Mam kilka problemów z kompem, 1- obciązenie procka, brak procesów zasobożernych w tle a dzwięki i wykresy obciążenia pracy jakbym włączył skaner całego systemu + defragmentacje+ kompresował plik video. 2 - chyba jakiś trojan lub wirus się czai, objawy podobne do wirusa Hi (problemy z dostępem do facebooka ) combofix coś tam wykrył ale nie wiem czy to wszystko
Log combofix
ComboFix 12-02-13.01 - Czekopelus 2012-02-14 8:44.1.2 - x86
Microsoft Windows XP Professional 5.1.2600.3.1250.48.1045.18.1022.541 [GMT 1:00]
Uruchomiony z: d:\pobieranie\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: Sygate Personal Firewall *Enabled* {BE898FE3-CD0B-4014-85A9-03DB9923DDB6}
.
.
((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\awindows\IsUn0415.exe
c:\awindows\msmqinst.log
c:\documents and settings\All Users.AWINDOWS\Dane aplikacji\TEMP
c:\documents and settings\Czekopelus\Recent\Thumbs.db
c:\documents and settings\Czekopelus\WINDOWS
c:\documents and settings\Peleoko\WINDOWS
c:\program files\StartSearch plugin
c:\program files\StartSearch plugin\IEhelperActiveX.dll
c:\program files\StartSearch plugin\ssBarLcher.dll
c:\program files\StartSearch plugin\StartBar.dll
c:\program files\StartSearch plugin\uninst.exe
c:\program files\StartSearch plugin\vshareplg.crx
.
.
((((((((((((((((((((((((( Pliki utworzone od 2012-01-14 do 2012-02-14 )))))))))))))))))))))))))))))))
.
.
2012-02-14 06:40 . 2012-02-14 07:31 -------- d-----w- c:\program files\Common Files\PC Tools
2012-02-14 06:40 . 2012-01-11 15:19 185560 ----a-w- c:\awindows\system32\drivers\PCTSD.sys
2012-02-14 06:39 . 2012-02-14 07:27 -------- d-----w- c:\documents and settings\All Users.AWINDOWS\Dane aplikacji\PC Tools
2012-02-14 06:39 . 2012-02-14 06:39 -------- d-----w- c:\documents and settings\Czekopelus\Dane aplikacji\TestApp
2012-02-13 22:16 . 2012-02-13 22:16 -------- d-----w- c:\documents and settings\Czekopelus\Dane aplikacji\MAGIX
2012-02-11 12:51 . 2012-02-11 12:51 -------- d-----w- c:\program files\Common Files\Digidesign
2012-02-09 13:11 . 2012-02-09 13:11 -------- d-----w- c:\documents and settings\Czekopelus\Ustawienia lokalne\Dane aplikacji\Google
2012-02-09 12:23 . 2012-02-09 12:23 -------- d-----w- c:\program files\Real
2012-02-09 12:22 . 2012-02-09 12:22 -------- d-----w- c:\program files\Common Files\xing shared
2012-02-02 16:11 . 2012-02-02 16:16 -------- d-----w- c:\documents and settings\Czekopelus\Dane aplikacji\iZotope
2012-02-02 11:09 . 2012-02-02 11:09 -------- d-----w- c:\program files\Common Files\iZotope
2012-02-01 19:21 . 2012-02-01 19:21 -------- d-----w- c:\documents and settings\Czekopelus\Dane aplikacji\Avnex
2012-01-30 19:00 . 2012-01-30 19:00 -------- d-----w- c:\program files\Common Files\Java
2012-01-30 18:59 . 2012-01-30 18:59 73728 ----a-w- c:\awindows\system32\javacpl.cpl
2012-01-30 18:08 . 2012-01-30 18:08 -------- d-----w- c:\documents and settings\LocalService.ZARZĄDZANIE NT\Ustawienia lokalne\Dane aplikacji\uTorrentBar
2012-01-30 18:08 . 2012-01-30 18:08 -------- d-----w- c:\documents and settings\LocalService.ZARZĄDZANIE NT\Ustawienia lokalne\Dane aplikacji\Vuze_Remote
2012-01-30 18:08 . 2012-01-30 18:08 -------- d-----r- c:\documents and settings\LocalService.ZARZĄDZANIE NT\Ulubione
2012-01-30 10:02 . 2012-01-30 10:02 -------- d-----w- c:\program files\Steinberg
2012-01-28 23:33 . 2012-01-28 23:33 -------- d-----w- c:\documents and settings\NetworkService.ZARZĄDZANIE NT\Ustawienia lokalne\Dane aplikacji\Conduit
2012-01-28 23:33 . 2012-01-28 23:33 -------- d-----w- c:\documents and settings\NetworkService.ZARZĄDZANIE NT\Ustawienia lokalne\Dane aplikacji\uTorrentBar
2012-01-28 23:33 . 2012-01-28 23:33 -------- d-----r- c:\documents and settings\NetworkService.ZARZĄDZANIE NT\Ulubione
2012-01-27 13:42 . 2004-10-15 17:32 14568 ----a-w- c:\awindows\system32\drivers\wg6n.sys
2012-01-27 13:42 . 2004-10-15 17:32 14568 ----a-w- c:\awindows\system32\drivers\wg5n.sys
2012-01-27 13:42 . 2004-10-15 17:32 14568 ----a-w- c:\awindows\system32\drivers\wg4n.sys
2012-01-27 13:42 . 2004-10-15 17:32 14568 ----a-w- c:\awindows\system32\drivers\wg3n.sys
2012-01-27 13:41 . 2004-10-15 17:17 60496 ----a-w- c:\awindows\system32\drivers\Teefer.sys
2012-01-27 13:41 . 2004-10-15 17:18 21075 ----a-w- c:\awindows\system32\drivers\wpsdrvnt.sys
2012-01-27 13:41 . 2004-10-15 17:32 83096 ----a-w- c:\awindows\system32\SSSensor.dll
2012-01-27 13:41 . 2012-01-27 13:41 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
.
.
.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-02-09 12:21 . 2003-03-18 17:14 499712 ----a-w- c:\awindows\system32\msvcp71.dll
2012-02-09 12:21 . 2003-02-21 01:42 348160 ----a-w- c:\awindows\system32\msvcr71.dll
2012-01-30 18:59 . 2010-04-21 08:17 472808 ----a-w- c:\awindows\system32\deployJava1.dll
2011-12-22 18:31 . 2009-10-08 08:47 108144 ----a-w- c:\awindows\system32\CmdLineExt.dll
2011-12-22 13:32 . 2011-12-22 13:32 278984 ----a-w- c:\awindows\system32\drivers\atksgt.sys
2011-12-22 13:32 . 2011-12-22 13:32 25416 ----a-w- c:\awindows\system32\drivers\lirsgt.sys
2011-12-15 18:59 . 2011-12-15 18:59 249856 ------w- c:\awindows\Setup1.exe
2011-12-15 18:59 . 2011-12-15 18:59 73216 ----a-w- c:\awindows\ST6UNST.EXE
2011-12-06 20:13 . 2011-12-06 20:13 364544 ----a-w- c:\awindows\system32\mpi_cairo.dll
2011-12-06 20:13 . 2011-12-06 20:13 401408 ----a-w- c:\awindows\system32\mpi_freetype.dll
2011-12-06 20:13 . 2011-12-06 20:13 23040 ----a-w- c:\awindows\system32\mpi_sigc-2.0.dll
2011-12-06 20:13 . 2011-12-06 20:13 184320 ----a-w- c:\awindows\system32\mpi_libpng15.dll
2011-11-28 18:01 . 2010-10-24 15:07 41184 ----a-w- c:\awindows\avastSS.scr
2011-11-28 18:01 . 2010-10-24 15:02 199816 ----a-w- c:\awindows\system32\aswBoot.exe
2011-11-28 17:53 . 2011-03-19 20:41 435032 ----a-w- c:\awindows\system32\drivers\aswSnx.sys
2011-11-28 17:53 . 2010-10-24 15:03 314456 ----a-w- c:\awindows\system32\drivers\aswSP.sys
2011-11-28 17:52 . 2010-10-24 15:03 34392 ----a-w- c:\awindows\system32\drivers\aswRdr.sys
2011-11-28 17:52 . 2010-10-24 15:03 52952 ----a-w- c:\awindows\system32\drivers\aswTdi.sys
2011-11-28 17:52 . 2010-10-24 15:02 111320 ----a-w- c:\awindows\system32\drivers\aswmon2.sys
2011-11-28 17:51 . 2010-10-24 15:02 105176 ----a-w- c:\awindows\system32\drivers\aswmon.sys
2011-11-28 17:51 . 2010-10-24 15:03 20568 ----a-w- c:\awindows\system32\drivers\aswFsBlk.sys
2011-11-28 17:48 . 2010-10-24 15:02 30808 ----a-w- c:\awindows\system32\drivers\aavmker4.sys
2011-11-17 18:20 . 2011-05-31 17:16 414368 ----a-w- c:\awindows\system32\FlashPlayerCPLApp.cpl
.
.
((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID{472083B0-C522-11CF-8763-00608CC02F24}]
2011-11-28 18:01 122512 ----a-w- d:\program files\Alwil Software\Avast5\ashShell.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“RTHDCPL”=“RTHDCPL.EXE” [2009-05-21 17881600]
“SmcService”=“d:\progra~1\Sygate\SPF\smc.exe” [2004-10-15 2577632]
“NvCplDaemon”=“c:\awindows\system32\NvCpl.dll” [2006-11-17 7700480]
.
[HKEY_USERS.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
“CTFMON.EXE”=“c:\awindows\System32\CTFMON.EXE” [2008-04-14 15360]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
“midi1”=sfvmr.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk /k:F *
.
[HKLM~\startupfolder\C:^Documents and Settings^All Users.AWINDOWS^Menu Start^Programy^Autostart^McAfee Security Scan Plus.lnk]
path=c:\documents and settings\All Users.AWINDOWS\Menu Start\Programy\Autostart\McAfee Security Scan Plus.lnk
backup=c:\awindows\pss\McAfee Security Scan Plus.lnkCommon Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2012-01-03 07:37 843712 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2011-09-07 22:58 37296 ----a-w- d:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
2008-04-14 20:51 15360 ----a-w- c:\awindows\system32\ctfmon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
2008-04-14 20:51 1695232 --sh–w- c:\program files\Messenger\msmsgs.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2006-01-12 14:40 155648 ----a-w- c:\awindows\system32\NeroCheck.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2006-11-17 16:29 7700480 ----a-w- c:\awindows\system32\nvcpl.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2006-11-17 16:29 86016 ----a-w- c:\awindows\system32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
2006-11-17 16:29 1622016 ----a-w- c:\awindows\system32\nwiz.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2011-10-24 13:28 421888 ----a-w- d:\program files\QuickTime Alternative\QTTask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony Ericsson PC Suite]
2011-06-17 08:17 466944 ----a-w- d:\program files\Sony Ericsson\SEPCSuite.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2011-06-09 12:06 254696 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
2012-02-09 12:22 296056 ----a-w- d:\program files\Real\RealPlayer\Update\realsched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
“OMSI download service”=2 (0x2)
“avast! Antivirus”=2 (0x2)
“TermService”=3 (0x3)
“ERSvc”=2 (0x2)
“W32Time”=2 (0x2)
“helpsvc”=2 (0x2)
“mnmsrvc”=3 (0x3)
“RDSessMgr”=3 (0x3)
“JavaQuickStarterService”=2 (0x2)
“wuauserv”=2 (0x2)
“gupdate”=2 (0x2)
“Bonjour Service”=2 (0x2)
.
[HKLM~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
“%windir%\Network Diagnostic\xpnetdiag.exe”=
“%windir%\system32\sessmgr.exe”=
“d:\Program Files\SopCast\adv\SopAdver.exe”=
“d:\Program Files\SopCast\SopCast.exe”=
“d:\Program Files\TVUPlayer\TVUPlayer.exe”=
“c:\Program Files\Mozilla Firefox\firefox.exe”=
“c:\Program Files\Gadu-Gadu\gg.exe”=
“c:\AWINDOWS\system32\java.exe”=
“c:\Documents and Settings\Czekopelus\Ustawienia lokalne\Dane aplikacji\Mozilla Firefox\firefox.exe”=
“d:\Program Files\KONAMI\Pro Evolution Soccer 6\PES6.exe”=
“c:\AWINDOWS\system32\mmc.exe”=
“d:\Program Files\BSPlayer\bsplayer.exe”=
“d:\Program Files\ACE Mega CoDecS Pack\UtilitieS\AVI CoDecS\AVIcodec.exe”=
“d:\Program Files\ACE Mega CoDecS Pack\BSPlayer\bsplayer.exe”=
“d:\Program Files\Vuze\Azureus.exe”=
“d:\Program Files\uTorrent\uTorrent.exe”=
“d:\Program Files\Fox\No One Lives Forever\eReg\NAVBROWSER.EXE”=
.
R0 ahcix86;ahcix86;c:\awindows\system32\drivers\ahcix86.sys [2010-09-21 119808]
R0 sptd;sptd;\SystemRoot\SystemRoot\System32\Drivers\sptd.sys --> \SystemRoot\SystemRoot\System32\Drivers\sptd.sys [?]
R1 aswSnx;aswSnx;c:\awindows\system32\drivers\aswSnx.sys [2011-03-19 435032]
R1 aswSP;aswSP;c:\awindows\system32\drivers\aswSP.sys [2010-10-24 314456]
R1 sfvmr;sfvmr;c:\awindows\system32\drivers\sfvmr.sys [2010-11-09 11584]
R2 ASTRA32;ASTRA32 Kernel Driver 5.2.1.0;f:\program files\ASTRA32\astra32.sys [2007-02-22 30864]
R2 aswFsBlk;aswFsBlk;c:\awindows\system32\drivers\aswFsBlk.sys [2010-10-24 20568]
R2 BT848;Conexant’s BtPCI WDM Video Capture;c:\awindows\system32\drivers\BT848.sys [2011-01-21 371349]
R3 seehcri;Sony Ericsson seehcri Device Driver;c:\awindows\system32\drivers\seehcri.sys [2009-11-30 27632]
S3 Ambfilt;Ambfilt;c:\awindows\system32\drivers\Ambfilt.sys [2009-10-05 1684736]
S3 s0017bus;Sony Ericsson Device 0017 driver (WDM);c:\awindows\system32\drivers\s0017bus.sys [2009-12-24 86824]
S3 s0017mdfl;Sony Ericsson Device 0017 USB WMC Modem Filter;c:\awindows\system32\drivers\s0017mdfl.sys [2009-12-24 15016]
S3 s0017mdm;Sony Ericsson Device 0017 USB WMC Modem Driver;c:\awindows\system32\drivers\s0017mdm.sys [2009-12-24 114600]
S3 s0017mgmt;Sony Ericsson Device 0017 USB WMC Device Management Drivers (WDM);c:\awindows\system32\drivers\s0017mgmt.sys [2009-12-24 108328]
S3 s0017nd5;Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (NDIS);c:\awindows\system32\drivers\s0017nd5.sys [2009-12-24 26024]
S3 s0017obex;Sony Ericsson Device 0017 USB WMC OBEX Interface;c:\awindows\system32\drivers\s0017obex.sys [2009-12-24 104616]
S3 s0017unic;Sony Ericsson Device 0017 USB Ethernet Emulation SEMC0017 (WDM);c:\awindows\system32\drivers\s0017unic.sys [2009-12-24 109736]
S3 s1039bus;Sony Ericsson Device 1039 driver (WDM);c:\awindows\system32\drivers\s1039bus.sys [2011-10-30 98672]
S3 s1039mdfl;Sony Ericsson Device 1039 USB WMC Modem Filter;c:\awindows\system32\drivers\s1039mdfl.sys [2011-10-30 14960]
S3 s1039mdm;Sony Ericsson Device 1039 USB WMC Modem Driver;c:\awindows\system32\drivers\s1039mdm.sys [2011-10-30 124016]
S3 s1039mgmt;Sony Ericsson Device 1039 USB WMC Device Management Drivers (WDM);c:\awindows\system32\drivers\s1039mgmt.sys [2011-10-30 117872]
S3 s1039nd5;Sony Ericsson Device 1039 USB Ethernet Emulation (NDIS);c:\awindows\system32\drivers\s1039nd5.sys [2011-10-30 25456]
S3 s1039obex;Sony Ericsson Device 1039 USB WMC OBEX Interface;c:\awindows\system32\drivers\s1039obex.sys [2011-10-30 113904]
S3 s1039unic;Sony Ericsson Device 1039 USB Ethernet Emulation (WDM);c:\awindows\system32\drivers\s1039unic.sys [2011-10-30 123504]
S3 TotRec8;Total Recorder WDM audio filter driver;??\c:\awindows\system32\drivers\TotRec8.sys --> c:\awindows\system32\drivers\TotRec8.sys [?]
S4 gupdate;Usługa Google Update (gupdate);“c:\program files\Google\Update\GoogleUpdate.exe” /svc --> c:\program files\Google\Update\GoogleUpdate.exe [?]
S4 OMSI download service;Sony Ericsson OMSI download service;d:\program files\Sony Ericsson\SupServ.exe [2009-12-24 90112]
.
Zawartość folderu ‘Zaplanowane zadania’
.
2012-02-14 c:\awindows\Tasks\RealUpgradeLogonTaskS-1-5-21-2000478354-838170752-839522115-1003.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2012-01-30 16:45]
.
2012-02-09 c:\awindows\Tasks\RealUpgradeScheduledTaskS-1-5-21-2000478354-838170752-839522115-1003.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2012-01-30 16:45]
.
.
------- Skan uzupełniający -------
.
uStart Page = hxxp://startsear.ch/?aff=2&cf=863c7844- … 1a4d7af866
mStart Page = hxxp://startsear.ch/?aff=2&cf=863c7844- … 1a4d7af866
uInternet Settings,ProxyOverride = local;*.local
TCP: DhcpNameServer = 192.168.1.1
DPF: Microsoft XML Parser for Java - file://c:\awindows\Java\classes\xmldso.cab
FF - ProfilePath - c:\documents and settings\Czekopelus\Dane aplikacji\Mozilla\Firefox\Profiles\dodzzjiu.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - about:home
FF - prefs.js: keyword.URL - hxxp://startsear.ch/?aff=2&src=sp&cf=86 … d7af866&q=
.
-
-
-
- USUNIĘTO PUSTE WPISY - - - -
-
-
.
MSConfigStartUp-DAEMON Tools Lite - c:\program files\DAEMON Tools Lite\DTLite.exe
MSConfigStartUp-EA Core - d:\program files\Electronic Arts\EADM\Core.exe
MSConfigStartUp-Google Update - c:\documents and settings\Czekopelus\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe
MSConfigStartUp-Intelitech Finance Reminder - d:\program files\Intelitech\Menedzer Finansow\Reminder.exe
MSConfigStartUp-U36VRSFLG6 - c:\docume~1\CZEKOP~1\USTAWI~1\Temp\Frx.exe
MSConfigStartUp-VeohPlugin - c:\program files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe
AddRemove-LiveVDO plugin - c:\program files\StartSearch plugin\uninst.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-02-14 08:52
Windows 5.1.2600 Dodatek Service Pack 3 NTFS
.
skanowanie ukrytych procesów …
.
skanowanie ukrytych wpisów autostartu …
.
skanowanie ukrytych plików …
.
skanowanie pomyślnie ukończone
ukryte pliki: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\vsdatant]
“ImagePath”=""
.
--------------------- ZABLOKOWANE KLUCZE REJESTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\h–€|˙˙˙˙¤•€|ů•6~*]
“AB141C35E9F4BF344B9FC010BB17F68A”=""
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Reinstall\ćHőwć*]
“DisplayName”="???\17?\11\09"
“DeviceDesc”="???\17?\11\09"
“ProviderName”="???\11?\18?\11??"
“MFG”="???"
“ReinstallString”=".10.1000.7"
“DeviceInstanceIds”=multi:“d:\j\motherboard_driver_chipset_ati_rs690\smbus\smbusati.inf\00”
.
--------------------- Pliki DLL ładowane pod uruchomionymi procesami ---------------------
.
-
-
-
-
-
-
- > ‘winlogon.exe’(784)
-
-
-
-
-
c:\awindows\system32\Ati2evxx.dll
.
Czas ukończenia: 2012-02-14 08:57:59
ComboFix-quarantined-files.txt 2012-02-14 07:57
.
Przed: 1 566 380 032 bajtów wolnych
Po: 1 557 004 288 bajtów wolnych
.
WindowsXP-KB310994-SP2-Pro-BootDisk-PLK.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\AWINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT=“Microsoft Windows Recovery Console” /cmdcons
UnsupportedDebug=“do not select this” /debug
multi(0)disk(0)rdisk(0)partition(1)\AWINDOWS=“Microsoft Windows XP Professional” /fastdetect /NoExecute=OptIn
.
-
- End Of File - - C3C427D7C0C56ACE9550FBFC6B2477AE