učinio sve kako je objašnjeno, i na kraju je izbacio ovo:
ComboFix 10-02-05.04 - computer 06.02.2010 17:19:55.1.1 - x86
Microsoft Windows XP Professional 5.1.2600.2.1250.381.1033.18.703.504 [GMT 1:00]
Running from: c:\documents and settings\computer\Desktop\ComboFix.exe
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\docume~1\computer\LOCALS~1\Temp\kga3.tmp
c:\documents and settings\computer\Local Settings\Temp\kga3.tmp
c:\windows\kb913800.exe
c:\windows\system32\404Fix.exe
c:\windows\system32\Agent.OMZ.Fix.exe
c:\windows\system32\dumphive.exe
c:\windows\system32\IEDFix.C.exe
c:\windows\system32\IEDFix.exe
c:\windows\system32\o4Patch.exe
c:\windows\system32\Process.exe
c:\windows\system32\SrchSTS.exe
c:\windows\system32\systeminfo.dll
c:\windows\system32\tmp.reg
c:\windows\system32\VACFix.exe
c:\windows\system32\VCCLSID.exe
c:\windows\system32\WS2Fix.exe
.
((((((((((((((((((((((((( Files Created from 2010-01-06 to 2010-02-06 )))))))))))))))))))))))))))))))
.
2010-02-06 11:49 . 2010-02-06 11:49 -------- d-----w- c:\program files\CCleaner
2010-02-05 23:53 . 2010-02-05 23:53 -------- d-----w- c:\documents and settings\computer\Local Settings\Application Data\ACD Systems
2010-02-05 23:53 . 2010-02-05 23:53 -------- d-----w- c:\documents and settings\computer\Application Data\ACD Systems
2010-02-05 23:53 . 2010-02-05 23:53 -------- d-----w- c:\documents and settings\All Users\Application Data\ACD Systems
2010-02-05 23:53 . 2010-02-05 23:53 -------- d-----w- c:\program files\Common Files\ACD Systems
2010-02-05 23:53 . 2010-02-05 23:53 -------- d-----w- c:\program files\ACD Systems
2010-02-05 23:51 . 2010-02-05 23:51 -------- d-----w- c:\documents and settings\computer\Local Settings\Application Data\Downloaded Installations
2010-02-05 23:04 . 2010-02-05 23:08 -------- d-----w- c:\program files\ApexDC++
2010-02-05 22:57 . 2010-02-05 22:57 -------- d-----w- c:\documents and settings\computer\Local Settings\Application Data\Readon_Technology
2010-02-05 22:53 . 2010-02-05 22:53 -------- d-----w- c:\windows\system32\wbem\Repository
2010-02-05 22:52 . 2010-02-05 22:52 -------- d-----w- c:\program files\Xvid
2010-02-05 22:52 . 2010-02-05 22:52 -------- d-----w- c:\program files\ffdshow
2010-02-05 22:52 . 2010-02-05 22:52 -------- d-----w- c:\documents and settings\All Users\Application Data\NOS
2010-02-05 22:52 . 2010-02-05 22:52 -------- d-----w- c:\documents and settings\computer\Application Data\Winamp
2010-02-05 22:52 . 2010-02-05 22:52 -------- d-----w- c:\program files\Winamp
2010-02-05 16:05 . 2010-02-05 22:51 -------- d-----w- c:\program files\K-Lite Codec Pack(2)
2010-02-05 16:01 . 2010-02-05 22:52 -------- d-----w- c:\program files\Winamp(2)
2010-02-05 16:01 . 2010-02-05 22:52 -------- d-----w- c:\documents and settings\computer\Application Data\Winamp(2)
2010-02-05 02:29 . 2010-02-06 15:42 -------- d-----w- c:\documents and settings\computer\Application Data\vlc
2010-02-05 02:00 . 2010-02-05 22:52 -------- d-----w- c:\program files\DivX
2010-02-05 01:21 . 2010-02-05 01:21 -------- d-----w- c:\program files\Readon Technology
2010-02-05 00:18 . 2010-02-05 00:52 -------- d-----w- c:\documents and settings\computer\Application Data\foobar2000
2010-02-04 23:42 . 2010-02-04 23:42 -------- d-----w- c:\documents and settings\computer\Application Data\JLC's Software
2010-02-04 23:42 . 2010-02-04 23:58 -------- d-----w- c:\program files\JLC's Software
2010-02-04 23:15 . 2010-02-04 23:15 -------- d-----w- c:\program files\Common Files\NSV
2010-02-04 21:57 . 2010-02-04 21:57 -------- d-----w- c:\windows\Sun
2010-02-04 21:57 . 2010-02-04 21:57 503808 ----a-w- c:\documents and settings\computer\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-535091dd-n\msvcp71.dll
2010-02-04 21:57 . 2010-02-04 21:57 499712 ----a-w- c:\documents and settings\computer\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-535091dd-n\jmc.dll
2010-02-04 21:57 . 2010-02-04 21:57 348160 ----a-w- c:\documents and settings\computer\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-535091dd-n\msvcr71.dll
2010-02-04 21:56 . 2010-02-04 21:56 -------- d-----w- c:\program files\Common Files\Java
2010-02-04 21:56 . 2010-02-04 21:56 61440 ----a-w- c:\documents and settings\computer\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-42b3eea0-n\decora-sse.dll
2010-02-04 21:56 . 2010-02-04 21:56 12800 ----a-w- c:\documents and settings\computer\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-42b3eea0-n\decora-d3d.dll
2010-02-04 21:56 . 2010-02-04 21:56 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-02-04 21:56 . 2010-02-04 21:56 -------- d-----w- c:\program files\Java
2010-02-04 21:38 . 2010-02-04 21:38 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2010-02-04 20:46 . 2004-08-03 22:56 25600 ----a-w- c:\documents and settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll
2010-02-04 20:39 . 2010-02-04 20:39 -------- d-----w- c:\documents and settings\computer\Application Data\FDRLab
2010-02-04 20:20 . 2010-02-04 20:37 -------- d-----w- c:\documents and settings\All Users\Application Data\BlazeVideo
2010-02-04 20:19 . 2005-03-25 22:42 363520 -c--a-w- c:\windows\system32\dllcache\psisdecd.dll
2010-02-04 20:19 . 2005-03-25 22:42 363520 ----a-w- c:\windows\system32\psisdecd.dll
2010-02-03 16:13 . 2010-02-03 16:13 -------- d-----w- c:\documents and settings\computer\Local Settings\Application Data\Identities
2010-02-03 11:24 . 2010-02-03 11:24 -------- d-----w- c:\program files\IrfanView
2010-02-02 23:07 . 2010-02-02 23:07 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\Google
2010-02-02 23:02 . 2010-02-02 23:05 -------- d-----w- c:\documents and settings\computer\Local Settings\Application Data\Temp
2010-02-02 23:02 . 2010-02-02 23:02 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\Google
2010-02-02 16:15 . 2010-02-02 16:15 -------- d-----w- c:\program files\QuickTorrentMaker
2010-02-02 10:04 . 2010-02-02 10:04 -------- d-----w- c:\program files\Microsoft
2010-02-02 09:56 . 2010-02-02 10:04 12912 ----a-w- c:\documents and settings\computer\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2010-02-01 12:32 . 2010-02-01 12:32 -------- d--h--w- c:\windows\PIF
2010-02-01 12:28 . 2010-02-01 12:28 5293538 ----a-w- c:\documents and settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe
2010-02-01 12:24 . 2010-01-07 15:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-02-01 12:24 . 2010-01-07 15:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-02-01 12:04 . 2010-02-04 19:52 52224 ----a-w- c:\documents and settings\computer\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
2010-02-01 12:03 . 2010-02-04 20:35 117760 ----a-w- c:\documents and settings\computer\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2010-02-01 12:02 . 2010-02-01 12:02 -------- d-----w- c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2010-02-01 12:01 . 2010-02-02 09:55 -------- d-----w- c:\program files\SUPERAntiSpyware
2010-02-01 12:01 . 2010-02-01 12:01 -------- d-----w- c:\documents and settings\computer\Application Data\SUPERAntiSpyware.com
2010-02-01 12:01 . 2010-02-01 12:01 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-02-01 11:24 . 2010-02-04 20:07 -------- d-----w- c:\program files\Google
2010-02-01 01:38 . 2010-02-01 01:38 -------- d-----w- c:\program files\uTorrent
2010-02-01 01:37 . 2010-02-01 20:45 -------- d-----w- c:\documents and settings\computer\Application Data\uTorrent
2010-02-01 00:42 . 2010-02-01 00:42 -------- d-----w- c:\documents and settings\computer\Application Data\Malwarebytes
2010-02-01 00:42 . 2010-02-01 12:28 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-02-01 00:42 . 2010-02-01 00:42 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2010-01-31 23:49 . 2010-01-31 23:49 -------- d-----w- c:\program files\Foxit Software
2010-01-31 23:49 . 2010-01-31 23:49 -------- d-----w- c:\documents and settings\computer\Application Data\Foxit
2010-01-31 20:55 . 2010-01-31 20:55 -------- d-----w- c:\program files\Screamer Radio
2010-01-31 20:40 . 2010-01-31 20:40 -------- d-----w- c:\documents and settings\computer\Local Settings\Application Data\LogiShrd
2010-01-31 20:39 . 2010-01-31 20:39 -------- d-----w- c:\documents and settings\computer\Application Data\Leadertech
2010-01-31 20:38 . 2009-10-07 08:48 539160 ----a-w- c:\windows\system32\LVUI2RC.dll
2010-01-31 20:38 . 2009-10-07 08:48 539160 ----a-w- c:\windows\system32\LVUI2.dll
2010-01-31 20:38 . 2009-10-07 08:43 416280 ----a-w- c:\windows\system32\LVCodec2.dll
2010-01-31 20:38 . 2009-04-30 22:57 199192 ----a-w- c:\windows\system32\lvci1201278.dll
2010-01-31 20:38 . 2009-04-30 22:56 495768 ----a-w- c:\windows\system32\drivers\LV561AV.SYS
2010-01-31 20:38 . 2010-01-31 20:39 -------- dc----w- c:\windows\system32\DRVSTORE
2010-01-31 20:38 . 2010-01-31 20:39 -------- d-----w- c:\program files\Common Files\LogiShrd
2010-01-31 20:38 . 2010-01-31 20:50 -------- d-----w- c:\documents and settings\All Users\Application Data\LogiShrd
2010-01-31 19:58 . 2010-01-31 19:58 552 ----a-w- c:\windows\system32\d3d8caps.dat
2010-01-31 18:22 . 2010-01-31 23:36 -------- d-----w- c:\program files\Logitech
2010-01-31 09:36 . 2010-01-31 09:36 -------- d-----w- c:\documents and settings\computer\Application Data\MSNInstaller
2010-01-30 23:52 . 2010-02-06 11:13 -------- d-----w- c:\documents and settings\computer\Tracing
2010-01-30 23:47 . 2010-02-02 10:03 -------- d-----w- c:\program files\Windows Live
2010-01-30 23:40 . 2010-01-30 23:40 -------- d-----w- c:\program files\Common Files\Windows Live
2010-01-30 22:05 . 2010-01-30 22:05 -------- d-----w- c:\documents and settings\computer\Application Data\Thinstall
2010-01-30 21:57 . 2010-01-30 21:57 -------- d-----w- c:\documents and settings\computer\Application Data\Nero
2010-01-30 21:54 . 2010-01-31 21:05 -------- d-----w- c:\program files\Nero
2010-01-30 21:54 . 2010-01-30 21:54 -------- d-----w- c:\documents and settings\All Users\Application Data\Nero
2010-01-30 21:54 . 2010-01-30 21:54 -------- d-----w- c:\program files\Common Files\Nero
2010-01-30 19:46 . 2010-02-02 23:05 -------- d-----w- c:\documents and settings\computer\Local Settings\Application Data\Google
2010-01-30 19:06 . 2009-06-07 15:24 180224 ----a-w- c:\windows\system32\xvidvfw.dll
2010-01-30 19:06 . 2009-06-07 15:16 819200 ----a-w- c:\windows\system32\xvidcore.dll
2010-01-30 19:05 . 2010-01-28 11:14 85504 ----a-w- c:\windows\system32\ff_vfw.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-02-06 16:04 . 2010-01-30 18:06 -------- d-----w- c:\documents and settings\computer\Application Data\Skype
2010-02-01 11:58 . 2010-01-30 17:24 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-01-31 20:38 . 2010-01-30 18:16 -------- d-----w- c:\program files\Common Files\Logitech
2010-01-31 20:26 . 2010-01-30 17:38 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-01-30 19:17 . 2010-01-30 17:37 -------- d-----w- c:\program files\Common Files\InstallShield
2010-01-30 18:44 . 2010-01-30 18:23 -------- d-----w- c:\program files\MV2Player
2010-01-30 18:26 . 2010-01-30 18:26 -------- d-----w- c:\documents and settings\All Users\Application Data\CyberLink
2010-01-30 18:26 . 2010-01-30 18:26 -------- d-----w- c:\program files\CyberLink
2010-01-30 18:26 . 2010-01-30 18:26 -------- d-----w- c:\program files\ASUSTek
2010-01-30 18:22 . 2010-01-30 18:05 -------- d-----r- c:\program files\Skype
2010-01-30 18:05 . 2010-01-30 18:05 -------- d-----w- c:\program files\Common Files\Skype
2010-01-30 18:05 . 2010-01-30 18:05 -------- d-----w- c:\documents and settings\All Users\Application Data\Skype
2010-01-30 17:49 . 2010-01-30 17:49 0 ----a-w- c:\windows\nsreg.dat
2010-01-30 17:38 . 2010-01-30 17:38 -------- d-----w- c:\program files\Realtek AC97
2010-01-30 17:35 . 2010-01-30 17:35 -------- d-----w- c:\program files\S3
2010-01-30 17:26 . 2010-01-30 17:26 -------- d-----w- c:\program files\microsoft frontpage
2010-01-30 17:21 . 2010-01-30 17:21 21640 ----a-w- c:\windows\system32\emptyregdb.dat
2010-01-30 17:21 . 2010-01-30 17:21 -------- d-----w- c:\program files\Windows Media Connect 2
2010-01-22 21:49 . 2003-08-08 10:53 323584 ----a-w- c:\windows\system32\VTovrlay.dll
2010-01-22 21:49 . 2003-05-07 15:32 214488 ----a-w- c:\windows\system32\VTTimer.exe
2010-01-22 21:49 . 2003-01-07 05:26 251360 ----a-w- c:\windows\system32\VTuninst.exe
2010-01-22 21:49 . 2003-08-11 13:09 265344 ----a-w- c:\windows\system32\drivers\vtmini.sys
2010-01-22 21:49 . 2003-07-31 01:45 225280 ----a-w- c:\windows\system32\VTInfo2.dll
2010-01-22 21:49 . 2003-08-11 13:10 1720320 ----a-w- c:\windows\system32\vticd.dll
2010-01-22 21:49 . 2003-06-18 14:42 290816 ----a-w- c:\windows\system32\VTGamma2.dll
2010-01-22 21:49 . 2003-08-11 13:08 1851904 ----a-w- c:\windows\system32\vtdisp.dll
2010-01-22 21:49 . 2003-08-08 01:41 438272 ----a-w- c:\windows\system32\VTDisply.dll
2010-01-18 06:30 . 2010-01-18 06:30 348160 ----a-w- c:\windows\system32\msvcr71.dll
2010-01-18 06:30 . 2010-01-18 06:30 499712 ----a-w- c:\windows\system32\msvcp71.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-03 15360]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
[HKLM\~\startupfolder\C:^Documents and Settings^computer^Start Menu^Programs^Startup^Logitech . Registracija proizvoda.lnk]
path=c:\documents and settings\computer\Start Menu\Programs\Startup\Logitech . Registracija proizvoda.lnk
backup=c:\windows\pss\Logitech . Registracija proizvoda.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Device Detector]
DevDetect.exe -autorun [X]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\googletalk]
2007-01-01 21:22 3917272 ----a-w- c:\program files\Google\Google Talk\googletalk.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechQuickCamRibbon]
2009-10-14 12:36 2971104 ----a-w- c:\program files\Logitech\Logitech WebCam Software\LWS.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware]
2010-01-07 15:07 607192 ----a-w- c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
2009-07-26 15:44 4061666 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
2003-10-31 18:42 210396 ----a-w- c:\program files\ASUSTek\ASUSDVD\PDVDServ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
2007-04-16 14:28 755160 ----a-w- c:\windows\soundman.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2010-01-11 14:21 424410 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
2009-07-28 09:53 2008538 ------w- c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VTTimer]
2010-01-22 21:49 214488 ----a-w- c:\windows\system32\VTTimer.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
2010-01-13 22:44 215512 ----a-w- c:\program files\Winamp\winampa.exe
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Google\\Google Talk\\googletalk.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\IcmpSettings]
"AllowInboundEchoRequest"= 1 (0x1)
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [28.7.2009 10:53 9968]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [28.7.2009 10:53 72944]
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [1.2.2010 13:24 236368]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [1.2.2010 13:24 19160]
S3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [28.7.2009 10:53 7408]
.
.
------- Supplementary Scan -------
.
FF - ProfilePath - c:\documents and settings\computer\Application Data\Mozilla\Firefox\Profiles\dlj6e97x.default\
FF - prefs.js: browser.startup.homepage -
www.google.com/ncr
FF - plugin: c:\program files\Java\jre6\bin\npdeploytk.dll
FF - plugin: c:\program files\Java\jre6\bin\npjpi160_18.dll
FF - plugin: c:\program files\Java\jre6\bin\npoji610.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npFoxitReaderPlugin.dll
.
- - - - ORPHANS REMOVED - - - -
MSConfigStartUp-BlazeServoTool - c:\program files\BlazeVideo\BlazeDTV 6.0\MediaDetector.exe
MSConfigStartUp-CamWizard - c:\program files\Common Files\Logitech\QCDRV\BIN\CamWizard.exe
MSConfigStartUp-LVCOMSX - c:\windows\system32\LVCOMSX.EXE
MSConfigStartUp-MSMSGS - c:\program files\Messenger\msmsgs.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2010-02-06 17:22
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(744)
c:\windows\system32\COMRes.dll
.
Completion time: 2010-02-06 17:23:31
ComboFix-quarantined-files.txt 2010-02-06 16:23
Pre-Run: 22.660.866.048 bytes free
Post-Run: 22.642.909.184 bytes free
WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
C:\wubildr.mbr = "Ubuntu"
- - End Of File - - 925BCCE4422CE3821A2C7AC1F4921731