Mode : -a---
FullName : C:\Windows\Microsoft Antimalware\Support\MpCacheStats.log
Name : MpCacheStats.log
CreationTime : 04/08/2012 12:21:59
LastWriteTime : 04/08/2012 12:21:59
LastAccessTime : 04/08/2012 12:21:59
Length : 978
Extension : .log
Mode : -a---
FullName : C:\Windows\Microsoft Antimalware\Support\MPLog-08042012-032159
.log
Name : MPLog-08042012-032159.log
CreationTime : 04/08/2012 12:21:59
LastWriteTime : 04/08/2012 13:43:12
LastAccessTime : 04/08/2012 12:21:59
Length : 5434
Extension : .log
Mode : -a---
FullName : C:\Windows\Microsoft Antimalware\Support\MPDetection-08042012-
032159.log
Name : MPDetection-08042012-032159.log
CreationTime : 04/08/2012 12:21:59
LastWriteTime : 04/08/2012 13:43:12
LastAccessTime : 04/08/2012 12:21:59
Length : 468
Extension : .log
Mode : -a---
FullName : C:\Windows\Microsoft Antimalware\Support\msssWrapper.log
Name : msssWrapper.log
CreationTime : 04/08/2012 12:21:59
LastWriteTime : 04/08/2012 13:43:13
LastAccessTime : 04/08/2012 12:21:59
Length : 3806
Extension : .log
###############################################################################
C:\Windows\Microsoft Antimalware\Support\MpCacheStats.log
* * * * * * * * * * C a c h e s t a t s * * * * * * * * * * * *
N o . O f b u c k e t s - > 1 2 8 0 0
E a c h B u c k e t h a s m a x c a p a c i t y o f - > 1 e n t r i e s
n u m b e r o f E n t r i e s i s 0
N u m b e r o f i n v a l i d e n t r i e s i s 0
N u m b e r o f I n s e r t s i s s u e d i s 0
N u m b e r o f r e p l a c e s i s s u e d i s 0
N u m b e r o f I n s e r t f a i l u r e s i s 0
N u m b e r o f l o o k u p s i s 0
N u m b e r o f m i s s e s i s 0
N u m b e r o f f a l s e f a s t l o o k u p s i s 0
N u m b e r o f i n v a l i d a t i o n s i s 0
N u m b e r o f m a i n t e n a n c e i n v a l i d a t i o n s i s 0
C u r r e n t F i l e S i z e i s 3 1 1 2 9 6
J o u r n a l I D = 0
T r u s t e d i m a g e s t a t e = 0 U S N = 0
###############################################################################
C:\Windows\Microsoft Antimalware\Support\MPLog-08042012-032159.log
--------------------------------------------------------------------------------
2012-08-04T11:21:59.443Z Trace session started - MpWppTracing-08042012-032159-00000003-ffffffff.bin
2012-08-04T11:21:59.443Z Service is asked to be reenabled.
2012-08-04T11:21:59.458Z Task(-EnableService) launched**********Cache stats************
No. Of buckets -> 12800
Each Bucket has max capacity of -> 1 entries
number of Entries is 0
Number of invalid entries is 0
Number of Inserts issued is 0
Number of replaces issued is 0
Number of Insert failures is 0
Number of lookups is 0
Number of misses is 0
Number of false fast lookups is 0
Number of invalidations is 0
Number of maintenance invalidations is 0
Current File Size is 311296
Journal ID = 0
Trusted image state = 0 USN = 0
2012-08-04T11:21:59.474Z Loading engine...
2012-08-04T11:21:59.474Z loaded!
2012-08-04T11:21:59.474Z NisUpdate from SignatureDropLocation returns S_OK
2012-08-04T11:21:59.474Z NisUpdate from SignatureDefaultLocation returns S_OK
2012-08-04T11:21:59.474Z Cache Disabled: 0
2012-08-04T11:21:59.490Z Verifying license file...
2012-08-04T11:21:59.490Z verified!
2012-08-04T11:21:59.490Z Product supports installmode: 0
Product Version: 4.0.1538.0
Service Version: 4.0.1538.0
Engine Version: 0.0.0.0
AS Signature Version: 0.0.0.0
AV Signature Version: 0.0.0.0
************************************************************
2012-08-04T11:22:21.392Z Verifying engine and signature files (source: 0) ...
2012-08-04T11:22:21.642Z verified!
2012-08-04T11:22:25.183Z Initializing SQM in engine...
2012-08-04T11:22:25.183Z SQM initialized in the engine successfully
Signature updated on 08-04-2012 03:22:25
Product Version: 4.0.1538.0
Service Version: 4.0.1538.0
Engine Version: 1.1.8601.0
AS Signature Version: 1.131.1345.0
AV Signature Version: 1.131.1345.0
************************************************************
2012-08-04T12:40:38.825Z Task(SpyNetService -RestrictPrivileges -AccessKey B6F2C07F-E4D2-B65B-4509-4DB42F4D78D5) launched
Begin Resource Scan
Scan ID:{6A86893A-4E1C-4BFA-BAA9-E479E3E8AE9E}
Scan Source:7
Start Time:08-04-2012 04:41:07
End Time:08-04-2012 04:41:13
Explicit resource to scan
Resource Schema:queryfilertsig
Resource Path

:\Users\Dwayn\Downloads\avg_pct_stf_all_10_27_c1.exe
Result Count:1
Known File
Number of Resources:2
Resource Schema:file
Resource Path

:\Users\Dwayn\Downloads\avg_pct_stf_all_10_27_c1.exe:Zone.Identifier
Extended Info:35874746033117
Resource Schema:file
Resource Path

:\Users\Dwayn\Downloads\avg_pct_stf_all_10_27_c1.exe
Extended Info:103835777263593
End Scan
************************************************************
###############################################################################
C:\Windows\Microsoft Antimalware\Support\MPDetection-08042012-032159.log
2012-08-04T11:21:59.490Z Version: Product 4.0.1538.0 Service 4.0.1538.0 Engine 0.0.0.0 AS 0.0.0.0 AV 0.0.0.0
2012-08-04T11:22:25.230Z Version: Product 4.0.1538.0 Service 4.0.1538.0 Engine 1.1.8601.0 AS 1.131.1345.0 AV 1.131.1345.0
###############################################################################
C:\Windows\Microsoft Antimalware\Support\msssWrapper.log
ERRORS_ONLY=0
MAX_SIZE=5120
APPEND=1
MAX_LINE_SIZE=256
-------------------------------------------------
START 2012/08/04 03:21:59:240 TID:932 PID:824
INFO 2012/08/04 03:21:59:240 TID:932 PID:824
Binary architecture is amd64
INFO 2012/08/04 03:21:59:271 TID:932 PID:824
UtilIsFileExists(D:\Windows\SysWOW64\ntdll.dll) returned 0x00000000
INFO 2012/08/04 03:21:59:271 TID:932 PID:824
CheckProcessorArchitecture returned 0x00000000
INFO 2012/08/04 03:21:59:271 TID:932 PID:824
Setting target OS key: "D:\Windows"
INFO 2012/08/04 03:21:59:271 TID:932 PID:824
SetRecoveryEnvironmentKey returned 0x00000000
INFO 2012/08/04 03:21:59:271 TID:932 PID:824
Searching for signatures. Default signature path: ""
INFO 2012/08/04 03:21:59:271 TID:932 PID:824
Searching for signatures at root of drives...
WARNING 2012/08/04 03:21:59:271 TID:932 PID:824
Missing definitions file in 'C:\mpam-fex64.exe'
WARNING 2012/08/04 03:21:59:271 TID:932 PID:824
Missing definitions file in 'D:\mpam-fex64.exe'
INFO 2012/08/04 03:21:59:271 TID:932 PID:824
Found definitions file in 'E:\mpam-fex64.exe'
INFO 2012/08/04 03:21:59:271 TID:932 PID:824
Using signature path: "E:\mpam-fex64.exe"
INFO 2012/08/04 03:21:59:271 TID:932 PID:824
SearchForSignatures returned 0x00000000
INFO 2012/08/04 03:21:59:271 TID:932 PID:824
Initializing offline environment and service...
INFO 2012/08/04 03:22:25:230 TID:932 PID:824
Launching user interface...
INFO 2012/08/04 03:22:25:245 TID:932 PID:824
Launched UI, waiting...
INFO 2012/08/04 04:43:11:160 TID:932 PID:824
Wait finished (UI signaled)
INFO 2012/08/04 04:43:11:160 TID:932 PID:824
RunCallisto returned 0x00000000
INFO 2012/08/04 04:43:13:172 TID:932 PID:824
Offline scan completed with 0x00000000
FINISH 2012/08/04 04:43:13:172 TID:828 PID:824