ComboFix 11-04-23.01 - Owner 04/23/2011 12:17:21.1.4 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.3326.2668 [GMT -10:00]
Running from: D:\ComboFix.exe
AV: AntiVir Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
FW: PC Tools Firewall Plus *Enabled* {ABBD5028-5A95-4B6D-996E-98D64AE88D52}
.
.
((((((((((((((((((((((((( Files Created from 2011-03-23 to 2011-04-23 )))))))))))))))))))))))))))))))
.
.
2011-04-23 21:43 . 2011-04-23 21:43 -------- d-----w- c:\program files\Avira
2011-04-23 21:43 . 2011-04-23 21:43 -------- d-----w- c:\documents and settings\All Users\Application Data\Avira
2011-04-23 21:43 . 2011-03-05 02:11 137656 ----a-w- c:\windows\system32\drivers\avipbb.sys
2011-04-23 21:43 . 2011-03-05 00:37 61960 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2011-04-23 21:43 . 2010-06-18 00:27 45416 ----a-w- c:\windows\system32\drivers\avgntdd.sys
2011-04-23 21:43 . 2010-06-18 00:27 22360 ----a-w- c:\windows\system32\drivers\avgntmgr.sys
2011-04-23 21:12 . 2011-04-23 21:12 -------- d-----w- c:\documents and settings\All Users\Application Data\PC Tools
2011-04-23 13:21 . 2011-04-23 13:21 388096 ----a-r- c:\documents and settings\Owner\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-04-23 13:21 . 2011-04-23 13:21 -------- d-----w- c:\program files\Trend Micro
2011-04-23 12:54 . 2011-04-23 12:54 -------- d-----w- c:\documents and settings\Owner\Application Data\Malwarebytes
2011-04-23 12:52 . 2010-12-21 04:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-04-23 12:52 . 2011-04-23 12:52 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2011-04-23 12:52 . 2011-04-23 12:52 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-04-23 12:52 . 2010-12-21 04:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-04-23 10:08 . 2011-04-23 10:08 -------- d-----w- c:\documents and settings\Owner\Application Data\SUPERAntiSpyware.com
2011-04-23 09:18 . 2011-04-23 09:20 -------- d-----w- c:\program files\SUPERAntiSpyware
2011-04-23 08:55 . 2011-04-23 08:55 -------- d-----w- c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2011-04-23 08:55 . 2011-04-23 08:55 -------- d-----w- c:\documents and settings\Administrator\Application Data\SUPERAntiSpyware.com
2011-04-23 00:51 . 2011-04-23 00:51 -------- d-----w- c:\program files\Muiltmedia keyboard utility
2011-04-22 23:45 . 2011-04-22 23:45 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\Mozilla
2011-04-21 13:40 . 2011-04-22 05:45 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2011-04-21 08:42 . 2011-04-21 08:43 -------- d-----w- c:\documents and settings\Owner\Application Data\PCToolsFirewallPlus
2011-04-21 08:42 . 2010-11-25 20:53 160448 ----a-w- c:\windows\system32\drivers\PCTAppEvent.sys
2011-04-21 08:42 . 2010-03-29 21:06 218592 ----a-w- c:\windows\system32\drivers\PCTCore.sys
2011-04-21 08:42 . 2010-11-17 20:19 249616 ----a-w- c:\windows\system32\drivers\pctgntdi.sys
2011-04-21 08:41 . 2011-04-23 21:03 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2011-04-21 08:41 . 2011-04-21 08:42 -------- d-----w- c:\program files\Common Files\PC Tools
2011-04-21 08:41 . 2010-11-24 19:18 89192 ----a-w- c:\windows\system32\drivers\pctNdis-PacketFilter.sys
2011-04-21 08:41 . 2010-07-08 19:49 57536 ----a-w- c:\windows\system32\drivers\pctNdis.sys
2011-04-21 08:41 . 2010-02-05 19:26 32808 ----a-w- c:\windows\system32\drivers\pctNdis-DNS.sys
2011-04-21 08:41 . 2010-11-25 20:42 124992 ----a-w- c:\windows\system32\drivers\pctplfw.sys
2011-04-21 08:41 . 2011-04-21 08:52 -------- d-----w- c:\program files\PC Tools Firewall Plus
2011-04-18 06:00 . 2011-04-18 06:27 -------- d-----w- c:\documents and settings\Owner\Application Data\vlc
2011-04-17 01:14 . 2011-04-17 01:54 -------- d-----w- C:\Vids 2 b transferred
2011-04-17 01:11 . 2011-04-18 07:26 -------- d-----w- C:\Recovered
2011-04-17 00:39 . 2008-04-14 00:11 21504 -c--a-w- c:\windows\system32\dllcache\hidserv.dll
2011-04-17 00:39 . 2008-04-14 00:11 21504 ----a-w- c:\windows\system32\hidserv.dll
2011-04-16 22:51 . 2011-04-16 22:51 -------- d-----w- c:\program files\Recuva
2011-04-15 21:30 . 2011-04-20 23:11 -------- d-----w- C:\pics
2011-04-15 04:11 . 2011-04-16 21:49 -------- d-----w- C:\ITunes Music
2011-04-09 05:33 . 2011-04-09 05:34 -------- d-----w- C:\dvd rips
2011-04-08 01:42 . 2011-04-18 20:55 -------- d-----w- C:\YT Ready
2011-04-06 09:08 . 2011-04-06 09:08 -------- d-----w- c:\program files\Yahoo!
2011-04-06 00:50 . 2011-04-06 00:50 -------- d-----w- c:\documents and settings\Owner\Local Settings\Application Data\WMTools Downloaded Files
2011-04-05 22:05 . 2011-04-20 07:36 -------- d-----w- C:\DVR *censored*
2011-04-05 21:51 . 2011-04-05 21:51 -------- d-----w- c:\documents and settings\Owner\Local Settings\Application Data\VHS to DVD
2011-04-05 21:37 . 2008-04-13 18:46 15232 -c--a-w- c:\windows\system32\dllcache\mpe.sys
2011-04-05 21:37 . 2008-04-13 18:46 15232 ----a-w- c:\windows\system32\drivers\MPE.sys
2011-04-05 21:36 . 2008-04-14 00:12 56832 ----a-w- c:\windows\system32\MSDvbNP.ax
2011-04-05 21:36 . 2008-04-14 00:12 33280 ----a-w- c:\windows\system32\PsisRndr.ax
2011-04-05 21:36 . 2008-04-14 00:12 18432 ----a-w- c:\windows\system32\BdaPlgIn.ax
2011-04-05 21:36 . 2008-04-14 00:12 363520 -c--a-w- c:\windows\system32\dllcache\psisdecd.dll
2011-04-05 21:36 . 2008-04-14 00:12 363520 ----a-w- c:\windows\system32\PsisDecd.dll
2011-04-05 21:36 . 2008-04-13 18:46 11776 -c--a-w- c:\windows\system32\dllcache\bdasup.sys
2011-04-05 21:36 . 2008-04-13 18:46 11776 ----a-w- c:\windows\system32\drivers\BdaSup.sys
2011-04-05 21:28 . 2007-06-23 03:59 479232 ----a-w- c:\windows\system32\drivers\emBDA.sys
2011-04-05 21:28 . 2007-06-23 03:57 106496 ----a-w- c:\windows\system32\emPRP.ax
2011-04-05 21:28 . 2007-02-07 02:38 28288 ----a-w- c:\windows\system32\drivers\emOEM.sys
2011-04-05 21:28 . 2006-12-16 02:54 61440 ----a-w- c:\windows\emMON.exe
2011-04-05 21:28 . 2011-04-05 21:28 -------- d-----w- c:\program files\VIDBOX NW03
2011-04-05 21:25 . 2011-04-05 21:25 -------- d-----w- c:\program files\honestech
2011-04-05 21:25 . 2011-04-05 21:25 -------- d-----w- c:\program files\honestech VHS to DVD 4.0 Plus
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-03-07 05:33 . 2009-03-31 03:20 692736 ----a-w- c:\windows\system32\inetcomm.dll
2011-03-04 06:37 . 2004-08-04 10:00 420864 ----a-w- c:\windows\system32\vbscript.dll
2011-03-03 13:21 . 2004-08-04 10:00 1857920 ----a-w- c:\windows\system32\win32k.sys
2011-02-22 23:06 . 2006-03-04 03:33 916480 ----a-w- c:\windows\system32\wininet.dll
2011-02-22 23:06 . 2004-08-04 10:00 43520 ----a-w- c:\windows\system32\licmgr10.dll
2011-02-22 23:06 . 2004-08-04 10:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2011-02-22 11:41 . 2004-08-04 10:00 385024 ----a-w- c:\windows\system32\html.iec
2011-02-17 13:18 . 2004-08-04 10:00 455936 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-02-17 13:18 . 2004-08-04 10:00 357888 ----a-w- c:\windows\system32\drivers\srv.sys
2011-02-17 12:32 . 2009-04-16 05:59 5120 ----a-w- c:\windows\system32\xpsp4res.dll
2011-02-15 12:56 . 2004-08-04 10:00 290432 ----a-w- c:\windows\system32\atmfd.dll
2011-02-09 13:53 . 2004-08-04 10:00 270848 ----a-w- c:\windows\system32\sbe.dll
2011-02-09 13:53 . 2004-08-04 10:00 186880 ----a-w- c:\windows\system32\encdec.dll
2011-02-08 13:33 . 2004-08-04 10:00 978944 ----a-w- c:\windows\system32\mfc42.dll
2011-02-08 13:33 . 2004-08-04 10:00 974848 ----a-w- c:\windows\system32\mfc42u.dll
2011-02-03 07:40 . 2010-04-24 09:07 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-02-03 05:19 . 2010-04-24 09:07 73728 ----a-w- c:\windows\system32\javacpl.cpl
2011-02-02 07:58 . 2009-03-31 03:19 2067456 ----a-w- c:\windows\system32\mstscax.dll
2011-01-27 11:57 . 2009-03-31 03:19 677888 ----a-w- c:\windows\system32\mstsc.exe
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2006-10-19 204288]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2007-05-29 16132608]
"LogitechCommunicationsManager"="c:\program files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" [2008-08-15 565008]
"LogitechQuickCamRibbon"="c:\program files\Logitech\QuickCam\Quickcam.exe" [2008-08-15 2407184]
"Nitro PDF Printer Monitor"="c:\program files\Nitro PDF\Professional\NitroPDFPrinterMonitor.exe" [2008-02-09 210208]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-11-11 417792]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-02-16 141608]
"MMReminderService"="c:\program files\Mindjet\MindManager 8\MMReminderService.exe" [2008-11-14 37656]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2011-01-31 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-09-21 932288]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-10-30 249064]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2011-01-08 111208]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2011-01-08 13880424]
"nwiz"="c:\program files\NVIDIA Corporation\nView\nwiz.exe" [2010-11-04 1753192]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-05-05 102400]
"00PCTFW"="c:\program files\PC Tools Firewall Plus\FirewallGUI.exe" [2010-11-29 2676696]
"FLMK08KB"="c:\program files\Muiltmedia keyboard utility\1.1\MMKEYBD.EXE" [2011-04-23 207360]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2011-03-05 281768]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"AvgUninstallURL"="start http:" [X]
.
c:\documents and settings\Owner\Start Menu\Programs\Startup\
Adobe Gamma.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-3-16 113664]
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 22:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"Midi1"=ma_cmidn.dll
"midi2"=ma_cmidn.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Ad-Watch]
2010-03-08 23:38 524632 ----a-w- c:\program files\Lavasoft\Ad-Aware\AAWTray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2010-02-16 04:07 141608 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\java.exe"=
.
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [5/1/2009 1:38 PM 64160]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [4/23/2011 11:00 AM 441176]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [4/23/2011 11:00 AM 307288]
R1 pctgntdi;pctgntdi;c:\windows\system32\drivers\pctgntdi.sys [4/20/2011 10:42 PM 249616]
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [2/17/2010 8:25 AM 12872]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [4/23/2011 11:43 AM 135336]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [3/9/2009 9:06 AM 1029456]
R3 PCTFW-PacketFilter;PCTools Firewall - Packet filter driver;c:\windows\system32\drivers\pctNdis-PacketFilter.sys [4/20/2011 10:41 PM 89192]
R3 pctNdisMP;PC Tools Driver;c:\windows\system32\drivers\pctNdis.sys [4/20/2011 10:41 PM 57536]
R3 pctplfw;pctplfw;c:\windows\system32\drivers\pctplfw.sys [4/20/2011 10:41 PM 124992]
S1 SASKUTIL;SASKUTIL;
S2 aswFsBlk;aswFsBlk;aswFsBlk.sys --> aswFsBlk.sys [?]
S2 PCTAppEvent;PCTAppEvent Driver;c:\windows\system32\drivers\PCTAppEvent.sys [4/20/2011 10:42 PM 160448]
S3 bepldr;BCL easyPDF SDK 5 Loader;c:\program files\Common Files\BCL Technologies\NitroPDF5\bepldr.exe [11/15/2007 6:05 PM 151552]
S3 gstkbus;3Gstick USB Composite Device (WDM);c:\windows\system32\drivers\gstkbus.sys [3/15/2011 9:38 PM 98560]
S3 gstkserd;3Gstick Diagnostic Port Driver;c:\windows\system32\drivers\gstkserd.sys [3/15/2011 9:38 PM 100352]
S3 pctNdis;PC Tools Firewall Intermediate Filter Service;c:\windows\system32\drivers\pctNdis.sys [4/20/2011 10:41 PM 57536]
S3 VMUVC;Vimicro Camera Service VMUVC;c:\windows\system32\Drivers\VMUVC.sys --> c:\windows\system32\Drivers\VMUVC.sys [?]
S3 vvftUVC;Vimicro Camera Filter Service VMUVC;c:\windows\system32\drivers\vvftUVC.sys --> c:\windows\system32\drivers\vvftUVC.sys [?]
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - AAVMKER4
*NewlyCreated* - ANTIVIRSCHEDULERSERVICE
*NewlyCreated* - ANTIVIRSERVICE
*NewlyCreated* - ASWMON2
*NewlyCreated* - ASWRDR
*NewlyCreated* - ASWSNX
*NewlyCreated* - ASWSP
*NewlyCreated* - ASWTDI
*NewlyCreated* - AVAST!_ANTIVIRUS
*NewlyCreated* - AVGIO
*NewlyCreated* - AVGNTFLT
*NewlyCreated* - AVIPBB
.
Contents of the 'Scheduled Tasks' folder
.
2011-04-18 c:\windows\Tasks\Ad-Aware Update (Weekly).job
- c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-03-09 23:38]
.
2011-04-20 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 22:34]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/
uInternet Settings,ProxyOverride = *.local
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
FF - ProfilePath - c:\documents and settings\Owner\Application Data\Mozilla\Firefox\Profiles\uijvqo7y.default\
FF - prefs.js: browser.startup.homepage - hxxp://74.125.93.104/
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - c:\program files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
FF - Ext: Adobe DLM (powered by getPlus(R)): {CF40ACC5-E1BB-4aff-AC72-04C2F616BCA7} - %profile%\extensions\{CF40ACC5-E1BB-4aff-AC72-04C2F616BCA7}
FF - Ext: Screengrab: {02450954-cdd9-410f-b1da-db804e18c671} - %profile%\extensions\{02450954-cdd9-410f-b1da-db804e18c671}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: Java Quick Starter:
[email protected] - c:\program files\Java\jre6\lib\deploy\jqs\ff
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF - Ext: avast! WebRep:
[email protected] - c:\progra~1\AVASTS~1\Avast\WebRep\FF
FF - Ext: Move Media Player:
[email protected] - c:\documents and settings\Owner\Application Data\Move Networks
.
- - - - ORPHANS REMOVED - - - -
.
HKCU-Run-PC Tools AntiVirus Free - D:\avinstall.exe
MSConfigStartUp-MSMSGS - c:\program files\Messenger\msmsgs.exe
MSConfigStartUp-SunJavaUpdateSched - c:\program files\Java\jre6\bin\jusched.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2011-04-23 12:29
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'winlogon.exe'(1036)
c:\program files\SUPERAntiSpyware\SASWINLO.DLL
c:\windows\system32\WININET.dll
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\MSVCR80.dll
.
- - - - - - - > 'explorer.exe'(5312)
c:\windows\system32\WININET.dll
c:\progra~1\WINDOW~2\wmpband.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
Completion time: 2011-04-23 12:36:13
ComboFix-quarantined-files.txt 2011-04-23 22:36
.
Pre-Run: 101,898,731,520 bytes free
Post-Run: 102,177,054,720 bytes free
.
WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect
.
- - End Of File - - AE55C4F0A284DDA87171E4A4F4ABDB50