ComboFix 10-02-21.02 - Administrator 02/21/2010 15:06:09.1.2 - x86 NETWORK
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.1015.754 [GMT -8:00]
Running from: c:\documents and settings\Administrator.YOUR-QS7Q3M71UK\Desktop\ComboFix.exe
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\Richard\Application Data\setupv.exe
c:\recycler\S-1-5-21-4155940279-453244667-3627011575-1003
c:\windows\system32\Thumbs.db
.
((((((((((((((((((((((((( Files Created from 2010-01-21 to 2010-02-21 )))))))))))))))))))))))))))))))
.
2010-02-21 22:53 . 2010-02-21 22:53 -------- d-----w- c:\windows\LastGood
2010-02-21 20:02 . 2008-04-14 08:06 42368 ----a-w- c:\windows\system32\drivers\AGP440.sys
2010-02-21 20:02 . 2010-02-21 20:02 -------- d-----w- C:\_OTS
2010-02-21 20:02 . 2008-04-14 08:06 42368 ----a-w- C:\agp440.sys
2010-02-21 18:15 . 2010-02-21 18:15 -------- d-sh--w- c:\documents and settings\Administrator.YOUR-QS7Q3M71UK\PrivacIE
2010-02-21 03:34 . 2010-02-21 03:38 -------- d-----w- c:\documents and settings\Administrator.YOUR-QS7Q3M71UK\Application Data\Azureus
2010-02-20 23:38 . 2010-02-20 23:38 -------- d-----w- c:\documents and settings\Administrator.YOUR-QS7Q3M71UK\Application Data\Malwarebytes
2010-02-20 23:38 . 2010-02-20 23:38 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2010-02-20 23:32 . 2010-02-20 23:32 -------- d-----w- c:\documents and settings\Administrator.YOUR-QS7Q3M71UK\Local Settings\Application Data\Mozilla
2010-02-20 22:22 . 2010-02-20 22:22 -------- d-sh--w- c:\documents and settings\Administrator\PrivacIE
2010-02-10 22:39 . 2010-02-10 22:39 -------- d-sh--w- c:\documents and settings\Richard\IECompatCache
2010-02-10 15:25 . 2010-02-10 15:25 -------- d-----w- C:\da12892a363743e2751ff7
2010-02-10 15:21 . 2010-02-10 15:21 -------- d-----w- c:\program files\MSXML 4.0
2010-02-09 08:57 . 2010-02-09 08:57 -------- d-----w- C:\boomshine
2010-02-09 08:03 . 2010-02-11 08:30 -------- d-----w- C:\phoneapps
2010-02-09 06:48 . 2010-02-09 06:48 -------- d-----w- c:\documents and settings\Richard\Application Data\Samsung
2010-02-09 06:42 . 2006-05-04 06:53 174592 ----a-w- c:\windows\system32\framedyn.dll
2010-02-09 06:42 . 2010-02-09 06:42 -------- d-----w- c:\program files\DIFX
2010-02-09 06:41 . 2008-02-22 23:33 14976 ----a-w- c:\windows\system32\drivers\sscdmdfl.sys
2010-02-09 06:41 . 2008-02-22 23:33 114304 ----a-w- c:\windows\system32\drivers\sscdmdm.sys
2010-02-09 06:41 . 2008-02-22 23:33 87936 ----a-w- c:\windows\system32\drivers\sscdbus.sys
2010-02-09 06:41 . 2008-02-22 23:33 12160 ----a-w- c:\windows\system32\drivers\sscdcmnt.sys
2010-02-09 06:41 . 2008-02-22 23:33 12160 ----a-w- c:\windows\system32\drivers\sscdcm.sys
2010-02-09 06:41 . 2008-02-22 23:33 12160 ----a-w- c:\windows\system32\drivers\sscdwhnt.sys
2010-02-09 06:41 . 2008-02-22 23:33 12160 ----a-w- c:\windows\system32\drivers\sscdwh.sys
2010-02-09 06:41 . 2010-02-09 06:42 -------- d-----w- c:\windows\system32\Samsung_USB_Drivers
2010-02-09 06:41 . 2006-07-25 00:05 5632 ----a-w- c:\windows\system32\drivers\StarOpen.sys
2010-02-09 06:41 . 2010-02-09 06:41 -------- d-----w- c:\program files\Samsung
2010-02-02 09:11 . 2010-02-02 09:11 -------- d-----w- c:\documents and settings\All Users\Application Data\Toolbar4
2010-02-02 09:02 . 2010-02-02 09:02 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2010-01-30 07:07 . 2010-01-30 07:07 -------- d-----w- c:\documents and settings\Richard\Local Settings\Application Data\Identities
2010-01-28 09:48 . 2010-01-28 14:23 -------- d-----w- c:\documents and settings\Richard\Local Settings\Application Data\Yahoo
2010-01-28 09:47 . 2010-01-28 14:23 -------- d-----w- c:\documents and settings\All Users\Application Data\Yahoo! Companion
2010-01-28 09:47 . 2010-01-28 09:48 -------- d-----w- c:\documents and settings\Richard\Application Data\Yahoo!
2010-01-28 09:46 . 2010-01-28 09:47 -------- d-----w- c:\documents and settings\All Users\Application Data\Yahoo!
2010-01-28 09:46 . 2009-11-10 22:39 607472 ----a-w- c:\documents and settings\All Users\Application Data\Yahoo!\YUpdater\yupdater.exe
2010-01-28 09:43 . 2010-01-28 09:47 -------- d-----w- c:\program files\Yahoo!
2010-01-28 02:01 . 2010-01-28 19:51 -------- d-----w- c:\program files\Norton Security Scan
2010-01-27 05:24 . 2010-01-27 05:35 -------- d-----w- c:\program files\GraphCalc
2010-01-27 02:45 . 2001-08-18 06:36 5632 ----a-w- c:\windows\system32\ptpusb.dll
2010-01-27 02:45 . 2008-04-14 13:42 159232 ----a-w- c:\windows\system32\ptpusd.dll
2010-01-27 02:45 . 2008-04-14 08:15 15104 -c--a-w- c:\windows\system32\dllcache\usbscan.sys
2010-01-27 02:45 . 2008-04-14 08:15 15104 ----a-w- c:\windows\system32\drivers\usbscan.sys
2010-01-23 20:42 . 2010-01-23 20:42 -------- d-----w- c:\documents and settings\Richard\Local Settings\Application Data\Western Digital
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-02-21 22:56 . 2009-12-30 22:16 -------- d-----w- c:\program files\Symantec
2010-02-21 22:56 . 2009-12-30 22:16 -------- d-----w- c:\documents and settings\All Users\Application Data\Norton
2010-02-21 22:56 . 2009-12-30 22:34 -------- d-----w- c:\documents and settings\All Users\Application Data\Symantec
2010-02-21 18:14 . 2010-01-04 02:41 1324 ----a-w- c:\windows\system32\d3d9caps.dat
2010-02-21 03:35 . 2010-02-20 22:48 92344 ----a-w- c:\documents and settings\Administrator.YOUR-QS7Q3M71UK\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2010-02-14 20:08 . 2009-12-31 03:06 -------- d-----w- c:\documents and settings\Richard\Application Data\LimeWire
2010-02-09 06:41 . 2009-08-11 19:00 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-08 08:48 . 2010-01-03 05:08 -------- d-----w- c:\documents and settings\All Users\Application Data\NCH Swift Sound
2010-02-08 08:48 . 2010-01-03 05:08 -------- d-----w- c:\program files\NCH Swift Sound
2010-02-02 09:30 . 2009-12-30 22:31 -------- d-----w- c:\documents and settings\Richard\Application Data\Azureus
2010-02-02 09:20 . 2009-12-31 10:07 92344 ----a-w- c:\documents and settings\Richard\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2010-02-02 09:18 . 2009-08-11 19:55 -------- d-----w- c:\documents and settings\All Users\Application Data\Microsoft Help
2010-02-02 09:08 . 2010-01-03 00:50 -------- d-----w- c:\program files\MSBuild
2010-02-02 06:06 . 2010-01-04 02:14 -------- d-----w- c:\documents and settings\Richard\Application Data\DAEMON Tools Lite
2010-01-28 02:00 . 2009-12-30 22:15 -------- d-----w- c:\documents and settings\All Users\Application Data\NortonInstaller
2010-01-26 20:37 . 2010-01-04 02:16 271224 ----a-w- c:\documents and settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
2010-01-17 19:33 . 2010-01-17 18:36 -------- d-----w- c:\program files\Carbonite
2010-01-17 18:37 . 2010-01-17 18:37 -------- d-----w- c:\program files\Seagate
2010-01-17 18:37 . 2010-01-17 18:37 -------- d-----w- c:\documents and settings\All Users\Application Data\Seagate
2010-01-17 18:34 . 2010-01-17 18:34 -------- d-----w- c:\documents and settings\Richard\Application Data\Leadertech
2010-01-15 03:47 . 2010-01-15 03:44 -------- d-----w- c:\program files\4inaRow
2010-01-11 08:26 . 2010-01-11 08:26 4141117 ----a-w- c:\documents and settings\Richard\Application Data\Azureus\plugins\vuzexcode\mediainfo.exe
2010-01-11 08:26 . 2010-01-11 08:26 6516755 ----a-w- c:\documents and settings\Richard\Application Data\Azureus\plugins\vuzexcode\ffmpeg.exe
2010-01-09 03:34 . 2010-01-09 03:34 0 ----a-w- c:\documents and settings\Richard\Application Data\wklnhst.dat
2010-01-08 07:54 . 2010-01-08 07:54 -------- d-----w- c:\documents and settings\Richard\Application Data\Xilisoft Corporation
2010-01-08 07:53 . 2010-01-08 07:53 -------- d-----w- c:\program files\Xilisoft
2010-01-04 21:37 . 2010-01-04 21:36 -------- d-----w- c:\program files\MagicISO
2010-01-04 02:16 . 2010-01-04 02:14 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-01-04 02:15 . 2010-01-04 02:14 -------- d-----w- c:\program files\DAEMON Tools Toolbar
2010-01-04 02:14 . 2010-01-04 02:14 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-01-04 02:14 . 2010-01-04 02:14 -------- d-----w- c:\documents and settings\All Users\Application Data\DAEMON Tools Lite
2010-01-04 01:54 . 2010-01-04 01:54 -------- d-----w- c:\program files\WBFS
2010-01-03 05:13 . 2010-01-03 05:06 -------- d-----w- c:\program files\NCH Software
2010-01-03 05:08 . 2010-01-03 05:08 -------- d-----w- c:\documents and settings\Richard\Application Data\NCH Swift Sound
2010-01-03 05:07 . 2010-01-03 05:07 -------- d-----w- c:\documents and settings\All Users\Application Data\NCH Software
2010-01-03 00:50 . 2010-01-03 00:50 -------- d-----w- c:\program files\Reference Assemblies
2009-12-31 16:50 . 2009-08-11 13:03 353792 ----a-w- c:\windows\system32\drivers\srv.sys
2009-12-31 03:02 . 2009-12-30 22:30 -------- d-----w- c:\program files\Vuze
2009-12-30 22:31 . 2009-12-30 22:28 -------- d-----w- c:\documents and settings\All Users\Application Data\NOS
2009-12-30 22:31 . 2009-12-30 22:31 -------- d-----w- c:\documents and settings\All Users\Application Data\Azureus
2009-12-30 22:28 . 2009-12-30 22:28 1924200 ----a-w- c:\documents and settings\All Users\Application Data\NOS\Adobe_Downloads\install_flash_player.exe
2009-12-30 22:28 . 2009-12-30 22:28 -------- d-----w- c:\program files\NOS
2009-12-30 22:27 . 2009-12-30 22:28 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-12-30 22:27 . 2009-12-30 22:27 -------- d-----w- c:\program files\Java
2009-12-30 22:27 . 2009-12-30 22:27 152576 ----a-w- c:\documents and settings\Richard\Application Data\Sun\Java\jre1.6.0_17\lzma.dll
2009-12-30 22:27 . 2009-12-30 22:27 79488 ----a-w- c:\documents and settings\Richard\Application Data\Sun\Java\jre1.6.0_17\gtapi.dll
2009-12-30 22:25 . 2009-12-30 22:25 -------- d-----w- c:\program files\ffdshow
2009-12-30 22:18 . 2009-12-30 22:18 0 ----a-w- c:\windows\nsreg.dat
2009-12-30 22:16 . 2009-12-30 22:16 -------- d-----w- c:\program files\Windows Sidebar
2009-12-29 05:45 . 2009-12-29 05:45 499712 ----a-w- c:\windows\system32\msvcp71.dll
2009-12-29 05:45 . 2009-12-29 05:45 348160 ----a-w- c:\windows\system32\msvcr71.dll
2009-12-29 05:45 . 2009-12-29 05:45 1060864 ----a-w- c:\windows\system32\MFC71.dll
2009-12-21 19:14 . 2009-08-11 13:03 916480 ----a-w- c:\windows\system32\wininet.dll
2009-12-16 18:43 . 2009-08-11 13:13 343040 ----a-w- c:\windows\system32\mspaint.exe
2009-12-14 07:08 . 2009-08-11 13:03 33280 ----a-w- c:\windows\system32\csrsrv.dll
2009-12-08 19:26 . 2008-04-14 00:54 2145280 ----a-w- c:\windows\system32\ntoskrnl.exe
2009-12-08 18:43 . 2008-04-14 00:01 2023936 ----a-w- c:\windows\system32\ntkrnlpa.exe
2009-12-06 03:42 . 2009-12-30 22:25 85504 ----a-w- c:\windows\system32\ff_vfw.dll
2009-12-04 18:22 . 2009-08-11 13:03 455424 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2009-11-27 17:11 . 2009-08-11 13:03 1291776 ----a-w- c:\windows\system32\quartz.dll
2009-11-27 17:11 . 2008-04-14 05:42 17920 ----a-w- c:\windows\system32\msyuv.dll
2009-11-27 16:07 . 2009-08-11 13:03 28672 ----a-w- c:\windows\system32\msvidc32.dll
2009-11-27 16:07 . 2001-08-17 22:36 8704 ----a-w- c:\windows\system32\tsbyuv.dll
2009-11-27 16:07 . 2009-08-11 13:03 11264 ----a-w- c:\windows\system32\msrle32.dll
2009-11-27 16:07 . 2009-08-11 13:03 84992 ----a-w- c:\windows\system32\avifil32.dll
2009-11-27 16:07 . 2008-04-14 05:41 48128 ----a-w- c:\windows\system32\iyuv_32.dll
2009-11-24 15:39 . 2009-11-24 15:39 1093064 ----a-w- c:\documents and settings\Richard\Application Data\Mozilla\Firefox\Profiles\tru6a102.default\extensions\
[email protected]\components\DTToolbarFF.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Eee Docking"="c:\program files\ASUS\Eee Docking\Eee Docking.exe" [2009-07-27 397312]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"SYMNRT"="c:\program files\Internet Explorer\iexplore.exe" [2009-03-08 638816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2007-12-19 135168]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2007-12-19 159744]
"Persistence"="c:\windows\system32\igfxpers.exe" [2007-12-19 131072]
"AsusACPIServer"="c:\program files\EeePC\ACPI\AsAcpiSvr.exe" [2009-04-17 630784]
"AsusEPCMonitor"="c:\program files\EeePC\ACPI\AsEPCMon.exe" [2009-03-13 98304]
"AsusTray"="c:\program files\EeePC\ACPI\AsTray.exe" [2009-04-17 118784]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-04-09 1512744]
"SynAsusAcpi"="c:\program files\Synaptics\SynTP\SynAsusAcpi.exe" [2009-04-09 79144]
"LiveUpdate"="c:\program files\Asus\LiveUpdate\LiveUpdate.exe" [2009-06-25 712704]
"IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2008-04-14 208952]
"MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2008-04-14 59392]
"PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2008-04-14 455168]
"PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2008-04-14 455168]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-12-30 149280]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 31016]
"RTHDCPL"="RTHDCPL.EXE" [2009-04-27 17881088]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
SuperHybridEngine.lnk - c:\program files\ASUS\EeePC\Super Hybrid Engine\SuperHybridEngine.exe [2009-8-11 376832]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKLM\~\startupfolder\C:^Documents and Settings^Richard^Start Menu^Programs^Startup^LimeWire On Startup.lnk]
path=c:\documents and settings\Richard\Start Menu\Programs\Startup\LimeWire On Startup.lnk
backup=c:\windows\pss\LimeWire On Startup.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2007-10-11 02:51 39792 ----a-w- c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2009-10-30 11:57 369200 ----a-w- c:\program files\DAEMON Tools Lite\DTLite.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
2009-02-07 01:51 3885408 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Java\\jre6\\bin\\java.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
R3 L1c;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller;c:\windows\system32\drivers\l1c51x86.sys [4/27/2009 5:59 PM 38912]
S0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [1/3/2010 6:14 PM 691696]
S2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [8/11/2009 11:51 AM 55152]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [8/11/2009 11:00 AM 1684736]
S3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS --> c:\windows\system32\drivers\AmUStor.SYS [?]
S3 fsssvc;Windows Live Family Safety;c:\program files\Windows Live\Family Safety\fsssvc.exe [2/6/2009 5:08 PM 533360]
S3 RT80x86;Ralink 802.11n Wireless Driver;c:\windows\system32\drivers\rt2860.sys [8/20/2009 4:24 AM 1015424]
S3 uvclf;uvclf;c:\windows\system32\drivers\uvclf.sys [4/27/2009 9:47 PM 39040]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
getPlusHelper REG_MULTI_SZ getPlusHelper
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://asus.msn.com
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
IE: Send to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send To Bluetooth - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
FF - ProfilePath - c:\documents and settings\Administrator.YOUR-QS7Q3M71UK\Application Data\Mozilla\Firefox\Profiles\car33vh3.default\
FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
.
- - - - ORPHANS REMOVED - - - -
HKLM-Run-snp2uvc - c:\windows\vsnp2uvc.exe
HKLM-Run-Malwarebytes Anti-Malware (reboot) - c:\program files\Malwarebytes' Anti-Malware\mbam.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2010-02-21 15:13
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_USERS\S-1-5-21-339111684-1574637209-870814963-500\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (Administrator)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,c3,db,49,07,fb,06,9b,4b,9e,1e,36,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,c3,db,49,07,fb,06,9b,4b,9e,1e,36,\
.
Completion time: 2010-02-21 15:15:34
ComboFix-quarantined-files.txt 2010-02-21 23:15
Pre-Run: 118,457,516,032 bytes free
Post-Run: 121,103,478,784 bytes free
WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect
- - End Of File - - F50CC75C0852E00C7FD6D658691BD325