-24 07:59 - 00013870 ____A C:\Users\mike\Documents\Install STAR WARS The Old Republic.log

2013-05-22 22:46 - 2013-05-22 22:46 - 00000000 ____D C:\users\hedev

2013-05-16 05:23 - 2013-05-16 05:23 - 00002212 ____A C:\Users\Public\Desktop\Google Earth.lnk

2013-05-16 05:21 - 2013-05-16 05:21 - 00781960 ____A (Google Inc.) C:\Users\mike\Downloads\googleupdatesetup.exe

2013-05-15 12:51 - 2013-05-15 12:51 - 00266320 ____A C:\Windows\Minidump\051513-18593-01.dmp

2013-05-15 00:02 - 2013-05-05 14:36 - 17818624 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll

2013-05-15 00:02 - 2013-05-05 14:16 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb

2013-05-15 00:02 - 2013-05-05 12:25 - 12324864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll

2013-05-15 00:02 - 2013-05-05 12:12 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb

2013-05-15 00:01 - 2013-04-04 18:19 - 10926080 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll

2013-05-15 00:01 - 2013-04-04 18:08 - 02312704 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll

2013-05-15 00:01 - 2013-04-04 18:01 - 01346560 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll

2013-05-15 00:01 - 2013-04-04 18:00 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll

2013-05-15 00:01 - 2013-04-04 17:59 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl

2013-05-15 00:01 - 2013-04-04 17:58 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll

2013-05-15 00:01 - 2013-04-04 17:57 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll

2013-05-15 00:01 - 2013-04-04 17:56 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe

2013-05-15 00:01 - 2013-04-04 17:55 - 00816640 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll

2013-05-15 00:01 - 2013-04-04 17:55 - 00599040 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll

2013-05-15 00:01 - 2013-04-04 17:54 - 02147840 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll

2013-05-15 00:01 - 2013-04-04 17:54 - 00729088 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll

2013-05-15 00:01 - 2013-04-04 17:51 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll

2013-05-15 00:01 - 2013-04-04 17:46 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll

2013-05-15 00:01 - 2013-04-04 15:11 - 01800704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll

2013-05-15 00:01 - 2013-04-04 15:09 - 09738752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll

2013-05-15 00:01 - 2013-04-04 15:02 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl

2013-05-15 00:01 - 2013-04-04 15:02 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll

2013-05-15 00:01 - 2013-04-04 15:02 - 01104384 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll

2013-05-15 00:01 - 2013-04-04 15:01 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll

2013-05-15 00:01 - 2013-04-04 14:59 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll

2013-05-15 00:01 - 2013-04-04 14:58 - 00717824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll

2013-05-15 00:01 - 2013-04-04 14:58 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe

2013-05-15 00:01 - 2013-04-04 14:57 - 00420864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll

2013-05-15 00:01 - 2013-04-04 14:56 - 00607744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll

2013-05-15 00:01 - 2013-04-04 14:55 - 01796096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll

2013-05-15 00:01 - 2013-04-04 14:54 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll

2013-05-15 00:01 - 2013-04-04 14:50 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll

2013-05-14 18:52 - 2013-04-09 23:01 - 00983400 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dxgkrnl.sys

2013-05-14 18:52 - 2013-04-09 23:01 - 00265064 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dxgmms1.sys

2013-05-14 18:52 - 2013-04-09 20:30 - 03153920 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys

2013-05-14 18:52 - 2013-03-18 22:53 - 00230400 ____A (Microsoft Corporation) C:\Windows\System32\wwansvc.dll

2013-05-14 18:52 - 2013-03-18 22:53 - 00048640 ____A (Microsoft Corporation) C:\Windows\System32\wwanprotdim.dll

2013-05-14 18:52 - 2013-02-26 23:02 - 00111448 ____A (Microsoft Corporation) C:\Windows\System32\consent.exe

2013-05-14 18:52 - 2013-02-26 22:52 - 14172672 ____A (Microsoft Corporation) C:\Windows\System32\shell32.dll

2013-05-14 18:52 - 2013-02-26 22:52 - 00197120 ____A (Microsoft Corporation) C:\Windows\System32\shdocvw.dll

2013-05-14 18:52 - 2013-02-26 22:48 - 01930752 ____A (Microsoft Corporation) C:\Windows\System32\authui.dll

2013-05-14 18:52 - 2013-02-26 22:47 - 00070144 ____A (Microsoft Corporation) C:\Windows\System32\appinfo.dll

2013-05-14 18:52 - 2013-02-26 21:55 - 12872704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll

2013-05-14 18:52 - 2013-02-26 21:55 - 00180224 ____A (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll

2013-05-14 18:52 - 2013-02-26 21:49 - 01796096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll

2013-05-14 18:52 - 2011-02-03 04:25 - 00144384 ____A (Microsoft Corporation) C:\Windows\System32\cdd.dll

2013-05-09 00:40 - 2013-05-27 21:03 - 00000000 ____D C:\Program Files (x86)\VideoDownloadConverter_4z

2013-05-09 00:40 - 2013-05-09 00:40 - 00215552 ____A C:\Users\mike\Downloads\VideoDownloadConvert.exe

2013-05-06 23:55 - 2013-05-06 23:56 - 12781984 ____A (Razer USA Ltd.) C:\Users\mike\Downloads\Razer_Synapse2_V1.09.05.exe

2013-05-06 23:47 - 2013-05-27 21:03 - 00000000 ____D C:\Users\mike\AppData\Roaming\Razer

2013-05-06 23:45 - 2007-05-07 18:19 - 00085504 ____A (Razer USA Ltd.) C:\Windows\SysWOW64\DeathAdder64.cpl

2013-05-06 23:44 - 2013-05-06 23:44 - 00000000 ____D C:\Users\mike\AppData\Roaming\InstallShield

2013-05-06 23:44 - 2010-10-01 00:16 - 00013312 ____A (Windows ® Win 7 DDK provider) C:\Windows\System32\Drivers\VKbms.sys

2013-05-06 23:44 - 2010-09-29 20:45 - 00006656 ____A (Windows ® Win 7 DDK provider) C:\Windows\System32\Drivers\hidkmdf.sys

2013-05-06 23:44 - 2010-03-23 16:37 - 00012032 ____A (Razer (Asia-Pacific) Pte Ltd) C:\Windows\System32\Drivers\danew.sys

2013-05-06 23:43 - 2013-05-06 23:43 - 12559800 ____A C:\Users\mike\Downloads\DeathAdder_driver_v3.05_Eng.exe

2013-05-06 23:24 - 2013-05-06 23:24 - 00000000 ____D C:\Windows\SysWOW64\searchplugins

2013-05-06 23:24 - 2013-05-06 23:24 - 00000000 ____D C:\Windows\SysWOW64\Extensions

2013-05-06 23:24 - 2013-05-06 23:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox

2013-05-06 23:23 - 2013-05-06 23:23 - 02821960 ____A C:\Users\mike\Downloads\installer_razer_deathadder_mouse_configuration_English.exe

2013-05-06 22:57 - 2013-05-06 22:57 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_rzudd_01009.Wdf

2013-05-06 22:56 - 2013-05-06 22:56 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_rzdaendpt_01009.Wdf

2013-05-06 22:55 - 2013-05-06 23:45 - 00065118 ____A C:\Windows\DPINST.LOG

2013-05-06 22:48 - 2013-05-06 22:48 - 00000000 ____D C:\Users\mike\AppData\Local\CRE

==================== One Month Modified Files and Folders =======

2013-05-28 05:53 - 2013-05-28 05:53 - 01915616 ____A (Farbar) C:\Users\mike\Desktop\FRST64.exe

2013-05-28 05:53 - 2013-05-28 05:53 - 00000000 ____D C:\FRST

2013-05-28 05:48 - 2013-04-17 05:38 - 00000894 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

2013-05-28 05:43 - 2009-07-13 21:45 - 00029120 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0

2013-05-28 05:43 - 2009-07-13 21:45 - 00029120 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0

2013-05-28 05:30 - 2013-05-28 05:30 - 00347424 ____A (Microsoft Corporation) C:\Users\mike\Downloads\MicrosoftFixit.ProgramInstallUninstall.RNP.1072931749853602.3.1.Run.exe

2013-05-28 05:28 - 2013-04-03 09:35 - 00033706 ____A C:\Windows\IE10_main.log

2013-05-28 05:28 - 2013-01-17 18:52 - 01372363 ____A C:\Windows\WindowsUpdate.log

2013-05-28 05:27 - 2013-01-17 19:22 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job

2013-05-28 05:04 - 2013-05-28 05:04 - 00659968 ____A C:\Users\mike\Downloads\MicrosoftFixit50195.msi

2013-05-28 04:16 - 2013-05-27 10:29 - 00000000 ____D C:\Program Files\Microsoft Security Client

2013-05-28 04:16 - 2013-05-27 10:29 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client

2013-05-28 04:16 - 2013-01-17 21:48 - 00001945 ____A C:\Windows\epplauncher.mif

2013-05-28 04:14 - 2013-05-28 04:14 - 13475464 ____A (Microsoft Corporation) C:\Users\mike\Downloads\mseinstall (1).exe

2013-05-28 04:04 - 2013-04-17 05:38 - 00002255 ____A C:\Users\Public\Desktop\Google Chrome.lnk

2013-05-28 04:01 - 2009-07-13 22:13 - 00778834 ____A C:\Windows\System32\PerfStringBackup.INI

2013-05-28 03:57 - 2013-04-17 05:37 - 00000890 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

2013-05-28 03:57 - 2013-01-17 19:24 - 00000000 ____D C:\ProgramData\NVIDIA

2013-05-28 03:57 - 2009-07-13 22:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT

2013-05-28 03:57 - 2009-07-13 21:51 - 00061890 ____A C:\Windows\setupact.log

2013-05-27 23:19 - 2013-05-27 23:19 - 00001785 ____A C:\Users\mike\Desktop\RKreport[10]_S_05272013_02d2319.txt

2013-05-27 23:17 - 2013-05-27 23:17 - 00001746 ____A C:\Users\mike\Desktop\RKreport[9]_S_05272013_02d2317.txt

2013-05-27 23:17 - 2013-05-27 22:13 - 00000000 ____D C:\Users\mike\Desktop\RK_Quarantine

2013-05-27 22:20 - 2013-05-27 22:20 - 00001711 ____A C:\Users\mike\Desktop\RKreport[8]_D_05272013_02d2220.txt

2013-05-27 22:20 - 2013-05-27 22:20 - 00001672 ____A C:\Users\mike\Desktop\RKreport[7]_S_05272013_02d2220.txt

2013-05-27 22:18 - 2010-11-20 20:47 - 00025826 ____A C:\Windows\PFRO.log

2013-05-27 22:16 - 2013-05-27 22:16 - 00001385 ____A C:\Users\mike\Desktop\RKreport[6]_SC_05272013_02d2216.txt

2013-05-27 22:16 - 2013-05-27 22:16 - 00000882 ____A C:\Users\mike\Desktop\RKreport[3]_H_05272013_02d2216.txt

2013-05-27 22:16 - 2013-05-27 22:16 - 00000803 ____A C:\Users\mike\Desktop\RKreport[5]_DN_05272013_02d2216.txt

2013-05-27 22:16 - 2013-05-27 22:16 - 00000767 ____A C:\Users\mike\Desktop\RKreport[4]_PR_05272013_02d2216.txt

2013-05-27 22:15 - 2013-05-27 22:15 - 00001878 ____A C:\Users\mike\Desktop\RKreport[2]_D_05272013_02d2215.txt

2013-05-27 22:14 - 2013-05-27 22:14 - 00002023 ____A C:\Users\mike\Desktop\RKreport[1]_S_05272013_02d2214.txt

2013-05-27 22:12 - 2013-05-27 22:12 - 02237968 ____A (Kaspersky Lab ZAO) C:\Users\mike\Desktop\tdsskiller.exe

2013-05-27 22:12 - 2013-05-27 22:12 - 00791040 ____A C:\Users\mike\Desktop\RogueKillerX64.exe

2013-05-27 21:28 - 2013-05-27 21:28 - 00018180 ____A C:\ComboFix.txt

2013-05-27 21:28 - 2013-05-27 00:47 - 00000000 ____D C:\Qoobox

2013-05-27 21:27 - 2013-05-27 21:18 - 00000000 ____D C:\Windows\erdnt

2013-05-27 21:27 - 2013-01-17 18:52 - 00000000 ____D C:\users\mike

2013-05-27 21:27 - 2009-07-13 19:34 - 00000215 ____A C:\Windows\system.ini

2013-05-27 21:15 - 2013-05-27 21:15 - 00007613 ____A C:\Users\mike\Desktop\JRT.txt

2013-05-27 21:12 - 2013-05-27 21:12 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\mike\Desktop\JRT.exe

2013-05-27 21:12 - 2013-05-27 00:30 - 00000000 ____D C:\JRT

2013-05-27 21:11 - 2013-05-27 21:11 - 05073915 ____R (Swearware) C:\Users\mike\Desktop\ComboFix.exe

2013-05-27 21:05 - 2013-05-26 20:11 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware

2013-05-27 21:05 - 2013-01-18 01:23 - 00000000 ____D C:\Windows\Minidump

2013-05-27 21:05 - 2009-07-13 20:20 - 00000000 ____D C:\Windows\servicing

2013-05-27 21:03 - 2013-05-26 20:22 - 00000000 ____D C:\Program Files\SUPERAntiSpyware

2013-05-27 21:03 - 2013-05-09 00:40 - 00000000 ____D C:\Program Files (x86)\VideoDownloadConverter_4z

2013-05-27 21:03 - 2013-05-06 23:47 - 00000000 ____D C:\Users\mike\AppData\Roaming\Razer

2013-05-27 21:03 - 2013-04-17 05:37 - 00000000 ____D C:\Program Files (x86)\Google

2013-05-27 21:03 - 2013-03-06 11:06 - 00000000 ____D C:\Program Files (x86)\EVGA Precision X

2013-05-27 21:03 - 2013-02-27 05:58 - 00000000 ____D C:\Program Files (x86)\RADVideo

2013-05-27 21:03 - 2013-02-25 21:23 - 00000000 ____D C:\ProgramData\MFAData

2013-05-27 21:03 - 2013-02-20 21:29 - 00000000 ____D C:\Program Files (x86)\sony online

2013-05-27 21:03 - 2013-02-14 09:08 - 00000000 ____D C:\Users\mike\AppData\Local\Apps\Raid Hub Client

2013-05-27 21:03 - 2013-02-13 00:55 - 00000000 ____D C:\Users\mike\AppData\Local\Unity

2013-05-27 21:03 - 2013-02-13 00:55 - 00000000 ____D C:\Users\mike\AppData\Local\Apps\2.0

2013-05-27 21:03 - 2013-02-11 07:18 - 00000000 ____D C:\Program Files (x86)\Belarc

2013-05-27 21:03 - 2013-02-11 05:14 - 00000000 ____D C:\Program Files (x86)\PCPitstop

2013-05-27 21:03 - 2013-02-11 05:01 - 00000000 ____D C:\ProgramData\~0

2013-05-27 21:03 - 2013-02-04 23:07 - 00000000 ____D C:\Program Files (x86)\Java

2013-05-27 21:03 - 2013-02-04 03:25 - 00000000 ____D C:\Users\mike\AppData\Local\Google

2013-05-27 21:03 - 2013-01-21 04:34 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia

2013-05-27 21:03 - 2013-01-21 04:34 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia

2013-05-27 21:03 - 2013-01-18 08:56 - 00000000 ____D C:\Program Files\sony online

2013-05-27 21:03 - 2013-01-18 00:39 - 00000000 ____D C:\Users\mike\AppData\Roaming\Ventrilo

2013-05-27 21:03 - 2013-01-17 19:22 - 00000000 ____D C:\Windows\SysWOW64\Macromed

2013-05-27 21:03 - 2013-01-17 19:22 - 00000000 ____D C:\Windows\System32\Macromed

2013-05-27 21:03 - 2013-01-17 19:10 - 00000000 ____D C:\Program Files (x86)\Adobe

2013-05-27 21:03 - 2009-07-13 22:32 - 00000000 ____D C:\Program Files\Windows Photo Viewer

2013-05-27 21:03 - 2009-07-13 22:32 - 00000000 ____D C:\Program Files\Windows Defender

2013-05-27 21:03 - 2009-07-13 20:20 - 00000000 ____D C:\Windows\registration

2013-05-27 21:03 - 2009-07-13 20:20 - 00000000 ____D C:\Windows\AppCompat

2013-05-27 21:01 - 2013-04-16 21:28 - 00000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Macromedia

2013-05-27 21:01 - 2013-01-17 19:08 - 00000000 ____D C:\Users\mike\Desktop\my stuff

2013-05-27 21:00 - 2013-03-12 16:40 - 00000000 ____D C:\Users\mike\AppData\Local\Sony Online Entertainment

2013-05-27 20:59 - 2013-03-12 18:30 - 00000000 ____D C:\Program Files\Microsoft Silverlight

2013-05-27 20:59 - 2013-03-12 18:30 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight

2013-05-27 20:59 - 2013-01-17 19:08 - 00000000 ____D C:\ProgramData\Adobe

2013-05-27 20:59 - 2009-07-13 20:20 - 00000000 ___RD C:\users\Default

2013-05-27 20:58 - 2013-01-17 19:25 - 00000000 ____D C:\NVIDIA

2013-05-27 20:15 - 2013-05-27 20:15 - 00000873 ____A C:\AdwCleaner[s3].txt

2013-05-27 20:13 - 2013-05-27 20:13 - 00000819 ____A C:\AdwCleaner[R2].txt

2013-05-27 08:48 - 2013-05-25 20:55 - 00003014 ____A C:\Users\mike\Desktop\Rkill.txt

2013-05-27 07:46 - 2013-01-21 04:34 - 00000000 ____D C:\Users\mike\AppData\Roaming\com.zoosk.Desktop.096E6A67431258A508A2446A847B240591D2C99B.1

2013-05-27 07:38 - 2013-05-27 07:38 - 00006709 ____A C:\Users\mike\Desktop\hijackthis.log

2013-05-27 07:12 - 2013-05-24 02:52 - 00010074 ____A C:\Users\mike\Documents\Uninstall STAR WARS The Old Republic.log

2013-05-27 07:07 - 2013-02-20 21:29 - 00000000 ____D C:\Users\mike\AppData\Roaming\QuickRaidButtons

2013-05-27 07:01 - 2013-05-27 07:01 - 00000000 ____D C:\Program Files (x86)\VS Revo Group

2013-05-27 00:31 - 2013-05-27 00:31 - 00000000 ____D C:\Windows\ERUNT

2013-05-27 00:18 - 2013-05-27 00:17 - 00001016 ____A C:\AdwCleaner[s2].txt

2013-05-27 00:12 - 2013-05-27 00:11 - 00006350 ____A C:\AdwCleaner[s1].txt

2013-05-27 00:10 - 2013-05-27 00:10 - 00006782 ____A C:\AdwCleaner[R1].txt

2013-05-26 23:26 - 2013-05-26 23:26 - 00000000 ____D C:\Users\mike\Desktop\mbar-1.06.0.1003

2013-05-26 23:22 - 2013-05-26 23:26 - 13169742 ____A C:\Users\mike\Desktop\mbar-1.06.0.1003.zip

2013-05-26 20:22 - 2013-05-26 20:22 - 00000000 ____D C:\Users\mike\AppData\Roaming\SUPERAntiSpyware.com

2013-05-26 20:22 - 2013-05-26 20:22 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com

2013-05-26 20:12 - 2013-05-26 20:12 - 00000000 ____D C:\Users\mike\AppData\Roaming\Malwarebytes

2013-05-26 20:11 - 2013-05-26 20:11 - 00000000 ____D C:\ProgramData\Malwarebytes

2013-05-26 19:48 - 2013-05-26 19:48 - 00000000 ____D C:\ProgramData\Sun

2013-05-26 17:29 - 2013-03-18 18:29 - 00000000 ____D C:\Users\mike\AppData\Roaming\Advanced Combat Tracker

2013-05-26 16:14 - 2013-05-26 16:06 - 27389932 ____A C:\Users\mike\Downloads\Unconfirmed 275273.crdownload

2013-05-25 20:55 - 2013-05-25 20:55 - 01761408 ____A (Bleeping Computer, LLC) C:\Users\mike\Downloads\rkill.exe

2013-05-24 07:59 - 2013-05-22 22:46 - 00013870 ____A C:\Users\mike\Documents\Install STAR WARS The Old Republic.log

2013-05-24 02:55 - 2013-05-24 02:55 - 00000000 ____D C:\Program Files (x86)\Electronic Arts

2013-05-23 18:00 - 2013-05-23 17:58 - 16213275 ____A C:\Users\mike\Downloads\EVGAPrecisionX (3).zip

2013-05-22 22:46 - 2013-05-22 22:46 - 00000000 ____D C:\users\hedev

2013-05-16 11:35 - 2009-07-13 20:20 - 00000000 ____D C:\Windows\rescache

2013-05-16 05:23 - 2013-05-16 05:23 - 00002212 ____A C:\Users\Public\Desktop\Google Earth.lnk

2013-05-16 05:21 - 2013-05-16 05:21 - 00781960 ____A (Google Inc.) C:\Users\mike\Downloads\googleupdatesetup.exe

2013-05-15 12:51 - 2013-05-15 12:51 - 00266320 ____A C:\Windows\Minidump\051513-18593-01.dmp

2013-05-15 12:51 - 2013-01-18 01:23 - 271685808 ____A C:\Windows\MEMORY.DMP

2013-05-15 10:23 - 2009-07-13 21:45 - 00292760 ____A C:\Windows\System32\FNTCACHE.DAT

2013-05-15 00:06 - 2013-01-18 04:02 - 75016696 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe

2013-05-10 16:28 - 2013-01-18 00:04 - 00000000 ____D C:\Users\mike\AppData\Roaming\ProfitUI Reborn Updater

2013-05-09 00:40 - 2013-05-09 00:40 - 00215552 ____A C:\Users\mike\Downloads\VideoDownloadConvert.exe

2013-05-06 23:56 - 2013-05-06 23:55 - 12781984 ____A (Razer USA Ltd.) C:\Users\mike\Downloads\Razer_Synapse2_V1.09.05.exe

2013-05-06 23:45 - 2013-05-06 22:55 - 00065118 ____A C:\Windows\DPINST.LOG

2013-05-06 23:44 - 2013-05-06 23:44 - 00000000 ____D C:\Users\mike\AppData\Roaming\InstallShield

2013-05-06 23:44 - 2013-01-31 09:23 - 00000000 ____D C:\Program Files (x86)\Razer

2013-05-06 23:44 - 2013-01-17 19:44 - 00000000 ____D C:\Program Files (x86)\InstallShield Installation Information

2013-05-06 23:43 - 2013-05-06 23:43 - 12559800 ____A C:\Users\mike\Downloads\DeathAdder_driver_v3.05_Eng.exe

2013-05-06 23:24 - 2013-05-06 23:24 - 00000000 ____D C:\Windows\SysWOW64\searchplugins

2013-05-06 23:24 - 2013-05-06 23:24 - 00000000 ____D C:\Windows\SysWOW64\Extensions

2013-05-06 23:24 - 2013-05-06 23:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox

2013-05-06 23:23 - 2013-05-06 23:23 - 02821960 ____A C:\Users\mike\Downloads\installer_razer_deathadder_mouse_configuration_English.exe

2013-05-06 22:57 - 2013-05-06 22:57 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_rzudd_01009.Wdf

2013-05-06 22:56 - 2013-05-06 22:56 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_rzdaendpt_01009.Wdf

2013-05-06 22:48 - 2013-05-06 22:48 - 00000000 ____D C:\Users\mike\AppData\Local\CRE

2013-05-06 18:48 - 2013-01-17 21:20 - 00058464 ____A C:\Users\mike\AppData\Local\GDIPFONTCACHEV1.DAT

2013-05-05 14:36 - 2013-05-15 00:02 - 17818624 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll

2013-05-05 14:16 - 2013-05-15 00:02 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb

2013-05-05 12:25 - 2013-05-15 00:02 - 12324864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll

2013-05-05 12:12 - 2013-05-15 00:02 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb

2013-05-02 02:06 - 2010-11-20 20:27 - 00278800 ____N (Microsoft Corporation) C:\Windows\System32\MpSigStub.exe

Other Malware:

===========

C:\Users\mike\oadist.exe

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit

C:\Windows\System32\wininit.exe => MD5 is legit

C:\Windows\SysWOW64\wininit.exe => MD5 is legit

C:\Windows\explorer.exe => MD5 is legit

C:\Windows\SysWOW64\explorer.exe => MD5 is legit

C:\Windows\System32\svchost.exe => MD5 is legit

C:\Windows\SysWOW64\svchost.exe => MD5 is legit

C:\Windows\System32\services.exe => MD5 is legit

C:\Windows\System32\User32.dll => MD5 is legit

C:\Windows\SysWOW64\User32.dll => MD5 is legit

C:\Windows\System32\userinit.exe => MD5 is legit

C:\Windows\SysWOW64\userinit.exe => MD5 is legit

C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

Last Boot: 2013-05-24 02:28

==================== End Of Log ============================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-05-2013

Ran by mike at 2013-05-28 05:54:44 Run:

Running from C:\Users\mike\Desktop

Boot Mode: Normal

==========================================================

==================== Installed Programs =======================

Adobe AIR (Version: 3.5.0.1060)

Adobe Flash Player 11 ActiveX (Version: 11.6.602.180)

Adobe Reader XI (11.0.02) (Version: 11.0.02)

Advanced Combat Tracker (remove only)

ASRock InstantBoot

Belarc Advisor 8.3 (Version: 8.3.0.0)

D-Link DFE-530TX+ (Version: )

EQ2MAP Updater 1.2.10 (Version: 1.2.10)

EverQuest II

EVGA Precision X 4.1.0 (Version: 4.1.0)

Google Chrome (Version: 27.0.1453.94)

Google Earth (Version: 7.1.1.1580)

Google Update Helper (Version: 1.3.21.145)

Java 7 Update 13 (Version: 7.0.130)

Java Auto Updater (Version: 2.1.9.0)

Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)

Microsoft .NET Framework 4 Extended (Version: 4.0.30319)

Microsoft Security Client (Version: 4.2.0223.1)

Microsoft Security Essentials (Version: 4.2.223.1)

Microsoft Silverlight (Version: 5.1.20125.0)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)

Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)

NVIDIA 3D Vision Controller Driver 314.22 (Version: 314.22)

NVIDIA 3D Vision Driver 314.22 (Version: 314.22)

NVIDIA Control Panel 314.22 (Version: 314.22)

NVIDIA Graphics Driver 314.22 (Version: 314.22)

NVIDIA Install Application (Version: 2.1002.115.743)

NVIDIA PhysX (Version: 9.12.1031)

NVIDIA PhysX System Software 9.12.1031 (Version: 9.12.1031)

NVIDIA Stereoscopic 3D Driver (Version: 7.17.13.1422)

NVIDIA Update 1.12.12 (Version: 1.12.12)

NVIDIA Update Components (Version: 1.12.12)

QuickRaidButtons (Version: 1.2)

Raid Hub Client (Version: 1.1.25)

Razer DeathAdder Mouse (Version: 3.05)

Razer Synapse 2.0 (Version: 1.9.5)

Realtek High Definition Audio Driver (Version: 6.0.1.5919)

ROBLOX Player

Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)

Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)

Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)

Update for Microsoft .NET Framework 4 Extended (KB2468871) (Version: 1)

Update for Microsoft .NET Framework 4 Extended (KB2533523) (Version: 1)

Update for Microsoft .NET Framework 4 Extended (KB2600217) (Version: 1)

Ventrilo Client for Windows x64 (Version: 3.0.8.0)

Video Download Converter version 1.0.0.0 (Version: 1.0.0.0)

VideoDownloadConverter Toolbar

Visual Studio 2010 x64 Redistributables (Version: 13.0.0.1)

==================== Restore Points =========================

24-05-2013 11:17:00 Windows Update

26-05-2013 04:08:22 Installed AVG 2013

26-05-2013 04:08:39 Installed AVG 2013

26-05-2013 04:10:16 Removed AVG 2013

26-05-2013 04:18:54 Installed AVG 2013

26-05-2013 04:19:15 Installed AVG 2013

27-05-2013 02:47:45 Removed Java 7 Update 13

27-05-2013 06:38:40 Malwarebytes Anti-Rootkit Restore Point

27-05-2013 14:02:18 Revo Uninstaller's restore point - Adobe Reader XI (11.0.03)

27-05-2013 14:04:20 Revo Uninstaller's restore point - Adobe AIR

27-05-2013 14:05:17 Revo Uninstaller's restore point - Adobe Flash Player 11 ActiveX

27-05-2013 14:05:48 Revo Uninstaller's restore point - Adobe Flash Player 11 ActiveX

27-05-2013 14:07:02 Revo Uninstaller's restore point - QuickRaidButtons

27-05-2013 14:11:41 Revo Uninstaller's restore point - Star Wars: The Old Republic

27-05-2013 14:16:10 Revo Uninstaller's restore point - Adobe Flash Player 11 ActiveX

27-05-2013 14:18:39 Revo Uninstaller's restore point - Adobe Flash Player 11 ActiveX

27-05-2013 14:19:10 Revo Uninstaller's restore point - Adobe Flash Player 11 ActiveX

27-05-2013 17:00:49 Revo Uninstaller's restore point - Belarc Advisor 8.3

27-05-2013 17:01:41 Revo Uninstaller's restore point - Belarc Advisor 8.3

27-05-2013 17:09:56 Revo Uninstaller's restore point - Google Chrome

27-05-2013 17:11:33 Revo Uninstaller's restore point - Raid Hub Client

27-05-2013 17:12:40 Revo Uninstaller's restore point - HijackThis 1.99.1

27-05-2013 17:16:07 Removed AVG 2013

27-05-2013 17:17:09 Removed AVG 2013

28-05-2013 03:56:51 Restore Operation

28-05-2013 06:32:34 Windows Update

28-05-2013 12:04:43 Installed Microsoft Fix it 50195

28-05-2013 12:22:22 Windows Update

28-05-2013 12:27:14 Windows Update

==================== Faulty Device Manager Devices =============

==================== Event log errors: =========================

Application errors:

==================

Error: (05/28/2013 05:27:14 AM) (Source: Microsoft-Windows-CAPI2) (User: )

Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

.

Error: (05/28/2013 05:27:14 AM) (Source: Microsoft-Windows-CAPI2) (User: )

Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

.

Error: (05/28/2013 05:22:22 AM) (Source: Microsoft-Windows-CAPI2) (User: )

Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

.

Error: (05/28/2013 05:22:22 AM) (Source: Microsoft-Windows-CAPI2) (User: )

Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

.

Error: (05/28/2013 05:04:43 AM) (Source: Microsoft-Windows-CAPI2) (User: )

Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

.

Error: (05/28/2013 05:04:42 AM) (Source: Microsoft-Windows-CAPI2) (User: )

Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

.

Error: (05/28/2013 03:59:09 AM) (Source: WinMgmt) (User: )

Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/27/2013 11:32:34 PM) (Source: Microsoft-Windows-CAPI2) (User: )

Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

.

Error: (05/27/2013 11:32:34 PM) (Source: Microsoft-Windows-CAPI2) (User: )

Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

.

Error: (05/27/2013 11:23:09 PM) (Source: WinMgmt) (User: )

Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

System errors:

=============

Error: (05/28/2013 05:28:42 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)

Description: Installation Failure: Windows failed to install the following update with error 0x80070643: Internet Explorer 10 for Windows 7 for x64-based Systems.

Error: (05/28/2013 05:24:03 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)

Description: Installation Failure: Windows failed to install the following update with error 0x80070643: Internet Explorer 10 for Windows 7 for x64-based Systems.

Error: (05/28/2013 04:00:43 AM) (Source: DCOM) (User: )

Description: {73C9DFA0-750D-11E1-B0C4-0800200C9A66}

Error: (05/28/2013 03:57:27 AM) (Source: Service Control Manager) (User: )

Description: The NextSensor Kernel I/O Driver service failed to start due to the following error:

%%1275

Error: (05/28/2013 03:57:27 AM) (Source: Application Popup) (User: )

Description: \??\C:\Windows\SysWow64\DRIVERS\nxsIO32.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

Error: (05/28/2013 03:57:27 AM) (Source: Service Control Manager) (User: )

Description: The FastFreeConverterUpdt service failed to start due to the following error:

%%2

Error: (05/28/2013 03:57:16 AM) (Source: Microsoft-Windows-Kernel-Processor-Power) (User: NT AUTHORITY)

Description: Some processor performance power management features have been disabled due to a known firmware problem. Check with the computer manufacturer for updated firmware.

Error: (05/27/2013 11:29:08 PM) (Source: DCOM) (User: )

Description: {73C9DFA0-750D-11E1-B0C4-0800200C9A66}

Error: (05/27/2013 11:21:30 PM) (Source: Service Control Manager) (User: )

Description: The NextSensor Kernel I/O Driver service failed to start due to the following error:

%%1275

Error: (05/27/2013 11:21:30 PM) (Source: Application Popup) (User: )

Description: \??\C:\Windows\SysWow64\DRIVERS\nxsIO32.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

Microsoft Office Sessions:

=========================

Error: (05/28/2013 05:27:14 AM) (Source: Microsoft-Windows-CAPI2)(User: )

Description:

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

Error: (05/28/2013 05:27:14 AM) (Source: Microsoft-Windows-CAPI2)(User: )

Description:

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

Error: (05/28/2013 05:22:22 AM) (Source: Microsoft-Windows-CAPI2)(User: )

Description:

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

Error: (05/28/2013 05:22:22 AM) (Source: Microsoft-Windows-CAPI2)(User: )

Description:

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

Error: (05/28/2013 05:04:43 AM) (Source: Microsoft-Windows-CAPI2)(User: )

Description:

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

Error: (05/28/2013 05:04:42 AM) (Source: Microsoft-Windows-CAPI2)(User: )

Description:

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

Error: (05/28/2013 03:59:09 AM) (Source: WinMgmt)(User: )

Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/27/2013 11:32:34 PM) (Source: Microsoft-Windows-CAPI2)(User: )

Description:

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

Error: (05/27/2013 11:32:34 PM) (Source: Microsoft-Windows-CAPI2)(User: )

Description:

Details:

AddCoreCsiFiles : GetNextFileMapContent() failed.

System Error:

The parameter is incorrect.

Error: (05/27/2013 11:23:09 PM) (Source: WinMgmt)(User: )

Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

CodeIntegrity Errors:

===================================

Date: 2013-05-27 21:27:18.754

Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-05-27 21:27:18.719

Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-05-27 00:55:16.688

Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-05-27 00:55:16.657

Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-17 20:00:49.905

Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\mike\Desktop\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-17 20:00:49.874

Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\mike\Desktop\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-17 20:00:48.530

Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\mike\Desktop\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-17 20:00:48.514

Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\mike\Desktop\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-17 20:00:47.499

Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\mike\Desktop\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-01-17 20:00:47.483

Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\mike\Desktop\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

Percentage of memory in use: 50%

Total physical RAM: 3327.3 MB

Available physical RAM: 1636.44 MB

Total Pagefile: 6652.79 MB

Available Pagefile: 4530.8 MB

Total Virtual: 8192 MB

Available Virtual: 8191.81 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:232.79 GB) (Free:158.86 GB) NTFS (Disk=0 Partition=1) ==>[Drive with boot components (obtained from BCD)]

Drive d: () (Removable) (Total:30.45 GB) (Free:30.44 GB) FAT32 (Disk=1 Partition=1)

==================== MBR & Partition Table ==================

========================================================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 233 GB) (Disk ID: 059E059D)

Partition 1: (Active) - (Size=233 GB) - (Type=07 NTFS)

========================================================

Disk: 1 (MBR Code: Windows 7 or 8) (Size: 30 GB) (Disk ID: 00000000)

Partition 1: (Active) - (Size=30 GB) - (Type=0C)

==================== End Of Log ============================

Link to post
Share on other sites

  • Staff

Hello yokoop

I would like you to go to this page - Troubleshooting and Internet Explorer’s (No Add-ons) Mode

Step 1 is going to show you how to run IE without any add/ons, If by running IE this way the problem goes away Then we can go to step 2

Step 2 will show you how to find the add/on that is causing the problem and then how to remove it

Gringo

Link to post
Share on other sites

  • Staff

Hello yokoop

truthfully I have seen very little wrong with it.

At this time I would like you to run this script for me and it is a good time to check out the computer to see if there is anything else that needs to be addressed.

:Run CFScript:

Please start by opening Notepad and copy/paste the text in the box into the window:

ClearJavaCache::


Save it to your desktop as CFScript.txt

Referring to the picture above, drag CFScript.txt into ComboFix.exe

CFScriptB-4.gif

This will let ComboFix run again.

Restart if you have to.

Save the produced logfile to your desktop.

Note: Do not mouseclick combofix's window whilst it's running. That may cause it to stall

Note 2: If you receive an error "Illegal operation attempted on a registry key that has been marked for deletion." Please restart the computer

"information and logs"

  • In your next post I need the following
  1. report from Combofix
  2. let me know of any problems you may have had
  3. How is the computer doing now after running the script?

Gringo

Link to post
Share on other sites

sounds like all the stuff i did on my own got rid of it but i wanted to be sure so went ahead and wiped my hd just starting from scratch only way to be truly safe thanks for all your help what is the avg tip left 20 buck i dont want to be cheap

Link to post
Share on other sites

Glad we could help. :)

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.