Thank you for being a valued part of the CNET community. As of December 1, 2020, the forums are in read-only format. In early 2021, CNET Forums will no longer be available. We are grateful for the participation and advice you have provided to one another over the years.

Thanks,

CNET Support

General discussion

I need to strip my c and d drive. Help

Jul 25, 2007 12:36PM PDT

I am running windows xp, the most recent version. A friend downloaded a file from someone she did not know well. In it were trojans (2) a worm (1); that I know of...I have avast ( newest version) , ad aware, newest version and I also purchased Spyhunter, the new version. Every time I re start my pc ( desktop, sony ) they are back in my files again. I also checked my cookies each time and they are back. I need to stop the malicous activity for my security. How can I strip my c and d drive of all information? Please help. And thank you.

MAS

Discussion is locked

- Collapse -
Well, you can format it. . .
Jul 25, 2007 12:56PM PDT

and reinstall XP.

But I'd try some other cleaners. AVG AV from Grisoft, Spybot Search & Destroy, Windows Defender, Avast AV, Trend Micro House Call AV, to name a few.

Have you tried a System Restore to before this happened?

If you have to reinstll you'll need to save all your "stuff". Emails, favorites, pictures, videos, documents, address book, etc. You'll also have to get a copy of your device drivers for video, sound, NIC, USB, etc. Unless you have a restoral CD for the PC. If you have this it should have all the device drivers but it'll also reformat the PC and you'll still need to save all your "stuff".

Good luck,

Wayne

Click here to see the CNet faces, learn a little about analog and digital data, internet connections,
spyware removal, and download free software.

5 dB hot.

- Collapse -
Thanks but right now it is dangerous
Jul 25, 2007 1:12PM PDT

Thanks and yes I had tried a system restore and some of the other spyware you have suggested. This pc is 6 years old and I do not have the software to it any longer. Neither does Sony. Sony only keeps software for a couple years per model, I spoke to them.

Right now my concern is the trojans and worms getting my personal information. ie bank statements etc etc etc. Does anyone know how I can strip this info out of here so they cannot get it?
I am willing to buy a new pc. But am afraid to just leave all my information in the pc that has the trojans n such in it. But how?

- Collapse -
If YOU would take a couple of minutes and tell us ...
Jul 26, 2007 1:05AM PDT

the NAMES of the Trojans and worms found it is generally quite possible to tell you exactly how to eradicate them. Surely AVAST provided that info for you (check its log).

- Collapse -
Names of trojans n worms help
Jul 26, 2007 2:12AM PDT

Thank you. I would need to re connect to the www to get that info. Every time I do it gets worse; there are several intruders now as it has been days. I would rather not re connect. I went into cnet and got the name of the trojan's and then downloaded the prograsm to get rid of them and it just came right back in within minutes. I downloaded several of cnets top trojan and worm, virus removers; they did not work. Some of them did get' em....but they came right back.
You can see them doing so much, when I saw the cookies; most of which I did not recognize. I would like to strip the c and d drive so they cannot continue to get my personal information. On another pc at work I have changed all my user names and passwords to the bank and such in the parasited pc. I've ordered a new dell now but wish I could clean the drives on this one. Thanks you!

- Collapse -
Deleting the files
Jul 26, 2007 3:11AM PDT

I would just delete all my files? I heard they stay in delete and can still be accessed. This is why I wanted to clean out the c and d drive. I dont think it would stop the foreign activity. It wouold be nice just to clean or strip it out so I could perhaps later one day use it as a back up pc. Any one know how to clean out the drives c and d ?

- Collapse -
Let me clear up a common misconception.
Jul 26, 2007 3:14AM PDT

Windows doesn't have a button or procedure to wipe out all your data but leave the OS intact.

Since you don't have an OS or restore CD this is why members are trying to help you cure the machine.

Hope this helps,

Bob

- Collapse -
I understand
Jul 26, 2007 3:23AM PDT

Thanks, I know what you mean. My son has xp and perhaps he could use it just for email and simple things? If not then it is no big loss in this shape.
Is it okay just to disconnect and move on to another pc with the infected files in there? Would you not want to get your personal info out of it? I have spent over 189.00 on great trojan/worm/virus removers; the high rated ones here. As well as my own programs. Avast and ad aware and trojan hunter and spybot and a couple others.. Sounds like I just have to leave my personal info in the drives and hope not to get identity theft. My new pc is on the way. Was just trying to get out personal info before putting up the old one that I have now?

- Collapse -
The only sure fire way is to wipe the disk.
Jul 26, 2007 3:32AM PDT

But I've used the transplant method to get my files out many times. Today with 2GB memory sticks being so cheap (last one was 20 bucks) I'm using those a lot.

After the files are safe look up DBAN.

Bob

- Collapse -
I wish I knew
Jul 26, 2007 3:55AM PDT

Bob..thanks so much. I wish I knew what you meant on this suggestion? I did not understand it at all. Transplant? And sure fire way is to wipe out? I thought maybe sure fire way was to wipe out? but dont know how? Or how to use a memory stick? If I put one in now wouldnt the bad stuff go onto the stick? Mary

- Collapse -
Try your words.
Jul 26, 2007 4:15AM PDT

"disconnect and move on to another pc" = transplant.

DBAN = type that on google.com

As to the bad stuff, you're right. This is why we use antivirus scanners and don't run files or programs till we've called them safe.

Bob

- Collapse -
thanks Bob...clipbaord
Jul 26, 2007 4:22AM PDT

Thaks Bob, will google it ( the dban )....it was my room mate who downloaded an unfamiliar file sadly. I have a clip board of a scan result. Are we allowed to post them here?
Mary

- Collapse -
(NT) Yup, clip and paste.
Jul 26, 2007 5:00AM PDT
- Collapse -
clip n paste
Jul 26, 2007 5:08AM PDT

I clipped this after the program said the 2 trojans and the virus worm were removed.... after clipping did a re start and and all parastes were back again....Mary .....


Log Contents provided by Enigma Software Group, Inc.
###########################Runnning Processes DATA###########################
processName = SMSS.EXE File Size = 50688 File Path = \SystemRoot\System32\smss.exe ModuleMD5 = bd7fb0957c716f1a60333aee04de2178
processName = CSRSS.EXE File Size = 6144 File Path = \??\C:\WINDOWS\system32\csrss.exe ModuleMD5 = f12b178b1678d778cfd3ff1fc38c71fb
processName = WINLOGON.EXE File Size = 502272 File Path = \??\C:\WINDOWS\system32\winlogon.exe ModuleMD5 = 01c3346c241652f43aed8e2149881bfe
processName = SERVICES.EXE File Size = 108032 File Path = C:\WINDOWS\system32\services.exe ModuleMD5 = c6ce6eec82f187615d1002bb3bb50ed4
processName = LSASS.EXE File Size = 13312 File Path = C:\WINDOWS\system32\lsass.exe ModuleMD5 = 84885f9b82f4d55c6146ebf6065d75d2
processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\system32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716
processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\system32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716
processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\System32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716
processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\System32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716
processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\System32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716
processName = ASWUPDSV.EXE File Size = 16512 File Path = C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe ModuleMD5 = 0bab87db7dac336b52ada529cf472b74
processName = ASHSERV.EXE File Size = 132736 File Path = C:\Program Files\Alwil Software\Avast4\ashServ.exe ModuleMD5 = 4c2d6f51f2a1943ef24e8c3e55267f04
processName = SPOOLSV.EXE File Size = 57856 File Path = C:\WINDOWS\system32\spoolsv.exe ModuleMD5 = da81ec57acd4cdc3d4c51cf3d409af9f
processName = MDM.EXE File Size = 322120 File Path = C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE ModuleMD5 = 11f714f85530a2bd134074dc30e99fca
processName = HPZIPM12.EXE File Size = 69632 File Path = C:\WINDOWS\system32\HPZipm12.exe ModuleMD5 = 9d84376931440f3679beef2a414fa493
processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\System32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716
processName = WDFMGR.EXE File Size = 38912 File Path = C:\WINDOWS\system32\wdfmgr.exe ModuleMD5 = c81b8635dee0d3ef5f64b3dd643023a5
processName = ASHMAISV.EXE File Size = 243328 File Path = C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe ModuleMD5 = 0005db55986f3b014fba24c2356476b7
processName = ASHWEBSV.EXE File Size = 345728 File Path = C:\Program Files\Alwil Software\Avast4\ashWebSv.exe ModuleMD5 = d1c26f6b1aa7ba597f435cb136e998d4
processName = ALG.EXE File Size = 44544 File Path = C:\WINDOWS\System32\alg.exe ModuleMD5 = f1958fbf86d5c004cf19a5951a9514b7
processName = EXPLORER.EXE File Size = 1032192 File Path = C:\WINDOWS\Explorer.EXE ModuleMD5 = a0732187050030ae399b241436565e64
processName = JUSCHED.EXE File Size = 36975 File Path = C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe ModuleMD5 = 61a3a9d5d98bf0331df5b716144a8100
processName = ASHDISP.EXE File Size = 75392 File Path = C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe ModuleMD5 = 41b88784128c1eb3a24a928ce58b2455
processName = HKCMD.EXE File Size = 114688 File Path = C:\WINDOWS\System32\hkcmd.exe ModuleMD5 = ee2ac08be7024a781df6f40870ed748d
processName = HPWUSCHD2.EXE File Size = 49152 File Path = C:\Program Files\HP\HP Software Update\HPWuSchd2.exe ModuleMD5 = ac116f16a7716a720a45d7ea47cfd983
processName = TFSWCTRL.EXE File Size = 122939 File Path = C:\WINDOWS\system32\dla\tfswctrl.exe ModuleMD5 = 790490f273b0e3bcf05dc3c308abcc0b
processName = THGUARD.EXE File Size = 1102848 File Path = C:\Program Files\TrojanHunter 4.7\THGuard.exe ModuleMD5 = 477056a7f30aae72854d2eb2876f6eb8
processName = SPYHUNTER.EXE File Size = 2951296 File Path = C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter.exe ModuleMD5 = bed2ccb0e008043136a19a5cb0baae7a
processName = CTFMON.EXE File Size = 15360 File Path = C:\WINDOWS\system32\ctfmon.exe ModuleMD5 = 24232996a38c0b0cf151c2140ae29fc8
processName = QUICKDCF.EXE File Size = 200704 File Path = C:\Program Files\FinePixViewer\QuickDCF.exe ModuleMD5 = 91e35f8e5c123ca3f1e5bad39fb57697
processName = GIF6K4K2.EXE File Size = 125952 File Path = C:\DOCUME~1\MARYA~1\LOCALS~1\Temp\giF6K4K2.exe ModuleMD5 = 7038881e3325a1ec1ce5f1b4071805bd
processName = YMSGR_TRAY.EXE File Size = 103928 File Path = C:\PROGRA~1\Yahoo!\MESSEN~1\ymsgr_tray.exe ModuleMD5 = fc8cb6112b138b781f00bad285dc2cad
###########################REGISTRY MD5 DATA###########################
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN>
Name=SunJavaUpdateSched Data=C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe FileSize = 36975 MD5=61a3a9d5d98bf0331df5b716144a8100
Name=avast! Data=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe FileSize = 75392 MD5=41b88784128c1eb3a24a928ce58b2455
Name=IgfxTray Data=C:\WINDOWS\System32\igfxtray.exe FileSize = 155648 MD5=095b56d71d4c6af017712b0e59c66166
Name=HotKeysCmds Data=C:\WINDOWS\System32\hkcmd.exe FileSize = 114688 MD5=ee2ac08be7024a781df6f40870ed748d
Name=HP Software Update Data=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe FileSize = 49152 MD5=ac116f16a7716a720a45d7ea47cfd983
Name=dla Data=C:\WINDOWS\system32\dla\tfswctrl.exe FileSize = 122939 MD5=790490f273b0e3bcf05dc3c308abcc0b
Name=UpdateManager Data="C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r FileSize = 110592 MD5=52b80c30225de81d7ac989dfe7311877
Name=REGSHAVE Data=C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN FileSize = 53248 MD5=552e9ca7b91120fb7d49cd5c10018dc3
Name=THGuard Data="C:\Program Files\TrojanHunter 4.7\THGuard.exe" FileSize = 1102848 MD5=477056a7f30aae72854d2eb2876f6eb8
Name=SpyHunter Data=C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter.exe -scan
FileSize = 2951296 MD5=bed2ccb0e008043136a19a5cb0baae7a
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCEEX>
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE>
<HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN>
Name=ctfmon.exe Data=C:\WINDOWS\system32\ctfmon.exe FileSize = 15360 MD5=24232996a38c0b0cf151c2140ae29fc8
Name=Yahoo! Pager Data="C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
FileSize = 4670968 MD5=2462ce5071360e0c4538b7b2e44f3848
<HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE>
<HKEY_USERS\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN>
<HKEY_USERS\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE>
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINDOWS\APPINIT_DLLS>
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\RUN>
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\SHELL>
Explorer.exe FileSize = 1032192 MD5=a0732187050030ae399b241436565e64
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\USERINIT>
C:\WINDOWS\system32\userinit.exe, FileSize = 24576 MD5=39b1ffb03c2296323832acbae50d2aff
#############################FILE MD5 DATA#############################
<C:\Documents and Settings\Mary A\Start Menu\Programs\Startup>
File Path = C:\Documents and Settings\Mary A\Start Menu\Programs\Startup\desktop.ini File Size = 4096 md5=d6a6856702e3f0953e7246a9b4a9fe35
#############################SERVICES DATA#############################
Service Name = ALG Service Display Name = Application Layer Gateway Service Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\alg.exe Binary Size = 44544 Binary MD5 = f1958fbf86d5c004cf19a5951a9514b7
Service Name = aswUpdSv Service Display Name = avast! iAVS4 Control Service Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = "C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe" Binary Size = 0 Binary MD5 =
Service Name = AudioSrv Service Display Name = Windows Audio Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = avast! Antivirus Service Display Name = avast! Antivirus Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = "C:\Program Files\Alwil Software\Avast4\ashServ.exe" Binary Size = 0 Binary MD5 =
Service Name = avast! Mail Scanner Service Display Name = avast! Mail Scanner Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 3 Service Error Control = 1 Service Binary Path = "C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service Binary Size = 0 Binary MD5 =
Service Name = avast! Web Scanner Service Display Name = avast! Web Scanner Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 3 Service Error Control = 1 Service Binary Path = "C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service Binary Size = 0 Binary MD5 =
Service Name = Browser Service Display Name = Computer Browser Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = CryptSvc Service Display Name = Cryptographic Services Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = DcomLaunch Service Display Name = DCOM Server Process Launcher Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost -k DcomLaunch Binary Size = 0 Binary MD5 =
Service Name = Dhcp Service Display Name = DHCP Client Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = Dnscache Service Display Name = DNS Client Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k NetworkService Binary Size = 0 Binary MD5 =
Service Name = ERSvc Service Display Name = Error Reporting Service Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = Eventlog Service Display Name = Event Log Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\services.exe Binary Size = 108032 Binary MD5 = c6ce6eec82f187615d1002bb3bb50ed4
Service Name = EventSystem Service Display Name = COM+ Event System Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = FastUserSwitchingCompatibility Service Display Name = Fast User Switching Compatibility Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = helpsvc Service Display Name = Help and Support Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = lanmanserver Service Display Name = Server Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = lanmanworkstation Service Display Name = Workstation Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = LmHosts Service Display Name = TCP/IP NetBIOS Helper Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 =
Service Name = MDM Service Display Name = Machine Debug Manager Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = "C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE" Binary Size = 0 Binary MD5 =
Service Name = Netman Service Display Name = Network Connections Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = Nla Service Display Name = Network Location Awareness (NLA) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = PlugPlay Service Display Name = Plug and Play Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\services.exe Binary Size = 108032 Binary MD5 = c6ce6eec82f187615d1002bb3bb50ed4
Service Name = Pml Driver HPZ12 Service Display Name = Pml Driver HPZ12 Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\HPZipm12.exe Binary Size = 69632 Binary MD5 = 9d84376931440f3679beef2a414fa493
Service Name = PolicyAgent Service Display Name = IPSEC Services Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\lsass.exe Binary Size = 13312 Binary MD5 = 84885f9b82f4d55c6146ebf6065d75d2
Service Name = ProtectedStorage Service Display Name = Protected Storage Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\lsass.exe Binary Size = 13312 Binary MD5 = 84885f9b82f4d55c6146ebf6065d75d2
Service Name = RasMan Service Display Name = Remote Access Connection Manager Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = RpcSs Service Display Name = Remote Procedure Call (RPC) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost -k rpcss Binary Size = 0 Binary MD5 =
Service Name = SamSs Service Display Name = Security Accounts Manager Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\lsass.exe Binary Size = 13312 Binary MD5 = 84885f9b82f4d55c6146ebf6065d75d2
Service Name = Schedule Service Display Name = Task Scheduler Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = seclogon Service Display Name = Secondary Logon Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = SENS Service Display Name = System Event Notification Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = SharedAccess Service Display Name = Windows Firewall/Internet Connection Sharing (ICS) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = ShellHWDetection Service Display Name = Shell Hardware Detection Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = Spooler Service Display Name = Print Spooler Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\spoolsv.exe Binary Size = 57856 Binary MD5 = da81ec57acd4cdc3d4c51cf3d409af9f
Service Name = srservice Service Display Name = System Restore Service Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = SSDPSRV Service Display Name = SSDP Discovery Service Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 =
Service Name = stisvc Service Display Name = Windows Image Acquisition (WIA) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k imgsvc Binary Size = 0 Binary MD5 =
Service Name = TapiSrv Service Display Name = Telephony Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = TermService Service Display Name = Terminal Services Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost -k DComLaunch Binary Size = 0 Binary MD5 =
Service Name = Themes Service Display Name = Themes Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = TrkWks Service Display Name = Distributed Link Tracking Client Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = UMWdf Service Display Name = Windows User Mode Driver Framework Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\wdfmgr.exe Binary Size = 38912 Binary MD5 = c81b8635dee0d3ef5f64b3dd643023a5
Service Name = W32Time Service Display Name = Windows Time Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = WebClient Service Display Name = WebClient Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 =
Service Name = winmgmt Service Display Name = Windows Management Instrumentation Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = wscsvc Service Display Name = Security Center Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = wuauserv Service Display Name = Automatic Updates Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = WZCSVC Service Display Name = Wireless Zero Configuration Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
#############################WINLOGON DATA#############################
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY>
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain Filepath = C:\WINDOWS\system32\crypt32.dll File Size = 597504 File MD5 = efc958396a7a7ef7e6d4a52b97512e18
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet Filepath = C:\WINDOWS\system32\cryptnet.dll File Size = 63488 File MD5 = cad4aa32e7eca00c23cc39c0eb833f9d
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll Filepath = C:\WINDOWS\system32\cscdll.dll File Size = 101888 File MD5 = 587729679b4fe04ce06a5c61d6c56dcd
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui Filepath = C:\WINDOWS\system32\igfxsrvc.dll File Size = 315392 File MD5 = 6474af152cd6025f781d7a5f2b8b6084
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 92672 File MD5 = a599e5e366c1408e48aa5d37882d4e3e
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 92672 File MD5 = a599e5e366c1408e48aa5d37882d4e3e
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy Filepath = C:\WINDOWS\system32\sclgntfy.dll File Size = 20992 File MD5 = d636fa41e50671160d838ea2dace3330
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn Filepath = C:\WINDOWS\system32\WlNotify.dll File Size = 92672 File MD5 = a599e5e366c1408e48aa5d37882d4e3e
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 92672 File MD5 = a599e5e366c1408e48aa5d37882d4e3e
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon Filepath = C:\WINDOWS\system32\WgaLogon.dll File Size = 236928 File MD5 = 627b55fad15c6b03b44198afbeebab1a
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 92672 File MD5 = a599e5e366c1408e48aa5d37882d4e3e
##########################BROWSER ADD-ON DATA##########################
<HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar>
CLSID = {2318C2B1-4965-11d4-9B18-009027A5CD4F} FilePath = c:\program files\google\googletoolbar4.dll File Size = 2403392 File MD5 = 6319f2d4708dbcae37cfa03da10782c0 Description = 0
<HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Explorer Bars>
CLSID = {4D5C8C25-D075-11d0-B416-00C04FB90376} FilePath = C:\WINDOWS\System32\shdocvw.dll File Size = 1494528 File MD5 = d5cf94dc9075a7b9acbf0874a3137d9b
<HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars>
CLSID = {32683183-48a0-441b-a342-7c2a440a9478} FilePath = File Size = 0 File MD5 =
<HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects>
CLSID = {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} FilePath = C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll File Size = 59032 File MD5 = 4ea3a6cd9d20584ffafdb1e47dbf0e20
CLSID = {5CA3D70E-1895-11CF-8E15-001234567890} FilePath = C:\WINDOWS\system32\dla\tfswshx.dll File Size = 118842 File MD5 = 14eff6496cf0e873f8f7cd930b135cf9
CLSID = {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} FilePath = C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll File Size = 184423 File MD5 = f01726f7ca8538fdd4663c9db8feaedc
CLSID = {AA58ED58-01DD-4d91-8333-CF10577473F7} FilePath = c:\program files\google\googletoolbar4.dll File Size = 2403392 File MD5 = 6319f2d4708dbcae37cfa03da10782c0
<HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Extensions>
CLSID = {08B0E5C0-4FCB-11CF-AAA5-00401C608501} FilePath = File Size = 0 File MD5 =
CLSID = {92780B25-18CC-41C8-B9BE-3C9C571A8263} FilePath = File Size = 0 File MD5 =
CLSID = {FB5F1910-F110-11d2-BB9E-00C04F795683} FilePath = File Size = 0 File MD5 =
<HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions>
CLSID = CmdMapping FilePath = File Size = 0 File MD5 =
<HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks>
CLSID = {CFBFAE00-17A6-11D0-99CB-00C04FD64497} FilePath = C:\WINDOWS\System32\shdocvw.dll File Size = 1494528 File MD5 = d5cf94dc9075a7b9acbf0874a3137d9b Description =
CLSID = {EF99BD32-C1FB-11D2-892F-0090271D4F88} FilePath = File Size = 0 File MD5 = Description =
<HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler>
CLSID = {438755C2-A8BA-11D1-B96B-00A0C90312E1} FilePath = C:\WINDOWS\System32\browseui.dll File Size = 1023488 File MD5 = 77480544ba243a1ef05f7d6dae0a3e2e Description = Browseui preloader
CLSID = {8C7461EF-2B13-11d2-BE35-3078302C2030} FilePath = C:\WINDOWS\System32\browseui.dll File Size = 1023488 File MD5 = 77480544ba243a1ef05f7d6dae0a3e2e Description = Component Categories cache daemon
##########################LSP CHAIN DATA##########################
<HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WINSOCK2\PARAMETERS>
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004 Filepath = C:\WINDOWS\system32\rsvpsp.dll File Size = 90112 File MD5 = 90491683abd587c702b16f181ab0d99d
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005 Filepath = C:\WINDOWS\system32\rsvpsp.dll File Size = 90112 File MD5 = 90491683abd587c702b16f181ab0d99d
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000007 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000008 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000009 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000010 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000011 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000012 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000013 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000014 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000015 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
##########################UNINSTALL DATA##########################
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL>
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX DisplayName = Adobe Flash Player ActiveX
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Shockwave Player DisplayName = Adobe Shockwave Player
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\AdobeESD DisplayName = Adobe Download Manager 2.0 (Remove Only)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\avast! DisplayName = avast! Antivirus InstallLocation = C:\PROGRA~1\ALWILS~1\Avast4
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\CCleaner DisplayName = CCleaner (remove only)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\dlatray.exe
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\DXM_Runtime
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ExpressBurn DisplayName = Express Burn
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ExpressRip DisplayName = Express Rip
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\HijackThis DisplayName = HijackThis 1.99.1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\HP Imaging Device Functions DisplayName = HP Imaging Device Functions 5.3
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\HP Solution Center & Imaging Support Tools DisplayName = HP Solution Center & Imaging Support Tools 5.3
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\HPExtendedCapabilities DisplayName = HP Extended Capabilities 5.3
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB873333 DisplayName = Windows XP Hotfix - KB873333
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB873339 DisplayName = Windows XP Hotfix - KB873339
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB884016
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885250 DisplayName = Windows XP Hotfix - KB885250
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885835 DisplayName = Windows XP Hotfix - KB885835
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885836 DisplayName = Windows XP Hotfix - KB885836
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB886185 DisplayName = Windows XP Hotfix - KB886185
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB887472 DisplayName = Windows XP Hotfix - KB887472
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB887742 DisplayName = Windows XP Hotfix - KB887742
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB888113 DisplayName = Windows XP Hotfix - KB888113
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB888302 DisplayName = Windows XP Hotfix - KB888302
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890046 DisplayName = Security Update for Windows XP (KB890046)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890859 DisplayName = Windows XP Hotfix - KB890859
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB891781 DisplayName = Windows XP Hotfix - KB891781
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893756 DisplayName = Security Update for Windows XP (KB893756)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893803
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893803v2 DisplayName = Windows Installer 3.1 (KB893803)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB894391 DisplayName = Update for Windows XP (KB894391)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896358 DisplayName = Security Update for Windows XP (KB89635Cool
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896422 DisplayName = Security Update for Windows XP (KB896422)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896423 DisplayName = Security Update for Windows XP (KB896423)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896424 DisplayName = Security Update for Windows XP (KB896424)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896428 DisplayName = Security Update for Windows XP (KB89642Cool
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB898461 DisplayName = Update for Windows XP (KB898461)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB899587 DisplayName = Security Update for Windows XP (KB899587)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB899591 DisplayName = Security Update for Windows XP (KB899591)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB900485 DisplayName = Update for Windows XP (KB900485)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB900725 DisplayName = Security Update for Windows XP (KB900725)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB901017 DisplayName = Security Update for Windows XP (KB901017)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB901214 DisplayName = Security Update for Windows XP (KB901214)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB902400 DisplayName = Security Update for Windows XP (KB902400)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB904706 DisplayName = Security Update for Windows XP (KB904706)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB905414 DisplayName = Security Update for Windows XP (KB905414)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB905749 DisplayName = Security Update for Windows XP (KB905749)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB908519 DisplayName = Security Update for Windows XP (KB908519)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB908531 DisplayName = Security Update for Windows XP (KB908531)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB910437 DisplayName = Update for Windows XP (KB910437)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911280 DisplayName = Security Update for Windows XP (KB911280)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911562 DisplayName = Security Update for Windows XP (KB911562)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911564 DisplayName = Security Update for Windows Media Player (KB911564)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911565 DisplayName = Security Update for Windows Media Player 10 (KB911565)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911567 DisplayName = Security Update for Windows XP (KB911567)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911927 DisplayName = Security Update for Windows XP (KB911927)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB912812 DisplayName = Security Update for Windows XP (KB912812)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB912919 DisplayName = Security Update for Windows XP (KB912919)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB913446 DisplayName = Security Update for Windows XP (KB913446)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB913580 DisplayName = Security Update for Windows XP (KB913580)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB914388 DisplayName = Security Update for Windows XP (KB91438Cool
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB914389 DisplayName = Security Update for Windows XP (KB914389)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB916281 DisplayName = Security Update for Windows XP (KB916281)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB916595 DisplayName = Update for Windows XP (KB916595)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB917159 DisplayName = Security Update for Windows XP (KB917159)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB917344 DisplayName = Security Update for Windows XP (KB917344)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB917422 DisplayName = Security Update for Windows XP (KB917422)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB917734_WMP10 DisplayName = Security Update for Windows Media Player 10 (KB917734)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB917953 DisplayName = Security Update for Windows XP (KB917953)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB918118 DisplayName = Security Update for Windows XP (KB91811Cool
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB918439 DisplayName = Security Update for Windows XP (KB918439)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB918899 DisplayName = Security Update for Windows XP (KB918899)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB919007 DisplayName = Security Update for Windows XP (KB919007)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920213 DisplayName = Security Update for Windows XP (KB920213)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920214 DisplayName = Security Update for Windows XP (KB920214)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920670 DisplayName = Security Update for Windows XP (KB920670)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920683 DisplayName = Security Update for Windows XP (KB920683)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920685 DisplayName = Security Update for Windows XP (KB920685)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920872 DisplayName = Update for Windows XP (KB920872)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB921398 DisplayName = Security Update for Windows XP (KB92139Cool
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB921883 DisplayName = Security Update for Windows XP (KB921883)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB922582 DisplayName = Update for Windows XP (KB922582)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB922616 DisplayName = Security Update for Windows XP (KB922616)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB922760 DisplayName = Security Update for Windows XP (KB922760)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB922819 DisplayName = Security Update for Windows XP (KB922819)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923191 DisplayName = Security Update for Windows XP (KB923191)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923414 DisplayName = Security Update for Windows XP (KB923414)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923689 DisplayName = Security Update for Windows XP (KB923689)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923694 DisplayName = Security Update for Windows XP (KB923694)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923980 DisplayName = Security Update for Windows XP (KB923980)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB924191 DisplayName = Security Update for Windows XP (KB924191)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB924270 DisplayName = Security Update for Windows XP (KB924270)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB924496 DisplayName = Security Update for Windows XP (KB924496)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB924667 DisplayName = Security Update for Windows XP (KB924667)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB925398_WMP64 DisplayName = Security Update for Windows Media Player 6.4 (KB92539Cool
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB925486 DisplayName = Security Update for Windows XP (KB925486)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB925902 DisplayName = Security Update for Windows XP (KB925902)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB926255 DisplayName = Security Update for Windows XP (KB926255)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB926436 DisplayName = Security Update for Windows XP (KB926436)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB927779 DisplayName = Security Update for Windows XP (KB927779)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB927802 DisplayName = Security Update for Windows XP (KB927802)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB927891 DisplayName = Update for Windows XP (KB927891)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB928090 DisplayName = Security Update for Windows XP (KB928090)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB928255 DisplayName = Security Update for Windows XP (KB928255)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB928843 DisplayName = Security Update for Windows XP (KB928843)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB929123 DisplayName = Security Update for Windows XP (KB929123)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB929338 DisplayName = Update for Windows XP (KB92933Cool
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB929969 DisplayName = Security Update for Windows XP (KB929969)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB930178 DisplayName = Security Update for Windows XP (KB93017Cool
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB930916 DisplayName = Update for Windows XP (KB930916)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB931261 DisplayName = Security Update for Windows XP (KB931261)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB931784 DisplayName = Security Update for Windows XP (KB931784)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB931836 DisplayName = Update for Windows XP (KB931836)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB932168 DisplayName = Security Update for Windows XP (KB93216Cool
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB933566 DisplayName = Security Update for Windows XP (KB933566)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB935839 DisplayName = Security Update for Windows XP (KB935839)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB935840 DisplayName = Security Update for Windows XP (KB935840)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB936357 DisplayName = Update for Windows XP (KB936357)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft NetShow Player 2.0
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MPlayer2
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-Beta1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-Beta2
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-KB884016
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-RC1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-RC2
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30a-KB884016
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI31-Beta
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI31-RC1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSN Music Assistant DisplayName = MSN Music Assistant
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MWASPINT DisplayName = MicroStaff WINASPI NT
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\QuickTime DisplayName = QuickTime
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\RealArcade 1.2 DisplayName = RealArcade
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\RecordNow.exe
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\RegCure DisplayName = RegCure 1.4.0.4
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\SGTRAY.EXE
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Shockwave
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\TrojanHunter_is1 DisplayName = TrojanHunter 4.7 InstallLocation = C:\Program Files\TrojanHunter 4.7\
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\WGA DisplayName = Windows Genuine Advantage Validation Tool (KB892130)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\WgaNotify DisplayName = Windows Genuine Advantage Notifications (KB905474)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Windows Media Format Runtime DisplayName = Windows Media Format Runtime
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Windows Media Player DisplayName = Windows Media Player 10
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Windows XP Service Pack DisplayName = Windows XP Service Pack 2
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Messenger DisplayName = Yahoo! Messenger
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{0611BD4E-4FE4-4a62-B0C0-18A4CC463428} DisplayName = CP_Package_Variety1 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{09984AEC-6B9F-4ca7-B78D-CB44D4771DA3} DisplayName = Destinations InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{09DA4F91-2A09-4232-AB8C-6BC740096DE3} DisplayName = Sonic Update Manager InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{0B33B738-AD79-4E32-90C5-E67BFB10BBFF} DisplayName = AiO_Scan InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{1206EF92-2E83-4859-ACCB-2048C3CB7DA6} DisplayName = Sonic DLA InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{1C139D7D-9FEA-468d-A9C8-2A6E3BDE564A} DisplayName = CP_Package_Variety3 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{2318C2B1-4965-11d4-9B18-009027A5CD4F} DisplayName = Google Toolbar for Internet Explorer
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{24ED4D80-8294-11D5-96CD-0040266301AD} DisplayName = FinePixViewer Ver.4.0
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{2CADCEAB-D5DA-44D6-B5FC-7DEE87AB3C0C} DisplayName = Unload InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{30C19FF2-7FBA-4d09-B9DE-1659977F64F6} DisplayName = TrayApp InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{3248F0A8-6813-11D6-A77B-00B0D0150060} DisplayName = J2SE Runtime Environment 5.0 Update 6 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227} DisplayName = WebFldrs XP
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{37477865-A3F1-4772-AD43-AAFC6BCFF99F} DisplayName = MSXML 4.0 SP2 (KB92797Cool InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{5421155F-B033-49DB-9B33-8F80F233D4D5} DisplayName = GdiplusUpgrade InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{5490882C-6961-11D5-BAE5-00E0188E010B} DisplayName = FUJIFILM USB Driver
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{54E3707F-808E-4fd4-95C9-15D1AB077E5D} DisplayName = NewCopy InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{56F8AFC3-FA98-4ff1-9673-8A026CBF85BE} DisplayName = WebReg InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{59324A56-6450-47D1-87DE-E8CEB8EE74D0} DisplayName = Firmware upgrade utility 2.0C For Sony DW-U12A DVD-RW Drive
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{5B622B7A-60FB-4630-B11D-F121D20BCCD6} DisplayName = MarketResearch InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{5B79CFD1-6845-4158-9D7D-6BE89DF2C135} DisplayName = HP PSC & OfficeJet 5.3.B
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8} DisplayName = eSupportQFolder InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{688A3383-3CE7-4094-9188-9C39D1E4FCB6} InstallLocation = C:\Program Files\Intuit\QuickBooks 2006\
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{6994491D-D491-48F1-AE1F-E179C1FFFC2F} DisplayName = HP Photosmart Essential InstallLocation = C:\Program Files\HP\Photosmart Essential\
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{69B02159-7622-4DBB-B9EE-F933039830AD} DisplayName = QuickBooks Pro 2006 InstallLocation = C:\Program Files\Intuit\QuickBooks 2006\
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{6BB6627C-694F-4FDC-A3E5-C7F4BED4C724} DisplayName = DocProc InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15} DisplayName = CustomerResearchQFolder InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{7850A6D2-CBEA-4728-9877-F1BEDEA9F619} DisplayName = AiOSoftware InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{7C9B95B7-B598-4398-B30F-7F6827192E6C} DisplayName = ProductContext InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{861AF642-2DD2-11D4-801E-0050DA5E65F2} DisplayName = Merriam-Webster
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{8A708DD8-A5E6-11D4-A706-000629E95E20} DisplayName = Intel(R) Extreme Graphics Driver
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{8ADC27DB-E2C8-446C-A576-166C05C2DD24} InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{8C6027FD-53DC-446D-BB75-CACD7028A134} DisplayName = HP Update InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{91130409-6000-11D3-8CFE-0150048383C9} DisplayName = Microsoft Office Basic Edition 2003 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{923A7F5A-1E8C-4FBE-8DF6-85940A60A79F} DisplayName = Readme InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{9541FED0-327F-4DF0-8B96-EF57EF622F19} DisplayName = Sonic RecordNow! InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{A195B13E-A5E3-4BAF-A995-7F70F445CD06} DisplayName = ScannerCopy InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{AB5D51AE-EBC3-438D-872C-705C7C2084B0} DisplayName = DeviceManagementQFolder InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{AC76BA86-7AD7-1033-7B44-A70900000002} DisplayName = Adobe Reader 7.0.9 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2B30EC0-FB6A-43BB-9B38-0C3B32D75B40}_is1 DisplayName = Sony Download Taxi 1.4.0.0 InstallLocation = C:\Program Files\Sony\Download Taxi\
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{B824B5C9-849F-4b9e-9EA7-6FD8CD8116DA} DisplayName = CP_Package_Variety2 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{B996AE66-10DB-4ac5-B151-E8B4BFBC42FC} DisplayName = BufferChm InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{C506A18C-1469-4678-B094-F4EC9DAE6DB7} DisplayName = Scan InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} DisplayName = Microsoft .NET Framework 1.1 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{CE24344F-DFD8-40C8-8FD8-C9740B5F25AC} DisplayName = Fax InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{D3AA158A-9421-4883-8767-E771B0964A1D} DisplayName = ImageMixer VCD for FinePix
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{D4576E0D-2295-4B8E-B663-B68086B00EE5} DisplayName = Sonic CinePlayer DVD Pack InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{D680C913-5955-469D-9D88-C1940F7506D6} DisplayName = RAW FILE CONVERTER LE
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{E0F252A6-DE85-4E93-A93B-DFC3537B3965} DisplayName = WG111v2 Configuration Utility InstallLocation = C:\Program Files\NETGEAR\WG111v2 Configuration Utility
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{E3F90083-80D4-4b5a-87C7-E97E12F5516D} DisplayName = HPProductAssistant InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{EA103B64-C0E4-4C0E-A506-751590E1653D} DisplayName = SolutionCenter InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{EE5B8E34-973C-4FBE-AC83-99F064009FC7} DisplayName = SpyHunter InstallLocation = C:\Program Files\Enigma Software Group\SpyHunter
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{F4C2E5F5-2970-45f4-ABD3-C180C4D961C4} DisplayName = Status InstallLocation =

- Collapse -
Later on
Jul 26, 2007 6:39AM PDT

Hello and thanks. I will leave this work pc about 4 30; but will be here in the am to look. Thak you! Mary

- Collapse -
Clip and paste only the bad stuff.
Jul 26, 2007 7:47AM PDT

There are too many "good" things in that paste.

Try showing just the items you are unsure of.

Bob

- Collapse -
Regarding Spy Hunter..
Jul 26, 2007 11:09AM PDT

Mary..

This isn't going to be of much help now, but it might be noteworthy for the future. I'm doubting Spy Hunter was one of the better-rated software you mentioned, unless it was Enigma who reviewed it. I say that "tongue-in-cheek". Some of the download sites, might have also highly rated it. There are those that have a problem with it. I personally don't go by reviews, but I know alot of people do. I'm not saying there's anything wrong with it. Just not what I do. Had I not known about Spy Hunter previously, I would have "googled it" first. Enigma may have cleaned up their act, but I feel there's been far too much discussion about it, in my opinion. To save you some time, you might want to read one of my prior posts, which will lead you to an interesting thread at the SpywareWarrior forum. I'm just putting the information "out there". From there you can make up your own mind, as to what you wish to install, or not.

http://forums.cnet.com/5208-6142_102-0.html?forumID=45&threadID=254668&messageID=2531713#2531713

Hope this helps for the future..
Carol

- Collapse -
Thanks===dban
Jul 27, 2007 12:13AM PDT

Want to say a sincere thanks for all the help. I am going to do the dban, while trying to save the drives. Perhaps I can do the dban in safe mose? Do not know yet. Also getting a new pc. I figured if I could save the drives perhaps my son could use it for emailing and simple stuff; if not oh well, I learned not to let others use my pc unless carefully monitored by me. Mary

- Collapse -
removing spy ware and trojans
Jul 27, 2007 1:44PM PDT

If you have a privately owned computer repair shop near by, your problem should not be too difficult for an experienced technician to fix. I would bet it will cost about $100 as it will require at lest three man hours. If the shop just wants to reload windows, find a different repair shop and tell them up front that you do not want to pay them until the computer is clean of virus' and Trojans. If they know what they are doing they should not object too much to that request.You want to see it boot and reboot and connect to the internet before you pick it up. If you really wnat to clean this your self. subscribe to WinPatrol Plus and go thru every program that is listed as running and every service that is listed as running and do Google searches for any that Winpatrol can not identify and also to learn how to remove any that winpatrol does identify. Good luck. I hope this helps