Don't panic, everybody. No, it's NOT in Foxfire, it's a nasty little trojan that attaches itself to your internet explorer, whatever you use. I use IE. Yes, always trust your source, and I always trusted Cnet. But I sure don't, anymore. I got it in a codec I downloaded there.
To respond to other suggestions posted recently- Thanks. But I've been searching through my HD and I'm just not finding those files. I had already eliminated some of them, from system32 and I think they re-created themselves, with new names, and I'm having a hard time finding them, now. One thing I worry about: what if I get rid of the darn pop-up, but the downloader is still in there crankin' away? How would I know, for sure....
Still stumped.
If it's that stubborn to clean out, why not just format and get on with it? I would simply do a complete backup of my files and format my computer. Then I would create a ghost image so if it happens again you have a complete and easy restore image.Originally Posted by bluesforbreakfast
Has anyone even tried Hijackthis? There are forums that are dedicated to this. Do a hijackthis scan and post your problem at http://boards.cexx.org/ I am sure this problem has been dealt with effectively before.
Also an online virus and malware scan may be of some help.
http://housecall.trendmicro.com/
http://www.bitdefender.com/scan8/ie.html
-----------®N®----------
あなたをファック
RnR is talking sense why anyone doesn't have a backup image of their drive is beyond me.
*
You must spread some Reputation around before giving it to mfgbypooter again.Originally Posted by mfgbypooter
-----------®N®----------
あなたをファック
ive been using firefox2.0 for the last 3 weeks and i had no problem with this nasty worm,but as soon as install msn messenger it comes back 5 mins after i use it for the 1st time.This is the 2nd time I have suspected this. does anyone else have this idea or is it me just being a bit mad
Thanks
I thought I had waved goodbye to this nasty little shit a few weeks ago. A few minutes ago I went through a spybot S&D search and it identified a cluster called NSIS media extention. It contained 11 files and I'm not whether it was left from remnants left remaining on my system or if it was downloaded with something else I've got over the last few weeks (Can't think of any particular app or file I could link it too though).
I don't use any Mozilla programs so it must have come from somewhere else. (I was warned off Mozilla after McAfee site advisor warned me some downloads on Mozilla containted Spyware or Adware and I would not knowingly infect my PC again and after what I've read in this forum.
I'm hoping that the fact it was identified and simply removed by Spybot S&D is a good sign but obviously I'm not as confident that it is gone for good any longer. I'd advise anyone who hasn't done so already to download and run it to check there are no remnants remaining on their own PCs. This was definitely a different variant to the one I had before, no pop-ups, no real noticeable slowing of computer speed (apart from certain times when a particular IE window would slow down and occupy approx 50% cpu usage which has happened a few times over last few days). It didn't really have any of the characteristics as it did before. I wish i had investigated it a little more before clicking on repair but I was so grateful that the option was offered and after the problems in the past I was too eager to get rid of it ASAP.
I think that from looking at the S&D report it may of just been old references to it in the registry but have pasted the report below so somebody who knows what they are doing can decide that.
It has to be progress that the file is now identified by Spybot, it must have been included in the bundle of S&D updates I just downloaded. I just hope the files don't reappear over the next few days (or worse still loose the NSIS tag altogether so I don't even know it's there).
Here is the S&D report for those who are into that sort of thing. Could someone who knows their stuff let me know if this means I am likely to see it again.
Sorry it's so long but have no idea what you need to see and what you don't - The term keylogger appearing several times in the results cannot be a good thing I wouldn't imagine.
Cheers,
Will keep you posted as to whether I see it again in any other scans.
--- Search result list ---
NSIS Media Extension: Settings (Registry key, fixed)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\App Management\ARPCache\NSISMedia
NSIS Media Extension: Uninstall settings (Registry key, fixed)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Uninstall\NSISMedia
NSIS Media Extension: Settings (Registry key, fixed)
HKEY_LOCAL_MACHINE\SOFTWARE\NSIS\Media
NSIS Media Extension: Type library (Registry key, fixed)
HKEY_CLASSES_ROOT\TypeLib\{2FD65C00-BB88-4471-A7A3-2380A5F6256E}
NSIS Media Extension: Type library (Registry key, fixed)
HKEY_CLASSES_ROOT\TypeLib\{9627ADDF-A27B-4061-8953-FE3654714674}
NSIS Media Extension: Root class (Registry key, fixed)
HKEY_LOCAL_MACHINE\Software\Classes\msidext.clsdll
NSIS Media Extension: Class ID (Registry key, fixed)
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{92ADFC7 6-5C94-4653-A308-E903E6278DD5}
NSIS Media Extension: Interface (Registry key, fixed)
HKEY_CLASSES_ROOT\Interface\{68DA3631-4317-45B2-B0B3-7E4443058CEB}
NSIS Media Extension: Interface (Registry key, fixed)
HKEY_CLASSES_ROOT\Interface\{BFC570B1-B364-4747-BFC8-D40889A94E09}
NSIS Media Extension: Root class (Registry key, fixed)
HKEY_LOCAL_MACHINE\Software\Classes\IndexingServic e.IndexingServiceExt
NSIS Media Extension: Root class (Registry key, fixed)
HKEY_LOCAL_MACHINE\Software\Classes\IndexingServic e.IndexingServiceExt.1
--- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---
2005-05-31 blindman.exe (1.0.0.1)
2005-05-31 SpybotSD.exe (1.4.0.3)
2005-05-31 TeaTimer.exe (1.4.0.2)
2006-10-23 unins000.exe (51.41.0.0)
2005-05-31 Update.exe (1.4.0.0)
2006-02-06 advcheck.dll (1.0.2.0)
2005-05-31 aports.dll (2.1.0.0)
2005-05-31 borlndmm.dll (7.0.4.453)
2005-05-31 delphimm.dll (7.0.4.453)
2005-05-31 SDHelper.dll (1.4.0.0)
2006-02-20 Tools.dll (2.0.0.2)
2005-05-31 UnzDll.dll (1.73.1.1)
2005-05-31 ZipDll.dll (1.73.2.0)
2006-11-17 Includes\Cookies.sbi (*)
2006-10-13 Includes\Dialer.sbi (*)
2006-11-17 Includes\DialerC.sbi (*)
2006-11-03 Includes\Hijackers.sbi (*)
2006-11-17 Includes\HijackersC.sbi (*)
2006-10-27 Includes\Keyloggers.sbi (*)
2006-11-17 Includes\KeyloggersC.sbi (*)
2004-11-29 Includes\LSP.sbi (*)
2006-10-13 Includes\Malware.sbi (*)
2006-11-17 Includes\MalwareC.sbi (*)
2006-10-20 Includes\PUPS.sbi (*)
2006-11-17 Includes\PUPSC.sbi (*)
2006-11-17 Includes\Revision.sbi (*)
2006-10-13 Includes\Security.sbi (*)
2006-11-17 Includes\SecurityC.sbi (*)
2006-10-13 Includes\Spybots.sbi (*)
2006-11-17 Includes\SpybotsC.sbi (*)
2005-02-17 Includes\Tracks.uti
2006-11-17 Includes\Trojans.sbi (*)
2006-11-17 Includes\TrojansC.sbi (*)
--- System information ---
Windows XP (Build: 2600) Service Pack 2
/ .NETFramework / 1.1: Microsoft .NET Framework 1.1 Hotfix (KB886903)
/ .NETFramework / 1.1: Microsoft .NET Framework 1.1 Service Pack 1 (KB867460)
/ MSXML4SP2: FIX: ASP stops responding when calling Response.Redirect to another server using msxml4 sp2
/ Step By Step Interactive Training / SP2: Security Update for Step By Step Interactive Training (KB898458)
/ Windows Media Player 9: Security Update for Windows Media Player 9 (KB917734)
/ Windows XP / SP3: Windows XP Hotfix - KB873339
/ Windows XP / SP3: Windows XP Hotfix - KB885250
/ Windows XP / SP3: Windows XP Hotfix - KB885835
/ Windows XP / SP3: Windows XP Hotfix - KB885836
/ Windows XP / SP3: Windows XP Hotfix - KB885855
/ Windows XP / SP3: Windows XP Hotfix - KB886185
/ Windows XP / SP3: Windows XP Hotfix - KB887472
/ Windows XP / SP3: Windows XP Hotfix - KB888113
/ Windows XP / SP3: Windows XP Hotfix - KB888302
/ Windows XP / SP3: Windows XP Hotfix - KB889673
/ Windows XP / SP3: Security Update for Windows XP (KB890046)
/ Windows XP / SP3: Windows XP Hotfix - KB890859
/ Windows XP / SP3: Windows XP Hotfix - KB891781
/ Windows XP / SP3: Windows XP Hotfix - KB892627
/ Windows XP / SP3: Windows XP Hotfix - KB893056
/ Windows XP / SP3: Security Update for Windows XP (KB893756)
/ Windows XP / SP3: Update for Windows XP (KB894391)
/ Windows XP / SP3: Hotfix for Windows XP (KB896256)
/ Windows XP / SP3: Security Update for Windows XP (KB896358)
/ Windows XP / SP3: Security Update for Windows XP (KB896423)
/ Windows XP / SP3: Security Update for Windows XP (KB896424)
/ Windows XP / SP3: Security Update for Windows XP (KB896428)
/ Windows XP / SP3: Update for Windows XP (KB898461)
/ Windows XP / SP3: Security Update for Windows XP (KB899587)
/ Windows XP / SP3: Security Update for Windows XP (KB899588)
/ Windows XP / SP3: Security Update for Windows XP (KB899591)
/ Windows XP / SP3: Update for Windows XP (KB900485)
/ Windows XP / SP3: Security Update for Windows XP (KB900725)
/ Windows XP / SP3: Security Update for Windows XP (KB901017)
/ Windows XP / SP3: Security Update for Windows XP (KB901214)
/ Windows XP / SP3: Security Update for Windows XP (KB902400)
/ Windows XP / SP3: Security Update for Windows XP (KB904706)
/ Windows XP / SP3: Security Update for Windows XP (KB905414)
/ Windows XP / SP3: Security Update for Windows XP (KB905749)
/ Windows XP / SP3: Hotfix for Windows XP (KB906569)
/ Windows XP / SP3: Security Update for Windows XP (KB908519)
/ Windows XP / SP3: Security Update for Windows XP (KB908531)
/ Windows XP / SP3: Hotfix for Windows XP (KB908673)
/ Windows XP / SP3: Update for Windows XP (KB910437)
/ Windows XP / SP3: Update for Windows XP (KB911280)
/ Windows XP / SP3: Security Update for Windows XP (KB911562)
/ Windows XP / SP3: Security Update for Windows XP (KB911567)
/ Windows XP / SP3: Security Update for Windows XP (KB911927)
/ Windows XP / SP3: Security Update for Windows XP (KB912919)
/ Windows XP / SP3: Update for Windows XP (KB912945)
/ Windows XP / SP3: Security Update for Windows XP (KB913580)
/ Windows XP / SP3: Security Update for Windows XP (KB914388)
/ Windows XP / SP3: Security Update for Windows XP (KB914389)
/ Windows XP / SP3: Security Update for Windows XP (KB916281)
/ Windows XP / SP3: Update for Windows XP (KB916595)
/ Windows XP / SP3: Security Update for Windows XP (KB917159)
/ Windows XP / SP3: Security Update for Windows XP (KB917344)
/ Windows XP / SP3: Security Update for Windows XP (KB917422)
/ Windows XP / SP3: Security Update for Windows XP (KB917953)
/ Windows XP / SP3: Security Update for Windows XP (KB918439)
/ Windows XP / SP3: Security Update for Windows XP (KB918899)
/ Windows XP / SP3: Security Update for Windows XP (KB919007)
/ Windows XP / SP3: Security Update for Windows XP (KB920213)
/ Windows XP / SP3: Security Update for Windows XP (KB920214)
/ Windows XP / SP3: Security Update for Windows XP (KB920670)
/ Windows XP / SP3: Security Update for Windows XP (KB920683)
/ Windows XP / SP3: Security Update for Windows XP (KB920685)
/ Windows XP / SP3: Update for Windows XP (KB920872)
/ Windows XP / SP3: Security Update for Windows XP (KB921398)
/ Windows XP / SP3: Security Update for Windows XP (KB921883)
/ Windows XP / SP3: Update for Windows XP (KB922582)
/ Windows XP / SP3: Security Update for Windows XP (KB922616)
/ Windows XP / SP3: Security Update for Windows XP (KB922760)
/ Windows XP / SP3: Security Update for Windows XP (KB922819)
/ Windows XP / SP3: Security Update for Windows XP (KB923191)
/ Windows XP / SP3: Security Update for Windows XP (KB923414)
/ Windows XP / SP3: Security Update for Windows XP (KB923980)
/ Windows XP / SP3: Security Update for Windows XP (KB924191)
/ Windows XP / SP3: Security Update for Windows XP (KB924270)
/ Windows XP / SP3: Security Update for Windows XP (KB924496)
/ Windows XP / SP3: Security Update for Windows XP (KB925486)
/ Windows XP OOB / SP10: High Definition Audio Driver Package - KB835221
--- Startup entries list ---
Located: HK_LM:Run,
command:
file:
Located: HK_LM:Run, AVG7_CC
command: C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
file: C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
size: 406016
MD5: ed0163acdb2834ac8f53b3265671fb1a
Located: HK_LM:Run, ccApp
command: "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
file: C:\Program Files\Common Files\Symantec Shared\ccApp.exe
size: 58992
MD5: 84ec0b55bcbe872f999acdce58e3f67d
Located: HK_LM:Run, Corel Photo Downloader
command: C:\Program Files\Corel\Corel Photo Album 6\MediaDetect.exe
file: C:\Program Files\Corel\Corel Photo Album 6\MediaDetect.exe
size: 106496
MD5: 3241525ec39dd14312a193cadbf70f75
Located: HK_LM:Run, Dell QuickSet
command: C:\Program Files\Dell\QuickSet\quickset.exe
file: C:\Program Files\Dell\QuickSet\quickset.exe
size: 1032192
MD5: 90753c9e5c84b3ec5c299b554e5a86e3
Located: HK_LM:Run, dla
command: C:\WINDOWS\system32\dla\tfswctrl.exe
file: C:\WINDOWS\system32\dla\tfswctrl.exe
size: 127035
MD5: 2ca827ba68d0cdb5437c40c6f53d7f20
Located: HK_LM:Run, DMXLauncher
command: C:\Program Files\Dell\Media Experience\DMXLauncher.exe
file: C:\Program Files\Dell\Media Experience\DMXLauncher.exe
size: 86016
MD5: 526874efe8d1f0ec1b7bbb87d5c433e6
Located: HK_LM:Run, DVDLauncher
command: "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
file: C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
size: 49152
MD5: fdd5d54d4eacce42b260225863f9a0f0
Located: HK_LM:Run, Google Desktop Search
command: "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
file: C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
size: 169984
MD5: e5a3c50686ea89b1ed8d9c232193a461
Located: HK_LM:Run, igfxhkcmd
command: C:\WINDOWS\system32\hkcmd.exe
file: C:\WINDOWS\system32\hkcmd.exe
size: 77824
MD5: 19d63cf10330b51fd42abb1d4d39d0c4
Located: HK_LM:Run, igfxpers
command: C:\WINDOWS\system32\igfxpers.exe
file: C:\WINDOWS\system32\igfxpers.exe
size: 118784
MD5: 697963452107c59be69a67bee54e3eac
Located: HK_LM:Run, igfxtray
command: C:\WINDOWS\system32\igfxtray.exe
file: C:\WINDOWS\system32\igfxtray.exe
size: 98304
MD5: 45985c1b266666cb7bbac01428ac2fad
Located: HK_LM:Run, IntelWireless
command: "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
file: C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
size: 602182
MD5: da199948bdf65d2ef9109b60ec4621d0
Located: HK_LM:Run, IntelZeroConfig
command: "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
file: C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
size: 667718
MD5: b8c80dccd4ce7cbf1fe8600b68418536
Located: HK_LM:Run, ISUSPM Startup
command: "c:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
file: c:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe
size: 249856
MD5: 9e109b03018763fdcb075ce74547be22
Located: HK_LM:Run, ISUSScheduler
command: "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
file: C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
size: 81920
MD5: 583b7d111304be63d7d9cb65482d2187
Located: HK_LM:Run, iTunesHelper
command: "C:\Program Files\iTunes\iTunesHelper.exe"
file: C:\Program Files\iTunes\iTunesHelper.exe
size: 229952
MD5: ceccc68b54e8e27c93dbede85f160c96
Located: HK_LM:Run, mssSort
command: C:\Program Files\Maxtor\Maxtor Quick Start\msssort.exe
file: C:\Program Files\Maxtor\Maxtor Quick Start\msssort.exe
size: 45056
MD5: f25546c37b16f23f55f559bff5eaead4
Located: HK_LM:Run, Norton Ghost 10.0
command: "C:\Program Files\Norton Ghost\Agent\GhostTray.exe"
file: C:\Program Files\Norton Ghost\Agent\GhostTray.exe
size: 1537696
MD5: 294f5038a9d2ac73a8c6f3888f97fb42
Located: HK_LM:Run, QuickTime Task
command: "C:\Program Files\QuickTime\qttask.exe" -atboottime
file: C:\Program Files\QuickTime\qttask.exe
size: 282624
MD5: d2c900031fd445b5464abb5629388be3
Located: HK_LM:Run, RegistryMechanic
command:
file:
Located: HK_LM:Run, SigmatelSysTrayApp
command: stsystra.exe
file: C:\WINDOWS\stsystra.exe
size: 282624
MD5: ad2506958de1937c16c553c0a1be0572
Located: HK_LM:Run, SunJavaUpdateSched
command: "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
file: C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
size: 49263
MD5: 409c45da1cfbc3fc19eec7cbfe9b2786
Located: HK_LM:Run, SynTPEnh
command: C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
file: C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
size: 761947
MD5: abb85828c394ceacacbc90373c59c529
Located: HK_LM:Run, THGuard
command: "C:\Program Files\TrojanHunter 4.6\THGuard.exe"
file: C:\Program Files\TrojanHunter 4.6\THGuard.exe
size: 1108992
MD5: 9285cd66e2fae62771d38355685b5738
Located: HK_LM:Run, Zone Labs Client
command: "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
file: C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
size: 968696
MD5: 71514e2c74d554f5902dc184046eca3b
Located: HK_CU:Run, DellSupport
command: "C:\Program Files\Dell Support\DSAgnt.exe" /startup
file: C:\Program Files\Dell Support\DSAgnt.exe
size: 389120
MD5: 04361ee0f0d95cde6432d0a2b23abac1
Located: HK_CU:Run, ModemOnHold
command: C:\Program Files\NetWaiting\netWaiting.exe
file: C:\Program Files\NetWaiting\netWaiting.exe
size: 20480
MD5: 676b1d0bfa5ef8005395ab43f33de1f1
Located: HK_CU:Run, MSMSGS
command: "C:\Program Files\Messenger\msmsgs.exe" /background
file: C:\Program Files\Messenger\msmsgs.exe
size: 1694208
MD5: 74e6e96c6f0e2eca4edbb7f7a468f259
Located: HK_CU:Run, Yahoo! Pager
command: "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
file: C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
size: 4650488
MD5: 07d2a268a24d93ff33ffb8419322e370
Located: Startup (common), Adobe Reader Speed Launch.lnk
command: C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
file: C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
size: 29696
MD5: 43362b96870ce8649f4f2ec893da93f0
Located: Startup (common), Digital Line Detect.lnk
command: C:\Program Files\Digital Line Detect\DLG.exe
file: C:\Program Files\Digital Line Detect\DLG.exe
size: 24576
MD5: b66e56733e2cd6a10fda5919625fbf46
Located: System.ini, crypt32chain
command: crypt32.dll
file: crypt32.dll
Located: System.ini, cryptnet
command: cryptnet.dll
file: cryptnet.dll
Located: System.ini, cscdll
command: cscdll.dll
file: cscdll.dll
Located: System.ini, igfxcui
command: igfxdev.dll
file: igfxdev.dll
Located: System.ini, ScCertProp
command: wlnotify.dll
file: wlnotify.dll
Located: System.ini, Schedule
command: wlnotify.dll
file: wlnotify.dll
Located: System.ini, sclgntfy
command: sclgntfy.dll
file: sclgntfy.dll
Located: System.ini, SensLogn
command: WlNotify.dll
file: WlNotify.dll
Located: System.ini, termsrv
command: wlnotify.dll
file: wlnotify.dll
Located: System.ini, WgaLogon
command: WgaLogon.dll
file: WgaLogon.dll
Located: System.ini, wlballoon
command: wlnotify.dll
file: wlnotify.dll
--- Browser helper object list ---
{089FD14D-132B-48FC-8861-0048AE113215} ()
BHO name:
CLSID name:
Path: C:\Program Files\SiteAdvisor\4144\
Long name: SiteAdv.dll
Short name:
Date (created): 06/10/2006 21:09:16
Date (last access): 21/11/2006 22:34:36
Date (last write): 02/10/2006 19:09:40
Filesize: 980568
Attributes: archive
MD5: 1CA5EBBC60B9ADA3D4E12E0FE8CB073E
CRC32: 647DAB1C
Version: 1.7.0.53
{5CA3D70E-1895-11CF-8E15-001234567890} (DriveLetterAccess)
BHO name:
CLSID name: DriveLetterAccess
description: Hewlett-Packard's DLA software
classification: Unknown
known filename: tfswshx.dll
info link:
info source: TonyKlein
Path: C:\WINDOWS\system32\dla\
Long name: tfswshx.dll
Short name:
Date (created): 02/09/2006 10:35:54
Date (last access): 21/11/2006 22:34:36
Date (last write): 06/12/2004 00:05:00
Filesize: 118842
Attributes: archive
MD5: 37943B990D318145D1EFCBEEF8F9566A
CRC32: C6D87067
Version: 1.4.8.0
{9AA2F14F-E956-44B8-8694-A5B615CDF341} (NOW!Imaging)
BHO name:
CLSID name: NOW!Imaging
Path:
Long name: blank
{AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper)
BHO name:
CLSID name: Google Toolbar Helper
description: Google toolbar
classification: Open for discussion
known filename: googletoolbar.dll<br>googletoolbar*.dll<br>(* = number)<br>googletoolbar_en_*.**-big.dll<br>Googletoolbar_en_*.*.**-deleon.dll
info link: http://toolbar.google.com/
info source: TonyKlein
Path: c:\program files\google\
Long name: GoogleToolbar3.dll
Short name: GOOGLE~3.DLL
Date (created): 18/10/2006 19:50:08
Date (last access): 21/11/2006 22:34:36
Date (last write): 12/10/2006 10:38:04
Filesize: 2108480
Attributes: readonly archive
MD5: 4CB9CC5E19F70337BFE200A4DAD58025
CRC32: 07D15995
Version: 4.0.1020.2544
{CA6319C0-31B7-401E-A518-A07C3DB8F777} (CBrowserHelperObject Object)
BHO name:
CLSID name: CBrowserHelperObject Object
Path: C:\Program Files\BAE\
Long name: BAE.dll
Short name:
Date (created): 02/09/2006 10:45:00
Date (last access): 21/11/2006 22:34:38
Date (last write): 29/06/2006 03:41:46
Filesize: 94208
Attributes: archive
MD5: 7100C083D0C180109376C373F862BF6C
CRC32: 6BC60F66
Version: 1.1.0.1
--- ActiveX list ---
{B0781EB7-16EA-49F1-9C1D-9716D88206CF} (IPCAM Object)
DPF name:
CLSID name: IPCAM Object
Installer:
Codebase: http://61.59.37.156/view.cab
Path: C:\WINDOWS\Downloaded Program Files\
Long name: com1024.dll
Short name:
Date (created): 29/09/2006 13:16:48
Date (last access): 21/11/2006 22:24:54
Date (last write): 29/09/2006 13:16:48
Filesize: 270336
Attributes: archive
MD5: E0DFBCC73E50142F46A3160C2BC68E13
CRC32: 98C2340B
Version: 1.0.0.55
{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
DPF name: Java Runtime Environment 1.5.0
CLSID name: Java Plug-in 1.5.0_09
Installer:
Codebase: http://java.sun.com/update/1.5.0/jin...ndows-i586.cab
Path: C:\Program Files\Java\jre1.5.0_09\bin\
Long name: NPJPI150_09.dll
Short name: NPJPI1~1.DLL
Date (created): 12/10/2006 03:10:58
Date (last access): 21/11/2006 01:54:16
Date (last write): 12/10/2006 03:25:44
Filesize: 69746
Attributes: archive
MD5: A3CDEB59B6B8C2EA81B9ED2D3EF4C95E
CRC32: 2A32A9A2
Version: 5.0.90.3
--- Process list ---
PID: 0 ( 0) [System]
PID: 988 ( 4) \SystemRoot\System32\smss.exe
PID: 1036 ( 988) \??\C:\WINDOWS\system32\csrss.exe
PID: 1060 ( 988) \??\C:\WINDOWS\system32\winlogon.exe
PID: 1104 (1060) C:\WINDOWS\system32\services.exe
size: 108032
MD5: C6CE6EEC82F187615D1002BB3BB50ED4
PID: 1116 (1060) C:\WINDOWS\system32\lsass.exe
size: 13312
MD5: 84885F9B82F4D55C6146EBF6065D75D2
PID: 1304 (1104) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 1372 (1104) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 1516 (1104) C:\WINDOWS\System32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 1596 (1104) C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
size: 114753
MD5: F96E450937BAD69FE4804D46829AA5C7
PID: 1872 (1104) C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
size: 540745
MD5: 99647323602BE0E77A9737E6EADA65BA
PID: 1960 (1104) C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
size: 262217
MD5: E876C33293AA5FFA81A1AA28D594712E
PID: 156 (1104) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 460 (1104) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 524 (1104) C:\WINDOWS\system32\ZoneLabs\vsmon.exe
size: 75768
MD5: A9062968DF9419FA45ACF044B4D9F5AC
PID: 1492 (1104) C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
size: 165488
MD5: BB98479C3135C05291D54DEBD7B310D5
PID: 1664 (1104) C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
size: 198256
MD5: 69637EB41F3467DDA6CCCEBA7C320E0A
PID: 1928 (1104) C:\WINDOWS\system32\spoolsv.exe
size: 57856
MD5: DA81EC57ACD4CDC3D4C51CF3D409AF9F
PID: 2036 (1104) C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
size: 343552
MD5: DD4DB777D2BA1E475F75015B90557795
PID: 532 (1104) C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
size: 49664
MD5: 30A14F65DB477DC00A64A5A24E96919C
PID: 616 (1104) C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
size: 322560
MD5: 65278B092960662152A7CF1A2693B617
PID: 680 ( 656) C:\WINDOWS\Explorer.EXE
size: 1032192
MD5: A0732187050030AE399B241436565E64
PID: 708 (1104) C:\WINDOWS\System32\GEARSec.exe
size: 53248
MD5: B6E01969246FCB67470E87E6957EE147
PID: 744 (1104) C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
size: 380928
MD5: 11D8A00C7EFF1AAEC8E8464769C84A3D
PID: 1456 (1104) C:\Program Files\Norton Ghost\Agent\VProSvc.exe
size: 2066072
MD5: 81A8F8A61B5CC7D0A6416DB9AF1BBE85
PID: 1736 (1104) C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
size: 217164
MD5: 6210679582240D54CC7FCC6278CA8B04
PID: 300 (1104) C:\WINDOWS\system32\wdfmgr.exe
size: 38912
MD5: C81B8635DEE0D3EF5F64B3DD643023A5
PID: 2256 ( 680) C:\WINDOWS\system32\hkcmd.exe
size: 77824
MD5: 19D63CF10330B51FD42ABB1D4D39D0C4
PID: 2328 ( 680) C:\WINDOWS\system32\igfxpers.exe
size: 118784
MD5: 697963452107C59BE69A67BEE54E3EAC
PID: 2408 ( 680) C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
size: 49263
MD5: 409C45DA1CFBC3FC19EEC7CBFE9B2786
PID: 2428 (1104) C:\WINDOWS\System32\alg.exe
size: 44544
MD5: F1958FBF86D5C004CF19A5951A9514B7
PID: 2504 ( 680) C:\WINDOWS\stsystra.exe
size: 282624
MD5: AD2506958DE1937C16C553C0A1BE0572
PID: 2524 ( 680) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
size: 761947
MD5: ABB85828C394CEACACBC90373C59C529
PID: 2532 ( 680) C:\Program Files\Dell\QuickSet\quickset.exe
size: 1032192
MD5: 90753C9E5C84B3EC5C299B554E5A86E3
PID: 2548 (1304) C:\WINDOWS\system32\igfxsrvc.exe
size: 159744
MD5: 93084839F7517112829F2A26F486E8CF
PID: 2556 ( 680) C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
size: 667718
MD5: B8C80DCCD4CE7CBF1FE8600B68418536
PID: 2564 ( 680) C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
size: 602182
MD5: DA199948BDF65D2EF9109B60EC4621D0
PID: 2572 ( 680) C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
size: 49152
MD5: FDD5D54D4EACCE42B260225863F9A0F0
PID: 2592 ( 680) C:\Program Files\Dell\Media Experience\DMXLauncher.exe
size: 86016
MD5: 526874EFE8D1F0EC1B7BBB87D5C433E6
PID: 2668 (1104) C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
size: 822424
MD5: B6BF7DD619D045D0F999310882551B7D
PID: 2680 ( 680) C:\WINDOWS\system32\dla\tfswctrl.exe
size: 127035
MD5: 2CA827BA68D0CDB5437C40C6F53D7F20
PID: 2716 ( 680) C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
size: 81920
MD5: 583B7D111304BE63D7D9CB65482D2187
PID: 2732 (1304) C:\WINDOWS\system32\wbem\wmiprvse.exe
size: 218112
MD5: 075EA6C849AB0FE416A3D6DD65C3CF41
PID: 2776 ( 680) C:\Program Files\Common Files\Symantec Shared\ccApp.exe
size: 58992
MD5: 84EC0B55BCBE872F999ACDCE58E3F67D
PID: 3028 ( 680) C:\Program Files\Norton Ghost\Agent\GhostTray.exe
size: 1537696
MD5: 294F5038A9D2AC73A8C6F3888F97FB42
PID: 3108 ( 680) C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
size: 169984
MD5: E5A3C50686EA89B1ED8D9C232193A461
PID: 3264 ( 680) C:\Program Files\Corel\Corel Photo Album 6\MediaDetect.exe
size: 106496
MD5: 3241525EC39DD14312A193CADBF70F75
PID: 3396 ( 680) C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
size: 406016
MD5: ED0163ACDB2834AC8F53B3265671FB1A
PID: 3664 (3108) C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
size: 555008
MD5: A1D6BE93E9FF2A21D6064B0C365C1315
PID: 3660 ( 680) C:\Program Files\QuickTime\qttask.exe
size: 282624
MD5: D2C900031FD445B5464ABB5629388BE3
PID: 3728 ( 680) C:\Program Files\iTunes\iTunesHelper.exe
size: 229952
MD5: CECCC68B54E8E27C93DBEDE85F160C96
PID: 3832 ( 680) C:\Program Files\TrojanHunter 4.6\THGuard.exe
size: 1108992
MD5: 9285CD66E2FAE62771D38355685B5738
PID: 3880 ( 680) C:\Program Files\Maxtor\Maxtor Quick Start\msssort.exe
size: 45056
MD5: F25546C37B16F23F55F559BFF5EAEAD4
PID: 3884 (3108) C:\Program Files\Google\Google Desktop Search\GoogleDesktopDisplay.exe
size: 415744
MD5: 3DF645A2396BDCDD73A5BFF7E9191508
PID: 2744 ( 680) C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
size: 968696
MD5: 71514E2C74D554F5902DC184046ECA3B
PID: 2876 ( 680) C:\Program Files\NetWaiting\netWaiting.exe
size: 20480
MD5: 676B1D0BFA5EF8005395AB43F33DE1F1
PID: 2948 (1104) C:\Program Files\iPod\bin\iPodService.exe
size: 451136
MD5: 216D2B5F6B9B81E5422E67416C7CE91C
PID: 3392 ( 680) C:\Program Files\Dell Support\DSAgnt.exe
size: 389120
MD5: 04361EE0F0D95CDE6432D0A2B23ABAC1
PID: 3512 (1104) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 2424 (1304) C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
size: 397381
MD5: 1CC87053C28DCA5CD94CAC36DC56E7B4
PID: 2992 ( 680) C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
size: 4650488
MD5: 07D2A268A24D93FF33FFB8419322E370
PID: 764 ( 680) C:\Program Files\Digital Line Detect\DLG.exe
size: 24576
MD5: B66E56733E2CD6A10FDA5919625FBF46
PID: 2208 (2716) c:\program files\common files\installshield\updateservice\isuspm.exe
size: 249856
MD5: 9E109B03018763FDCB075CE74547BE22
PID: 3564 (1304) C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe
size: 618496
MD5: DEDA6CFC126FE3B6B35F8870F3E1EC28
PID: 2660 ( 680) C:\Program Files\eMule\emule.exe
size: 5001216
MD5: CD303FAE5324C6C644CA223D395ABF79
PID: 3224 (1304) C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\Go ogleToolbarNotifier.exe
size: 163576
MD5: 1C813135848C379412A036841282A985
PID: 3872 (1104) C:\WINDOWS\System32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 2644 ( 680) C:\Program Files\Internet Explorer\iexplore.exe
size: 93184
MD5: E7484514C0464642BE7B4DC2689354C8
PID: 4032 (2644) C:\Program Files\SiteAdvisor\4144\SiteAdv.exe
size: 35416
MD5: 018F0CADE21CA2737C28A6FDFCD65940
PID: 944 ( 680) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
size: 4393096
MD5: 09CA174A605B480318731E691DC98539
PID: 1228 (2992) C:\Program Files\Internet Explorer\iexplore.exe
size: 93184
MD5: E7484514C0464642BE7B4DC2689354C8
PID: 3568 (2992) C:\Program Files\Internet Explorer\iexplore.exe
size: 93184
MD5: E7484514C0464642BE7B4DC2689354C8
PID: 4 ( 0) System
--- Browser start & search pages list ---
Spybot - Search & Destroy browser pages report, 21/11/2006 22:44:40
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
C:\WINDOWS\system32\blank.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
http://www.google.com
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar
http://www.google.com/ie
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.google.co.uk/
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
http://www.google.co.uk/ig/dell?hl=e...suk&channel=uk
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://www.google.com/ie
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@
http://www.google.com/search?q=%s
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
%SystemRoot%\system32\blank.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
http://www.microsoft.com/isapi/redir...ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
http://www1.euro.dell.com/content/de...=uk&l=en&s=gen
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
http://www1.euro.dell.com/content/de...=uk&l=en&s=gen
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
http://www.google.com/ie
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://www.google.com/ie
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
--- Winsock Layered Service Provider list ---
--- Uninstall list ---
(AddressBook)
AOL You've Got Pictures Screensaver (AOL YGP Screensaver)
uninstall cmd: C:\Program Files\Common Files\AOL\Screensaver\uninst_ygpss.exe
(AudioPlugin.dll)
uninstall cmd: C:\WINDOWS\system32\\MSIEXEC.EXE /x {AB708C9B-97C8-4AC9-899B-DBF226AC9382}
AVG Free Edition (AVG7Uninstall)
uninstall cmd: C:\Program Files\Grisoft\AVG Free\setup.exe /UNINSTALL
AVIcodec (remove only) (AVIcodec)
uninstall cmd: "C:\Program Files\AVIcodec\uninst.exe"
(Branding)
Call of Duty (Call of Duty)
uninstall cmd: C:\PROGRA~1\CALLOF~1\Uninstall\Unwise.exe /u C:\PROGRA~1\CALLOF~1\Uninstall\Install.log
Conexant HDA D110 MDC V.92 Modem (CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_14F10 0C3)
uninstall cmd: C:\Program Files\CONEXANT\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BF A&SUBSYS_14F100C3\HXFSETUP.EXE -U -Idel1028k.inf
(Connection Manager)
(CopyNow.dll)
uninstall cmd: C:\WINDOWS\system32\\MSIEXEC.EXE /x {B12665F4-4E93-4AB4-B7FC-37053B524629}
(DataPlugin.dll)
uninstall cmd: C:\WINDOWS\system32\\MSIEXEC.EXE /x {075473F5-846A-448B-BCB3-104AA1760205}
(DirectAnimation)
(DirectDrawEx)
DivX Content Uploader 1.0.0 (DivX Content Uploader)
install location: C:\Program Files\DivX
uninstall cmd: C:\Program Files\DivX\DivXContentUploaderUninstall.exe /CUPLOADER
publisher: DivX, Inc.
(dlatray.exe)
uninstall cmd: C:\WINDOWS\system32\\MSIEXEC.EXE /x {1206EF92-2E83-4859-ACCB-2048C3CB7DA6}
(DXM_Runtime)
eMule (eMule)
uninstall cmd: "C:\Program Files\eMule\Uninstall.exe"
(Fontcore)
Google Desktop - (Google Desktop)
uninstall cmd: C:\Program Files\Google\Google Desktop Search\GoogleDesktopSetup.exe -uninstall
publisher: Google
help link: http://desktop.google.com/help.html?hl=en
HijackThis 1.99.1 1.99.1 (HijackThis)
uninstall cmd: C:\Documents and Settings\Mark Smout\Local Settings\Temporary Internet Files\Content.IE5\P31NXYF9\hijackthis[1]\HijackThis.exe /uninstall
publisher: Soeperman Enterprises Ltd.
(ICW)
(IE40)
(IE4Data)
(IE5BAKEX)
(IEData)
(InstallShield Uninstall Information)
Maxtor Quick Start 1.01.0011 (InstallShield_{1C875160-7E87-45C6-85C5-4FE2A840A3B8})
version: 16842763
version (major): 1
version (minor): 1
estimated size: 14598
install date: 20061106
install source: C:\WINDOWS\Downloaded Installations\{BADF3F18-5386-4ED7-AE9F-54FE0996ECA9}\
uninstall cmd: C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{1C875160-7E87-45C6-85C5-4FE2A840A3B8} /l1033
publisher: Maxtor
help link: http://www.maxtorkb.com
StuffIt Standard 9.0.0.21 (InstallShield_{40ABF1E0-8B6F-4D32-B343-E19FA2F04B3C})
version: 150994944
version (major): 9
estimated size: 20287
install date: 20061116
install location: C:\Program Files\Allume Systems\StuffIt\
install source: C:\DOCUME~1\MARKSM~1\LOCALS~1\Temp\StuffIt Standard 9.0.0.21 Setup r6\
uninstall cmd: C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\10\INTEL3~1\I Driver.exe /M{40ABF1E0-8B6F-4D32-B343-E19FA2F04B3C}
publisher: Allume Systems, Inc.
contact: Customer Support Department
help link: http://stuffit.producturlsupport.com...?f=iShelp&l=EN
help telephone: (831) 761 6200
MainConcept MJPEG Codec Demo 3.02.0004.0000 (InstallShield_{805A7890-3138-44E4-8DAA-480C55516989})
version: 50462724
version (major): 3
version (minor): 2
estimated size: 108
install date: 20060916
install source: C:\DOCUME~1\MARKSM~1\LOCALS~1\Temp\_is1D7\
uninstall cmd: C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\ID river.exe /M{805A7890-3138-44E4-8DAA-480C55516989} /l1033
publisher: MainConcept AG
contact: [email protected]
help link: http://www.mainconcept.com/support.shtml
High Definition Audio Driver Package - KB835221 20040219.000000 (KB835221WXP)
uninstall cmd: C:\WINDOWS\$NtUninstallKB835221WXP$\spuninst\spuni nst.exe
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=KB835221
Windows XP Hotfix - KB873339 20041117.092459 (KB873339)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=873339
Windows XP Hotfix - KB885250 20050118.202711 (KB885250)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=885250
Windows XP Hotfix - KB885835 20041027.181713 (KB885835)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=885835
Windows XP Hotfix - KB885836 20041028.173203 (KB885836)
uninstall cmd: C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst .exe
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=885836
Windows XP Hotfix - KB885855 20040930.104104 (KB885855)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=885855
Windows XP Hotfix - KB886185 20041021.090540 (KB886185)
uninstall cmd: C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst .exe
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=886185
Windows XP Hotfix - KB887472 20041014.162858 (KB887472)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=887472
Windows XP Hotfix - KB888113 20041116.131036 (KB888113)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=888113
Windows XP Hotfix - KB888302 20041207.111426 (KB888302)
uninstall cmd: C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst .exe
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=888302
Windows XP Hotfix - KB889673 20041116.085848 (KB889673)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=889673
Security Update for Windows XP (KB890046) 1 (KB890046)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB890046$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=890046
Windows XP Hotfix - KB890859 1 (KB890859)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB890859$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=890859
Windows XP Hotfix - KB891781 20050110.165439 (KB891781)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=891781
Windows XP Hotfix - KB892627 20050201.181426 (KB892627)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=892627
Windows XP Hotfix - KB893056 20050126.164313 (KB893056)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=893056
Security Update for Windows XP (KB893756) 1 (KB893756)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB893756$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=893756
Windows Installer 3.1 (KB893803) (KB893803v2)
publisher: Microsoft Corporation
help link: http://go.microsoft.com/fwlink/?LinkId=42467
Update for Windows XP (KB894391) 1 (KB894391)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB894391$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=894391
Hotfix for Windows XP (KB896256) 1 (KB896256)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=896256
Security Update for Windows XP (KB896358) 1 (KB896358)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=896358
Security Update for Windows XP (KB896423) 1 (KB896423)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=896423
Security Update for Windows XP (KB896424) 1 (KB896424)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=896424
Security Update for Windows XP (KB896428) 1 (KB896428)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB896428$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=896428
Security Update for Step By Step Interactive Training (KB898458) 20050502.101010 (KB898458)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB898458$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com/kb/898458
Update for Windows XP (KB898461) 1 (KB898461)
install date: 20060907
uninstall cmd: "C:\WINDOWS\$NtUninstallKB898461$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=898461
Security Update for Windows XP (KB899587) 1 (KB899587)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB899587$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=899587
Security Update for Windows XP (KB899588) 1 (KB899588)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=899588
Security Update for Windows XP (KB899591) 1 (KB899591)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=899591
Update for Windows XP (KB900485) 2 (KB900485)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB900485$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=900485
Security Update for Windows XP (KB900725) 1 (KB900725)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB900725$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=900725
Security Update for Windows XP (KB901017) 1 (KB901017)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB901017$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=901017
Security Update for Windows XP (KB901214) 1 (KB901214)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=901214
Security Update for Windows XP (KB902400) 1 (KB902400)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB902400$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=902400
Security Update for Windows XP (KB904706) 1 (KB904706)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=904706
Security Update for Windows XP (KB905414) 1 (KB905414)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB905414$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=905414
Security Update for Windows XP (KB905749) 1 (KB905749)
install date: 20060913
uninstall cmd: "C:\WINDOWS\$NtUninstallKB905749$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=905749
Hotfix for Windows XP (KB906569) 2 (KB906569)
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=906569
Security Update for Windows XP (KB908519) 1 (KB908519)
install date: 20060902
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=908519
Security Update for Windows XP (KB908531) 1 (KB908531)
install date: 20060902
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=908531
Hotfix for Windows XP (KB908673) 1 (KB908673)
install date: 20060902
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=908673
Update for Windows XP (KB910437) 1 (KB910437)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB910437$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=910437
Update for Windows XP (KB911280) 2 (KB911280)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB911280$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=911280
Security Update for Windows XP (KB911562) 1 (KB911562)
install date: 20060902
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=911562
Security Update for Windows Media Player (KB911564) (KB911564)
install date: 20060902
publisher: Microsoft Corporation
help link: http://support.microsoft.com/?kbid=911564
Security Update for Windows XP (KB911567) 1 (KB911567)
install date: 20060902
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=911567
Security Update for Windows XP (KB911927) 1 (KB911927)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB911927$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=911927
Security Update for Windows XP (KB912919) 1 (KB912919)
install date: 20060902
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=912919
Update for Windows XP (KB912945) 1 (KB912945)
install date: 20060902
uninstall cmd: "C:\WINDOWS\$NtUninstallKB912945$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=912945
Security Update for Windows XP (KB913580) 1 (KB913580)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB913580$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=913580
Security Update for Windows XP (KB914388) 1 (KB914388)
install date: 20060902
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=914388
Security Update for Windows XP (KB914389) 1 (KB914389)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB914389$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=914389
Security Update for Windows XP (KB916281) 1 (KB916281)
install date: 20060902
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=916281
Update for Windows XP (KB916595) 1 (KB916595)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB916595$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=916595
Security Update for Windows XP (KB917159) 1 (KB917159)
install date: 20060902
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=917159
Security Update for Windows XP (KB917344) 1 (KB917344)
install date: 20060902
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=917344
Security Update for Windows XP (KB917422) 1 (KB917422)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB917422$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=917422
Security Update for Windows Media Player 9 (KB917734) (KB917734_WMP9)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB917734_WMP9$\spuninst\sp uninst.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com/?kbid=917734
Security Update for Windows XP (KB917953) 1 (KB917953)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB917953$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=917953
Security Update for Windows XP (KB918439) 1 (KB918439)
install date: 20060902
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=918439
Security Update for Windows XP (KB918899) 1 (KB918899)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB918899$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=918899
Security Update for Windows XP (KB919007) 1 (KB919007)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB919007$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=919007
Security Update for Windows XP (KB920213) 1 (KB920213)
install date: 20061117
uninstall cmd: "C:\WINDOWS\$NtUninstallKB920213$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=920213
Security Update for Windows XP (KB920214) 1 (KB920214)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB920214$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=920214
Security Update for Windows XP (KB920670) 1 (KB920670)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB920670$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=920670
Security Update for Windows XP (KB920683) 1 (KB920683)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB920683$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=920683
Security Update for Windows XP (KB920685) 1 (KB920685)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB920685$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=920685
Update for Windows XP (KB920872) 1 (KB920872)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB920872$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=920872
Security Update for Windows XP (KB921398) 1 (KB921398)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB921398$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=921398
Security Update for Windows XP (KB921883) 1 (KB921883)
install date: 20060902
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=921883
Update for Windows XP (KB922582) 1 (KB922582)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB922582$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=922582
Security Update for Windows XP (KB922616) 1 (KB922616)
install date: 20060915
uninstall cmd: "C:\WINDOWS\$NtUninstallKB922616$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=922616
Security Update for Windows XP (KB922760) 1 (KB922760)
install date: 20061117
uninstall cmd: "C:\WINDOWS\$NtUninstallKB922760$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=922760
Security Update for Windows XP (KB922819) 1 (KB922819)
install date: 20061015
uninstall cmd: "C:\WINDOWS\$NtUninstallKB922819$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=922819
Security Update for Windows XP (KB923191) 1 (KB923191)
install date: 20061015
uninstall cmd: "C:\WINDOWS\$NtUninstallKB923191$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=923191
Security Update for Windows XP (KB923414) 1 (KB923414)
install date: 20061015
uninstall cmd: "C:\WINDOWS\$NtUninstallKB923414$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=923414
Security Update for Windows XP (KB923980) 1 (KB923980)
install date: 20061117
uninstall cmd: "C:\WINDOWS\$NtUninstallKB923980$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=923980
Security Update for Windows XP (KB924191) 1 (KB924191)
install date: 20061015
uninstall cmd: "C:\WINDOWS\$NtUninstallKB924191$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=924191
Security Update for Windows XP (KB924270) 1 (KB924270)
install date: 20061117
uninstall cmd: "C:\WINDOWS\$NtUninstallKB924270$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=924270
Security Update for Windows XP (KB924496) 1 (KB924496)
install date: 20061015
uninstall cmd: "C:\WINDOWS\$NtUninstallKB924496$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=924496
Security Update for Windows XP (KB925486) 1 (KB925486)
install date: 20060929
uninstall cmd: "C:\WINDOWS\$NtUninstallKB925486$\spuninst\spunins t.exe"
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=925486
LimeWire 4.12.6 4.12.6 (LimeWire)
uninstall cmd: "C:\Program Files\LimeWire\uninstall.exe"
publisher: Lime Wire, LLC
help link: http://www.limewire.com/support
LiveReg (Symantec Corporation) 3.1.0 (LiveReg)
install location: C:\Program Files\Common Files\Symantec Shared\LiveReg
uninstall cmd: C:\Program Files\Common Files\Symantec Shared\LiveReg\VcSetup.exe /REMOVE
publisher: Symantec Corporation
LiveUpdate 2.6 (Symantec Corporation) 2.6.14.0 (LiveUpdate)
install location: C:\Program Files\Symantec\LiveUpdate
uninstall cmd: C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE /U
publisher: Symantec Corporation
Microsoft .NET Framework 1.1 Hotfix (KB886903) (M886903)
uninstall cmd: "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Upda tes\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Upda tes\M886903\M886903Uninstall.msp"
McAfee Uninstaller (McAfee Uninstall Utility)
uninstall cmd: C:\PROGRA~1\McAfee.com\Shared\mcappins.exe /v=3 /uninstall=1 /interact=1 /script_proactive=0 /start=c:\PROGRA~1\mcafee.com\agent\uninst\comrem.d ll::uninstall.htm
MainConcept MJPG software codec (Remove Only) (MCMJPG)
uninstall cmd: rundll.exe setupx.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\MCMJPG.INF
Microsoft .NET Framework 1.1 (Microsoft .NET Framework 1.1 (1033))
uninstall cmd: msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
readme: file://C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\1033\ RepairRedist.htm
(Microsoft Interactive Training)
uninstall cmd: C:\WINDOWS\IsUninst.exe -fC:\WINDOWS\orun32.isu
(MobileOptionPack)
(MPlayer2)
(MSC)
MSN (MSNINST)
uninstall cmd: C:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
(NetMeeting)
Direct Show Ogg Vorbis Filter (remove only) (OggDS)
uninstall cmd: "C:\WINDOWS\system32\OggDSuninst.exe"
(OutlookExpress)
(PCHealth)
uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Intel(R) PROSet/Wireless Software 10.1.1.4 (ProInst)
install location: C:\WINDOWS\Installer\iProInst.exe
uninstall cmd: C:\WINDOWS\Installer\iProInst.exe
publisher: Intel Corporation
comments: Intel(R) PROSet/Wireless installation package
contact: Intel Customer Support
help link: http://support.intel.com
RealPlayer Basic (RealPlayer 6.0)
uninstall cmd: C:\Program Files\Common Files\Real\Update\\rnuninst.exe RealNetworks|RealPlayer|6.0
Registry Mechanic 5.0 5.0 (Registry Mechanic_is1)
install location: C:\Program Files\Registry Mechanic2\
uninstall cmd: "C:\Program Files\Registry Mechanic2\unins000.exe"
publisher: PC Tools Pty. Ltd.
help link: http://www.pctools.com/registry-mechanic/support/
(SchedulingAgent)
Adobe Flash Player 9 ActiveX 9 (ShockwaveFlash)
uninstall cmd: C:\WINDOWS\system32\Macromed\Flash\UninstFl.exe -q
publisher: Adobe Systems
help link: http://www.adobe.com/go/flashplayer_support/
Spybot - Search & Destroy 1.4 1.4 (Spybot - Search & Destroy_is1)
install location: C:\Program Files\Spybot - Search & Destroy\
uninstall cmd: "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
publisher: Safer Networking Limited
Learn2 Player (Uninstall Only) (StreetPlugin)
uninstall cmd: C:\Program Files\Learn2.com\StRunner\stuninst.exe
Synaptics Pointing Device Driver 8.2.4.6 (SynTPDeinstKey)
uninstall cmd: rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUnin stall
publisher: Synaptics
TrojanHunter 4.6 4.6 (TrojanHunter_is1)
install location: C:\Program Files\TrojanHunter 4.6\
uninstall cmd: "C:\Program Files\TrojanHunter 4.6\unins000.exe"
publisher: Mischel Internet Security
help link: http://www.misec.net
Viewpoint Media Player (ViewpointMediaPlayer)
uninstall cmd: C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u
Windows Genuine Advantage Notifications (KB905474) 1.5.0540.0 (WgaNotify)
install date: 20060917
publisher: Microsoft Corporation
help link: http://support.microsoft.com?kbid=905474
Windows Media Format Runtime (Windows Media Format Runtime)
uninstall cmd: "C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
WinRAR archiver (WinRAR archiver)
uninstall cmd: C:\Program Files\WinRAR\uninstall.exe
XviD Media Codec 1.1.1 1.1.1 (XviD Media Codec)
uninstall cmd: C:\Program Files\XviD\uninst.exe
Yahoo! Toolbar (Yahoo! Companion)
uninstall cmd: C:\PROGRA~1\Yahoo!\Common\unyt.exe
Yahoo! extras (Yahoo! Customizations)
uninstall cmd: C:\PROGRA~1\Yahoo!\Common\unyext.exe
Yahoo! Internet Mail (Yahoo! Internet Mail)
uninstall cmd: C:\WINDOWS\system32\regsvr32 /u /s C:\PROGRA~1\Yahoo!\Common\ymmapi.dll
Yahoo! Messenger with BT Communicator (Yahoo! Messenger with BT Communicator)
uninstall cmd: C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE /U C:\PROGRA~1\Yahoo!\MESSEN~1\INSTALL.LOG
Yahoo! Toolbar (Yahoo! Toolbar)
Yahoo! Install Manager (YInstHelper)
uninstall cmd: C:\WINDOWS\system32\regsvr32 /u C:\PROGRA~1\Yahoo!\Common\YINSTH~1.DLL
ZoneAlarm 6.5.737.000 (ZoneAlarm)
uninstall cmd: C:\Program Files\Zone Labs\ZoneAlarm\zauninst.exe
publisher: Zone Labs, Inc
help link: C:\Program Files\Zone Labs\ZoneAlarm\Help\zaclients.chm
Dell Network Assistant 3.0.0.0 ({0240BDFB-2995-4A3F-8C96-18D41282B716})
version: 50331648
version (major): 3
install date: 20060902
install location: C:\Program Files\Dell Network Assistant\
uninstall cmd: MsiExec.exe /I{0240BDFB-2995-4A3F-8C96-18D41282B716}
publisher: Dell Inc.
comments: Dell Network Assistant and other home/office solutions
contact: Dell Inc.
help link: http://www.support.dell.com
mSSO 5.74.0000 ({06BE8AFD-A8E2-4B63-BAE7-287016D16ACB})
version: 88735744
version (major): 5
version (minor): 74
estimated size: 300
install date: 20060902
install source: C:\WINDOWS\Installer\iprodata\
uninstall cmd: MsiExec.exe /I{06BE8AFD-A8E2-4B63-BAE7-287016D16ACB}
publisher: Intel Corporation
comments: Your Comments
contact: Customer Support Department
help link: http://www.intel.com/support
help telephone: +1 (800) 538-3373
Sonic RecordNow Data 2.0.0 ({075473F5-846A-448B-BCB3-104AA1760205})
version: 33554432
version (major): 2
install date: 20060902
uninstall cmd: MsiExec.exe /I{075473F5-846A-448B-BCB3-104AA1760205}
publisher: Sonic Solutions
mLogView 5.74.0000 ({0E2B0B41-7E08-4F9F-B21F-41C4133F43B7})
version: 88735744
version (major): 5
version (minor): 74
estimated size: 616
install date: 20060902
install source: C:\WINDOWS\Installer\iprodata\
uninstall cmd: MsiExec.exe /I{0E2B0B41-7E08-4F9F-B21F-41C4133F43B7}
publisher: Intel Corporation
comments: Your Comments
contact: Customer Support Department
help link: http://www.intel.com/support
help telephone: +1 (800) 538-3373
Sonic DLA 4.95 ({1206EF92-2E83-4859-ACCB-2048C3CB7DA6})
version: 73334784
version (major): 4
version (minor): 95
install date: 20060902
uninstall cmd: MsiExec.exe /I{1206EF92-2E83-4859-ACCB-2048C3CB7DA6}
publisher: Sonic Solutions
help link: http://support.sonic.com/
AutoUpdate 1.1 ({18D10072035C4515918F7E37EAFAACFC})
install location: C:\Program Files\DivX
Corel Paint Shop Pro X 10.0 ({1A15507A-8551-4626-915D-3D5FA095CC1B})
version: 167772160
version (major): 10
install date: 20060902
install location: C:\Program Files\Corel\Corel Paint Shop Pro X\
uninstall cmd: MsiExec.exe /I{1A15507A-8551-4626-915D-3D5FA095CC1B}
publisher: Corel Inc
comments: Installs Paint Shop Pro X
contact: Corel Customer Service
help link: http://www.corel.com/support
help telephone: U.S. 1-800-772-6735 Outside U.S. +441628 581601, UK: 0870 774 0202
readme: C:\Program Files\Corel\Corel Paint Shop Pro X\readme.html
Maxtor Quick Start 1.01.0011 ({1C875160-7E87-45C6-85C5-4FE2A840A3B8})
version: 16842763
version (major): 1
version (minor): 1
estimated size: 14598
install date: 20061106
install source: C:\WINDOWS\Downloaded Installations\{BADF3F18-5386-4ED7-AE9F-54FE0996ECA9}\
publisher: Maxtor
help link: http://www.maxtorkb.com
ARTEuro 1.00.0000 ({1D3C662A-F6C6-4767-A788-7AA43A9A1317})
version: 16777216
version (major): 1
install date: 20060902
uninstall cmd: MsiExec.exe /I{1D3C662A-F6C6-4767-A788-7AA43A9A1317}
publisher: Dell
comments: Get Hi-Speed internet
contact: http://support.dell.com
help link: http://support.dell.com
help telephone: http://support.dell.com
Sonic MyDVD LE 6.1.1 ({21657574-BD54-48A2-9450-EB03B2C7FC29})
version: 100728833
version (major): 6
version (minor): 1
install date: 20060902
uninstall cmd: MsiExec.exe /I{21657574-BD54-48A2-9450-EB03B2C7FC29}
publisher: Sonic Solutions
help link: http://support.sonic.com/
Google Toolbar for Internet Explorer ({2318C2B1-4965-11d4-9B18-009027A5CD4F})
uninstall cmd: regsvr32 /u /s "c:\program files\google\googletoolbar3.dll"
mProSafe 9.00.0000 ({23FB368F-1399-4EAC-817C-4B83ECBE3D83})
version: 150994944
version (major): 9
estimated size: 340
install date: 20060902
install source: C:\WINDOWS\Installer\iprodata\
uninstall cmd: MsiExec.exe /I{23FB368F-1399-4EAC-817C-4B83ECBE3D83}
publisher: Intel
comments: Pseudo NCS Install
contact: Customer Support Department
help link: http://www.intel.com
help telephone: 1-555-555-4505
Broadcom Management Programs 8.65.05 ({26E1BFB0-E87E-4696-9F89-B467F01F81E5})
version: 138477573
version (major): 8
version (minor): 65
install date: 20060902
install location: C:\Program Files\Broadcom\
uninstall cmd: MsiExec.exe /I{26E1BFB0-E87E-4696-9F89-B467F01F81E5}
publisher: Broadcom Corporation
comments: Broadcom Advanced Control Suite 2 (BACS)
contact: Dell Customer Support
help link: http://www.support.dell.com
Sonic Update Manager 3.0.0 ({30465B6C-B53F-49A1-9EBA-A3F187AD502E})
version: 50331648
version (major): 3
install date: 20060902
uninstall cmd: MsiExec.exe /I{30465B6C-B53F-49A1-9EBA-A3F187AD502E}
publisher: Sonic Solutions
J2SE Runtime Environment 5.0 Update 6 1.5.0.60 ({3248F0A8-6813-11D6-A77B-00B0D0150060})
version: 17104896
version (major): 1
version (minor): 5
estimated size: 155929
install date: 20060902
install source: C:\Documents and Settings\Owner\Local Settings\Application Data\{3248F0A6-6813-11D6-A77B-00B0D0150060}\
uninstall cmd: MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150060}
publisher: Sun Microsystems, Inc.
contact: http://java.com
help link: http://java.com
readme: C:\Program Files\Java\jre1.5.0_06\README.txt
J2SE Runtime Environment 5.0 Update 9 1.5.0.90 ({3248F0A8-6813-11D6-A77B-00B0D0150090})
version: 17104896
version (major): 1
version (minor): 5
estimated size: 122833
install date: 20061115
install source: http://jdl.sun.com/webapps/download/...windows-i586//
uninstall cmd: MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150090}
publisher: Sun Microsystems, Inc.
contact: http://java.com
help link: http://java.com
readme: C:\Program Files\Java\jre1.5.0_09\README.txt
Norton Ghost 10.0 10.0.0.9528 ({32F720F5-2D0D-4245-A2B0-9EB3CECF8101})
version: 167772160
version (major): 10
estimated size: 87793
install date: 20060902
install location: C:\Program Files\Norton Ghost\
install source: C:\dell\GF010\
uninstall cmd: MsiExec.exe /X{32F720F5-2D0D-4245-A2B0-9EB3CECF8101}
publisher: Symantec
comments: Symantec Inc.
contact: Customer Support Department
help link: http://www.symantec.com/support
help telephone:
readme: "C:\Program Files\Norton Ghost\SHARED\Readme.txt"
WebFldrs XP 9.50.7523 ({350C97B0-3D7C-4EE8-BAA9-00BCB3D54227})
version: 154279267
version (major): 9
version (minor): 50
estimated size: 2472
install date: 20040810
install source: C:\WINDOWS\system32\
publisher: Microsoft Corporation
help link: http://www.microsoft.com/windows
MSXML 4.0 SP2 (KB927978) 4.20.9841.0 ({37477865-A3F1-4772-AD43-AAFC6BCFF99F})
version: 68429425
version (major): 4
version (minor): 20
estimated size: 2625
install date: 20061117
install source: d:\4eb5f44dc8d4ae5f3b9929ce9318e5\
uninstall cmd: MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
publisher: Microsoft Corporation
help link: http://support.microsoft.com/kb/927978
Dell Support 3.2 5.5.2038 ({3846E811-639D-4DE1-844B-30491C0A6C0C})
version: 84215798
version (major): 5
version (minor): 5
install date: 20060902
uninstall cmd: MsiExec.exe /X{3846E811-639D-4DE1-844B-30491C0A6C0C}
publisher: Dell
help link: http://support.dell.com/support/topi...ent?dn=1091989
mIWA 5.74.0000 ({3E9D596A-61D4-4239-BD19-2DB984D2A16F})
version: 88735744
version (major): 5
version (minor): 74
estimated size: 1061
install date: 20060902
install source: C:\WINDOWS\Installer\iprodata\
uninstall cmd: MsiExec.exe /I{3E9D596A-61D4-4239-BD19-2DB984D2A16F}
publisher: Intel Corporation
comments: Your Comments
contact: Customer Support Department
help link: http://www.intel.com/support
help telephone: +1 (800) 538-3373
URL Assistant ({3EE33958-7381-4E7B-A4F3-6E43098E9E9C})
uninstall cmd: regsvr32 /u /s "C:\Program Files\BAE\BAE.dll"
NetWaiting 2.5.23 ({3F92ABBB-6BBF-11D5-B229-002078017FBF})
version (major): 2
version (minor): 5
install location: C:\Program Files\NetWaiting
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ct or.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3F92ABBB-6BBF-11D5-B229-002078017FBF}\setup.exe" -l0x9 ControlPanel
publisher: BVRP Software, Inc
StuffIt Standard 9.0.0.21 ({40ABF1E0-8B6F-4D32-B343-E19FA2F04B3C})
version: 150994944
version (major): 9
estimated size: 20287
install date: 20061116
install location: C:\Program Files\Allume Systems\StuffIt\
install source: C:\DOCUME~1\MARKSM~1\LOCALS~1\Temp\StuffIt Standard 9.0.0.21 Setup r6\
publisher: Allume Systems, Inc.
contact: Customer Support Department
help link: http://stuffit.producturlsupport.com...?f=iShelp&l=EN
help telephone: (831) 761 6200
mHlpDell 5.74.0000 ({49D687E5-6784-431B-A0A2-2F23B8CC5A1B})
version: 88735744
version (major): 5
version (minor): 74
estimated size: 276
install date: 20060902
install source: C:\WINDOWS\Installer\iprodata\
uninstall cmd: MsiExec.exe /I{49D687E5-6784-431B-A0A2-2F23B8CC5A1B}
publisher: Intel
comments: Help Files
contact: Customer Support Department
help link: http://www.intel.com
help telephone: 1-555-555-4505
QuickTime 7.1.3.130 ({55BF0E5F-EA8E-4C13-A8B4-9E4857F5A2DE})
version: 117506051
version (major): 7
version (minor): 1
estimated size: 71799
install date: 20061015
install location: C:\Program Files\QuickTime\
install source: C:\DOCUME~1\MARKSM~1\LOCALS~1\Temp\IXP361.TMP\
uninstall cmd: MsiExec.exe /I{55BF0E5F-EA8E-4C13-A8B4-9E4857F5A2DE}
publisher: Apple Computer, Inc.
contact: AppleCare Support
help link: http://www.apple.com/support/
help telephone: 1-800-275-2273
iTunes 7.0.1.8 ({5878FF02-3B8F-4309-B4E5-0D3DB6F2E8E6})
version: 117440513
version (major): 7
estimated size: 116299
install date: 20061015
install location: C:\Program Files\iTunes\
install source: C:\DOCUME~1\MARKSM~1\LOCALS~1\Temp\IXP361.TMP\
uninstall cmd: MsiExec.exe /I{5878FF02-3B8F-4309-B4E5-0D3DB6F2E8E6}
publisher: Apple Computer, Inc.
contact: AppleCare Support
help link: http://www.apple.com/support/
help telephone: 1-800-275-2273
Tiscali Internet 1.0.0.25 ({58B2B6D3-E5FF-4D16-87AC-52CC5717C7C6})
version: 16777216
version (major): 1
install date: 20060902
install location: C:\Program Files\Tiscali\Tiscali Internet\
uninstall cmd: MsiExec.exe /I{58B2B6D3-E5FF-4D16-87AC-52CC5717C7C6}
publisher: Tiscali
Apple Software Update 1.0.1.1 ({5B433733-BB31-4B40-BCBA-DDED37626641})
version: 16777217
version (major): 1
estimated size: 2432
install date: 20061015
install location: C:\Program Files\Apple Software Update\
install source: C:\DOCUME~1\MARKSM~1\LOCALS~1\Temp\IXP361.TMP\
uninstall cmd: MsiExec.exe /I{5B433733-BB31-4B40-BCBA-DDED37626641}
publisher: Apple Computer, Inc.
contact: AppleCare Support
help link: http://www.apple.com/support/
help telephone: 1-800-275-2273
({62369F2F77534556AEF4C58152E3BDE5})
mWMI 5.74.0000 ({63DB9CCD-2B56-4217-9A3D-507AC78320CA})
version: 88735744
version (major): 5
version (minor): 74
estimated size: 344
install date: 20060902
install source: C:\WINDOWS\Installer\iprodata\
uninstall cmd: MsiExec.exe /I{63DB9CCD-2B56-4217-9A3D-507AC78320CA}
publisher: Intel Corporation
comments: Your Comments
contact: Customer Support Department
help link: http://www.intel.com/support
help telephone: +1 (800) 538-3373
PowerDVD 5.7 ({6811CAA0-BF12-11D4-9EA1-0050BAE317E1})
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ct or.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\setup.exe" -uninstall
Microsoft Works 08.05.0818 ({6D52C408-B09A-4520-9B18-475B81D393F1})
version: 134546226
version (major): 8
version (minor): 5
install date: 20060902
uninstall cmd: MsiExec.exe /I{6D52C408-B09A-4520-9B18-475B81D393F1}
publisher: Microsoft Corporation
comments: Microsoft Works 8.0 installation.
help link: http://go.microsoft.com/fwlink/?LinkId=6831
help telephone:
Dell System Restore 2.00.0000 ({74F7662C-B1DB-489E-A8AC-07A06B24978B})
version: 33554432
version (major): 2
install date: 20060902
publisher: Dell Inc.
comments: N/A
contact: Customer Support Department
help link: http://support.dell.com
help telephone: 1-800-624-9896
6.2.1 ({7585478E9D9B42108671C12F8714CEFE})
install location: C:\Program Files\DivX
uninstall cmd: C:\Program Files\DivX\ConverterUninstall.exe /CONVERTER
publisher: DivX, Inc.
DivX Codec 6.2.5 ({7B63B2922B174135AFC0E1377DD81EC2})
install location: C:\Program Files\DivX
uninstall cmd: C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
publisher: DivX, Inc.
Modem Helper 3.01 ({7F142D56-3326-11D5-B229-002078017FBF})
install location: C:\Program Files\Modem Helper
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ct or.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7F142D56-3326-11D5-B229-002078017FBF}\setup.exe" -l0x9 ControlPanel
publisher: BVRP Software
MainConcept MJPEG Codec Demo 3.02.0004.0000 ({805A7890-3138-44E4-8DAA-480C55516989})
version: 50462724
version (major): 3
version (minor): 2
estimated size: 108
install date: 20060916
install source: C:\DOCUME~1\MARKSM~1\LOCALS~1\Temp\_is1D7\
publisher: MainConcept AG
contact: [email protected]
help link: http://www.mainconcept.com/support.shtml
Intel(R) Graphics Media Accelerator Driver 6.14.10.4446 ({8A708DD8-A5E6-11D4-A706-000629E95E20})
uninstall cmd: RUNDLL32.EXE C:\WINDOWS\system32\ialmrem.dll,UninstallW2KIGfx2I D PCI\VEN_8086&DEV_27A6 PCI\VEN_8086&DEV_27A2
Corel Photo Album 6 6.33 ({8A9B8148-DDD7-448F-BD6C-358386D32354})
version: 102825984
version (major): 6
version (minor): 33
estimated size: 91036
install date: 20060902
uninstall cmd: MsiExec.exe /X{8A9B8148-DDD7-448F-BD6C-358386D32354}
publisher: Corel, Inc.
comments: Installs Corel Photo Album 6
contact: Corel Customer Service
help link: http://www.corel.com/support
help telephone: U.S. 1-800-772-6735 Outside U.S. +441628 581601, UK: 0870 774 0202
DivX Player 6.3.1 ({8ADFC4160D694100B5B8A22DE9DCABD9})
install location: C:\Program Files\DivX
uninstall cmd: C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
publisher: DivXNetworks, Inc.
mPfMgr 5.74.0000 ({8B928BA1-EDEC-4227-A2DA-DD83026C36F5})
version: 88735744
version (major): 5
version (minor): 74
estimated size: 1388
install date: 20060902
install source: C:\WINDOWS\Installer\iprodata\
uninstall cmd: MsiExec.exe /I{8B928BA1-EDEC-4227-A2DA-DD83026C36F5}
publisher: Intel Corporation
comments: Your Comments
contact: Customer Support Department
help link: http://www.intel.com/support
help telephone: +1 (800) 538-3373
WinTasks Trial 5.04 ({8C92D38B-C1DE-490A-B6D1-AAAA8E17DCE2})
version: 84148224
version (major): 5
version (minor): 4
estimated size: 5160
install date: 20061116
install source: C:\Program Files\Common Files\Wise Installation Wizard\
uninstall cmd: MsiExec.exe /X{8C92D38B-C1DE-490A-B6D1-AAAA8E17DCE2}
publisher: Uniblue Systems Ltd
help link: www.liutilities.com/support/
mPfWiz 5.74.0000 ({90B0D222-8C21-4B35-9262-53B042F18AF9})
version: 88735744
version (major): 5
version (minor): 74
estimated size: 784
install date: 20060902
install source: C:\WINDOWS\Installer\iprodata\
uninstall cmd: MsiExec.exe /I{90B0D222-8C21-4B35-9262-53B042F18AF9}
publisher: Intel Corporation
comments: Your Comments
contact: Customer Support Department
help link: http://www.intel.com/support
help telephone: +1 (800) 538-3373
mZConfig 5.74.0000 ({94658027-9F16-4509-BBD7-A59FE57C3023})
version: 88735744
version (major): 5
version (minor): 74
estimated size: 630
install date: 20060902
install source: C:\WINDOWS\Installer\iprodata\
uninstall cmd: MsiExec.exe /I{94658027-9F16-4509-BBD7-A59FE57C3023}
publisher: Intel Corporation
comments: Your Comments
contact: Customer Support Department
help link: http://www.intel.com/support
help telephone: +1 (800) 538-3373
mXML 5.74.0000 ({9CC89556-3578-48DD-8408-04E66EBEF401})
version: 88735744
version (major): 5
version (minor): 74
estimated size: 23731
install date: 20060902
install source: C:\WINDOWS\Installer\iprodata\
uninstall cmd: MsiExec.exe /I{9CC89556-3578-48DD-8408-04E66EBEF401}
publisher: Intel Corporation
comments: Your Comments
contact: Customer Support Department
help link: http://www.intel.com/support
help telephone: +1 (800) 538-3373
Call of Duty - United Offensive 1.00.0000 ({A662E280-64A8-4CF5-8407-13D0808602B3})
version: 16777216
version (major): 1
estimated size: 920052
install date: 20060910
install source: E:\
publisher: Activision
Sonic RecordNow Audio 2.0.0 ({AB708C9B-97C8-4AC9-899B-DBF226AC9382})
version: 33554432
version (major): 2
install date: 20060902
uninstall cmd: MsiExec.exe /I{AB708C9B-97C8-4AC9-899B-DBF226AC9382}
publisher: Sonic Solutions
Dell Media Experience 3.00 ({AC0EE5B0-A8FB-4D0A-AF03-2EDC518F841B})
version: 50331648
version (major): 3
install date: 20060902
uninstall cmd: MsiExec.exe /I{AC0EE5B0-A8FB-4D0A-AF03-2EDC518F841B}
publisher: Dell
Adobe Reader 7.0.8 7.0.8 ({AC76BA86-7AD7-1033-7B44-A70800000002})
version: 117440520
version (major): 7
install date: 20060902
uninstall cmd: MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70800000002}
publisher: Adobe Systems Incorporated
comments:
contact:
help link: http://www.adobe.com/support/main.html
help telephone:
readme: C:\Program Files\Adobe\Acrobat 7.0\Reader\Readme.htm
Sonic RecordNow Copy 2.0.0 ({B12665F4-4E93-4AB4-B7FC-37053B524629})
version: 33554432
version (major): 2
install date: 20060902
uninstall cmd: MsiExec.exe /I{B12665F4-4E93-4AB4-B7FC-37053B524629}
publisher: Sonic Solutions
DivX Converter 6.2.1 ({B13A7C41581B411290FBC0395694E2A9})
install location: C:\Program Files\DivX
uninstall cmd: C:\Program Files\DivX\ConverterUninstall.exe /CONVERTER
publisher: DivX, Inc.
DivX Web Player 1.0.0 ({B7050CBDB2504B34BC2A9CA0A692CC29})
install location: C:\Program Files\DivX
uninstall cmd: C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
publisher: DivX,Inc.
Wanadoo Europe Installer 1.02.008 ({B7AC5A96-C8BC-431C-B661-27A09781DFA8})
version: 16908296
version (major): 1
version (minor): 2
install date: 20060902
install location: C:\Program Files\Wanadoo Europe\
uninstall cmd: MsiExec.exe /X{B7AC5A96-C8BC-431C-B661-27A09781DFA8}
publisher: Wanadoo
QuickSet 7.1.8 ({C5074CC4-0E26-4716-A307-960272A90040})
version: 117506056
install location: C:\Program Files\Dell\QuickSet
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\ 01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C5074CC4-0E26-4716-A307-960272A90040}\setup.exe" -l0x9 APPDRVNT4
Microsoft .NET Framework 1.1 1.1.4322 ({CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1})
version: 16847074
version (major): 1
version (minor): 1
estimated size: 60747
install date: 20060915
install source: C:\DOCUME~1\Owner\LOCALS~1\Temp\IXP000.TMP\
uninstall cmd: MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
publisher: Microsoft
readme: file://C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\1033\ RepairRedist.htm
MCU 1.00.0000 ({D2988E9B-C73F-422C-AD4B-A66EBE257120})
version: 16777216
version (major): 1
estimated size: 624
install date: 20060902
install source: C:\dell\M8192\
uninstall cmd: MsiExec.exe /I{D2988E9B-C73F-422C-AD4B-A66EBE257120}
publisher: Dell
comments: Your Comments
contact: Customer Support Department
help link: http://www.yourcompany.com/help
help telephone: http://support.dell.com/
Search Assist 1.00.0000 ({DF6A589A-7A1A-430C-9FF2-A0BDB42669DC})
version: 16777216
version (major): 1
install date: 20060902
uninstall cmd: MsiExec.exe /X{DF6A589A-7A1A-430C-9FF2-A0BDB42669DC}
publisher: Dell
comments: Search Assist
contact: http://support.dell.com
help link: http://support.dell.com
help telephone: http://support.dell.com
Digital Line Detect 1.15 ({E646DCF0-5A68-11D5-B229-002078017FBF})
version (major): 1
version (minor): 15
install location: C:\Program Files\Digital Line Detect
uninstall cmd: RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ct or.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E646DCF0-5A68-11D5-B229-002078017FBF}\setup.exe" -l0x9 ControlPanel
publisher: BVRP Software, Inc
mCore 5.74.0000 ({E81667C6-2856-46D6-ABEA-6A2F42166779})
version: 88735744
version (major): 5
version (minor): 74
estimated size: 5405
install date: 20060902
install source: C:\WINDOWS\Installer\iprodata\
uninstall cmd: MsiExec.exe /I{E81667C6-2856-46D6-ABEA-6A2F42166779}
publisher: Intel Corporation
comments: Your Comments
contact: Customer Support Department
help link: http://www.intel.com/support
help telephone: +1 (800) 538-3373
mMHouse 5.74.0000 ({F0BFC7EF-9CF8-44EE-91B0-158884CD87C5})
version: 88735744
version (major): 5
version (minor): 74
estimated size: 1416
install date: 20060902
install source: C:\WINDOWS\Installer\iprodata\
uninstall cmd: MsiExec.exe /I{F0BFC7EF-9CF8-44EE-91B0-158884CD87C5}
publisher: Intel Corporation
comments: Your Comments
contact: Customer Support Department
help link: http://www.intel.com/support
help telephone: +1 (800) 538-3373
mDrWiFi 5.74.0000 ({F6090A17-0967-4A8A-B3C3-422A1B514D49})
version: 88735744
version (major): 5
version (minor): 74
estimated size: 366
install date: 20060902
install source: C:\WINDOWS\Installer\iprodata\
uninstall cmd: MsiExec.exe /I{F6090A17-0967-4A8A-B3C3-422A1B514D49}
publisher: Intel Corporation
comments: Your Comments
contact: Customer Support Department
help link: http://www.intel.com/support
help telephone: +1 (800) 538-3373
mWlsSafe 9.00.0000 ({FCA651F3-5BDA-4DDA-9E4A-5D87D6914CC4})
version: 150994944
version (major): 9
estimated size: 344
install date: 20060902
install source: C:\WINDOWS\Installer\iprodata\
uninstall cmd: MsiExec.exe /I{FCA651F3-5BDA-4DDA-9E4A-5D87D6914CC4}
publisher: Intel
comments: Pseudo NCS Install
contact: Customer Support Department
help link: http://www.intel.com
help telephone: 1-555-555-4505
--- System Services ---
Service (registry key): .NET CLR Data
Start: 0
Type: 0
Error Control: 0
Service (registry key): .NET CLR Networking
Start: 0
Type: 0
Error Control: 0
Service (registry key): .NETFramework
Start: 0
Type: 0
Error Control: 0
Service (registry key): Abiosdsk
Start: 4
Type: 1
Error Control: 0
Service (registry key): abp480n5
Display name: abp480n5
Image path: \SystemRoot\system32\DRIVERS\ABP480N5.SYS
Start: 4
Type: 1
Error Control: 1
Service (registry key): ACPI
Display name: Microsoft ACPI Driver
Image path: system32\DRIVERS\ACPI.sys
Image size: 187776
Image MD5: A10C7534F7223F4A73A948967D00E69B
Start: 0
Type: 1
Error Control: 1
Service (registry key): ACPIEC
Start: 4
Type: 1
Error Control: 1
Service (registry key): adpu160m
Display name: adpu160m
Image path: \SystemRoot\system32\DRIVERS\adpu160m.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): aec
Display name: Microsoft Kernel Acoustic Echo Canceller
Image path: system32\drivers\aec.sys
Image size: 142464
Image MD5: 1EE7B434BA961EF845DE136224C30FEC
Start: 3
Type: 1
Error Control: 1
Service (registry key): AegisP
Display name: AEGIS Protocol (IEEE 802.1x) v3.4.10.0
Description: AEGIS Protocol (IEEE 802.1x) v3.4.10.0
Image path: system32\DRIVERS\AegisP.sys
Image size: 21275
Image MD5: 91F3DF93F40A74D222CD166FE95DB633
Start: 2
Type: 1
Error Control: 1
Service (registry key): AFD
Display name: AFD
Description: AFD Networking Support Environment
Image path: \SystemRoot\System32\drivers\afd.sys
Start: 1
Type: 1
Error Control: 1
Service (registry key): agp440
Display name: Intel AGP Bus Filter
Image path: \SystemRoot\system32\DRIVERS\agp440.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): agpCPQ
Display name: Compaq AGP Bus Filter
Image path: \SystemRoot\system32\DRIVERS\agpCPQ.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): Aha154x
Display name: Aha154x
Image path: \SystemRoot\system32\DRIVERS\aha154x.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): aic78u2
Display name: aic78u2
Image path: \SystemRoot\system32\DRIVERS\aic78u2.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): aic78xx
Display name: aic78xx
Image path: \SystemRoot\system32\DRIVERS\aic78xx.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): Alerter
Display name: Alerter
Description: Notifies selected users and computers of administrative alerts. If the service is stopped, programs that use administrative alerts will not receive them. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 4
Type: 32
Error Control: 1
Depends On services: LanmanWorkstation
Service (registry key): ALG
Display name: Application Layer Gateway Service
Description: Provides support for 3rd party protocol plug-ins for Internet Connection Sharing and the Windows Firewall.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\alg.exe
Image size: 44544
Image MD5: F1958FBF86D5C004CF19A5951A9514B7
Start: 3
Type: 16
Error Control: 1
Service (registry key): AliIde
Display name: AliIde
Image path: \SystemRoot\system32\DRIVERS\aliide.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): alim1541
Display name: ALI AGP Bus Filter
Image path: \SystemRoot\system32\DRIVERS\alim1541.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): amdagp
Display name: AMD AGP Bus Filter Driver
Image path: \SystemRoot\system32\DRIVERS\amdagp.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): amsint
Display name: amsint
Image path: \SystemRoot\system32\DRIVERS\amsint.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): APPDRV
Display name: APPDRV
Image path: \SystemRoot\SYSTEM32\DRIVERS\APPDRV.SYS
Start: 1
Type: 1
Error Control: 1
Service (registry key): AppMgmt
Display name: Application Management
Description: Provides software installation services such as Assign, Publish, and Remove.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Service (registry key): Arp1394
Display name: 1394 ARP Client Protocol
Description: 1394 ARP Client Protocol
Image path: system32\DRIVERS\arp1394.sys
Image size: 60800
Image MD5: F0D692B0BFFB46E30EB3CEA168BBC49F
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip
Service (registry key): asc
Display name: asc
Image path: \SystemRoot\system32\DRIVERS\asc.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): asc3350p
Display name: asc3350p
Image path: \SystemRoot\system32\DRIVERS\asc3350p.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): asc3550
Display name: asc3550
Image path: \SystemRoot\system32\DRIVERS\asc3550.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): ASCTRM
Display name: ASCTRM
Start: 2
Type: 1
Error Control: 1
Service (registry key): ASP.NET
Start: 0
Type: 0
Error Control: 0
Service (registry key): ASP.NET_1.1.4322
Start: 0
Type: 0
Error Control: 0
Service (registry key): aspnet_state
Display name: ASP.NET State Service
Description: Provides support for out-of-process session states for ASP.NET. If this service is stopped, out-of-process requests will not be processed. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\Microsoft.NET\Framework\v1.1.4322\asp net_state.exe
Image size: 32768
Image MD5: E1A1206A4FB19B675E947B29CCD25FBA
Start: 3
Type: 16
Error Control: 1
Service (registry key): AsyncMac
Display name: RAS Asynchronous Media Driver
Description: RAS Asynchronous Media Driver
Image path: system32\DRIVERS\asyncmac.sys
Image size: 14336
Image MD5: 02000ABF34AF4C218C35D257024807D6
Start: 3
Type: 1
Error Control: 1
Service (registry key): atapi
Display name: Standard IDE/ESDI Hard Disk Controller
Image path: system32\DRIVERS\atapi.sys
Image size: 95360
Image MD5: CDFE4411A69C224BD1D11B2DA92DAC51
Start: 0
Type: 1
Error Control: 1
Service (registry key): Atdisk
Start: 4
Type: 1
Error Control: 0
Service (registry key): Atmarpc
Display name: ATM ARP Client Protocol
Description: ATM ARP Client Protocol
Image path: system32\DRIVERS\atmarpc.sys
Image size: 59904
Image MD5: EC88DA854AB7D7752EC8BE11A741BB7F
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip
Service (registry key): AudioSrv
Display name: Windows Audio
Description: Manages audio devices for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Depends On services: PlugPlay,RpcSs
Service (registry key): audstub
Display name: Audio Stub Driver
Image path: system32\DRIVERS\audstub.sys
Image size: 3072
Image MD5: D9F724AA26C010A217C97606B160ED68
Start: 3
Type: 1
Error Control: 1
Service (registry key): Avg7Alrt
Display name: AVG7 Alert Manager Server
Object name: LocalSystem
Image path: C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
Image size: 343552
Image MD5: DD4DB777D2BA1E475F75015B90557795
Start: 2
Type: 272
Error Control: 1
Depends On services: RPCSS
Service (registry key): Avg7Core
Display name: AVG7 Kernel
Image path: \SystemRoot\System32\Drivers\avg7core.sys
Start: 1
Type: 1
Error Control: 1
Service (registry key): Avg7RsW
Display name: AVG7 Wrap Driver
Image path: \SystemRoot\System32\Drivers\avg7rsw.sys
Start: 1
Type: 1
Error Control: 1
Service (registry key): Avg7RsXP
Display name: AVG7 Resident Driver XP
Image path: \SystemRoot\System32\Drivers\avg7rsxp.sys
Start: 1
Type: 1
Error Control: 1
Service (registry key): Avg7UpdSvc
Display name: AVG7 Update Service
Object name: LocalSystem
Image path: C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
Image size: 49664
Image MD5: 30A14F65DB477DC00A64A5A24E96919C
Start: 2
Type: 16
Error Control: 1
Depends On services: RPCSS
Service (registry key): AvgClean
Display name: AVG7 Clean Driver
Image path: \SystemRoot\System32\Drivers\avgclean.sys
Start: 1
Type: 1
Error Control: 1
Service (registry key): AVGEMS
Display name: AVG E-mail Scanner
Object name: LocalSystem
Image path: C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
Image size: 322560
Image MD5: 65278B092960662152A7CF1A2693B617
Start: 2
Type: 272
Error Control: 1
Depends On services: RPCSS
Service (registry key): AvgTdi
Display name: AVG Network Redirector
Image path: \SystemRoot\System32\Drivers\avgtdi.sys
Start: 2
Type: 1
Error Control: 1
Service (registry key): BattC
Start: 0
Type: 0
Error Control: 0
Service (registry key): bcm4sbxp
Display name: Broadcom 440x 10/100 Integrated Controller XP Driver
Image path: system32\DRIVERS\bcm4sbxp.sys
Image size: 45312
Image MD5: C768C8A463D32C219CE291645A0621A4
Start: 3
Type: 1
Error Control: 1
Service (registry key): Beep
Start: 1
Type: 1
Error Control: 1
Service (registry key): BITS
Display name: Background Intelligent Transfer Service
Description: Transfers data between clients and servers in the background. If BITS is disabled, features such as Windows Update will not work correctly.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs
Service (registry key): Browser
Display name: Computer Browser
Description: Maintains an updated list of computers on the network and supplies this list to computers designated as browsers. If this service is stopped, this list will not be updated or maintained. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Depends On services: LanmanWorkstation,LanmanServer
Service (registry key): cbidf
Display name: cbidf
Image path: \SystemRoot\system32\DRIVERS\cbidf2k.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): cbidf2k
Start: 4
Type: 1
Error Control: 1
Service (registry key): ccEvtMgr
Display name: Symantec Event Manager
Description: Symantec Event Manager
Object name: LocalSystem
Image path: "C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe"
Image size: 198256
Image MD5: 69637EB41F3467DDA6CCCEBA7C320E0A
Start: 2
Type: 16
Error Control: 0
Depends On services: RPCSS,ccSetMgr
Service (registry key): ccPwdSvc
Display name: Symantec Password Validation
Description: Symantec Password Validation Service
Object name: LocalSystem
Image path: "C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe"
Image size: 79472
Image MD5: C007B1B36C4803A735B30B5AF86D268C
Start: 3
Type: 16
Error Control: 0
Service (registry key): ccSetMgr
Display name: Symantec Settings Manager
Description: Symantec Settings Manager
Object name: LocalSystem
Image path: "C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe"
Image size: 165488
Image MD5: BB98479C3135C05291D54DEBD7B310D5
Start: 2
Type: 16
Error Control: 0
Depends On services: RPCSS
Service (registry key): cd20xrnt
Display name: cd20xrnt
Image path: \SystemRoot\system32\DRIVERS\cd20xrnt.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): Cdaudio
Start: 1
Type: 1
Error Control: 0
Service (registry key): Cdfs
Start: 4
Type: 2
Error Control: 1
Depends On group: "SCSI CDROM Class"
Service (registry key): Cdrom
Display name: CD-ROM Driver
Image path: system32\DRIVERS\cdrom.sys
Image size: 49536
Image MD5: AF9C19B3100FE010496B1A27181FBF72
Start: 1
Type: 1
Error Control: 1
Depends On group: "SCSI miniport"
Service (registry key): Changer
Start: 1
Type: 1
Error Control: 0
Service (registry key): CiSvc
Display name: Indexing Service
Description: Indexes contents and properties of files on local and remote computers; provides rapid access to files through flexible querying language.
Object name: LocalSystem
Image path: %SystemRoot%\system32\cisvc.exe
Image size: 5632
Image MD5: 3192BD04D032A9C4A85A3278C268A13A
Start: 3
Type: 288
Error Control: 1
Depends On services: RPCSS
Service (registry key): ClipSrv
Display name: ClipBook
Description: Enables ClipBook Viewer to store information and share it with remote computers. If the service is stopped, ClipBook Viewer will not be able to share information with remote computers. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\system32\clipsrv.exe
Image size: 33280
Image MD5: C8DEC22C4137D7A90F8BDF41CA4B82AE
Start: 4
Type: 16
Error Control: 1
Depends On services: NetDDE
Service (registry key): CmBatt
Display name: Microsoft ACPI Control Method Battery Driver
Image path: system32\DRIVERS\CmBatt.sys
Image size: 14080
Image MD5: 4266BE808F85826AEDF3C64C1E240203
Start: 3
Type: 1
Error Control: 1
Service (registry key): CmdIde
Display name: CmdIde
Image path: \SystemRoot\system32\DRIVERS\cmdide.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): Compbatt
Display name: Microsoft Composite Battery Driver
Image path: system32\DRIVERS\compbatt.sys
Image size: 9344
Image MD5: DF1B1A24BF52D0EBC01ED4ECE8979F50
Start: 0
Type: 1
Error Control: 1
Service (registry key): COMSysApp
Display name: COM+ System Application
Description: Manages the configuration and tracking of Component Object Model (COM)+-based components. If the service is stopped, most COM+-based components will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
Image size: 5120
Image MD5: DD87DB7387B9EB441C5674888A0D840C
Start: 3
Type: 16
Error Control: 1
Depends On services: rpcss
Service (registry key): ContentFilter
Start: 0
Type: 0
Error Control: 0
Service (registry key): ContentIndex
Start: 0
Type: 0
Error Control: 0
Service (registry key): Cpqarray
Display name: Cpqarray
Image path: \SystemRoot\system32\DRIVERS\cpqarray.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): CryptSvc
Display name: Cryptographic Services
Description: Provides three management services: Catalog Database Service, which confirms the signatures of Windows files; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs
Service (registry key): dac2w2k
Display name: dac2w2k
Image path: \SystemRoot\system32\DRIVERS\dac2w2k.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): dac960nt
Display name: dac960nt
Image path: \SystemRoot\system32\DRIVERS\dac960nt.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): DcomLaunch
Display name: DCOM Server Process Launcher
Description: Provides launch functionality for DCOM services.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost -k DcomLaunch
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Service (registry key): Dhcp
Display name: DHCP Client
Description: Manages network configuration by registering and updating IP addresses and DNS names.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Depends On services: Tcpip,Afd,NetBT
Service (registry key): Disk
Display name: Disk Driver
Image path: system32\DRIVERS\disk.sys
Image size: 36352
Image MD5: 00CA44E4534865F8A3B64F7C0984BFF0
Start: 0
Type: 1
Error Control: 1
Depends On group: "SCSI miniport"
Service (registry key): dmadmin
Display name: Logical Disk Manager Administrative Service
Description: Configures hard disk drives and volumes. The service only runs for configuration processes and then stops.
Object name: LocalSystem
Image path: %SystemRoot%\System32\dmadmin.exe /com
Image size: 224768
Image MD5: 554C7CB178FE3BD12450B81AD63ADBC3
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs,PlugPlay,DmServer
Service (registry key): dmboot
Image path: System32\drivers\dmboot.sys
Image size: 799744
Image MD5: C0FBB516E06E243F0CF31F597E7EBF7D
Start: 4
Type: 1
Error Control: 1
Service (registry key): dmio
Image path: System32\drivers\dmio.sys
Image size: 153344
Image MD5: F5E7B358A732D09F4BCF2824B88B9E28
Start: 4
Type: 1
Error Control: 1
Service (registry key): dmload
Image path: System32\drivers\dmload.sys
Image size: 5888
Image MD5: E9317282A63CA4D188C0DF5E09C6AC5F
Start: 4
Type: 1
Error Control: 1
Service (registry key): dmserver
Display name: Logical Disk Manager
Description: Detects and monitors new hard disk drives and sends disk volume information to Logical Disk Manager Administrative Service for configuration. If this service is stopped, dynamic disk status and configuration information may become out of date. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs,PlugPlay
Service (registry key): DMusic
Display name: Microsoft Kernel DLS Syntheiszer
Image path: system32\drivers\DMusic.sys
Image size: 52864
Image MD5: A6F881284AC1150E37D9AE47FF601267
Start: 3
Type: 1
Error Control: 1
Service (registry key): Dnscache
Display name: DNS Client
Description: Resolves and caches Domain Name System (DNS) names for this computer. If this service is stopped, this computer will not be able to resolve DNS names and locate Active Directory domain controllers. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\system32\svchost.exe -k NetworkService
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Depends On services: Tcpip
Service (registry key): dpti2o
Display name: dpti2o
Image path: \SystemRoot\system32\DRIVERS\dpti2o.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): drmkaud
Display name: Microsoft Kernel DRM Audio Descrambler
Image path: system32\drivers\drmkaud.sys
Image size: 2944
Image MD5: 1ED4DBBAE9F5D558DBBA4CC450E3EB2E
Start: 3
Type: 1
Error Control: 1
Service (registry key): drvmcdb
Image path: system32\drivers\drvmcdb.sys
Image size: 87488
Image MD5: E814854E6B246CCF498874839AB64D77
Start: 0
Type: 1
Error Control: 0
Service (registry key): drvncdb
Start: 0
Type: 0
Error Control: 0
Service (registry key): drvnddm
Image path: system32\drivers\drvnddm.sys
Image size: 40480
Image MD5: EE83A4EBAE70BC93CF14879D062F548B
Start: 2
Type: 2
Error Control: 0
Service (registry key): DSproct
Display name: DSproct
Image path: \??\C:\Program Files\Dell Support\GTAction\triggers\DSproct.sys
Image size: 4864
Image MD5: 2AC2372FFAD9ADC85672CC8E8AE14BE9
Start: 3
Type: 1
Error Control: 1
Service (registry key): E100B
Display name: Intel(R) PRO Adapter Driver
Image path: system32\DRIVERS\e100b325.sys
Image size: 117760
Image MD5: 3FCA03CBCA11269F973B70FA483C88EF
Start: 3
Type: 1
Error Control: 1
Service (registry key): ERSvc
Display name: Error Reporting Service
Description: Allows error reporting for services and applictions running in non-standard environments.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 0
Depends On services: RpcSs
Service (registry key): Eventlog
Display name: Event Log
Description: Enables event log messages issued by Windows-based programs and components to be viewed in Event Viewer. This service cannot be stopped.
Object name: LocalSystem
Image path: %SystemRoot%\system32\services.exe
Image size: 108032
Image MD5: C6CE6EEC82F187615D1002BB3BB50ED4
Start: 2
Type: 32
Error Control: 1
Service (registry key): EventSystem
Display name: COM+ Event System
Description: Supports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: C:\WINDOWS\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Depends On services: RPCSS
Service (registry key): EvtEng
Display name: Intel(R) PROSet/Wireless Event Log
Description: Manages the event trace messages for all the components of Intel(R) PROSet/Wireless software.
Object name: LocalSystem
Image path: C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
Image size: 114753
Image MD5: F96E450937BAD69FE4804D46829AA5C7
Start: 2
Type: 16
Error Control: 1
Depends On services: RPCSS
Service (registry key): Fastfat
Start: 4
Type: 2
Error Control: 1
Service (registry key): FastUserSwitchingCompatibility
Display name: Fast User Switching Compatibility
Description: Provides management for applications that require assistance in a multiple user environment.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Depends On services: TermService
Service (registry key): Fax
Display name: Fax
Description: Enables you to send and receive faxes, utilizing fax resources available on this computer or on the network.
Object name: LocalSystem
Image path: %systemroot%\system32\fxssvc.exe
Image size: 267776
Image MD5: FCBD571FA0EE8DC238944AE5FAB74461
Start: 2
Type: 16
Error Control: 1
Depends On services: TapiSrv,RpcSs,PlugPlay,Spooler
Service (registry key): Fdc
Display name: Floppy Disk Controller Driver
Image path: system32\DRIVERS\fdc.sys
Image size: 27392
Image MD5: CED2E8396A8838E59D8FD529C680E02C
Start: 3
Type: 1
Error Control: 1
Service (registry key): Fips
Start: 1
Type: 1
Error Control: 1
Service (registry key): Flpydisk
Display name: Floppy Disk Driver
Image path: system32\DRIVERS\flpydisk.sys
Image size: 20480
Image MD5: 0DD1DE43115B93F4D85E889D7A86F548
Start: 3
Type: 1
Error Control: 1
Service (registry key): FltMgr
Display name: FltMgr
Description: File System Filter Manager Driver
Image path: system32\DRIVERS\fltMgr.sys
Image size: 128896
Image MD5: 3D234FB6D6EE875EB009864A299BEA29
Start: 0
Type: 2
Error Control: 1
Service (registry key): Fs_Rec
Start: 1
Type: 8
Error Control: 0
Service (registry key): Ftdisk
Display name: Volume Manager Driver
Image path: system32\DRIVERS\ftdisk.sys
Image size: 125056
Image MD5: 6AC26732762483366C3969C9E4D2259D
Start: 0
Type: 1
Error Control: 1
Service (registry key): fwdrv
Display name: Firewall Driver
Image path: \SystemRoot\system32\drivers\fwdrv.sys
Start: 1
Type: 1
Error Control: 1
Service (registry key): FWDRV_PROTOCOL
Start: 0
Type: 0
Error Control: 0
Service (registry key): GearAspiWDM
Display name: GearAspiWDM
Start: 1
Type: 1
Error Control: 1
Service (registry key): GEARSecurity
Object name: LocalSystem
Image path: %SystemRoot%\System32\GEARSec.exe
Image size: 53248
Image MD5: B6E01969246FCB67470E87E6957EE147
Start: 2
Type: 16
Error Control: 0
Service (registry key): Gpc
Display name: Generic Packet Classifier
Description: Generic Packet Classifier
Image path: system32\DRIVERS\msgpc.sys
Image size: 35072
Image MD5: C0F1D4A21DE5A415DF8170616703DEBF
Start: 3
Type: 1
Error Control: 1
Service (registry key): HDAudBus
Display name: Microsoft UAA Bus Driver for High Definition Audio
Image path: system32\DRIVERS\HDAudBus.sys
Image size: 137728
Image MD5: E31363D186B3E1D7C4E9117884A6AEE5
Start: 3
Type: 1
Error Control: 1
Service (registry key): helpsvc
Display name: Help and Support
Description: Enables Help and Support Center to run on this computer. If this service is stopped, Help and Support Center will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS
Service (registry key): HidServ
Display name: Human Interface Device Access
Description: Enables generic input access to Human Interface Devices (HID), which activates and maintains the use of predefined hot buttons on keyboards, remote controls, and other multimedia devices. If this service is stopped, hot buttons controlled by this service will no longer function. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 4
Type: 32
Error Control: 1
Depends On services: RpcSs
Service (registry key): hnmwrlspkt
Display name: HomeNet Manager Wireless Protocol
Description: HomeNet Manager Wireless Protocol
Image path: system32\DRIVERS\hnm_wrls_pkt.sys
Image size: 13696
Image MD5: CABBA915F11FF2013C550BB1A9B977DF
Start: 2
Type: 1
Error Control: 1
Service (registry key): hpn
Display name: hpn
Image path: \SystemRoot\system32\DRIVERS\hpn.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): HSFHWAZL
Image path: system32\DRIVERS\HSFHWAZL.sys
Image size: 201600
Image MD5: 1C8CAA80E91FB71864E9426F9EED048D
Start: 3
Type: 1
Error Control: 0
Service (registry key): HSF_DPV
Image path: system32\DRIVERS\HSF_DPV.sys
Image size: 1035008
Image MD5: 698204D9C2832E53633E53A30A53FC3D
Start: 3
Type: 1
Error Control: 0
Service (registry key): HTTP
Display name: HTTP
Description: This service implements the hypertext transfer protocol (HTTP). If this service is disabled, any services that explicitly depend on it will fail to start.
Image path: System32\Drivers\HTTP.sys
Image size: 262784
Image MD5: CB77BB47E67E84DEB17BA29632501730
Start: 3
Type: 1
Error Control: 1
Service (registry key): HTTPFilter
Display name: HTTP SSL
Description: This service implements the secure hypertext transfer protocol (HTTPS) for the HTTP service, using the Secure Socket Layer (SSL). If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k HTTPFilter
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Depends On services: HTTP
Service (registry key): i2omgmt
Start: 1
Type: 1
Error Control: 1
Service (registry key): i2omp
Display name: i2omp
Image path: \SystemRoot\system32\DRIVERS\i2omp.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): i8042prt
Display name: i8042 Keyboard and PS/2 Mouse Port Driver
Image path: system32\DRIVERS\i8042prt.sys
Image size: 52736
Image MD5: 5502B58EEF7486EE6F93F3F164DCB808
Start: 1
Type: 1
Error Control: 1
Service (registry key): ialm
Image path: system32\DRIVERS\ialmnt5.sys
Image size: 1364574
Image MD5: CC449157474D5E43DAEA7E20F52C635A
Start: 3
Type: 1
Error Control: 0
Service (registry key): Imapi
Display name: CD-Burning Filter Driver
Image path: system32\DRIVERS\imapi.sys
Image size: 41856
Image MD5: F8AA320C6A0409C0380E5D8A99D76EC6
Start: 1
Type: 1
Error Control: 1
Service (registry key): ImapiService
Display name: IMAPI CD-Burning COM Service
Description: Manages CD recording using Image Mastering Applications Programming Interface (IMAPI). If this service is stopped, this computer will be unable to record CDs. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: C:\WINDOWS\system32\imapi.exe
Image size: 150016
Image MD5: FA788520BCAC0F5D9D5CDE5615C0D931
Start: 3
Type: 16
Error Control: 1
Service (registry key): inetaccs
Start: 0
Type: 0
Error Control: 0
Service (registry key): ini910u
Display name: ini910u
Image path: \SystemRoot\system32\DRIVERS\ini910u.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): Inport
Start: 0
Type: 0
Error Control: 0
Service (registry key): IntelIde
Display name: IntelIde
Image path: \SystemRoot\system32\DRIVERS\intelide.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): intelppm
Display name: Intel Processor Driver
Image path: system32\DRIVERS\intelppm.sys
Image size: 36096
Image MD5: 279FB78702454DFF2BB445F238C048D2
Start: 1
Type: 1
Error Control: 1
Service (registry key): Ip6Fw
Display name: IPv6 Windows Firewall Driver
Description: Provides intrusion prevention service for a home or small office network.
Image path: system32\DRIVERS\Ip6Fw.sys
Image size: 29056
Image MD5: 4448006B6BC60E6C027932CFC38D6855
Start: 3
Type: 1
Error Control: 1
Service (registry key): IpFilterDriver
Display name: IP Traffic Filter Driver
Description: IP Traffic Filter Driver
Image path: System32\DRIVERS\ipfltdrv.sys
Image size: 32896
Image MD5: 731F22BA402EE4B62748ADAF6363C182
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip
Service (registry key): IpInIp
Display name: IP in IP Tunnel Driver
Description: IP in IP Tunnel Driver
Image path: system32\DRIVERS\ipinip.sys
Image size: 20992
Image MD5: E1EC7F5DA720B640CD8FB8424F1B14BB
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip
Service (registry key): IpNat
Display name: IP Network Address Translator
Description: IP Network Address Translator
Image path: system32\DRIVERS\ipnat.sys
Image size: 134912
Image MD5: E2168CBC7098FFE963C6F23F472A3593
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip
Service (registry key): iPod Service
Display name: iPod Service
Description: iPod hardware management services
Object name: LocalSystem
Image path: "C:\Program Files\iPod\bin\iPodService.exe"
Image size: 451136
Image MD5: 216D2B5F6B9B81E5422E67416C7CE91C
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS
Service (registry key): IPSec
Display name: IPSEC driver
Description: IPSEC driver
Image path: system32\DRIVERS\ipsec.sys
Image size: 74752
Image MD5: 64537AA5C003A6AFEEE1DF819062D0D1
Start: 1
Type: 1
Error Control: 1
Service (registry key): IRENUM
Display name: IR Enumerator Service
Image path: system32\DRIVERS\irenum.sys
Image size: 11264
Image MD5: 50708DAA1B1CBB7D6AC1CF8F56A24410
Start: 3
Type: 1
Error Control: 1
Service (registry key): ISAPISearch
Start: 0
Type: 0
Error Control: 0
Service (registry key): isapnp
Display name: PnP ISA/EISA Bus Driver
Image path: system32\DRIVERS\isapnp.sys
Image size: 35840
Image MD5: E504F706CCB699C2596E9A3DA1596E87
Start: 0
Type: 1
Error Control: 3
Service (registry key): Kbdclass
Display name: Keyboard Class Driver
Image path: system32\DRIVERS\kbdclass.sys
Image size: 24576
Image MD5: EBDEE8A2EE5393890A1ACEE971C4C246
Start: 1
Type: 1
Error Control: 1
Service (registry key): khips
Display name: Kerio HIPS Driver
Image path: \SystemRoot\system32\drivers\khips.sys
Start: 1
Type: 1
Error Control: 1
Service (registry key): kmixer
Display name: Microsoft Kernel Wave Audio Mixer
Image path: system32\drivers\kmixer.sys
Image size: 172416
Image MD5: BA5DEDA4D934E6288C2F66CAF58D2562
Start: 3
Type: 1
Error Control: 1
Service (registry key): KPF4
Display name: Sunbelt Kerio Personal Firewall 4
Description: Sunbelt Kerio Personal Firewall Engine
Object name: LocalSystem
Image path: "C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe"
Start: 2
Type: 272
Error Control: 1
Service (registry key): KSecDD
Start: 0
Type: 1
Error Control: 1
Service (registry key): lanmanserver
Display name: Server
Description: Supports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Service (registry key): lanmanworkstation
Display name: Workstation
Description: Creates and maintains client network connections to remote servers. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Service (registry key): lbrtfdc
Start: 1
Type: 1
Error Control: 0
Service (registry key): ldap
Start: 0
Type: 0
Error Control: 0
Service (registry key): LicenseService
Start: 0
Type: 0
Error Control: 0
Service (registry key): LmHosts
Display name: TCP/IP NetBIOS Helper
Description: Enables support for NetBIOS over TCP/IP (NetBT) service and NetBIOS name resolution.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Depends On services: NetBT,Afd
Service (registry key): mdmxsdk
Image path: system32\DRIVERS\mdmxsdk.sys
Image size: 13059
Image MD5: 3C318B9CD391371BED62126581EE9961
Start: 2
Type: 1
Error Control: 0
Service (registry key): Messenger
Display name: Messenger
Description: Transmits net send and Alerter service messages between clients and servers. This service is not related to Windows Messenger. If this service is stopped, Alerter messages will not be transmitted. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 4
Type: 32
Error Control: 1
Depends On services: LanmanWorkstation,NetBIOS,PlugPlay,RpcSS
Service (registry key): mnmdd
Start: 1
Type: 1
Error Control: 0
Service (registry key): mnmsrvc
Display name: NetMeeting Remote Desktop Sharing
Description: Enables an authorized user to access this computer remotely by using NetMeeting over a corporate intranet. If this service is stopped, remote desktop sharing will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: C:\WINDOWS\system32\mnmsrvc.exe
Image size: 32768
Image MD5: F6415361201915B9FE3896B0E4E724FF
Start: 3
Type: 272
Error Control: 1
Service (registry key): Modem
Start: 3
Type: 1
Error Control: 0
Service (registry key): Mouclass
Display name: Mouse Class Driver
Image path: system32\DRIVERS\mouclass.sys
Image size: 23040
Image MD5: 34E1F0031153E491910E12551400192C
Start: 1
Type: 1
Error Control: 1
Service (registry key): MountMgr
Start: 0
Type: 1
Error Control: 1
Service (registry key): mraid35x
Display name: mraid35x
Image path: \SystemRoot\system32\DRIVERS\mraid35x.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): MRxDAV
Display name: WebDav Client Redirector
Description: WebDav Client Redirector
Image path: system32\DRIVERS\mrxdav.sys
Image size: 181248
Image MD5: 46EDCC8F2DB2F322C24F48785CB46366
Start: 3
Type: 2
Error Control: 1
Service (registry key): MRxSmb
Display name: MRXSMB
Description: MRXSMB
Image path: system32\DRIVERS\mrxsmb.sys
Image size: 453120
Image MD5: 025AF03CE51645C62F3B6907A7E2BE5E
Start: 1
Type: 2
Error Control: 1
Service (registry key): MSDTC
Display name: Distributed Transaction Coordinator
Description: Coordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will not occur. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: NT AUTHORITY\NetworkService
Image path: C:\WINDOWS\system32\msdtc.exe
Image size: 6144
Image MD5: C7C3D89EB0A6F3DBA622EA737FA335B1
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS,SamSS
Service (registry key): Msfs
Start: 1
Type: 2
Error Control: 1
Service (registry key): MSIServer
Display name: Windows Installer
Description: Adds, modifies, and removes applications provided as a Windows Installer (*.msi) package. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: C:\WINDOWS\system32\msiexec.exe /V
Image size: 78848
Image MD5: F5F0146580E7023ADB963879840777F8
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs
Service (registry key): MSKSSRV
Display name: Microsoft Streaming Service Proxy
Image path: system32\drivers\MSKSSRV.sys
Image size: 7552
Image MD5: AE431A8DD3C1D0D0610CDBAC16057AD0
Start: 3
Type: 1
Error Control: 1
Service (registry key): MSPCLOCK
Display name: Microsoft Streaming Clock Proxy
Image path: system32\drivers\MSPCLOCK.sys
Image size: 5376
Image MD5: 13E75FEF9DFEB08EEDED9D0246E1F448
Start: 3
Type: 1
Error Control: 1
Service (registry key): MSPQM
Display name: Microsoft Streaming Quality Manager Proxy
Image path: system32\drivers\MSPQM.sys
Image size: 4992
Image MD5: 1988A33FF19242576C3D0EF9CE785DA7
Start: 3
Type: 1
Error Control: 1
Service (registry key): mssmbios
Display name: Microsoft System Management BIOS Driver
Image path: system32\DRIVERS\mssmbios.sys
Image size: 15488
Image MD5: 469541F8BFD2B32659D5D463A6714BCE
Start: 3
Type: 1
Error Control: 1
Service (registry key): Mup
Display name: Mup
Start: 0
Type: 2
Error Control: 1
Service (registry key): NaiAvFilter1
Image path: system32\drivers\naiavf5x.sys
Image size: 114464
Image MD5: AFFD46144D763D9046673DD2D012CFF9
Start: 3
Type: 1
Error Control: 1
Service (registry key): NDIS
Display name: NDIS System Driver
Start: 0
Type: 1
Error Control: 1
Service (registry key): NdisTapi
Display name: Remote Access NDIS TAPI Driver
Description: Remote Access NDIS TAPI Driver
Image path: system32\DRIVERS\ndistapi.sys
Image size: 9600
Image MD5: 08D43BBDACDF23F34D79E44ED35C1B4C
Start: 3
Type: 1
Error Control: 1
Service (registry key): Ndisuio
Display name: NDIS Usermode I/O Protocol
Description: NDIS Usermode I/O Protocol
Image path: system32\DRIVERS\ndisuio.sys
Image size: 12928
Image MD5: 34D6CD56409DA9A7ED573E1C90A308BF
Start: 3
Type: 1
Error Control: 1
Service (registry key): NdisWan
Display name: Remote Access NDIS WAN Driver
Description: Remote Access NDIS WAN Driver
Image path: system32\DRIVERS\ndiswan.sys
Image size: 91776
Image MD5: 0B90E255A9490166AB368CD55A529893
Start: 3
Type: 1
Error Control: 1
Service (registry key): NDProxy
Start: 3
Type: 1
Error Control: 1
Service (registry key): NetBIOS
Display name: NetBIOS Interface
Description: NetBIOS Interface
Image path: system32\DRIVERS\netbios.sys
Image size: 34560
Image MD5: 3A2ACA8FC1D7786902CA434998D7CEB4
Start: 1
Type: 2
Error Control: 1
Service (registry key): NetBT
Display name: NetBios over Tcpip
Description: NetBios over Tcpip
Image path: system32\DRIVERS\netbt.sys
Image size: 162816
Image MD5: 0C80E410CD2F47134407EE7DD19CC86B
Start: 1
Type: 1
Error Control: 1
Depends On services: Tcpip
Service (registry key): NetDDE
Display name: Network DDE
Description: Provides network transport and security for Dynamic Data Exchange (DDE) for programs running on the same computer or on different computers. If this service is stopped, DDE transport and security will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\system32\netdde.exe
Image size: 111104
Image MD5: 05AFB5AD06462257BEA7495283C86D50
Start: 4
Type: 32
Error Control: 1
Depends On services: NetDDEDSDM
Service (registry key): NetDDEdsdm
Display name: Network DDE DSDM
Description: Manages Dynamic Data Exchange (DDE) network shares. If this service is stopped, DDE network shares will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\system32\netdde.exe
Image size: 111104
Image MD5: 05AFB5AD06462257BEA7495283C86D50
Start: 4
Type: 32
Error Control: 1
Service (registry key): Netlogon
Display name: Net Logon
Description: Supports pass-through authentication of account logon events for computers in a domain.
Object name: LocalSystem
Image path: %SystemRoot%\system32\lsass.exe
Image size: 13312
Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
Start: 3
Type: 32
Error Control: 1
Depends On services: LanmanWorkstation
Service (registry key): Netman
Display name: Network Connections
Description: Manages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 288
Error Control: 1
Depends On services: RpcSs
Service (registry key): NIC1394
Display name: 1394 Net Driver
Image path: system32\DRIVERS\nic1394.sys
Image size: 61824
Image MD5: 5C5C53DB4FEF16CF87B9911C7E8C6FBC
Start: 3
Type: 1
Error Control: 1
Service (registry key): NICCONFIGSVC
Display name: NICCONFIGSVC
Description: Configure your Internal Network Card power management settings.
Object name: LocalSystem
Image path: C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
Image size: 380928
Image MD5: 11D8A00C7EFF1AAEC8E8464769C84A3D
Start: 2
Type: 272
Error Control: 1
Service (registry key): Nla
Display name: Network Location Awareness (NLA)
Description: Collects and stores network configuration and location information, and notifies applications when this information changes.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Depends On services: Tcpip,Afd
Service (registry key): Norton Ghost
Display name: Norton Ghost
Description: Administrative service for scheduling and disk imaging.
Object name: LocalSystem
Image path: C:\Program Files\Norton Ghost\Agent\VProSvc.exe
Image size: 2066072
Image MD5: 81A8F8A61B5CC7D0A6416DB9AF1BBE85
Start: 2
Type: 16
Error Control: 1
Depends On services: RPCSS,EventLog,PlugPlay
Service (registry key): Npfs
Start: 1
Type: 2
Error Control: 1
Service (registry key): Ntfs
Start: 4
Type: 2
Error Control: 1
Service (registry key): NtLmSsp
Display name: NT LM Security Support Provider
Description: Provides security to remote procedure call (RPC) programs that use transports other than named pipes.
Object name: LocalSystem
Image path: %SystemRoot%\system32\lsass.exe
Image size: 13312
Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
Start: 3
Type: 32
Error Control: 1
Service (registry key): NtmsSvc
Display name: Removable Storage
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs
Service (registry key): Null
Start: 1
Type: 1
Error Control: 1
Service (registry key): nv
Image path: system32\DRIVERS\nv4_mini.sys
Image size: 1897408
Image MD5: 2B298519EDBFCF451D43E0F1E8F1006D
Start: 3
Type: 1
Error Control: 0
Service (registry key): NwlnkFlt
Display name: IPX Traffic Filter Driver
Description: IPX Traffic Filter Driver
Image path: system32\DRIVERS\nwlnkflt.sys
Image size: 12416
Image MD5: B305F3FAD35083837EF46A0BBCE2FC57
Start: 3
Type: 1
Error Control: 1
Depends On services: NwlnkFwd
Service (registry key): NwlnkFwd
Display name: IPX Traffic Forwarder Driver
Description: IPX Traffic Forwarder Driver
Image path: system32\DRIVERS\nwlnkfwd.sys
Image size: 32512
Image MD5: C99B3415198D1AAB7227F2C88FD664B9
Start: 3
Type: 1
Error Control: 1
Service (registry key): ohci1394
Display name: OHCI Compliant IEEE 1394 Host Controller
Image path: system32\DRIVERS\ohci1394.sys
Image size: 61056
Image MD5: 0951DB8E5823EA366B0E408D71E1BA2A
Start: 0
Type: 1
Error Control: 1
Service (registry key): omci
Display name: OMCI WDM Device Driver
Image path: system32\DRIVERS\omci.sys
Image size: 17153
Image MD5: B17228142CEC9B3C222239FD935A37CA
Start: 1
Type: 1
Error Control: 1
Service (registry key): Packet
Display name: Auto Internet Protocol
Description: Auto Internet Protocol
Image path: system32\DRIVERS\packet.sys
Image size: 13312
Image MD5: EC0D523B492764B15B3B6B1E17172201
Start: 2
Type: 1
Error Control: 1
Service (registry key): Parport
Display name: Parallel port driver
Image path: system32\DRIVERS\parport.sys
Image size: 80128
Image MD5: 29744EB4CE659DFE3B4122DEB45BC478
Start: 3
Type: 1
Error Control: 0
Service (registry key): PartMgr
Start: 0
Type: 1
Error Control: 1
Service (registry key): ParVdm
Start: 4
Type: 1
Error Control: 0
Depends On services: Parport
Depends On group: "Parallel arbitrator"
Service (registry key): PCI
Display name: PCI Bus Driver
Image path: system32\DRIVERS\pci.sys
Image size: 68224
Image MD5: 8086D9979234B603AD5BC2F5D890B234
Start: 0
Type: 1
Error Control: 3
Service (registry key): PCIDump
Start: 1
Type: 1
Error Control: 0
Service (registry key): PCIIde
Image path: system32\DRIVERS\pciide.sys
Image size: 3328
Image MD5: CCF5F451BB1A5A2A522A76E670000FF0
Start: 0
Type: 1
Error Control: 1
Service (registry key): Pcmcia
Start: 4
Type: 1
Error Control: 1
Service (registry key): PDCOMP
Start: 3
Type: 1
Error Control: 0
Service (registry key): PDFRAME
Start: 3
Type: 1
Error Control: 0
Service (registry key): PDRELI
Start: 3
Type: 1
Error Control: 0
Service (registry key): PDRFRAME
Start: 3
Type: 1
Error Control: 0
Service (registry key): perc2
Display name: perc2
Image path: \SystemRoot\system32\DRIVERS\perc2.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): perc2hib
Display name: perc2hib
Image path: \SystemRoot\system32\DRIVERS\perc2hib.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): PerfDisk
Start: 0
Type: 0
Error Control: 0
Service (registry key): PerfNet
Start: 0
Type: 0
Error Control: 0
Service (registry key): PerfOS
Start: 0
Type: 0
Error Control: 0
Service (registry key): PerfProc
Start: 0
Type: 0
Error Control: 0
Service (registry key): PlugPlay
Display name: Plug and Play
Description: Enables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability.
Object name: LocalSystem
Image path: %SystemRoot%\system32\services.exe
Image size: 108032
Image MD5: C6CE6EEC82F187615D1002BB3BB50ED4
Start: 2
Type: 32
Error Control: 1
Service (registry key): PolicyAgent
Display name: IPSEC Services
Description: Manages IP security policy and starts the ISAKMP/Oakley (IKE) and the IP security driver.
Object name: LocalSystem
Image path: %SystemRoot%\system32\lsass.exe
Image size: 13312
Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS,Tcpip,IPSec
Service (registry key): PptpMiniport
Display name: WAN Miniport (PPTP)
Description: WAN Miniport (PPTP)
Image path: system32\DRIVERS\raspptp.sys
Image size: 48384
Image MD5: 1C5CC65AAC0783C344F16353E60B72AC
Start: 3
Type: 1
Error Control: 1
Service (registry key): ProtectedStorage
Display name: Protected Storage
Description: Provides protected storage for sensitive data, such as private keys, to prevent access by unauthorized services, processes, or users.
Object name: LocalSystem
Image path: %SystemRoot%\system32\lsass.exe
Image size: 13312
Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
Start: 2
Type: 288
Error Control: 1
Depends On services: RpcSs
Service (registry key): PSched
Display name: QoS Packet Scheduler
Description: QoS Packet Scheduler
Image path: system32\DRIVERS\psched.sys
Image size: 69120
Image MD5: 48671F327553DCF1D27F6197F622A668
Start: 3
Type: 1
Error Control: 1
Depends On services: Gpc
Service (registry key): Ptilink
Display name: Direct Parallel Link Driver
Description: Direct Parallel Link Driver
Image path: system32\DRIVERS\ptilink.sys
Image size: 17792
Image MD5: 80D317BD1C3DBC5D4FE7B1678C60CADD
Start: 3
Type: 1
Error Control: 1
Service (registry key): PxHelp20
Display name: PxHelp20
Image path: System32\Drivers\PxHelp20.sys
Image size: 20640
Image MD5: 86724469CD077901706854974CD13C3E
Start: 0
Type: 1
Error Control: 1
Service (registry key): ql1080
Display name: ql1080
Image path: \SystemRoot\system32\DRIVERS\ql1080.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): Ql10wnt
Display name: Ql10wnt
Image path: \SystemRoot\system32\DRIVERS\ql10wnt.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): ql12160
Display name: ql12160
Image path: \SystemRoot\system32\DRIVERS\ql12160.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): ql1240
Display name: ql1240
Image path: \SystemRoot\system32\DRIVERS\ql1240.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): ql1280
Display name: ql1280
Image path: \SystemRoot\system32\DRIVERS\ql1280.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): RasAcd
Display name: Remote Access Auto Connection Driver
Description: Remote Access Auto Connection Driver
Image path: system32\DRIVERS\rasacd.sys
Image size: 8832
Image MD5: FE0D99D6F31E4FAD8159F690D68DED9C
Start: 1
Type: 1
Error Control: 1
Service (registry key): RasAuto
Display name: Remote Access Auto Connection Manager
Description: Creates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Depends On services: RasMan,Tapisrv
Service (registry key): Rasl2tp
Display name: WAN Miniport (L2TP)
Description: WAN Miniport (L2TP)
Image path: system32\DRIVERS\rasl2tp.sys
Image size: 51328
Image MD5: 98FAEB4A4DCF812BA1C6FCA4AA3E115C
Start: 3
Type: 1
Error Control: 1
Service (registry key): RasMan
Display name: Remote Access Connection Manager
Description: Creates a network connection.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Depends On services: Tapisrv
Service (registry key): RasPppoe
Display name: Remote Access PPPOE Driver
Description: Remote Access PPPOE Driver
Image path: system32\DRIVERS\raspppoe.sys
Image size: 41472
Image MD5: 7306EEED8895454CBED4669BE9F79FAA
Start: 3
Type: 1
Error Control: 1
Service (registry key): Raspti
Display name: Direct Parallel
Description: Direct Parallel
Image path: system32\DRIVERS\raspti.sys
Image size: 16512
Image MD5: FDBB1D60066FCFBB7452FD8F9829B242
Start: 3
Type: 1
Error Control: 1
Service (registry key): Rdbss
Display name: Rdbss
Description: Rdbss
Image path: system32\DRIVERS\rdbss.sys
Image size: 174592
Image MD5: 03B965B1CA47F6EF60EB5E51CB50E0AF
Start: 1
Type: 2
Error Control: 1
Service (registry key): RDPCDD
Image path: System32\DRIVERS\RDPCDD.sys
Image size: 4224
Image MD5: 4912D5B403614CE99C28420F75353332
Start: 1
Type: 1
Error Control: 0
Service (registry key): RDPDD
Start: 0
Type: 0
Error Control: 0
Service (registry key): rdpdr
Display name: Terminal Server Device Redirector Driver
Image path: system32\DRIVERS\rdpdr.sys
Image size: 196864
Image MD5: A2CAE2C60BC37E0751EF9DDA7CEAF4AD
Start: 3
Type: 1
Error Control: 1
Service (registry key): RDPNP
Start: 0
Type: 0
Error Control: 0
Service (registry key): RDPWD
Start: 3
Type: 1
Error Control: 0
Service (registry key): RDSessMgr
Display name: Remote Desktop Help Session Manager
Description: Manages and controls Remote Assistance. If this service is stopped, Remote Assistance will be unavailable. Before stopping this service, see the Dependencies tab of the Properties dialog box.
Object name: LocalSystem
Image path: C:\WINDOWS\system32\sessmgr.exe
Image size: 140800
Image MD5: 729798E0933076B8FCFCD9934698F164
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS
Service (registry key): redbook
Display name: Digital CD Audio Playback Filter Driver
Image path: system32\DRIVERS\redbook.sys
Image size: 57472
Image MD5: B31B4588E4086D8D84ADBF9845C2402B
Start: 1
Type: 1
Error Control: 1
Service (registry key): RegSrvc
Display name: Intel(R) PROSet/Wireless Registry Service
Description: Intel(R) PROSet/Wireless Registry Service
Object name: LocalSystem
Image path: C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
Image size: 217164
Image MD5: 6210679582240D54CC7FCC6278CA8B04
Start: 2
Type: 16
Error Control: 1
Depends On services: RPCSS
Service (registry key): RemoteAccess
Display name: Routing and Remote Access
Description: Offers routing services to businesses in local area and wide area network environments.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 4
Type: 32
Error Control: 1
Depends On services: RpcSS
Depends On group: NetBIOSGroup
Service (registry key): rimmptsk
Image path: system32\DRIVERS\rimmptsk.sys
Image size: 28544
Image MD5: 24ED7AF20651F9FA1F249482E7C1F165
Start: 3
Type: 1
Error Control: 1
Service (registry key): rimsptsk
Image path: system32\DRIVERS\rimsptsk.sys
Image size: 51328
Image MD5: 1BDBA2D2D402415A78A4BA766DFE0F7B
Start: 3
Type: 1
Error Control: 1
Service (registry key): rismxdp
Display name: Ricoh xD-Picture Card Driver
Image path: system32\DRIVERS\rixdptsk.sys
Image size: 307968
Image MD5: F774ECD11A064F0DEBB2D4395418153C
Start: 3
Type: 1
Error Control: 1
Service (registry key): RpcLocator
Display name: Remote Procedure Call (RPC) Locator
Description: Manages the RPC name service database.
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\system32\locator.exe
Image size: 75264
Image MD5: 793F04A09B15E7C6C11DBDFFAF06C0AB
Start: 3
Type: 16
Error Control: 1
Depends On services: LanmanWorkstation
Service (registry key): RpcSs
Display name: Remote Procedure Call (RPC)
Description: Provides the endpoint mapper and other miscellaneous RPC services.
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\system32\svchost -k rpcss
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Service (registry key): RSVP
Display name: QoS RSVP
Description: Provides network signaling and local traffic control setup functionality for QoS-aware programs and control applets.
Object name: LocalSystem
Image path: %SystemRoot%\system32\rsvp.exe
Image size: 132608
Image MD5: 471B3F9741D762ABE75E9DEEA4787E47
Start: 3
Type: 16
Error Control: 1
Depends On services: TcpIp,Afd,RpcSs
Service (registry key): S24EventMonitor
Display name: Intel(R) PROSet/Wireless Service
Description: Wireless Management Service for Intel(R) PROSet/Wireless
Object name: LocalSystem
Image path: C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
Image size: 540745
Image MD5: 99647323602BE0E77A9737E6EADA65BA
Start: 2
Type: 272
Error Control: 1
Depends On services: s24trans,EvtEng
Service (registry key): s24trans
Display name: WLAN Transport
Description: WLAN Transport
Image path: system32\DRIVERS\s24trans.sys
Image size: 13568
Image MD5: 2C0E9E777AB1849B43494626C1F308B5
Start: 2
Type: 1
Error Control: 1
Service (registry key): SamSs
Display name: Security Accounts Manager
Description: Stores security information for local user accounts.
Object name: LocalSystem
Image path: %SystemRoot%\system32\lsass.exe
Image size: 13312
Image MD5: 84885F9B82F4D55C6146EBF6065D75D2
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS
Service (registry key): SCardSvr
Display name: Smart Card
Description: Manages access to smart cards read by this computer. If this service is stopped, this computer will be unable to read smart cards. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\SCardSvr.exe
Image size: 95744
Image MD5: 25D8DE134DF108E3DBC8D7D23B1AA58E
Start: 3
Type: 32
Error Control: 0
Depends On services: PlugPlay
Service (registry key): Schedule
Display name: Task Scheduler
Description: Enables a user to configure and schedule automated tasks on this computer. If this service is stopped, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs
Service (registry key): sdbus
Image path: system32\DRIVERS\sdbus.sys
Image size: 67584
Image MD5: 02FC71B020EC8700EE8A46C58BC6F276
Start: 3
Type: 1
Error Control: 1
Service (registry key): Secdrv
Display name: Secdrv
Description: SafeDisc driver
Image path: system32\DRIVERS\secdrv.sys
Image size: 11973
Image MD5: 72DFFA33F8ED1C847075EEE2C1E790EE
Start: 2
Type: 1
Error Control: 1
Service (registry key): seclogon
Display name: Secondary Logon
Description: Enables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 288
Error Control: 0
Service (registry key): SENS
Display name: System Event Notification
Description: Tracks system events such as Windows logon, network, and power events. Notifies COM+ Event System subscribers of these events.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Depends On services: EventSystem
Service (registry key): serenum
Display name: Serenum Filter Driver
Image path: system32\DRIVERS\serenum.sys
Image size: 15488
Image MD5: A2D868AEEFF612E70E213C451A70CAFB
Start: 3
Type: 1
Error Control: 1
Service (registry key): Serial
Display name: Serial port driver
Image path: system32\DRIVERS\serial.sys
Image size: 64896
Image MD5: CD9404D115A00D249F70A371B46D5A26
Start: 1
Type: 1
Error Control: 0
Service (registry key): Sfloppy
Start: 1
Type: 1
Error Control: 0
Depends On group: "SCSI miniport"
Service (registry key): SharedAccess
Display name: Windows Firewall/Internet Connection Sharing (ICS)
Description: Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Depends On services: Netman,WinMgmt
Service (registry key): ShellHWDetection
Display name: Shell Hardware Detection
Description: Provides notifications for AutoPlay hardware events.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 0
Depends On services: RpcSs
Service (registry key): Simbad
Start: 4
Type: 1
Error Control: 1
Service (registry key): sisagp
Display name: SIS AGP Bus Filter
Image path: \SystemRoot\system32\DRIVERS\sisagp.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): Sparrow
Display name: Sparrow
Image path: \SystemRoot\system32\DRIVERS\sparrow.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): splitter
Display name: Microsoft Kernel Audio Splitter
Image path: system32\drivers\splitter.sys
Image size: 6400
Image MD5: 0CE218578FFF5F4F7E4201539C45C78F
Start: 3
Type: 1
Error Control: 1
Service (registry key): Spooler
Display name: Print Spooler
Description: Loads files to memory for later printing.
Object name: LocalSystem
Image path: %SystemRoot%\system32\spoolsv.exe
Image size: 57856
Image MD5: DA81EC57ACD4CDC3D4C51CF3D409AF9F
Start: 2
Type: 272
Error Control: 1
Depends On services: RPCSS
Service (registry key): sr
Display name: System Restore Filter Driver
Image path: system32\DRIVERS\sr.sys
Image size: 73472
Image MD5: E41B6D037D6CD08461470AF04500DC24
Start: 0
Type: 2
Error Control: 1
Service (registry key): srescan
Display name: srescan
Image path: system32\ZoneLabs\srescan.sys
Image size: 29680
Image MD5: 333363879C7C619DAA68E4DD6E3BE31E
Start: 0
Type: 1
Error Control: 0
Service (registry key): srservice
Display name: System Restore Service
Description: Performs system restore functions. To stop service, turn off System Restore from the System Restore tab in My Computer->Properties
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs
Service (registry key): Srv
Display name: Srv
Description: Srv
Image path: system32\DRIVERS\srv.sys
Image size: 332928
Image MD5: EA554A3FFC3F536FE8320EB38F5E4843
Start: 3
Type: 2
Error Control: 1
Service (registry key): sscdbhk5
Image path: system32\drivers\sscdbhk5.sys
Image size: 5627
Image MD5: D7968049BE0ADBB6A57CEE3960320911
Start: 1
Type: 2
Error Control: 0
Service (registry key): SSDPSRV
Display name: SSDP Discovery Service
Description: Enables discovery of UPnP devices on your home network.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Depends On services: HTTP
Service (registry key): ssrtln
Image path: system32\drivers\ssrtln.sys
Image size: 23545
Image MD5: C3FFD65ABFB6441E7606CF74F1155273
Start: 1
Type: 2
Error Control: 0
Service (registry key): STHDA
Display name: SigmaTel High Definition Audio CODEC
Image path: system32\drivers\sthda.sys
Image size: 1156648
Image MD5: 3AD78E22210D3FBD9F76DE84A8DF19B5
Start: 3
Type: 1
Error Control: 1
Service (registry key): stisvc
Display name: Windows Image Acquisition (WIA)
Description: Provides image acquisition services for scanners and cameras.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k imgsvc
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs
Service (registry key): swenum
Display name: Software Bus Driver
Image path: system32\DRIVERS\swenum.sys
Image size: 4352
Image MD5: 03C1BAE4766E2450219D20B993D6E046
Start: 3
Type: 1
Error Control: 1
Service (registry key): swmidi
Display name: Microsoft Kernel GS Wavetable Synthesizer
Image path: system32\drivers\swmidi.sys
Image size: 54272
Image MD5: 94ABC808FC4B6D7D2BBF42B85E25BB4D
Start: 3
Type: 1
Error Control: 1
Service (registry key): SwPrv
Display name: MS Software Shadow Copy Provider
Description: Manages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: C:\WINDOWS\system32\dllhost.exe /Processid:{A445BD1E-49EE-4607-B370-5CCA447377C4}
Image size: 5120
Image MD5: DD87DB7387B9EB441C5674888A0D840C
Start: 3
Type: 16
Error Control: 0
Depends On services: rpcss
Service (registry key): Symantec Core LC
Display name: Symantec Core LC
Description: Symantec Core LC
Object name: LocalSystem
Image path: C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
Image size: 822424
Image MD5: B6BF7DD619D045D0F999310882551B7D
Start: 3
Type: 272
Error Control: 1
Depends On services: RPCSS
Service (registry key): symc810
Display name: symc810
Image path: \SystemRoot\system32\DRIVERS\symc810.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): symc8xx
Display name: symc8xx
Image path: \SystemRoot\system32\DRIVERS\symc8xx.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): symlcbrd
Display name: symlcbrd
Image path: \??\C:\WINDOWS\system32\drivers\symlcbrd.sys
Image size: 4608
Image MD5: 5220576EE29BEA7C18DFF9ECABF18BBC
Start: 2
Type: 1
Error Control: 0
Service (registry key): SymSnap
Start: 0
Type: 2
Error Control: 0
Service (registry key): sym_hi
Display name: sym_hi
Image path: \SystemRoot\system32\DRIVERS\sym_hi.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): sym_u3
Display name: sym_u3
Image path: \SystemRoot\system32\DRIVERS\sym_u3.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): SynPS2Enable
Start: 0
Type: 0
Error Control: 0
Service (registry key): SynTP
Display name: Synaptics TouchPad Driver
Image path: system32\DRIVERS\SynTP.sys
Image size: 191872
Image MD5: FA2DAA32BED908023272A0F77D625DAE
Start: 3
Type: 1
Error Control: 1
Service (registry key): sysaudio
Display name: Microsoft Kernel System Audio Device
Image path: system32\drivers\sysaudio.sys
Image size: 60800
Image MD5: 650AD082D46BAC0E64C9C0E0928492FD
Start: 3
Type: 1
Error Control: 1
Service (registry key): SysmonLog
Display name: Performance Logs and Alerts
Description: Collects performance data from local or remote computers based on preconfigured schedule parameters, then writes the data to a log or triggers an alert. If this service is stopped, performance information will not be collected. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: NT Authority\NetworkService
Image path: %SystemRoot%\system32\smlogsvc.exe
Image size: 89600
Image MD5: 8B54AA346D1B1B113FFAA75501B8B1B2
Start: 3
Type: 16
Error Control: 1
Service (registry key): TapiSrv
Display name: Telephony
Description: Provides Telephony API (TAPI) support for programs that control telephony devices and IP based voice connections on the local computer and, through the LAN, on servers that are also running the service.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Depends On services: PlugPlay,RpcSs
Service (registry key): Tcpip
Display name: TCP/IP Protocol Driver
Description: TCP/IP Protocol Driver
Image path: system32\DRIVERS\tcpip.sys
Image size: 359808
Image MD5: 1DBF125862891817F374F407626967F4
Start: 1
Type: 1
Error Control: 1
Depends On services: IPSec
Service (registry key): TDPIPE
Start: 3
Type: 1
Error Control: 0
Service (registry key): TDTCP
Start: 3
Type: 1
Error Control: 0
Service (registry key): TermDD
Display name: Terminal Device Driver
Image path: system32\DRIVERS\termdd.sys
Image size: 40840
Image MD5: A540A99C281D933F3D69D55E48727F47
Start: 1
Type: 1
Error Control: 1
Service (registry key): TermService
Display name: Terminal Services
Description: Allows multiple users to be connected interactively to a machine as well as the display of desktops and applications to remote computers. The underpinning of Remote Desktop (including RD for Administrators), Fast User Switching, Remote Assistance, and Terminal Server.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost -k DComLaunch
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Depends On services: RPCSS
Service (registry key): tfsnboio
Image path: system32\dla\tfsnboio.sys
Image size: 25883
Image MD5: 30698355067D07DA5F9EB81132C9FDD6
Start: 2
Type: 2
Error Control: 0
Service (registry key): tfsncofs
Image path: system32\dla\tfsncofs.sys
Image size: 34843
Image MD5: FB9D825BB4A2ABDF24600F7505050E2B
Start: 2
Type: 2
Error Control: 0
Service (registry key): tfsndrct
Image path: system32\dla\tfsndrct.sys
Image size: 4123
Image MD5: CAFD8CCA11AA1E8B6D2EA1BA8F70EC33
Start: 2
Type: 2
Error Control: 0
Service (registry key): tfsndres
Image path: system32\dla\tfsndres.sys
Image size: 2239
Image MD5: 8DB1E78FBF7C426D8EC3D8F1A33D6485
Start: 2
Type: 2
Error Control: 0
Service (registry key): tfsnifs
Image path: system32\dla\tfsnifs.sys
Image size: 86586
Image MD5: B92F67A71CC8176F331B8AA8D9F555AD
Start: 2
Type: 2
Error Control: 0
Service (registry key): tfsnopio
Image path: system32\dla\tfsnopio.sys
Image size: 15227
Image MD5: 85985FAA9A71E2358FCC2EDEFC2A3C5C
Start: 2
Type: 2
Error Control: 0
Service (registry key): tfsnpool
Image path: system32\dla\tfsnpool.sys
Image size: 6363
Image MD5: BBA22094F0F7C210567EFDAF11F64495
Start: 2
Type: 2
Error Control: 0
Service (registry key): tfsnudf
Image path: system32\dla\tfsnudf.sys
Image size: 98714
Image MD5: 81340BEF80B9811E98CE64611E67E3FF
Start: 2
Type: 2
Error Control: 0
Service (registry key): tfsnudfa
Image path: system32\dla\tfsnudfa.sys
Image size: 100603
Image MD5: C035FD116224CCC8325F384776B6A8BB
Start: 2
Type: 2
Error Control: 0
Service (registry key): Themes
Display name: Themes
Description: Provides user experience theme management.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Service (registry key): TosIde
Display name: TosIde
Image path: \SystemRoot\system32\DRIVERS\toside.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): TrkWks
Display name: Distributed Link Tracking Client
Description: Maintains links between NTFS files within a computer or across computers in a network domain.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs
Service (registry key): TSDDD
Start: 0
Type: 0
Error Control: 0
Service (registry key): Udfs
Start: 4
Type: 2
Error Control: 1
Service (registry key): ultra
Display name: ultra
Image path: \SystemRoot\system32\DRIVERS\ultra.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): UMWdf
Display name: Windows User Mode Driver Framework
Description: Enables Windows user mode drivers.
Object name: NT AUTHORITY\LocalService
Image path: C:\WINDOWS\system32\wdfmgr.exe
Image size: 38912
Image MD5: C81B8635DEE0D3EF5F64B3DD643023A5
Start: 2
Type: 16
Error Control: 1
Depends On services: RpcSs
Service (registry key): Update
Display name: Microcode Update Driver
Image path: system32\DRIVERS\update.sys
Image size: 209408
Image MD5: AFF2E5045961BBC0A602BB6F95EB1345
Start: 3
Type: 1
Error Control: 1
Service (registry key): upnphost
Display name: Universal Plug and Play Device Host
Description: Provides support to host Universal Plug and Play devices.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Depends On services: SSDPSRV,HTTP
Service (registry key): UPS
Display name: Uninterruptible Power Supply
Description: Manages an uninterruptible power supply (UPS) connected to the computer.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\ups.exe
Image size: 18432
Image MD5: 3F5DF65B0758675F95A2D43918A740A3
Start: 3
Type: 16
Error Control: 1
Service (registry key): usb
Start: 0
Type: 0
Error Control: 0
Service (registry key): usbehci
Display name: Microsoft USB 2.0 Enhanced Host Controller Miniport Driver
Image path: system32\DRIVERS\usbehci.sys
Image size: 27264
Image MD5: 708579B01FED227AADB393CB0C3B4A2C
Start: 3
Type: 1
Error Control: 1
Service (registry key): usbhub
Display name: USB2 Enabled Hub
Image path: system32\DRIVERS\usbhub.sys
Image size: 57600
Image MD5: C72F40947F92CEA56A8FB532EDF025F1
Start: 3
Type: 1
Error Control: 1
Service (registry key): USBSTOR
Display name: USB Mass Storage Driver
Image path: system32\DRIVERS\USBSTOR.SYS
Image size: 26496
Image MD5: 6CD7B22193718F1D17A47A1CD6D37E75
Start: 3
Type: 1
Error Control: 1
Service (registry key): usbuhci
Display name: Microsoft USB Universal Host Controller Miniport Driver
Image path: system32\DRIVERS\usbuhci.sys
Image size: 20480
Image MD5: F8FD1400092E23C8F2F31406EF06167B
Start: 3
Type: 1
Error Control: 1
Service (registry key): V2IMount
Start: 1
Type: 1
Error Control: 1
Service (registry key): VgaSave
Image path: \SystemRoot\System32\drivers\vga.sys
Start: 1
Type: 1
Error Control: 0
Service (registry key): viaagp
Display name: VIA AGP Bus Filter
Image path: \SystemRoot\system32\DRIVERS\viaagp.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): ViaIde
Display name: ViaIde
Image path: \SystemRoot\system32\DRIVERS\viaide.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): VolSnap
Start: 0
Type: 1
Error Control: 1
Service (registry key): vsdatant
Display name: vsdatant
Image path: System32\vsdatant.sys
Image size: 392824
Image MD5: 0B3DD9381FB9D83BC9DCE8CD2459B14D
Start: 1
Type: 1
Error Control: 1
Depends On services: TCPIP
Service (registry key): vsmon
Display name: TrueVector Internet Monitor
Description: Monitors internet traffic and generates alerts for disallowed access.
Object name: LocalSystem
Image path: C:\WINDOWS\system32\ZoneLabs\vsmon.exe -service
Image size: 75768
Image MD5: A9062968DF9419FA45ACF044B4D9F5AC
Start: 2
Type: 272
Error Control: 1
Depends On services: Afd,RpcSs,vsdatant
Service (registry key): VSS
Display name: Volume Shadow Copy
Description: Manages and implements Volume Shadow Copies used for backup and other purposes. If this service is stopped, shadow copies will be unavailable for backup and the backup may fail. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\System32\vssvc.exe
Image size: 289792
Image MD5: 3EE00364AE0FD8D604F46CBAF512838A
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS
Service (registry key): w32time
Display name: Windows Time
Description: Maintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Service (registry key): w39n51
Display name: Intel(R) PRO/Wireless 3945ABG Adapter Driver
Image path: system32\DRIVERS\w39n51.sys
Image size: 1429632
Image MD5: 95C7421F8BAFC85BA09D33364058937D
Start: 3
Type: 1
Error Control: 1
Service (registry key): W3SVC
Start: 0
Type: 0
Error Control: 0
Service (registry key): Wanarp
Display name: Remote Access IP ARP Driver
Description: Remote Access IP ARP Driver
Image path: system32\DRIVERS\wanarp.sys
Image size: 34560
Image MD5: 984EF0B9788ABF89974CFED4BFBAACBC
Start: 3
Type: 1
Error Control: 1
Service (registry key): wanatw
Display name: WAN Miniport (ATW)
Image path: system32\DRIVERS\wanatw4.sys
Start: 3
Type: 1
Error Control: 1
Service (registry key): WDICA
Start: 3
Type: 1
Error Control: 0
Service (registry key): wdmaud
Display name: Microsoft WINMM WDM Audio Compatibility Driver
Image path: system32\drivers\wdmaud.sys
Image size: 82944
Image MD5: EFD235CA22B57C81118C1AEB4798F1C1
Start: 3
Type: 1
Error Control: 1
Service (registry key): WebClient
Display name: WebClient
Description: Enables Windows-based programs to create, access, and modify Internet-based files. If this service is stopped, these functions will not be available. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Depends On services: MRxDAV
Service (registry key): winachsf
Image path: system32\DRIVERS\HSF_CNXT.sys
Image size: 717952
Image MD5: 74CF3F2E4E40C4A2E18D39D6300A5C24
Start: 3
Type: 1
Error Control: 0
Service (registry key): winmgmt
Display name: Windows Management Instrumentation
Description: Provides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: LocalSystem
Image path: %systemroot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 0
Depends On services: RPCSS
Service (registry key): Winsock
Start: 3
Type: 4
Error Control: 1
Service (registry key): WinSock2
Start: 0
Type: 0
Error Control: 0
Service (registry key): WinTrust
Start: 0
Type: 0
Error Control: 0
Service (registry key): WLANKEEPER
Display name: Intel(R) PROSet/Wireless SSO Service
Description: Provides Single Sign On (SSO) functionality.
Object name: LocalSystem
Image path: C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
Image size: 262217
Image MD5: E876C33293AA5FFA81A1AA28D594712E
Start: 2
Type: 272
Error Control: 1
Depends On services: S24EventMonitor,RpcSs,EvtEng
Service (registry key): WmdmPmSN
Display name: Portable Media Serial Number Service
Description: Retrieves the serial number of any portable media player connected to this computer. If this service is stopped, protected content might not be down loaded to the device.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Service (registry key): WmiApRpl
Start: 0
Type: 0
Error Control: 0
Service (registry key): WmiApSrv
Display name: WMI Performance Adapter
Description: Provides performance library information from WMI HiPerf providers.
Object name: LocalSystem
Image path: C:\WINDOWS\system32\wbem\wmiapsrv.exe
Image size: 126464
Image MD5: BA8CECC3E813E1F7C441B20393D4F86C
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS
Service (registry key): WS2IFSL
Display name: Windows Socket 2.0 Non-IFS Service Provider Support Environment
Image path: \SystemRoot\System32\drivers\ws2ifsl.sys
Start: 4
Type: 1
Error Control: 1
Service (registry key): wscsvc
Display name: Security Center
Description: Monitors system security settings and configurations.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs,winmgmt
Service (registry key): wsppkt
Display name: Wireless Security Protocol
Description: Wireless Security Protocol
Image path: system32\DRIVERS\wsp_pkt.sys
Image size: 13568
Image MD5: 22068DCA607F93BF5FD5926390FB478F
Start: 2
Type: 1
Error Control: 1
Service (registry key): wuauserv
Display name: Automatic Updates
Description: Enables the download and installation of Windows updates. If this service is disabled, this computer will not be able to use the Automatic Updates feature or the Windows Update Web site.
Object name: LocalSystem
Image path: %systemroot%\system32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Service (registry key): WZCSVC
Display name: Wireless Zero Configuration
Description: Provides automatic configuration for the 802.11 adapters
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs,Ndisuio
Service (registry key): xmlprov
Display name: Network Provisioning Service
Description: Manages XML configuration files on a domain basis for automatic network provisioning.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 14336
Image MD5: 8F078AE4ED187AAABC0A305146DE6716
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs
Service (registry key): {6687830B-BB7F-47F9-9C56-6353572E4078}
Start: 0
Type: 0
Error Control: 0
Service (registry key): {A24CEC9D-14A9-4180-A7F8-8B88AE770429}
Start: 0
Type: 0
Error Control: 0
Service (registry key): {F535A003-D324-4B86-9223-BE4CF9699631}
Start: 0
Type: 0
Error Control: 0
Death2NSIS
Thanks for the update on your progress. Yours was the proceedure I was gonna follow, from your earlier post, but obviously it didn't actually work. I guess I'll break down and do the reinstall, and hope that it doesn't find a way to live through it. I'll come back and post my success or failure. I'm afraid I can't help you- I'm a newbie.
Cool. I'm hoping that spybot had just found remnants left in the registry from before but I don't really know either unfortunately. It might be worth getting Spybot to see if it recognises it on your machine.
I don't think any of the dll files were present like before but who knows?
Best of luck getting rid of it. I think this forum would probably still be busier if the problem was re-occuring for all so hopefully this is just a blip.
Cheers
Hi guys! I'm New here. I was formatting my parents HDD and started to re-install all the programs. When I started to install the codecs I notice in the Xvid 1.1.1 codec that NSIS Media was being installed with it.
We agreed to install it with this codec!!!!!!!!!!!!!!!!!!!
I didn't notice it when I installed it on my computer.
Oh and it's poping up with tab browsers. I updated to the new Internet Explorer and it started to pop up with it.
At any rate I've uninstalled the Xvid codec the NSIS Media. I don't know if this will work but it hasen't poped up since I did it.
AcientEssence, hi, and welcome to the NSIS wailing wall.... Your post was on page 11 of the thread dealing with this issue. Before you do ANYTHING else, go back to the beginning (click the pages at the bottom) and read all of the thread, yes it'll take awhile, and see all the things people have done unsuccessfully, to get rid of it. DO NOT uninstall it again. It gets harder to find every time you do that. It goes away for awhile, but then comes back. In the meantime, everyone downloads some kind of spyware protection, which supresses the popups, fooling them in to thinking it's gone, but it doesn't get rid of the spyware and downloader, which is doing God knows what, without your knowledge. I did the same, and it didn't pop up anymore, but I could still hear the popup clicking away, trying to open. I was afraid to do any banking or financial stuff with passwords on that computer until it's gone. The really bad news is, I think the only way to really get rid of it is to do a complete re-install, and do NOT install that codec. The good news is that since you just did that, it won't be that big a deal. I'm curious- mine came from the Xvid codec I got at Download.com - Is there where yours came from?
PS, notice the post a few before yours? Where somebody posted their entire scan, apparently confusing this forum for the website that analyses your scans to find the problem, yes, there is one, and I can't remember what it is, but having read there also, I'm not sure that was successful, either. But the point is, see in his/her post, in the message part right before the scan results, where the poster says "The term keylogger appearing several times in the results cannot be a good thing I wouldn't imagine." Boy, you got THAT right!!!! Call me crazy, but I think that means something is watching every single thing you type in, including your passwords. Do Not take NSIS lightly.
Hi there,
I've not had any problems since my last post. I'm still pretty sure that the initial method of removal got rid of it and any potential problems it could cause. I still think if you've got the problem still then you need to go through the whole process to get rid of it but programmes like Spybot S&D are picking it up now so if you haven't got it yet then I'd recommend it. As I've said before I think it only found a few remnants left in the registry but it's certainly got rid of those as well for me.
I think I must've picked it up at download.com too (probably XVid thinking about it) because I used to get things there all the time (no longer)
I'm pretty convinced (fingers crossed) that she's left for good but still wouldn't be suprrised to see it get picked up again from some other dodgy, spyware addled download, I guess that's the price that I pay for trying to download as much as is humanly as long as I don't have to pay for it.
I haven't had it for a few weeks now but I'm using opera now. Last time I had the up to date firefox and I did't catch it ( I know, I check my common program file everytime I logged off (even now)) but as soon as I downloaded msn messenger and the up to date WMP I caught it. maybe it is download.com as I'm sure I used it that day,but as Death2NSIS said I used spybot and it seemed to work and I cleared to registry of NSIS entries (they were numerous) but as bluesforbreakfast says,if its downloading keyloggers this damn program is a nightmare. Thanks for everyone on this forum for their help and fingers crossed to all of you
Update: Download.com has finally removed Openwares.org products from their website for download.
Openwares.org was the leading cause of the NSIS Trojan infections but you can still download Openwares.org products from other websites including their own. Most infections were directly downloaded from Download.com.
Many spyware and anti-virus scanners now will detect the NSIS Trojan, but some still have problems completely removing it.
Here is a website where you can download a
NSIS Media Trojan Remover
This little program appears to do the trick for all infections. I have attached this for easy download.
Just run the program, it will first scan then remove if an infection is found.
Thanks.:icon_thum
thanks a lot littlebits,you probably saved me a nervous breakdown,thought I got it weeks ago but it seems I still had .dll files. I recomend everyone run this program,even if you think it's gone.
again littlebits you have my eternal thanks
Bookmarks