ComboFix 10-04-21.01 - gigabyte 010.04.25. 14:04:27.4.2 - x86
Microsoft Windows XP Professional 5.1.2600.3.1250.36.1038.18.3582.3191 [GMT 2:00]
Running from: c:\documents and settings\gigabyte\Asztal\macska.com.exe
Command switches used :: c:\documents and settings\gigabyte\Asztal\CFScript.txt
AV: avast! Antivirus *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: Online Armor Firewall *disabled* {B797DAA0-7E2E-4711-8BB3-D12744F1922A}
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_RKHDRV40
-------\Service_rkhdrv40
((((((((((((((((((((((((( Files Created from 2010-03-25 to 2010-04-25 )))))))))))))))))))))))))))))))
.
2010-04-25 11:52 . 2010-04-25 11:52 -------- d-----w- C:\macska.com11388m
2010-04-24 20:18 . 2010-04-24 20:39 -------- d-----w- C:\macska.com26791m
2010-04-24 19:35 . 2010-04-24 19:35 -------- d-----w- C:\_OTL
2010-04-24 16:48 . 2010-04-24 16:48 3262 ----a-r- c:\documents and settings\gigabyte\Application Data\Microsoft\Installer\{10209B87-55D6-493E-A30A-12A265AA324E}\_5b0b29e7.exe
2010-04-24 16:47 . 2010-04-24 17:12 -------- d-----w- C:\macska.com18181m
2010-04-24 14:38 . 2010-04-24 14:38 -------- d-----w- c:\windows\system32\xircom
2010-04-24 14:38 . 2010-04-24 14:38 -------- d-----w- c:\windows\system32\wbem\snmp
2010-04-24 14:38 . 2010-04-24 14:38 -------- d-----w- c:\program files\microsoft frontpage
2010-04-24 14:24 . 2010-04-24 14:43 -------- d-----w- C:\macska.com
2010-04-24 10:17 . 2010-04-24 14:16 -------- d-----w- C:\ComboFix
2010-04-23 09:50 . 2010-04-23 09:50 -------- d-----w- c:\documents and settings\gigabyte\Application Data\Malwarebytes
2010-04-23 09:50 . 2010-03-29 22:46 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-04-23 09:50 . 2010-04-23 09:50 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2010-04-23 09:50 . 2010-04-23 09:50 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-04-23 09:50 . 2010-03-29 22:45 20824 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-04-23 09:19 . 2010-04-23 09:19 52224 ----a-w- c:\documents and settings\gigabyte\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
2010-04-23 09:19 . 2010-04-23 09:19 117760 ----a-w- c:\documents and settings\gigabyte\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2010-04-23 09:18 . 2010-04-23 09:18 -------- d-----w- c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2010-04-23 09:17 . 2010-04-23 09:17 -------- d-----w- c:\program files\SUPERAntiSpyware
2010-04-23 09:17 . 2010-04-23 09:17 -------- d-----w- c:\documents and settings\gigabyte\Application Data\SUPERAntiSpyware.com
2010-04-19 11:26 . 2010-04-19 12:00 -------- d-----w- c:\documents and settings\gigabyte\Application Data\Red Alert 3
2010-04-11 00:19 . 2010-04-11 00:19 -------- d-----w- c:\windows\Sun
2010-04-11 00:10 . 2010-04-11 00:10 503808 ----a-w- c:\documents and settings\gigabyte\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-599c82d8-n\msvcp71.dll
2010-04-11 00:10 . 2010-04-11 00:10 499712 ----a-w- c:\documents and settings\gigabyte\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-599c82d8-n\jmc.dll
2010-04-11 00:10 . 2010-04-11 00:10 348160 ----a-w- c:\documents and settings\gigabyte\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-599c82d8-n\msvcr71.dll
2010-04-11 00:10 . 2010-04-11 00:10 61440 ----a-w- c:\documents and settings\gigabyte\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-18a5809d-n\decora-sse.dll
2010-04-11 00:10 . 2010-04-11 00:10 12800 ----a-w- c:\documents and settings\gigabyte\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-18a5809d-n\decora-d3d.dll
2010-04-11 00:10 . 2010-04-11 19:24 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-04-08 02:25 . 2010-04-21 08:30 -------- d-----w- c:\program files\PeerBlock
2010-04-07 17:23 . 2010-04-10 22:50 -------- d-----w- c:\program files\WinPatrol
2010-04-07 16:32 . 2010-04-14 16:35 162768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2010-04-07 16:32 . 2010-04-14 16:31 19024 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2010-04-07 16:32 . 2010-04-14 16:31 23376 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2010-04-07 16:32 . 2010-04-14 16:35 46672 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2010-04-07 16:32 . 2010-04-14 16:31 100432 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2010-04-07 16:32 . 2010-04-14 16:31 94800 ----a-w- c:\windows\system32\drivers\aswmon.sys
2010-04-07 16:32 . 2010-04-14 16:30 28880 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2010-04-07 16:32 . 2010-04-14 16:47 38848 ----a-w- c:\windows\system32\avastSS.scr
2010-04-07 16:32 . 2010-04-14 16:47 153184 ----a-w- c:\windows\system32\aswBoot.exe
2010-04-07 16:32 . 2010-04-16 00:34 -------- d-----w- c:\program files\Avast5
2010-04-07 16:32 . 2010-04-07 16:32 -------- d-----w- c:\documents and settings\All Users\Application Data\Alwil Software
2010-04-07 15:59 . 2010-04-07 16:28 -------- d-----w- c:\documents and settings\All Users\Application Data\OnlineArmor
2010-04-07 15:59 . 2010-04-07 15:59 -------- d-----w- c:\documents and settings\gigabyte\Application Data\OnlineArmor
2010-04-07 15:58 . 2010-03-13 03:39 24440 ----a-w- c:\windows\system32\drivers\OAmon.sys
2010-04-07 15:58 . 2010-03-13 03:38 29560 ----a-w- c:\windows\system32\drivers\OAnet.sys
2010-04-07 15:58 . 2010-03-13 03:38 226680 ----a-w- c:\windows\system32\drivers\OADriver.sys
2010-04-07 15:58 . 2010-04-24 14:21 -------- d-----w- c:\program files\Online Armor
2010-04-05 23:08 . 2010-04-05 23:08 -------- d-----w- c:\program files\Ubi Soft
2010-04-05 23:05 . 2010-04-05 23:05 53248 ----a-r- c:\documents and settings\gigabyte\Application Data\Microsoft\Installer\{9AA761E6-CA51-4FF2-A552-D51638BF0595}\_F522ED7EA612_4117_B86D_78467DE01E30.exe
2010-04-05 18:08 . 2010-04-05 18:08 0 ----a-w- c:\windows\PowerReg.dat
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-04-25 12:11 . 2008-06-28 17:36 24 ----a-w- c:\windows\system32\DVCStateBkp-{00000004-00000000-00000001-00001102-00000002-00201102}.dat
2010-04-25 12:11 . 2008-06-28 17:36 24 ----a-w- c:\windows\system32\DVCState-{00000004-00000000-00000001-00001102-00000002-00201102}.dat
2010-04-24 18:21 . 2008-06-27 22:02 -------- d-----w- c:\documents and settings\gigabyte\Application Data\foobar2000
2010-04-24 16:48 . 2008-09-28 23:45 -------- d-----w- c:\program files\TQ Defiler
2010-04-24 16:40 . 2008-07-07 02:34 -------- d-----w- c:\program files\Spybot - Search & Destroy
2010-04-24 16:39 . 2009-06-22 04:15 -------- d-----w- c:\documents and settings\All Users\Application Data\Lavasoft
2010-04-24 16:39 . 2008-06-28 00:39 -------- d-----w- c:\documents and settings\gigabyte\Application Data\Lavasoft
2010-04-24 14:44 . 2004-08-18 11:00 97174 ----a-w- c:\windows\system32\perfc00E.dat
2010-04-24 14:44 . 2004-08-18 11:00 440598 ----a-w- c:\windows\system32\perfh00E.dat
2010-04-23 20:24 . 2008-07-02 14:09 -------- d-----w- c:\documents and settings\gigabyte\Application Data\Skype
2010-04-23 19:21 . 2008-07-02 14:10 -------- d-----w- c:\documents and settings\gigabyte\Application Data\skypePM
2010-04-23 10:44 . 2008-08-01 04:03 -------- d-----w- c:\documents and settings\gigabyte\Application Data\uTorrent
2010-04-23 09:17 . 2008-12-02 21:08 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-04-19 16:21 . 2008-12-19 14:13 98304 ----a-w- c:\windows\system32CmdLineExt.dll
2010-04-19 10:36 . 2008-06-26 07:47 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-04-14 03:34 . 2008-06-26 08:14 29216 ----a-w- c:\documents and settings\gigabyte\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2010-04-11 03:56 . 2008-09-29 01:30 -------- d-----w- c:\program files\Common Files\Adobe
2010-04-08 02:23 . 2009-01-18 08:48 -------- d-----w- c:\program files\PeerGuardian2
2010-03-02 16:07 . 2009-06-22 04:28 15880 ----a-w- c:\windows\system32\lsdelete.exe
2010-02-14 21:30 . 2010-02-14 21:30 6812 ----a-w- c:\windows\system32\ealregsnapshot1.reg
2010-02-04 09:01 . 2010-02-14 20:42 74072 ----a-w- c:\windows\system32\XAPOFX1_4.dll
2010-02-04 09:01 . 2010-02-14 20:42 528216 ----a-w- c:\windows\system32\XAudio2_6.dll
2010-02-04 09:01 . 2010-02-14 20:42 238936 ----a-w- c:\windows\system32\xactengine3_6.dll
2010-02-04 09:01 . 2010-02-14 20:42 22360 ----a-w- c:\windows\system32\X3DAudio1_7.dll
2009-01-28 22:47 . 2009-01-28 22:47 23 --sha-w- c:\windows\system32\efdeaade7_z.dll
.
------- Sigcheck -------
[-] 2008-05-19 . 2993C2DF98A2D6D9896E0AB24946F972 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
.
((((((((((((((((((((((((((((( SnapShot@2010-04-24_14.38.45 )))))))))))))))))))))))))))))))))))))))))
.
- 2004-08-18 11:00 . 2010-04-07 15:58 69018 c:\windows\system32\perfc009.dat
+ 2004-08-18 11:00 . 2010-04-24 14:44 69018 c:\windows\system32\perfc009.dat
+ 2004-08-18 11:00 . 2010-04-24 14:44 434898 c:\windows\system32\perfh009.dat
- 2004-08-18 11:00 . 2010-04-07 15:58 434898 c:\windows\system32\perfh009.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2010-04-01 2010864]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2007-09-19 16844800]
"WINDVDPatch"="CTHELPER.EXE" [2002-07-02 24576]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-08-13 98304]
"@OnlineArmor GUI"="c:\program files\Online Armor\oaui.exe" [2010-03-13 6658552]
"avast5"="c:\progra~1\Avast5\avastUI.exe" [2010-04-14 2790472]
"WinPatrol"="c:\program files\WinPatrol\winpatrol.exe" [2009-07-27 341312]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{4F07DA45-8170-4859-9B5F-037EF2970034}"= "c:\progra~1\ONLINE~2\oaevent.dll" [2010-03-13 925688]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 13:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.dll
[HKLM\~\startupfolder\C:^Documents and Settings^gigabyte^Start Menu^Programs^Indítópult^WinFlip.lnk]
backup=c:\windows\pss\WinFlip.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-12-21 23:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
2005-05-11 21:12 49152 ----a-w- c:\program files\HP\HP Software Update\hpwuSchd2.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Jet Detection]
2001-11-28 23:00 28672 ----a-w- c:\program files\Creative\SBLive\Program\ADGJDet.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
2009-07-26 14:43 3883840 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2007-03-01 14:57 153136 ----a-w- c:\program files\Common Files\Ahead\Lib\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2008-09-06 13:09 413696 ----a-w- c:\program files\QuickTime\QTTask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
2004-11-02 18:24 32768 ----a-w- c:\program files\CyberLink\PowerDVD\PDVDServ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2008-11-07 13:31 21633320 ----a-r- c:\program files\Skype\Phone\Skype.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2010-04-07 17:57 1217872 ----a-w- c:\games\Steam\steam.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdReg]
2000-05-10 23:00 90112 ------w- c:\windows\Updreg.EXE
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2009.06.22. 6:16 64288]
R0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);c:\windows\system32\drivers\sfdrv01a.sys [2006.07.05. 14:46 63352]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2010.04.07. 18:32 162768]
R1 OADevice;OADriver;c:\windows\system32\drivers\OADriver.sys [2010.04.07. 17:58 226680]
R1 OAmon;OAmon;c:\windows\system32\drivers\OAmon.sys [2010.04.07. 17:58 24440]
R1 OAnet;OAnet;c:\windows\system32\drivers\OAnet.sys [2010.04.07. 17:58 29560]
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [2010.02.17. 11:25 12872]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [2010.02.17. 11:15 66632]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2010.04.07. 18:32 19024]
R2 OAcat;Online Armor Helper Service;c:\program files\Online Armor\oacat.exe [2010.04.07. 17:58 1284600]
R2 SvcOnlineArmor;Online Armor;c:\program files\Online Armor\oasrv.exe [2010.04.07. 17:58 3360760]
R3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [2010.02.17. 11:15 12872]
S3 VL807a;VL807a Filter;c:\windows\system32\drivers\VL807a.sys [2009.11.04. 9:44 23680]
S4 sptd;sptd;c:\windows\system32\Drivers\sptd.sys --> c:\windows\system32\Drivers\sptd.sys [?]
.
Contents of the 'Scheduled Tasks' folder
2008-12-18 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 10:34]
.
.
------- Supplementary Scan -------
.
uStart Page = about:blank
uSearchMigratedDefaultURL =
hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
mStart Page =
hxxp://www.yahoo.com
FF - ProfilePath - c:\documents and settings\gigabyte\Application Data\Mozilla\Firefox\Profiles\dvvuwvlj.default\
FF - prefs.js: browser.startup.homepage -
---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2010-04-25 14:15
Windows 5.1.2600 Szervizcsomag 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer,
http://www.gmer.net
device: opened successfully
user: MBR read successfully
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll >>UNKNOWN [0x8A8B9258]<<
kernel: MBR read successfully
detected MBR rootkit hooks:
\Driver\Disk -> CLASSPNP.SYS @ 0xba0ecf28
\Driver\ACPI -> ACPI.sys @ 0xb9f7fcb8
\Driver\atapi -> 0x8a8b9258
IoDeviceObjectType -> DeleteProcedure -> ntkrnlpa.exe @ 0x805836a8
ParseProcedure -> ntkrnlpa.exe @ 0x805827e8
\Device\Harddisk0\DR0 -> DeleteProcedure -> ntkrnlpa.exe @ 0x805836a8
ParseProcedure -> ntkrnlpa.exe @ 0x805827e8
Warning: possible MBR rootkit infection !
user & kernel MBR OK
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_USERS\S-1-5-21-1004336348-1425521274-682003330-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:44,55,d0,ad,07,c1,2f,a1,79,13,e4,b4,4a,d0,7e,64,2d,98,e1,04,29,18,34,
69,3f,01,26,b6,6f,ad,43,f8,16,04,1c,a7,43,53,dc,d0,03,f1,9d,6f,26,67,db,a6,\
"??"=hex:5d,2e,bc,00,9b,07,bc,9c,34,34,87,88,c9,ab,ca,0d
[HKEY_USERS\S-1-5-21-1004336348-1425521274-682003330-1003\Software\SecuROM\License information*]
"datasecu"=hex:4f,eb,20,27,db,f9,5f,08,e8,e0,e6,04,cf,38,d9,50,38,cb,5d,68,84,
95,4b,79,b0,ad,4a,d8,c3,96,81,81,ee,21,43,93,f9,24,01,c1,6f,43,d5,6c,a1,93,\
"rkeysecu"=hex:dd,bc,ad,1e,30,35,24,4f,1a,47,c7,1e,c5,3b,48,c4
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(480)
c:\program files\SUPERAntiSpyware\SASWINLO.dll
c:\windows\system32\Ati2evxx.dll
- - - - - - - > 'explorer.exe'(3136)
c:\program files\Online Armor\OAwatch.dll
c:\program files\WinPatrol\PATROLPRO.DLL
c:\windows\system32\ctagent.dll
c:\windows\system32\wpdshserviceobj.dll
c:\windows\system32\portabledevicetypes.dll
c:\windows\system32\portabledeviceapi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Avast5\AvastSvc.exe
c:\windows\RTHDCPL.EXE
c:\windows\system32\CTHELPER.EXE
c:\windows\system32\wscntfy.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
c:\program files\Online Armor\OAhlp.exe
.
**************************************************************************
.
Completion time: 2010-04-25 14:18:24 - machine was rebooted
ComboFix-quarantined-files.txt 2010-04-25 12:18
ComboFix2.txt 2010-04-24 20:39
ComboFix3.txt 2010-04-24 17:12
ComboFix4.txt 2010-04-24 14:43
Pre-Run: 9 849 565 184 bájt szabad
Post-Run: 9 818 050 560 bájt szabad
- - End Of File - - 5D99B5BB8776715A4BA136EA99FD2DA6