هذا اول تقرير
ComboFix 08-12-12.02 - moon 12/13/2008 6:39:09.1 - NTFSx86
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1256.1.1033.18.1013.203 [GMT 3:00]
Running from: c:\users\moon\Desktop\ComboFix.exe
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\system32\dumphive.exe
c:\windows\system32\IEDFix.exe
c:\windows\system32\Process.exe
c:\windows\system32\SrchSTS.exe
c:\windows\system32\VACFix.exe
c:\windows\system32\VCCLSID.exe
c:\windows\system32\WS2Fix.exe
.
((((((((((((((((((((((((( Files Created from 2008-11-13 to 2008-12-13 )))))))))))))))))))))))))))))))
.
No new files created in this timespan
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-13 03:44 --------- d-----w c:\users\moon\AppData\Roaming\DMCache
2008-12-13 02:18 0 ----a-w C:\ntuser.dat
2008-12-13 01:46 --------- d-----w c:\users\moon\AppData\Roaming\iPhoneRingToneMaker
2008-12-13 01:31 410,984 ----a-w c:\windows\System32\deploytk.dll
2008-12-13 01:31 --------- d-----w c:\program files\Java
2008-12-12 15:01 --------- d-----w c:\program files\Common Files\Symantec Shared
2008-12-12 15:00 --------- d-----w c:\program files\Norton Security Scan
2008-12-11 23:11 --------- d-----w c:\users\moon\AppData\Roaming\Delicious IE Extension
2008-12-11 05:20 --------- d---a-w c:\progra~2\TEMP
2008-12-11 02:32 --------- d-----w c:\progra~2\Symantec
2008-12-10 04:14 --------- dc-h--w c:\progra~2\{B46E1EF5-0B37-4DB4-A4E2-9F2B41036185}
2008-12-10 04:14 --------- d-----w c:\users\moon\AppData\Roaming\Uniblue
2008-12-10 04:14 --------- d-----w c:\program files\Uniblue
2008-12-09 19:47 --------- d-----w c:\users\moon\AppData\Roaming\yahoo!
2008-12-09 19:47 --------- d-----w c:\progra~2\Yahoo! Companion
2008-12-09 19:39 --------- d-----w c:\program files\Yahoo!
2008-12-09 19:17 --------- d-----w c:\program files\Windows Mail
2008-12-09 19:15 --------- d-----w c:\progra~2\Microsoft Help
2008-12-09 18:07 --------- d-----w c:\program files\Microsoft Silverlight
2008-12-09 00:34 --------- d-----w c:\program files\Malwarebytes' Anti-Malware
2008-12-03 16:52 38,496 ----a-w c:\windows\system32\drivers\mbamswissarmy.sys
2008-12-03 16:52 15,504 ----a-w c:\windows\system32\drivers\mbam.sys
2008-11-29 22:13 --------- d-----w c:\program files\Hotspot Shield
2008-11-26 09:36 --------- d-----w c:\program files\Common Files\NetDragon
2008-11-23 12:59 98,440 ----a-w c:\windows\system32\drivers\avgldx86.sys
2008-11-23 12:59 90,632 ----a-w c:\windows\system32\drivers\avgtdix.sys
2008-11-23 12:59 12,936 ----a-w c:\windows\system32\drivers\avgrkx86.sys
2008-11-23 12:59 10,520 ----a-w c:\windows\System32\avgrsstx.dll
2008-11-23 12:58 --------- d-----w c:\progra~2\Avg8
2008-11-18 09:14 --------- d-----w c:\program files\MessengerLog
2008-11-06 00:23 3,110,004 ----a-w c:\users\moon\HSS-1.07-install-anchorfree-76-conduit.zip
2008-11-01 03:44 541,696 ----a-w c:\windows\AppPatch\AcLayers.dll
2008-11-01 03:44 52,736 ----a-w c:\windows\AppPatch\iebrshim.dll
2008-11-01 03:44 460,288 ----a-w c:\windows\AppPatch\AcSpecfc.dll
2008-11-01 03:44 28,672 ----a-w c:\windows\System32\Apphlpdm.dll
2008-11-01 03:44 2,154,496 ----a-w c:\windows\AppPatch\AcGenral.dll
2008-11-01 03:44 173,056 ----a-w c:\windows\AppPatch\AcXtrnal.dll
2008-11-01 01:21 4,240,384 ----a-w c:\windows\System32\GameUXLegacyGDFs.dll
2008-10-29 06:29 2,927,104 ----a-w c:\windows\explorer.exe
2008-10-22 03:57 241,152 ----a-w c:\windows\System32\PortableDeviceApi.dll
2008-10-22 01:22 2,048 ----a-w c:\windows\System32\tzres.dll
2008-10-21 05:25 296,960 ----a-w c:\windows\System32\gdi32.dll
2008-10-21 05:25 1,645,568 ----a-w c:\windows\System32\connect.dll
2008-10-16 21:13 1,809,944 ----a-w c:\windows\System32\wuaueng.dll
2008-10-16 21:12 561,688 ----a-w c:\windows\System32\wuapi.dll
2008-10-16 21:09 51,224 ----a-w c:\windows\System32\wuauclt.exe
2008-10-16 21:09 43,544 ----a-w c:\windows\System32\wups2.dll
2008-10-16 21:08 34,328 ----a-w c:\windows\System32\wups.dll
2008-10-16 20:56 1,524,736 ----a-w c:\windows\System32\wucltux.dll
2008-10-16 20:55 83,456 ----a-w c:\windows\System32\wudriver.dll
2008-10-16 11:08 162,064 ----a-w c:\windows\System32\wuwebv.dll
2008-10-16 10:56 31,232 ----a-w c:\windows\System32\wuapp.exe
2008-09-30 13:43 1,286,152 ----a-w c:\windows\System32\msxml4.dll
2008-09-18 05:09 3,601,464 ----a-w c:\windows\System32\ntkrnlpa.exe
2008-09-18 05:09 3,549,240 ----a-w c:\windows\System32\ntoskrnl.exe
2008-09-18 04:56 147,456 ----a-w c:\windows\System32\Faultrep.dll
2008-09-18 04:56 125,952 ----a-w c:\windows\System32\wersvc.dll
2008-09-18 02:16 2,032,640 ----a-w c:\windows\System32\win32k.sys
2008-07-06 00:32 174 --sha-w c:\program files\desktop.ini
2008-04-18 01:57 691 ----a-w c:\users\moon\AppData\Roaming\GetValue.vbs
2008-04-18 01:57 35 ----a-w c:\users\moon\AppData\Roaming\SetValue.bat
2008-01-20 00:50 382,352 ----a-w c:\users\moon\jre-6u3-windows-i586-p-iftw.exe
2008-08-26 00:51 5,141 --sh--r c:\windows\System32\sysfhr.dat
2008-08-26 00:50 673,546 --sh--r c:\windows\System32\sysfhr.sys
2008-08-25 05:14 32,768 --sha-w c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012008081820080825\index.dat
2008-08-25 19:35 32,768 --sha-w c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012008082520080826\index.dat
2008-08-26 00:47 32,768 --sha-w c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012008082620080827\index.dat
2008-08-27 06:38 32,768 --sha-w c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012008082720080828\index.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper s\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}]
11/30/2008 01:13 AM 204248 --a------ c:\program files\Hotspot Shield\hssie\HssIE.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [01/19/2008 10:33 AM 1233920]
"swg"="c:\program files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" [07/17/2007 12:57 PM 171448]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [01/19/2008 10:33 AM 125952]
"IDMan"="c:\program files\Internet Download Manager\IDMan.exe" [09/26/2007 03:58 PM 887040]
"Yahoo! Pager"="c:\program files\Yahoo!\Messenger\YahooMessenger.exe" [08/30/2007 05:43 PM 4670704]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [01/19/2008 10:33 AM 202240]
"Acer Tour Reminder"="" [BU]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [10/23/2006 10:00 PM 815104]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [11/06/2006 07:02 PM 98304]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [11/06/2006 07:05 PM 106496]
"Persistence"="c:\windows\system32\igfxpers.exe" [11/06/2006 07:02 PM 81920]
"eDataSecurity Loader"="c:\acer\Empowering Technology\eDataSecurity\eDSloader.exe" [02/07/2007 10:04 AM 464168]
"LaunchAp"="c:\program files\Launch Manager\LaunchAp.exe" [07/25/2005 11:36 PM 32768]
"LManager"="c:\program files\Launch Manager\HotkeyApp.exe" [01/10/2007 09:34 PM 200704]
"LMgrOSD"="c:\program files\Launch Manager\OSDCtrl.exe" [08/29/2006 07:26 PM 241664]
"Wbutton"="c:\program files\Launch Manager\Wbutton.exe" [11/10/2006 12:37 AM 86016]
"WarReg_PopUp"="c:\acer\WR_PopUp\WarReg_PopUp.exe" [11/06/2006 07:48 AM 57344]
"Acer Tour Reminder"="c:\acer\AcerTour\Reminder.exe" [01/17/2007 07:01 PM 151552]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [08/24/2007 07:00 AM 33648]
"UnlockerAssistant"="c:\program files\Unlocker\UnlockerAssistant.exe" [09/07/2006 08:19 PM 15872]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [02/05/2008 05:21 AM 185896]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [06/12/2008 02:38 AM 34672]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [09/06/2008 03:09 PM 413696]
"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [10/01/2008 12:57 PM 111936]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [10/01/2008 06:57 PM 289576]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [11/30/2008 01:09 AM 1261336]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [12/13/2008 04:31 AM 136600]
"RtHDVCpl"="RtHDVCpl.exe" [11/09/2006 09:57 PM 3784704 c:\windows\RtHDVCpl.exe]
c:\users\moon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
iPhoneRingToneMaker.lnk - c:\program files\iPhoneRingToneMaker\iPhoneRingToneMaker.exe [2008-02-05 1309184]
c:\progra~2\MICROS~1\Windows\STARTM~1\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2006-11-30 719664]
Empowering Technology Launcher.lnk - c:\acer\Empowering Technology\eAPLauncher.exe [2007-03-27 528384]
c:\users\moon\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\
iPhoneRingToneMaker.lnk - c:\program files\iPhoneRingToneMaker\iPhoneRingToneMaker.exe [2008-02-05 1309184]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"NoConfigPage"= 0 (0x0)
"NoDevMgrPage"= 0 (0x0)
"NoFileSysPage"= 0 (0x0)
"NoVirtMemPage"= 0 (0x0)
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\system]
"NoConfigPage"= 0 (0x0)
"NoDevMgrPage"= 0 (0x0)
"NoFileSysPage"= 0 (0x0)
"NoVirtMemPage"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=eNetHook.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.l3acm"= l3codecp.acm
"msacm.avis"= ff_acm.acm
"msacm.divxa32"= msaud32_divx.acm
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"{C45D91D3-22CA-47E5-B829-39F9CE5AA69C}"= UDP:c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\MCE Deluxe Suite.exe:CyberLink MCE Deluxe Suite
"{C967E0D5-39B2-4016-84F4-ABFB3DBB45C7}"= TCP:c:\program files\Acer Arcade Deluxe\Acer Arcade Deluxe\MCE Deluxe Suite.exe:CyberLink MCE Deluxe Suite
"{C7B84448-EAAF-446E-940E-405053E4F2E5}"= UDP:c:\program files\DAP\DAP.exe

ownload Accelerator Plus (DAP)
"{13CB59CA-885A-4BEA-BD71-8B6276EC76BF}"= TCP:c:\program files\DAP\DAP.exe

ownload Accelerator Plus (DAP)
"{050A1384-3AFB-4D65-B186-B5249A209ED7}"= TCP:6004|c:\program files\Microsoft Office\Office12\outlook.exe:Microsoft Office Outlook
"{0C1A51C6-5BC1-4CAA-AF37-08AEE3F975B3}"= UDP:c:\program files\Microsoft Office\Office12\GROOVE.EXE:Microsoft Office Groove
"{C69E6A4D-D469-443D-91A0-F9DF45B209BB}"= TCP:c:\program files\Microsoft Office\Office12\GROOVE.EXE:Microsoft Office Groove
"{7CE7643F-006B-4781-85F0-36F1D6E809D4}"= UDP:c:\program files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{03C173C8-61FA-4CB8-85AA-CDF06F8D287F}"= TCP:c:\program files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{D2403948-1E33-4A94-86E1-5E5269D8760F}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"TCP Query User{C7CBB611-7686-4605-92A5-DAD4C027FF97}c:\\program files\\itunes\\itunes.exe"= UDP:c:\program files\itunes\itunes.exe:iTunes
"UDP Query User{B195525C-2E31-4F37-9F68-999BBD13EB40}c:\\program files\\itunes\\itunes.exe"= TCP:c:\program files\itunes\itunes.exe:iTunes
"{35B4BCAC-CD50-4445-AB94-B7E6170AC1DF}"= UDP:c:\program files\Yahoo!\Messenger\YServer.exe:Yahoo! FT Server
"{44E6C3BE-0E84-4207-94EC-C6887DFB78A9}"= TCP:c:\program files\Yahoo!\Messenger\YServer.exe:Yahoo! FT Server
"{2CB5B6BC-AE79-4B8C-ABE0-FA49B6A66E74}"= UDP:c:\program files\Yahoo!\Messenger\YahooMessenger.exe:Yahoo! Messenger
"{2F33832E-4DA2-4AEA-BDD4-43F55FFA7098}"= TCP:c:\program files\Yahoo!\Messenger\YahooMessenger.exe:Yahoo! Messenger
"TCP Query User{7935ED27-23BD-43C8-8EEB-2AFDB10ABF3E}c:\\program files\\iphone tunnel suite 2.6 beta\\itunnel\\itunnel.exe"= UDP:c:\program files\iphone tunnel suite 2.6 beta\itunnel\itunnel.exe:iTunnel
"UDP Query User{98C15398-4D92-4D13-95A3-035876146671}c:\\program files\\iphone tunnel suite 2.6 beta\\itunnel\\itunnel.exe"= TCP:c:\program files\iphone tunnel suite 2.6 beta\itunnel\itunnel.exe:iTunnel
"{A43113E3-A999-4668-9243-2F1A741F349A}"= UDP:c:\program files\Bonjour\mDNSResponder.exe:Bonjour
"{B03C1637-4F80-4380-BF67-43FE88365891}"= TCP:c:\program files\Bonjour\mDNSResponder.exe:Bonjour
"{5426DABA-53BE-41CA-A619-A625DF24D64A}"= UDP:c:\program files\iTunes\iTunes.exe:iTunes
"{A4390D0C-FA94-4567-B165-F5B4FEA28EEA}"= TCP:c:\program files\iTunes\iTunes.exe:iTunes
"TCP Query User{5F5AD601-CB06-4C93-AD41-E50A0A9AF51B}c:\\program files\\internet download manager\\idman.exe"= UDP:c:\program files\internet download manager\idman.exe:Internet Download Manager (IDM)
"UDP Query User{78DC7D94-F710-4E01-B974-62DC4752F069}c:\\program files\\internet download manager\\idman.exe"= TCP:c:\program files\internet download manager\idman.exe:Internet Download Manager (IDM)
"{89D3FCD2-9176-4EC6-8F8B-689487CBDD99}"= c:\program files\AVG\AVG8\avgam.exe:avgam.exe
"{3AD4F2E9-3CEC-4569-B749-48415F0612A4}"= c:\program files\AVG\AVG8\avgupd.exe:avgupd.exe
"{1A0547DA-CEA5-41D9-8095-CCB577B891C2}"= c:\program files\AVG\AVG8\avgnsx.exe:avgnsx.exe
"TCP Query User{A099820A-4825-46CC-BC1E-E826BD177BFC}c:\\program files\\internet explorer\\iexplore.exe"= UDP:c:\program files\internet explorer\iexplore.exe:Internet Explorer
"UDP Query User{11AF8595-72B3-49D3-BFA3-70FD4E275F7B}c:\\program files\\internet explorer\\iexplore.exe"= TCP:c:\program files\internet explorer\iexplore.exe:Internet Explorer
R0 AvgRkx86;avgrkx86.sys;c:\windows\system32\Drivers\avgrkx86.sys [2008-11-23 12936]
R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\Drivers\avgldx86.sys [2008-11-23 98440]
R1 AvgTdiX;AVG8 Network Redirector;c:\windows\system32\Drivers\avgtdix.sys [2008-11-23 90632]
R1 Hotkey;Hotkey;c:\windows\system32\drivers\Hotkey.sys [2007-04-30 9867]
R2 avg8wd;AVG8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [2008-11-23 231704]
R3 WisLMSvc;WisLMSvc;"c:\program files\Launch Manager\WisLMSvc.exe" [2007-04-30 118784]
S2 MLServ;MLServ;"c:\program files\MessengerLog\mlserv.exe" []
S3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2008-01-30 34448]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G]
\shell\AutoRun\command - G:\LaunchU3.exe -a
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{651bc8c6-79f3-11dd-acd5-0016d3562dd1}]
\shell\AutoRun\command - F:\LaunchU3.exe -a
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e055f967-fb1e-11dc-adbc-0016d3562dd1}]
\shell\AutoRun\command - G:\LaunchU3.exe -a
.
- - - - ORPHANS REMOVED - - - -
HKCU-Run-updateMgr - c:\program files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe
HKLM-RunServices-raVe - (no file)
HKLM-RunServices-Driver32 - (no file)
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.yahoo.com
mStart Page = hxxp://www.yahoo.com
mSearch Bar = hxxp://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*
uInternet Settings,ProxyOverride = <local>;*.local
IE: Download All Links with IDM - c:\program files\Internet Download Manager\IEGetAll.htm
IE: Download with IDM - c:\program files\Internet Download Manager\IEExt.htm
TCP: {E8A96B3A-7311-4304-92E5-D4FE72EBDEA2} = 10.11.144.1
O16 -: Microsoft XML Parser for Java - file:///C:/Windows/Java/classes/xmldso.cab
c:\windows\Downloaded Program Files\Microsoft XML Parser for Java.osd
FF - ProfilePath - c:\users\moon\AppData\Roaming\Mozilla\Firefox\Profiles\ole6uhke.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.yahoo.com/search?fr=ffsp1&p=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://ar.start2.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:ar

fficial
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=ffds1&p=
.
.
------- File Associations -------
.
txtfile=NOTEPAD %1
vbefile\shell\edit\command=c:\windows\Notepad.exe %1
vbsfile\shell\edit\command=c:\windows\Notepad.exe %1
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
Rootkit scan 2008-12-13 06:44:40
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
c:\windows\TEMP\TMP000000816E4C505402F865A3 524288 bytes executable
scan completed successfully
hidden files: 1
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(632)
c:\windows\system32\eNetHook.dll
- - - - - - - > 'lsass.exe'(572)
c:\windows\system32\eNetHook.dll
- - - - - - - > 'Explorer.exe'(4440)
c:\windows\system32\MsnChatHook.dll
c:\windows\system32\ShowErrMsg.dll
c:\windows\system32\sysenv.dll
c:\windows\system32\BatchCrypto.dll
c:\windows\system32\CryptoAPI.dll
c:\windows\system32\keyManager.dll
.
Completion time: 12/13/2008 6:46:47
ComboFix-quarantined-files.txt 2008-12-13 03:46:42
ComboFix2.txt 2008-08-06 13:06:00
Pre-Run: 35,422,662,656 bytes free
Post-Run: 35,541,200,896 bytes free
261 --- E O F --- 2008-12-13 00:50:32