I haven't run the vanilla IE as it hasn't frozen since I re-installed Norton last night. Once it happens again the first thing I will do is run that.
The log is below:
ComboFix 08-06-25.3 - Mandi 2008-06-28 20:05:15.2 - NTFSx86
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.1.1033.18.341 [GMT 1:00]
Running from: C:\Users\Mandi\Desktop\ComboFix.exe
Command switches used :: C:\Users\Mandi\Desktop\CFScript.txt
* Created a new restore point
.
((((((((((((((((((((((((( Files Created from 2008-05-28 to 2008-06-28 )))))))))))))))))))))))))))))))
.
2008-06-28 19:22 . 2008-06-28 19:22 <DIR> d-------- C:\Deckard
2008-06-28 01:44 . 2008-06-28 01:44 <DIR> d-------- C:\Users\Mandi\AppData\Roaming\Symantec
2008-06-28 01:40 . 2008-06-28 01:43 <DIR> d-------- C:\Program Files\Norton Internet Security
2008-06-28 01:38 . 2008-06-28 01:58 123,952 --a------ C:\Windows\System32\drivers\SYMEVENT.SYS
2008-06-28 01:37 . 2008-06-28 01:58 <DIR> d-------- C:\Program Files\Symantec
2008-06-27 22:57 . 2008-06-27 22:57 274 --a------ C:\Windows\cdplayer.ini
2008-06-27 12:47 . 2008-06-28 02:10 <DIR> d-a------ C:\Users\All Users\TEMP
2008-06-27 12:47 . 2008-06-28 02:10 <DIR> d-a------ C:\ProgramData\TEMP
2008-06-27 12:47 . 2008-06-27 12:51 <DIR> d-------- C:\Program Files\SpywareBlaster
2008-06-27 12:26 . 2008-06-27 12:26 <DIR> d-------- C:\ie-spyad_zo
2008-06-27 10:32 . 2008-06-27 10:32 <DIR> d-------- C:\Program Files\Panda Security
2008-06-26 16:42 . 2008-06-26 20:05 <DIR> d-------- C:\Users\All Users\Tesco Photobook Creator
2008-06-26 16:42 . 2008-06-26 20:05 <DIR> d-------- C:\ProgramData\Tesco Photobook Creator
2008-06-25 16:41 . 2008-06-25 16:41 <DIR> d-------- C:\Program Files\Common Files\xing shared
2008-06-25 10:23 . 2008-06-25 10:23 <DIR> d-------- C:\Program Files\IObit
2008-06-20 14:35 . 2008-06-20 14:35 <DIR> d-------- C:\Users\Mandi\AppData\Roaming\Apple Computer
2008-06-20 14:30 . 2008-06-26 20:07 <DIR> d-------- C:\Users\All Users\Apple Computer
2008-06-20 14:30 . 2008-06-26 20:07 <DIR> d-------- C:\ProgramData\Apple Computer
2008-06-20 14:30 . 2008-06-20 14:32 <DIR> d-------- C:\Program Files\QuickTime
2008-06-14 17:02 . 2008-04-23 05:42 428,544 --a------ C:\Windows\System32\EncDec.dll
2008-06-14 17:02 . 2008-04-23 05:42 293,376 --a------ C:\Windows\System32\psisdecd.dll
2008-06-14 17:02 . 2008-04-23 05:41 218,624 --a------ C:\Windows\System32\psisrndr.ax
2008-06-14 17:02 . 2008-04-23 05:41 57,856 --a------ C:\Windows\System32\MSDvbNP.ax
2008-06-13 20:30 . 2008-06-13 20:30 0 --ah----- C:\Windows\System32\drivers\Msft_User_WpdFs_01_00_00.Wdf
2008-06-13 14:14 . 2008-06-13 14:14 24,112 --a------ C:\Windows\System32\drivers\SymIMV.sys
2008-06-13 14:14 . 2008-06-13 14:14 13,093 --a------ C:\Windows\System32\drivers\SymRedir.cat
2008-06-13 14:14 . 2008-06-13 14:14 1,611 --a------ C:\Windows\System32\drivers\SymRedir.inf
2008-06-13 14:13 . 2008-06-13 14:13 184,240 --a------ C:\Windows\System32\drivers\symtdi.sys
2008-06-13 14:13 . 2008-06-13 14:13 96,432 --a------ C:\Windows\System32\drivers\symfw.sys
2008-06-13 14:13 . 2008-06-13 14:13 41,008 --a------ C:\Windows\System32\drivers\symndisv.sys
2008-06-13 14:13 . 2008-06-13 14:13 38,576 --a------ C:\Windows\System32\drivers\symids.sys
2008-06-13 14:13 . 2008-06-13 14:13 22,320 --a------ C:\Windows\System32\drivers\symredrv.sys
2008-06-13 14:13 . 2008-06-13 14:13 13,616 --a------ C:\Windows\System32\drivers\symdns.sys
2008-06-11 11:36 . 2008-05-10 04:35 885,248 --a------ C:\Windows\System32\RacEngn.dll
2008-06-11 11:36 . 2008-05-09 23:22 9,127 --a------ C:\Windows\System32\RacUR.xml
2008-06-11 11:36 . 2008-05-09 23:22 153 --a------ C:\Windows\System32\RacUREx.xml
2008-06-11 11:35 . 2008-04-25 03:12 1,383,424 --a------ C:\Windows\System32\mshtml.tlb
2008-06-11 11:35 . 2008-04-26 09:08 1,314,816 --a------ C:\Windows\System32\quartz.dll
2008-06-11 11:35 . 2008-04-25 05:35 826,880 --a------ C:\Windows\System32\wininet.dll
2008-06-11 11:35 . 2008-05-10 02:33 113,664 --a------ C:\Windows\System32\drivers\rmcast.sys
2008-06-09 15:15 . 2008-06-09 15:15 <DIR> d-------- C:\Users\Mandi\AppData\Roaming\RealNetworks
2008-06-06 19:47 . 2008-06-06 19:47 <DIR> d-------- C:\Users\All Users\Office Genuine Advantage
2008-06-06 19:47 . 2008-06-06 19:47 <DIR> d-------- C:\ProgramData\Office Genuine Advantage
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-06-28 00:59 --------- d-----w C:\ProgramData\Symantec
2008-06-28 00:58 805 ----a-w C:\Windows\system32\drivers\SYMEVENT.INF
2008-06-28 00:58 10,671 ----a-w C:\Windows\system32\drivers\SYMEVENT.CAT
2008-06-28 00:54 --------- d-----w C:\Program Files\Common Files\Symantec Shared
2008-06-26 18:55 --------- d-----w C:\ProgramData\Microsoft Help
2008-06-26 18:55 --------- d-----w C:\Program Files\Microsoft Works
2008-06-26 18:55 --------- d-----w C:\Program Files\Google
2008-06-26 18:55 --------- d-----w C:\Program Files\Common Files\Real
2008-06-18 17:47 --------- d-----w C:\Program Files\BWorks
2008-06-12 08:29 --------- d-----w C:\Program Files\Windows Mail
2008-06-09 14:14 --------- d-----w C:\Program Files\Real
2008-06-04 13:05 --------- d-----w C:\Program Files\Digsby
2008-05-21 15:40 --------- d-----w C:\Users\Mandi\AppData\Roaming\Digsby
2008-05-20 15:46 --------- d-----w C:\Program Files\Microsoft Silverlight
2008-05-20 15:29 --------- d-----w C:\Program Files\Innovative Solutions
2008-05-09 17:25 174 --sha-w C:\Program Files\desktop.ini
2008-05-09 17:13 --------- d-----w C:\Program Files\Windows Sidebar
2008-05-09 17:13 --------- d-----w C:\Program Files\Windows Photo Gallery
2008-05-09 17:13 --------- d-----w C:\Program Files\Windows Journal
2008-05-09 17:13 --------- d-----w C:\Program Files\Windows Collaboration
2008-05-09 17:13 --------- d-----w C:\Program Files\Windows Calendar
2008-05-09 17:12 --------- d-----w C:\Program Files\Windows Defender
2008-05-09 16:44 82,432 ----a-w C:\Windows\System32\axaltocm.dll
2008-05-09 16:44 101,888 ----a-w C:\Windows\System32\ifxcardm.dll
2008-04-29 08:55 920,088 ----a-w C:\Windows\System32\igxpun.exe
2007-10-26 19:56 61,480 ----a-w C:\Users\Mandi\GoToAssistDownloadHelper.exe
.
((((((((((((((((((((((((((((( snapshot@2008-06-27_21.42.02.41 )))))))))))))))))))))))))))))))))))))))))
.
- 2008-01-04 20:36:42 128,368 ----a-w C:\Windows\assembly\GAC_32\SymAddIn\15.0.0.1__ea8ad8cd626b3bac\SymAddIn.dll
+ 2008-06-28 00:41:57 128,368 ----a-w C:\Windows\assembly\GAC_32\SymAddIn\15.0.0.1__ea8ad8cd626b3bac\SymAddIn.dll
- 2008-06-27 18:26:35 67,584 --s-a-w C:\Windows\bootstat.dat
+ 2008-06-28 18:02:19 67,584 --s-a-w C:\Windows\bootstat.dat
- 2008-06-26 19:05:02 51,200 ----a-w C:\Windows\inf\infpub.dat
+ 2008-06-28 00:55:51 51,200 ----a-w C:\Windows\inf\infpub.dat
- 2008-06-26 19:05:01 86,016 ----a-w C:\Windows\inf\infstor.dat
+ 2008-06-28 00:55:51 86,016 ----a-w C:\Windows\inf\infstor.dat
- 2008-06-26 19:05:01 143,360 ----a-w C:\Windows\inf\infstrng.dat
+ 2008-06-28 00:55:51 143,360 ----a-w C:\Windows\inf\infstrng.dat
- 2008-01-04 20:32:15 7,406 ----a-r C:\Windows\Installer\{E80F62FF-5D3C-4A19-8409-9721F2928206}\IconE80F62FF.exe
+ 2008-06-28 00:37:57 7,406 ----a-r C:\Windows\Installer\{E80F62FF-5D3C-4A19-8409-9721F2928206}\IconE80F62FF.exe
- 2008-06-27 18:26:37 2,048 --sha-w C:\Windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2008-06-28 18:02:21 2,048 --sha-w C:\Windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2008-06-27 18:26:37 2,048 --sha-w C:\Windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2008-06-28 18:02:21 2,048 --sha-w C:\Windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2008-06-27 18:57:16 262,144 --sha-w C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT
+ 2008-06-28 18:31:22 262,144 --sha-w C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT
+ 2008-06-28 18:31:22 262,144 ---ha-w C:\Windows\ServiceProfiles\LocalService\ntuser.dat.LOG1
- 2008-06-27 18:27:48 262,144 --sha-w C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT
+ 2008-06-28 18:04:11 262,144 --sha-w C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT
- 2007-04-11 18:11:20 511,328 ----a-w C:\Windows\System32\capicom.dll
+ 2007-04-11 19:11:20 511,328 ----a-w C:\Windows\System32\capicom.dll
- 2008-06-27 18:27:17 16,384 --sha-w C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2008-06-28 18:20:10 16,384 --sha-w C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2008-06-27 18:27:17 49,152 --sha-w C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2008-06-28 18:20:10 49,152 --sha-w C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2008-06-27 18:27:17 16,384 --sha-w C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2008-06-28 18:20:10 16,384 --sha-w C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2007-08-08 23:39:56 36,056 ----a-w C:\Windows\System32\drivers\CO_Mon.sys
+ 2007-08-09 00:39:56 36,056 ----a-w C:\Windows\System32\drivers\CO_Mon.sys
- 2008-03-06 21:32:09 23,904 ----a-w C:\Windows\System32\drivers\COH_Mon.sys
+ 2008-03-06 20:32:09 23,904 ----a-w C:\Windows\System32\drivers\COH_Mon.sys
- 2007-11-30 23:57:12 279,088 ----a-w C:\Windows\System32\drivers\srtsp.sys
+ 2008-02-01 01:51:16 279,088 ----a-w C:\Windows\System32\drivers\srtsp.sys
- 2007-11-30 23:57:12 317,616 ----a-w C:\Windows\System32\drivers\srtspl.sys
+ 2008-02-01 01:51:16 317,616 ----a-w C:\Windows\System32\drivers\srtspl.sys
- 2007-11-30 23:57:12 43,696 ----a-w C:\Windows\System32\drivers\srtspx.sys
+ 2008-02-01 01:51:16 43,696 ----a-w C:\Windows\System32\drivers\srtspx.sys
- 2008-06-27 18:31:39 106,696 ----a-w C:\Windows\System32\perfc009.dat
+ 2008-06-28 18:07:38 106,696 ----a-w C:\Windows\System32\perfc009.dat
- 2008-06-27 18:31:39 603,282 ----a-w C:\Windows\System32\perfh009.dat
+ 2008-06-28 18:07:38 603,282 ----a-w C:\Windows\System32\perfh009.dat
- 2008-06-27 18:29:02 9,616 ----a-w C:\Windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1481789202-2031101475-3486593015-1000_UserData.bin
+ 2008-06-28 18:04:49 9,632 ----a-w C:\Windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1481789202-2031101475-3486593015-1000_UserData.bin
- 2008-06-27 18:29:01 64,570 ----a-w C:\Windows\System32\WDI\BootPerformanceDiagnostics_SystemData.bin
+ 2008-06-28 18:04:49 64,704 ----a-w C:\Windows\System32\WDI\BootPerformanceDiagnostics_SystemData.bin
- 2008-06-27 18:28:57 49,852 ----a-w C:\Windows\System32\WDI\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2008-06-28 18:04:45 50,672 ----a-w C:\Windows\System32\WDI\ShutdownPerformanceDiagnostics_SystemData.bin
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
2008-02-07 05:05 349552 --a------ C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\coIEPlg.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
2008-06-28 01:41 116088 --a------ C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TOSCDSPD"="C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe" [2007-05-21 10:48 433840]
"ehTray.exe"="C:\Windows\ehome\ehTray.exe" [2008-01-19 08:33 125952]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-12-19 02:24 68856]
"WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 08:33 202240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2007-04-13 15:19 861744]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 10:25 6731312]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 05:25 144784]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 23:16 39792]
"IgfxTray"="C:\Windows\system32\igfxtray.exe" [2008-03-25 10:07 141848]
"HotKeysCmds"="C:\Windows\system32\hkcmd.exe" [2008-03-25 10:07 166424]
"Persistence"="C:\Windows\system32\igfxpers.exe" [2008-03-25 10:07 133656]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2008-06-25 16:40 185896]
"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [2008-01-26 02:47 51048]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.dvacm"= C:\PROGRA~1\COMMON~1\ULEADS~1\vio\dvacm.acm
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"UacDisableNotify"=dword:00000001
"InternetSettingsDisableNotify"=dword:00000001
"AutoUpdateDisableNotify"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\DomainProfile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"{3BF76765-6488-43C3-AA2A-33B69110E4F8}"= TCP:6004|C:\Program Files\Microsoft Office\Office12\outlook.exe:Microsoft Office Outlook
"{12354E50-52B8-4AEA-9E38-F1C3AE6AE327}"= UDP:C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:Microsoft Office Groove
"{D4014C7C-5CCD-443A-AD00-4F0F7F7F0257}"= TCP:C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:Microsoft Office Groove
"{6ECF579D-B845-439B-869C-89855F129B31}"= UDP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{B727E5C0-9457-4817-9664-72A1D3F002C5}"= TCP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{FC713B0F-692F-4D82-9320-807A6C34804B}"= UDP:C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:Yahoo! Messenger
"{1363DEB7-BB70-4161-AAE7-0AF638CE5FFF}"= TCP:C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:Yahoo! Messenger
"{648705B1-80AA-4491-BF6D-DD0B20D1CD1A}"= C:\Program Files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"TCP Query User{2F0357BE-FD4E-4247-9657-5F54CA30EB80}C:\\windows\\system32\\ftp.exe"= UDP:C:\windows\system32\ftp.exe:File Transfer Program
"UDP Query User{B5AA0C02-794E-4AF1-8405-D0AE19BC034C}C:\\windows\\system32\\ftp.exe"= TCP:C:\windows\system32\ftp.exe:File Transfer Program
"TCP Query User{62BE3657-00BB-4E00-A9BC-A822E2DE1A43}C:\\windows\\lmi2b58.tmp\\lmi_rescue.exe"= UDP:C:\windows\lmi2b58.tmp\lmi_rescue.exe:LogMeIn Rescue
"UDP Query User{50B13D77-6DC2-4781-8599-9B501E0BA97A}C:\\windows\\lmi2b58.tmp\\lmi_rescue.exe"= TCP:C:\windows\lmi2b58.tmp\lmi_rescue.exe:LogMeIn Rescue
"TCP Query User{B02A95BB-058B-475F-B7FA-C305ABC2E469}C:\\users\\mandi\\appdata\\local\\temp\\wzse0.tmp\\symnrt.exe"= UDP:C:\users\mandi\appdata\local\temp\wzse0.tmp\symnrt.exe:symnrt.exe
"UDP Query User{573D21E4-F4A1-44F5-BAA3-085095F2E25A}C:\\users\\mandi\\appdata\\local\\temp\\wzse0.tmp\\symnrt.exe"= TCP:C:\users\mandi\appdata\local\temp\wzse0.tmp\symnrt.exe:symnrt.exe
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\PublicProfile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile]
"EnableFirewall"= 0 (0x0)
R1 IDSvix86;Symantec Intrusion Prevention Driver;C:\PROGRA~2\Symantec\DEFINI~1\SymcData\ipsdefs\20080623.001\IDSvix86.sys [2008-03-20 21:37]
R2 LiveUpdate Notice;LiveUpdate Notice;"C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon []
R3 COH_Mon;COH_Mon;C:\Windows\system32\Drivers\COH_Mon.sys [2008-03-06 21:32]
R3 igfx;igfx;C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-03-25 09:44]
R3 SYMNDISV;SYMNDISV;C:\Windows\system32\Drivers\SYMNDISV.SYS [2008-06-13 14:13]
*Newly Created Service* - COMHOST
.
Contents of the 'Scheduled Tasks' folder
"2008-06-23 20:15:59 C:\Windows\Tasks\Norton Internet Security - Run Full System Scan - Mandi.job"
- C:\Program Files\Norton Internet Security\Norton AntiVirus\Navw32.exeB/TASK:
"2008-06-27 23:57:18 C:\Windows\Tasks\User_Feed_Synchronization-{81995C17-AE68-49AA-9AB8-FDB788B1231E}.job"
- C:\Windows\system32\msfeedssync.exe
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-06-28 20:08:53
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
HKCU\Software\Microsoft\Windows\CurrentVersion\Run
TOSCDSPD = C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe?/i??????":)QO??X?j???j???j???j?
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-06-28 20:10:20
ComboFix-quarantined-files.txt 2008-06-28 19:10:00
ComboFix2.txt 2008-06-27 20:42:38
Pre-Run: 32,505,868,288 bytes free
Post-Run: 32,374,079,488 bytes free
225 --- E O F --- 2008-06-26 10

13