It gave me a warning about spybot being running, but doesn't seem to have done any harm
ComboFix 09-12-11.05 - Owner 12/12/2009 19:52:19.5.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.44.1033.18.2045.1488 [GMT 0:00]
Running from: c:\users\Owner\Desktop\ComboFix.exe
Command switches used :: c:\users\Owner\Desktop\CFScript.txt
SP: Spybot - Search and Destroy *disabled* (Updated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
FILE ::
"c:\windows\win32k.sys"
file zipped: c:\users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desk.exe
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desk.exe
c:\windows\win32k.sys
.
((((((((((((((((((((((((( Files Created from 2009-11-12 to 2009-12-12 )))))))))))))))))))))))))))))))
.
2009-12-12 19:55 . 2009-12-12 19:56 -------- d-----w- c:\users\Owner\AppData\Local\temp
2009-12-12 19:55 . 2009-12-12 19:55 -------- d-----w- c:\users\Public\AppData\Local\temp
2009-12-12 19:55 . 2009-12-12 19:55 -------- d-----w- c:\users\Default\AppData\Local\temp
2009-12-12 19:55 . 2009-12-12 19:55 -------- d-----w- c:\users\apache2triad\AppData\Local\temp
2009-12-12 19:55 . 2009-12-12 19:55 -------- d-----w- c:\users\apache2triad.Shiny-PC\AppData\Local\temp
2009-12-12 19:55 . 2009-12-12 19:55 -------- d-----w- c:\users\Apache\AppData\Local\temp
2009-12-11 20:21 . 2009-12-11 20:24 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-12-07 17:16 . 2009-12-07 17:18 -------- d-----w- c:\users\Owner\AppData\Local\Adobe
2009-12-06 16:36 . 2009-12-06 16:36 -------- d-----w- c:\users\Owner\AppData\Local\Apple Computer
2009-12-05 16:58 . 2009-12-05 16:58 -------- d-----w- c:\program files\Common Files\Adobe
2009-12-05 16:57 . 2009-12-05 16:57 411368 ----a-w- c:\windows\system32\deploytk.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-11 20:21 . 2008-08-27 22:57 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2009-12-08 19:50 . 2008-09-06 23:21 -------- d-----w- c:\program files\Diablo II
2009-12-05 16:56 . 2008-08-19 15:21 -------- d-----w- c:\program files\Java
2009-11-19 16:55 . 2009-06-29 08:08 -------- d-----w- c:\program files\Free Music Zilla
2009-11-12 05:13 . 2009-04-18 02:35 -------- d-----w- c:\users\Owner\AppData\Roaming\IrfanView
2009-11-08 04:52 . 2009-11-08 04:52 -------- d-----w- c:\program files\Microsoft
2009-11-08 04:51 . 2009-11-08 04:51 -------- d-----w- c:\program files\Windows Live SkyDrive
2009-11-08 04:51 . 2008-08-28 00:17 -------- d-----w- c:\program files\Windows Live
2009-11-08 04:50 . 2009-11-08 04:50 -------- d-----w- c:\program files\Common Files\Windows Live
2009-10-19 07:40 . 2009-10-19 07:40 -------- d-----w- c:\program files\Information Packaging
2009-10-19 07:29 . 2009-10-19 07:29 -------- d-----w- c:\program files\Datahjaelp
2009-10-19 07:10 . 2009-10-19 07:09 -------- d-----w- c:\program files\ZIP PASSWORD FINDER
2008-08-20 00:02 . 2008-08-20 00:02 8192 --sha-w- c:\windows\Users\Default\NTUSER.DAT
.
((((((((((((((((((((((((((((( SnapShot@2009-12-02_15.10.19 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-01-21 01:58 . 2009-12-12 19:44 34030 c:\windows\System32\WDI\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2006-11-02 13:05 . 2009-12-12 19:44 70584 c:\windows\System32\WDI\BootPerformanceDiagnostics_SystemData.bin
+ 2008-08-26 18:31 . 2009-12-12 19:44 9252 c:\windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1283296827-177754420-2501937510-1000_UserData.bin
+ 2009-12-12 19:42 . 2009-12-12 19:42 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2009-12-02 15:08 . 2009-12-02 15:08 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2009-12-02 15:08 . 2009-12-02 15:08 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2009-12-12 19:42 . 2009-12-12 19:42 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2008-09-17 17:21 . 2009-12-11 12:53 234604 c:\windows\System32\WDI\SuspendPerformanceDiagnostics_SystemData_S4.bin
+ 2006-11-02 10:33 . 2009-12-12 19:46 599942 c:\windows\System32\perfh009.dat
- 2006-11-02 10:33 . 2009-12-02 13:50 599942 c:\windows\System32\perfh009.dat
- 2006-11-02 10:33 . 2009-12-02 13:50 105448 c:\windows\System32\perfc009.dat
+ 2006-11-02 10:33 . 2009-12-12 19:46 105448 c:\windows\System32\perfc009.dat
+ 2009-12-05 16:57 . 2009-12-05 16:57 149280 c:\windows\System32\javaws.exe
+ 2009-12-05 16:57 . 2009-12-05 16:57 145184 c:\windows\System32\javaw.exe
+ 2009-12-05 16:57 . 2009-12-05 16:57 145184 c:\windows\System32\java.exe
+ 2008-02-03 23:12 . 2009-12-05 16:55 5813397 c:\windows\winsxs\ManifestCache\6.0.6001.18000_001c50b5_blobs.bin
+ 2006-11-02 10:22 . 2009-12-09 13:36 6291456 c:\windows\System32\SMI\Store\Machine\schema.dat
- 2006-11-02 10:22 . 2009-05-24 02:04 6291456 c:\windows\System32\SMI\Store\Machine\schema.dat
+ 2009-12-05 16:58 . 2009-12-05 16:58 3940352 c:\windows\Installer\9fb2400.msi
+ 2009-12-05 16:56 . 2009-12-05 16:56 1757696 c:\windows\Installer\9fb23fc.msi
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2009-02-12 185872]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-05 149280]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-09-04 935288]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Cable & Wireless 11g Wireless USB.lnk - c:\program files\Cable&Wireless\C&W_802.11g_Utility\C&WWLAN.exe [2008-10-28 438272]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\GoToAssist]
2008-08-19 15:31 10536 ----a-w- c:\program files\Citrix\GoToAssist\514\g2awinlogon.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKLM\~\startupfolder\C:^Users^Owner^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Free Music Zilla.lnk]
path=c:\users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Free Music Zilla.lnk
backup=c:\windows\pss\Free Music Zilla.lnk.Startup
backupExtension=.Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\dscactivate]
2008-03-11 11:44 16384 ----a-w- c:\program files\Dell Support Center\gs_agent\custom\dsca.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2009-05-22 14:04 1217784 ----a-w- c:\program files\Steam\steam.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
2009-02-12 01:26 185872 ----a-w- c:\program files\Common Files\Real\Update_OB\realsched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
2008-01-21 02:23 1008184 ----a-w- c:\program files\Windows Defender\MSASCui.exe
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" -atboottime
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" -osboot
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-1283296827-177754420-2501937510-1000]
"EnableNotificationsRef"=dword:00000001
S2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [11/12/2009 20:21 1153368]
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.altavista.com/
uInternet Settings,ProxyOverride = <local>
Trusted Zone: filesmonster.com
FF - ProfilePath - c:\users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d4tovtom.default\
FF - prefs.js: browser.startup.homepage - google.co.uk
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-12 19:56
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2009-12-12 19:57:57
ComboFix-quarantined-files.txt 2009-12-12 19:57
ComboFix2.txt 2009-12-11 20:11
ComboFix3.txt 2009-12-09 15:08
ComboFix4.txt 2009-12-03 18:10
ComboFix5.txt 2009-12-12 19:51
Pre-Run: 100,886,040,576 bytes free
Post-Run: 101,709,758,464 bytes free
- - End Of File - - DD752BF575AC2B74C21B0128FA1130EA
Upload was successful
ComboFix 09-12-11.05 - Owner 12/12/2009 19:52:19.5.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.44.1033.18.2045.1488 [GMT 0:00]
Running from: c:\users\Owner\Desktop\ComboFix.exe
Command switches used :: c:\users\Owner\Desktop\CFScript.txt
SP: Spybot - Search and Destroy *disabled* (Updated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
FILE ::
"c:\windows\win32k.sys"
file zipped: c:\users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desk.exe
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desk.exe
c:\windows\win32k.sys
.
((((((((((((((((((((((((( Files Created from 2009-11-12 to 2009-12-12 )))))))))))))))))))))))))))))))
.
2009-12-12 19:55 . 2009-12-12 19:56 -------- d-----w- c:\users\Owner\AppData\Local\temp
2009-12-12 19:55 . 2009-12-12 19:55 -------- d-----w- c:\users\Public\AppData\Local\temp
2009-12-12 19:55 . 2009-12-12 19:55 -------- d-----w- c:\users\Default\AppData\Local\temp
2009-12-12 19:55 . 2009-12-12 19:55 -------- d-----w- c:\users\apache2triad\AppData\Local\temp
2009-12-12 19:55 . 2009-12-12 19:55 -------- d-----w- c:\users\apache2triad.Shiny-PC\AppData\Local\temp
2009-12-12 19:55 . 2009-12-12 19:55 -------- d-----w- c:\users\Apache\AppData\Local\temp
2009-12-11 20:21 . 2009-12-11 20:24 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-12-07 17:16 . 2009-12-07 17:18 -------- d-----w- c:\users\Owner\AppData\Local\Adobe
2009-12-06 16:36 . 2009-12-06 16:36 -------- d-----w- c:\users\Owner\AppData\Local\Apple Computer
2009-12-05 16:58 . 2009-12-05 16:58 -------- d-----w- c:\program files\Common Files\Adobe
2009-12-05 16:57 . 2009-12-05 16:57 411368 ----a-w- c:\windows\system32\deploytk.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-11 20:21 . 2008-08-27 22:57 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2009-12-08 19:50 . 2008-09-06 23:21 -------- d-----w- c:\program files\Diablo II
2009-12-05 16:56 . 2008-08-19 15:21 -------- d-----w- c:\program files\Java
2009-11-19 16:55 . 2009-06-29 08:08 -------- d-----w- c:\program files\Free Music Zilla
2009-11-12 05:13 . 2009-04-18 02:35 -------- d-----w- c:\users\Owner\AppData\Roaming\IrfanView
2009-11-08 04:52 . 2009-11-08 04:52 -------- d-----w- c:\program files\Microsoft
2009-11-08 04:51 . 2009-11-08 04:51 -------- d-----w- c:\program files\Windows Live SkyDrive
2009-11-08 04:51 . 2008-08-28 00:17 -------- d-----w- c:\program files\Windows Live
2009-11-08 04:50 . 2009-11-08 04:50 -------- d-----w- c:\program files\Common Files\Windows Live
2009-10-19 07:40 . 2009-10-19 07:40 -------- d-----w- c:\program files\Information Packaging
2009-10-19 07:29 . 2009-10-19 07:29 -------- d-----w- c:\program files\Datahjaelp
2009-10-19 07:10 . 2009-10-19 07:09 -------- d-----w- c:\program files\ZIP PASSWORD FINDER
2008-08-20 00:02 . 2008-08-20 00:02 8192 --sha-w- c:\windows\Users\Default\NTUSER.DAT
.
((((((((((((((((((((((((((((( SnapShot@2009-12-02_15.10.19 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-01-21 01:58 . 2009-12-12 19:44 34030 c:\windows\System32\WDI\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2006-11-02 13:05 . 2009-12-12 19:44 70584 c:\windows\System32\WDI\BootPerformanceDiagnostics_SystemData.bin
+ 2008-08-26 18:31 . 2009-12-12 19:44 9252 c:\windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1283296827-177754420-2501937510-1000_UserData.bin
+ 2009-12-12 19:42 . 2009-12-12 19:42 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2009-12-02 15:08 . 2009-12-02 15:08 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2009-12-02 15:08 . 2009-12-02 15:08 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2009-12-12 19:42 . 2009-12-12 19:42 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2008-09-17 17:21 . 2009-12-11 12:53 234604 c:\windows\System32\WDI\SuspendPerformanceDiagnostics_SystemData_S4.bin
+ 2006-11-02 10:33 . 2009-12-12 19:46 599942 c:\windows\System32\perfh009.dat
- 2006-11-02 10:33 . 2009-12-02 13:50 599942 c:\windows\System32\perfh009.dat
- 2006-11-02 10:33 . 2009-12-02 13:50 105448 c:\windows\System32\perfc009.dat
+ 2006-11-02 10:33 . 2009-12-12 19:46 105448 c:\windows\System32\perfc009.dat
+ 2009-12-05 16:57 . 2009-12-05 16:57 149280 c:\windows\System32\javaws.exe
+ 2009-12-05 16:57 . 2009-12-05 16:57 145184 c:\windows\System32\javaw.exe
+ 2009-12-05 16:57 . 2009-12-05 16:57 145184 c:\windows\System32\java.exe
+ 2008-02-03 23:12 . 2009-12-05 16:55 5813397 c:\windows\winsxs\ManifestCache\6.0.6001.18000_001c50b5_blobs.bin
+ 2006-11-02 10:22 . 2009-12-09 13:36 6291456 c:\windows\System32\SMI\Store\Machine\schema.dat
- 2006-11-02 10:22 . 2009-05-24 02:04 6291456 c:\windows\System32\SMI\Store\Machine\schema.dat
+ 2009-12-05 16:58 . 2009-12-05 16:58 3940352 c:\windows\Installer\9fb2400.msi
+ 2009-12-05 16:56 . 2009-12-05 16:56 1757696 c:\windows\Installer\9fb23fc.msi
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2009-02-12 185872]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-05 149280]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-09-04 935288]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Cable & Wireless 11g Wireless USB.lnk - c:\program files\Cable&Wireless\C&W_802.11g_Utility\C&WWLAN.exe [2008-10-28 438272]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\GoToAssist]
2008-08-19 15:31 10536 ----a-w- c:\program files\Citrix\GoToAssist\514\g2awinlogon.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKLM\~\startupfolder\C:^Users^Owner^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Free Music Zilla.lnk]
path=c:\users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Free Music Zilla.lnk
backup=c:\windows\pss\Free Music Zilla.lnk.Startup
backupExtension=.Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\dscactivate]
2008-03-11 11:44 16384 ----a-w- c:\program files\Dell Support Center\gs_agent\custom\dsca.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2009-05-22 14:04 1217784 ----a-w- c:\program files\Steam\steam.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
2009-02-12 01:26 185872 ----a-w- c:\program files\Common Files\Real\Update_OB\realsched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
2008-01-21 02:23 1008184 ----a-w- c:\program files\Windows Defender\MSASCui.exe
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" -atboottime
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" -osboot
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-1283296827-177754420-2501937510-1000]
"EnableNotificationsRef"=dword:00000001
S2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [11/12/2009 20:21 1153368]
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.altavista.com/
uInternet Settings,ProxyOverride = <local>
Trusted Zone: filesmonster.com
FF - ProfilePath - c:\users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d4tovtom.default\
FF - prefs.js: browser.startup.homepage - google.co.uk
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-12 19:56
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2009-12-12 19:57:57
ComboFix-quarantined-files.txt 2009-12-12 19:57
ComboFix2.txt 2009-12-11 20:11
ComboFix3.txt 2009-12-09 15:08
ComboFix4.txt 2009-12-03 18:10
ComboFix5.txt 2009-12-12 19:51
Pre-Run: 100,886,040,576 bytes free
Post-Run: 101,709,758,464 bytes free
- - End Of File - - DD752BF575AC2B74C21B0128FA1130EA
Upload was successful