after running combofix, my computer seems to be running fine, no notice of anything popping up like before, and i can now access things like my firewall that i couldnt before
heres the copy of the .txt:
ComboFix 10-03-04.06 - Allie 03/05/2010 12:59:50.1.2 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3326.2532 [GMT -6:00]
Running from: c:\documents and settings\[removed]\Desktop\ComboFix.exe
AV: Kaspersky Anti-Virus *On-access scanning disabled* (Updated) {2C4D4BC6-0793-4956-A9F9-E252435469C0}
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\Allie\Local Settings\Application Data\{6185D7E4-718F-4E60-9979-868D6972DD86}
c:\documents and settings\Allie\Local Settings\Application Data\{6185D7E4-718F-4E60-9979-868D6972DD86}\chrome.manifest
c:\documents and settings\Allie\Local Settings\Application Data\{6185D7E4-718F-4E60-9979-868D6972DD86}\chrome\content\_cfg.js
c:\documents and settings\Allie\Local Settings\Application Data\{6185D7E4-718F-4E60-9979-868D6972DD86}\chrome\content\c.js
c:\documents and settings\Allie\Local Settings\Application Data\{6185D7E4-718F-4E60-9979-868D6972DD86}\chrome\content\overlay.xul
c:\documents and settings\Allie\Local Settings\Application Data\{6185D7E4-718F-4E60-9979-868D6972DD86}\install.rdf
c:\documents and settings\Allie\Local Settings\Application Data\av.exe
c:\documents and settings\Allie\Start Menu\Programs\Startup\Rainmeter.lnk
c:\progra~1\AWS\WEATHE~1\MINIbu~1.dll
c:\program files\AWS\WEATHE~1\MINIBU~1.DLL
c:\program files\screensavers.com
c:\program files\screensavers.com\Installer\bin\iebyterange.xml
c:\program files\screensavers.com\Installer\bin\iebyterange.xml.backup
c:\program files\screensavers.com\Wallpaper\Dirty Dancing - Havana Nights.jpg
c:\program files\screensavers.com\Wallpaper\swpstart.exe
c:\windows\7673d9ac.ocx
c:\windows\80f54c17.ocx
c:\windows\85a58256.ocx
c:\windows\anikavupil.dll
c:\windows\bundles
c:\windows\c4e7b72c.ocx
c:\windows\instsp2.exe
c:\windows\system32\7158fcfb.ocx
c:\windows\system32\92cb8819.ocx
c:\windows\system32\avezidat.ini
c:\windows\system32\ef841279.ocx
c:\windows\system32\etizahot.ini
c:\windows\system32\ewisuzuj.ini
c:\windows\system32\hsF73ikmdf3f.dll
c:\windows\system32\ibasemiw.ini
c:\windows\system32\jokapovu.exe
c:\windows\system32\nayisuja.dll
c:\windows\system32\oborifiz.ini
c:\windows\system32\pagifobe.exe
c:\windows\system32\twain_32.dll
c:\windows\system32\ufuzarob.ini
c:\windows\system32\uguvezer.ini
c:\windows\system32\ulifoyom.ini
c:\windows\system32\uwameput.ini
c:\windows\system32\uyigumiz.ini
F:\autorun.inf
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
——-\Service_seneka
((((((((((((((((((((((((( Files Created from 2010-02-05 to 2010-03-05 )))))))))))))))))))))))))))))))
.
2010-02-15 22:18 . 2010-02-15 22:19 ——– d—–w- c:\program files\iTunes
2010-02-12 00:14 . 2010-02-12 00:14 ——– d—–w- c:\windows\system32\LogFiles
2010-02-08 06:19 . 2010-02-08 06:19 ——– d—–w- c:\program files\Hobbyist Software
2010-02-07 22:52 . 2010-02-07 22:54 ——– d—–w- c:\documents and settings\Allie\Application Data\ManyCam
2010-02-07 22:52 . 2010-02-10 23:50 ——– d—–w- c:\program files\ManyCam 2.4
2010-02-07 22:52 . 2010-02-21 14:01 ——– d—–w- c:\program files\Ask.com
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-03-05 19:10 . 2009-04-12 18:57 ——– d—–w- c:\documents and settings\All Users\Application Data\Kaspersky Lab
2010-03-05 19:08 . 2009-04-12 18:57 6216 –sha-w- c:\windows\system32\drivers\fidbox2.idx
2010-03-05 19:08 . 2009-04-12 18:57 5117984 –sha-w- c:\windows\system32\drivers\fidbox.dat
2010-03-05 19:08 . 2009-04-12 18:57 42112 –sha-w- c:\windows\system32\drivers\fidbox.idx
2010-03-05 19:08 . 2009-04-12 18:57 1196064 –sha-w- c:\windows\system32\drivers\fidbox2.dat
2010-03-04 05:56 . 2004-11-29 04:19 ——– d—–w- c:\program files\MUSICMATCH
2010-03-04 05:50 . 2004-11-29 04:16 ——– d—–w- c:\program files\Dell
2010-03-04 05:44 . 2009-04-08 00:31 1026 —-a-w- c:\windows\Lxukepubike.dat
2010-03-04 05:36 . 2008-08-12 07:36 ——– d—–w- c:\documents and settings\Allie\Application Data\uTorrent
2010-02-17 07:04 . 2009-05-15 07:44 ——– d—–w- c:\documents and settings\Allie\Application Data\dvdcss
2010-02-15 22:18 . 2005-11-29 21:17 ——– d—–w- c:\program files\iPod
2010-02-15 22:18 . 2007-09-26 05:57 ——– d—–w- c:\program files\Common Files\Apple
2010-02-12 20:34 . 2008-09-01 10:46 ——– d—–w- c:\documents and settings\Allie\Application Data\vlc
2010-02-03 19:55 . 2005-11-03 05:11 ——– d—–w- c:\documents and settings\All Users\Application Data\Kodak
2010-02-03 18:51 . 2005-11-03 05:10 ——– d—–w- c:\program files\Kodak
2010-02-03 08:44 . 2005-01-02 00:20 ——– d—–w- c:\program files\Common Files\Adobe
2010-02-02 06:42 . 2010-02-02 06:42 91128 —ha-w- c:\windows\system32\mlfcache.dat
2010-02-01 03:57 . 2005-09-08 23:02 ——– d—–w- c:\documents and settings\Allie\Application Data\Apple Computer
2010-02-01 03:55 . 2007-09-26 05:57 ——– d—–w- c:\documents and settings\All Users\Application Data\Apple
2010-01-19 01:05 . 2010-01-19 01:04 ——– d—–w- c:\documents and settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2010-01-19 01:02 . 2008-09-19 05:05 ——– d—–w- c:\program files\Bonjour
2010-01-19 01:01 . 2010-01-19 01:00 ——– d—–w- c:\program files\QuickTime
2010-01-18 06:13 . 2010-01-18 06:13 ——– d—–w- c:\program files\ANI
2010-01-18 06:13 . 2004-11-29 04:16 ——– d–h–w- c:\program files\InstallShield Installation Information
2010-01-18 06:11 . 2010-01-18 06:11 ——– d—–w- c:\program files\D-Link
2010-01-18 06:11 . 2010-01-18 06:11 ——– d—–w- c:\documents and settings\Allie\Application Data\InstallShield
2010-01-05 10:00 . 2004-08-04 11:00 832512 —-a-w- c:\windows\system32\wininet.dll
2010-01-05 10:00 . 2004-08-04 11:00 78336 —-a-w- c:\windows\system32\ieencode.dll
2010-01-05 10:00 . 2004-08-04 11:00 17408 ——w- c:\windows\system32\corpol.dll
2009-12-31 16:50 . 2004-08-04 11:00 353792 —-a-w- c:\windows\system32\drivers\srv.sys
2009-12-16 18:43 . 2004-08-04 11:00 343040 —-a-w- c:\windows\system32\mspaint.exe
2009-12-16 08:02 . 2009-12-16 08:02 495104 —-a-w- c:\windows\system32\sqlite3.dll
2009-12-14 07:08 . 2004-08-04 11:00 33280 —-a-w- c:\windows\system32\csrsrv.dll
2009-12-08 19:26 . 1980-01-01 06:00 2145280 —-a-w- c:\windows\system32\ntoskrnl.exe
2009-12-08 18:43 . 1980-01-01 06:00 2023936 —-a-w- c:\windows\system32\ntkrnlpa.exe
2009-04-07 23:01 . 2009-04-07 23:01 9405 –sha-w- c:\windows\SYSTEM32\tumavuzu.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-02-04 1197448]
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATI DeviceDetect"="c:\program files\ATI Multimedia\main\ATIDtct.EXE" [2004-07-30 69705]
"ATI Remote Control"="c:\program files\ATI Multimedia\RemCtrl\ATIRW.exe" [2004-07-08 196608]
"ATI Scheduler"="c:\program files\ATI Multimedia\MAIN\ATISched.EXE" [2004-07-30 45131]
"kdx"="c:\windows\kdx\KHost.exe" [2005-04-01 2605056]
"PaperQuote '01"="c:\program files\PaperQuote\PQ.exe" [2001-03-25 453672]
"Aim6"="c:\program files\AIM6\aim6.exe" [2008-10-31 50480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PCMService"="c:\program files\Dell\Media Experience\PCMService.exe" [2004-04-12 290816]
"DVDLauncher"="c:\program files\CyberLink\PowerDVD\DVDLauncher.exe" [2004-08-24 57344]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2005-02-24 180269]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-03-12 49152]
"mxomssmenu"="c:\program files\Maxtor\OneTouch Status\maxmenumgr.exe" [2007-09-06 169264]
"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2009-08-13 177440]
"AdobeCS4ServiceManager"="c:\program files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" [2008-08-14 611712]
"PWRISOVM.EXE"="c:\program files\PowerISO\PWRISOVM.EXE" [2009-03-15 180224]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe" [2009-10-20 208616]
"ANIWZCS2Service"="c:\program files\ANI\ANIWZCS2 Service\WZCSLDR2.exe" [2007-01-19 49152]
"D-Link D-Link RangeBooster N DWA-140"="c:\program files\D-Link\D-Link RangeBooster N DWA-140\AirNCFG.exe" [2007-08-20 1671168]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-11-11 417792]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-01-23 141608]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2008-4-23 29696]
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2007-3-11 210520]
NETGEAR WG111T Smart Wizard.lnk - c:\program files\NETGEAR\WG111T\wlan111t.exe [2006-8-28 884840]
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
"DisableNotifications"= 1 (0x1)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Common Files\\AOL\\ACS\\AOLacsd.exe"=
"c:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"=
"c:\\Program Files\\AIM\\aim.exe"=
"c:\\Program Files\\America Online 9.0\\waol.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=
"c:\\WINDOWS\\kdx\\khost.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\AIM6\\aim6.exe"=
"c:\\Program Files\\Common Files\\Adobe\\CS4ServiceManager\\CS4ServiceManager.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\VideoLAN\\VLC\\vlc.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"5353:TCP"= 5353:TCP:Adobe CSI CS4
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\SYSTEM32\DRIVERS\klbg.sys [1/29/2008 5:29 PM 33808]
R2 Viewpoint Manager Service;Viewpoint Manager Service;c:\program files\Viewpoint\Common\ViewpointService.exe [1/10/2007 6:20 PM 24652]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\SYSTEM32\DRIVERS\klim5.sys [4/30/2008 5:06 PM 24592]
R3 ManyCam;ManyCam Virtual Webcam, WDM Video Capture Driver;c:\windows\SYSTEM32\DRIVERS\ManyCam.sys [1/14/2008 4:06 AM 21632]
R3 rt2870;Ralink 802.11n USB Wireless LAN Card Driver;c:\windows\SYSTEM32\DRIVERS\rt2870.sys [1/18/2010 12:11 AM 517632]
S3 atinysxx;ATI USB 2.0 TV Audio Crossbar;c:\windows\SYSTEM32\DRIVERS\atinysxx.sys [1/1/2005 6:17 PM 93696]
S3 atinyvxx;ATI TV WONDER USB2.0 Video & Audio;c:\windows\SYSTEM32\DRIVERS\atinyvxx.sys [1/1/2005 6:17 PM 185344]
S3 ATITUNEP2;ATI TV WONDER USB2.0 TV Tuner;c:\windows\SYSTEM32\DRIVERS\atinyuxx.sys [1/1/2005 6:17 PM 75776]
S3 ATIUTD;ATI TV WONDER USB2.0 Device Driver;c:\windows\SYSTEM32\DRIVERS\ATIUTD.sys [1/1/2005 6:17 PM 38912]
S3 DNINDIS5;DNINDIS5 NDIS Protocol Driver;c:\windows\SYSTEM32\DNINDIS5.sys [8/28/2006 3:20 PM 17149]
S3 TTDec;ATI TV WONDER USB2.0 Teletext Decoder;c:\windows\SYSTEM32\DRIVERS\atinyttx.sys [1/1/2005 6:17 PM 13824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
Contents of the 'Scheduled Tasks' folder
2010-03-01 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2007-08-29 17:34]
2004-12-12 c:\windows\Tasks\ISP signup reminder 1.job
- c:\windows\system32\OOBE\OOBEBALN.EXE [2004-08-04 00:12]
2010-03-05 c:\windows\Tasks\Scheduled Update for Ask Toolbar.job
- c:\program files\Ask.com\UpdateTask.exe [2010-02-04 22:50]
2010-03-05 c:\windows\Tasks\WGASetup.job
- c:\windows\system32\KB905474\wgasetup.exe [2009-06-04 03:18]
.
.
——- Supplementary Scan ——-
.
uStart Page = hxxp://www.myspace.com/
uSearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = *.local
IE: &AIM Toolbar Search - c:\documents and settings\All Users\Application Data\AIM Toolbar\ieToolbar\resources\en-US\local\search.html
IE: &Viewpoint Search - c:\program files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\Allie\Application Data\Mozilla\Firefox\Profiles\4i4cbzui.default\
FF - prefs.js: browser.search.defaulturl - hxxp://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2706&invocationType=tb50fftrie7&query=
FF - prefs.js: browser.search.selectedEngine - AIM Search
FF - prefs.js: browser.startup.homepage - myspace.com
FF - prefs.js: keyword.URL - hxxp://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2706&invocationType=tb50fftrab&query=
FF - component: c:\documents and settings\Allie\Application Data\Mozilla\Firefox\Profiles\4i4cbzui.default\extensions\[removed]\components\coolirisstub.dll
FF - plugin: c:\documents and settings\Allie\Application Data\Mozilla\Firefox\Profiles\4i4cbzui.default\extensions\[removed]\platform\WINNT_x86-msvc\plugins\npmnqmp071101000055.dll
FF - plugin: c:\program files\Java\j2re1.4.2_06\bin\NPJava11.dll
FF - plugin: c:\program files\Java\j2re1.4.2_06\bin\NPJava12.dll
FF - plugin: c:\program files\Java\j2re1.4.2_06\bin\NPJava13.dll
FF - plugin: c:\program files\Java\j2re1.4.2_06\bin\NPJava14.dll
FF - plugin: c:\program files\Java\j2re1.4.2_06\bin\NPJava32.dll
FF - plugin: c:\program files\Java\j2re1.4.2_06\bin\NPJPI142_06.dll
FF - plugin: c:\program files\Java\j2re1.4.2_06\bin\NPOJI610.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npCouponPrinter.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\NPJava11.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\NPJava12.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\NPJava13.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\NPJava32.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\NPJPI141_04.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\NPOJI610.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npunagi2.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npViewpoint.dll
FF - plugin: c:\program files\Viewpoint\Viewpoint Media Player\npViewpoint.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
.
- - - - ORPHANS REMOVED - - - -
HKCU-Run-AdobeBridge - (no file)
HKLM-Run-1A:Stardock TrayMonitor - (no file)
HKLM-Run-Wvowekajomowapu - c:\windows\anikavupil.dll
Notify-NavLogon - (no file)
AddRemove-Dell Photo AIO Printer 922 - c:\windows\system32\spool\drivers\w32x86\3\DLBTUNST.EXE
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2010-03-05 13:10
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes …
scanning hidden autostart entries …
scanning hidden files …
scan completed successfully
hidden files: 0
**************************************************************************
.
——————— DLLs Loaded Under Running Processes ———————
- - - - - - - > 'winlogon.exe'(1440)
c:\windows\system32\CLBCATQ.DLL
- - - - - - - > 'explorer.exe'(3560)
c:\windows\system32\WININET.dll
c:\progra~1\WINDOW~2\wmpband.dll
c:\windows\system32\ieframe.dll
.
———————— Other Running Processes ————————
.
c:\windows\system32\Ati2evxx.exe
c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Maxtor\Sync\SyncServices.exe
c:\windows\system32\wdfmgr.exe
c:\program files\Canon\CAL\CALMAIN.exe
c:\windows\system32\rundll32.exe
c:\windows\system32\dwwin.exe
c:\program files\iPod\bin\iPodService.exe
c:\program files\Viewpoint\Viewpoint Manager\ViewMgr.exe
c:\program files\AIM6\aolsoftware.exe
c:\windows\system32\msiexec.exe
c:\windows\system32\MsiExec.exe
.
**************************************************************************
.
Completion time: 2010-03-05 13:21:40 - machine was rebooted
ComboFix-quarantined-files.txt 2010-03-05 19:21
Pre-Run: 5,507,735,552 bytes free
Post-Run: 14,553,636,864 bytes free
WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
- - End Of File - - 2F2783AAB9033B5A59EF61EF823F69B4