1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

Programs "not responding"

Discussion in 'Business Applications' started by Lindee, Mar 21, 2007.

Thread Status:
Not open for further replies.
Advertisement
  1. Lindee

    Lindee Thread Starter

    Joined:
    Jan 10, 2002
    Messages:
    294
    My desktop Dell Computer is having major issues with programs "not responding" namely MS Word and Outlook. The computer is really dragging and taking forever to open files.

    Also, it will not recognize my HP printer and says there is not one installed. The instructions say to: go to start, point to settings : There nothing there that says "settings" and then it says to install printer ?????? nothing there says any of that.

    We took into Best Buy over the weekend and had the entire Geek Squad pouring over our computer, running an analysis and couldn't find anything. No bugs or viruses. I have Norton on that computer which is new and updated. I did a complete defrag and disc clean up and emptied all the temp files etc. as I do all the time.

    I am not at that computer at this moment and will post details and particulars in the next post.

    Win XP
    512 RAM
    2 G

    please help

    Thanks
     
  2. OBP

    OBP Trusted Advisor

    Joined:
    Mar 8, 2005
    Messages:
    18,834
    Lindee, have you tried diconnecting from the Internet and opening those Programs without Norton running?
     
  3. tech1568

    tech1568

    Joined:
    Dec 11, 2006
    Messages:
    21
    Before you do anything else, make sure you put any important files or documents in your hard drive onto a usb jump drive or cd/dvd for safekeeping.

    If your Dell desktop is still under the service warranty, you might try asking them for help.

    If you can't do that, try using System Restore to get the computer back to a state when it was working properly.

    If that doesn't work, try reinstalling Office and the printer driver.

    If that doesn't work try doing a repair install of Windows XP.
     
  4. Cookiegal

    Cookiegal Administrator Malware Specialist Coordinator

    Joined:
    Aug 27, 2003
    Messages:
    101,542
    Click here to download HJTsetup.exe
    • Save HJTsetup.exe to your desktop.
    • Double click on the HJTsetup.exe icon on your desktop.
    • By default it will install to C:\Program Files\Hijack This.
    • Continue to click Next in the setup dialogue boxes until you get to the Select Addition Tasks dialogue.
    • Put a check by Create a desktop icon then click Next again.
    • Continue to follow the rest of the prompts from there.
    • At the final dialogue box click Finish and it will launch Hijack This.
    • Click on the Do a system scan and save a log file button. It will scan and then ask you to save the log.
    • Click Save to save the log file and then the log will open in notepad.
    • Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log.
    • Come back here to this thread and Paste the log in your next reply.
    • DO NOT have Hijack This fix anything yet. Most of what it finds will be harmless or even required.
     
  5. Lindee

    Lindee Thread Starter

    Joined:
    Jan 10, 2002
    Messages:
    294
    Cookiegal:

    Here you go. It took 3 tries becuse it wasn't responding.

    Logfile of HijackThis v1.99.1
    Scan saved at 7:22:41 AM, on 3/22/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\PROGRA~1\NORTON~2\NORTON~2\NPROTECT.EXE
    C:\WINDOWS\System32\nvsvc32.exe
    C:\WINDOWS\System32\slpservice.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\SYSTEM32\slpmonx.exe
    C:\WINDOWS\System32\hphmon05.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
    C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Hijackthis\HijackThis.exe
    C:\WINDOWS\system32\wuauclt.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dellnet.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dellnet.com
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
    R3 - URLSearchHook: AOLTBSearch Class - {EA756889-2338-43DB-8F07-D1CA6FB9C90D} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
    F3 - REG:win.ini: load=slpmonx.exe
    O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll
    O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
    O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
    O3 - Toolbar: CompBar! - {0A5A975E-9781-43D9-821C-82134E97DF87} - C:\WINDOWS\WCcompbar.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
    O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
    O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
    O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe
    O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\System32\hphmon05.exe
    O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton Internet Security\osCheck.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [HPHUPD05] C:\Program Files\Hewlett-Packard\\{5372B9A6-6E51-4f90-9B40-E0A3B8475C4E}\hphupd05.exe
    O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O4 - Global Startup: QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
    O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 2.0\resources\en-US\local\search.html
    O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
    O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
    O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk
    O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {0335A685-ED24-4F7B-A08E-3BD15D84E668} - http://dl.filekicker.com/send/file/128985-NZIL/PhPSetup.cab
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204
    O16 - DPF: {3451DEDE-631F-421C-8127-FD793AFC6CC8} - https://www-secure.symantec.com/techsupp/asa/ctrl/SymAData.cab
    O16 - DPF: {44990200-3C9D-426D-81DF-AAB636FA4345} (Symantec SmartIssue) - https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
    O16 - DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} (Symantec Script Runner Class) - https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
    O16 - DPF: {49232000-16E4-426C-A231-62846947304B} (SysData Class) - http://ipgweb.cce.hp.com/rdqna/downloads/sysinfo.cab
    O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1126791243400
    O16 - DPF: {9522B3FB-7A2B-4646-8AF6-36E7F593073C} - http://a19.g.akamai.net/7/19/7125/4013/ftp.coupons.com/v3121/cpbrkpie.cab
    O16 - DPF: {E7D2588A-7FB5-47DC-8830-832605661009} (Live Collaboration) - http://liveca12.custhelp.com/7530-b327h/rnl/java/RntX.cab
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
    O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h cltCommon (file missing)
    O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
    O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\isPwdSvc.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: Norton UnErase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~2\NPROTECT.EXE
    O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
    O23 - Service: SLPMONX - ProdEx Technologies - C:\WINDOWS\System32\slpservice.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
     
  6. Cookiegal

    Cookiegal Administrator Malware Specialist Coordinator

    Joined:
    Aug 27, 2003
    Messages:
    101,542
    Go to Start > Search and under "More advanced search options".
    Make sure there is a check by "Search System Folders" and "Search hidden files and folders" and "Search system subfolders"

    Next click on My Computer. Go to Tools > Folder Options. Click on the View tab and make sure that "Show hidden files and folders" is checked. Also uncheck "Hide protected operating system files" and "Hide extensions for known file types" . Now click "Apply to all folders"
    Click "Apply" then "OK"


    Now, go to the following link and upload each of the following files for analysis and let me know what the results are please:

    http://virusscan.jotti.org/


    C:\WINDOWS\WCcompbar.dll
     
  7. Lindee

    Lindee Thread Starter

    Joined:
    Jan 10, 2002
    Messages:
    294
    I checked and unchecked as you instructed. I downloaded from the link and ran the first scan. You didn't say whether I should clean up the errors or not. I tried to copy and paste from the first scan, but it wouldn't let me do it. It was RegCure. I have not done the others yet. please advise
     
  8. Lindee

    Lindee Thread Starter

    Joined:
    Jan 10, 2002
    Messages:
    294
    Cookiegal:

    I didn't mention the scan found 1143 errors. I said to fix them, but it said I needed to register for the full version of the program ??? It said it would only correct 2 of them. One was in fonts and don't recall the other.
     
  9. Lindee

    Lindee Thread Starter

    Joined:
    Jan 10, 2002
    Messages:
    294
    Cookiegal:

    I was able to cut and paste this scan from Spyware Doctor:

    PC Tools Spyware Doctor
    Date Status
    3/22/2007 8:23:56 PM:881 AntiVirus Engine
    Engine initialized or reloaded successfully.
    3/22/2007 8:24:02 PM:334 Service Started
    Spyware Doctor Service Application started
    3/22/2007 8:24:03 PM:818 OnGuards status
    All OnGuards were Enabled
    3/22/2007 8:24:13 PM:115 Immunizer Results
    ActiveX section has been immunized, Processed 3425 items.
    3/22/2007 8:25:43 PM:896 AntiVirus Engine
    Engine initialized or reloaded successfully.
    3/22/2007 8:27:24 PM:943 Scan Started
    Scan Type - Intelli-Scan

    3/22/2007 8:27:42 PM:865 Infection was detected on this computer
    Threat Name - Known Bad Sites
    Type - Favourite
    Risk Level - High
    Infection - http://www.evidence-eliminator.com/product.d2w?g=10671033669494 : C:\Documents and Settings\Linda Scharbach\Favorites\Computer Stuff\Evidence Eliminator - What evidence is on your hard drive.url

    3/22/2007 8:27:44 PM:849 Infection was detected on this computer
    Threat Name - Rogue Anti-Spyware Products
    Type - Favourite
    Risk Level - High
    Infection - https://www.affiliatesuccess.net/cg...m&password=ytostanl&sid=juric&tid=NDACH01¤t=# : C:\Documents and Settings\Linda Scharbach\Favorites\Net Detective .url

    3/22/2007 8:27:48 PM:427 Infection was detected on this computer
    Threat Name - Tracking Cookie(s)
    Type - Cookie
    Risk Level - Low
    Infection - 2o7.net/ 2o7.net

    3/22/2007 8:27:48 PM:427 Infection was detected on this computer
    Threat Name - Tracking Cookie(s)
    Type - Cookie
    Risk Level - Low
    Infection - atdmt.com/ atdmt.com

    3/22/2007 8:27:48 PM:490 Infection was detected on this computer
    Threat Name - Tracking Cookie(s)
    Type - Cookie
    Risk Level - Low
    Infection - doubleclick.net/ doubleclick.net

    3/22/2007 8:27:48 PM:568 Infection was detected on this computer
    Threat Name - Tracking Cookie(s)
    Type - Cookie
    Risk Level - Low
    Infection - m.webtrends.com/ m.webtrends.com

    3/22/2007 8:27:48 PM:693 Infection was detected on this computer
    Threat Name - Advertising
    Type - Cookie
    Risk Level - Low
    Infection - statcounter.com/ statcounter.com

    3/22/2007 8:28:34 PM:568 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_LOCAL_MACHINE\Software\Microsoft\Code Store Database\Distribution Units\{9522B3FB-7A2B-4646-8AF6-36E7F593073C}, SystemComponent

    3/22/2007 8:28:34 PM:584 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_LOCAL_MACHINE\Software\Microsoft\Code Store Database\Distribution Units\{9522B3FB-7A2B-4646-8AF6-36E7F593073C}, Installer

    3/22/2007 8:28:34 PM:599 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_LOCAL_MACHINE\Software\Microsoft\Code Store Database\Distribution Units\{9522B3FB-7A2B-4646-8AF6-36E7F593073C}\Contains\Files, C:\WINDOWS\cpbrkpie.ocx

    3/22/2007 8:28:34 PM:599 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_LOCAL_MACHINE\Software\Microsoft\Code Store Database\Distribution Units\{9522B3FB-7A2B-4646-8AF6-36E7F593073C}\Contains\Files

    3/22/2007 8:28:34 PM:599 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_LOCAL_MACHINE\Software\Microsoft\Code Store Database\Distribution Units\{9522B3FB-7A2B-4646-8AF6-36E7F593073C}\Contains

    3/22/2007 8:28:34 PM:615 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_LOCAL_MACHINE\Software\Microsoft\Code Store Database\Distribution Units\{9522B3FB-7A2B-4646-8AF6-36E7F593073C}\DownloadInformation, CODEBASE

    3/22/2007 8:28:34 PM:631 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_LOCAL_MACHINE\Software\Microsoft\Code Store Database\Distribution Units\{9522B3FB-7A2B-4646-8AF6-36E7F593073C}\DownloadInformation, INF

    3/22/2007 8:28:34 PM:631 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_LOCAL_MACHINE\Software\Microsoft\Code Store Database\Distribution Units\{9522B3FB-7A2B-4646-8AF6-36E7F593073C}\DownloadInformation

    3/22/2007 8:28:34 PM:646 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_LOCAL_MACHINE\Software\Microsoft\Code Store Database\Distribution Units\{9522B3FB-7A2B-4646-8AF6-36E7F593073C}\InstalledVersion, (Default)

    3/22/2007 8:28:34 PM:662 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_LOCAL_MACHINE\Software\Microsoft\Code Store Database\Distribution Units\{9522B3FB-7A2B-4646-8AF6-36E7F593073C}\InstalledVersion, LastModified

    3/22/2007 8:28:34 PM:662 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_LOCAL_MACHINE\Software\Microsoft\Code Store Database\Distribution Units\{9522B3FB-7A2B-4646-8AF6-36E7F593073C}\InstalledVersion

    3/22/2007 8:28:34 PM:662 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_LOCAL_MACHINE\Software\Microsoft\Code Store Database\Distribution Units\{9522B3FB-7A2B-4646-8AF6-36E7F593073C}

    3/22/2007 8:28:39 PM:21 Infection was detected on this computer
    Threat Name - Kazaa Promotional Items
    Type - Folder
    Risk Level - Medium
    Infection - C:\WINDOWS\Temp\BullGuard\

    3/22/2007 8:28:51 PM:224 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}, (Default)

    3/22/2007 8:28:51 PM:224 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}\ProxyStubClsid, (Default)

    3/22/2007 8:28:51 PM:224 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}\ProxyStubClsid

    3/22/2007 8:28:51 PM:240 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}\ProxyStubClsid32, (Default)

    3/22/2007 8:28:51 PM:240 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}\ProxyStubClsid32

    3/22/2007 8:28:51 PM:256 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}\TypeLib, (Default)

    3/22/2007 8:28:51 PM:256 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}\TypeLib, Version

    3/22/2007 8:28:51 PM:256 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}\TypeLib

    3/22/2007 8:28:51 PM:256 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{6E780F0B-BCD6-40CB-B2DB-7AF47AB4D4A4}

    3/22/2007 8:28:51 PM:287 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}, (Default)

    3/22/2007 8:28:51 PM:287 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}\ProxyStubClsid, (Default)

    3/22/2007 8:28:51 PM:302 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}\ProxyStubClsid

    3/22/2007 8:28:51 PM:318 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}\ProxyStubClsid32, (Default)

    3/22/2007 8:28:51 PM:318 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}\ProxyStubClsid32

    3/22/2007 8:28:51 PM:318 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}\TypeLib, (Default)

    3/22/2007 8:28:51 PM:334 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}\TypeLib, Version

    3/22/2007 8:28:51 PM:334 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}\TypeLib

    3/22/2007 8:28:51 PM:334 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\Interface\{A138BE8B-F051-4802-9A3F-A750A6D862D4}

    3/22/2007 8:28:51 PM:443 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\TypeLib\{87255C51-CD7D-4506-B9AD-97606DAF53F3}\1.0, (Default)

    3/22/2007 8:28:51 PM:459 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\TypeLib\{87255C51-CD7D-4506-B9AD-97606DAF53F3}\1.0\0\win32, (Default)

    3/22/2007 8:28:51 PM:459 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\TypeLib\{87255C51-CD7D-4506-B9AD-97606DAF53F3}\1.0\0\win32

    3/22/2007 8:28:51 PM:459 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\TypeLib\{87255C51-CD7D-4506-B9AD-97606DAF53F3}\1.0\0

    3/22/2007 8:28:51 PM:474 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\TypeLib\{87255C51-CD7D-4506-B9AD-97606DAF53F3}\1.0\FLAGS, (Default)

    3/22/2007 8:28:51 PM:474 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\TypeLib\{87255C51-CD7D-4506-B9AD-97606DAF53F3}\1.0\FLAGS

    3/22/2007 8:28:51 PM:537 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Value
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\TypeLib\{87255C51-CD7D-4506-B9AD-97606DAF53F3}\1.0\HELPDIR, (Default)

    3/22/2007 8:28:51 PM:537 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\TypeLib\{87255C51-CD7D-4506-B9AD-97606DAF53F3}\1.0\HELPDIR

    3/22/2007 8:28:51 PM:537 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\TypeLib\{87255C51-CD7D-4506-B9AD-97606DAF53F3}\1.0

    3/22/2007 8:28:51 PM:537 Infection was detected on this computer
    Threat Name - Coupons
    Type - Registry Key
    Risk Level - Elevated
    Infection - HKEY_CLASSES_ROOT\TypeLib\{87255C51-CD7D-4506-B9AD-97606DAF53F3}

    3/22/2007 8:34:02 PM:834 Scan Finished
    Scan Type - Intelli-Scan
    Items Processed - 10058
    Threats Detected - 6
    Infections Detected - 48
    Infections Ignored - 0

    3/22/2007 8:38:25 PM:271 OnGuard Detection Cleaned
    Threat Name - Tracking Cookie(s)
    Type - Cookie
    Risk Level - Low
    Infection - 2o7.net/ 2o7.net

    3/22/2007 8:38:25 PM:271 OnGuard Detection Cleaned
    Threat Name - Tracking Cookie(s)
    Type - Cookie
    Risk Level - Low
    Infection - atdmt.com/ atdmt.com

    3/22/2007 8:38:25 PM:271 OnGuard Detection Cleaned
    Threat Name - Tracking Cookie(s)
    Type - Cookie
    Risk Level - Low
    Infection - doubleclick.net/ doubleclick.net

    3/22/2007 8:38:25 PM:271 OnGuard Detection Cleaned
    Threat Name - Tracking Cookie(s)
    Type - Cookie
    Risk Level - Low
    Infection - m.webtrends.com/ m.webtrends.com

    3/22/2007 8:38:25 PM:271 OnGuard Detection Cleaned
    Threat Name - Advertising
    Type - Cookie
    Risk Level - Low
    Infection - statcounter.com/ statcounter.com
     
  10. Lindee

    Lindee Thread Starter

    Joined:
    Jan 10, 2002
    Messages:
    294
    Cookiegal:

    I tried to run the last scan "Free Trojan Scan", but it required purchase to scan, even though it says you can scan for free?

    I don't have much to cut and paste other than the previous scan report. The first with 1144 also required registration, but I don't know about purchase.
     
  11. Cookiegal

    Cookiegal Administrator Malware Specialist Coordinator

    Joined:
    Aug 27, 2003
    Messages:
    101,542
    I have no idea what scans you ran or why. I didn't ask you run any scans. :confused:

    I asked you to run that file through jotti's analysis and report back to me what the findings were, that's all. :)
     
  12. Lindee

    Lindee Thread Starter

    Joined:
    Jan 10, 2002
    Messages:
    294
    Cookiegal:

    I was able to get this one completed. Will need to send it in a couple of posts as it is too long:
    ###########################Runnning Processes DATA###########################
    processName = SMSS.EXE File Size = 50688 File Path = \SystemRoot\System32\smss.exe ModuleMD5 = bd7fb0957c716f1a60333aee04de2178
    processName = CSRSS.EXE File Size = 6144 File Path = \??\C:\WINDOWS\system32\csrss.exe ModuleMD5 = f12b178b1678d778cfd3ff1fc38c71fb
    processName = WINLOGON.EXE File Size = 502272 File Path = \??\C:\WINDOWS\system32\winlogon.exe ModuleMD5 = 01c3346c241652f43aed8e2149881bfe
    processName = SERVICES.EXE File Size = 108032 File Path = C:\WINDOWS\system32\services.exe ModuleMD5 = c6ce6eec82f187615d1002bb3bb50ed4
    processName = LSASS.EXE File Size = 13312 File Path = C:\WINDOWS\system32\lsass.exe ModuleMD5 = 84885f9b82f4d55c6146ebf6065d75d2
    processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\system32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716
    processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\system32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716
    processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\System32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716
    processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\System32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716
    processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\System32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716
    processName = CCSVCHST.EXE File Size = 108648 File Path = C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe ModuleMD5 = fe69c498b922ce835e2e2123fbd0a272
    processName = APPSVC32.EXE File Size = 47712 File Path = C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe ModuleMD5 = eff5c2a0a06bcbfc5cf931c00cf6146d
    processName = SYMLCSVC.EXE File Size = 1174664 File Path = C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe ModuleMD5 = 43cfca936d211bf7f1cde1ddf807cb76
    processName = ALUSCHEDULERSVC.EXE File Size = 554616 File Path = C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe ModuleMD5 = c0e25bb0e6a159d332048afaa2ed24ce
    processName = CCSVCHST.EXE File Size = 108648 File Path = C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe ModuleMD5 = fe69c498b922ce835e2e2123fbd0a272
    processName = NPROTECT.EXE File Size = 95832 File Path = C:\PROGRA~1\NORTON~2\NORTON~2\NPROTECT.EXE ModuleMD5 = 6e082c64e63f20e4e8946a927fc2be55
    processName = NVSVC32.EXE File Size = 65536 File Path = C:\WINDOWS\System32\nvsvc32.exe ModuleMD5 = 320fb49b88dec36032e812a5935be101
    processName = SVCNTAUX.EXE File Size = 707080 File Path = C:\Program Files\Spyware Doctor\svcntaux.exe ModuleMD5 = fd7687f4bb6cac0e6cfa5479513f488c
    processName = SWDSVC.EXE File Size = 1299024 File Path = C:\Program Files\Spyware Doctor\swdsvc.exe ModuleMD5 = 5b000e790dd9de2902de79d5dc890362
    processName = SLPSERVICE.EXE File Size = 32256 File Path = C:\WINDOWS\System32\slpservice.exe ModuleMD5 = 64e97a69b32d9bda5bf4924526b73c10
    processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\System32\svchost.exe ModuleMD5 = 8f078ae4ed187aaabc0a305146de6716
    processName = WDFMGR.EXE File Size = 38912 File Path = C:\WINDOWS\system32\wdfmgr.exe ModuleMD5 = c81b8635dee0d3ef5f64b3dd643023a5
    processName = EXPLORER.EXE File Size = 1032192 File Path = C:\WINDOWS\Explorer.EXE ModuleMD5 = a0732187050030ae399b241436565e64
    processName = SLPMONX.EXE File Size = 49664 File Path = C:\WINDOWS\SYSTEM32\slpmonx.exe ModuleMD5 = 9d4c1f93c6a7835b03f0cfdfff0c20f8
    processName = HPHMON05.EXE File Size = 491520 File Path = C:\WINDOWS\System32\hphmon05.exe ModuleMD5 = 78bee8060718100187484871b404b08a
    processName = QTTASK.EXE File Size = 98304 File Path = C:\Program Files\QuickTime\qttask.exe ModuleMD5 = 76a3a30b58405c2c6d833895253a51a9
    processName = HPCMPMGR.EXE File Size = 241664 File Path = C:\Program Files\HP\hpcoretech\hpcmpmgr.exe ModuleMD5 = b75b654ee1da99876461b24597ae3ff3
    processName = HPWUSCHD2.EXE File Size = 49152 File Path = C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe ModuleMD5 = 821f73b833c4daebc33c1a9a4b16bb5a
    processName = SDTRAYAPP.EXE File Size = 651784 File Path = C:\Program Files\Spyware Doctor\SDTrayApp.exe ModuleMD5 = 3184cb184f57ca7a37a8ad418c95fba4
    processName = SPYHUNTER.EXE File Size = 2482176 File Path = C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter.exe ModuleMD5 = 146e80454798088ce29eff0254637ceb
    processName = CTFMON.EXE File Size = 15360 File Path = C:\WINDOWS\system32\ctfmon.exe ModuleMD5 = 24232996a38c0b0cf151c2140ae29fc8
    processName = GOOGLETOOLBARNOTIFIER.EXE File Size = 171448 File Path = C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe ModuleMD5 = 0fa44ea8b03aba3e1d240b5a333d8e6a
    processName = QBUPDATE.EXE File Size = 815104 File Path = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe ModuleMD5 = 81cc5690970c0f52eabbc68f7f9272ab
    processName = ALG.EXE File Size = 44544 File Path = C:\WINDOWS\System32\alg.exe ModuleMD5 = f1958fbf86d5c004cf19a5951a9514b7
    processName = IEXPLORE.EXE File Size = 93184 File Path = C:\Program Files\Internet Explorer\iexplore.exe ModuleMD5 = e7484514c0464642be7b4dc2689354c8
    processName = YTBSDK.EXE File Size = 214704 File Path = C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn0\YTBSDK.exe ModuleMD5 = 4812a8e99684b8bd096dd6dc3c7f1815
    processName = LUCOMS~1.EXE File Size = 2918008 File Path = C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE ModuleMD5 = f3cb12a5791761ebca4c7ba5fc89f5c2
    processName = WUAUCLT.EXE File Size = 124184 File Path = C:\WINDOWS\system32\wuauclt.exe ModuleMD5 = ebf1ab7e4fc05cabf2f4680d2a45f827
    ###########################REGISTRY MD5 DATA###########################
    <HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN>
    Name=nwiz Data=nwiz.exe /install FileSize = 446464 MD5=149afe88d6055f1299558bad58abb80c
    Name=HPDJ Taskbar Utility Data=C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe FileSize = 176128 MD5=31c21d0a32e06d7a5dddfce78414b2a0
    Name=HPHmon05 Data=C:\WINDOWS\System32\hphmon05.exe FileSize = 491520 MD5=78bee8060718100187484871b404b08a
    Name=osCheck Data="C:\Program Files\Norton Internet Security\osCheck.exe" FileSize = 771704 MD5=74867f6aaf1badda7e7c0e6e63a20732
    Name=QuickTime Task Data="C:\Program Files\QuickTime\qttask.exe" -atboottime FileSize = 98304 MD5=76a3a30b58405c2c6d833895253a51a9
    Name=NvCplDaemon Data=RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup FileSize = 4214784 MD5=2da5f7c2fc5859b72555c56923a80f5d
    Name=HPHUPD05 Data=C:\Program Files\Hewlett-Packard\\{5372B9A6-6E51-4f90-9B40-E0A3B8475C4E}\hphupd05.exe FileSize = 49152 MD5=b86ea852c1401e4aa744e2755b5b9903
    Name=HP Component Manager Data="C:\Program Files\HP\hpcoretech\hpcmpmgr.exe" FileSize = 241664 MD5=b75b654ee1da99876461b24597ae3ff3
    Name=HP Software Update Data=C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe FileSize = 49152 MD5=821f73b833c4daebc33c1a9a4b16bb5a
    Name=PrinTray Data=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe FileSize = 36864 MD5=eafd9b9426defb0f5852acc6b75867b7
    Name=SDTray Data="C:\Program Files\Spyware Doctor\SDTrayApp.exe" FileSize = 651784 MD5=3184cb184f57ca7a37a8ad418c95fba4
    Name=SpyHunter Data=C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter.exe FileSize = 2482176 MD5=146e80454798088ce29eff0254637ceb
    <HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCEEX>
    <HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE>
    <HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN>
    Name=ctfmon.exe Data=C:\WINDOWS\system32\ctfmon.exe FileSize = 15360 MD5=24232996a38c0b0cf151c2140ae29fc8
    Name=swg Data=C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe FileSize = 171448 MD5=0fa44ea8b03aba3e1d240b5a333d8e6a
    <HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE>
    <HKEY_USERS\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN>
    <HKEY_USERS\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE>
    <HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINDOWS\APPINIT_DLLS>
    <HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\RUN>
    <HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\SHELL>
    Explorer.exe FileSize = 1032192 MD5=a0732187050030ae399b241436565e64
    <HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\USERINIT>
    C:\WINDOWS\system32\userinit.exe, FileSize = 24576 MD5=39b1ffb03c2296323832acbae50d2aff
    #############################FILE MD5 DATA#############################
    <C:\Documents and Settings\Linda Scharbach\Start Menu\Programs\Startup>
    File Path = C:\Documents and Settings\Linda Scharbach\Start Menu\Programs\Startup\DESKTOP.INI File Size = 4096 md5=d6a6856702e3f0953e7246a9b4a9fe35
    #############################SERVICES DATA#############################
    Service Name = ALG Service Display Name = Application Layer Gateway Service Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\alg.exe Binary Size = 44544 Binary MD5 = f1958fbf86d5c004cf19a5951a9514b7
    Service Name = AudioSrv Service Display Name = Windows Audio Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = Automatic LiveUpdate Scheduler Service Display Name = Automatic LiveUpdate Scheduler Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = "C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe" Binary Size = 0 Binary MD5 =
    Service Name = Browser Service Display Name = Computer Browser Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = ccEvtMgr Service Display Name = Symantec Event Manager Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon Binary Size = 0 Binary MD5 =
    Service Name = ccSetMgr Service Display Name = Symantec Settings Manager Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon Binary Size = 0 Binary MD5 =
    Service Name = CLTNetCnService Service Display Name = Symantec Lic NetConnect service Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h cltCommon Binary Size = 0 Binary MD5 =
    Service Name = CryptSvc Service Display Name = Cryptographic Services Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = DcomLaunch Service Display Name = DCOM Server Process Launcher Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost -k DcomLaunch Binary Size = 0 Binary MD5 =
    Service Name = Dhcp Service Display Name = DHCP Client Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = Dnscache Service Display Name = DNS Client Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k NetworkService Binary Size = 0 Binary MD5 =
    Service Name = ERSvc Service Display Name = Error Reporting Service Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = Eventlog Service Display Name = Event Log Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\services.exe Binary Size = 108032 Binary MD5 = c6ce6eec82f187615d1002bb3bb50ed4
    Service Name = EventSystem Service Display Name = COM+ Event System Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = FastUserSwitchingCompatibility Service Display Name = Fast User Switching Compatibility Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = helpsvc Service Display Name = Help and Support Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = lanmanserver Service Display Name = Server Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = lanmanworkstation Service Display Name = Workstation Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = LiveUpdate Service Display Name = LiveUpdate Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 3 Service Error Control = 1 Service Binary Path = "C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE" Binary Size = 0 Binary MD5 =
    Service Name = LmHosts Service Display Name = TCP/IP NetBIOS Helper Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 =
    Service Name = Netman Service Display Name = Network Connections Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = Nla Service Display Name = Network Location Awareness (NLA) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = NProtectService Service Display Name = Norton UnErase Protection Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\PROGRA~1\NORTON~2\NORTON~2\NPROTECT.EXE Binary Size = 95832 Binary MD5 = 6e082c64e63f20e4e8946a927fc2be55
    Service Name = NVSvc Service Display Name = NVIDIA Driver Helper Service Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\nvsvc32.exe Binary Size = 65536 Binary MD5 = 320fb49b88dec36032e812a5935be101
    Service Name = PlugPlay Service Display Name = Plug and Play Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\services.exe Binary Size = 108032 Binary MD5 = c6ce6eec82f187615d1002bb3bb50ed4
    Service Name = PolicyAgent Service Display Name = IPSEC Services Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\lsass.exe Binary Size = 13312 Binary MD5 = 84885f9b82f4d55c6146ebf6065d75d2
    Service Name = ProtectedStorage Service Display Name = Protected Storage Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\lsass.exe Binary Size = 13312 Binary MD5 = 84885f9b82f4d55c6146ebf6065d75d2
    Service Name = RasMan Service Display Name = Remote Access Connection Manager Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = RpcSs Service Display Name = Remote Procedure Call (RPC) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost -k rpcss Binary Size = 0 Binary MD5 =
    Service Name = SamSs Service Display Name = Security Accounts Manager Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\lsass.exe Binary Size = 13312 Binary MD5 = 84885f9b82f4d55c6146ebf6065d75d2
    Service Name = Schedule Service Display Name = Task Scheduler Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = sdAuxService Service Display Name = Spyware Doctor Auxiliary Service Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\Program Files\Spyware Doctor\svcntaux.exe Binary Size = 707080 Binary MD5 = fd7687f4bb6cac0e6cfa5479513f488c
    Service Name = sdCoreService Service Display Name = Spyware Doctor Service Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\Program Files\Spyware Doctor\swdsvc.exe Binary Size = 1299024 Binary MD5 = 5b000e790dd9de2902de79d5dc890362
    Service Name = seclogon Service Display Name = Secondary Logon Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = SENS Service Display Name = System Event Notification Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = SharedAccess Service Display Name = Windows Firewall/Internet Connection Sharing (ICS) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = ShellHWDetection Service Display Name = Shell Hardware Detection Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = SLPMONX Service Display Name = SLPMONX Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\slpservice.exe Binary Size = 32256 Binary MD5 = 64e97a69b32d9bda5bf4924526b73c10
    Service Name = srservice Service Display Name = System Restore Service Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
     
  13. Lindee

    Lindee Thread Starter

    Joined:
    Jan 10, 2002
    Messages:
    294
    Cookiegal:
    2 of 3


    Service Name = SSDPSRV Service Display Name = SSDP Discovery Service Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 =
    Service Name = stisvc Service Display Name = Windows Image Acquisition (WIA) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k imgsvc Binary Size = 0 Binary MD5 =
    Service Name = Symantec Core LC Service Display Name = Symantec Core LC Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = "C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe" Binary Size = 0 Binary MD5 =
    Service Name = SymAppCore Service Display Name = Symantec AppCore Service Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 0 Service Binary Path = "C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe" Binary Size = 0 Binary MD5 =
    Service Name = TapiSrv Service Display Name = Telephony Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = TermService Service Display Name = Terminal Services Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost -k DComLaunch Binary Size = 0 Binary MD5 =
    Service Name = Themes Service Display Name = Themes Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = TrkWks Service Display Name = Distributed Link Tracking Client Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = UMWdf Service Display Name = Windows User Mode Driver Framework Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\wdfmgr.exe Binary Size = 38912 Binary MD5 = c81b8635dee0d3ef5f64b3dd643023a5
    Service Name = w32time Service Display Name = Windows Time Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = WebClient Service Display Name = WebClient Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 =
    Service Name = winmgmt Service Display Name = Windows Management Instrumentation Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = wuauserv Service Display Name = Automatic Updates Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    Service Name = WZCSVC Service Display Name = Wireless Zero Configuration Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
    #############################WINLOGON DATA#############################
    <HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY>
    Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain Filepath = C:\WINDOWS\system32\crypt32.dll File Size = 597504 File MD5 = efc958396a7a7ef7e6d4a52b97512e18
    Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet Filepath = C:\WINDOWS\system32\cryptnet.dll File Size = 63488 File MD5 = cad4aa32e7eca00c23cc39c0eb833f9d
    Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll Filepath = C:\WINDOWS\system32\cscdll.dll File Size = 101888 File MD5 = 587729679b4fe04ce06a5c61d6c56dcd
    Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 92672 File MD5 = a599e5e366c1408e48aa5d37882d4e3e
    Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 92672 File MD5 = a599e5e366c1408e48aa5d37882d4e3e
    Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy Filepath = C:\WINDOWS\system32\sclgntfy.dll File Size = 20992 File MD5 = d636fa41e50671160d838ea2dace3330
    Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn Filepath = C:\WINDOWS\system32\WlNotify.dll File Size = 92672 File MD5 = a599e5e366c1408e48aa5d37882d4e3e
    Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 92672 File MD5 = a599e5e366c1408e48aa5d37882d4e3e
    Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon Filepath = C:\WINDOWS\system32\WgaLogon.dll File Size = 702768 File MD5 = 147429092c26d18af550790ac102f32a
    Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 92672 File MD5 = a599e5e366c1408e48aa5d37882d4e3e
    ##########################BROWSER ADD-ON DATA##########################
    <HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar>
    CLSID = {0A5A975E-9781-43D9-821C-82134E97DF87} FilePath = C:\WINDOWS\WCcompbar.dll File Size = 216178 File MD5 = 733feb027a052752417c5734e8286015 Description =
    CLSID = {EF99BD32-C1FB-11D2-892F-0090271D4F88} FilePath = C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll File Size = 439872 File MD5 = 7b662a00373902b6295b3d833ac1e997 Description = 0
    CLSID = {DE9C389F-3316-41A7-809B-AA305ED9D922} FilePath = C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll File Size = 524288 File MD5 = e9419cbe1260d5c38ae67f7a8efa768f Description = AOL Toolbar
    CLSID = {92085AD4-F48A-450D-BD93-B28CC7DF67CE} FilePath = C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll File Size = 546296 File MD5 = fa72d738e4dc4ae3fbd205c482fe1380 Description =
    CLSID = {90222687-F593-4738-B738-FBEE9C7B26DF} FilePath = C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll File Size = 607888 File MD5 = 53f7ef9a5961fde71db2ab9bd5743532 Description = NCO Toolbar
    CLSID = {2318C2B1-4965-11d4-9B18-009027A5CD4F} FilePath = c:\program files\google\googletoolbar4.dll File Size = 2403392 File MD5 = 6319f2d4708dbcae37cfa03da10782c0 Description = 0
    <HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Explorer Bars>
    CLSID = {4D5C8C25-D075-11d0-B416-00C04FB90376} FilePath = C:\WINDOWS\System32\shdocvw.dll File Size = 1494528 File MD5 = c189ccf3f96c7caf7e5460b9b723dbc5
    CLSID = {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} FilePath = C:\WINDOWS\System32\Shdocvw.dll File Size = 1494528 File MD5 = c189ccf3f96c7caf7e5460b9b723dbc5
    <HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars>
    CLSID = {30D02401-6A81-11D0-8274-00C04FD5AE38} FilePath = C:\WINDOWS\System32\browseui.dll File Size = 1023488 File MD5 = ea902275367aae68ecfdf0cbdb73d6e6
    CLSID = {32683183-48a0-441b-a342-7c2a440a9478} FilePath = File Size = 0 File MD5 =
    CLSID = {9404901D-06DA-4B23-A0EE-3EA4F64EC9B3} FilePath = File Size = 0 File MD5 =
    CLSID = {C4EE31F3-4768-11D2-BE5C-00A0C9A83DA1} FilePath = C:\WINDOWS\system32\SHELL32.dll File Size = 8453632 File MD5 = abfcbda41d2bd08baa1b0b2db558df03
    CLSID = {EFA24E61-B078-11D0-89E4-00C04FC9E26E} FilePath = C:\WINDOWS\System32\shdocvw.dll File Size = 1494528 File MD5 = c189ccf3f96c7caf7e5460b9b723dbc5
    CLSID = {EFA24E62-B078-11D0-89E4-00C04FC9E26E} FilePath = C:\WINDOWS\System32\shdocvw.dll File Size = 1494528 File MD5 = c189ccf3f96c7caf7e5460b9b723dbc5
    CLSID = {EFA24E64-B078-11D0-89E4-00C04FC9E26E} FilePath = C:\WINDOWS\System32\shdocvw.dll File Size = 1494528 File MD5 = c189ccf3f96c7caf7e5460b9b723dbc5
    <HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects>
    CLSID = {02478D38-C3F9-4EFB-9B51-7695ECA05670} FilePath = C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll File Size = 439872 File MD5 = 7b662a00373902b6295b3d833ac1e997
    CLSID = {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} FilePath = C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll File Size = 59032 File MD5 = 4ea3a6cd9d20584ffafdb1e47dbf0e20
    CLSID = {1E8A6170-7264-4D0F-BEAE-D42A53123C75} FilePath = C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll File Size = 96936 File MD5 = 27137de322f6f86d23a53d67f3b8948c
    CLSID = {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} FilePath = C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll File Size = 546296 File MD5 = fa72d738e4dc4ae3fbd205c482fe1380
    CLSID = {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} FilePath = C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll File Size = 524288 File MD5 = e9419cbe1260d5c38ae67f7a8efa768f
    CLSID = {AA58ED58-01DD-4d91-8333-CF10577473F7} FilePath = c:\program files\google\googletoolbar4.dll File Size = 2403392 File MD5 = 6319f2d4708dbcae37cfa03da10782c0
    <HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Extensions>
    CLSID = {3369AF0D-62E9-4bda-8103-B4C75499B578} FilePath = File Size = 0 File MD5 =
    CLSID = {5E638779-1818-4754-A595-EF1C63B87A56} FilePath = File Size = 0 File MD5 =
    CLSID = {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} FilePath = File Size = 0 File MD5 =
    CLSID = {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} FilePath = File Size = 0 File MD5 =
    CLSID = {FB5F1910-F110-11d2-BB9E-00C04F795683} FilePath = File Size = 0 File MD5 =
    <HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions>
    CLSID = CmdMapping FilePath = File Size = 0 File MD5 =
    <HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks>
    CLSID = {EA756889-2338-43DB-8F07-D1CA6FB9C90D} FilePath = C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll File Size = 524288 File MD5 = e9419cbe1260d5c38ae67f7a8efa768f Description = AOL Search
    CLSID = {CFBFAE00-17A6-11D0-99CB-00C04FD64497} FilePath = C:\WINDOWS\System32\shdocvw.dll File Size = 1494528 File MD5 = c189ccf3f96c7caf7e5460b9b723dbc5 Description =
    CLSID = {EF99BD32-C1FB-11D2-892F-0090271D4F88} FilePath = C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll File Size = 439872 File MD5 = 7b662a00373902b6295b3d833ac1e997 Description =
    <HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler>
    CLSID = {438755C2-A8BA-11D1-B96B-00A0C90312E1} FilePath = C:\WINDOWS\System32\browseui.dll File Size = 1023488 File MD5 = ea902275367aae68ecfdf0cbdb73d6e6 Description = Browseui preloader
    CLSID = {8C7461EF-2B13-11d2-BE35-3078302C2030} FilePath = C:\WINDOWS\System32\browseui.dll File Size = 1023488 File MD5 = ea902275367aae68ecfdf0cbdb73d6e6 Description = Component Categories cache daemon
    ##########################LSP CHAIN DATA##########################
    <HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WINSOCK2\PARAMETERS>
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001 Filepath = C:\Program Files\Spyware Doctor\FilterLSP.dll File Size = 108112 File MD5 = 156735656d56eaa928aef257d8ee831c
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002 Filepath = C:\Program Files\Spyware Doctor\FilterLSP.dll File Size = 108112 File MD5 = 156735656d56eaa928aef257d8ee831c
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003 Filepath = C:\Program Files\Spyware Doctor\FilterLSP.dll File Size = 108112 File MD5 = 156735656d56eaa928aef257d8ee831c
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004 Filepath = C:\Program Files\Common Files\PC Tools\LSP\PCTLsp.dll File Size = 149072 File MD5 = 6629ad53a19a77dbe2d4633bd65cb82e
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005 Filepath = C:\Program Files\Common Files\PC Tools\LSP\PCTLsp.dll File Size = 149072 File MD5 = 6629ad53a19a77dbe2d4633bd65cb82e
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006 Filepath = C:\Program Files\Common Files\PC Tools\LSP\PCTLsp.dll File Size = 149072 File MD5 = 6629ad53a19a77dbe2d4633bd65cb82e
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000007 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000008 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000009 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000010 Filepath = C:\WINDOWS\system32\rsvpsp.dll File Size = 90112 File MD5 = 90491683abd587c702b16f181ab0d99d
    Sequence Num =










    SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000011 Filepath = C:\WINDOWS\system32\rsvpsp.dll File Size = 90112 File MD5 = 90491683abd587c702b16f181ab0d99d
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000012 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000013 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000014 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000015 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000016 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000017 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 245248 File MD5 = 4e74af063c3271fbea20dd940cfd1184
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000018 Filepath = C:\Program Files\Common Files\PC Tools\LSP\PCTLsp.dll File Size = 149072 File MD5 = 6629ad53a19a77dbe2d4633bd65cb82e
    Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000019 Filepath = C:\Program Files\Spyware Doctor\FilterLSP.dll File Size = 108112 File MD5 = 156735656d56eaa928aef257d8ee831c
    ##########################UNINSTALL DATA##########################
    <HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL>
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\3D Home Architect Deluxe 3.0 DisplayName = 3D Home Architect(r) Deluxe 3.0
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Ad-Aware SE Personal DisplayName = Ad-Aware SE Personal
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\AddressBook
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Atmosphere Player DisplayName = Adobe Atmosphere Player for Acrobat and Adobe Reader
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Photoshop 7.0 DisplayName = Adobe Photoshop 7.0 InstallLocation = C:\Program Files\Adobe\Photoshop 7.0
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\AdobeESD DisplayName = Adobe Download Manager 1.2 (Remove Only)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\AOL Explorer DisplayName = AOL Explorer
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\AOL Instant Messenger DisplayName = AOL Instant Messenger
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\AOL Toolbar DisplayName = AOL Toolbar 2.0
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ArcSoft PhotoMontage 2000 DisplayName = ArcSoft PhotoMontage 2000
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Automap 9.0
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Avery Wizard 2.1 MSW10 DisplayName = Avery® Wizard 2.1 for Microsoft® Word 2002
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Branding
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\CAL DisplayName = Canon Camera Access Library InstallLocation = C:\Program Files\Canon\CAL
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\CameraWindowDVC5 DisplayName = Canon Camera Window DC_DV 5 for ZoomBrowser EX InstallLocation = C:\Program Files\Canon\CameraWindow\CameraWindowDVC
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\CameraWindowDVC6 DisplayName = Canon Camera Window DC_DV 6 for ZoomBrowser EX InstallLocation = C:\Program Files\Canon\CameraWindow\CameraWindowDVC6
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\CameraWindowMC DisplayName = Canon Camera Window MC 6 for ZoomBrowser EX InstallLocation = C:\Program Files\Canon\CameraWindow\CameraWindowMC
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Canon G.726 WMP-Decoder DisplayName = Canon G.726 WMP-Decoder InstallLocation = C:\Program Files\Canon\G726Decoder
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\CNXT_MODEM_PCI_VEN_14F1&DEV_2016&SUBSYS_021913E0 DisplayName = Conexant HSF V92 56K RTAD Speakerphone PCI Modem
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Connection Manager
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\CSCLIB DisplayName = Canon Camera Support Core Library InstallLocation = C:\Program Files\Canon\CSCLIB
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\DDS Physician Referral DisplayName = DDS Physician Referral
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\DirectAnimation
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\DirectDrawEx
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\DiscwareLite DisplayName = DiscwareLite InstallLocation = C:\Program Files\DiscwareLite
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\DXM_Runtime
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\EOS Utility DisplayName = Canon Utilities EOS Utility InstallLocation = C:\Program Files\Canon\EOS Utility
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Fontcore
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Forms Manager Lite DisplayName = Forms Manager Lite
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Google Updater DisplayName = Google Updater
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\HijackThis DisplayName = HijackThis 1.99.1
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Hijackthis_is1 DisplayName = Hijackthis 1.99.1 InstallLocation = C:\Program Files\Hijackthis\
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\hp instant support DisplayName = hp instant support
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ICW
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IE40
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IE4Data
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IE5BAKEX
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IEData
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Inception for Windows DisplayName = Inception for Windows
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield Uninstall Information
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{2DBE41DD-2129-4C65-A3D3-5647236A60F3} DisplayName = Quicken 2005 InstallLocation =
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{538D98C6-CFC9-4BD3-B373-653B7A382CE8} DisplayName = Dell Picture Studio - Image Expert 2000 InstallLocation =
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB834707 DisplayName = Windows XP Hotfix - KB834707
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB867282 DisplayName = Windows XP Hotfix - KB867282
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB870669 DisplayName = Microsoft Data Access Components KB870669
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB873333 DisplayName = Windows XP Hotfix - KB873333
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB873339 DisplayName = Windows XP Hotfix - KB873339
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB883939 DisplayName = Security Update for Windows XP (KB883939)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB884016
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885250 DisplayName = Windows XP Hotfix - KB885250
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885835 DisplayName = Windows XP Hotfix - KB885835
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885836 DisplayName = Windows XP Hotfix - KB885836
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885884 DisplayName = Windows XP Hotfix - KB885884
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB886185 DisplayName = Windows XP Hotfix - KB886185
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB887472 DisplayName = Windows XP Hotfix - KB887472
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB887742 DisplayName = Windows XP Hotfix - KB887742
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB888113 DisplayName = Windows XP Hotfix - KB888113
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB888302 DisplayName = Windows XP Hotfix - KB888302
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890046 DisplayName = Security Update for Windows XP (KB890046)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890047 DisplayName = Windows XP Hotfix - KB890047
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890175 DisplayName = Windows XP Hotfix - KB890175
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890859 DisplayName = Windows XP Hotfix - KB890859
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890923 DisplayName = Windows XP Hotfix - KB890923
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB891781 DisplayName = Windows XP Hotfix - KB891781
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893066 DisplayName = Windows XP Hotfix - KB893066
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893086 DisplayName = Windows XP Hotfix - KB893086
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893756 DisplayName = Security Update for Windows XP (KB893756)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893803 DisplayName = Windows Installer 3.1 (KB893803)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893803v2 DisplayName = Windows Installer 3.1 (KB893803)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB894391 DisplayName = Update for Windows XP (KB894391)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896358 DisplayName = Security Update for Windows XP (KB896358)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896422 DisplayName = Security Update for Windows XP (KB896422)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896423 DisplayName = Security Update for Windows XP (KB896423)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896424 DisplayName = Security Update for Windows XP (KB896424)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896428 DisplayName = Security Update for Windows XP (KB896428)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896688 DisplayName = Security Update for Windows XP (KB896688)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896727 DisplayName = Update for Windows XP (KB896727)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB898458 DisplayName = Security Update for Step By Step Interactive Training (KB898458)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB898461 DisplayName = Update for Windows XP (KB898461)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB899587 DisplayName = Security Update for Windows XP (KB899587)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB899588 DisplayName = Security Update for Windows XP (KB899588)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB899591 DisplayName = Security Update for Windows XP (KB899591)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB900485 DisplayName = Update for Windows XP (KB900485)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB900725 DisplayName = Security Update for Windows XP (KB900725)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB901017 DisplayName = Security Update for Windows XP (KB901017)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB901214 DisplayName = Security Update for Windows XP (KB901214)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB902400 DisplayName = Security Update for Windows XP (KB902400)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB903235 DisplayName = Security Update for Windows XP (KB903235)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB904706 DisplayName = Security Update for Windows XP (KB904706)
     
  14. Lindee

    Lindee Thread Starter

    Joined:
    Jan 10, 2002
    Messages:
    294
    Cookiegal:
    3 of 3

    I hope I got all of this. My Clipboard disappeared again, so I had to cut and paste it in Word. If it doesn't look complete, I saved the doc in case you need me to resend it.

    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB905414 DisplayName = Security Update for Windows XP (KB905414)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB905749 DisplayName = Security Update for Windows XP (KB905749)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB905915 DisplayName = Security Update for Windows XP (KB905915)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB908519 DisplayName = Security Update for Windows XP (KB908519)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB908531 DisplayName = Security Update for Windows XP (KB908531)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB910437 DisplayName = Update for Windows XP (KB910437)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911280 DisplayName = Security Update for Windows XP (KB911280)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911562 DisplayName = Security Update for Windows XP (KB911562)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911564 DisplayName = Security Update for Windows Media Player (KB911564)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911565 DisplayName = Security Update for Windows Media Player 10 (KB911565)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911567 DisplayName = Security Update for Windows XP (KB911567)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB911927 DisplayName = Security Update for Windows XP (KB911927)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB912812 DisplayName = Security Update for Windows XP (KB912812)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB912919 DisplayName = Security Update for Windows XP (KB912919)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB913446 DisplayName = Security Update for Windows XP (KB913446)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB913580 DisplayName = Security Update for Windows XP (KB913580)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB914388 DisplayName = Security Update for Windows XP (KB914388)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB914389 DisplayName = Security Update for Windows XP (KB914389)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB916281 DisplayName = Security Update for Windows XP (KB916281)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB916595 DisplayName = Update for Windows XP (KB916595)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB917159 DisplayName = Security Update for Windows XP (KB917159)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB917344 DisplayName = Security Update for Windows XP (KB917344)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB917422 DisplayName = Security Update for Windows XP (KB917422)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB917734_WMP10 DisplayName = Security Update for Windows Media Player 10 (KB917734)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB917953 DisplayName = Security Update for Windows XP (KB917953)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB918118 DisplayName = Security Update for Windows XP (KB918118)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB918439 DisplayName = Security Update for Windows XP (KB918439)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB918899 DisplayName = Security Update for Windows XP (KB918899)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB919007 DisplayName = Security Update for Windows XP (KB919007)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920213 DisplayName = Security Update for Windows XP (KB920213)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920214 DisplayName = Security Update for Windows XP (KB920214)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920670 DisplayName = Security Update for Windows XP (KB920670)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920683 DisplayName = Security Update for Windows XP (KB920683)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920685 DisplayName = Security Update for Windows XP (KB920685)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB920872 DisplayName = Update for Windows XP (KB920872)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB921398 DisplayName = Security Update for Windows XP (KB921398)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB921883 DisplayName = Security Update for Windows XP (KB921883)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB922582 DisplayName = Update for Windows XP (KB922582)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB922616 DisplayName = Security Update for Windows XP (KB922616)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB922760 DisplayName = Security Update for Windows XP (KB922760)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB922819 DisplayName = Security Update for Windows XP (KB922819)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923191 DisplayName = Security Update for Windows XP (KB923191)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923414 DisplayName = Security Update for Windows XP (KB923414)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923689 DisplayName = Security Update for Windows XP (KB923689)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923694 DisplayName = Security Update for Windows XP (KB923694)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923723 DisplayName = Security Update for Step By Step Interactive Training (KB923723)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB923980 DisplayName = Security Update for Windows XP (KB923980)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB924191 DisplayName = Security Update for Windows XP (KB924191)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB924270 DisplayName = Security Update for Windows XP (KB924270)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB924496 DisplayName = Security Update for Windows XP (KB924496)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB924667 DisplayName = Security Update for Windows XP (KB924667)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB925398_WMP64 DisplayName = Security Update for Windows Media Player 6.4 (KB925398)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB925454 DisplayName = Security Update for Windows XP (KB925454)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB925486 DisplayName = Security Update for Windows XP (KB925486)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB926255 DisplayName = Security Update for Windows XP (KB926255)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB926436 DisplayName = Security Update for Windows XP (KB926436)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB927779 DisplayName = Security Update for Windows XP (KB927779)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB927802 DisplayName = Security Update for Windows XP (KB927802)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB928090 DisplayName = Security Update for Windows XP (KB928090)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB928255 DisplayName = Security Update for Windows XP (KB928255)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB928843 DisplayName = Security Update for Windows XP (KB928843)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB929338 DisplayName = Update for Windows XP (KB929338)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB929969 DisplayName = Security Update for Windows XP (KB929969)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB931836 DisplayName = Update for Windows XP (KB931836)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Links 2003 1.0 DisplayName = Microsoft Links 2003
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\LiveReg DisplayName = LiveReg (Symantec Corporation) InstallLocation = C:\Program Files\Common Files\Symantec Shared\LiveReg
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\LiveUpdate DisplayName = LiveUpdate 3.2 (Symantec Corporation) InstallLocation = "C:\Program Files\Symantec\LiveUpdate"
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\M886903 DisplayName = Microsoft .NET Framework 1.1 Hotfix (KB886903)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\M886906 DisplayName = Microsoft .NET Framework 1.0 Hotfix (KB886906)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Macromedia Shockwave Player DisplayName = Macromedia Shockwave Player
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MGI_PHOTOSUITE_V806 DisplayName = MGI PhotoSuite 8.1 (Remove Only)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft .NET Framework 1.1 (1033) DisplayName = Microsoft .NET Framework 1.1
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft .NET Framework Full v1.0.3705 (1033) DisplayName = Microsoft .NET Framework (English) v1.0.3705
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft Interactive Training
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft NetShow Player 2.0
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft Press Interactive Training DisplayName = Microsoft Interactive Training
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MobileOptionPack
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MovieEditTask DisplayName = Canon MovieEdit Task for ZoomBrowser EX InstallLocation = C:\Program Files\Canon\ZoomBrowser EX\Program
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Mozilla Firefox (2.0.0.1) DisplayName = Mozilla Firefox (2.0.0.1) InstallLocation = C:\Program Files\Mozilla Firefox
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MPlayer2
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-Beta1
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-Beta2
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-KB884016
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-RC1
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-RC2
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30a-KB884016
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI31-Beta
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI31-RC1
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MsJavaVM
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Napuda Technologies, Inc. NutriCounter for PalmOS DisplayName = Napuda Technologies, Inc. NutriCounter for PalmOS
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\NetMeeting
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Norton Spyware Scan provided by Yahoo! DisplayName = Norton Spyware Scan provided by Yahoo!
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\NVIDIA DisplayName = NVIDIA Windows 2000/XP Display Drivers
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\OutlookExpress
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\PCHealth
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\PhotoParade.exe DisplayName = PhotoParade Player
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\PhotoStitch DisplayName = Canon Utilities PhotoStitch InstallLocation = C:\Program Files\Canon\PhotoStitch
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Practice Makers Forms && Letters DisplayName = Practice Makers Forms && Letters
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Quicken WillMaker Plus 2005 DisplayName = Quicken WillMaker Plus 2005
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\QuickTime DisplayName = QuickTime
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\RAW Image Task DisplayName = Canon RAW Image Task for ZoomBrowser EX InstallLocation = C:\Program Files\Canon\RAW Image Task
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\RealJukebox 1.0
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\RealPlayer 6.0 DisplayName = RealPlayer
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\RegCure DisplayName = RegCure 1.2.0.4
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\RemoteCaptureTask DisplayName = Canon RemoteCapture Task for ZoomBrowser EX InstallLocation = C:\Program Files\Canon\CameraWindow\RemoteCaptureTask DC
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\SchedulingAgent
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Sevinst
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\SG2Browser DisplayName = SG2 Browser InstallLocation = "C:\Program Files\SG2"
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Shockwave DisplayName = Shockwave
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ShockwaveFlash DisplayName = Adobe Flash Player 9 ActiveX
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\SkyCaddieDesktop DisplayName = SkyCaddie Desktop InstallLocation = "C:\Program Files\SkyGolf\SkyCaddie Desktop"
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Slp32V4 DisplayName = Smart Label Printer
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Spybot - Search & Destroy_is1 DisplayName = Spybot - Search & Destroy 1.2
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Spyware Doctor DisplayName = Spyware Doctor 5.0 InstallLocation = C:\Program Files\Spyware Doctor\
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\SymSetup.{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B} DisplayName = Norton Internet Security (Symantec Corporation) InstallLocation = C:\Program Files\Norton Internet Security
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\SymSetup.{71E7B3F5-CFAF-4C1E-B494-528E28707937} DisplayName = Norton SystemWorks 2006 (Symantec Corporation) InstallLocation = C:\Program Files\Norton SystemWorks
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer DisplayName = Viewpoint Media Player
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\WebPost DisplayName = Microsoft Web Publishing Wizard 1.52
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\WGA DisplayName = Windows Genuine Advantage Validation Tool (KB892130)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\WgaNotify DisplayName = Windows Genuine Advantage Notifications (KB905474)
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Windows Media Format Runtime DisplayName = Windows Media Format Runtime
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Windows Media Player DisplayName = Windows Media Player 10
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Windows XP Service Pack DisplayName = Windows XP Service Pack 2
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\WinZip DisplayName = WinZip InstallLocation = C:\PROGRA~1\WINZIP\
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Works2002Setup DisplayName = Microsoft Works 2002 Setup Launcher
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Companion DisplayName = Yahoo! Toolbar for Internet Explorer
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Toolbar DisplayName = Yahoo! Toolbar
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\YInstHelper DisplayName = Yahoo! Install Manager
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ZoomBrowser EX DisplayName = Canon Utilities ZoomBrowser EX InstallLocation = C:\Program Files\Canon\ZoomBrowser EX\Program
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{01001202-823E-46CD-A70E-BEE818F97169} DisplayName = Microsoft Encarta Encyclopedia Standard 2002 InstallLocation =
    Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{08082020-2a50-4196-
     
  15. Lindee

    Lindee Thread Starter

    Joined:
    Jan 10, 2002
    Messages:
    294
    Cookiegal:

    Sorry, not sure where my mind was.



    WCcompbar.dll_
    Status: OK
    MD5 733feb027a052752417c5734e8286015
    Packers detected: UPX

    Scan taken on 23 Mar 2007 20:49:01 (GMT)
    AntiVir Found nothing
    ArcaVir Found nothing
    Avast Found nothing
    AVG Antivirus Found nothing
    BitDefender Found nothing
    ClamAV Found nothing
    Dr.Web Found nothing
    F-Prot Antivirus Found nothing
    F-Secure Anti-Virus Found nothing
    Fortinet Found nothing
    Kaspersky Anti-Virus Found nothing
    NOD32 Found nothing
    Norman Virus Control Found nothing
    Panda Antivirus Found nothing
    VirusBuster Found nothing
    VBA32 Found nothing
     
  16. Sponsor

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/553520