ComboFix 12-03-22.01 - Jamie 24/03/2012 19:00:57.1.8 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.6135.4376 [GMT 0:00] Running from: c:\users\Jamie\Desktop\ComboFix.exe SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\ANTIGEN.tmp c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\CLSV.sys c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\delfile.tmp c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\dudl.exe c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\eb.drv c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\eb.tmp c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\energy.drv c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\exec.sys c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\fan.dll c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\FW.dll c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\FW.drv c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\gid.exe c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\grid.tmp c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\hymt.drv c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\hymt.sys c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\kernel32.dll c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\LvL86 - Play Like A Pro Software Package - cataclysm, wow, keybindings, world, of warcraft, guide, macros, addons, keybinds, interface, pvp, pve, tactics.url c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\pal.sys c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\PE.dll c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\PE.exe c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\PE.tmp c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\ppal.tmp c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\SICKBOY.drv c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\sld.dll c:\users\Jamie\AppData\Roaming\Microsoft\Windows\Recent\tjd.drv c:\users\Public\invokesi.exe . . ((((((((((((((((((((((((( Files Created from 2012-02-24 to 2012-03-24 ))))))))))))))))))))))))))))))) . . 2012-03-24 19:06 . 2012-03-24 19:06 -------- d-----w- c:\users\Default\AppData\Local\temp 2012-03-23 08:38 . 2012-03-23 08:38 592824 ----a-w- c:\program files (x86)\Mozilla Firefox\gkmedias.dll 2012-03-23 08:38 . 2012-03-23 08:38 44472 ----a-w- c:\program files (x86)\Mozilla Firefox\mozglue.dll 2012-03-19 15:26 . 2012-03-19 15:26 -------- d-----w- c:\program files (x86)\ESET 2012-03-17 06:59 . 2012-03-17 06:59 -------- d-----w- c:\programdata\Battle.net 2012-03-15 03:01 . 2011-11-19 15:20 5559152 ----a-w- c:\windows\system32\ntoskrnl.exe 2012-03-15 03:01 . 2011-11-19 14:50 3968368 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2012-03-15 03:01 . 2011-11-19 14:50 3913584 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2012-03-14 04:36 . 2012-02-03 04:34 3145728 ----a-w- c:\windows\system32\win32k.sys 2012-03-14 04:36 . 2012-02-10 06:36 1544192 ----a-w- c:\windows\system32\DWrite.dll 2012-03-14 04:36 . 2012-02-10 05:38 1077248 ----a-w- c:\windows\SysWow64\DWrite.dll 2012-03-14 02:04 . 2012-01-25 06:38 77312 ----a-w- c:\windows\system32\rdpwsx.dll 2012-03-14 02:04 . 2012-01-25 06:38 149504 ----a-w- c:\windows\system32\rdpcorekmts.dll 2012-03-14 02:04 . 2012-01-25 06:33 9216 ----a-w- c:\windows\system32\rdrmemptylst.exe 2012-03-14 02:04 . 2012-02-17 06:38 1031680 ----a-w- c:\windows\system32\rdpcore.dll 2012-03-14 02:04 . 2012-02-17 05:34 826880 ----a-w- c:\windows\SysWow64\rdpcore.dll 2012-03-14 02:04 . 2012-02-17 04:58 210944 ----a-w- c:\windows\system32\drivers\rdpwd.sys 2012-03-14 02:04 . 2012-02-17 04:57 23552 ----a-w- c:\windows\system32\drivers\tdtcp.sys 2012-03-08 19:45 . 2012-03-08 19:45 -------- d-----w- C:\_OTL 2012-03-08 19:22 . 2012-03-08 19:22 -------- d-----w- c:\programdata\EA Logs 2012-03-07 03:15 . 2012-03-07 03:15 -------- d-----w- c:\users\Jamie\AppData\Roaming\QFX Software 2012-03-07 03:15 . 2012-03-07 03:15 -------- d-----w- c:\programdata\QFX Software 2012-03-06 21:23 . 2012-03-06 21:23 -------- d-----w- c:\program files (x86)\KeyScrambler 2012-03-06 21:23 . 2011-12-15 00:46 222904 ----a-w- c:\windows\system32\drivers\keyscrambler.sys 2012-03-06 17:29 . 2012-03-06 17:29 -------- d-----w- c:\program files (x86)\Microsoft Security Client 2012-03-06 17:29 . 2012-03-06 17:30 -------- d-----w- c:\program files\Microsoft Security Client 2012-03-05 22:37 . 2012-03-05 22:37 -------- d-----w- c:\windows\system32\SPReview 2012-03-05 22:36 . 2012-03-05 22:36 -------- d-----w- c:\windows\system32\EventProviders 2012-03-05 22:16 . 2012-03-05 22:16 27424 ----a-w- c:\windows\system32\drivers\hitmanpro36.sys 2012-03-05 16:06 . 2012-03-05 16:06 -------- d-----w- c:\users\Jake Adam & Kira 2012-03-05 09:33 . 2012-03-21 17:41 -------- d-----w- c:\program files\Blue Coat K9 Web Protection 2012-03-04 19:49 . 2012-03-05 22:14 -------- d-----w- c:\programdata\HitmanPro 2012-03-04 19:41 . 2012-03-04 19:41 -------- d-----w- c:\users\Jamie\AppData\Roaming\Malwarebytes 2012-03-04 19:41 . 2012-03-04 19:41 -------- d-----w- c:\programdata\Malwarebytes 2012-03-04 19:41 . 2011-12-10 15:24 23152 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-03-04 19:41 . 2012-03-04 19:41 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware . . . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-03-21 08:25 . 2011-06-24 07:46 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2012-03-05 22:43 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll 2012-03-05 22:43 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll 2012-01-04 10:44 . 2012-02-14 23:34 509952 ----a-w- c:\windows\system32\ntshrui.dll 2012-01-04 08:58 . 2012-02-14 23:34 442880 ----a-w- c:\windows\SysWow64\ntshrui.dll 2011-12-30 06:26 . 2012-02-14 23:34 515584 ----a-w- c:\windows\system32\timedate.cpl 2011-12-30 05:27 . 2012-02-14 23:34 478720 ----a-w- c:\windows\SysWow64\timedate.cpl 2011-12-28 03:59 . 2012-02-14 23:34 498688 ----a-w- c:\windows\system32\drivers\afd.sys . . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RocketDock"="c:\program files (x86)\RocketDock\RocketDock.exe" [2007-09-02 495616] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Razer Naga Driver"="c:\program files (x86)\Razer\Naga\RazerNagaSysTray.exe" [2011-11-16 953232] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2011-11-01 59240] "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2012-01-16 421736] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorUser"= 2 (0x2) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] @="Service" . R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [x] R3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2010-08-31 79360] R3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2010-08-31 79360] R3 Creative Media Toolbox 6 Licensing Service;Creative Media Toolbox 6 Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\MT6Licensing.exe [2010-08-31 79360] R3 Ctafiltv;Ctafiltv;c:\windows\system32\drivers\Ctafiltv.sys [x] R3 dc3d;MS Hardware Device Detection Driver (USB);c:\windows\system32\DRIVERS\dc3d.sys [x] R3 dump_wmimmc;dump_wmimmc;d:\heroes in the sky\GameGuard\dump_wmimmc.sys [x] R3 hitmanpro35;Hitman Pro 3.5 Support Driver;c:\windows\system32\drivers\hitmanpro36.sys [x] R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [x] R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [x] R3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-04-27 288272] R3 Point64;Microsoft IntelliPoint Filter Driver;c:\windows\system32\DRIVERS\point64.sys [x] R3 SaiH353E;SaiH353E;c:\windows\system32\DRIVERS\SaiH353E.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x] R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [x] S0 mv61xx;mv61xx;c:\windows\system32\DRIVERS\mv61xx.sys [x] S1 bckd;bckd;c:\windows\system32\drivers\bckd.sys [x] S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x] S2 bckwfs;Blue Coat K9 Web Protection;c:\program files\Blue Coat K9 Web Protection\k9filter.exe [2011-06-10 2044688] S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-01-13 652360] S2 SBSDWSCService;SBSD Security Center Service;c:\program files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368] S2 SpyroService;Spyro Portal Service;c:\program files (x86)\FS\Spyro Portal\FlashPortal.exe [2011-09-09 48128] S2 SSPORT;SSPORT;c:\windows\system32\Drivers\SSPORT.sys [x] S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atikmdag.sys [x] S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x] S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys [x] S3 KeyScrambler;KeyScrambler;c:\windows\system32\drivers\keyscrambler.sys [x] S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x] S3 RTL8187B;NETGEAR WG111v3 Wireless-G USB Adapter Win7 Driver;c:\windows\system32\DRIVERS\wg111v3.sys [x] S3 RzSynapse;Razer Driver;c:\windows\system32\DRIVERS\RzSynapse.sys [x] S3 SaiH8000;SaiH8000;c:\windows\system32\DRIVERS\SaiH8000.sys [x] S3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [x] S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys [x] . . --- Other Services/Drivers In Memory --- . *NewlyCreated* - WS2IFSL . . --------- x86-64 ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IntelliPoint"="c:\program files\Microsoft IntelliPoint\ipoint.exe" [2011-04-13 2399632] "itype"="c:\program files\Microsoft IntelliType Pro\itype.exe" [2011-04-13 1860496] "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2011-06-15 1436736] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "LoadAppInit_DLLs"=0x0 . ------- Supplementary Scan ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://www.sky.com/ mLocal Page = c:\windows\SysWOW64\blank.htm mWindow Title = uInternet Settings,ProxyOverride = *.local IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~2\Office12\EXCEL.EXE/3000 TCP: DhcpNameServer = 192.168.0.1 FF - ProfilePath - c:\users\Jamie\AppData\Roaming\Mozilla\Firefox\Profiles\3gz6x09t.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.ukmandown.co.uk/news.php|http://www.facebook.com/|http://eve.battleclinic.com/browse_loadouts.php|http://www.google.co.uk/ FF - prefs.js: network.proxy.type - 0 . - - - - ORPHANS REMOVED - - - - . AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe . . . --------------------- LOCKED REGISTRY KEYS --------------------- . [HKEY_USERS\S-1-5-21-1794836138-3686742117-3972407047-1000\Software\SecuROM\License information*] "datasecu"=hex:be,a5,79,58,d1,ba,08,79,cb,09,ab,00,28,7e,4c,db,6d,3b,e2,d4,b4, 16,b4,f4,a1,6e,be,62,72,92,2b,47,f5,2a,d8,e2,9f,4f,05,1d,3e,35,ae,d6,dc,a2,\ "rkeysecu"=hex:f9,60,d8,55,5c,3f,62,84,af,e7,c6,84,6c,bb,6c,6f . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11f_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11f_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11f.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11f.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11f.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11f.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\McAfee] "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Other Running Processes ------------------------ . c:\program files (x86)\Creative\Shared Files\CTAudSvc.exe c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe c:\windows\SysWOW64\PnkBstrA.exe . ************************************************************************** . Completion time: 2012-03-24 19:15:13 - machine was rebooted ComboFix-quarantined-files.txt 2012-03-24 19:15 . Pre-Run: 43,164,377,088 bytes free Post-Run: 42,809,307,136 bytes free . - - End Of File - - 1ACC81013A670BC5FFC76D3F7CF27344