**********Cache stats************
No. Of buckets -> 12800
Each Bucket has max capacity of -> 1 entries
number of Entries is 0
Number of invalid entries is 0
Number of Inserts issued is 0
Number of replaces issued is 0
Number of Insert failures is 0
Number of lookups is 0
Number of misses is 0
Number of false fast lookups is 0
Number of invalidations is 0
Number of maintenance invalidations is 0
Current File Size is 311296
Journal ID = 0
Trusted image state = 0 USN = 0
2012-05-10T01:27:27.515Z Version: Product 4.0.1526.0 Service 4.0.1526.0 Engine 0.0.0.0 AS 0.0.0.0 AV 0.0.0.0
2012-05-10T01:27:43.656Z Version: Product 4.0.1526.0 Service 4.0.1526.0 Engine 1.1.8304.0 AS 1.125.1464.0 AV 1.125.1464.0
2012-05-10T04:09:58.843Z DETECTION Adware:JS/Pornpop file:C:\Documents and Settings\Jason\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000038->(GZip)
2012-05-10T04:09:58.843Z DETECTION Adware:Win32/OpenCandy file:C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe->(inno#000155)
2012-05-10T04:09:58.843Z DETECTION Adware:Win32/OpenCandy file

:\Users\Maja\Downloads\Programs\IZArc4.1.exe->(inno#000155)
2012-05-10T04:09:58.843Z DETECTION Adware:Win32/OpenCandy file:F:\Programs\IZArc4.1.exe->(inno#000155)
2012-05-10T04:09:58.859Z DETECTION Adware:JS/Advantage file:C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\install.js
2012-05-10T04:09:58.859Z DETECTION Adware:Win32/Advantage file:C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\components\MeMedia_FF.dll
2012-05-10T04:09:58.859Z DETECTION HackTool:Win32/Keygen file

:\Users\Maja\Downloads\Programs\Windows Loader v1.9.3.zip->Windows Loader/Windows Loader.exe
--------------------------------------------------------------------------------
2012-05-10T01:27:27.468Z Trace session started - MpWppTracing-05092012-172727-00000003-ffffffff.bin
2012-05-10T01:27:27.468Z Service is asked to be reenabled.
2012-05-10T01:27:27.468Z Task(-EnableService) launched**********Cache stats************
No. Of buckets -> 12800
Each Bucket has max capacity of -> 1 entries
number of Entries is 0
Number of invalid entries is 0
Number of Inserts issued is 0
Number of replaces issued is 0
Number of Insert failures is 0
Number of lookups is 0
Number of misses is 0
Number of false fast lookups is 0
Number of invalidations is 0
Number of maintenance invalidations is 0
Current File Size is 311296
Journal ID = 0
Trusted image state = 0 USN = 0
2012-05-10T01:27:27.500Z Loading engine...
2012-05-10T01:27:27.500Z loaded!
2012-05-10T01:27:27.500Z NisUpdate from SignatureDropLocation returns S_OK
2012-05-10T01:27:27.500Z NisUpdate from SignatureDefaultLocation returns S_OK
2012-05-10T01:27:27.500Z Cache Disabled: 0
2012-05-10T01:27:27.515Z Verifying license file...
2012-05-10T01:27:27.515Z verified!
2012-05-10T01:27:27.515Z Product supports installmode: 0
Product Version: 4.0.1526.0
Service Version: 4.0.1526.0
Engine Version: 0.0.0.0
AS Signature Version: 0.0.0.0
AV Signature Version: 0.0.0.0
************************************************************
2012-05-10T01:27:39.531Z Verifying engine and signature files (source: 0) ...
2012-05-10T01:27:39.828Z verified!
2012-05-10T01:27:43.609Z Initializing SQM in engine...
2012-05-10T01:27:43.609Z SQM initialized in the engine successfully
Signature updated on 05-09-2012 17:27:43
Product Version: 4.0.1526.0
Service Version: 4.0.1526.0
Engine Version: 1.1.8304.0
AS Signature Version: 1.125.1464.0
AV Signature Version: 1.125.1464.0
************************************************************
2012-05-10T04:09:29.515Z Task(SpyNetService -RestrictPrivileges -AccessKey 52B79C0F-2854-7A08-6CD4-0DFD6E664A06) launched
2012-05-10T04:09:58.843Z DETECTIONEVENT Adware:JS/Pornpop containerfile:C:\Documents and Settings\Jason\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000038;file:C:\Documents and Settings\Jason\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000038->(GZip);
2012-05-10T04:09:58.843Z DETECTION_ADD Adware:JS/Pornpop containerfile:C:\Documents and Settings\Jason\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000038
2012-05-10T04:09:58.843Z DETECTION_ADD Adware:JS/Pornpop file:C:\Documents and Settings\Jason\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000038->(GZip)
2012-05-10T04:09:58.843Z DETECTIONEVENT Adware:Win32/OpenCandy containerfile:C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe;containerfile

:\Users\Maja\Downloads\Programs\IZArc4.1.exe;contain erfile:F:\Programs\IZArc4.1.exe;file:C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe->(inno#000155);file

:\Users\Maja\Downloads\Programs\IZArc4.1.exe->(inno#000155);file:F:\Programs\IZArc4.1.exe->(inno#000155);
2012-05-10T04:09:58.843Z DETECTION_ADD Adware:Win32/OpenCandy containerfile:C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe
2012-05-10T04:09:58.843Z DETECTION_ADD Adware:Win32/OpenCandy containerfile

:\Users\Maja\Downloads\Programs\IZArc4.1.exe
2012-05-10T04:09:58.843Z DETECTION_ADD Adware:Win32/OpenCandy containerfile:F:\Programs\IZArc4.1.exe
2012-05-10T04:09:58.843Z DETECTION_ADD Adware:Win32/OpenCandy file:C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe->(inno#000155)
2012-05-10T04:09:58.843Z DETECTION_ADD Adware:Win32/OpenCandy file

:\Users\Maja\Downloads\Programs\IZArc4.1.exe->(inno#000155)
2012-05-10T04:09:58.843Z DETECTION_ADD Adware:Win32/OpenCandy file:F:\Programs\IZArc4.1.exe->(inno#000155)
2012-05-10T04:09:58.859Z DETECTIONEVENT Adware:JS/Advantage containerfile:C:\Program Files\AdVantage\ffext.mod;file:C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\install.js;
2012-05-10T04:09:58.859Z DETECTION_ADD Adware:JS/Advantage containerfile:C:\Program Files\AdVantage\ffext.mod
2012-05-10T04:09:58.859Z DETECTION_ADD Adware:JS/Advantage file:C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\install.js
2012-05-10T04:09:58.859Z DETECTIONEVENT Adware:Win32/Advantage containerfile:C:\Program Files\AdVantage\ffext.mod;file:C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\components\MeMedia_FF.dll;
2012-05-10T04:09:58.859Z DETECTION_ADD Adware:Win32/Advantage containerfile:C:\Program Files\AdVantage\ffext.mod
2012-05-10T04:09:58.859Z DETECTION_ADD Adware:Win32/Advantage file:C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\components\MeMedia_FF.dll
2012-05-10T04:09:58.859Z DETECTIONEVENT HackTool:Win32/Keygen containerfile

:\Users\Maja\Downloads\Programs\Windows Loader v1.9.3.zip;file

:\Users\Maja\Downloads\Programs\Windows Loader v1.9.3.zip->Windows Loader/Windows Loader.exe;
2012-05-10T04:09:58.859Z DETECTION_ADD HackTool:Win32/Keygen containerfile

:\Users\Maja\Downloads\Programs\Windows Loader v1.9.3.zip
2012-05-10T04:09:58.859Z DETECTION_ADD HackTool:Win32/Keygen file

:\Users\Maja\Downloads\Programs\Windows Loader v1.9.3.zip->Windows Loader/Windows Loader.exe
Begin Full Scan
Scan ID:{0588F45D-BE7C-4E8A-9525-01C2082CC1D7}
Scan Source:2
Start Time:05-09-2012 17:34:52
End Time:05-09-2012 20:09:58
Result Count:5
Threat Name:Adware:JS/Pornpop
ID:153970
Severity:2
Number of Resources:2
Resource Schema:file
Resource Path:C:\Documents and Settings\Jason\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000038->(GZip)
Extended Info:5865989931585
Resource Schema:containerfile
Resource Path:C:\Documents and Settings\Jason\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000038
Extended Info:0
Threat Name:Adware:Win32/OpenCandy
ID:159633
Severity:1
Number of Resources:6
Resource Schema:file
Resource Path:F:\Programs\IZArc4.1.exe->(inno#000155)
Extended Info:188534088470235
Resource Schema:file
Resource Path

:\Users\Maja\Downloads\Programs\IZArc4.1.exe->(inno#000155)
Extended Info:188534088470235
Resource Schema:file
Resource Path:C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe->(inno#000155)
Extended Info:188534088470235
Resource Schema:containerfile
Resource Path:F:\Programs\IZArc4.1.exe
Extended Info:0
Resource Schema:containerfile
Resource Path

:\Users\Maja\Downloads\Programs\IZArc4.1.exe
Extended Info:0
Resource Schema:containerfile
Resource Path:C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe
Extended Info:0
Threat Name:Adware:JS/Advantage
ID:156261
Severity:2
Number of Resources:2
Resource Schema:file
Resource Path:C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\install.js
Extended Info:15568244960619
Resource Schema:containerfile
Resource Path:C:\Program Files\AdVantage\ffext.mod
Extended Info:0
Threat Name:Adware:Win32/Advantage
ID:18086
Severity:2
Number of Resources:2
Resource Schema:file
Resource Path:C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\components\MeMedia_FF.dll
Extended Info:77481240935276
Resource Schema:containerfile
Resource Path:C:\Program Files\AdVantage\ffext.mod
Extended Info:0
Threat Name:HackTool:Win32/Keygen
ID:2147593794
Severity:2
Number of Resources:2
Resource Schema:file
Resource Path

:\Users\Maja\Downloads\Programs\Windows Loader v1.9.3.zip->Windows Loader/Windows Loader.exe
Extended Info:24633941045526
Resource Schema:containerfile
Resource Path

:\Users\Maja\Downloads\Programs\Windows Loader v1.9.3.zip
Extended Info:0
End Scan
************************************************************
2012-05-10T06:38:56.062Z Task(SpyNetService -RestrictPrivileges -AccessKey 0328A637-2AA9-F858-8CF1-07ACB5105B0D) launched
Begin Resource Scan
Scan ID:{96A0E676-066E-4B4C-A8C5-BA87712817C9}
Scan Source:6
Start Time:05-09-2012 22:38:41
End Time:05-09-2012 22:39:25
Explicit resource to scan
Resource Schema:containerfile
Resource Path:C:\Documents and Settings\Jason\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000038
Explicit resource to scan
Resource Schema:containerfile
Resource Path:C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe
Explicit resource to scan
Resource Schema:containerfile
Resource Path:C:\Program Files\AdVantage\ffext.mod
Explicit resource to scan
Resource Schema:containerfile
Resource Path

:\Users\Maja\Downloads\Programs\IZArc4.1.exe
Explicit resource to scan
Resource Schema:containerfile
Resource Path

:\Users\Maja\Downloads\Programs\Windows Loader v1.9.3.zip
Explicit resource to scan
Resource Schema:containerfile
Resource Path:F:\Programs\IZArc4.1.exe
Explicit resource to scan
Resource Schema:file
Resource Path:C:\Documents and Settings\Jason\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000038->(GZip)
Explicit resource to scan
Resource Schema:file
Resource Path:C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe->(inno#000155)
Explicit resource to scan
Resource Schema:file
Resource Path:C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\components\MeMedia_FF.dll
Explicit resource to scan
Resource Schema:file
Resource Path:C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\install.js
Explicit resource to scan
Resource Schema:file
Resource Path

:\Users\Maja\Downloads\Programs\IZArc4.1.exe->(inno#000155)
Explicit resource to scan
Resource Schema:file
Resource Path

:\Users\Maja\Downloads\Programs\Windows Loader v1.9.3.zip->Windows Loader/Windows Loader.exe
Explicit resource to scan
Resource Schema:file
Resource Path:F:\Programs\IZArc4.1.exe->(inno#000155)
Result Count:5
Threat Name:Adware:JS/Pornpop
ID:153970
Severity:2
Number of Resources:2
Resource Schema:file
Resource Path:C:\Documents and Settings\Jason\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000038->(GZip)
Extended Info:5865989931585
Resource Schema:containerfile
Resource Path:C:\Documents and Settings\Jason\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000038
Extended Info:0
Threat Name:Adware:Win32/OpenCandy
ID:159633
Severity:1
Number of Resources:6
Resource Schema:file
Resource Path:F:\Programs\IZArc4.1.exe->(inno#000155)
Extended Info:188534088470235
Resource Schema:file
Resource Path

:\Users\Maja\Downloads\Programs\IZArc4.1.exe->(inno#000155)
Extended Info:188534088470235
Resource Schema:file
Resource Path:C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe->(inno#000155)
Extended Info:188534088470235
Resource Schema:containerfile
Resource Path:F:\Programs\IZArc4.1.exe
Extended Info:0
Resource Schema:containerfile
Resource Path

:\Users\Maja\Downloads\Programs\IZArc4.1.exe
Extended Info:0
Resource Schema:containerfile
Resource Path:C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe
Extended Info:0
Threat Name:Adware:JS/Advantage
ID:156261
Severity:2
Number of Resources:2
Resource Schema:file
Resource Path:C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\install.js
Extended Info:15568244960619
Resource Schema:containerfile
Resource Path:C:\Program Files\AdVantage\ffext.mod
Extended Info:0
Threat Name:Adware:Win32/Advantage
ID:18086
Severity:2
Number of Resources:2
Resource Schema:file
Resource Path:C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\components\MeMedia_FF.dll
Extended Info:77481240935276
Resource Schema:containerfile
Resource Path:C:\Program Files\AdVantage\ffext.mod
Extended Info:0
Threat Name:HackTool:Win32/Keygen
ID:2147593794
Severity:2
Number of Resources:2
Resource Schema:file
Resource Path

:\Users\Maja\Downloads\Programs\Windows Loader v1.9.3.zip->Windows Loader/Windows Loader.exe
Extended Info:24633941045526
Resource Schema:containerfile
Resource Path

:\Users\Maja\Downloads\Programs\Windows Loader v1.9.3.zip
Extended Info:0
End Scan
************************************************************
Beginning threat actions
Start time:05-09-2012 22:39:26
Threat Name:Adware:JS/Pornpop
Threat ID:153970
Action:remove
Threat Name:Adware:Win32/OpenCandy
Threat ID:159633
Action:remove
Threat Name:Adware:JS/Advantage
Threat ID:156261
Action:remove
Threat Name:Adware:Win32/Advantage
Threat ID:18086
Action:remove
Threat Name:HackTool:Win32/Keygen
Threat ID:2147593794
Action:remove
File to act on SHA1:6DBE312ADC97CC0F5DCFB527449893EA5169B0B6
!ERROR
Action clean/remove failed on file:\\?\F:\Programs\IZArc4.1.exe->(inno#000155)
Error code:1630
!ERROR
Resource action complete:Removal
Schema:file
Path:\\?\F:\Programs\IZArc4.1.exe->(inno#000155)
Threat ID:159633
Resource refcount:1
Result:1630
File to act on SHA1:2B1680820BDBE1903647B64C690D1C381B778344
File cleaned/removed successfully
File Name

:\Users\Maja\Downloads\Programs\Windows Loader v1.9.3.zip->Windows Loader/Windows Loader.exe
Resource action complete:Removal
Schema:file
Path:\\?\D:\Users\Maja\Downloads\Programs\Windows Loader v1.9.3.zip->Windows Loader/Windows Loader.exe
Threat ID:2147593794
Resource refcount:1
Result:0
File to act on SHA1:6DBE312ADC97CC0F5DCFB527449893EA5169B0B6
!ERROR
Action clean/remove failed on file:\\?\D:\Users\Maja\Downloads\Programs\IZArc4.1.exe->(inno#000155)
Error code:1630
!ERROR
Resource action complete:Removal
Schema:file
Path:\\?\D:\Users\Maja\Downloads\Programs\IZArc4.1.exe->(inno#000155)
Threat ID:159633
Resource refcount:1
Result:1630
File to act on SHA1:23062BB72A27D283F2CE57EFD35C16EAC2575461
!ERROR
Action clean/remove failed on file:\\?\C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\install.js
Error code:1630
!ERROR
Resource action complete:Removal
Schema:file
Path:\\?\C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\install.js
Threat ID:156261
Resource refcount:1
Result:1630
File to act on SHA1:23062BB72A27D283F2CE57EFD35C16EAC2575461
!ERROR
Action clean/remove failed on file:\\?\C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\components\MeMedia_FF.dll
Error code:1630
!ERROR
Resource action complete:Removal
Schema:file
Path:\\?\C:\Program Files\AdVantage\ffext.mod->{A89AED22-9133-424c-88E7-C8235C5FF302}\components\MeMedia_FF.dll
Threat ID:18086
Resource refcount:1
Result:1630
File to act on SHA1:6DBE312ADC97CC0F5DCFB527449893EA5169B0B6
!ERROR
Action clean/remove failed on file:\\?\C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe->(inno#000155)
Error code:1630
!ERROR
Resource action complete:Removal
Schema:file
Path:\\?\C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe->(inno#000155)
Threat ID:159633
Resource refcount:1
Result:1630
File to act on SHA1:E2698352BE874F511DC2C4ACE0BEE85C78D579F8
File cleaned/removed successfully
File Name:C:\Documents and Settings\Jason\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000038->(GZip)
Resource action complete:Removal
Schema:file
Path:\\?\C:\Documents and Settings\Jason\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000038->(GZip)
Threat ID:153970
Resource refcount:1
Result:0
Resource action complete:Quarantine
Schema:containerfile
Path:\\?\F:\Programs\IZArc4.1.exe
Threat ID:159633
Resource refcount:1
Result:0
File to act on SHA1:6DBE312ADC97CC0F5DCFB527449893EA5169B0B6
File cleaned/removed successfully
File Name:F:\Programs\IZArc4.1.exe
Resource action complete:Removal
Schema:containerfile
Path:\\?\F:\Programs\IZArc4.1.exe
Threat ID:159633
Resource refcount:1
Result:0
Resource action complete:Quarantine
Schema:containerfile
Path:\\?\D:\Users\Maja\Downloads\Programs\IZArc4.1.exe
Threat ID:159633
Resource refcount:1
Result:0
File to act on SHA1:6DBE312ADC97CC0F5DCFB527449893EA5169B0B6
File cleaned/removed successfully
File Name

:\Users\Maja\Downloads\Programs\IZArc4.1.exe
Resource action complete:Removal
Schema:containerfile
Path:\\?\D:\Users\Maja\Downloads\Programs\IZArc4.1.exe
Threat ID:159633
Resource refcount:1
Result:0
Resource action complete:Quarantine
Schema:containerfile
Path:\\?\C:\Program Files\AdVantage\ffext.mod
Threat ID:156261
Resource refcount:2
Result:0
Resource action complete:Removal
Schema:containerfile
Path:\\?\C:\Program Files\AdVantage\ffext.mod
Threat ID:156261
Resource refcount:2
Result:0
Resource action complete:Quarantine
Schema:containerfile
Path:\\?\C:\Program Files\AdVantage\ffext.mod
Threat ID:18086
Resource refcount:2
Result:0
File to act on SHA1:23062BB72A27D283F2CE57EFD35C16EAC2575461
File cleaned/removed successfully
File Name:C:\Program Files\AdVantage\ffext.mod
Resource action complete:Removal
Schema:containerfile
Path:\\?\C:\Program Files\AdVantage\ffext.mod
Threat ID:18086
Resource refcount:2
Result:0
Resource action complete:Quarantine
Schema:containerfile
Path:\\?\C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe
Threat ID:159633
Resource refcount:1
Result:0
File to act on SHA1:6DBE312ADC97CC0F5DCFB527449893EA5169B0B6
File cleaned/removed successfully
File Name:C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe
Resource action complete:Removal
Schema:containerfile
Path:\\?\C:\Documents and Settings\Maja\My Documents\Downloads\IZArc4.1.exe
Threat ID:159633
Resource refcount:1
Result:0
Finished threat ID:2147593794
Threat result:0
Threat status flags:0
Finished threat ID:18086
Threat result:0
Threat status flags:0
Finished threat ID:156261
Threat result:0
Threat status flags:0
Finished threat ID:159633
Threat result:0
Threat status flags:0
Finished threat ID:153970
Threat result:0
Threat status flags:0
Finished threat actions
End time:05-09-2012 22:39:37
Result:0
ERRORS_ONLY=0
MAX_SIZE=5120
APPEND=1
MAX_LINE_SIZE=256
-------------------------------------------------
START 2012/05/09 17:27:27:265 TID:856 PID:824
INFO 2012/05/09 17:27:27:265 TID:856 PID:824
Binary architecture is amd64
INFO 2012/05/09 17:27:27:281 TID:856 PID:824
UtilIsFileExists(D:\Windows\SysWOW64\ntdll.dll) returned 0x00000000
INFO 2012/05/09 17:27:27:281 TID:856 PID:824
CheckProcessorArchitecture returned 0x00000000
INFO 2012/05/09 17:27:27:281 TID:856 PID:824
Setting target OS key: "D:\Windows"
INFO 2012/05/09 17:27:27:281 TID:856 PID:824
SetRecoveryEnvironmentKey returned 0x00000000
INFO 2012/05/09 17:27:27:281 TID:856 PID:824
Searching for signatures. Default signature path: ""
INFO 2012/05/09 17:27:27:281 TID:856 PID:824
Searching for signatures at root of drives...
WARNING 2012/05/09 17:27:27:281 TID:856 PID:824
Missing definitions file in 'C:\mpam-fex64.exe'
WARNING 2012/05/09 17:27:27:281 TID:856 PID:824
Missing definitions file in 'D:\mpam-fex64.exe'
WARNING 2012/05/09 17:27:27:281 TID:856 PID:824
Missing definitions file in 'E:\mpam-fex64.exe'
WARNING 2012/05/09 17:27:27:281 TID:856 PID:824
Missing definitions file in 'F:\mpam-fex64.exe'
WARNING 2012/05/09 17:27:27:296 TID:856 PID:824
Missing definitions file in 'G:\mpam-fex64.exe'
WARNING 2012/05/09 17:27:27:296 TID:856 PID:824
Missing definitions file in 'H:\mpam-fex64.exe'
INFO 2012/05/09 17:27:27:296 TID:856 PID:824
Found definitions file in 'I:\mpam-fex64.exe'
INFO 2012/05/09 17:27:27:296 TID:856 PID:824
Using signature path: "I:\mpam-fex64.exe"
INFO 2012/05/09 17:27:27:296 TID:856 PID:824
SearchForSignatures returned 0x00000000
INFO 2012/05/09 17:27:27:296 TID:856 PID:824
Initializing offline environment and service...
INFO 2012/05/09 17:27:43:671 TID:856 PID:824
Launching user interface...
INFO 2012/05/09 17:27:43:671 TID:856 PID:824
Launched UI, waiting...
INFO 2012/05/09 22:40:36:468 TID:856 PID:824
Wait finished (UI signaled)
INFO 2012/05/09 22:40:36:468 TID:856 PID:824
RunCallisto returned 0x00000000
INFO 2012/05/09 22:40:38:468 TID:856 PID:824
Offline scan completed with 0x00000000
FINISH 2012/05/09 22:40:38:468 TID:828 PID:824