hi,
can u explain why are we doing this again, though i see no problem with my laptop now.
well anyways i did what u asked me to do and while running the combofix, all my browsers and itunes were closed automatically i think it is because of the software running i can understand it, but scanning took just 10 minutes even less than that.
anyways here is the log
ComboFix 08-10-24.02 - Vamsi 2008-10-25 22:00:33.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.138 [GMT 2:00]
Running from: C:\Download and others\ComboFix.exe
* Created a new restore point
* Resident AV is active
.
((((((((((((((((((((((((( Files Created from 2008-09-25 to 2008-10-25 )))))))))))))))))))))))))))))))
.
2008-10-25 21:50 . 2008-10-25 21:50 685,056 –a—— D:\WINDOWS\isRS-000.tmp
2008-10-25 19:19 . 2008-10-25 19:19 d——– D:\WINDOWS\LastGood
2008-10-25 19:19 . 2008-10-25 19:19 d——– D:\Program Files\Virtools
2008-10-25 19:19 . 2007-07-19 18:14 3,727,720 –a—— D:\WINDOWS\system32\d3dx9_35.dll
2008-10-25 19:19 . 2006-09-28 16:05 2,414,360 –a—— D:\WINDOWS\system32\d3dx9_31.dll
2008-10-25 18:51 . 2008-10-25 18:51 d——– D:\Program Files\Dassault Systemes
2008-10-25 18:50 . 2008-10-25 18:50 d——– D:\Program Files\MSXML 6.0
2008-10-25 11:24 . 2008-10-25 11:24 d——– D:\Program Files\Malwarebytes' Anti-Malware
2008-10-25 11:24 . 2008-10-22 16:10 38,496 –a—— D:\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-10-25 11:24 . 2008-10-22 16:10 15,504 –a—— D:\WINDOWS\system32\drivers\mbam.sys
2008-10-24 21:25 . 2008-10-24 21:26 d——– D:\Program Files\Spybot - Search & Destroy
2008-10-24 21:25 . 2008-10-24 22:42 d——– D:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-10-24 19:59 . 2008-10-24 19:59 d——– D:\Documents and Settings\Vamsi\Application Data\Malwarebytes
2008-10-24 19:59 . 2008-10-24 19:59 d——– D:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-10-24 00:26 . 2008-10-24 00:26 d——– D:\Documents and Settings\Vamsi\Application Data\Talkback
2008-10-19 16:21 . 2007-07-25 09:42 126,976 –a—— D:\WINDOWS\system32\iavlsp.dll
2008-10-19 15:42 . 2008-10-19 15:42 406 –a—— D:\WINDOWS\system32\ioloBootDefrag.cfg
2008-10-19 15:35 . 2008-10-19 15:35 d——– D:\Documents and Settings\LocalService\Application Data\iolo
2008-10-19 15:31 . 2008-10-19 15:31 74,703 –a—— D:\WINDOWS\system32\mfc45.dll
2008-10-19 15:30 . 2008-10-19 15:42 d——– D:\Documents and Settings\Vamsi\Application Data\iolo
2008-10-19 15:30 . 2008-10-19 18:31 d——– D:\Documents and Settings\All Users\Application Data\iolo
2008-10-19 10:46 . 2007-01-18 14:28 5,275 –a—— D:\WINDOWS\system32\drivers\CVirtA.sys
2008-10-18 09:50 . 2008-10-18 09:50 244 –ah—– D:\sqmnoopt00.sqm
2008-10-18 09:50 . 2008-10-18 09:50 232 –ah—– D:\sqmdata00.sqm
2008-10-17 17:46 . 2008-10-17 17:54 d——– D:\Documents and Settings\All Users\Application Data\xwpqteto
2008-10-17 00:48 . 2008-10-17 00:48 d——– D:\WINDOWS\Internet Logs
2008-10-17 00:35 . 2007-04-03 16:18 29,744 ——— D:\WINDOWS\system32\InstHelper.dll
2008-10-17 00:35 . 2008-10-19 10:47 8 –a—— D:\WINDOWS\system32\success
2008-10-17 00:34 . 2007-01-24 00:23 127,376 –a—— D:\WINDOWS\system32\drivers\dne2000.sys
2008-10-17 00:34 . 2007-01-24 00:23 101,904 –a—— D:\WINDOWS\system32\dneinobj.dll
2008-10-17 00:33 . 2007-04-03 16:18 193,576 –a—— D:\WINDOWS\system32\CSGina.dll
2008-10-09 10:29 . 2008-10-09 10:29 d——– D:\Program Files\iTunes
2008-10-09 10:29 . 2008-10-09 10:29 d——– D:\Program Files\iPod
2008-10-09 10:29 . 2008-10-09 10:29 d——– D:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2008-10-02 09:28 . 2008-10-18 17:34 d——– D:\Documents and Settings\Vamsi\Application Data\NCH Swift Sound
2008-10-02 09:28 . 2008-10-02 09:28 d——– D:\Documents and Settings\All Users\Application Data\NCH Swift Sound
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-10-25 19:55 ——— d—–w D:\Documents and Settings\Vamsi\Application Data\uTorrent
2008-10-25 19:50 ——— d—–w D:\Program Files\WinSCP
2008-10-25 14:06 ——— d—–w D:\Program Files\DC++
2008-10-24 20:41 ——— d—–w D:\Program Files\Enigma Software Group
2008-10-24 19:26 ——— d—a-w D:\Documents and Settings\All Users\Application Data\TEMP
2008-10-24 18:26 ——— d—–w D:\Program Files\Windows Live Toolbar
2008-10-24 16:18 ——— d—–w D:\Program Files\Windows Live Safety Center
2008-10-21 17:33 ——— d—–w D:\Program Files\Launch Manager
2008-10-19 13:39 ——— d–h–w D:\Program Files\InstallShield Installation Information
2008-10-15 23:00 ——— d—–w D:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-10-01 07:04 ——— d—–w D:\Program Files\DivX
2008-09-27 10:09 ——— d—–w D:\Program Files\Ansys Inc
2008-09-24 14:15 ——— d—–w D:\Documents and Settings\Vamsi\Application Data\VoipRaider
2008-09-24 13:20 ——— d—–w D:\Program Files\VoipRaider.com
2008-09-23 21:14 ——— d—–w D:\Documents and Settings\Vamsi\Application Data\Ansys
2008-09-23 07:46 ——— d—–w D:\Documents and Settings\Vamsi\Application Data\Hamachi
2008-09-22 09:05 ——— d—–w D:\Documents and Settings\All Users\Application Data\Macrovision
2008-09-22 08:47 ——— d—–w D:\Documents and Settings\All Users\Application Data\IsolatedStorage
2008-09-16 00:14 524,288 -c–a-w D:\WINDOWS\system32\DivXsm.exe
2008-09-16 00:14 3,596,288 -c–a-w D:\WINDOWS\system32\qt-dx331.dll
2008-09-16 00:12 81,920 —-a-w D:\WINDOWS\system32\dpl100.dll
2008-09-16 00:12 593,920 —-a-w D:\WINDOWS\system32\dpuGUI11.dll
2008-09-16 00:12 57,344 -c–a-w D:\WINDOWS\system32\dpv11.dll
2008-09-16 00:12 53,248 -c–a-w D:\WINDOWS\system32\dpuGUI10.dll
2008-09-16 00:12 344,064 -c–a-w D:\WINDOWS\system32\dpus11.dll
2008-09-16 00:12 294,912 -c–a-w D:\WINDOWS\system32\dpu11.dll
2008-09-16 00:12 294,912 -c–a-w D:\WINDOWS\system32\dpu10.dll
2008-09-16 00:12 200,704 -c–a-w D:\WINDOWS\system32\ssldivx.dll
2008-09-16 00:12 196,608 -c–a-w D:\WINDOWS\system32\dtu100.dll
2008-09-16 00:12 1,044,480 -c–a-w D:\WINDOWS\system32\libdivx.dll
2008-09-16 00:11 823,296 -c–a-w D:\WINDOWS\system32\divx_xx0c.dll
2008-09-16 00:11 823,296 -c–a-w D:\WINDOWS\system32\divx_xx07.dll
2008-09-16 00:11 815,104 -c–a-w D:\WINDOWS\system32\divx_xx0a.dll
2008-09-16 00:11 802,816 -c–a-w D:\WINDOWS\system32\divx_xx11.dll
2008-09-16 00:11 683,520 —-a-w D:\WINDOWS\system32\DivX.dll
2008-09-16 00:11 161,096 -c–a-w D:\WINDOWS\system32\DivXCodecVersionChecker.exe
2008-09-16 00:11 12,288 -c–a-w D:\WINDOWS\system32\DivXWMPExtType.dll
2008-09-15 11:57 1,846,016 ——w D:\WINDOWS\system32\win32k.sys
2008-09-10 20:40 25,280 —-a-w D:\WINDOWS\system32\drivers\hamachi.sys
2008-09-10 07:11 ——— d—–w D:\Program Files\Bonjour
2008-09-10 07:10 ——— d—–w D:\Program Files\QuickTime
2008-09-07 20:20 ——— d—–w D:\Program Files\Apple Software Update
2008-09-04 16:00 ——— d—–w D:\Program Files\NovaTech Network
2008-09-04 15:37 ——— d—–w D:\Documents and Settings\Vamsi\Application Data\Yahoo!
2008-09-04 15:37 ——— d—–w D:\Documents and Settings\All Users\Application Data\Yahoo!
2008-09-04 15:32 ——— d—–w D:\Program Files\Google
2008-09-04 15:06 ——— d—–w D:\Documents and Settings\Vamsi\Application Data\LimeWire
2008-09-02 21:19 218,624 —-a-w D:\WINDOWS\system32\uxtheme.dll
2008-09-02 21:02 ——— d—–w D:\Documents and Settings\Vamsi\Application Data\Consultia
2008-09-02 20:34 ——— d—–w D:\Documents and Settings\All Users\Application Data\DassaultSystemes
2008-09-02 20:32 ——— d—–w D:\Documents and Settings\Vamsi\Application Data\DassaultSystemes
2008-09-02 17:37 ——— d—–w D:\Program Files\Common Files\Apple
2008-08-29 08:18 87,336 -c–a-w D:\WINDOWS\system32\dns-sd.exe
2008-08-29 07:53 61,440 —-a-w D:\WINDOWS\system32\dnssd.dll
2008-08-28 15:46 ——— d—–w D:\Program Files\directx
2008-08-28 10:04 333,056 ——w D:\WINDOWS\system32\drivers\srv.sys
2008-08-26 07:24 826,368 —-a-w D:\WINDOWS\system32\wininet.dll
2008-08-14 09:58 2,136,064 ——w D:\WINDOWS\system32\ntoskrnl.exe
2008-08-14 09:22 2,015,744 ——w D:\WINDOWS\system32\ntkrnlpa.exe
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="D:\WINDOWS\system32\ctfmon.exe" [2004-08-04 15360]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="D:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 15360]
D:\Documents and Settings\Vamsi\Start Menu\Programs\Startup\
MagicDisc.lnk - D:\Program Files\MagicDisc\MagicDisc.exe [2008-06-22 575488]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=hnwred.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.l3acm"= l3codecp.acm
"l3codecp.acm"= Fraunhofer IIS MPEG Layer-3 Codec
[HKLM\~\startupfolder\D:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Acrobat Speed Launcher.lnk]
backup=D:\WINDOWS\pss\Adobe Acrobat Speed Launcher.lnkCommon Startup
[HKLM\~\startupfolder\D:^Documents and Settings^All Users^Start Menu^Programs^Startup^Cisco Systems VPN Client.lnk]
[HKLM\~\startupfolder\D:^Documents and Settings^Vamsi^Start Menu^Programs^Startup^LimeWire On Startup.lnk]
backup=D:\WINDOWS\pss\LimeWire On Startup.lnkStartup
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AppleSyncNotifier
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DW6
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nitro PDF Printer Monitor
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSpy
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSpyIndexer
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 7.0]
–a—— 2006-01-12 21:52 483328 D:\Program Files\Adobe\Acrobat 7.0\Distillr\acrotray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
–a–c— 2008-01-11 23:16 39792 D:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AzMixerSel]
—–c— 2005-06-11 05:51 53248 D:\Program Files\Realtek\InstallShield\AzMixerSel.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\googletalk]
–a—— 2007-01-01 23:22 3739648 D:\Program Files\Google\Google Talk\googletalk.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
–a—— 2008-10-01 18:57 289576 D:\Program Files\iTunes\iTunesHelper.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Messenger (Yahoo!)]
–a—— 2008-05-27 21:58 4269296 D:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
–a—— 2007-10-18 12:34 5724184 D:\Program Files\Windows Live\Messenger\msnmsgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
–a—— 2008-09-06 15:09 413696 D:\Program Files\QuickTime\QTTask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony Ericsson PC Suite]
-ra–c— 2007-06-13 09:16 528384 D:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
–a–c— 2007-09-25 02:11 132496 D:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
–a—— 2008-04-27 23:25 185896 D:\Program Files\Common Files\Real\Update_OB\realsched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Veoh]
–a—— 2008-08-28 10:18 3660848 D:\Program Files\Veoh Networks\Veoh\VeohClient.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VoipRaider]
–a—— 2008-07-17 11:16 8995120 D:\Program Files\VoipRaider.com\VoipRaider\VoipRaider.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Voipwise]
–a—— 2008-06-30 18:44 8944944 D:\Program Files\Voipwise.com\Voipwise\voipwise.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Yahoo! Pager]
–a—— 2008-05-27 21:58 4269296 D:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"D:\\Program Files\\Google\\Google Talk\\googletalk.exe"=
"D:\\Program Files\\eMule\\emule.exe"=
"D:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"D:\\Program Files\\Voipwise.com\\Voipwise\\Voipwise.exe"=
"D:\\Program Files\\Messenger\\msmsgs.exe"=
"D:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"D:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"D:\\Program Files\\uTorrent\\uTorrent.exe"=
"D:\\cygwin\\usr\\X11R6\\bin\\XWin.exe"=
"D:\\Program Files\\Veoh Networks\\Veoh\\VeohClient.exe"=
"D:\\Program Files\\VoipRaider.com\\VoipRaider\\VoipRaider.exe"=
"D:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"D:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"D:\\Program Files\\iTunes\\iTunes.exe"=
R0 O2MDRDR;O2MDRDR;D:\WINDOWS\system32\DRIVERS\o2media.sys [2007-04-03 39680]
R0 O2SDRDR;O2SDRDR;D:\WINDOWS\system32\DRIVERS\o2sd.sys [2007-04-02 35712]
R1 LUMDriver;LUMDriver;D:\WINDOWS\system32\drivers\LUMDriver.sys [2007-04-24 16688]
S2 ANSYS FLEXlm license manager;ANSYS FLEXlm license manager;D:\PROGRA~1\ANSYSI~1\SHARED~1\LICENS~1\Intel\lmgrd.exe [2006-03-24 1294336]
S2 BBDemon;Backbone Service;D:\Program Files\Dassault Systemes\B18\intel_a\code\bin\CATSysDemon.exe [ ]
S2 ioloFileInfoList;iolo FileInfoList Service;D:\Program Files\iolo\common\lib\ioloServiceManager.exe [ ]
S2 ioloSystemService;iolo System Service;D:\Program Files\iolo\common\lib\ioloServiceManager.exe [ ]
S2 Ray;Ray;D:\Program Files\Dassault Systemes\PhotoStudioSatellite\B18\rayserver.exe [ ]
S3 s115bus;Sony Ericsson Device 115 driver (WDM);D:\WINDOWS\system32\DRIVERS\s115bus.sys [2007-04-23 83208]
S3 s115mdfl;Sony Ericsson Device 115 USB WMC Modem Filter;D:\WINDOWS\system32\DRIVERS\s115mdfl.sys [2007-04-23 15112]
S3 s115mdm;Sony Ericsson Device 115 USB WMC Modem Driver;D:\WINDOWS\system32\DRIVERS\s115mdm.sys [2007-04-23 108680]
S3 s115mgmt;Sony Ericsson Device 115 USB WMC Device Management Drivers (WDM);D:\WINDOWS\system32\DRIVERS\s115mgmt.sys [2007-04-23 100488]
S3 s115obex;Sony Ericsson Device 115 USB WMC OBEX Interface;D:\WINDOWS\system32\DRIVERS\s115obex.sys [2007-04-23 98568]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{14c874dc-f5b2-11dc-bc85-001c26909233}]
\Shell\AutoRun\command - I:\LaunchU3.exe -a
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{38771248-408e-11dd-894a-001c26909233}]
\Shell\AutoRun\command - H:\Launcher.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{4ac71cc0-cf18-11dc-bbe2-001c26909233}]
\Shell\AutoRun\command - I:\LaunchU3.exe -a
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{4d5654c7-d4ba-11dc-bbf4-001c26909233}]
\Shell\AutoRun\command - I:\LaunchU3.exe -a
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{efc6822b-e8fd-11dc-bc43-001c26909233}]
\Shell\Auto\command - boot.exe
\Shell\AutoRun\command - D:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL boot.exe
.
Contents of the 'Scheduled Tasks' folder
2008-10-13 D:\WINDOWS\Tasks\AppleSoftwareUpdate.job
- D:\Program Files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 12:34]
2008-10-25 D:\WINDOWS\Tasks\Check Updates for Windows Live Toolbar.job
- D:\Program Files\Windows Live Toolbar\MSNTBUP.EXE [2007-10-19 12:20]
.
.
——- Supplementary Scan ——-
.
FireFox -: Profile - D:\Documents and Settings\Vamsi\Application Data\Mozilla\Firefox\Profiles\gil2op25.default\
FireFox -: prefs.js - SEARCH.DEFAULTURL - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FireFox -: prefs.js - STARTUP.HOMEPAGE - hxxp://www.blackle.com/
FF -: plugin - D:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
FF -: plugin - D:\Program Files\Mozilla Firefox\plugins\npOGAPlugin.dll
FF -: plugin - D:\Program Files\Veoh Networks\Veoh\Plugins\noreg\NPVeohVersion.dll
FF -: plugin - D:\Program Files\Virtools\3D Life Player\npvirtools.dll
FF -: plugin - D:\Program Files\Yahoo!\Shared\npYState.dll
.
.
——- File Associations ——-
.
JSEFile=NOTEPAD.EXE %1
VBEFile=NOTEPAD.EXE %1
VBSFile=NOTEPAD.EXE %1
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-10-25 22:05:08
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes …
scanning hidden autostart entries …
scanning hidden files …
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-10-25 22:06:59
ComboFix-quarantined-files.txt 2008-10-25 20:06:12
Pre-Run: 5,440,225,280 bytes free
Post-Run: 5,435,752,448 bytes free
WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(3)\WINDOWS
[operating systems]
C:\CMDCONS\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(3)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /usepmtimer /kernel=osxboot.exe
255 — E O F — 2008-10-25 08:50:58
regards
steel